Re: RPZ seems to be hit and miss

2014-01-10 Thread Howard, Christopher Bryan
I¹ve just been using the RPZ built into BIND. I don¹t think I was aware of RPZ 2. -Christopher On 1/10/14, 3:23 PM, "Alan Clegg" wrote: > >On Jan 10, 2014, at 1:32 PM, Howard, Christopher Bryan > wrote: > >> For reference: >> BIND 9.9.4-P1 >> CentO

RPZ seems to be hit and miss

2014-01-10 Thread Howard, Christopher Bryan
For reference: BIND 9.9.4-P1 CentOS 6.4 64bit arch We use RPZ to CNAME all of the “bad” domains over to a catch-all type server that can display a message to the user. Until recently it has been working perfectly (or we thought it was :-P ). The problem: RPZ appears to have stopped working pro

Getting RPZ statistics

2012-12-07 Thread Howard, Christopher Bryan
I recently (as of 2 days ago) enabled RPZ on all of my name servers. I currently use "rndc stats", perl, and SNMP to make certain global stats available to our network monitoring system to make charts (number of queries across all views and such). I'd like to do the same for just the RPZ zone