OPNSense blocking ssl.kaptcha.com ???

Started by Nazfera2, February 28, 2022, 05:51:10 AM

Previous topic - Next topic
Hello,
new user here. i am having trouble finding what in my device is blocking https://ssl.kaptcha.com.
i have opened a ticket with the vendor, they use this SSL Service to complete in game transactions.
if anyone can point me to the right direction to have an exception for https://ssl.kaptcha.com
thanks.

i attempted to open it on my browser and i get error 404.

https://imgur.com/Ip8Gdcp

I doubt that OpnSense is the culprit here, as calling that URL from another location which does not employ OpnSense gives the same 404 result. So, the problem seems to be on the server side.
Intel N100, 4 x I226-V, 16 GByte, 256 GByte NVME, ZTE F6005

1100 down / 770 up, Bufferbloat A

so i did find under (Services -> Unbound DNS -> Blocklist)
this was enabled, however if i disable it i still get same results.
do i need to do an extra step ?
someone in reddit said DNS_PROBE_FINISHED_NXDOMAIN is a DNS issue.
which makes sense but im not sure what config can cause this.

so i just went to DNS unbound logs and saw what i am looking for.
https://imgur.com/a/wJRns6M
but i cant seem to find the setting to allow it.

February 28, 2022, 01:40:45 PM #4 Last Edit: February 28, 2022, 01:46:43 PM by meyergru
You cannot fix a problem that does not even occur on your side.

While it may be true that you have some blocking for that particular website, it does not function from anywhere, even if the DNS entry works... everybody sees a 404 error, with OpnSense or without:

#wget -O- https://ssl.kaptcha.com/
--2022-02-28 13:38:56--  https://ssl.kaptcha.com/
Resolving ssl.kaptcha.com (ssl.kaptcha.com)... 54.148.115.137, 35.80.101.90, 35.81.31.24
Connecting to ssl.kaptcha.com (ssl.kaptcha.com)|54.148.115.137|:443... connected.
HTTP request sent, awaiting response... 404 Not Found
2022-02-28 13:38:57 ERROR 404: Not Found.


See? This is on a system that is not even remotely dependend on OpnSense - and I tried several ones.
Intel N100, 4 x I226-V, 16 GByte, 256 GByte NVME, ZTE F6005

1100 down / 770 up, Bufferbloat A