! Title: Public Resolver Blocklist ! Description: Prevent Your Public DNS Resolver Leaking Anything they shouldn't provide. ! Expires: 72 hours ! Version: 20220212 # Block IPv4 Private Network PTR ## Loopback Address 127.0.0.0/8 ||127.in-addr.arpa^ ## Link-Local Addresses 169.254.0.0/16 ||254.169.in-addr.arpa^ ## RFC 1918 address space 10.0.0.0/8 ||10.in-addr.arpa^ ## RFC 1918 address space 172.16.0.0/12 ||16.172.in-addr.arpa^ ## RFC 1918 address space 172.16.0.0/12 ||17.172.in-addr.arpa^ ## RFC 1918 address space 172.16.0.0/12 ||18.172.in-addr.arpa^ ## RFC 1918 address space 172.16.0.0/12 ||19.172.in-addr.arpa^ ## RFC 1918 address space 172.16.0.0/12 ||20.172.in-addr.arpa^ ## RFC 1918 address space 172.16.0.0/12 ||21.172.in-addr.arpa^ ## RFC 1918 address space 172.16.0.0/12 ||22.172.in-addr.arpa^ ## RFC 1918 address space 172.16.0.0/12 ||23.172.in-addr.arpa^ ## RFC 1918 address space 172.16.0.0/12 ||24.172.in-addr.arpa^ ## RFC 1918 address space 172.16.0.0/12 ||25.172.in-addr.arpa^ ## RFC 1918 address space 172.16.0.0/12 ||26.172.in-addr.arpa^ ## RFC 1918 address space 172.16.0.0/12 ||27.172.in-addr.arpa^ ## RFC 1918 address space 172.16.0.0/12 ||28.172.in-addr.arpa^ ## RFC 1918 address space 172.16.0.0/12 ||29.172.in-addr.arpa^ ## RFC 1918 address space 172.16.0.0/12 ||30.172.in-addr.arpa^ ## RFC 1918 address space 172.16.0.0/12 ||31.172.in-addr.arpa^ ## RFC 1918 address space 192.168.0.0/16 ||168.192.in-addr.arpa^ # Block IPv6 Private Network PTR ## Unspecified ||0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.ip6.arpa^ ## Multicast ||f.f.ip6.arpa^ ## Teredo ||0.0.0.0.1.0.0.2.ip6.arpa^ ## Documentation prefix ||8.b.d.0.1.0.0.2.ip6.arpa^ ## RFC 4193 address space fc00::/7 ||c.f.ip6.arpa^ ## RFC 4193 address space fc00::/7 ||d.f.ip6.arpa^ ## fe80::/10 ||e.f.ip6.arpa^ # Block Special-Use Domain Names ||home.arpa^ ||home^ ||invalid^ ||example^ ## RFC 6762 ||local^ ||test^ ||localhost^