nanog mailing list archives
Re: [SHAME] Spam Rats
From: Mark Andrews <marka () isc org>
Date: Thu, 10 Jan 2013 16:49:10 +1100
In message <20130110053429.55493.qmail () joyce lan>, "John Levine" writes:
No point. address -> name -> address doesn't work with wildcards.(Still an IPv6 implementation virgin, just curious :) )If you want to do generic IPv6 rDNS for all your hosts, you're stuck with a variety of less than great possibilities. One is a stunt rDNS server that synthesizes the records on demand. (Bonus points for doing DNSSEC, too. Double bonus points for doing NSEC3.)
NSEC3 is a waste of time in ip6.arpa or any similarly structured zone so -1000000 for doing NEC3 and effectively doing a DoS attack against yourself and the client resolvers.
Another is instrumenting the routers so that when they notice a new host on their network, they somehow send an update to the DNS servers to install rDNS for that host. If I had to guess, I would say that we'll eventually agree than on IPv6 networks, mail servers and other hosts who have reputations that matter will have fixed addresses assigned statically or via DHCP and rDNS, random client hosts won't. Teeth will gnash at how this makes some hosts second class and it violates the end to end principle, but tough noogies. R's, John
-- Mark Andrews, ISC 1 Seymour St., Dundas Valley, NSW 2117, Australia PHONE: +61 2 9871 4742 INTERNET: marka () isc org
Current thread:
- Re: [SHAME] Spam Rats, (continued)
- Re: [SHAME] Spam Rats Suresh Ramasubramanian (Jan 10)
- Re: [SHAME] Spam Rats Matthias Leisi (Jan 10)
- RE: [SHAME] Spam Rats Warren Bailey (Jan 09)
- RE: [SHAME] Spam Rats Otis L. Surratt, Jr. (Jan 09)
- RE: [SHAME] Spam Rats Karl Auer (Jan 09)
- Re: [SHAME] Spam Rats Mark Foster (Jan 09)
- Re: [SHAME] Spam Rats Mark Andrews (Jan 09)
- Re: [SHAME] Spam Rats Jeff Kell (Jan 09)
- Re: [SHAME] Spam Rats Mark Andrews (Jan 09)
- Re: [SHAME] Spam Rats John Levine (Jan 09)
- Re: [SHAME] Spam Rats Mark Andrews (Jan 09)
- Re: [SHAME] Spam Rats John R. Levine (Jan 09)
- Re: [SHAME] Spam Rats Mark Andrews (Jan 09)
- PTRs for IPv6 (was Re: [SHAME] Spam Rats) Lee Howard (Jan 10)
- RE: [SHAME] Spam Rats Karl Auer (Jan 09)
- Re: [SHAME] Spam Rats Måns Nilsson (Jan 09)
- Re: [SHAME] Spam Rats John Levine (Jan 10)
- Re: [SHAME] Spam Rats Robert Bonomi (Jan 10)
- Re: [SHAME] Spam Rats Tony Finch (Jan 11)
- Re: [SHAME] Spam Rats JP Viljoen (Jan 10)
- Re: [SHAME] Spam Rats Owen DeLong (Jan 10)