[dns-operations] A question on RPZ IP Trigger

Davey Song(宋林健) ljsong at biigroup.cn
Fri Dec 15 03:58:08 UTC 2017

Hi folks,


I have a question when I configured RPZ in BIND9.10.3-p4. I try to trigger a
event to response a specific AAAA address when the response contain a CNAME
but no IPv6 address. 


I have this requirement because some website domain support AAAA but their
CDN’s DNS does not return AAAA . They are facing the problem to choose to
give up IPv6 with CDN support or give up CDN running they own DNS. My
thought is to use RPZ in their authority DNS to response a specific AAAA if
CNAME is given in the response to AAAA query. 


Or, maybe I can configure the RPZ behave like that it can passthru any qtype
but AAAA, so that RPZ will only response the AAAA and leave other queries to
the original response. I don’t know how to make it with RPZ. If not, maybe
I need to use dnsdist to hack on path.


Any ideas? thanks,


Best regards,


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://lists.dns-oarc.net/pipermail/dns-operations/attachments/20171215/d435cb22/attachment.html>

More information about the dns-operations mailing list