BlogDescription: Set up a personal DNS Firewall.
Overview: In working with Infoblox DNS BloxOne Deployment I got to thinking why not deploy this on my own network to get an inexpensive way to control DNS requests. Here I ended up deploying a Primary and Secondary DNS Bind9 Server running on physical and virtual Ubuntu Servers. I leverage ioc2rpz to sync community available RPZ’s then we leverage DNSCrypt-Proxy project configuring a local listener that will send Recursive DNS lookups using DNSoverHTTPS.