Firewall Wizards mailing list archives
Re: DNS records for a firewall NAT pool
From: Frank Knobbe <fknobbe () knobbeits com>
Date: 29 Jul 2003 16:55:14 -0500
On Tue, 2003-07-29 at 12:17, Barney Wolff wrote:
There are no security risks. The name the PTR points to merely has to map back to the IP. It does not have to match what the host thinks of as its own name. It does not have to have an MX record, just an A. It does not have to add any information not already in the IP address. For example, 66.114.72.185 -> p72-185.acedsl.com -> 66.114.72.185 , done by my ISP.
Adding to that, in most cases you get can get away by entering the IP address as the host name in your in-addr.arpa zone. That way the IP address 1.2.3.4 can be mapped to the _hostname_ (as _string_) 1.2.3.4, which of course is typically resolved back to the IP address. So above example would read: 66.114.72.185 -> "66.114.72.185" -> 66.1114.72.185 :) Regards, Frank
Attachment:
signature.asc
Description: This is a digitally signed message part
Current thread:
- DNS records for a firewall NAT pool Pollock, Joseph (Jul 29)
- Re: DNS records for a firewall NAT pool Jim McAtee (Jul 29)
- Re: DNS records for a firewall NAT pool Barney Wolff (Jul 29)
- Re: DNS records for a firewall NAT pool Frank Knobbe (Jul 29)
- Re: DNS records for a firewall NAT pool Barney Wolff (Jul 29)
- Re: DNS records for a firewall NAT pool Carson Gaspar (Jul 29)
- Re: DNS records for a firewall NAT pool Frank Knobbe (Jul 29)
- Re: DNS records for a firewall NAT pool R. DuFresne (Jul 29)
- RE: DNS records for a firewall NAT pool Bojan Zdrnja (Jul 31)