pfsense:pfblockerng:install_pfblockerng:setup_ip_blocking
Differences
This shows you the differences between two versions of the page.
Both sides previous revisionPrevious revisionNext revision | Previous revision | ||
pfsense:pfblockerng:install_pfblockerng:setup_ip_blocking [2021/01/28 10:38] – peter | pfsense:pfblockerng:install_pfblockerng:setup_ip_blocking [2021/01/28 14:42] (current) – peter | ||
---|---|---|---|
Line 5: | Line 5: | ||
Navigate to **Firewall -> pfBlockerNG -> IP**. | Navigate to **Firewall -> pfBlockerNG -> IP**. | ||
- | Within the **IP Configuration** | + | In **IP Configuration**: |
* De-Duplication: | * De-Duplication: | ||
Line 24: | Line 24: | ||
Navigate to **Firewall -> pfBlockerNG -> IP**. | Navigate to **Firewall -> pfBlockerNG -> IP**. | ||
- | Within the **MaxMind GeoIP configuration** | + | In **MaxMind GeoIP configuration**: |
* MaxMind License Key: **Enter the MaxMind License Key**. | * MaxMind License Key: **Enter the MaxMind License Key**. | ||
Line 36: | Line 36: | ||
===== IP Interface/ | ===== IP Interface/ | ||
+ | Navigate to **Firewall -> pfBlockerNG -> IP**. | ||
- | Within the **IP Interface/ | + | In **IP Interface/ |
* Inbound Firewall Rules: | * Inbound Firewall Rules: | ||
Line 53: | Line 54: | ||
{{: | {{: | ||
+ | |||
+ | <WRAP info> | ||
+ | **NOTE: | ||
+ | |||
+ | Otherwise each interface will have a copy of these rules and therefore harder to maintain. | ||
+ | |||
+ | </ | ||
+ | |||
+ | ---- | ||
+ | |||
+ | ===== Setup Custom IP Lists ===== | ||
+ | |||
+ | ==== IPv4 ==== | ||
+ | |||
+ | Navigate to **Firewall -> pfBlockerNG -> IP -> IPv4**. | ||
+ | |||
+ | * Click the **Add** button. | ||
+ | * Give it a **Name** and **Description**. | ||
+ | |||
+ | Add in as many **IP Source Definitions** as needed. | ||
+ | |||
+ | <WRAP info> | ||
+ | Set: | ||
+ | |||
+ | * Type: **Auto**. | ||
+ | * State: **On**. | ||
+ | |||
+ | See [[PFSense: | ||
+ | </ | ||
+ | |||
+ | {{: | ||
+ | |||
+ | ---- | ||
+ | |||
+ | In **Settings**: | ||
+ | |||
+ | * State: **ON**. | ||
+ | * Action: **Deny Both**. | ||
+ | * Update Frequency: **Once per day**. | ||
+ | |||
+ | {{: | ||
+ | |||
+ | |||
+ | ---- | ||
+ | |||
+ | ==== IPv6 ==== | ||
+ | |||
+ | Navigate to **Firewall -> pfBlockerNG -> IP -> IPv6**. | ||
+ | |||
+ | * Click the **Add** button. | ||
+ | * Give it a **Name** and **Description**. | ||
+ | |||
+ | Add in as many **IP Source Definitions** as needed. | ||
+ | |||
+ | <WRAP info> | ||
+ | Set: | ||
+ | |||
+ | * Type: **Auto**. | ||
+ | * State: **On**. | ||
+ | |||
+ | See [[PFSense: | ||
+ | </ | ||
+ | |||
+ | {{: | ||
+ | |||
+ | ---- | ||
+ | |||
+ | In **Settings**: | ||
+ | |||
+ | * State: **ON**. | ||
+ | * Action: **Deny Both**. | ||
+ | * Update Frequency: **Once per day**. | ||
+ | |||
+ | ---- | ||
+ | |||
+ | ==== GeoIP ==== | ||
+ | |||
+ | Navigate to **Firewall -> pfBlockerNG -> IP -> GeoIP**. | ||
+ | |||
+ | <WRAP info> | ||
+ | **NOTE: | ||
+ | |||
+ | All Actions are **Disabled**. | ||
+ | |||
+ | Reason is that many services, such as AWS, utilize services in other countries, so if a country is blocked this may result in impacting legitimate sites, | ||
+ | |||
+ | </ | ||
+ | |||
+ | {{: | ||
+ | |||
+ | ---- | ||
+ | |||
+ | ==== Reputation ==== | ||
+ | |||
+ | {{: | ||
---- | ---- | ||
- | [[PFSense: | + | Return to [[PFSense: |
---- | ---- | ||
pfsense/pfblockerng/install_pfblockerng/setup_ip_blocking.1611830318.txt.gz · Last modified: 2021/01/28 10:38 by peter