How to use Cloudflare with Pfsense

By powersjo | Powersjo Technical Blog | 21 Mar 2024


Recently, I tried to use Cloudflare with Pfsense. I used the IP addresses 1.1.1.3 and 1.0.0.3. Those IP addresses are meant to use DNS to block malware and adult content sites. I ran into an issue getting the content blocking to work and wanted to share.

First, in Pfsense, I went to System > General Setup > DNS Server Settings.

Cloudflare with Pfsense Pfsense > System > General Setup

Set the DNS servers and add as many as desired. I thought my problem was I needed to check disable DNS forwarder right below the DNS servers within that page of settings.

Cloudflare with Pfsense Disable DNS Forwarder

However, I was still able to get to the wrong sites so I was not forcing the use of Cloudflare’s DNS servers.

Second, within Pfsense, I went to Services > DNS Forwarder.

Cloudflare and Pfsense > Services > DNS Forwarder

From there I unchecked the box to enable the DNS forwarder. This fixed my issue. It forced my devices to use the Cloudflare DNS servers and the malware / adult content filtering worked.

It’s a simple solution for using Cloudflare with Pfsense and I figured I would share in case others ran into this in their home labs.

At the time of this writing, Cloudflare DNS servers are free for anyone to use and my Pfsense version is 2.4.5 (community edition).

For more reading from Powersjo, check out my previous post on sconfig here.

If you want more information on those IPs from Cloudflare, you can find info here.

Check out my previous blog post here.

This post was originally from my blog, referenced below. 

Haven't joined Publish0x yet? Join up by using my referral code.  

You can get a 25 PRE token bonus if you use my referral code here. This is to support a decentralized web search engine with presearch.org. 

You can earn crypto at Odysee.com, an alternative to YouTube. Use my affiliate link here to watch and earn. 

God bless you!

How do you rate this article?

2


powersjo
powersjo

Owner of powersjo.com a blogging site talking about books I have read, side projects, IT blogs, and military history.


Powersjo Technical Blog
Powersjo Technical Blog

This is meant to be a collection of technical blogs. The subjects covered are from my own learning and experience in IT.

Send a $0.01 microtip in crypto to the author, and earn yourself as you read!

20% to author / 80% to me.
We pay the tips from our rewards pool.