Has anyone here setup pfBlocker-NG to block IP ranges/countries? I just tried to do that following this video tutorial (blocking all inbound and outbound traffic), however, I’m still able to access websites like life.ru, pikabu.ru, drom.ru, and quite a few others on this list. pfBlocker-NG appears to be partially working though, because, for example, I can’t access yandex.ru through pfSense, but I can on my mobile phone (not connected to wifi).
What’s the reason that certain websites are not blocked? Is it because of CDN (Content Delivery Networks), hosted in different coutries (outside of my specified country block list), which then forward data from, for example, life.ru, to me?
I’m really hoping to block quite a few countries which I rarely/never expect to need to send/receive traffic to/from, such as Russia, China, Hong Kong (has it’s own list in pfBlocker-NG), India, Vietnam, Ukraine, and a few more, as a way to minimize the attack surface of my network.