[Mimedefang] How to block based on bad dns resolution names?

Matthew.van.Eerde at hbinc.com Matthew.van.Eerde at hbinc.com
Wed Mar 10 18:46:07 EST 2004


> From: David Fowler [mailto:dfowler at transland.com]
> Here's one that I would love to crush, filter, destroy:
> 
> Received: from smtpikdpivfmvm02w.worldwidemailserver.com (localhost
> [203.210.222.130] (may be forged))
> 
> The part that yanks my chain is the "resolved localhost".  
> Nslookup returns the same result.

You may lose more than you bargained for.  Out-of-the-box installs of some
Linux distributions have a hostname of localhost - I could see legitimate
email sources getting caught out because they simply never updated the
hostname (or set one via DHCP)



More information about the MIMEDefang mailing list