Files
bind9/bin/tests/system/rpz/test5
Evan Hunt 55bbac8bfe [v9_9] RPZ speed up (phase 1, single RPZ)
3496.	[func]		Improvements to RPZ performance. The "response-policy"
			syntax now includes a "min-ns-dots" clause, with
			default 1, to exclude top-level domains from
			NSIP and NSDNAME checking. --enable-rpz-nsip and
                        --enable-rpz-nsdname are now the default. [RT #32251]

    Response policy (rpz) changes to
      - add zone statistics
      - speed up by adding min-ns-dots to the response-policy syntax
         with a default of 1
      - detect and reject policy zones with a database other than rbt
         only rbtdb has rpz hooks
      - allow empty response-policy{} statement
      - make --enable-rpz-nsip and --enable-rpz-nsdname the default
2013-02-25 14:32:36 -08:00

60 lines
1.8 KiB
Plaintext

; Copyright (C) 2011-2013 Internet Systems Consortium, Inc. ("ISC")
;
; Permission to use, copy, modify, and/or distribute this software for any
; purpose with or without fee is hereby granted, provided that the above
; copyright notice and this permission notice appear in all copies.
;
; THE SOFTWARE IS PROVIDED "AS IS" AND ISC DISCLAIMS ALL WARRANTIES WITH
; REGARD TO THIS SOFTWARE INCLUDING ALL IMPLIED WARRANTIES OF MERCHANTABILITY
; AND FITNESS. IN NO EVENT SHALL ISC BE LIABLE FOR ANY SPECIAL, DIRECT,
; INDIRECT, OR CONSEQUENTIAL DAMAGES OR ANY DAMAGES WHATSOEVER RESULTING FROM
; LOSS OF USE, DATA OR PROFITS, WHETHER IN AN ACTION OF CONTRACT, NEGLIGENCE
; OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
; PERFORMANCE OF THIS SOFTWARE.
; Use comment lines instead of blank lines to combine update requests into
; single requests
; Separate update requests for distinct TLDs with blank lines or 'send'
; End the file with a blank line or 'send'
; the policies or replacements specified in ns3/named.conf override these
server 10.53.0.3 5300
; 1
update add a3-1.tld2.bl-given. 300 A 127.0.0.1
send
; 2
update add a3-2.tld2.bl-passthru. 300 A 127.0.0.2
send
; 3
update add a3-3.tld2.bl-no-op. 300 A 127.0.0.3
send
; 4
update add a3-4.tld2.bl-disabled. 300 A 127.0.0.4
send
; 5 - 8
update add a3-5.tld2.bl-nodata. 300 A 127.0.0.5
; 9 - 10
update add a3-5.tld2s.bl-nodata. 300 A 127.0.0.9
send
; 11
update add a3-6.tld2.bl-nxdomain. 300 A 127.0.0.11
send
; 12
update add a3-7.tld2.bl-cname. 300 A 127.0.0.12
send
; 13
update add a3-8.tld2.bl-wildcname. 300 A 127.0.0.13
; 14
update add *.sub9.tld2.bl-wildcname. 300 A 127.0.1.14
send
; 15
update add a3-15.tld2.bl-garden. 300 A 127.0.0.15
send
; 16
update add a3-16.tld2.bl. 300 A 127.0.0.16
send