[tor-relays] Do nameservers ever block an entire /64 if a Tor exit is in there?

Hello.

I'm aware that some nameservers block Tor, so running a recursive local
resolver on the same IP that traffic exits can be a bad idea. The usual
solution is to buy an extra IPv4 and bind the local resolver to it.

What about IPv6? Is it safe to simply make a new IPv6 on the same /64
and use that for recursive lookups, or are there nameservers that block
the entire /64 that a single Tor exit relay is on?

I currently use Unbound with "do-ip6: no" because I do not want to fail
lookups and receive a BadExit flag if my entire /64 is blocked.

Regards,
forest

ยทยทยท

_______________________________________________
tor-relays mailing list -- tor-relays@lists.torproject.org
To unsubscribe send an email to tor-relays-leave@lists.torproject.org