DNS Blackholing

Phil Mayers p.mayers at imperial.ac.uk
Wed Dec 5 09:13:47 UTC 2012


On 12/04/2012 06:35 PM, Barry S. Finkel wrote:

> A question from the OP that has not yet been answered -
> Make the zones masters on all servers.

Surely not for RPZ? The whole point with RPZ is that you have one zone 
containing all the blacklists, master in one place, and slave it in all 
the others.

For traditional DNS blacklisting (one zone per blacklisted name/suffix) 
sure, but I'm honestly not sure why anyone would start out down that 
road today with RPZ available.



More information about the bind-users mailing list