I have eblockerOS version 2.5.6 but my location, provider and IP are not anonymised. What have I done wrong?
@Mado Did you check the help & eBlocker manual?
When posting a question please check here first: https://eblocker.org/community/announcements/before-posting-here-please-read/
Please be also more verbose, what you‘ve done so far. HTTPS enabled for device? Do you see the eBlocker icon? Are you using a VPN provider or Tor? etc.
THX!
@random I come back after updating to 2.5.6. Have two boxes running at different location. My problems so far:
- The eBlocker test fails, only "Domain Blocker nicht verwendet" is green at every device.
-The IP are not anonymised but the cyberghost profile was running well and is activated. Tor is working well!
Conditions:
Fritzbox: eBlocker can use ports by its own.
Network: WLAN 2.4 and 5 Ghz, running powerline adapters from devolo (7) and one as repeater.
HTTPS is green.
Today eBlocker was running slow and sometimes not reacting on both locations.
Sorry but as newbie I got everything working but now, without a major change, running in to these problems.
A report is attached
I give up
My problem went in with the actual SW 2.5.6. The older 2.4.x was working.
IP6 was every time disabled. The slow access was meant to the blocker page. Not loading, partly or slow. Is better now.
I made a factory reset, imported the config, installed the certificate, unplugged the develo powerline adapter (also the repeater which was in bridged mode), changed the ports at the fritz.box 7490 and connected my laptop via wlan (Have no cable to the box possible).
The result is every time the same: blocker test failed up to one point (Domain Blocker nicht verwendet) and anonymisation failed with TOR and VPN.
Why not let make eBlocker the DHCP job? I have to much devices with fixed IP addresses and to reconfigure takes to long.
- Hardware you use for running eBlockerOS
- Raspberry 3
- eBlockerOS version as well as filter lists version
- 2.5.6 (the list, were can I find them?)
- eBlocker network mode (auto, individual or expert)
- expert
- eBlocker network settings (IP, mask, gateway)
- IP-Adresse (eBlocker)
- 192.168.2.36
- Netzwerkmaske
- 255.255.0
- Gateway/Router
- 192.168.2.1
- DHCP-Dienst
- extern
- eBlocker DNS firewall settings
- Externe DNS-Server
- Client network settings (IP, mask, DNS, gateway)
- Dieses Gerät: 192.168.2.77
- eBlocker: 192.168.2.36
- Gateway: 192.168.2.1
- DNS 1.1.1.1; 9.9.9.9
- Whether eBlocker’s https integration is enabled for client
- Green and green
- Client browser and OS version (i.e. FireFox 80.1 running on macOS 13.4)
- Firefox 82.0.2 (64bit) WIn10 (under linux the same)
Any ideas or infos necessary?
-The IP are not anonymised but the cyberghost profile was running well and is activated.
Disable IPv6. Do NOT use VPN client(!) on PC, but import profile to eBlocker and enable from eBlocker Dashboard or Controlbar.
Fritzbox? Runing slow? See compatibility chart (menu compatibility). Make sure eBlocker is in individual or expert network mode if chart advises this.
running powerline adapters from devolo (7) and one as repeater.
See compatibility chart (repeaters need to be in bridge mode usually). Try to plugin all devices into same switch / router for testing (no repeater!)
Hint: Do not post diagnosis reports unless requested. They may contain data not for everyone. I‘ve removed the file.
If you still need help please make sure to read the READ ME post under announcements and share your settings as described.
THX!
Client network settings (IP, mask, DNS, gateway)
- Dieses Gerät: 192.168.2.77
- eBlocker: 192.168.2.36
- Gateway: 192.168.2.1
- DNS 1.1.1.1; 9.9.9.9
Your Client Gateway is wrong. It needs to be set to 192.168.2.36. Otherwise eBlocker is not getting the IP packets! Then of course it can not anonymize them...!
It would be great if you’d add a new Post when answering rather than adding infos in your post above as this can easily overseen otherwise (I did not see the change initially).
BTW. eBlocker‘s Expert network mode is mainly for network experts. They are required to set their DHCP Gateway to eBlocker‘s IP which needs a flexible external DHCP server (usually a router‘s DHCP is not flexible enough). I would suggest to use „individual“ mode and turn off your DHCP in your router to get this fixed for all clients in your network if you are not a network expert.
But for the test: just set the gateway correctly, and make sure eBlocker can access the internet
(in case you are blocking new MAC addresses (the physical network address) in your network disable this, as eBlocker got a new MAC address after the update.)
THX!
I have done what you have mentioned. No change in the results. I used eBlocker as DNS but the test failed at some points related to the blocking list. So, I checked "eBlocker Blockierlisten Version" but is empty. The help page said that there is an issue with the internet connection. In the fritzbox the correct MAC address is in and also that eBlocker can open ports.
IP anonymisation isn't working in both configurations. TOR is listed as connected but the check is negative. The cyberghost profile can't connected in both configurations. The profile has been renewed and imported, but no changes.
As I already wrote, everything worked under the version 2.4.x in the same network configuration.
I'm helpless
@willifly Are you sure your GATEWAY address (in the macOS client) is set to eBlocker‘s IP (not just the DNS!)?
Please post results of a traceroute (see here for your macOS: https://eblocker.github.io/help/en-us/360002340254.html )
The „empty“ blocker list indicates eBlocker can not access the update server / the Internet (or eBlocker has wrong time settings, see below).
The traceroute above will show whether eBlocker has Internet access. (I fear you‘ve set your router to block new clients accessing the Internet - after the upgrade to 2.5.6 eBlocker is a „new client“ = new MAC address ; it‘s not about „opening ports“ = completely different thing).
What‘s the last date/time in eBlockers event log (settings>system>events)? Good idea is to reboot eBlocker (system>reboot) and then check events for reboot time.
If all fails: reinstall eBlockerOS via NEW SD card.
THX!
You have a Fritzbox that is doing the DHCP job?
And your eBlocker is in Expert Mode?
Than you have to set manual the Client IP Configuration:
IP Gateway --> eBlocker IP-Address
DNS --> eBlocker IP-Address
Because all your IP pakets from your clients must run thru your eBlocker... 😏
https://eblocker.org/funktionsweise#eblocker-funktioniert
"random" told so... 👍
regards
PIO78
@random Understand and in Fritzbox the box is entered with new MAC adress. There were two boxes with the same IP, but deleted the old one.
Have overlooked that as DNS external server the blocker IP must be set. I'll follow the advice from you and PIO 78.
The values in the Fritzbox is checked and correct.
Here the trace route and ping:
@pio78 Have overlooked that as DNS external server the blocker IP must be set. But after the first tests nothing has changed. Here the pictures:
Please post results of a traceroute (see here for your macOS: https://eblocker.github.io/help/en-us/360002340254.html )
@willifly PLEASE follow the instructions linked!
It‘s not helpful to post a traceroute from some random server on the Interner. We need the traceroute from YOUR client!
To ease things and misconfiguration above: set eBlocker DNS to default. (BTW: the above posted DNS ettings for sure have never(!) worked as @pio78 stated briefly.)
@willifly DNS settings in Client are Ok. Make sure Gateway in Client is set as described above. Set DNS firewall in eBlocker to default (internet provider) or even to Off.
Most important: follow instructions for the traceroute. This will show misconfig in detail.
Normaly this comes from your DHCP server. You have to set it in the client manualy. Why are you using eblocker in expert mode?
Tomorrow i can give you more Information.
I‘ve stated everything above. If willifly just follows the instructions carefully it‘s easier for all of us. Otherwise confusion starts and I rather bail out of this thread.
@willify: to repeat myself: set Client gateway address as said. Do traceroute as said. Remove nonsense DNS firewall setting by setting to default/off (as @benne sugested). Please answer question regarding eBlocker‘s time settings!
THX!
Forgive me. I have some experience, but my network is slowly overwhelming me. The first installation worked with the default settings. It was a mistake, because I wanted to keep the Fritzbox as DNS (I "only" set now the network mode to automatic). Otherwise I would have had to reconfigure all IP devices, I thought. Now everything works as I expected.
Thanks to your help, I managed to do it. Now there is only one question left. There is still nothing under "eBlocker Blocked List Version". The eBlocker test is all green.
Maybe a guide for dummies will help to learn from my mistakes. Now I "only" have to reconfigure my entire household and that will take a few hours.
I have all systems running. WIN10, Linux, Android and others. You can go astray there. Brave new but now safe world with your help.
Thanks again
Please answer question regarding eBlocker‘s time settings!
@willifly: answer?
THX!
I used my client (Laptop Win10) for the trace.
Now it works:
@pio78 The reason is quite simple. I have a network where almost 30 devices have an IP address. For many applications (server, IP camera) I made the configuration manually. It took me weeks to do all this confiration work. So the idea was to keep the Fritzbox as DNS and to integrate the eBlocker. Maybe the thought was wrong, but the work involved in the old version of the blocker (2.4) was enormous on all devices. I wanted to avoid all that.
Now everything went fine, but I usually get stuck in the blocker and not all websites are open. I suspect that two DNS servers are now running during the configuration, although during the conversion a message came up that another DNS was on the network, but nothing to turn it off, as with the other attempt.
My Fritzbox 7490 should only be partially compatible and manual settings would have to be made. But which one?
ok, I tested some things...
1.
You use "Automatic Mode" of eBlocker Network setting (default)
So Fritzbox is DHCP, DNS and Gateway. eBlocker uses ARP to modify IP-Pakages.
If you set static IP-Adresses, the IP-Paket went also thru the eBlocker and you have
to disable eBlocker for this devices.
2.
Use eBlocker in "Individual" Network Mode
So eBlocker gives IP-Addresses to your client.
But you need a block of IP-Adresses for your static configuration.
Eblocker DHCP startet in the lower Range of your IP-Address-Range, so you can use
static IP-Addresses for example from 192.168.2.254 down.
For small networks this should not be a problem.
But it is not completely clean 😮
regards
PIO78
@pio78 Please take over. I‘m giving up here, as questions do not get answered, which drives me mad.
@willifly Just the fact‘s why I can‘t support you: You state you have a Mac. Then you switch to PC. I ask for a traceroute from your client (incl instructions for Mac), you send traceroute from some random Internet server. I ask to set client Gateway correctly, you set some nonsense in DNS. I ask you for the time&date under Events, you send the timezone... etc etc
Support IS SIMPLE and fun if people read the instruction (also about „manual network setup“ - as there are plenty of docs in the knowledge base and also videos in Tims channel for the DAU). RTFM!
Sorry mate, but this is no fun, but a waste of my volunteer time. Good luck!
At first thanks for the helping hands I got. But have in mind, that I'm a dummie, speak user, in the brand. As user I found a box, easy usable for everyone they make the netlive safer. Than the approach went wrong and I don'T found a answer to my fear, to lose all my configuration, which cost me weeks of work. That wy I tryed thes way and went up in nirvana. The automatic mode semed to be the best one but not working for me. As example let tell you, that I introduced the box at my doughter. Do you belief if there is a pproblen in manual mode she can solve it it? I don't! Between us are 600 km.
Do you beliefe that it makes me fun to spend weeks to integrate the BOX?
Some points before the end.
We talket abouit MAC adresses, not Mac. Trace route, what is this? Have used Google. You asked me about the time, but now time in eventlist. Thats a differenc.I had a look inside but no actual time there only event times (now1:31 from last event this day).
I made the proposal to add the time at the config page.
Last but not least, I found the answer from you and now I know that I'm not allone:
I do not plan to replace the DHCP Server of my Fritz Box.
Then it's not going to work!
Background: To protect you, all TCP/IP packets need to hit the eBlocker first (before your router). This can be done either by automatic mode (ARP spoofing) or telling all your devices that eBlocker is the gateway (and setting your router as gateway in eBlocker).
The central service to set the gateway for a LAN clients is the DHCP server. Unfortunately the fritzbox does not allow to set the gateway to a different IP-address. Therefore you need to switch to a more capable DHCP server. eBlocker's DHCP can be one choice but you can use any DHCP that let's your freely set the gateway.
Personally I don't understand why you don't want to switch. If you use eBlocker's DHCP it will scan your network first and all clients will get the same IP as they had before (this also works for static IPs).
------------------------------------------
Here my problem was solved!
Can you add in the very beginning some scenarios, that the dummie can find his way with his special configuration? May be you should create a questionnaire aubout the experiances with the integration in what a kind of environmet?
Summary: I believe in you and your project. I donated more money for the box than a new, more powerful Fritzbox or external DNS server would cost.
I tried the first configuration but it doesn't work. I cannot reproduce the behavior either.
I can't get to the config page or dashboard. Even the forum is blocked, the box restarts for inexplicable reasons after a call, there is a management message that I don't understand, etc. but everything works again. Greetings from Murphy!
Now that I've lost my fear, I'll set up the second "manual" configuration from scratch. Since the box is supposed to scan my IP addresses and thus be retained, there is no longer any reason not to do it, I was afraid of that.
I think we can close this post here.
Client browser and OS version (i.e. FireFox 80.1 running on macOS 13.4)
macOS! I had linked how to do a traceroute on macOS! You need zero knowledge about traceroute, but reading helps!
What‘s the last date/time in eBlockers event log (settings>system>events)?
I've tried to describe it for non tech people and gave you the exact path to click! To no avail!
If you would have followed carefully by reading exactly what I post rather than doing something else and interpreting it with some dangerous "half knowlede", we would have closed this much earlier.
Sorry mate: The issue is not always in the machine but sits often in front !
Nevertheless, I'm happy you got it know.
And again: I'm super happy to support, but not if people do not follow the asked questions carefully.
THX for your understanding and cooperation in future!
You linked me to the basics and I filed it in:
Client browser and OS version (i.e. FireFox 80.1 running on macOS 13.4) - this is the qw.
- Firefox 82.0.2 (64bit) WIn10 (under linux the same) - here is the answer
sorry and to the settings I posted the settings.
But you are right. In front the people is the problem.
Now that I've spent days reading and watching videos, it will probably work out. And I am now able to search for the correct facts in English. But the effort was worth it. So thanks again
Please answer question regarding eBlocker‘s time settings!
@random Europe/Berlin