Re: [Pdns-users] Blocklist file format

2023-03-06 Thread Otto Moerbeek via Pdns-users
There is, check RPZs: https://docs.powerdns.com/recursor/lua-config/rpz.html -Otto On Tue, Mar 07, 2023 at 08:46:54AM +0200, Adrian M via Pdns-users wrote: > Having a policy list implemented directly in pdns-resolver it will be a > very nice feature nowadays IMHO. > > On Sun, Mar 5, 20

Re: [Pdns-users] Blocklist file format

2023-03-06 Thread Adrian M via Pdns-users
Having a policy list implemented directly in pdns-resolver it will be a very nice feature nowadays IMHO. On Sun, Mar 5, 2023 at 5:29 PM Darac Marjal via Pdns-users < pdns-users@mailman.powerdns.com> wrote: > You might find https://github.com/thommay/blocklister useful. This script > takes lists o

Re: [Pdns-users] DDOS TKEY request

2023-03-06 Thread Max Grobecker via Pdns-users
Hi, what does your system answer? I noticed, some resolvers will literally flood you with the very same question from if you send a SRVFAIL or FORMERR answer. Resolvers like 1.1.1.1 or 8.8.8.8 will send their queries from hundreds of different IP addresses to gain an answer... Greetings, Max

[Pdns-users] DDOS TKEY request

2023-03-06 Thread Giorgio Lardone via Pdns-users
Hi I have detected a high traffic on our DNS servers since yesterday (Dnsdist + Powerdns) of queries for non-existent records similar to "_.domainname.tld" TKEY request but no TKEY RR found115449.8% More than one TKEY record found in query57724.9% TKEY record has no or invalid