1

How I can make Bind9 to stop answering specific types of queries, let say NULL, WKS or TXT?

Thanks in advance.

Diosney
  • 305
  • 5
  • 12

1 Answers1

3

Unfortunately, no. The "blackhole" facilities of BIND 9 are extremely limited (a fact that's been exploited for a variety of back-scatter attacks). If you're running Linux you can configure IP Tables to drop packets with those types of requests. A vaguely similar Q&A has some good information in it.

Chris S
  • 77,945
  • 11
  • 124
  • 216
  • Thanks, too bad for that :( I just noticed that Yourfreedom uses this for make a transparent proxy. – Diosney Mar 18 '13 at 17:37