Matus UHLAR - fantomas skrev den 2025-05-15 17:04:
turn off QNAME minimisation on DNS servers used by mailservers for DNSBL/DNSWL checks.

On 15.05.25 20:42, Benny Pedersen via bind-users wrote:
make a better rbldnsd that support qname :)

or dump zone from rbldnsd to bind.zone, the bind zone can be in sqlite to not be so memory hungry

or report to dnsbl that it does not support qname

This is completely irelevant, since DNSBL/DNSWL servers will get any kind of queries from the OP which is what causes the trouble.

The solution at OPs nameserver is to turn QNAME minimization off completely, unless it's possible only turn it for some domains (it's not now).


On 16.05.25 12:42, Petr Špaček wrote:
All it would take to fix it is returning NOERROR instead of NXDOMAIN when a record does not exist. Perhaps one line change.

from later discussion on this list, there's already issue open and patch 
waiting:

https://github.com/spamhaus/rbldnsd/issues/17


--
Matus UHLAR - fantomas, uh...@fantomas.sk ; http://www.fantomas.sk/
Warning: I wish NOT to receive e-mail advertising to this address.
Varovanie: na tuto adresu chcem NEDOSTAVAT akukolvek reklamnu postu.
LSD will make your ECS screen display 16.7 million colors
--
Visit https://lists.isc.org/mailman/listinfo/bind-users to unsubscribe from 
this list

ISC funds the development of this software with paid support subscriptions. 
Contact us at https://www.isc.org/contact/ for more information.


bind-users mailing list
bind-users@lists.isc.org
https://lists.isc.org/mailman/listinfo/bind-users

Reply via email to