diff --git a/defaults/main.yml b/defaults/main.yml index 3741bed..6e6714d 100644 --- a/defaults/main.yml +++ b/defaults/main.yml @@ -5,6 +5,7 @@ dnsmasq_domain: "" dnsmasq_servers: [] dnsmasq_rev_servers: [] dnsmasq_bogus_priv_enabled: true +dnsmasq_rebind_domains: [] dnsmasq_hosts: [] diff --git a/templates/dnsmasq.conf.j2 b/templates/dnsmasq.conf.j2 index 28342d0..eb3f8e5 100644 --- a/templates/dnsmasq.conf.j2 +++ b/templates/dnsmasq.conf.j2 @@ -37,6 +37,11 @@ server={{ server }} rev-server={{ server }} {% endfor %} +# Définir les exceptions pour lesquelles le rebond est ok +{% for server in dnsmasq_rebind_domains %} +rebind-domain-ok=/domain/ +{% endfor %} + # Bloquer le rebond DNS stop-dns-rebind