1
|
<pfblockerng>
|
2
|
<config>
|
3
|
<enable_cb>on</enable_cb>
|
4
|
<pfb_keep>on</pfb_keep>
|
5
|
<pfb_interval>1</pfb_interval>
|
6
|
<pfb_min></pfb_min>
|
7
|
<pfb_hour></pfb_hour>
|
8
|
<pfb_dailystart></pfb_dailystart>
|
9
|
<skipfeed></skipfeed>
|
10
|
<credits></credits>
|
11
|
<pfb_reuse></pfb_reuse>
|
12
|
<log_max_log>20000</log_max_log>
|
13
|
<log_max_errlog>20000</log_max_errlog>
|
14
|
<log_max_extraslog>20000</log_max_extraslog>
|
15
|
<log_max_ip_blocklog>20000</log_max_ip_blocklog>
|
16
|
<log_max_ip_permitlog>20000</log_max_ip_permitlog>
|
17
|
<log_max_ip_matchlog>20000</log_max_ip_matchlog>
|
18
|
<log_max_dnslog>20000</log_max_dnslog>
|
19
|
<log_max_dnsbl_parse_err>20000</log_max_dnsbl_parse_err>
|
20
|
<log_max_dnsreplylog>20000</log_max_dnsreplylog>
|
21
|
<log_max_unilog>20000</log_max_unilog>
|
22
|
</config>
|
23
|
</pfblockerng>
|
24
|
<pfblockernglistsv4>
|
25
|
<config>
|
26
|
<aliasname>o365</aliasname>
|
27
|
<description><![CDATA[office365]]></description>
|
28
|
<row>
|
29
|
<format>regex</format>
|
30
|
<state><![CDATA[Enabled]]></state>
|
31
|
<url>https://endpoints.office.com/endpoints/worldwide?noipv6&ClientRequestId=b10c5ed1-bad1-445f-b386-b919946339a7</url>
|
32
|
<header>o365</header>
|
33
|
</row>
|
34
|
<action>Alias_Native</action>
|
35
|
<cron>EveryDay</cron>
|
36
|
<dow>1</dow>
|
37
|
<aliaslog>enabled</aliaslog>
|
38
|
<stateremoval><![CDATA[enabled]]></stateremoval>
|
39
|
<autoaddrnot_in></autoaddrnot_in>
|
40
|
<autoports_in></autoports_in>
|
41
|
<aliasports_in></aliasports_in>
|
42
|
<autoaddr_in></autoaddr_in>
|
43
|
<autonot_in></autonot_in>
|
44
|
<aliasaddr_in></aliasaddr_in>
|
45
|
<autoproto_in></autoproto_in>
|
46
|
<agateway_in>default</agateway_in>
|
47
|
<autoaddrnot_out></autoaddrnot_out>
|
48
|
<autoports_out></autoports_out>
|
49
|
<aliasports_out></aliasports_out>
|
50
|
<autoaddr_out></autoaddr_out>
|
51
|
<autonot_out></autonot_out>
|
52
|
<aliasaddr_out></aliasaddr_out>
|
53
|
<autoproto_out></autoproto_out>
|
54
|
<agateway_out>default</agateway_out>
|
55
|
<whois_convert></whois_convert>
|
56
|
<custom></custom>
|
57
|
<custom_update>disabled</custom_update>
|
58
|
<sort>sort</sort>
|
59
|
<suppression_cidr>Disabled</suppression_cidr>
|
60
|
</config>
|
61
|
<config>
|
62
|
<aliasname>PRI1</aliasname>
|
63
|
<description><![CDATA[PRI1 - Collection of Feeds from the most reputable blocklist providers. (Primary tier)]]></description>
|
64
|
<action>Alias_Native</action>
|
65
|
<cron>EveryDay</cron>
|
66
|
<dow>1</dow>
|
67
|
<sort>sort</sort>
|
68
|
<aliaslog>enabled</aliaslog>
|
69
|
<stateremoval><![CDATA[enabled]]></stateremoval>
|
70
|
<autoaddrnot_in></autoaddrnot_in>
|
71
|
<autoports_in></autoports_in>
|
72
|
<aliasports_in></aliasports_in>
|
73
|
<autoaddr_in></autoaddr_in>
|
74
|
<autonot_in></autonot_in>
|
75
|
<aliasaddr_in></aliasaddr_in>
|
76
|
<autoproto_in></autoproto_in>
|
77
|
<agateway_in>default</agateway_in>
|
78
|
<autoaddrnot_out></autoaddrnot_out>
|
79
|
<autoports_out></autoports_out>
|
80
|
<aliasports_out></aliasports_out>
|
81
|
<autoaddr_out></autoaddr_out>
|
82
|
<autonot_out></autonot_out>
|
83
|
<aliasaddr_out></aliasaddr_out>
|
84
|
<autoproto_out></autoproto_out>
|
85
|
<agateway_out>default</agateway_out>
|
86
|
<suppression_cidr>Disabled</suppression_cidr>
|
87
|
<whois_convert></whois_convert>
|
88
|
<custom></custom>
|
89
|
<row>
|
90
|
<format>auto</format>
|
91
|
<state><![CDATA[Enabled]]></state>
|
92
|
<url>https://feodotracker.abuse.ch/downloads/ipblocklist.txt</url>
|
93
|
<header>Abuse_Feodo_C2</header>
|
94
|
</row>
|
95
|
<row>
|
96
|
<format>auto</format>
|
97
|
<state><![CDATA[Enabled]]></state>
|
98
|
<url>https://ransomwaretracker.abuse.ch/downloads/RW_IPBL.txt</url>
|
99
|
<header>Abuse_IPBL</header>
|
100
|
</row>
|
101
|
<row>
|
102
|
<format>auto</format>
|
103
|
<state><![CDATA[Enabled]]></state>
|
104
|
<url>https://sslbl.abuse.ch/blacklist/sslipblacklist.txt</url>
|
105
|
<header>Abuse_SSLBL</header>
|
106
|
</row>
|
107
|
<row>
|
108
|
<format>auto</format>
|
109
|
<state><![CDATA[Enabled]]></state>
|
110
|
<url>https://talosintelligence.com/documents/ip-blacklist</url>
|
111
|
<header>Talos_BL</header>
|
112
|
</row>
|
113
|
<row>
|
114
|
<format>auto</format>
|
115
|
<state><![CDATA[Disabled]]></state>
|
116
|
<url>https://gist.githubusercontent.com/BBcan177/bf29d47ea04391cb3eb0/raw</url>
|
117
|
<header>BBcan177</header>
|
118
|
</row>
|
119
|
<row>
|
120
|
<format>auto</format>
|
121
|
<state><![CDATA[Disabled]]></state>
|
122
|
<url>https://raw.githubusercontent.com/dyne/dnscrypt-proxy/master/dnscrypt-resolvers.csv</url>
|
123
|
<header>DNSCrypt</header>
|
124
|
</row>
|
125
|
<row>
|
126
|
<format>auto</format>
|
127
|
<state><![CDATA[Disabled]]></state>
|
128
|
<url>https://raw.githubusercontent.com/stamparm/ipsum/master/levels/4.txt</url>
|
129
|
<header>ipsum</header>
|
130
|
</row>
|
131
|
<row>
|
132
|
<format>auto</format>
|
133
|
<state><![CDATA[Disabled]]></state>
|
134
|
<url>https://raw.githubusercontent.com/clarketm/proxy-list/master/proxy-list-raw.txt</url>
|
135
|
<header>proxylist</header>
|
136
|
</row>
|
137
|
<row>
|
138
|
<format>auto</format>
|
139
|
<state><![CDATA[Disabled]]></state>
|
140
|
<url>https://public-dns.info/nameservers.txt</url>
|
141
|
<header>publicdns</header>
|
142
|
</row>
|
143
|
<row>
|
144
|
<format>auto</format>
|
145
|
<state><![CDATA[Disabled]]></state>
|
146
|
<url>https://raw.githubusercontent.com/ejrv/VPNs/master/vpns-without-datacenters.txt</url>
|
147
|
<header>VPNs</header>
|
148
|
</row>
|
149
|
<row>
|
150
|
<format>auto</format>
|
151
|
<state><![CDATA[Enabled]]></state>
|
152
|
<url>https://raw.githubusercontent.com/Sekhan/TheGreatWall/master/TheGreatWall_ipv4</url>
|
153
|
<header>GreatWallDoH</header>
|
154
|
</row>
|
155
|
</config>
|
156
|
<config>
|
157
|
<aliasname>VPN</aliasname>
|
158
|
<description><![CDATA[VPN]]></description>
|
159
|
<action>Disabled</action>
|
160
|
<cron>Weekly</cron>
|
161
|
<dow>1</dow>
|
162
|
<sort>sort</sort>
|
163
|
<aliaslog>enabled</aliaslog>
|
164
|
<stateremoval><![CDATA[enabled]]></stateremoval>
|
165
|
<autoaddrnot_in></autoaddrnot_in>
|
166
|
<autoports_in></autoports_in>
|
167
|
<aliasports_in></aliasports_in>
|
168
|
<autoaddr_in></autoaddr_in>
|
169
|
<autonot_in></autonot_in>
|
170
|
<aliasaddr_in></aliasaddr_in>
|
171
|
<autoproto_in></autoproto_in>
|
172
|
<agateway_in>default</agateway_in>
|
173
|
<autoaddrnot_out></autoaddrnot_out>
|
174
|
<autoports_out></autoports_out>
|
175
|
<aliasports_out></aliasports_out>
|
176
|
<autoaddr_out></autoaddr_out>
|
177
|
<autonot_out></autonot_out>
|
178
|
<aliasaddr_out></aliasaddr_out>
|
179
|
<autoproto_out></autoproto_out>
|
180
|
<agateway_out>default</agateway_out>
|
181
|
<suppression_cidr>Disabled</suppression_cidr>
|
182
|
<whois_convert></whois_convert>
|
183
|
<custom></custom>
|
184
|
<row>
|
185
|
<format>auto</format>
|
186
|
<state><![CDATA[Enabled]]></state>
|
187
|
<url>https://raw.githubusercontent.com/ejrv/VPNs/master/vpn-ipv4.txt</url>
|
188
|
<header>VPNv4</header>
|
189
|
</row>
|
190
|
</config>
|
191
|
<config>
|
192
|
<aliasname>DNSCrypt</aliasname>
|
193
|
<description><![CDATA[DNSCrypt]]></description>
|
194
|
<action>Disabled</action>
|
195
|
<cron>Weekly</cron>
|
196
|
<dow>1</dow>
|
197
|
<sort>sort</sort>
|
198
|
<aliaslog>enabled</aliaslog>
|
199
|
<stateremoval><![CDATA[enabled]]></stateremoval>
|
200
|
<autoaddrnot_in></autoaddrnot_in>
|
201
|
<autoports_in></autoports_in>
|
202
|
<aliasports_in></aliasports_in>
|
203
|
<autoaddr_in></autoaddr_in>
|
204
|
<autonot_in></autonot_in>
|
205
|
<aliasaddr_in></aliasaddr_in>
|
206
|
<autoproto_in></autoproto_in>
|
207
|
<agateway_in>default</agateway_in>
|
208
|
<autoaddrnot_out></autoaddrnot_out>
|
209
|
<autoports_out></autoports_out>
|
210
|
<aliasports_out></aliasports_out>
|
211
|
<autoaddr_out></autoaddr_out>
|
212
|
<autonot_out></autonot_out>
|
213
|
<aliasaddr_out></aliasaddr_out>
|
214
|
<autoproto_out></autoproto_out>
|
215
|
<agateway_out>default</agateway_out>
|
216
|
<suppression_cidr>Disabled</suppression_cidr>
|
217
|
<whois_convert></whois_convert>
|
218
|
<custom></custom>
|
219
|
<row>
|
220
|
<format>auto</format>
|
221
|
<state><![CDATA[Enabled]]></state>
|
222
|
<url>https://raw.githubusercontent.com/dyne/dnscrypt-proxy/master/dnscrypt-resolvers.csv</url>
|
223
|
<header>DNSCrypt</header>
|
224
|
</row>
|
225
|
</config>
|
226
|
<config>
|
227
|
<aliasname>Proxy</aliasname>
|
228
|
<description><![CDATA[Proxy]]></description>
|
229
|
<action>Disabled</action>
|
230
|
<cron>Weekly</cron>
|
231
|
<dow>1</dow>
|
232
|
<sort>sort</sort>
|
233
|
<aliaslog>enabled</aliaslog>
|
234
|
<stateremoval><![CDATA[enabled]]></stateremoval>
|
235
|
<autoaddrnot_in></autoaddrnot_in>
|
236
|
<autoports_in></autoports_in>
|
237
|
<aliasports_in></aliasports_in>
|
238
|
<autoaddr_in></autoaddr_in>
|
239
|
<autonot_in></autonot_in>
|
240
|
<aliasaddr_in></aliasaddr_in>
|
241
|
<autoproto_in></autoproto_in>
|
242
|
<agateway_in>default</agateway_in>
|
243
|
<autoaddrnot_out></autoaddrnot_out>
|
244
|
<autoports_out></autoports_out>
|
245
|
<aliasports_out></aliasports_out>
|
246
|
<autoaddr_out></autoaddr_out>
|
247
|
<autonot_out></autonot_out>
|
248
|
<aliasaddr_out></aliasaddr_out>
|
249
|
<autoproto_out></autoproto_out>
|
250
|
<agateway_out>default</agateway_out>
|
251
|
<suppression_cidr>Disabled</suppression_cidr>
|
252
|
<whois_convert></whois_convert>
|
253
|
<custom></custom>
|
254
|
<row>
|
255
|
<format>auto</format>
|
256
|
<state><![CDATA[Enabled]]></state>
|
257
|
<url>https://raw.githubusercontent.com/clarketm/proxy-list/master/proxy-list-raw.txt</url>
|
258
|
<header>Proxy</header>
|
259
|
</row>
|
260
|
</config>
|
261
|
<config>
|
262
|
<aliasname>PublicDNS</aliasname>
|
263
|
<description><![CDATA[PublicDNS]]></description>
|
264
|
<action>Disabled</action>
|
265
|
<cron>Weekly</cron>
|
266
|
<dow>1</dow>
|
267
|
<sort>sort</sort>
|
268
|
<aliaslog>enabled</aliaslog>
|
269
|
<stateremoval><![CDATA[enabled]]></stateremoval>
|
270
|
<autoaddrnot_in></autoaddrnot_in>
|
271
|
<autoports_in></autoports_in>
|
272
|
<aliasports_in></aliasports_in>
|
273
|
<autoaddr_in></autoaddr_in>
|
274
|
<autonot_in></autonot_in>
|
275
|
<aliasaddr_in></aliasaddr_in>
|
276
|
<autoproto_in></autoproto_in>
|
277
|
<agateway_in>default</agateway_in>
|
278
|
<autoaddrnot_out></autoaddrnot_out>
|
279
|
<autoports_out></autoports_out>
|
280
|
<aliasports_out></aliasports_out>
|
281
|
<autoaddr_out></autoaddr_out>
|
282
|
<autonot_out></autonot_out>
|
283
|
<aliasaddr_out></aliasaddr_out>
|
284
|
<autoproto_out></autoproto_out>
|
285
|
<agateway_out>default</agateway_out>
|
286
|
<suppression_cidr>Disabled</suppression_cidr>
|
287
|
<whois_convert></whois_convert>
|
288
|
<custom></custom>
|
289
|
<row>
|
290
|
<format>auto</format>
|
291
|
<state><![CDATA[Enabled]]></state>
|
292
|
<url>https://public-dns.info/nameservers.txt</url>
|
293
|
<header>PublicDNS</header>
|
294
|
</row>
|
295
|
</config>
|
296
|
</pfblockernglistsv4>
|
297
|
<pfblockerngdnsblsettings>
|
298
|
<config>
|
299
|
<pfb_dnsbl>on</pfb_dnsbl>
|
300
|
<pfb_tld></pfb_tld>
|
301
|
<pfb_dnsvip>10.10.10.1</pfb_dnsvip>
|
302
|
<pfb_dnsport>80</pfb_dnsport>
|
303
|
<pfb_dnsport_ssl>443</pfb_dnsport_ssl>
|
304
|
<dnsbl_interface>lan</dnsbl_interface>
|
305
|
<pfb_dnsbl_rule>on</pfb_dnsbl_rule>
|
306
|
<dnsbl_allow_int>lan</dnsbl_allow_int>
|
307
|
<action>Alias_Deny</action>
|
308
|
<aliaslog>enabled</aliaslog>
|
309
|
<autoaddrnot_in></autoaddrnot_in>
|
310
|
<autoports_in></autoports_in>
|
311
|
<aliasports_in></aliasports_in>
|
312
|
<autoaddr_in></autoaddr_in>
|
313
|
<autonot_in></autonot_in>
|
314
|
<aliasaddr_in></aliasaddr_in>
|
315
|
<autoproto_in></autoproto_in>
|
316
|
<agateway_in>default</agateway_in>
|
317
|
<autoaddrnot_out></autoaddrnot_out>
|
318
|
<autoports_out></autoports_out>
|
319
|
<aliasports_out></aliasports_out>
|
320
|
<autoaddr_out></autoaddr_out>
|
321
|
<autonot_out></autonot_out>
|
322
|
<aliasaddr_out></aliasaddr_out>
|
323
|
<autoproto_out></autoproto_out>
|
324
|
<agateway_out>default</agateway_out>
|
325
|
<alexa_enable>on</alexa_enable>
|
326
|
<alexa_count>2000</alexa_count>
|
327
|
<alexa_inclusion>aero,com,gov,io,net,org,ru,su,xn--p1ai</alexa_inclusion>
|
328
|
<suppression>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</suppression>
|
329
|
<tldexclusion></tldexclusion>
|
330
|
<tldblacklist></tldblacklist>
|
331
|
<tldwhitelist></tldwhitelist>
|
332
|
<pfb_dnsvip_type>ipalias</pfb_dnsvip_type>
|
333
|
<pfb_dnsvip_pass></pfb_dnsvip_pass>
|
334
|
<dnsbl_webpage>dnsbl_default.php</dnsbl_webpage>
|
335
|
<pfb_dnsbl_sync>on</pfb_dnsbl_sync>
|
336
|
<alexa_type>tranco</alexa_type>
|
337
|
<pfb_dnsblv6></pfb_dnsblv6>
|
338
|
<pfb_cache>on</pfb_cache>
|
339
|
<dnsbl_mode>dnsbl_unbound</dnsbl_mode>
|
340
|
<pfb_py_reply>on</pfb_py_reply>
|
341
|
<pfb_py_block>on</pfb_py_block>
|
342
|
<pfb_hsts>on</pfb_hsts>
|
343
|
<pfb_idn></pfb_idn>
|
344
|
<pfb_regex></pfb_regex>
|
345
|
<pfb_cname>on</pfb_cname>
|
346
|
<pfb_regex_list></pfb_regex_list>
|
347
|
<pfb_pytld></pfb_pytld>
|
348
|
<pfb_pytld_sort></pfb_pytld_sort>
|
349
|
<pfb_py_nolog>on</pfb_py_nolog>
|
350
|
<pfb_pytlds_gtld>arpa,int,com,net,org,edu,int</pfb_pytlds_gtld>
|
351
|
<pfb_pytlds_cctld></pfb_pytlds_cctld>
|
352
|
<pfb_pytlds_itld></pfb_pytlds_itld>
|
353
|
<pfb_pytlds_bgtld></pfb_pytlds_bgtld>
|
354
|
<blacklist></blacklist>
|
355
|
<pfb_noaaaa></pfb_noaaaa>
|
356
|
<pfb_noaaaa_list></pfb_noaaaa_list>
|
357
|
<pfb_gp></pfb_gp>
|
358
|
<pfb_gp_bypass_list></pfb_gp_bypass_list>
|
359
|
<pfb_control></pfb_control>
|
360
|
<global_log></global_log>
|
361
|
</config>
|
362
|
</pfblockerngdnsblsettings>
|
363
|
<pfblockerngdnsbl>
|
364
|
<config>
|
365
|
<aliasname>ADs</aliasname>
|
366
|
<description><![CDATA[ADs - Collection of ADvertisement Domain Feeds.]]></description>
|
367
|
<action>unbound</action>
|
368
|
<cron>EveryDay</cron>
|
369
|
<dow>1</dow>
|
370
|
<sort>sort</sort>
|
371
|
<logging>enabled</logging>
|
372
|
<order>primary</order>
|
373
|
<filter_alexa></filter_alexa>
|
374
|
<custom></custom>
|
375
|
<row>
|
376
|
<format>auto</format>
|
377
|
<state><![CDATA[Enabled]]></state>
|
378
|
<url>https://adaway.org/hosts.txt</url>
|
379
|
<header>Adaway</header>
|
380
|
</row>
|
381
|
<row>
|
382
|
<format>auto</format>
|
383
|
<state><![CDATA[Enabled]]></state>
|
384
|
<url>https://s3.amazonaws.com/lists.disconnect.me/simple_ad.txt</url>
|
385
|
<header>D_Me_ADs</header>
|
386
|
</row>
|
387
|
<row>
|
388
|
<format>auto</format>
|
389
|
<state><![CDATA[Enabled]]></state>
|
390
|
<url>https://s3.amazonaws.com/lists.disconnect.me/simple_tracking.txt</url>
|
391
|
<header>D_Me_Tracking</header>
|
392
|
</row>
|
393
|
<row>
|
394
|
<format>auto</format>
|
395
|
<state><![CDATA[Enabled]]></state>
|
396
|
<url>https://pgl.yoyo.org/adservers/serverlist.php?hostformat=nohtml</url>
|
397
|
<header>Yoyo</header>
|
398
|
</row>
|
399
|
<row>
|
400
|
<format>auto</format>
|
401
|
<state><![CDATA[Enabled]]></state>
|
402
|
<url>https://easylist-downloads.adblockplus.org/easyprivacy.txt</url>
|
403
|
<header>EasyPrivacy</header>
|
404
|
</row>
|
405
|
<row>
|
406
|
<format>auto</format>
|
407
|
<state><![CDATA[Enabled]]></state>
|
408
|
<url>https://easylist-downloads.adblockplus.org/advblock.txt</url>
|
409
|
<header>EasyList_Russian</header>
|
410
|
</row>
|
411
|
<row>
|
412
|
<format>auto</format>
|
413
|
<state><![CDATA[Enabled]]></state>
|
414
|
<url>https://easylist-downloads.adblockplus.org/easylist_noelemhide.txt</url>
|
415
|
<header>EasyList</header>
|
416
|
</row>
|
417
|
</config>
|
418
|
<config>
|
419
|
<aliasname>Cryptojackers</aliasname>
|
420
|
<description><![CDATA[Cryptojackers - Collection of Malicious Domain crypto mining Feeds]]></description>
|
421
|
<action>unbound</action>
|
422
|
<cron>EveryDay</cron>
|
423
|
<dow>1</dow>
|
424
|
<sort>sort</sort>
|
425
|
<logging>enabled</logging>
|
426
|
<order>default</order>
|
427
|
<filter_alexa>on</filter_alexa>
|
428
|
<custom></custom>
|
429
|
<row>
|
430
|
<format>auto</format>
|
431
|
<state><![CDATA[Enabled]]></state>
|
432
|
<url>https://zerodot1.gitlab.io/CoinBlockerLists/list.txt</url>
|
433
|
<header>CoinBlocker_All</header>
|
434
|
</row>
|
435
|
<row>
|
436
|
<format>auto</format>
|
437
|
<state><![CDATA[Enabled]]></state>
|
438
|
<url>https://zerodot1.gitlab.io/CoinBlockerLists/list_optional.txt</url>
|
439
|
<header>CoinBlocker_Opt</header>
|
440
|
</row>
|
441
|
<row>
|
442
|
<format>auto</format>
|
443
|
<state><![CDATA[Enabled]]></state>
|
444
|
<url>https://raw.githubusercontent.com/hoshsadiq/adblock-nocoin-list/master/hosts.txt</url>
|
445
|
<header>NoCoin</header>
|
446
|
</row>
|
447
|
</config>
|
448
|
<config>
|
449
|
<aliasname>Phishing</aliasname>
|
450
|
<description><![CDATA[Phishing - Collection of Phishing Domain Feeds.]]></description>
|
451
|
<action>unbound</action>
|
452
|
<cron>EveryDay</cron>
|
453
|
<dow>1</dow>
|
454
|
<sort>sort</sort>
|
455
|
<logging>enabled</logging>
|
456
|
<order>default</order>
|
457
|
<filter_alexa>on</filter_alexa>
|
458
|
<custom></custom>
|
459
|
<row>
|
460
|
<format>auto</format>
|
461
|
<state><![CDATA[Enabled]]></state>
|
462
|
<url>https://urlhaus.abuse.ch/downloads/text/</url>
|
463
|
<header>Abuse_urlhaus</header>
|
464
|
</row>
|
465
|
<row>
|
466
|
<format>auto</format>
|
467
|
<state><![CDATA[Enabled]]></state>
|
468
|
<url>https://openphish.com/feed.txt</url>
|
469
|
<header>OpenPhish</header>
|
470
|
</row>
|
471
|
</config>
|
472
|
<config>
|
473
|
<aliasname>Malicious2</aliasname>
|
474
|
<description><![CDATA[Malicious2 - Collection of Feeds from Secondary Tier providers.]]></description>
|
475
|
<action>unbound</action>
|
476
|
<cron>EveryDay</cron>
|
477
|
<dow>1</dow>
|
478
|
<sort>sort</sort>
|
479
|
<logging>enabled</logging>
|
480
|
<order>default</order>
|
481
|
<filter_alexa>on</filter_alexa>
|
482
|
<custom></custom>
|
483
|
<row>
|
484
|
<format>auto</format>
|
485
|
<state><![CDATA[Enabled]]></state>
|
486
|
<url>https://kriskintel.com/ktip_domain_blacklist.txt</url>
|
487
|
<header>Krisk_Intel_BD</header>
|
488
|
</row>
|
489
|
<row>
|
490
|
<format>auto</format>
|
491
|
<state><![CDATA[Enabled]]></state>
|
492
|
<url>https://kriskintel.com/ktip_maze.txt</url>
|
493
|
<header>Krisk_Intel_Maze</header>
|
494
|
</row>
|
495
|
<row>
|
496
|
<format>auto</format>
|
497
|
<state><![CDATA[Enabled]]></state>
|
498
|
<url>https://kriskintel.com/ktip_corona.txt</url>
|
499
|
<header>Krisk_Corona_Phishing</header>
|
500
|
</row>
|
501
|
</config>
|
502
|
<config>
|
503
|
<aliasname>Malicious</aliasname>
|
504
|
<description><![CDATA[Malicious - Collection of Malicious Domain Feeds.]]></description>
|
505
|
<action>unbound</action>
|
506
|
<cron>EveryDay</cron>
|
507
|
<dow>1</dow>
|
508
|
<sort>sort</sort>
|
509
|
<logging>enabled</logging>
|
510
|
<order>default</order>
|
511
|
<filter_alexa>on</filter_alexa>
|
512
|
<custom></custom>
|
513
|
<row>
|
514
|
<format>auto</format>
|
515
|
<state><![CDATA[Enabled]]></state>
|
516
|
<url>https://www.malwaredomainlist.com/hostslist/hosts.txt</url>
|
517
|
<header>MDL</header>
|
518
|
</row>
|
519
|
<row>
|
520
|
<format>auto</format>
|
521
|
<state><![CDATA[Enabled]]></state>
|
522
|
<url>https://s3.amazonaws.com/lists.disconnect.me/simple_malware.txt</url>
|
523
|
<header>D_Me_Malw</header>
|
524
|
</row>
|
525
|
</config>
|
526
|
<config>
|
527
|
<aliasname>DOH</aliasname>
|
528
|
<description><![CDATA[DOH - DNS over HTTPS]]></description>
|
529
|
<action>unbound</action>
|
530
|
<cron>EveryDay</cron>
|
531
|
<dow>1</dow>
|
532
|
<sort>sort</sort>
|
533
|
<logging>enabled</logging>
|
534
|
<order>default</order>
|
535
|
<filter_alexa></filter_alexa>
|
536
|
<custom></custom>
|
537
|
<row>
|
538
|
<format>auto</format>
|
539
|
<state><![CDATA[Enabled]]></state>
|
540
|
<url>https://raw.githubusercontent.com/oneoffdallas/dohservers/master/list.txt</url>
|
541
|
<header>Oneoffdallas_DOH</header>
|
542
|
</row>
|
543
|
<row>
|
544
|
<format>auto</format>
|
545
|
<state><![CDATA[Enabled]]></state>
|
546
|
<url>https://raw.githubusercontent.com/Sekhan/TheGreatWall/master/TheGreatWall.txt</url>
|
547
|
<header>TheGreatWall_DoH</header>
|
548
|
</row>
|
549
|
</config>
|
550
|
<config>
|
551
|
<aliasname>Compilation</aliasname>
|
552
|
<description><![CDATA[Compilation - feeds that aggregate other feeds]]></description>
|
553
|
<action>unbound</action>
|
554
|
<cron>EveryDay</cron>
|
555
|
<dow>1</dow>
|
556
|
<sort>sort</sort>
|
557
|
<logging>enabled</logging>
|
558
|
<order>default</order>
|
559
|
<filter_alexa>on</filter_alexa>
|
560
|
<custom></custom>
|
561
|
<row>
|
562
|
<format>auto</format>
|
563
|
<state><![CDATA[Disabled]]></state>
|
564
|
<url>https://dbl.oisd.nl/</url>
|
565
|
<header>OISD</header>
|
566
|
</row>
|
567
|
<row>
|
568
|
<format>auto</format>
|
569
|
<state><![CDATA[Enabled]]></state>
|
570
|
<url>https://phishing.army/download/phishing_army_blocklist.txt</url>
|
571
|
<header>PhishingArmy</header>
|
572
|
</row>
|
573
|
</config>
|
574
|
<config>
|
575
|
<aliasname>Firebog_Trackers</aliasname>
|
576
|
<description><![CDATA[Places that track you.]]></description>
|
577
|
<action>unbound</action>
|
578
|
<cron>EveryDay</cron>
|
579
|
<dow>1</dow>
|
580
|
<sort>sort</sort>
|
581
|
<logging>enabled</logging>
|
582
|
<order>default</order>
|
583
|
<filter_alexa>on</filter_alexa>
|
584
|
<custom></custom>
|
585
|
<row>
|
586
|
<format>auto</format>
|
587
|
<state><![CDATA[Enabled]]></state>
|
588
|
<url>https://raw.githubusercontent.com/FadeMind/hosts.extras/master/add.2o7Net/hosts</url>
|
589
|
<header>Fademind_2o7</header>
|
590
|
</row>
|
591
|
<row>
|
592
|
<format>auto</format>
|
593
|
<state><![CDATA[Enabled]]></state>
|
594
|
<url>https://raw.githubusercontent.com/Perflyst/PiHoleBlocklist/master/android-tracking.txt</url>
|
595
|
<header>Perflyst_Android</header>
|
596
|
</row>
|
597
|
<row>
|
598
|
<format>auto</format>
|
599
|
<state><![CDATA[Enabled]]></state>
|
600
|
<url>https://raw.githubusercontent.com/Perflyst/PiHoleBlocklist/master/SmartTV.txt</url>
|
601
|
<header>Perflyst_TV</header>
|
602
|
</row>
|
603
|
<row>
|
604
|
<format>auto</format>
|
605
|
<state><![CDATA[Enabled]]></state>
|
606
|
<url>https://raw.githubusercontent.com/Perflyst/PiHoleBlocklist/master/AmazonFireTV.txt</url>
|
607
|
<header>Perflyst_FireTV</header>
|
608
|
</row>
|
609
|
</config>
|
610
|
<config>
|
611
|
<aliasname>Firebog_Advertising</aliasname>
|
612
|
<description><![CDATA[Waste of bandwith trying to sell stuff.]]></description>
|
613
|
<action>unbound</action>
|
614
|
<cron>EveryDay</cron>
|
615
|
<dow>1</dow>
|
616
|
<sort>sort</sort>
|
617
|
<logging>enabled</logging>
|
618
|
<order>default</order>
|
619
|
<filter_alexa></filter_alexa>
|
620
|
<custom></custom>
|
621
|
<row>
|
622
|
<format>auto</format>
|
623
|
<state><![CDATA[Enabled]]></state>
|
624
|
<url>https://raw.githubusercontent.com/jdlingyu/ad-wars/master/hosts</url>
|
625
|
<header>Ad_Wars</header>
|
626
|
</row>
|
627
|
<row>
|
628
|
<format>auto</format>
|
629
|
<state><![CDATA[Enabled]]></state>
|
630
|
<url>https://raw.githubusercontent.com/anudeepND/blacklist/master/adservers.txt</url>
|
631
|
<header>Anudeep_BL</header>
|
632
|
</row>
|
633
|
<row>
|
634
|
<format>auto</format>
|
635
|
<state><![CDATA[Enabled]]></state>
|
636
|
<url>https://raw.githubusercontent.com/bigdargon/hostsVN/master/hosts</url>
|
637
|
<header>hostsVN</header>
|
638
|
</row>
|
639
|
<row>
|
640
|
<format>auto</format>
|
641
|
<state><![CDATA[Enabled]]></state>
|
642
|
<url>https://raw.githubusercontent.com/FadeMind/hosts.extras/master/UncheckyAds/hosts</url>
|
643
|
<header>Fademinds</header>
|
644
|
</row>
|
645
|
</config>
|
646
|
<config>
|
647
|
<aliasname>Firebog_Malicious</aliasname>
|
648
|
<description><![CDATA[Bad places.]]></description>
|
649
|
<action>unbound</action>
|
650
|
<cron>EveryDay</cron>
|
651
|
<dow>1</dow>
|
652
|
<sort>sort</sort>
|
653
|
<logging>enabled</logging>
|
654
|
<order>default</order>
|
655
|
<filter_alexa></filter_alexa>
|
656
|
<custom></custom>
|
657
|
<row>
|
658
|
<format>auto</format>
|
659
|
<state><![CDATA[Enabled]]></state>
|
660
|
<url>https://urlhaus.abuse.ch/downloads/hostfile/</url>
|
661
|
<header>URLhaus_Mal</header>
|
662
|
</row>
|
663
|
</config>
|
664
|
</pfblockerngdnsbl>
|
665
|
<pfblockerngipsettings>
|
666
|
<config>
|
667
|
<enable_dup>on</enable_dup>
|
668
|
<enable_agg>on</enable_agg>
|
669
|
<suppression>on</suppression>
|
670
|
<enable_log></enable_log>
|
671
|
<maxmind_locale>en</maxmind_locale>
|
672
|
<database_cc></database_cc>
|
673
|
<inbound_interface>wan</inbound_interface>
|
674
|
<inbound_deny_action>block</inbound_deny_action>
|
675
|
<outbound_interface>lan</outbound_interface>
|
676
|
<outbound_deny_action>reject</outbound_deny_action>
|
677
|
<enable_float></enable_float>
|
678
|
<pass_order>order_0</pass_order>
|
679
|
<autorule_suffix>autorule</autorule_suffix>
|
680
|
<killstates>on</killstates>
|
681
|
<ip_placeholder>127.1.7.7</ip_placeholder>
|
682
|
<asn_reporting>24hour</asn_reporting>
|
683
|
<v4suppression>MTk1Ljg4LjI1Mi4wLzI0DQoxOTUuODguMjUzLjAvMjQNCjc3Ljg4LjguNzgvMzINCjE5Mi4zMC4yNTMuMTEyLzMyDQo=</v4suppression>
|
684
|
<maxmind_key>xxxxx</maxmind_key>
|
685
|
</config>
|
686
|
</pfblockerngipsettings>
|
687
|
<pfblockerngreputation>
|
688
|
<config></config>
|
689
|
</pfblockerngreputation>
|
690
|
<pfblockerngglobal>
|
691
|
<alertrefresh>on</alertrefresh>
|
692
|
<pfbextdns>77.88.8.8</pfbextdns>
|
693
|
<pfbreplytypes></pfbreplytypes>
|
694
|
<pfbreplyrec></pfbreplyrec>
|
695
|
<uniblock>#FFF9C4</uniblock>
|
696
|
<unipermit>#80CBC4</unipermit>
|
697
|
<unimatch>#B3E5FC</unimatch>
|
698
|
<unidnsbl>#EF9A9A</unidnsbl>
|
699
|
<unireply>#E8E8E8</unireply>
|
700
|
<uniblock2>#83791D</uniblock2>
|
701
|
<unipermit2>#3B8780</unipermit2>
|
702
|
<unimatch2>#42809D</unimatch2>
|
703
|
<unidnsbl2>#E84E4E</unidnsbl2>
|
704
|
<unireply2>#54585E</unireply2>
|
705
|
<pfbchartcnt>24</pfbchartcnt>
|
706
|
<pfbchartstyle>twotone</pfbchartstyle>
|
707
|
<pfbchart1>#0C6197</pfbchart1>
|
708
|
<pfbchart2>#7A7A7A</pfbchart2>
|
709
|
<pfbpageload>unified</pfbpageload>
|
710
|
<pfbmaxtable>1000</pfbmaxtable>
|
711
|
<pfbblockstat></pfbblockstat>
|
712
|
<pfbpermitstat></pfbpermitstat>
|
713
|
<pfbmatchstat></pfbmatchstat>
|
714
|
<pfbdnsblstat></pfbdnsblstat>
|
715
|
<pfbdnsblreplystat></pfbdnsblreplystat>
|
716
|
<pfbunicnt>200</pfbunicnt>
|
717
|
<pfbdenycnt>25</pfbdenycnt>
|
718
|
<pfbpermitcnt>25</pfbpermitcnt>
|
719
|
<pfbmatchcnt>25</pfbmatchcnt>
|
720
|
<pfbdnscnt>25</pfbdnscnt>
|
721
|
<pfbdnsreplycnt>200</pfbdnsreplycnt>
|
722
|
<ipfilterlimitentries>100</ipfilterlimitentries>
|
723
|
<dnsblfilterlimitentries>100</dnsblfilterlimitentries>
|
724
|
<dnsfilterlimitentries>100</dnsfilterlimitentries>
|
725
|
</pfblockerngglobal>
|
726
|
<pfblockernglistsv6>
|
727
|
<config>
|
728
|
<aliasname>PRI1_6</aliasname>
|
729
|
<description><![CDATA[PRI1_6 - collection of IPv6 Feeds from the most reputable blocklist providers.]]></description>
|
730
|
<action>Disabled</action>
|
731
|
<cron>Weekly</cron>
|
732
|
<dow>1</dow>
|
733
|
<sort>sort</sort>
|
734
|
<aliaslog>enabled</aliaslog>
|
735
|
<stateremoval><![CDATA[enabled]]></stateremoval>
|
736
|
<autoaddrnot_in></autoaddrnot_in>
|
737
|
<autoports_in></autoports_in>
|
738
|
<aliasports_in></aliasports_in>
|
739
|
<autoaddr_in></autoaddr_in>
|
740
|
<autonot_in></autonot_in>
|
741
|
<aliasaddr_in></aliasaddr_in>
|
742
|
<autoproto_in></autoproto_in>
|
743
|
<agateway_in>default</agateway_in>
|
744
|
<autoaddrnot_out></autoaddrnot_out>
|
745
|
<autoports_out></autoports_out>
|
746
|
<aliasports_out></aliasports_out>
|
747
|
<autoaddr_out></autoaddr_out>
|
748
|
<autonot_out></autonot_out>
|
749
|
<aliasaddr_out></aliasaddr_out>
|
750
|
<autoproto_out></autoproto_out>
|
751
|
<agateway_out>default</agateway_out>
|
752
|
<suppression_cidr>Disabled</suppression_cidr>
|
753
|
<whois_convert></whois_convert>
|
754
|
<custom></custom>
|
755
|
<row>
|
756
|
<format>auto</format>
|
757
|
<state><![CDATA[Disabled]]></state>
|
758
|
<url>https://raw.githubusercontent.com/dyne/dnscrypt-proxy/master/dnscrypt-resolvers.csv</url>
|
759
|
<header>DNSCrypt</header>
|
760
|
</row>
|
761
|
<row>
|
762
|
<format>auto</format>
|
763
|
<state><![CDATA[Disabled]]></state>
|
764
|
<url>https://public-dns.info/nameservers.txt</url>
|
765
|
<header>publicdns</header>
|
766
|
</row>
|
767
|
<row>
|
768
|
<format>auto</format>
|
769
|
<state><![CDATA[Enabled]]></state>
|
770
|
<url>https://www.spamhaus.org/drop/dropv6.txt</url>
|
771
|
<header>Spamhaus_Drop6</header>
|
772
|
</row>
|
773
|
<row>
|
774
|
<format>auto</format>
|
775
|
<state><![CDATA[Disabled]]></state>
|
776
|
<url>https://raw.githubusercontent.com/ejrv/VPNs/master/vpn-ipv6.txt</url>
|
777
|
<header>VPNs</header>
|
778
|
</row>
|
779
|
</config>
|
780
|
</pfblockernglistsv6>
|
781
|
<pfblockerngtopspammers>
|
782
|
<config>
|
783
|
<action>Disabled</action>
|
784
|
<aliaslog>enabled</aliaslog>
|
785
|
</config>
|
786
|
</pfblockerngtopspammers>
|
787
|
<pfblockerngafrica>
|
788
|
<config>
|
789
|
<action>Disabled</action>
|
790
|
<aliaslog>enabled</aliaslog>
|
791
|
</config>
|
792
|
</pfblockerngafrica>
|
793
|
<pfblockerngantarctica>
|
794
|
<config>
|
795
|
<action>Disabled</action>
|
796
|
<aliaslog>enabled</aliaslog>
|
797
|
</config>
|
798
|
</pfblockerngantarctica>
|
799
|
<pfblockerngasia>
|
800
|
<config>
|
801
|
<action>Disabled</action>
|
802
|
<aliaslog>enabled</aliaslog>
|
803
|
</config>
|
804
|
</pfblockerngasia>
|
805
|
<pfblockerngeurope>
|
806
|
<config>
|
807
|
<action>Disabled</action>
|
808
|
<aliaslog>enabled</aliaslog>
|
809
|
</config>
|
810
|
</pfblockerngeurope>
|
811
|
<pfblockerngnorthamerica>
|
812
|
<config>
|
813
|
<action>Disabled</action>
|
814
|
<aliaslog>enabled</aliaslog>
|
815
|
</config>
|
816
|
</pfblockerngnorthamerica>
|
817
|
<pfblockerngoceania>
|
818
|
<config>
|
819
|
<action>Disabled</action>
|
820
|
<aliaslog>enabled</aliaslog>
|
821
|
</config>
|
822
|
</pfblockerngoceania>
|
823
|
<pfblockerngsouthamerica>
|
824
|
<config>
|
825
|
<action>Disabled</action>
|
826
|
<aliaslog>enabled</aliaslog>
|
827
|
</config>
|
828
|
</pfblockerngsouthamerica>
|
829
|
<pfblockerngproxyandsatellite>
|
830
|
<config>
|
831
|
<action>Alias_Native</action>
|
832
|
<aliaslog>enabled</aliaslog>
|
833
|
</config>
|
834
|
</pfblockerngproxyandsatellite>
|
835
|
<pfblockerngsafesearch>
|
836
|
<safesearch_enable>Disable</safesearch_enable>
|
837
|
<safesearch_youtube>Disable</safesearch_youtube>
|
838
|
<safesearch_doh>Enable</safesearch_doh>
|
839
|
<safesearch_doh_list>use-application-dns.net,cloudflare-dns.com,security.cloudflare-dns.com,family.cloudflare-dns.com,dns.google,doh.dns.apple.com,doh.opendns.com,doh.familyshield.opendns.com,dns.quad9.net,dns9.quad9.net,dns10.quad9.net,dns11.quad9.net,dns.adguard.com,dns-unfiltered.adguard.com,dns-family.adguard.com,doh.cleanbrowsing.org,security-filter-dns.cleanbrowsing.org,family-filter-dns.cleanbrowsing.org,adult-filter-dns.cleanbrowsing.org,dns.switch.ch,dns.comss.one,dns.east.comss.one,private.canadianshield.cira.ca,protected.canadianshield.cira.ca,family.canadianshield.cira.ca,doh-fi.blahdns.com,doh-jp.blahdns.com,doh-de.blahdns.com,fi.doh.dns.snopyta.org,dns-doh.dnsforfamily.com,odvr.nic.cz,dns.alidns.com,dns.cfiec.net,asia.dnscepat.id,eropa.dnscepat.id,doh.360.cn,public.dns.iij.jp,doh.pub,dns.twnic.tw,doh.tiarap.org,doh.tiar.app,dot.tiar.app,jp.tiarap.org,jp.tiar.app,dns.oszx.co,dns.pumplex.com,doh.applied-privacy.net,dot1.applied-privacy.net,dns.decloudus.com,resolver-eu.lelux.fi,doh.dns.sb,dnsforge.de,kaitain.restena.lu,doh.ffmuc.net,dns.digitale-gesellschaft.ch,doh.libredns.gr,ibksturm.synology.me,getdnsapi.net,dnsovertls.sinodun.com,dnsovertls1.sinodun.com,unicast.censurfridns.dk,anycast.censurfridns.dk,dns.cmrg.net,dns.larsdebruin.net,dns-tls.bitwiseshift.net,ns1.dnsprivacy.at,ns2.dnsprivacy.at,dns.bitgeek.in,dns.neutopia.org,privacydns.go6lab.si,dot.securedns.eu,dnsotls.lab.nic.cl,tls-dns-u.odvr.dns-oarc.net,doh.centraleu.pi-dns.com,dot.centraleu.pi-dns.com,doh.northeu.pi-dns.com,dot.northeu.pi-dns.com,doh.westus.pi-dns.com,dot.westus.pi-dns.com,doh.eastus.pi-dns.com,dot.eastus.pi-dns.com,doh.eastau.pi-dns.com,dot.eastau.pi-dns.com,doh.eastas.pi-dns.com,dot.eastas.pi-dns.com,doh.pi-dns.com,dot.seby.io,doh-2.seby.io,doh.dnslify.com</safesearch_doh_list>
|
840
|
</pfblockerngsafesearch>
|
841
|
<pfblockerngblacklist>
|
842
|
<blacklist_enable>Disable</blacklist_enable>
|
843
|
<blacklist_lang>EN</blacklist_lang>
|
844
|
<blacklist_selected>shallalist</blacklist_selected>
|
845
|
<blacklist_freq>Never</blacklist_freq>
|
846
|
<blacklist_logging>enabled</blacklist_logging>
|
847
|
<item>
|
848
|
<title>Shallalist</title>
|
849
|
<xml>shallalist</xml>
|
850
|
<feed>http://www.shallalist.de/Downloads/shallalist.tar.gz</feed>
|
851
|
<size>10</size>
|
852
|
<selected>anonvpn,dating,gamble,porn,ringtones,spyware</selected>
|
853
|
</item>
|
854
|
<item>
|
855
|
<title>UT1</title>
|
856
|
<xml>ut1</xml>
|
857
|
<feed>ftp://ftp.ut-capitole.fr/pub/reseau/cache/squidguard_contrib/blacklists.tar.gz</feed>
|
858
|
<size>8.5</size>
|
859
|
<selected></selected>
|
860
|
</item>
|
861
|
</pfblockerngblacklist>
|