nanog mailing list archives

Re: REVERSE DNS Practices.


From: William Pitcock <nenolod () systeminplace net>
Date: Sat, 28 Mar 2009 02:39:00 -0500

On Sat, 2009-03-28 at 03:12 -0400, Luke S Crawford wrote:
bmanning () vacation karoshi com writes:
 or - the more modern approach is to let the node (w/ proper authorization)
 do a secure dynamic update of the revserse map - so the forward and reverse
 delegations match. ... a -VERY- useful technique.

I have a question.  Is this an abuse problem?  some ISPs require their domain
to be in the rdns in an effort to herd abuse reports to the correct org.
Is this generally considered useless?  Is it generally considered OK to
hand relatively untrusted users the keys to their own rdns?  

(I'm forcing my own customers to have a rdns of something.xen.prgmr.com
for several months, Much to the chagrin of many presumably innocent and 
legitimate customers. )

We allow RDNS controls to RapidXen customers since January 2009. It
seems to be ok. We do have the ability to disable RDNS access to
specific users if we feel it is being abused, however.
-- 
William Pitcock
SystemInPlace - Simple Hosting Solutions
1-866-519-6149



Current thread: