Forums

Home Forums Troubleshooting White List doesn’t seem to work

White List doesn’t seem to work

Tagged: ,

Viewing 4 posts - 1 through 4 (of 4 total)
  • Author
    Posts
  • #6335
    erich
    Participant

    According to https://www.pcwrt.com/2020/01/how-to-allow-or-block-web-sites-on-the-router/ I should be able to whitelist domains that are normally blocked by the Ad setting or DNS:

    If you choose “Black List“, the domains or URLs listed in the “Blocked URLs” box will be blocked. Everything else is allowed. And in general, yo don’t need to list the domains or URLs you want to allow in the “Allowed URLs” box.

    Unless the domain is blocked by the DNS service you choose (for example, OpenDNS). Then there’s no need to enter the domain into the “Blocked URLs” box if you want to block it. But if you want to allow a domain blocked by DNS, you do need to enter it in the “Allowed URLs” box to override the DNS block.

    However, that is not my experience. Within the Apps->Access Control settings page I have a profile named “Work” with 2 computers assigned to it. It has the following settings:
    DNS Server: Google Public DNS (8.8.8.8, 8.8.4.4)
    Block Ads -> Y
    Safe search, Enforce Access Control, Block proxy, Block literal IP addresses, Block VPN, TOR -> N
    URL Filter Mode: Black List
    YouTube Restricted Mode: Off
    Black List: <blank>
    White List: includes g.live.com, wpad.mentorg.com, and more

    But when I go to the logs, I see wpad.mentorg.com blocked with reason DNS and g.live.com blocked with reason Ad.

    Is there something I’m missing for the White List to take effect?

    #6338
    support
    Keymaster

    The domain wpad.mentorg.com cannot be resolved by Google Public DNS: https://www.nslookup.io/domains/wpad.mentorg.com/dns-records/#google

    Also, please check that your firmware version is v2.6.2 or later. There was a bug for ad domains block overriding, which was fixed in v2.6.2. Please let us know if g.live.com still cannot be overridden with the latest firmware.

    #6339
    erich
    Participant

    I did just update the firmware yesterday. I don’t remember the version but I think it was v2.6.2. Manually checking for updates reports that my firmware is up to date. Today I no longer see g.live.com in the logs, so the update must be working, thanks!

    My work computers are using Zscaler to connect to the work network. Apparently some things are not routing through the VPN correctly and the pcWRT is (correctly) logging the failed DNS look-ups. I’ll follow up with my company IT. I was worried that the pcWRT was somehow overriding the VPN connection and blocking things before they had a chance to be resolved on the company network. But I can access company-private resources using my web browser, indicating to me at least that pcWRT is not the problem here.

    #6340
    erich
    Participant

    Haha, finally found the version of the firmware. It’s always at the bottom right of the screen:
    pcWRT PW-AX1800 v2.6.4

Viewing 4 posts - 1 through 4 (of 4 total)

You must be logged in to reply to this topic.