Re: Logging ECS information for RPZ rewrites

2018-05-16 Thread Tony Finch
Brian Keifer wrote: > > The architecture I've been working with so far is a pair of front-end proxy > servers running keepalived to share a virtual IP and PowerDNS's dnsdist as > the actual proxy. The proxies set ECS to the client's IP address and pass > the request to one of four back-end cachin

Logging ECS information for RPZ rewrites

2018-05-15 Thread Brian Keifer
I'm working on creating a highly-available group of BIND servers to serve as caching nameservers with RPZs built from various threat intel feeds to help prevent unwanted activity on our network. The architecture I've been working with so far is a pair of front-end proxy servers running keepalived