Hello simon & folks,

After the launch of Quad9 where harmful domains return NXDOMAIN if a
query is made, I have developed a quick patch to log NXDOMAIN only,
and discover compromised devices on a local network instead of simply
blocking them.

[More info about quad9 here: https://www.quad9.net/]

Would upstream be interested in such a patch ?

