[dnsdist] Add EDNS Client Subnet

Daniel Stirnimann daniel.stirnimann at switch.ch
Tue Apr 12 07:08:41 UTC 2016


RTFM!

newServer({ ... useClientSubnet=true .. })

setECSOverride()
setECSSourcePrefixV4(32)
setECSSourcePrefixV6(128)

Sorry,
Daniel

On 12.04.16 09:00, Daniel Stirnimann wrote:
> Dear all,
> 
> Is it possible to add/overwrite an EDNS option for EDNS Client Subnet
> (ECS) [1] with dnsdist?
> 
> I see that dnsdist supports something similar using MAC addresses:
> https://blog.powerdns.com/2016/01/27/per-device-dns-settings-selective-parental-control/
> 
> Our resolver is currently running BIND and we would like to implement
> view statements and provide different responses based on the source IP
> address of the client.
> 
> BIND 9.11 supports ECS so this seems like a clever way to do it. Of
> course, that means that the ECS netmask should be /32 not /24 for IPv4.
> 
> [1] https://tools.ietf.org/html/draft-ietf-dnsop-edns-client-subnet-07
> 
> Daniel
> _______________________________________________
> dnsdist mailing list
> dnsdist at mailman.powerdns.com
> https://mailman.powerdns.com/mailman/listinfo/dnsdist
> 

-- 
SWITCH
Daniel Stirnimann, SWITCH-CERT
Werdstrasse 2, P.O. Box, 8021 Zurich, Switzerland
phone +41 44 268 15 15, direct +41 44 268 16 24
daniel.stirnimann at switch.ch, http://www.switch.ch


More information about the dnsdist mailing list