[Mimedefang] validating 'possibly forged' helo IP's?

WBrown at e1b.org WBrown at e1b.org
Thu Jan 12 13:08:14 EST 2006


mimedefang-bounces at lists.roaringpenguin.com wrote on 01/12/2006 11:19:10 
AM:

> 1.  There is only one ptr record per IP.

Not true. I was testing that on my internal DNS:


wbrown at WBLinux19:~> dig -x 168.169.93.3

; <<>> DiG 9.3.1 <<>> -x 168.169.93.3
;; global options:  printcmd
;; Got answer:
;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 40640
;; flags: qr aa rd ra; QUERY: 1, ANSWER: 2, AUTHORITY: 3, ADDITIONAL: 3

;; QUESTION SECTION:
;3.93.169.168.in-addr.arpa.     IN      PTR

;; ANSWER SECTION:
3.93.169.168.in-addr.arpa. 86400 IN     PTR     bogusname.wnyric.org.
3.93.169.168.in-addr.arpa. 86400 IN     PTR     wbrown.wnyric.org.


nslookup from a windows box alternates in what it returns.



More information about the MIMEDefang mailing list