Re: Bind RPZ dnsfirewall howto's version 2 are here

2014-08-22 Thread Doug Barton
Please don't reply to a message on the list and change the subject line. Doing so causes your new topic to show "under" the previous one for those using mail readers that thread properly, and may cause your message to be missed altogether if someone has blocked that thread. Instead, save the l

rpz and aaaa records, version: 9.10.0-P2

2014-08-22 Thread Carl Byington
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 I am trying to suppress the record for a name that also has an A record, so I think this should work: 32.zz.111.2a01.rpz-ip CNAME *. host webdir.online.lync.com. webdir.online.lync.com has address 132.245.113.28 webdir.online.lync.com has IPv6

Bind RPZ dnsfirewall howto's version 2 are here

2014-08-22 Thread Hans-Cees Speel
Hi, I have updated my 2 dnsfirewall howto's. 1. Dns firewall howto (POC setup bind dns firewall [caching dns (sec) resolver] with demonstration rpz zone) 2. Arming the dns firewall (added automatical download of open bad-domains lists daily, so you are protected against reported ip-ranges and