> Instead of blocking the source (which aren't even real - they're > spoofed) why not just block access to your recursive resolver on port 53.
I need my DNS server to resolve for my authoritative domain, I have 30+ domains here I can't block acces to port 53. Denis _______________________________________________ Please visit https://lists.isc.org/mailman/listinfo/bind-users to unsubscribe from this list bind-users mailing list bind-users@lists.isc.org https://lists.isc.org/mailman/listinfo/bind-users