* John Polstra <[EMAIL PROTECTED]> [030916 20:14]: > On 16-Sep-2003 M. Warner Losh wrote: > > I think we should put a filter for this nonsense into the base > > system. Hack the resolve to filter out the adddress, and hack bind to > > filter it out too. that way we can leverage our position in the name > > servers in the world to do something about this BS. > > I think so too, in principle. But we need something better than a > hard-coded IP address. It would take Verisign about an hour to figure > out they need to change the address frequently. (Well, OK, a day ... > it's Verisign, after all.)
The best idea I had seen floated around was to cache the response to the lookup of "*.net" for a given period of time inside the resolver. [EMAIL PROTECTED]:~$ host *.net *.net has address 64.94.110.11 --Mike
pgp00000.pgp
Description: PGP signature