OPNsense Forum

Archive => 16.1 Legacy Series => Topic started by: jerrac on August 29, 2016, 02:11:46 am

Title: Implementing URL Table alias block rules
Post by: jerrac on August 29, 2016, 02:11:46 am
I've generated a large list of ip addresses that I want blocked. I added them to a url table alias, hosting the text file on Dropbox. Then I configured the rules the same way https://docs.opnsense.org/manual/how-tos/edrop.html has you configure the spamhaus rules.

The ip addresses show up in the pftables list. That means everything is loaded correctly, right? Or just that the alias was loaded?

The issue is that I can still go to both the url and ip of a site I want blocked. I double checked that the ip I was testing was in the pftables list.

The pfsense wiki says that an aliases file can be a single ip per line. https://doc.pfsense.org/index.php/Aliases that's what I've generated. See: https://dl.dropboxusercontent.com/u/29137804/someonewhocares.txt, those are the ip's I found for the hosts listed here: http://someonewhocares.org/hosts/

Did I just miss a step?
Title: Re: Implementing URL Table alias block rules
Post by: fabian on August 29, 2016, 09:22:51 am
For me it looks like an issue with your firewall rules. There are three questions:
* Have you created the block rules?
* Do they apply before a pass rule?
* Did you reload the configuration?

Kind regards

Fabian