block all AAAA queries for specific domain?

Rick van der Zwet info at rickvanderzwet.nl
Fri Aug 17 20:48:44 UTC 2018


Hi,

For debugging purposes, I am trying to block (only) AAAA queries from a 
specific domain and it's subdomains.

Currently I have to specify them all by hand, which is cumbersome since 
the list dynamic e.g.:

         local-zone: "netflix.com" typetransparent
         local-data: "netflix.com AAAA ::1"
         local-data: "moderate.ftl.netflix.com AAAA ::1"
         local-data: "www.latency.prodaa.netflix.com AAAA ::1"
         local-data: "www.netflix.com AAAA ::1"
         local-data: "www.geo.netflix.com AAAA ::1"
         local-data: "ichnaea-web.netflix.com AAAA ::1"
         local-data: "appboot.netflix.com AAAA ::1"
         local-data: "appboot.latency.prodaa.netflix.com AAAA ::1"
         local-data: "ios.nccp.netflix.com AAAA ::1"
         local-data: "ichnaea-web.geo.netflix.com AAAA ::1"
         local-data: "ichnaea-web.us-west-2.prodaa.netflix.com AAAA ::1"
         local-data: "ichnaea-web.us-west-1.prodaa.netflix.com AAAA ::1"


I rather have something like:
         local-zone: "netflix.com" typetransparent
         local-data: "*.netflix.com AAAA ::1"


Does somebody has a work-around available to make my debugging effort 
easier?

Best regards,
-Rick



More information about the Unbound-users mailing list