[RPZ] Getting distros to enable RPZ in Bind packages?

Vernon Schryver vjs at rhyolite.com
Wed Jan 16 22:10:32 UTC 2013


> From: Augie Schwer <augie.schwer at gmail.com>

> Has anyone had any success in convincing package maintainers for the major
> Linux distributions to enable RPZ in their Bind packages?
>
> Red Hat 6 for example has Bind 9.8 but still does not build named with RPZ
> support.

RPZ has been standard in BIND since 9.8.1 in 2011 according to
https://kb.isc.org/article/AA-00525/110/Building-DNS-Firewalls-with-Response-Policy-Zones-RPZ.html

Patches with unreleased changes that speed up RPZ for 9.8.4-P1
and 9.9.2-P1 can be found with the RRL patches by following the
link on http://www.redbarn.org/dns/ratelimits


Vernon Schryver    vjs at rhyolite.com



More information about the DNSfirewalls mailing list