RPZ Response change

Fred Morris m3047 at m3047.net
Wed Nov 20 02:18:28 UTC 2024


On Tue, 19 Nov 2024, Karol Nowicki via bind-users wrote:

> Hello Everyone Does ISC Bind RPZ suport to change response for A query 
> type ? For example Cache nameserver respond back to clients
> 192.168.120.1 
> on A query for a1.example.com and Im courius if RPZ can handle to change 
> response to 192.168.21.2

Yes! I personally have a whole project on GitHub dedicated to rewriting / 
synthesizing PTR records this way: https://github.com/m3047/rear_view_rpz

Rewriting A records was probably closer to the architect's intentions, in 
that you can rewrite to send stuff to a honey server or walled garden for 
a "teaching moment".

--

Fred Morris, internet plumber



More information about the bind-users mailing list