yang_128295
Sep 20, 2005Historic F5 Account
DNS(UDP) hostname filter
Hi
bigip load balance caching DNS servers in ISP.
I made an irule which block DNS query packets which has pre-defined URL list.
(eg. bigip block DNS query which ask IP address of "www.naver.com")
but it didn't work.
please advice.
my irule is below.
=================
when CLIENT_DATA {
if { matchclass [UDP::payload] contains $::dnslist } {
log local0. "bad URL!"
drop
} else {
pool dns_pool
}
}
class dnslist {
"www.naver.com"
"www.yahoo.co.kr"
}
=========================