Project

General

Profile

Bug #11551 ยป pfblockerng.xml

Viktor Gurov, 02/26/2021 08:14 AM

 
1
		<pfblockerng>
2
			<config>
3
				<enable_cb>on</enable_cb>
4
				<pfb_keep>on</pfb_keep>
5
				<pfb_interval>1</pfb_interval>
6
				<pfb_min></pfb_min>
7
				<pfb_hour></pfb_hour>
8
				<pfb_dailystart></pfb_dailystart>
9
				<skipfeed></skipfeed>
10
				<credits></credits>
11
				<pfb_reuse></pfb_reuse>
12
				<log_max_log>20000</log_max_log>
13
				<log_max_errlog>20000</log_max_errlog>
14
				<log_max_extraslog>20000</log_max_extraslog>
15
				<log_max_ip_blocklog>20000</log_max_ip_blocklog>
16
				<log_max_ip_permitlog>20000</log_max_ip_permitlog>
17
				<log_max_ip_matchlog>20000</log_max_ip_matchlog>
18
				<log_max_dnslog>20000</log_max_dnslog>
19
				<log_max_dnsbl_parse_err>20000</log_max_dnsbl_parse_err>
20
				<log_max_dnsreplylog>20000</log_max_dnsreplylog>
21
				<log_max_unilog>20000</log_max_unilog>
22
			</config>
23
		</pfblockerng>
24
		<pfblockernglistsv4>
25
			<config>
26
				<aliasname>o365</aliasname>
27
				<description><![CDATA[office365]]></description>
28
				<row>
29
					<format>regex</format>
30
					<state><![CDATA[Enabled]]></state>
31
					<url>https://endpoints.office.com/endpoints/worldwide?noipv6&amp;ClientRequestId=b10c5ed1-bad1-445f-b386-b919946339a7</url>
32
					<header>o365</header>
33
				</row>
34
				<action>Alias_Native</action>
35
				<cron>EveryDay</cron>
36
				<dow>1</dow>
37
				<aliaslog>enabled</aliaslog>
38
				<stateremoval><![CDATA[enabled]]></stateremoval>
39
				<autoaddrnot_in></autoaddrnot_in>
40
				<autoports_in></autoports_in>
41
				<aliasports_in></aliasports_in>
42
				<autoaddr_in></autoaddr_in>
43
				<autonot_in></autonot_in>
44
				<aliasaddr_in></aliasaddr_in>
45
				<autoproto_in></autoproto_in>
46
				<agateway_in>default</agateway_in>
47
				<autoaddrnot_out></autoaddrnot_out>
48
				<autoports_out></autoports_out>
49
				<aliasports_out></aliasports_out>
50
				<autoaddr_out></autoaddr_out>
51
				<autonot_out></autonot_out>
52
				<aliasaddr_out></aliasaddr_out>
53
				<autoproto_out></autoproto_out>
54
				<agateway_out>default</agateway_out>
55
				<whois_convert></whois_convert>
56
				<custom></custom>
57
				<custom_update>disabled</custom_update>
58
				<sort>sort</sort>
59
				<suppression_cidr>Disabled</suppression_cidr>
60
			</config>
61
			<config>
62
				<aliasname>PRI1</aliasname>
63
				<description><![CDATA[PRI1 - Collection of Feeds from the most reputable blocklist providers. (Primary tier)]]></description>
64
				<action>Alias_Native</action>
65
				<cron>EveryDay</cron>
66
				<dow>1</dow>
67
				<sort>sort</sort>
68
				<aliaslog>enabled</aliaslog>
69
				<stateremoval><![CDATA[enabled]]></stateremoval>
70
				<autoaddrnot_in></autoaddrnot_in>
71
				<autoports_in></autoports_in>
72
				<aliasports_in></aliasports_in>
73
				<autoaddr_in></autoaddr_in>
74
				<autonot_in></autonot_in>
75
				<aliasaddr_in></aliasaddr_in>
76
				<autoproto_in></autoproto_in>
77
				<agateway_in>default</agateway_in>
78
				<autoaddrnot_out></autoaddrnot_out>
79
				<autoports_out></autoports_out>
80
				<aliasports_out></aliasports_out>
81
				<autoaddr_out></autoaddr_out>
82
				<autonot_out></autonot_out>
83
				<aliasaddr_out></aliasaddr_out>
84
				<autoproto_out></autoproto_out>
85
				<agateway_out>default</agateway_out>
86
				<suppression_cidr>Disabled</suppression_cidr>
87
				<whois_convert></whois_convert>
88
				<custom></custom>
89
				<row>
90
					<format>auto</format>
91
					<state><![CDATA[Enabled]]></state>
92
					<url>https://feodotracker.abuse.ch/downloads/ipblocklist.txt</url>
93
					<header>Abuse_Feodo_C2</header>
94
				</row>
95
				<row>
96
					<format>auto</format>
97
					<state><![CDATA[Enabled]]></state>
98
					<url>https://ransomwaretracker.abuse.ch/downloads/RW_IPBL.txt</url>
99
					<header>Abuse_IPBL</header>
100
				</row>
101
				<row>
102
					<format>auto</format>
103
					<state><![CDATA[Enabled]]></state>
104
					<url>https://sslbl.abuse.ch/blacklist/sslipblacklist.txt</url>
105
					<header>Abuse_SSLBL</header>
106
				</row>
107
				<row>
108
					<format>auto</format>
109
					<state><![CDATA[Enabled]]></state>
110
					<url>https://talosintelligence.com/documents/ip-blacklist</url>
111
					<header>Talos_BL</header>
112
				</row>
113
				<row>
114
					<format>auto</format>
115
					<state><![CDATA[Disabled]]></state>
116
					<url>https://gist.githubusercontent.com/BBcan177/bf29d47ea04391cb3eb0/raw</url>
117
					<header>BBcan177</header>
118
				</row>
119
				<row>
120
					<format>auto</format>
121
					<state><![CDATA[Disabled]]></state>
122
					<url>https://raw.githubusercontent.com/dyne/dnscrypt-proxy/master/dnscrypt-resolvers.csv</url>
123
					<header>DNSCrypt</header>
124
				</row>
125
				<row>
126
					<format>auto</format>
127
					<state><![CDATA[Disabled]]></state>
128
					<url>https://raw.githubusercontent.com/stamparm/ipsum/master/levels/4.txt</url>
129
					<header>ipsum</header>
130
				</row>
131
				<row>
132
					<format>auto</format>
133
					<state><![CDATA[Disabled]]></state>
134
					<url>https://raw.githubusercontent.com/clarketm/proxy-list/master/proxy-list-raw.txt</url>
135
					<header>proxylist</header>
136
				</row>
137
				<row>
138
					<format>auto</format>
139
					<state><![CDATA[Disabled]]></state>
140
					<url>https://public-dns.info/nameservers.txt</url>
141
					<header>publicdns</header>
142
				</row>
143
				<row>
144
					<format>auto</format>
145
					<state><![CDATA[Disabled]]></state>
146
					<url>https://raw.githubusercontent.com/ejrv/VPNs/master/vpns-without-datacenters.txt</url>
147
					<header>VPNs</header>
148
				</row>
149
				<row>
150
					<format>auto</format>
151
					<state><![CDATA[Enabled]]></state>
152
					<url>https://raw.githubusercontent.com/Sekhan/TheGreatWall/master/TheGreatWall_ipv4</url>
153
					<header>GreatWallDoH</header>
154
				</row>
155
			</config>
156
			<config>
157
				<aliasname>VPN</aliasname>
158
				<description><![CDATA[VPN]]></description>
159
				<action>Disabled</action>
160
				<cron>Weekly</cron>
161
				<dow>1</dow>
162
				<sort>sort</sort>
163
				<aliaslog>enabled</aliaslog>
164
				<stateremoval><![CDATA[enabled]]></stateremoval>
165
				<autoaddrnot_in></autoaddrnot_in>
166
				<autoports_in></autoports_in>
167
				<aliasports_in></aliasports_in>
168
				<autoaddr_in></autoaddr_in>
169
				<autonot_in></autonot_in>
170
				<aliasaddr_in></aliasaddr_in>
171
				<autoproto_in></autoproto_in>
172
				<agateway_in>default</agateway_in>
173
				<autoaddrnot_out></autoaddrnot_out>
174
				<autoports_out></autoports_out>
175
				<aliasports_out></aliasports_out>
176
				<autoaddr_out></autoaddr_out>
177
				<autonot_out></autonot_out>
178
				<aliasaddr_out></aliasaddr_out>
179
				<autoproto_out></autoproto_out>
180
				<agateway_out>default</agateway_out>
181
				<suppression_cidr>Disabled</suppression_cidr>
182
				<whois_convert></whois_convert>
183
				<custom></custom>
184
				<row>
185
					<format>auto</format>
186
					<state><![CDATA[Enabled]]></state>
187
					<url>https://raw.githubusercontent.com/ejrv/VPNs/master/vpn-ipv4.txt</url>
188
					<header>VPNv4</header>
189
				</row>
190
			</config>
191
			<config>
192
				<aliasname>DNSCrypt</aliasname>
193
				<description><![CDATA[DNSCrypt]]></description>
194
				<action>Disabled</action>
195
				<cron>Weekly</cron>
196
				<dow>1</dow>
197
				<sort>sort</sort>
198
				<aliaslog>enabled</aliaslog>
199
				<stateremoval><![CDATA[enabled]]></stateremoval>
200
				<autoaddrnot_in></autoaddrnot_in>
201
				<autoports_in></autoports_in>
202
				<aliasports_in></aliasports_in>
203
				<autoaddr_in></autoaddr_in>
204
				<autonot_in></autonot_in>
205
				<aliasaddr_in></aliasaddr_in>
206
				<autoproto_in></autoproto_in>
207
				<agateway_in>default</agateway_in>
208
				<autoaddrnot_out></autoaddrnot_out>
209
				<autoports_out></autoports_out>
210
				<aliasports_out></aliasports_out>
211
				<autoaddr_out></autoaddr_out>
212
				<autonot_out></autonot_out>
213
				<aliasaddr_out></aliasaddr_out>
214
				<autoproto_out></autoproto_out>
215
				<agateway_out>default</agateway_out>
216
				<suppression_cidr>Disabled</suppression_cidr>
217
				<whois_convert></whois_convert>
218
				<custom></custom>
219
				<row>
220
					<format>auto</format>
221
					<state><![CDATA[Enabled]]></state>
222
					<url>https://raw.githubusercontent.com/dyne/dnscrypt-proxy/master/dnscrypt-resolvers.csv</url>
223
					<header>DNSCrypt</header>
224
				</row>
225
			</config>
226
			<config>
227
				<aliasname>Proxy</aliasname>
228
				<description><![CDATA[Proxy]]></description>
229
				<action>Disabled</action>
230
				<cron>Weekly</cron>
231
				<dow>1</dow>
232
				<sort>sort</sort>
233
				<aliaslog>enabled</aliaslog>
234
				<stateremoval><![CDATA[enabled]]></stateremoval>
235
				<autoaddrnot_in></autoaddrnot_in>
236
				<autoports_in></autoports_in>
237
				<aliasports_in></aliasports_in>
238
				<autoaddr_in></autoaddr_in>
239
				<autonot_in></autonot_in>
240
				<aliasaddr_in></aliasaddr_in>
241
				<autoproto_in></autoproto_in>
242
				<agateway_in>default</agateway_in>
243
				<autoaddrnot_out></autoaddrnot_out>
244
				<autoports_out></autoports_out>
245
				<aliasports_out></aliasports_out>
246
				<autoaddr_out></autoaddr_out>
247
				<autonot_out></autonot_out>
248
				<aliasaddr_out></aliasaddr_out>
249
				<autoproto_out></autoproto_out>
250
				<agateway_out>default</agateway_out>
251
				<suppression_cidr>Disabled</suppression_cidr>
252
				<whois_convert></whois_convert>
253
				<custom></custom>
254
				<row>
255
					<format>auto</format>
256
					<state><![CDATA[Enabled]]></state>
257
					<url>https://raw.githubusercontent.com/clarketm/proxy-list/master/proxy-list-raw.txt</url>
258
					<header>Proxy</header>
259
				</row>
260
			</config>
261
			<config>
262
				<aliasname>PublicDNS</aliasname>
263
				<description><![CDATA[PublicDNS]]></description>
264
				<action>Disabled</action>
265
				<cron>Weekly</cron>
266
				<dow>1</dow>
267
				<sort>sort</sort>
268
				<aliaslog>enabled</aliaslog>
269
				<stateremoval><![CDATA[enabled]]></stateremoval>
270
				<autoaddrnot_in></autoaddrnot_in>
271
				<autoports_in></autoports_in>
272
				<aliasports_in></aliasports_in>
273
				<autoaddr_in></autoaddr_in>
274
				<autonot_in></autonot_in>
275
				<aliasaddr_in></aliasaddr_in>
276
				<autoproto_in></autoproto_in>
277
				<agateway_in>default</agateway_in>
278
				<autoaddrnot_out></autoaddrnot_out>
279
				<autoports_out></autoports_out>
280
				<aliasports_out></aliasports_out>
281
				<autoaddr_out></autoaddr_out>
282
				<autonot_out></autonot_out>
283
				<aliasaddr_out></aliasaddr_out>
284
				<autoproto_out></autoproto_out>
285
				<agateway_out>default</agateway_out>
286
				<suppression_cidr>Disabled</suppression_cidr>
287
				<whois_convert></whois_convert>
288
				<custom></custom>
289
				<row>
290
					<format>auto</format>
291
					<state><![CDATA[Enabled]]></state>
292
					<url>https://public-dns.info/nameservers.txt</url>
293
					<header>PublicDNS</header>
294
				</row>
295
			</config>
296
		</pfblockernglistsv4>
297
		<pfblockerngdnsblsettings>
298
			<config>
299
				<pfb_dnsbl>on</pfb_dnsbl>
300
				<pfb_tld></pfb_tld>
301
				<pfb_dnsvip>10.10.10.1</pfb_dnsvip>
302
				<pfb_dnsport>80</pfb_dnsport>
303
				<pfb_dnsport_ssl>443</pfb_dnsport_ssl>
304
				<dnsbl_interface>lan</dnsbl_interface>
305
				<pfb_dnsbl_rule>on</pfb_dnsbl_rule>
306
				<dnsbl_allow_int>lan</dnsbl_allow_int>
307
				<action>Alias_Deny</action>
308
				<aliaslog>enabled</aliaslog>
309
				<autoaddrnot_in></autoaddrnot_in>
310
				<autoports_in></autoports_in>
311
				<aliasports_in></aliasports_in>
312
				<autoaddr_in></autoaddr_in>
313
				<autonot_in></autonot_in>
314
				<aliasaddr_in></aliasaddr_in>
315
				<autoproto_in></autoproto_in>
316
				<agateway_in>default</agateway_in>
317
				<autoaddrnot_out></autoaddrnot_out>
318
				<autoports_out></autoports_out>
319
				<aliasports_out></aliasports_out>
320
				<autoaddr_out></autoaddr_out>
321
				<autonot_out></autonot_out>
322
				<aliasaddr_out></aliasaddr_out>
323
				<autoproto_out></autoproto_out>
324
				<agateway_out>default</agateway_out>
325
				<alexa_enable>on</alexa_enable>
326
				<alexa_count>2000</alexa_count>
327
				<alexa_inclusion>aero,com,gov,io,net,org,ru,su,xn--p1ai</alexa_inclusion>
328
				<suppression>Lm5ldGdhdGUuY29tDQoucGZzZW5zZS5vcmcNCi5zcGVyYXNvZnQuY29tDQoubm5tY2x1Yi50bw0KLmdpdGh1Yi5jb20NCi5naXRsYWIuY29tDQoubWVnYS5ueg0KYml0Lmx5DQpvZC5saw0KLm9wZW5kcml2ZS5jb20NCi5wYWNrZXRzdG9ybXNlY3VyaXR5Lm5ldA0KLm1lZGlhZmlyZS5jb20NCi5kcndlYi5jb20NCi5hdmcuY29tDQouYXZhc3QuY29tDQoua2FzcGVyc2t5LmNvbQ0KLmFkanVzdC5jb20NCi5za3lwZS5jb20NCi5tZWdhdXBsb2FkLm56DQpyLm1haWwucnUNCi5wYWxvYWx0b25ldHdvcmtzLmNvbQ0KLnRoZXBpcmF0ZWJheS5vcmcNCi53ZXRyYW5zZmVyLmNvbQ0KLmdpdGh1YnVzZXJjb250ZW50LmNvbQ0KLndpa2lwZWRpYS5vcmcNCi5taW1lY2FzdC5jb20NCi5wYXN0ZWJpbi5jb20NCi5zMy5hbWF6b25hd3MuY29tDQouczMtMS5hbWF6b25hd3MuY29tICMgQ05BTUUgZm9yIChzMy5hbWF6b25hd3MuY29tKQ0KLmRvY3MuZ29vZ2xlLmNvbQ0KZG9jcy5nb29nbGUuY29tDQouZHJpdmUuZ29vZ2xlLmNvbQ0KZHJpdmUuZ29vZ2xlLmNvbQ0KLmNvbHRhLnJ1</suppression>
329
				<tldexclusion></tldexclusion>
330
				<tldblacklist></tldblacklist>
331
				<tldwhitelist></tldwhitelist>
332
				<pfb_dnsvip_type>ipalias</pfb_dnsvip_type>
333
				<pfb_dnsvip_pass></pfb_dnsvip_pass>
334
				<dnsbl_webpage>dnsbl_default.php</dnsbl_webpage>
335
				<pfb_dnsbl_sync>on</pfb_dnsbl_sync>
336
				<alexa_type>tranco</alexa_type>
337
				<pfb_dnsblv6></pfb_dnsblv6>
338
				<pfb_cache>on</pfb_cache>
339
				<dnsbl_mode>dnsbl_unbound</dnsbl_mode>
340
				<pfb_py_reply>on</pfb_py_reply>
341
				<pfb_py_block>on</pfb_py_block>
342
				<pfb_hsts>on</pfb_hsts>
343
				<pfb_idn></pfb_idn>
344
				<pfb_regex></pfb_regex>
345
				<pfb_cname>on</pfb_cname>
346
				<pfb_regex_list></pfb_regex_list>
347
				<pfb_pytld></pfb_pytld>
348
				<pfb_pytld_sort></pfb_pytld_sort>
349
				<pfb_py_nolog>on</pfb_py_nolog>
350
				<pfb_pytlds_gtld>arpa,int,com,net,org,edu,int</pfb_pytlds_gtld>
351
				<pfb_pytlds_cctld></pfb_pytlds_cctld>
352
				<pfb_pytlds_itld></pfb_pytlds_itld>
353
				<pfb_pytlds_bgtld></pfb_pytlds_bgtld>
354
				<blacklist></blacklist>
355
				<pfb_noaaaa></pfb_noaaaa>
356
				<pfb_noaaaa_list></pfb_noaaaa_list>
357
				<pfb_gp></pfb_gp>
358
				<pfb_gp_bypass_list></pfb_gp_bypass_list>
359
				<pfb_control></pfb_control>
360
				<global_log></global_log>
361
			</config>
362
		</pfblockerngdnsblsettings>
363
		<pfblockerngdnsbl>
364
			<config>
365
				<aliasname>ADs</aliasname>
366
				<description><![CDATA[ADs - Collection of ADvertisement Domain Feeds.]]></description>
367
				<action>unbound</action>
368
				<cron>EveryDay</cron>
369
				<dow>1</dow>
370
				<sort>sort</sort>
371
				<logging>enabled</logging>
372
				<order>primary</order>
373
				<filter_alexa></filter_alexa>
374
				<custom></custom>
375
				<row>
376
					<format>auto</format>
377
					<state><![CDATA[Enabled]]></state>
378
					<url>https://adaway.org/hosts.txt</url>
379
					<header>Adaway</header>
380
				</row>
381
				<row>
382
					<format>auto</format>
383
					<state><![CDATA[Enabled]]></state>
384
					<url>https://s3.amazonaws.com/lists.disconnect.me/simple_ad.txt</url>
385
					<header>D_Me_ADs</header>
386
				</row>
387
				<row>
388
					<format>auto</format>
389
					<state><![CDATA[Enabled]]></state>
390
					<url>https://s3.amazonaws.com/lists.disconnect.me/simple_tracking.txt</url>
391
					<header>D_Me_Tracking</header>
392
				</row>
393
				<row>
394
					<format>auto</format>
395
					<state><![CDATA[Enabled]]></state>
396
					<url>https://pgl.yoyo.org/adservers/serverlist.php?hostformat=nohtml</url>
397
					<header>Yoyo</header>
398
				</row>
399
				<row>
400
					<format>auto</format>
401
					<state><![CDATA[Enabled]]></state>
402
					<url>https://easylist-downloads.adblockplus.org/easyprivacy.txt</url>
403
					<header>EasyPrivacy</header>
404
				</row>
405
				<row>
406
					<format>auto</format>
407
					<state><![CDATA[Enabled]]></state>
408
					<url>https://easylist-downloads.adblockplus.org/advblock.txt</url>
409
					<header>EasyList_Russian</header>
410
				</row>
411
				<row>
412
					<format>auto</format>
413
					<state><![CDATA[Enabled]]></state>
414
					<url>https://easylist-downloads.adblockplus.org/easylist_noelemhide.txt</url>
415
					<header>EasyList</header>
416
				</row>
417
			</config>
418
			<config>
419
				<aliasname>Cryptojackers</aliasname>
420
				<description><![CDATA[Cryptojackers - Collection of Malicious Domain crypto mining Feeds]]></description>
421
				<action>unbound</action>
422
				<cron>EveryDay</cron>
423
				<dow>1</dow>
424
				<sort>sort</sort>
425
				<logging>enabled</logging>
426
				<order>default</order>
427
				<filter_alexa>on</filter_alexa>
428
				<custom></custom>
429
				<row>
430
					<format>auto</format>
431
					<state><![CDATA[Enabled]]></state>
432
					<url>https://zerodot1.gitlab.io/CoinBlockerLists/list.txt</url>
433
					<header>CoinBlocker_All</header>
434
				</row>
435
				<row>
436
					<format>auto</format>
437
					<state><![CDATA[Enabled]]></state>
438
					<url>https://zerodot1.gitlab.io/CoinBlockerLists/list_optional.txt</url>
439
					<header>CoinBlocker_Opt</header>
440
				</row>
441
				<row>
442
					<format>auto</format>
443
					<state><![CDATA[Enabled]]></state>
444
					<url>https://raw.githubusercontent.com/hoshsadiq/adblock-nocoin-list/master/hosts.txt</url>
445
					<header>NoCoin</header>
446
				</row>
447
			</config>
448
			<config>
449
				<aliasname>Phishing</aliasname>
450
				<description><![CDATA[Phishing - Collection of Phishing Domain Feeds.]]></description>
451
				<action>unbound</action>
452
				<cron>EveryDay</cron>
453
				<dow>1</dow>
454
				<sort>sort</sort>
455
				<logging>enabled</logging>
456
				<order>default</order>
457
				<filter_alexa>on</filter_alexa>
458
				<custom></custom>
459
				<row>
460
					<format>auto</format>
461
					<state><![CDATA[Enabled]]></state>
462
					<url>https://urlhaus.abuse.ch/downloads/text/</url>
463
					<header>Abuse_urlhaus</header>
464
				</row>
465
				<row>
466
					<format>auto</format>
467
					<state><![CDATA[Enabled]]></state>
468
					<url>https://openphish.com/feed.txt</url>
469
					<header>OpenPhish</header>
470
				</row>
471
			</config>
472
			<config>
473
				<aliasname>Malicious2</aliasname>
474
				<description><![CDATA[Malicious2 - Collection of Feeds from Secondary Tier providers.]]></description>
475
				<action>unbound</action>
476
				<cron>EveryDay</cron>
477
				<dow>1</dow>
478
				<sort>sort</sort>
479
				<logging>enabled</logging>
480
				<order>default</order>
481
				<filter_alexa>on</filter_alexa>
482
				<custom></custom>
483
				<row>
484
					<format>auto</format>
485
					<state><![CDATA[Enabled]]></state>
486
					<url>https://kriskintel.com/ktip_domain_blacklist.txt</url>
487
					<header>Krisk_Intel_BD</header>
488
				</row>
489
				<row>
490
					<format>auto</format>
491
					<state><![CDATA[Enabled]]></state>
492
					<url>https://kriskintel.com/ktip_maze.txt</url>
493
					<header>Krisk_Intel_Maze</header>
494
				</row>
495
				<row>
496
					<format>auto</format>
497
					<state><![CDATA[Enabled]]></state>
498
					<url>https://kriskintel.com/ktip_corona.txt</url>
499
					<header>Krisk_Corona_Phishing</header>
500
				</row>
501
			</config>
502
			<config>
503
				<aliasname>Malicious</aliasname>
504
				<description><![CDATA[Malicious - Collection of Malicious Domain Feeds.]]></description>
505
				<action>unbound</action>
506
				<cron>EveryDay</cron>
507
				<dow>1</dow>
508
				<sort>sort</sort>
509
				<logging>enabled</logging>
510
				<order>default</order>
511
				<filter_alexa>on</filter_alexa>
512
				<custom></custom>
513
				<row>
514
					<format>auto</format>
515
					<state><![CDATA[Enabled]]></state>
516
					<url>https://www.malwaredomainlist.com/hostslist/hosts.txt</url>
517
					<header>MDL</header>
518
				</row>
519
				<row>
520
					<format>auto</format>
521
					<state><![CDATA[Enabled]]></state>
522
					<url>https://s3.amazonaws.com/lists.disconnect.me/simple_malware.txt</url>
523
					<header>D_Me_Malw</header>
524
				</row>
525
			</config>
526
			<config>
527
				<aliasname>DOH</aliasname>
528
				<description><![CDATA[DOH - DNS over HTTPS]]></description>
529
				<action>unbound</action>
530
				<cron>EveryDay</cron>
531
				<dow>1</dow>
532
				<sort>sort</sort>
533
				<logging>enabled</logging>
534
				<order>default</order>
535
				<filter_alexa></filter_alexa>
536
				<custom></custom>
537
				<row>
538
					<format>auto</format>
539
					<state><![CDATA[Enabled]]></state>
540
					<url>https://raw.githubusercontent.com/oneoffdallas/dohservers/master/list.txt</url>
541
					<header>Oneoffdallas_DOH</header>
542
				</row>
543
				<row>
544
					<format>auto</format>
545
					<state><![CDATA[Enabled]]></state>
546
					<url>https://raw.githubusercontent.com/Sekhan/TheGreatWall/master/TheGreatWall.txt</url>
547
					<header>TheGreatWall_DoH</header>
548
				</row>
549
			</config>
550
			<config>
551
				<aliasname>Compilation</aliasname>
552
				<description><![CDATA[Compilation - feeds that aggregate other feeds]]></description>
553
				<action>unbound</action>
554
				<cron>EveryDay</cron>
555
				<dow>1</dow>
556
				<sort>sort</sort>
557
				<logging>enabled</logging>
558
				<order>default</order>
559
				<filter_alexa>on</filter_alexa>
560
				<custom></custom>
561
				<row>
562
					<format>auto</format>
563
					<state><![CDATA[Disabled]]></state>
564
					<url>https://dbl.oisd.nl/</url>
565
					<header>OISD</header>
566
				</row>
567
				<row>
568
					<format>auto</format>
569
					<state><![CDATA[Enabled]]></state>
570
					<url>https://phishing.army/download/phishing_army_blocklist.txt</url>
571
					<header>PhishingArmy</header>
572
				</row>
573
			</config>
574
			<config>
575
				<aliasname>Firebog_Trackers</aliasname>
576
				<description><![CDATA[Places that track you.]]></description>
577
				<action>unbound</action>
578
				<cron>EveryDay</cron>
579
				<dow>1</dow>
580
				<sort>sort</sort>
581
				<logging>enabled</logging>
582
				<order>default</order>
583
				<filter_alexa>on</filter_alexa>
584
				<custom></custom>
585
				<row>
586
					<format>auto</format>
587
					<state><![CDATA[Enabled]]></state>
588
					<url>https://raw.githubusercontent.com/FadeMind/hosts.extras/master/add.2o7Net/hosts</url>
589
					<header>Fademind_2o7</header>
590
				</row>
591
				<row>
592
					<format>auto</format>
593
					<state><![CDATA[Enabled]]></state>
594
					<url>https://raw.githubusercontent.com/Perflyst/PiHoleBlocklist/master/android-tracking.txt</url>
595
					<header>Perflyst_Android</header>
596
				</row>
597
				<row>
598
					<format>auto</format>
599
					<state><![CDATA[Enabled]]></state>
600
					<url>https://raw.githubusercontent.com/Perflyst/PiHoleBlocklist/master/SmartTV.txt</url>
601
					<header>Perflyst_TV</header>
602
				</row>
603
				<row>
604
					<format>auto</format>
605
					<state><![CDATA[Enabled]]></state>
606
					<url>https://raw.githubusercontent.com/Perflyst/PiHoleBlocklist/master/AmazonFireTV.txt</url>
607
					<header>Perflyst_FireTV</header>
608
				</row>
609
			</config>
610
			<config>
611
				<aliasname>Firebog_Advertising</aliasname>
612
				<description><![CDATA[Waste of bandwith trying to sell stuff.]]></description>
613
				<action>unbound</action>
614
				<cron>EveryDay</cron>
615
				<dow>1</dow>
616
				<sort>sort</sort>
617
				<logging>enabled</logging>
618
				<order>default</order>
619
				<filter_alexa></filter_alexa>
620
				<custom></custom>
621
				<row>
622
					<format>auto</format>
623
					<state><![CDATA[Enabled]]></state>
624
					<url>https://raw.githubusercontent.com/jdlingyu/ad-wars/master/hosts</url>
625
					<header>Ad_Wars</header>
626
				</row>
627
				<row>
628
					<format>auto</format>
629
					<state><![CDATA[Enabled]]></state>
630
					<url>https://raw.githubusercontent.com/anudeepND/blacklist/master/adservers.txt</url>
631
					<header>Anudeep_BL</header>
632
				</row>
633
				<row>
634
					<format>auto</format>
635
					<state><![CDATA[Enabled]]></state>
636
					<url>https://raw.githubusercontent.com/bigdargon/hostsVN/master/hosts</url>
637
					<header>hostsVN</header>
638
				</row>
639
				<row>
640
					<format>auto</format>
641
					<state><![CDATA[Enabled]]></state>
642
					<url>https://raw.githubusercontent.com/FadeMind/hosts.extras/master/UncheckyAds/hosts</url>
643
					<header>Fademinds</header>
644
				</row>
645
			</config>
646
			<config>
647
				<aliasname>Firebog_Malicious</aliasname>
648
				<description><![CDATA[Bad places.]]></description>
649
				<action>unbound</action>
650
				<cron>EveryDay</cron>
651
				<dow>1</dow>
652
				<sort>sort</sort>
653
				<logging>enabled</logging>
654
				<order>default</order>
655
				<filter_alexa></filter_alexa>
656
				<custom></custom>
657
				<row>
658
					<format>auto</format>
659
					<state><![CDATA[Enabled]]></state>
660
					<url>https://urlhaus.abuse.ch/downloads/hostfile/</url>
661
					<header>URLhaus_Mal</header>
662
				</row>
663
			</config>
664
		</pfblockerngdnsbl>
665
		<pfblockerngipsettings>
666
			<config>
667
				<enable_dup>on</enable_dup>
668
				<enable_agg>on</enable_agg>
669
				<suppression>on</suppression>
670
				<enable_log></enable_log>
671
				<maxmind_locale>en</maxmind_locale>
672
				<database_cc></database_cc>
673
				<inbound_interface>wan</inbound_interface>
674
				<inbound_deny_action>block</inbound_deny_action>
675
				<outbound_interface>lan</outbound_interface>
676
				<outbound_deny_action>reject</outbound_deny_action>
677
				<enable_float></enable_float>
678
				<pass_order>order_0</pass_order>
679
				<autorule_suffix>autorule</autorule_suffix>
680
				<killstates>on</killstates>
681
				<ip_placeholder>127.1.7.7</ip_placeholder>
682
				<asn_reporting>24hour</asn_reporting>
683
				<v4suppression>MTk1Ljg4LjI1Mi4wLzI0DQoxOTUuODguMjUzLjAvMjQNCjc3Ljg4LjguNzgvMzINCjE5Mi4zMC4yNTMuMTEyLzMyDQo=</v4suppression>
684
				<maxmind_key>xxxxx</maxmind_key>
685
			</config>
686
		</pfblockerngipsettings>
687
		<pfblockerngreputation>
688
			<config></config>
689
		</pfblockerngreputation>
690
		<pfblockerngglobal>
691
			<alertrefresh>on</alertrefresh>
692
			<pfbextdns>77.88.8.8</pfbextdns>
693
			<pfbreplytypes></pfbreplytypes>
694
			<pfbreplyrec></pfbreplyrec>
695
			<uniblock>#FFF9C4</uniblock>
696
			<unipermit>#80CBC4</unipermit>
697
			<unimatch>#B3E5FC</unimatch>
698
			<unidnsbl>#EF9A9A</unidnsbl>
699
			<unireply>#E8E8E8</unireply>
700
			<uniblock2>#83791D</uniblock2>
701
			<unipermit2>#3B8780</unipermit2>
702
			<unimatch2>#42809D</unimatch2>
703
			<unidnsbl2>#E84E4E</unidnsbl2>
704
			<unireply2>#54585E</unireply2>
705
			<pfbchartcnt>24</pfbchartcnt>
706
			<pfbchartstyle>twotone</pfbchartstyle>
707
			<pfbchart1>#0C6197</pfbchart1>
708
			<pfbchart2>#7A7A7A</pfbchart2>
709
			<pfbpageload>unified</pfbpageload>
710
			<pfbmaxtable>1000</pfbmaxtable>
711
			<pfbblockstat></pfbblockstat>
712
			<pfbpermitstat></pfbpermitstat>
713
			<pfbmatchstat></pfbmatchstat>
714
			<pfbdnsblstat></pfbdnsblstat>
715
			<pfbdnsblreplystat></pfbdnsblreplystat>
716
			<pfbunicnt>200</pfbunicnt>
717
			<pfbdenycnt>25</pfbdenycnt>
718
			<pfbpermitcnt>25</pfbpermitcnt>
719
			<pfbmatchcnt>25</pfbmatchcnt>
720
			<pfbdnscnt>25</pfbdnscnt>
721
			<pfbdnsreplycnt>200</pfbdnsreplycnt>
722
			<ipfilterlimitentries>100</ipfilterlimitentries>
723
			<dnsblfilterlimitentries>100</dnsblfilterlimitentries>
724
			<dnsfilterlimitentries>100</dnsfilterlimitentries>
725
		</pfblockerngglobal>
726
		<pfblockernglistsv6>
727
			<config>
728
				<aliasname>PRI1_6</aliasname>
729
				<description><![CDATA[PRI1_6 - collection of IPv6 Feeds from the most reputable blocklist providers.]]></description>
730
				<action>Disabled</action>
731
				<cron>Weekly</cron>
732
				<dow>1</dow>
733
				<sort>sort</sort>
734
				<aliaslog>enabled</aliaslog>
735
				<stateremoval><![CDATA[enabled]]></stateremoval>
736
				<autoaddrnot_in></autoaddrnot_in>
737
				<autoports_in></autoports_in>
738
				<aliasports_in></aliasports_in>
739
				<autoaddr_in></autoaddr_in>
740
				<autonot_in></autonot_in>
741
				<aliasaddr_in></aliasaddr_in>
742
				<autoproto_in></autoproto_in>
743
				<agateway_in>default</agateway_in>
744
				<autoaddrnot_out></autoaddrnot_out>
745
				<autoports_out></autoports_out>
746
				<aliasports_out></aliasports_out>
747
				<autoaddr_out></autoaddr_out>
748
				<autonot_out></autonot_out>
749
				<aliasaddr_out></aliasaddr_out>
750
				<autoproto_out></autoproto_out>
751
				<agateway_out>default</agateway_out>
752
				<suppression_cidr>Disabled</suppression_cidr>
753
				<whois_convert></whois_convert>
754
				<custom></custom>
755
				<row>
756
					<format>auto</format>
757
					<state><![CDATA[Disabled]]></state>
758
					<url>https://raw.githubusercontent.com/dyne/dnscrypt-proxy/master/dnscrypt-resolvers.csv</url>
759
					<header>DNSCrypt</header>
760
				</row>
761
				<row>
762
					<format>auto</format>
763
					<state><![CDATA[Disabled]]></state>
764
					<url>https://public-dns.info/nameservers.txt</url>
765
					<header>publicdns</header>
766
				</row>
767
				<row>
768
					<format>auto</format>
769
					<state><![CDATA[Enabled]]></state>
770
					<url>https://www.spamhaus.org/drop/dropv6.txt</url>
771
					<header>Spamhaus_Drop6</header>
772
				</row>
773
				<row>
774
					<format>auto</format>
775
					<state><![CDATA[Disabled]]></state>
776
					<url>https://raw.githubusercontent.com/ejrv/VPNs/master/vpn-ipv6.txt</url>
777
					<header>VPNs</header>
778
				</row>
779
			</config>
780
		</pfblockernglistsv6>
781
		<pfblockerngtopspammers>
782
			<config>
783
				<action>Disabled</action>
784
				<aliaslog>enabled</aliaslog>
785
			</config>
786
		</pfblockerngtopspammers>
787
		<pfblockerngafrica>
788
			<config>
789
				<action>Disabled</action>
790
				<aliaslog>enabled</aliaslog>
791
			</config>
792
		</pfblockerngafrica>
793
		<pfblockerngantarctica>
794
			<config>
795
				<action>Disabled</action>
796
				<aliaslog>enabled</aliaslog>
797
			</config>
798
		</pfblockerngantarctica>
799
		<pfblockerngasia>
800
			<config>
801
				<action>Disabled</action>
802
				<aliaslog>enabled</aliaslog>
803
			</config>
804
		</pfblockerngasia>
805
		<pfblockerngeurope>
806
			<config>
807
				<action>Disabled</action>
808
				<aliaslog>enabled</aliaslog>
809
			</config>
810
		</pfblockerngeurope>
811
		<pfblockerngnorthamerica>
812
			<config>
813
				<action>Disabled</action>
814
				<aliaslog>enabled</aliaslog>
815
			</config>
816
		</pfblockerngnorthamerica>
817
		<pfblockerngoceania>
818
			<config>
819
				<action>Disabled</action>
820
				<aliaslog>enabled</aliaslog>
821
			</config>
822
		</pfblockerngoceania>
823
		<pfblockerngsouthamerica>
824
			<config>
825
				<action>Disabled</action>
826
				<aliaslog>enabled</aliaslog>
827
			</config>
828
		</pfblockerngsouthamerica>
829
		<pfblockerngproxyandsatellite>
830
			<config>
831
				<action>Alias_Native</action>
832
				<aliaslog>enabled</aliaslog>
833
			</config>
834
		</pfblockerngproxyandsatellite>
835
		<pfblockerngsafesearch>
836
			<safesearch_enable>Disable</safesearch_enable>
837
			<safesearch_youtube>Disable</safesearch_youtube>
838
			<safesearch_doh>Enable</safesearch_doh>
839
			<safesearch_doh_list>use-application-dns.net,cloudflare-dns.com,security.cloudflare-dns.com,family.cloudflare-dns.com,dns.google,doh.dns.apple.com,doh.opendns.com,doh.familyshield.opendns.com,dns.quad9.net,dns9.quad9.net,dns10.quad9.net,dns11.quad9.net,dns.adguard.com,dns-unfiltered.adguard.com,dns-family.adguard.com,doh.cleanbrowsing.org,security-filter-dns.cleanbrowsing.org,family-filter-dns.cleanbrowsing.org,adult-filter-dns.cleanbrowsing.org,dns.switch.ch,dns.comss.one,dns.east.comss.one,private.canadianshield.cira.ca,protected.canadianshield.cira.ca,family.canadianshield.cira.ca,doh-fi.blahdns.com,doh-jp.blahdns.com,doh-de.blahdns.com,fi.doh.dns.snopyta.org,dns-doh.dnsforfamily.com,odvr.nic.cz,dns.alidns.com,dns.cfiec.net,asia.dnscepat.id,eropa.dnscepat.id,doh.360.cn,public.dns.iij.jp,doh.pub,dns.twnic.tw,doh.tiarap.org,doh.tiar.app,dot.tiar.app,jp.tiarap.org,jp.tiar.app,dns.oszx.co,dns.pumplex.com,doh.applied-privacy.net,dot1.applied-privacy.net,dns.decloudus.com,resolver-eu.lelux.fi,doh.dns.sb,dnsforge.de,kaitain.restena.lu,doh.ffmuc.net,dns.digitale-gesellschaft.ch,doh.libredns.gr,ibksturm.synology.me,getdnsapi.net,dnsovertls.sinodun.com,dnsovertls1.sinodun.com,unicast.censurfridns.dk,anycast.censurfridns.dk,dns.cmrg.net,dns.larsdebruin.net,dns-tls.bitwiseshift.net,ns1.dnsprivacy.at,ns2.dnsprivacy.at,dns.bitgeek.in,dns.neutopia.org,privacydns.go6lab.si,dot.securedns.eu,dnsotls.lab.nic.cl,tls-dns-u.odvr.dns-oarc.net,doh.centraleu.pi-dns.com,dot.centraleu.pi-dns.com,doh.northeu.pi-dns.com,dot.northeu.pi-dns.com,doh.westus.pi-dns.com,dot.westus.pi-dns.com,doh.eastus.pi-dns.com,dot.eastus.pi-dns.com,doh.eastau.pi-dns.com,dot.eastau.pi-dns.com,doh.eastas.pi-dns.com,dot.eastas.pi-dns.com,doh.pi-dns.com,dot.seby.io,doh-2.seby.io,doh.dnslify.com</safesearch_doh_list>
840
		</pfblockerngsafesearch>
841
		<pfblockerngblacklist>
842
			<blacklist_enable>Disable</blacklist_enable>
843
			<blacklist_lang>EN</blacklist_lang>
844
			<blacklist_selected>shallalist</blacklist_selected>
845
			<blacklist_freq>Never</blacklist_freq>
846
			<blacklist_logging>enabled</blacklist_logging>
847
			<item>
848
				<title>Shallalist</title>
849
				<xml>shallalist</xml>
850
				<feed>http://www.shallalist.de/Downloads/shallalist.tar.gz</feed>
851
				<size>10</size>
852
				<selected>anonvpn,dating,gamble,porn,ringtones,spyware</selected>
853
			</item>
854
			<item>
855
				<title>UT1</title>
856
				<xml>ut1</xml>
857
				<feed>ftp://ftp.ut-capitole.fr/pub/reseau/cache/squidguard_contrib/blacklists.tar.gz</feed>
858
				<size>8.5</size>
859
				<selected></selected>
860
			</item>
861
		</pfblockerngblacklist>
    (1-1/1)