Forum Discussion
bman_12685
Nimbostratus
Jun 11, 2012custom plugin for dnsbl
I'd like to implement somethig like a plugin for a dns blacklist that checks the ip of a node against upstream dnsbl, I have seen some references to shell scripts such as external monitors is there a way to incorporate something such as this via an irule?
And if so is this considered an acceptable practice?
- Richard__HarlanHistoric F5 AccountSounds like you are thinking of doing this to check the IP address of the client from a LTM is that correct? if so you should look at sideband connections. It lets the LTM pause the connection and open a new connection in your case the BL server and get a answer and then use the result in the iRule.
- hoolio
Cirrostratus
We also have an IP reputation database service in 11.2 that you could use. I'm trying to find out more info on the iRule hooks for this, but there is native support for using the database: - JRahm
Admin
- bman_12685
Nimbostratus
Interesting thanks looks like its based on 11.x so will have to wait but thanks we plan on updating soon.
Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects