https://banking.postbank.de/rai/login is not working and i can not find the problem. banking.postbank.de is on the whitelist. in the query log nothing with postbank is red. with vpn it is working.
any idea?
When loading that page, DNSThingy shows the following domains trying to load. Check that www.postbank.de is not on a block list as well.
banking.postbank.de
www.postbank.de
ajax.googleapis.com
i put all urls in the whitelist, but it is not working. is it working when you test the url?
Yes.
The domain was found in one blocklist on my setup (you will likely be running different lists), but since it wasn't the exact domain I was able to load the page:
$ pihole -q postbank.de
Match found in list.42.hosts-file.net.domains:
postbank.de.kundenkonto-postbank-6756370708-postbank.ru
www.postbank.de.kundenkonto-postbank-6756370708-postbank.ru
ok, big thxs.
on my site postbank.de is only found in the whitelist.
now i think the problem is not the pi-hole. perhaps my isp
both are on the whitelist. when i enter the on the whitelist: banking.postbank.de/rai/login
Failure! Something went wrong.
banking.postbank.de/rai/login is not a valid domain
hey, i'm having the same problem and i dont get how to fix it.. I've tried this but it doesnt work:
Should i just open the list and delete the links or how to get it work?
/e: I don understand why postbank.de is blocked because of a domain called "postbank.de.kundenkonto-postbank-6756370708-postbank.ru" ... postbank.de is not kundenkonto-postbank-6756370708-postbank.ru ... Is it a bug?
hey, thanks for your reply.
I've updated Pi-hole to the newest version (Pi-hole Version v4.0, Web Interface Version v4.0, FTL Version v4.0) and I haven't used any regex domains or wildmark domains. I've just added some lists to the pi-hole, otherwise its pretty much default settings...
So you say i should whitelist "postbank.de.kundenkonto-postbank-6756370708-postbank.ru" ?? :>
/e: I've only added lists from https://firebog.net/
with adding
.... postbank.de.kundenkonto-postbank-6756370708-postbank.ru
to the whitelist all is working. thxs
gravity.list
, the blacklist, and the whitelist only affect the exact domains that appear on those lists.
hey,
sorry... but i dont get this.. even if i whitelist the scammer URL as said by don_misu It does not load the webpage for me. Also from what Mcat12 has written i take that the url "http://postbank.de.kundenkonto-postbank-6756370708-postbank.ru" which seems to be on the "gravity.list" should not block postbank.de ... but it does block it... I've tested this on three devices... (PC, MAC and iphone)
I guess I've tried everything... restarted DNS, deleted local cache... even added this scamm URL to the whitelist but it still refuses to load the page...
here is my debug token: 3ljku23is6
for now.. i just have to change DNS server if i want to do some online banking...
/e: added debug token
sorry, it is not ok on my side. on my test i forgot the running vpn.
postbank.de is working but not
postbank.de.kundenkonto-postbank-6756370708-postbank.ru
!= postbank.de
Did you whitelist the first domain, or the second? They are not the same domain.
yes i did it, but it is not working
i am on a mac. and no postbank in my hosts file
nslookup meine.postbank.de
Address: 192.168.1.19#53
Non-authoritative answer:
Name: meine.postbank.de
Address: 185.157.34.21
nslookup banking.postbank.de
Non-authoritative answer:
*** Can't find banking.postbank.de: No answer
nslookup www.postbank.de
Address: 192.168.1.19#53
Non-authoritative answer:
Name: www.postbank.de
Address: 160.83.8.182
vpn is vpn from f-secure and there dns server. with vpn on, all on postbank is working.
i removed the bad url from my whitelist. but with this, i can not enter the site postbank. the main url is not working
hey,
ofc i've tried to whitelist the second domain first... I've only whitelisted the scammer url for testing once and removed it directly when i noticed it does not help.
If i enter "pihole -q postbank.de" it shows:
Match found in Whitelist
postbank.de
www.postbank.de
banking.postbank.de
meine.postbank.de
Match found in list.31.hosts-file.net.domains:
postbank.de.kundenkonto-postbank-6756370708-postbank.ru
www.postbank.de.kundenkonto-postbank-6756370708-postbank.ru
If i just enter "pihole -q postbank" it shows:
Match found in Whitelist
postbank.de
www.postbank.de
banking.postbank.de
meine.postbank.de
Match found in list.0.raw.githubusercontent.com.domains:
postbank.ssl-zertifikat.mobi
Match found in list.26.v.firebog.net.domains:
postbank.488-s8.usa.cc
Match found in list.31.hosts-file.net.domains:
postbank-secure.com
postbank.de.kundenkonto-postbank-6756370708-postbank.ru
www.postbank.de.kundenkonto-postbank-6756370708-postbank.ru
Match found in list.36.v.firebog.net.domains:
postbank-de.net
postbank-deutschland.com
postbanklondon.com
Match found in list.39.v.firebog.net.domains:
postbank.ssl-zertifikat.mobi
Now the nslookup for postbank.de (on the pihole)
Server: 127.0.0.1
Address: 127.0.0.1#53Non-authoritative answer:
*** Can't find postbank.de: No answer
Now the nslookup for www.postbank.de (on the pihole)
Server: 127.0.0.1
Address: 127.0.0.1#53Non-authoritative answer:
*** Can't find www.postbank.de: No answer
Now the nslookup for banking.postbank.de (on the pihole)
Server: 127.0.0.1
Address: 127.0.0.1#53Non-authoritative answer:
*** Can't find banking.postbank.de: No answer
Now the nslookup for meine.postbank.de (on the pihole)
Server: 127.0.0.1
Address: 127.0.0.1#53Non-authoritative answer:
*** Can't find meine.postbank.de: No answer
.. its the same for all if them....
nslookup pi-hole.net
Server: 127.0.0.1
Address: 127.0.0.1#53Non-authoritative answer:
Name: pi-hole.net
Address: 206.189.252.21
nslookup flurry.com
Server: 127.0.0.1
Address: 127.0.0.1#53Name: flurry.com
Address: 0.0.0.0
I'm using 1.1.1.1 as DNS service for a while now and it worked well so far.
/e: it was working well with postbank.de too :>
/etc/resolve.conf content:
# Dynamic resolv.conf(5) file for glibc resolver(3) generated by resolvconf(8)
# DO NOT EDIT THIS FILE BY HAND -- YOUR CHANGES WILL BE OVERWRITTEN
nameserver 127.0.0.1
also i've noticed that in the query log it does not show anything getting piholed.. if i try to load postbank.de it loads for a while and fails but it shows nothing in the query log...
but it showed this:
2018-09-02 20:13:42 A banking.postbank.de OK (cached) NODATA (2.3ms)
what confuses me, it says "NODATA" <- maybe thats a useful information?
/e: but its not shown all the time.. if i try to load the page 10 times it maybe shows it once... I'm really confused why the query log does not show everything
/e2:
2018-09-02 20:31:12 | A | www.postbank.de | OK (cached) | NODATA (9.1ms) | |
---|---|---|---|---|---|
2018-09-02 20:31:07 | A | postbank.de | OK (cached) | NODATA (1.1ms) |
yes, that works perfectly fine:
nslookup postbank.de 1.1.1.1
Server: 1.1.1.1
Address: 1.1.1.1#53Non-authoritative answer:
Name: postbank.de
Address: 160.83.8.182