Maintained by: NLnet Labs

[Unbound-users] Filtering unbound Responses (DNS Rebinding issue)

7v5w7go9ub0o
Thu Aug 7 19:00:56 CEST 2008


UnBound 1.02

Is there an option to filter DNS responses?

My concern is DNS rebinding, wherein external DNS responses point to
local addresses. I'd like the option to Block responses that point to:

private IP addresses (127.0.0.0/8, 192.168.0.0/16, 10.0.0.0/8,
172.16.0.0/12 and 169.254.0.0/16)

More info:

http://crypto.stanford.edu/dns/

http://code.google.com/p/google-dnswall/

http://kb-disclosure.blogspot.com/2007/10/full-disclosure-simple-dns-rebinding.html


Thank You