Re: rndc addzone type forward

2016-11-17 Thread Tony Finch
> Unfortunately that's not currently possible. The configuration syntax is > misleading here. You configure forwarding in a view by putting a "zone" > statement in named.conf, but it doesn't actually build a zone *object*, > the way type "master" or "slave" does; it tells the server to set up a > d

Re: refused rcode is not working RPZ?

2016-11-17 Thread Phil Mayers
On 17/11/16 02:29, LEE SUKMOON wrote: This domain causes many recursive query. And client received late SERVFAIL response. I want to quickly response "*.jifr.net". I want to solve this problem using RPZ. See "qname-wait-recurse" in the bind ARM. This will apply policy to the query for QNAME