rpz fail

2019-08-24 Thread Lee
tl,dr: https://github.com/StevenBlack/hosts/issues/451 Can someone please explain why using this as my rpz zone does NOT block everything for *.2o7.net? $ cat db.test-rpz $ORIGIN rpz.test. $TTL1s @ IN SOA localhost. admin ( 2019082405 6h 15 1d 1s ) IN NS localhost. 2o7.net CNAME .

Re: RPZ for reverse lookups ?

2019-08-24 Thread Noel Butler
On 25/08/2019 06:56, J Doe wrote: > Hello, > > I have a basic question regarding RPZ on Bind 9.11.x. > > Is it possible to re-write a response on a reverse lookup ? For instance, if > I considered example.com [1] a "bad domain", can I write a RPZ policy so that > a reverse lookup of IP's

RPZ for reverse lookups ?

2019-08-24 Thread J Doe
Hello, I have a basic question regarding RPZ on Bind 9.11.x. Is it possible to re-write a response on a reverse lookup ? For instance, if I considered example.com a “bad domain”, can I write a RPZ policy so that a reverse lookup of IP’s that map to example.com fails or is blocked ? I know I