Re: RPZ seems to be hit and miss

2014-01-10 Thread Howard, Christopher Bryan
I¹ve just been using the RPZ built into BIND. I don¹t think I was aware of RPZ 2. -Christopher On 1/10/14, 3:23 PM, "Alan Clegg" wrote: > >On Jan 10, 2014, at 1:32 PM, Howard, Christopher Bryan > wrote: > >> For reference: >> BIND 9.9.4-P1 >> CentOS 6.4 >> 64bit arch >> >> We use RPZ to C

Re: RPZ seems to be hit and miss

2014-01-10 Thread Alan Clegg
On Jan 10, 2014, at 1:32 PM, Howard, Christopher Bryan wrote: > For reference: > BIND 9.9.4-P1 > CentOS 6.4 > 64bit arch > > We use RPZ to CNAME all of the “bad” domains over to a catch-all type server > that can display a message to the user. Until recently it has been working > perfectly

RPZ seems to be hit and miss

2014-01-10 Thread Howard, Christopher Bryan
For reference: BIND 9.9.4-P1 CentOS 6.4 64bit arch We use RPZ to CNAME all of the “bad” domains over to a catch-all type server that can display a message to the user. Until recently it has been working perfectly (or we thought it was :-P ). The problem: RPZ appears to have stopped working pro