Hallo,
mir ist aufgefallen dass seit einigen Tagen PiHole den Dienst versagt.
Im QueryLog werden gar keine Aktivitäten mehr angezeigt außer von PiHole selbst.
Kann mir jemand helfen?
*** [ INITIALIZING ]
[i] 2018-12-09:19:00:36 debug log has been initialized.
*** [ INITIALIZING ] Sourcing setup variables
[i] Sourcing /etc/pihole/setupVars.conf...
*** [ DIAGNOSING ]: Core version
[i] Core: v4.0 (https://discourse.pi-hole.net/t/how-do-i-update-pi-hole/249)
[i] Branch: master
[i] Commit: v4.0-0-gddbdb51
*** [ DIAGNOSING ]: Web version
[i] Web: v4.0 (https://discourse.pi-hole.net/t/how-do-i-update-pi-hole/249)
[i] Branch: master
[i] Commit: v4.0-0-gaf8c926
*** [ DIAGNOSING ]: FTL version
[✓] FTL: v4.0
*** [ DIAGNOSING ]: dnsmasq version
[i] 340:
*** [ DIAGNOSING ]: lighttpd version
[i] 1.4.45
*** [ DIAGNOSING ]: php version
[i] 7.0.30
*** [ DIAGNOSING ]: Operating system
[✓] Raspbian GNU/Linux 9 (stretch)
*** [ DIAGNOSING ]: SELinux
[i] SELinux not detected
*** [ DIAGNOSING ]: Processor
[✓] armv6l
*** [ DIAGNOSING ]: Networking
[✓] IPv4 address(es) bound to the tun0 interface:
10.8.0.1/24 does not match the IP found in /etc/pihole/setupVars.conf (https://discourse.pi-hole.net/t/use-ipv6-ula-addresses-for-pi-hole/2127)
[✓] IPv6 address(es) bound to the tun0 interface:
fe80::791c:6d22:d0f8:7ccd does not match the IP found in /etc/pihole/setupVars.conf (https://discourse.pi-hole.net/t/use-ipv6-ula-addresses-for-pi-hole/2127)
^ Please note that you may have more than one IP address listed.
As long as one of them is green, and it matches what is in /etc/pihole/setupVars.conf, there is no need for concern.
The link to the FAQ is for an issue that sometimes occurs when the IPv6 address changes, which is why we check for it.
[i] Default IPv4 gateway: 192.168.1.1
* Pinging 192.168.1.1...
[✗] Gateway did not respond. (https://discourse.pi-hole.net/t/why-is-a-default-gateway-important-for-pi-hole/3546)
*** [ DIAGNOSING ]: Ports in use
*:22 sshd (IPv4)
*:22 sshd (IPv6)
*:80 lighttpd (IPv4)
*:80 lighttpd (IPv6)
*:53 pihole-FTL (IPv4)
*:53 pihole-FTL (IPv6)
127.0.0.1:4711 pihole-FTL (IPv4)
[::1]:4711 pihole-FTL (IPv6)
*** [ DIAGNOSING ]: Name resolution (IPv4) using a random blocked domain and a known ad-serving domain
[✓] www.b2bleadgen.info is 0.0.0.0 via localhost (127.0.0.1)
[✗] Failed to resolve www.b2bleadgen.info via Pi-hole (192.168.1.160)
[✓] doubleclick.com is 172.217.22.238 via a remote, public DNS server (8.8.8.8)
*** [ DIAGNOSING ]: Pi-hole processes
[✗] dnsmasq daemon is inactive
[✓] lighttpd daemon is active
[✓] pihole-FTL daemon is active
*** [ DIAGNOSING ]: Setup variables
PIHOLE_INTERFACE=eth0
PIHOLE_INTERFACE=tun0
IPV4_ADDRESS=192.168.1.160/24
IPV6_ADDRESS=
QUERY_LOGGING=true
INSTALL_WEB_SERVER=true
INSTALL_WEB_INTERFACE=true
LIGHTTPD_ENABLED=true
TEMPERATUREUNIT=C
ADMIN_EMAIL=xxx@gmail.com
WEBUIBOXEDLAYOUT=boxed
DNSMASQ_LISTENING=single
PIHOLE_DNS_1=46.182.19.48#53
PIHOLE_DNS_2=194.150.168.168#53
DNS_FQDN_REQUIRED=true
DNS_BOGUS_PRIV=true
DNSSEC=false
CONDITIONAL_FORWARDING=true
CONDITIONAL_FORWARDING_IP=192.168.1.1
CONDITIONAL_FORWARDING_DOMAIN=ASUS
CONDITIONAL_FORWARDING_REVERSE=1.168.192.in-addr.arpa
*** [ DIAGNOSING ]: Dashboard and block page
[✓] Block page X-Header: X-Pi-hole: A black hole for Internet advertisements.
[✓] Web interface X-Header: X-Pi-hole: The Pi-hole Web interface is working!
*** [ DIAGNOSING ]: Gravity list
-rw-r--r-- 1 root root 13578044 Dez 9 18:12 /etc/pihole/gravity.list
-----head of gravity.list------
-rotation.de
-sso.anbtr.com
-traffic.com
-x3.vindicosuite.com
-----tail of gravity.list------
zzzrtrcm2.com
zzzxxxcc.no-ip.biz
zzzz2233.cn
zzzzzqp.com
*** [ DIAGNOSING ]: contents of /etc/pihole
-rw-r--r-- 1 root root 2349 Aug 14 18:22 /etc/pihole/adlists.list
https://raw.githubusercontent.com/StevenBlack/hosts/master/hosts
https://mirror1.malwaredomains.com/files/justdomains
http://sysctl.org/cameleon/hosts
https://zeustracker.abuse.ch/blocklist.php?download=domainblocklist
https://s3.amazonaws.com/lists.disconnect.me/simple_tracking.txt
https://s3.amazonaws.com/lists.disconnect.me/simple_ad.txt
https://hosts-file.net/ad_servers.txt
https://hosts-file.net/grm.txt
https://reddestdream.github.io/Projects/MinimalHosts/etc/MinimalHostsBlocker/minimalhosts
https://raw.githubusercontent.com/StevenBlack/hosts/master/data/KADhosts/hosts
https://raw.githubusercontent.com/StevenBlack/hosts/master/data/add.Spam/hosts
https://v.firebog.net/hosts/static/w3kbl.txt
https://adaway.org/hosts.txt
https://v.firebog.net/hosts/AdguardDNS.txt
https://raw.githubusercontent.com/anudeepND/blacklist/master/adservers.txt
https://v.firebog.net/hosts/Easylist.txt
https://pgl.yoyo.org/adservers/serverlist.php?hostformat=hosts;showintro=0
https://raw.githubusercontent.com/StevenBlack/hosts/master/data/UncheckyAds/hosts
https://v.firebog.net/hosts/Easyprivacy.txt
https://v.firebog.net/hosts/Prigent-Ads.txt
https://raw.githubusercontent.com/quidsup/notrack/master/trackers.txt
https://raw.githubusercontent.com/StevenBlack/hosts/master/data/add.2o7Net/hosts
https://raw.githubusercontent.com/crazy-max/WindowsSpyBlocker/master/data/hosts/spy.txt
https://s3.amazonaws.com/lists.disconnect.me/simple_malvertising.txt
https://hosts-file.net/exp.txt
https://hosts-file.net/emd.txt
https://hosts-file.net/psh.txt
https://mirror.cedia.org.ec/malwaredomains/immortal_domains.txt
https://www.malwaredomainlist.com/hostslist/hosts.txt
https://bitbucket.org/ethanr/dns-blacklists/raw/8575c9f96e5b4a1308f2f12394abd86d0927a4a0/bad_lists/Mandiant_APT1_Report_Appendix_D.txt
https://v.firebog.net/hosts/Prigent-Malware.txt
https://v.firebog.net/hosts/Prigent-Phishing.txt
https://raw.githubusercontent.com/quidsup/notrack/master/malicious-sites.txt
https://ransomwaretracker.abuse.ch/downloads/RW_DOMBL.txt
https://v.firebog.net/hosts/Shalla-mal.txt
https://raw.githubusercontent.com/StevenBlack/hosts/master/data/add.Risk/hosts
https://raw.githubusercontent.com/HenningVanRaumle/pihole-ytadblock/master/ytadblock.txt
https://github.com/anudeepND/youtubeadsblacklist/blob/master/domainlist.txt
http://localhost/youtube-ads-list.txt
-rw-r--r-- 1 root root 1 Aug 22 20:16 /etc/pihole/blacklist.txt
-rw-r--r-- 1 root root 43 Dez 9 18:12 /etc/pihole/local.list
192.168.1.160 pihole
192.168.1.160 pi.hole
-rw-r--r-- 1 root root 234 Aug 22 18:17 /etc/pihole/logrotate
/var/log/pihole.log {
su root root
daily
copytruncate
rotate 5
compress
delaycompress
notifempty
nomail
}
/var/log/pihole-FTL.log {
su root root
weekly
copytruncate
rotate 3
compress
delaycompress
notifempty
nomail
}
-rw-r--r-- 1 root root 368 Nov 26 05:45 /etc/pihole/whitelist.txt
github.com
cdn.livechatinc.com
biosagentplus.com
the.earth.li
img.alibaba.com
stun.services.mozilla.com
g.alicdn.com
www.pes-patch.com
api.smartredirect.de
analytics.plex.tv
www.opensubtitles.org
gleam.io
mywot.com
click.linksynergy.com
js.braintreegateway.com
guce.advertising.com
tc.tradetracker.net
track.webgains.com
partners.webmasterplan.com
tags-eu.tiqcdn.com
*** [ DIAGNOSING ]: contents of /etc/dnsmasq.d
-rw-r--r-- 1 root root 1620 Dez 9 18:48 /etc/dnsmasq.d/01-pihole.conf
addn-hosts=/etc/pihole/gravity.list
addn-hosts=/etc/pihole/black.list
addn-hosts=/etc/pihole/local.list
localise-queries
no-resolv
cache-size=10000
log-queries=extra
log-facility=/var/log/pihole.log
local-ttl=2
log-async
server=46.182.19.48
server=194.150.168.168
domain-needed
bogus-priv
interface=tun0
server=/ASUS/192.168.1.1
server=/1.168.192.in-addr.arpa/192.168.1.1
*** [ DIAGNOSING ]: contents of /etc/lighttpd
-rw-r--r-- 1 root root 3027 Aug 22 18:17 /etc/lighttpd/lighttpd.conf
server.modules = (
"mod_access",
"mod_accesslog",
"mod_auth",
"mod_expire",
"mod_compress",
"mod_redirect",
"mod_setenv",
"mod_rewrite"
)
server.document-root = "/var/www/html"
server.error-handler-404 = "pihole/index.php"
server.upload-dirs = ( "/var/cache/lighttpd/uploads" )
server.errorlog = "/var/log/lighttpd/error.log"
server.pid-file = "/var/run/lighttpd.pid"
server.username = "www-data"
server.groupname = "www-data"
server.port = 80
accesslog.filename = "/var/log/lighttpd/access.log"
accesslog.format = "%{%s}t|%V|%r|%s|%b"
index-file.names = ( "index.php", "index.html", "index.lighttpd.html" )
url.access-deny = ( "~", ".inc", ".md", ".yml", ".ini" )
static-file.exclude-extensions = ( ".php", ".pl", ".fcgi" )
compress.cache-dir = "/var/cache/lighttpd/compress/"
compress.filetype = ( "application/javascript", "text/css", "text/html", "text/plain" )
include_shell "/usr/share/lighttpd/use-ipv6.pl " + server.port
include_shell "/usr/share/lighttpd/create-mime.assign.pl"
include_shell "find /etc/lighttpd/conf-enabled -name '*.conf' -a ! -name 'letsencrypt.conf' -printf 'include \"%p\"
' 2>/dev/null"
$HTTP["url"] =~ "^/admin/" {
setenv.add-response-header = (
"X-Pi-hole" => "The Pi-hole Web interface is working!",
"X-Frame-Options" => "DENY"
)
$HTTP["url"] =~ ".ttf$" {
setenv.add-response-header = ( "Access-Control-Allow-Origin" => "*" )
}
}
$HTTP["url"] =~ "^/admin/\.(.*)" {
url.access-deny = ("")
}
include_shell "cat external.conf 2>/dev/null"
*** [ DIAGNOSING ]: contents of /etc/cron.d
-rw-r--r-- 1 root root 1495 Aug 22 18:17 /etc/cron.d/pihole
18 4 * * 7 root PATH="$PATH:/usr/local/bin/" pihole updateGravity
00 00 * * * root PATH="$PATH:/usr/local/bin/" pihole flush once quiet
@reboot root /usr/sbin/logrotate /etc/pihole/logrotate
*/10 * * * * root PATH="$PATH:/usr/local/bin/" pihole updatechecker local
3 14 * * * root PATH="$PATH:/usr/local/bin/" pihole updatechecker remote
@reboot root PATH="$PATH:/usr/local/bin/" pihole updatechecker remote reboot
*** [ DIAGNOSING ]: contents of /var/log/lighttpd
-rw-r--r-- 1 www-data www-data 1074 Dez 9 18:21 /var/log/lighttpd/error.log
2018-12-02 06:25:06: (server.c.1534) logfiles cycled UID = 0 PID = 18397
2018-12-09 09:52:00: (server.c.1828) server stopped by UID = 0 PID = 1
2018-12-09 09:52:31: (log.c.217) server started
2018-12-09 11:57:41: (server.c.1828) server stopped by UID = 0 PID = 1
2018-12-09 11:58:10: (log.c.217) server started
2018-12-09 11:59:10: (server.c.1828) server stopped by UID = 0 PID = 1
2018-12-09 12:00:08: (log.c.217) server started
2018-12-09 14:16:37: (server.c.1828) server stopped by UID = 0 PID = 1
2018-12-09 14:17:05: (log.c.217) server started
2018-12-09 17:57:46: (server.c.1828) server stopped by UID = 0 PID = 1
2018-12-09 17:58:15: (log.c.217) server started
2018-12-09 17:58:30: (server.c.1828) server stopped by UID = 0 PID = 1
2018-12-09 17:59:03: (log.c.217) server started
2018-12-09 18:03:47: (log.c.217) server started
2018-12-09 18:21:44: (mod_fastcgi.c.2543) FastCGI-stderr: PHP Notice: Only variables should be passed by reference in /var/www/html/admin/scripts/vendor/qrcode.php on line 77
*** [ DIAGNOSING ]: contents of /var/log
-rw-r--r-- 1 pihole pihole 80361 Dez 9 18:49 /var/log/pihole-FTL.log
-----head of pihole-FTL.log------
[2018-12-09 04:18:01.839] Notice: Increasing overTime struct size from 700 to 800
[2018-12-09 04:19:25.056] Compiled 0 Regex filters and 21 whitelisted domains in 0.6 msec (0 errors)
[2018-12-09 04:19:27.645] /etc/pihole/black.list: parsed 0 domains (took 0.1 ms)
[2018-12-09 04:19:37.962] /etc/pihole/gravity.list: parsed 646643 domains (took 10317.1 ms)
[2018-12-09 09:51:01.402] ########## FTL started! ##########
[2018-12-09 09:51:01.404] FTL branch:
[2018-12-09 09:51:01.404] FTL version: v4.0
[2018-12-09 09:51:01.404] FTL commit: 8493df4
[2018-12-09 09:51:01.404] FTL date: 2018-08-05 13:40:30 -0700
[2018-12-09 09:51:01.405] FTL user: pihole
[2018-12-09 09:51:01.405] Starting config file parsing (/etc/pihole/pihole-FTL.conf)
[2018-12-09 09:51:01.405] SOCKET_LISTENING: only local
[2018-12-09 09:51:01.406] AAAA_QUERY_ANALYSIS: Show AAAA queries
[2018-12-09 09:51:01.406] MAXDBDAYS: max age for stored queries is 365 days
[2018-12-09 09:51:01.406] RESOLVE_IPV6: Resolve IPv6 addresses
[2018-12-09 09:51:01.407] RESOLVE_IPV4: Resolve IPv4 addresses
[2018-12-09 09:51:01.407] DBINTERVAL: saving to DB file every minute
[2018-12-09 09:51:01.407] DBFILE: Using /etc/pihole/pihole-FTL.db
[2018-12-09 09:51:01.408] MAXLOGAGE: Importing up to 24.0 hours of log data
[2018-12-09 09:51:01.408] PRIVACYLEVEL: Set to 0
[2018-12-09 09:51:01.408] IGNORE_LOCALHOST: Show queries from localhost
[2018-12-09 09:51:01.409] BLOCKINGMODE: Null IPs for blocked domains
[2018-12-09 09:51:01.409] REGEX_DEBUGMODE: Inactive
[2018-12-09 09:51:01.409] Finished config file parsing
[2018-12-09 09:51:01.410] Compiled 0 Regex filters and 21 whitelisted domains in 0.6 msec (0 errors)
[2018-12-09 09:51:01.417] Database successfully initialized
[2018-12-09 09:51:01.423] Notice: Increasing queries struct size from 0 to 10000
[2018-12-09 09:51:01.423] Notice: Increasing domains struct size from 0 to 1000
[2018-12-09 09:51:01.424] Notice: Increasing clients struct size from 0 to 10
[2018-12-09 09:51:01.424] New forward server: 194.150.168.168 (0/0)
[2018-12-09 09:51:01.424] Notice: Increasing forwarded struct size from 0 to 4
[2018-12-09 09:51:01.424] Notice: Increasing overTime struct size from 0 to 100
[2018-12-09 09:51:01.425] New forward server: 85.214.20.141 (1/4)
[2018-12-09 09:51:01.429] Imported 86 queries from the long-term database
[2018-12-09 09:51:01.429] -> Total DNS queries: 86
-----tail of pihole-FTL.log------
[2018-12-09 18:49:18.172] RESOLVE_IPV4: Resolve IPv4 addresses
[2018-12-09 18:49:18.173] DBINTERVAL: saving to DB file every minute
[2018-12-09 18:49:18.173] DBFILE: Using /etc/pihole/pihole-FTL.db
[2018-12-09 18:49:18.173] MAXLOGAGE: Importing up to 24.0 hours of log data
[2018-12-09 18:49:18.174] PRIVACYLEVEL: Set to 0
[2018-12-09 18:49:18.174] IGNORE_LOCALHOST: Show queries from localhost
[2018-12-09 18:49:18.174] BLOCKINGMODE: Null IPs for blocked domains
[2018-12-09 18:49:18.175] REGEX_DEBUGMODE: Inactive
[2018-12-09 18:49:18.175] Finished config file parsing
[2018-12-09 18:49:18.176] Compiled 0 Regex filters and 21 whitelisted domains in 0.5 msec (0 errors)
[2018-12-09 18:49:18.181] Database successfully initialized
[2018-12-09 18:49:18.185] Notice: Increasing queries struct size from 0 to 10000
[2018-12-09 18:49:18.185] Notice: Increasing domains struct size from 0 to 1000
[2018-12-09 18:49:18.186] Notice: Increasing clients struct size from 0 to 10
[2018-12-09 18:49:18.186] New forward server: 85.214.20.141 (0/0)
[2018-12-09 18:49:18.186] Notice: Increasing forwarded struct size from 0 to 4
[2018-12-09 18:49:18.186] Notice: Increasing overTime struct size from 0 to 100
[2018-12-09 18:49:18.189] New forward server: 194.150.168.168 (1/4)
[2018-12-09 18:49:18.198] Imported 392 queries from the long-term database
[2018-12-09 18:49:18.199] -> Total DNS queries: 392
[2018-12-09 18:49:18.199] -> Cached DNS queries: 174
[2018-12-09 18:49:18.199] -> Forwarded DNS queries: 160
[2018-12-09 18:49:18.199] -> Exactly blocked DNS queries: 58
[2018-12-09 18:49:18.200] -> Unknown DNS queries: 0
[2018-12-09 18:49:18.200] -> Unique domains: 104
[2018-12-09 18:49:18.200] -> Unique clients: 2
[2018-12-09 18:49:18.201] -> Known forward destinations: 2
[2018-12-09 18:49:18.201] Successfully accessed setupVars.conf
[2018-12-09 18:49:18.243] PID of FTL process: 3212
[2018-12-09 18:49:18.244] Listening on port 4711 for incoming IPv4 telnet connections
[2018-12-09 18:49:18.245] Listening on port 4711 for incoming IPv6 telnet connections
[2018-12-09 18:49:18.246] Listening on Unix socket
[2018-12-09 18:49:18.261] Compiled 0 Regex filters and 21 whitelisted domains in 0.6 msec (0 errors)
[2018-12-09 18:49:18.263] /etc/pihole/black.list: parsed 0 domains (took 0.1 ms)
[2018-12-09 18:49:32.340] /etc/pihole/gravity.list: parsed 646646 domains (took 14076.2 ms)
*** [ DIAGNOSING ]: Locale
LANG=de_DE.UTF-8
*** [ DIAGNOSING ]: Pi-hole log
-rw-r--r-- 1 pihole pihole 167393 Dez 9 19:00 /var/log/pihole.log
-----head of pihole.log------
Dec 9 04:18:01 dnsmasq[6233]: 922 127.0.0.1/49680 query[AAAA] pi.hole from 127.0.0.1
Dec 9 04:18:01 dnsmasq[6233]: 922 127.0.0.1/49680 forwarded pi.hole to 194.150.168.168
Dec 9 04:18:01 dnsmasq[6233]: 922 127.0.0.1/49680 forwarded pi.hole to 85.214.20.141
Dec 9 04:18:01 dnsmasq[6233]: 922 127.0.0.1/49680 reply pi.hole is NODATA-IPv6
Dec 9 04:18:01 dnsmasq[6233]: 923 127.0.0.1/33304 query[AAAA] pi.hole from 127.0.0.1
Dec 9 04:18:01 dnsmasq[6233]: 923 127.0.0.1/33304 cached pi.hole is NODATA-IPv6
Dec 9 04:18:01 dnsmasq[6233]: 924 127.0.0.1/44479 query[A] pi.hole from 127.0.0.1
Dec 9 04:18:01 dnsmasq[6233]: 924 127.0.0.1/44479 /etc/pihole/local.list pi.hole is 192.168.1.160
Dec 9 04:18:01 dnsmasq[6233]: 925 127.0.0.1/38877 query[A] raw.githubusercontent.com from 127.0.0.1
Dec 9 04:18:01 dnsmasq[6233]: 925 127.0.0.1/38877 forwarded raw.githubusercontent.com to 85.214.20.141
Dec 9 04:18:01 dnsmasq[6233]: 926 127.0.0.1/38877 query[AAAA] raw.githubusercontent.com from 127.0.0.1
Dec 9 04:18:01 dnsmasq[6233]: 926 127.0.0.1/38877 forwarded raw.githubusercontent.com to 85.214.20.141
Dec 9 04:18:01 dnsmasq[6233]: 925 127.0.0.1/38877 reply raw.githubusercontent.com is <CNAME>
Dec 9 04:18:01 dnsmasq[6233]: 925 127.0.0.1/38877 reply github.map.fastly.net is 151.101.12.133
Dec 9 04:18:01 dnsmasq[6233]: 926 127.0.0.1/38877 reply raw.githubusercontent.com is <CNAME>
Dec 9 04:18:01 dnsmasq[6233]: 926 127.0.0.1/38877 reply github.map.fastly.net is NODATA-IPv6
Dec 9 04:18:03 dnsmasq[6233]: 927 127.0.0.1/42983 query[A] mirror1.malwaredomains.com from 127.0.0.1
Dec 9 04:18:03 dnsmasq[6233]: 927 127.0.0.1/42983 forwarded mirror1.malwaredomains.com to 85.214.20.141
Dec 9 04:18:03 dnsmasq[6233]: 928 127.0.0.1/42983 query[AAAA] mirror1.malwaredomains.com from 127.0.0.1
Dec 9 04:18:03 dnsmasq[6233]: 928 127.0.0.1/42983 forwarded mirror1.malwaredomains.com to 85.214.20.141