#SplitHorizon

2025-11-26

@cks @lanodan

Missing from @drscriptt 's list are AAAA, HTTPS, and SVCB records.

AAAA has plenty of obvious choices.

You'll know the . convention for SRV, SVCB, and MX resource record sets, of course.

I shall just drop in my personal experience from earlier this year that an accidentally supplied HTTPS resource record can *definitely* break WWW traffic; because browsers in practice do not obey RFC9460 ยง2.4.2.

#djbdns
#DomainNameSystem
#SplitHorizon
#ReservedSuperDomains #DNS #HTTPS #SVCB

2025-11-26

@cks @lanodan @drscriptt

There are actually quite a few, nowadays. See RFCs 6762, 7686, and 8375.

example. is not the worst choice, although you could have gone with test. or internal. or intranet. .

Given your objective, any of the further ones that imply a residence or a corporation seem less well suited.

Although home.arpa.'s public delegation to the blackhole-{1,2}.iana.org. names is re-used.

github.com/jdebp/nosh/blob/tru

#djbdns #DomainNameSystem #SplitHorizon #ReservedSuperDomains #DNS

2025-11-02

I've been using #SplitHorizon #DNS with #tailscale for a while now, but I just figured out how to do it with #AdGuardHome as well. There's the clients:persistent configuration, with configuration based on source address you can send queries to appropriate backend address, which will return desired values.
#HomeLab #SelfHosting

Client Info

Server: https://mastodon.social
Version: 2025.07
Repository: https://github.com/cyevgeniy/lmst