Getting RPZ statistics
john at iastate.edu
Sat Dec 8 17:20:48 UTC 2012
> If you have a pointer to the technique you're using to
> distinguish images and serve up replies, i'd be interested to see it.
I'll be the first to admit it's not perfect, but even if we send
the wrong content, it's better than what they would have gotten! :)
First we just look at the suffix on the requested filename
(is it something obvious like .gif or .html or so on).
Then we look at if there was an accepts header sent, is
If you can't figure it out, one option is to just send
back a "403 Forbidden".
One bit I think a little bit clever is I figured out how to
not sure which it might be it doesn't matter. Now, if I
could just encode a legal image in it too! :)
> hn Hascall <john at iastate.edu> wrote:
> >We point our DNS-RPZ records at a =
> server ("here-be-dragons")
> >that records connections at that point. Also t=
> he webserver
> >which explains to the user the reason they are not seeing the
> >webpage t=
> hey expect.
> Sent from my mobile device, please excuse brevity and ty=
More information about the bind-users