IPv6 dns query control in non-routed (ULA) v6 networks?

David Carmean dlc at halibut.com
Fri Jun 27 00:31:11 UTC 2008


On Sat, Jun 21, 2008 at 09:50:12AM +1000, Mark Andrews wrote:
> 
> > 
> > Is there a method within BIND to allow named to listen on ipv6, but not 
> > originate any queries over ipv6?  
> > 
> > We're bringing up a dual-stack network using Unique Local Unicast address
> > space, and my caching servers are attempting to perform recursion over
> > v6 to some external servers.  I can't readily use an RFC3484 policy
> > table on the host because it's an "appliance" and such a mod would be unsuppo
> > rted.


It turns out that the answer was even simpler, in my particular case:

        blackhole  { ! fd00::/8;  };

(Or perhaps fc00::/7).

Thanks.



More information about the bind-users mailing list