Ethical Hacking Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package. | Computer Forensics Training at InfoSec Institute Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors. |

| Subject: | Re: educating rDNS violators |
|---|---|
| Date: | Wed, 25 Aug 2004 14:20:25 -0400 |
On Wed, 2004-08-25 at 13:55, someone wrote:
This becomes even further complicated if a company is hosting with somebody who provides "virtual domain" mail hosting. The server could be mail.somefamily.net, but have a reverse DNS entry that points to mail.myprovider.net. How is that invalid? Just because the records don't match doesn't make me a spammer!
Mail servers should have correct DNS info. Forward and reverse. It is the sysadmin's responsibility to ensure that their systems are configured properly. Period.
I wanted to respond to this point to the list before I get flooded with similar replies. True, such a situation does not make you a spammer but using a virtual domain will in no way impact the reverse DNS of the smtp server from which the email is delivered. Reverse DNS is not matching the address of the smtp server to the domain name in the email address. This would break many things like reply-to, etc. All it is doing is verifying that the server is who it claims to be. Virtual mail domains are not impacted. I run many virtual email domains as well for every website we host. These accounts can happily send mail through our company's SMTP server, arrive in tact and survive an rDNS lookup. As I've stated earlier, filtering out mail from servers with a bad rDNS will dramatically reduce your spam and that's a fact to live by. There is always a means in which you can configure a valid email system that will pass this test. Some require more imagination than others, but it can always be done and should always be done if you want to guarantee that your mail will be delivered and not rejected. -- Derek Schaible <dschaible@cssiinc.com> CSSI, Inc.
signature.asc
Description: This is a digitally signed message part
| <Prev in Thread] | Current Thread | [Next in Thread> |
|---|---|---|
| ||
| Previous by Date: | RE: unable to join domain from dmz, Steven A. Fletcher |
|---|---|
| Next by Date: | Re: educating rDNS violators, Derek Schaible |
| Previous by Thread: | Re: educating rDNS violators, Derek Schaible |
| Next by Thread: | RE: educating rDNS violators, David Gillett |
| Indexes: | [Date] [Thread] [Top] [All Lists] |