OPNsense
  • Home
  • Help
  • Search
  • Login
  • Register

  • OPNsense Forum »
  • Profile of wuwzy »
  • Show Posts »
  • Messages
  • Profile Info
    • Summary
    • Show Stats
    • Show Posts...
      • Messages
      • Topics
      • Attachments

Show Posts

This section allows you to view all posts made by this member. Note that you can only see posts made in areas you currently have access to.

  • Messages
  • Topics
  • Attachments

Messages - wuwzy

Pages: [1] 2 3 4
1
General Discussion / Re: alias resolve error for Alias setup for url blocking
« on: November 22, 2024, 01:38:05 pm »
I have the same problem. Can you use https://www.binarydefense.com/banlist.txt as an alias? After I did it, I checked that the number of rules loaded was 0. Other rules can be loaded correctly, but this one cannot. It's very strange.


Quote from: Crypt on September 20, 2024, 01:07:19 am
Greetings all,

I have recently installed OPNsense and run into an issue with one URL I am trying to add as an alias, I get the following error:

alias resolve error BLACKLIST_BinaryDefence (error fetching alias url www.binarydefense.com/banlist.txt)
I have also tried:
alias resolve error BLACKLIST_BinaryDefence (error fetching alias url https://www.binarydefense.com/banlist.txt)
alias resolve error BLACKLIST_BinaryDefence (error fetching alias url www.binarydefense.com)

And continue to get the same error.  I can hit the URL from a browser, and I ran fetch https://www.binarydefense.com/banlist.tx from the command line and it worked with no issues. 

I've been playing with this issue for a couple of days and done some searching online, but unable to find a resolution.  Any assistance would be greatly appreciated

2
Intrusion Detection and Prevention / Intrusion Detection => Strategy => There are too many entries.
« on: August 25, 2024, 06:51:05 am »
Intrusion Detection => Strategy => There are too many entries. Is it possible to have an option of ALL under each category? It is really frustrating to have to choose one by one under each entry. I feel like I am holding a stone to prepare for defense.

3
Intrusion Detection and Prevention / Re: I don't know how to integrate abuseipdb.com's IP List into opnsense to block the
« on: August 25, 2024, 06:50:22 am »
Solution    ;D ;D ;D

4
Intrusion Detection and Prevention / I don't know how to integrate abuseipdb.com's IP List into opnsense to block the
« on: August 21, 2024, 05:59:15 am »
I have been reported by Maltrail for a lot of dirty IP access and scanning reported by abuseipdb.com. But I don't know how to integrate abuseipdb.com's IP List into opnsense to block these annoying IPs. Is there any good way to do this? :'(

5
24.7 Production Series / Zenarmor Some of the settings cannot be successful.
« on: August 12, 2024, 01:05:37 pm »
In setup, I cannot change the settings of interfaces. When I clicked set security zone, I added or deleted status (such as WAN), and after confirming, I clicked restart. However, the deleted status settings reappeared. I tried many times but it didn't work.  :P

6
General Discussion / Re: What Alias type to use for different blocking lists.
« on: February 13, 2024, 11:09:39 am »
https://blocklist.stie/app    can't open.

7
General Discussion / Re: Please tell me if such a function can be achieved.
« on: February 01, 2024, 12:51:28 pm »
Quote from: bartjsmit on January 29, 2024, 05:25:50 pm
Firewall: Settings: Schedules - create a schedule.

Add a rule to restrict all traffic to and from the network the interface connects to and attach the schedule

Stupid me, the experiment failed. Please give me some pointers. I would be more grateful if you have screenshots for me to learn how to do. :'( :'( :'( :'(

8
General Discussion / Re: Please tell me if such a function can be achieved.
« on: January 30, 2024, 08:55:10 am »
OOO....  thanks.

9
General Discussion / Please tell me if such a function can be achieved.
« on: January 29, 2024, 02:33:52 pm »
It's easy under ROS, just write a script.

If you want to suspend the use of a certain network card at a fixed time and make the network card invalid. Set another time to restore the use of this network card. Meet the need to control network connections. How to implement this function.

10
Chinese - 中文 / 请教,是否可以实现这样的功能。
« on: January 29, 2024, 02:33:05 pm »
在ROS 下很容易,写个脚本就可以。

如果想在一个固定的时间,暂停某块网卡的使用,让这个网卡失效。再设定一个时间,恢复这块网卡的使用。达到控制网络连接的需要。这个功能,要如何实现。

11
23.1 Legacy Series / Re: VnStat query not working in 23.1.2
« on: March 10, 2023, 10:52:17 am »
OPNsense 23.1.3-amd64.  repair the bug

12
23.1 Legacy Series / Re: VnStat query not working in 23.1.2
« on: March 08, 2023, 05:23:03 am »
yes.  me too

13
22.7 Legacy Series / Re: 22.7.9 Lose WAN
« on: December 08, 2022, 06:31:06 am »
Quote from: Colt45 on December 06, 2022, 05:15:47 am
Do you run Suricata? That seems to be the problem most are having that is causing it to lose WAN or LAN depending on which its looking at. Rolling Suricata back to 6.0.8 from 22.7.8 fixes the issue it seems.


Thanks for the reply brother, I tried to downgrade to other 22.7.8 and 22.7.7 but it didn't work, and it would hang up after a while every time. I just upgraded to the latest 22.7.9_3. Suricata seems to be upgraded to 6.0.9_1. Let me take another look. If there is no reply, everything is fine.    ;D ;D ;D

14
22.7 Legacy Series / 22.7.9 Lose WAN
« on: December 06, 2022, 03:53:29 am »
Looking at the many questions in the forum, what I encountered was that the WAN would lose the link within a day.
I chose to fall back to 22.7.8. Waiting for the next major version update.
The 22.7 series is really a lot of tribulations.



15
General Discussion / Re: I want to suggest that the official launch a function like Fail2ban.
« on: November 15, 2022, 04:24:34 am »
Quote from: Supermule on November 14, 2022, 06:56:33 am
Suricata can do what you need. It just doesnt have the attempts counter but bans them instantly.

Suricata is also being used and has many advantages, but for operations that do not exist in the rules, I don't know what corresponding operations it will make. Of course, the matching of rules is more extensive. But it does not prevent the defense against simple brute force attempts like fail2ban, and can manage the blocking time of such IPs. If you need to add a period, I hope it is 3650 days.   ;D ;D ;D

Pages: [1] 2 3 4
OPNsense is an OSS project © Deciso B.V. 2015 - 2024 All rights reserved
  • SMF 2.0.19 | SMF © 2021, Simple Machines
    Privacy Policy
    | XHTML | RSS | WAP2