ietf-asrg
[Top] [All Lists]

Re: [Asrg] Problems with wildcards in combined IPv4 + IPv6 DNS blacklists

2011-05-26 18:07:07
There's a problem when you use wildcards on IPv4 addresses:

 *.0.0.2.zone.example.com

Matches IPv6 2.0.0.* (2.0.0.0/8), but it also matches IPv6 2000/12.
Any IPv6 address starting with "200", as many do.

By the way, the last paragraph of section 2.4 in RFC 5782 points out
this exact situation, so I hope it didn't come as a big surprise to
anyone.

R's,
John

_______________________________________________
Asrg mailing list
Asrg(_at_)irtf(_dot_)org
http://www.irtf.org/mailman/listinfo/asrg