Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
I am trying to setup DNS Lists to do a DNS Blocklist in Ironport. An issue I keep running into is some of the IP's that are on the DNS Blocklist keep coming up with "sbrs[none] SBRS None". It appears that it is one or the other with the SBRS and DNS ...
I am new to Nexus 1000v and have learned a lot and managed to get my one system working with a couple VM Guests. I used the Installed that came with 4.2.1 SV2.1.1a and did a Dual VSM setup. The installer had some issues after the Primary was configur...
It seems like things are working with the DNS List for the most part. I still get some without SBRS and when I do a trace on them they come up with a SBRS (normally one that would hit in the BLACKLIST), but the DNS List seems to be catching it as lon...
Since we switched to Root DNS servers, I saw some of the queries got blocked in our firewall due to a country block rule (a rule our Security Analyst demanded we put it). I moved the DNS rule for the Ironport higher then that so as long as it is goin...
Alright, I didn't know about that. Thank you.
I still see some coming in with SBRS of None (but the test you provided me returned a SBRS for the IP), but I did see one that said it had an SBRS of None and got caught in the DNSLIST filter (it was on...
I can, but it will be a little bit before I can test. I did have the timeout set to 0, so I increased that to 20 (which I think is the default).
Where can I look up the SBRS? Talos just says Poor, Neutral, or Good.
Yes, it is able to query the DNS List. I have seen emails blocked by the rules with the DNS List in it, but they had a SBRS number as well. Below is the DNS List I am using:
zen.spamhaus.org, nomail.rhsbl.sorbs.net, bl.spamcop.net, cbl.abuseat.org
...