Whitelisting sites using RPZ

Blason R blason16 at gmail.com
Thu Apr 26 07:46:20 UTC 2018


Oh thats great...in that case general practice would be always whitelist
the zones first then blacklist?

On Thu, Apr 26, 2018 at 11:53 AM, Daniel Stirnimann <
daniel.stirnimann at switch.ch> wrote:

> > response-policy { zone "malware.trap"; zone "whitelist.allow"  policy
> > passthru; };
>
> ...
>
> > So which one will take precendence in this case?
>
> Policy processing will search the zone files in the order in which they
> appear in the response-policy statement.
>
> So, you need to change the order in your example to achieve the desired
> result.
>
> Daniel
> _______________________________________________
> Please visit https://lists.isc.org/mailman/listinfo/bind-users to
> unsubscribe from this list
>
> bind-users mailing list
> bind-users at lists.isc.org
> https://lists.isc.org/mailman/listinfo/bind-users
>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://lists.isc.org/pipermail/bind-users/attachments/20180426/98dda25b/attachment-0001.html>


More information about the bind-users mailing list