What else can ISPs use DROP for?
Back
What else can ISPs use DROP for?
Other good uses for DROP & EDROP include:
- Logging customer queries for DNS servers in any DROP-listed IP space. This is a very good way to discover which are infected with malware.
- Vetting new transit customers proposed IP ranges against DROP; those ranges are often looking for new routing options.
- Scoring DROP ranges extra high in such software as SpamAssassin.
- Using DROP ranges in a DNS RPZ zone to invalidate lookups in these ranges. The Spamhaus Technology website offers more information on using DROP in a DNS Firewall Threat Feed.