Educause Security Discussion mailing list archives

Re: Best practice for reverse DNS records


From: Ken Connelly <Ken.Connelly () UNI EDU>
Date: Mon, 13 Jan 2014 15:47:43 -0600

Here, things with A records have PTR records, although a great many of
them are generic.

- ken

On 1/13/14, 3:22 PM, Lisciotti, Kevin wrote:
Hi everyone,

I was curious as to what others do in regards to creating external PTR
records. I personally believe in just adding PTR records for hosts
that require them, such as a mail server/exchanger. For security
reasons, I would think that having all of your hostnames and FQDN's
tied to your external ip addresses would make it easy for attackers to
target specific systems; while creating a nice little profile on the
organization.

Would you concur, or do you think this is a non-issue? How do you
handle PTR records?

Thanks,

:: *Kevin Lisciotti*, Senior Systems Specialist, RHCE, RHCSA
:: University Information Technology Services (UITS)
:: University of Massachusetts President's Office
:: 774-455-7761 Office
:: 774-455-7733 Fax
:: klisciotti () umassp edu <mailto:klisciotti () umassp edu>

University of Massachusetts : 333 South St. : Suite 400 : Shrewsbury,
MA 01545 : www.massachusetts.edu <http://www.massachusetts.edu/>






-- 
- Ken
=================================================================
Ken Connelly             Associate Director, Security and Systems
ITS Network Services                  University of Northern Iowa
email: Ken.Connelly () uni edu   p: (319) 273-5850 f: (319) 273-7373

Any request to divulge your UNI password via e-mail is fraudulent!


Current thread: