Re: [Dnsmasq-discuss] Scalability of DNS blackhole configuration?

2017-02-19 Thread Mike Lee
For the purposes of blocking subdomains of known-bad domains I definitely want the "free" wildcard functionality so I'll continue using what I'm using. Thanks for the information! --Mike On Sun, Feb 19, 2017 at 11:10 AM, Simon Kelley wrote: > -BEGIN PGP SIGNED MESSAGE- > Hash: SHA256 >

Re: [Dnsmasq-discuss] Scalability of DNS blackhole configuration?

2017-02-19 Thread Simon Kelley
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 There are two ways to do this: one is the way you have. The second is using either a file in the same format as /etc/hosts and --addn-hosts, using --host-record. Either probably have similar memory-footprint implications, but the first does wildca

[Dnsmasq-discuss] Scalability of DNS blackhole configuration?

2017-02-16 Thread Mike Lee
Hi folks, I'm redirecting undesirable domains to a "black hole" to prevent normal DNS resolution. Specifically, I have this line in my dnsmasq.conf: conf-file=/etc/dnsmasq-blackhole.conf That file in turn has multiple lines of the form: address=/example.com/127.0.0.1 I just recently added a ne