[OpenWrt-Devel] [PATCH, v2] dnsmasq: prevent forwarding RFC6303 zones

Kevin Darbyshire-Bryant kevin at darbyshire-bryant.me.uk
Sun Oct 18 11:50:52 EDT 2015


RFC6303 specifies reverse dns zones that ideally should not be forwarded
to upstream (root) servers and create unnecessary load upon them.

Signed-off-by: Kevin Darbyshire-Bryant <kevin at darbyshire-bryant.me.uk>
---
 package/network/services/dnsmasq/files/dhcp.conf | 30 ++++++++++++++++++++++++
 1 file changed, 30 insertions(+)

diff --git a/package/network/services/dnsmasq/files/dhcp.conf b/package/network/services/dnsmasq/files/dhcp.conf
index 362b90a..5de885f 100644
--- a/package/network/services/dnsmasq/files/dhcp.conf
+++ b/package/network/services/dnsmasq/files/dhcp.conf
@@ -20,6 +20,36 @@ config dnsmasq
 	#list notinterface	lo
 	#list bogusnxdomain     '64.94.110.11'
 	option localservice	1  # disable to allow DNS requests from non-local subnets
+	list server '/0.in-addr.arpa/'
+	list server '/10.in-addr.arpa/'
+	list server '/127.in-addr.arpa/'
+	list server '/16.172.in-addr.arpa/'
+	list server '/17.172.in-addr.arpa/'
+	list server '/18.172.in-addr.arpa/'
+	list server '/19.172.in-addr.arpa/'
+	list server '/20.172.in-addr.arpa/'
+	list server '/21.172.in-addr.arpa/'
+	list server '/22.172.in-addr.arpa/'
+	list server '/23.172.in-addr.arpa/'
+	list server '/24.172.in-addr.arpa/'
+	list server '/25.172.in-addr.arpa/'
+	list server '/26.172.in-addr.arpa/'
+	list server '/27.172.in-addr.arpa/'
+	list server '/28.172.in-addr.arpa/'
+	list server '/29.172.in-addr.arpa/'
+	list server '/30.172.in-addr.arpa/'
+	list server '/31.172.in-addr.arpa/'
+	list server '/254.169.in-addr.arpa/'
+	list server '/2.0.192.in-addr.arpa/'
+	list server '/168.192.in-addr.arpa/'
+	list server '/100.51.198.in-addr.arpa/'
+	list server '/113.0.203.in-addr.arpa/'
+	list server '/255.255.255.255.in-addr.arpa/'
+	list server '/d.f.ip6.arpa/'
+	list server '/8.e.f.ip6.arpa/'
+	list server '/9.e.f.ip6.arpa/'
+	list server '/a.e.f.ip6.arpa/'
+	list server '/b.e.f.ip6.arpa/'
 
 config dhcp lan
 	option interface	lan
-- 
1.9.1
_______________________________________________
openwrt-devel mailing list
openwrt-devel at lists.openwrt.org
https://lists.openwrt.org/cgi-bin/mailman/listinfo/openwrt-devel



More information about the openwrt-devel mailing list