Queries regarding forwarders

Grant Taylor gtaylor at tnetconsulting.net
Thu Oct 25 02:52:57 UTC 2018


On 08/09/2018 01:01 AM, Lee wrote:
> it does, so you have to flag your local zones as rpz-passthru.

Thank you again Lee.  You gave me exactly what I needed and wanted to know.

I finally got around to configuring my RPZ to filter IPv4 
Special-Purpose Address Registry as per IANA's definition. 
(https://www.iana.org/assignments/iana-ipv4-special-registry/iana-ipv4-special-registry.xhtml#iana-ipv4-special-registry-1)

I am also happily using rpz-passthru for my local domain(s) that resolve 
to filtered IPs.

Now I'm pontificating augmenting my RPZ to also filter replies that 
resolve to IPv4 BOGONs.  (Received via BGP feed with Team Cymru.)



-- 
Grant. . . .
unix || die

-------------- next part --------------
A non-text attachment was scrubbed...
Name: smime.p7s
Type: application/pkcs7-signature
Size: 3982 bytes
Desc: S/MIME Cryptographic Signature
URL: <https://lists.isc.org/pipermail/bind-users/attachments/20181024/93d6931a/attachment.bin>


More information about the bind-users mailing list