[rbldnsd] Feature request: DNSSEC

Victor Duchovni Victor.Duchovni at morganstanley.com
Sat Jul 12 01:01:46 MSD 2008


On Fri, Jul 11, 2008 at 10:50:29PM +0200, Florian Weimer wrote:

> * Victor Duchovni:
> 
> >> Do you really list 420 million individual IP addresses?
> >
> > Yes, using RBLDNS macro expansion:
> >
> >     :127.0.0.10:http://www.spamhaus.org/query/bl?ip=$
> >     prefix1/mask1	:11
> >     prefix2/mask2	:10
> >
> > The dynamic TXT record template substitutes the actual IP address for '$'
> > on the fly.
> 
> I'm sorry, you misunderstood.  I was wondering if you've really got 420
> million different records in the Spamhaus database which is referenced
> by that URL.

The SpamHaus PBL does in fact list over 420 million distict IPs. Because
individual IPs or sub-blocks are from time to time added as exceptions
(punching holes in the PBL).

The PBL consists of ~165,000 CIDR block entries and ~135,000 individual
exceptions. The TXT records returned by the RBL to users need to be IP
specific, so that at a later date, one can identify the current status
of the previously listed IP address.

-- 
	Viktor.


More information about the rbldnsd mailing list