You don't need rpz to solve the privacy problem. A local copy of the root zone does that. It also solves the leaked unqualified names problem.
Mark masters f.root-servers.net { 192.5.5.241; 2001:500:2f::f; }; zone "." { type slave; masters { f.root-servers.net; }; file "root.db"; notify no; }; -- Mark Andrews, ISC 1 Seymour St., Dundas Valley, NSW 2117, Australia PHONE: +61 2 9871 4742 INTERNET: ma...@isc.org _______________________________________________ DNSOP mailing list DNSOP@ietf.org https://www.ietf.org/mailman/listinfo/dnsop