Whitelisting with local-zone + forwarding to local dns server

Fri May 26 18:00:20 CEST 2017

Hey guys, was wondering if you could help me figure out how to configure

I would like to setup whitelisting. There was a post which recommended
doing the following:


local-zone: "." static

local-zone: "" transparent
local-zone: "" transparent


That works fine. But what I also want to do is the following:


  name: ""


When querying for a record in, I get NXDOMAIN, as if I failed
the whitelist "check". So it seems like the catch-all "." line in
local-zone is being evaluated before forward-zone.

Is there any way around this? If not, is there another way to do

Thanks for any help!
