Am 13.03.2014 13:36, schrieb Ljubomir Ljubojevic: > jail.local: > > IMPORTANT: see filter.d/named-refused for instructions to enable logging > # This jail blocks TCP traffic for DNS requests. > [named-refused-udp] > ignoreip = 168.192.0.0/16 172.16.0.0/12 10.0.0.0/8 publicsub/29 ^ sure about this? that's not RFC1918 > # This jail blocks TCP traffic for DNS requests. > [named-refused-tcp] > ignoreip = 168.192.0.0/16 172.16.0.0/12 10.0.0.0/8 publicsub/29 here as well: no RFC1918 space Maybe no copy&paste out of your configuration file. Alexander