The new antispyware feature can not be disabled on version 2.5.2 by the GUI, when we try to save the modifications or disable the service, all we can see is a white screen trying to apply the modifications
The interface only back if we refresh the page, but the modifications are not applied.
The problem is that a lot of URL that are in the black list are a phishing like that is a Bank web site.
Proxy -> DNS ->anti-spyware
jpg Endian 2.5.2.jpg (122,141) 2013-08-28 23:03
can you please verify the permissions of /var/efw/dnsmasq/settings ?
They should be like this:
-rw-r--r-- 1 nobody nobody 405 Aug 6 10:27 settings
BTW I'm not sure I would trust this bank :D [^]

Actually we block domain that have confirmed phish in their root directory and this the case actually..

If you are sure 100% the bank is safe (phishtank says not :) ) you could whitelist

it works! the permission was -rw-r--r-- 1 root root
ok so it's a permission problem..
Issue reported and will be fix soon, when is ready will be inform you.
Thanks for your help
msoliveira01 we can't reproduce this.. did you upgrade it or install from scratch?
and if you install did you restore a backup?
someone else experienced this issue?
Hello Luca,
I upgraded it from version 2.4.1
Hola he resuelto el problema, buscando desde la consola web en el firewall:

Ingresen como root, van a la ruta cd /var/efw/dnsmasq
Ejecutan ls -l y verán los permisos de cada modulo

allí deben ver algo como esto:

-rw-r--r-- 1 nobody nobody blackholedns.custom
-rw-r--r-- 1 nobody nobody blackholedns.ignore
drwxr-xr-x 2 nobody nobody default
-rw-r--r-- 1 nobody nobody destination_bypass
-rw-r--r-- 1 nobody nobody empty
-rw-r--r-- 1 nobody nobody hosts
-rw-r--r-- 1 nobody nobody local_nameserver
-rw-r--r-- 1 root root settings
-rw-r--r-- 1 nobody nobody settings.old

Por alguna razón nuestro settings paso a ser del root, pero tranquilos desde la consola en la ruta /var/efw/dnsmasq ejecutaremos mv settings settings.back donde renombraremos el settings de root y luego renombraremos el settings de nobody (el nuestro) mv settings.old settings

automáticamente ya podemos usar el dns proxy de nuestro grandioso firewall