Hacker News new | ask | show | jobs
by blechschmidt 3354 days ago
You could use libnetfilter_queue and some DNS library like ldns to parse the packets and drop them if the DNS question contains "xn--".