Re: educating rDNS violators

From: Derek Schaible (dschaible_at_cssiinc.com)
Date: 08/28/04

  • Next message: AndrewC: "RE: How can I enable power users on W2k domain to defrag their hard drives??"
    To: Mark Reis <mcr2z@cs.virginia.edu>
    Date: Sat, 28 Aug 2004 10:13:59 -0400
    
    
    

    On Wed, 2004-08-25 at 21:36, Mark Reis wrote:
    > A question for those who have implemented rDNS restrictions.
    >
    > In the case of a mail server with roaming users, how do you deal with
    > roaming users? A majority of our users travel to conferences and use
    > secure IMAP and SMTP to send their mail. Perhaps this is a
    > misconception, but I thought that some mail clients attempt to portray
    > themselves as a SMTP server relaying through the main mail server. If
    > we have users off traveling and having their email is blocked while they
    > were connected at a hotel with bad rDNS entries, I'd be getting ticked
    > off calls.
    >
    > Any suggestions?

    If you are providing a secure SMTP server that requires authentication
    for your road warriors, rDNS will have no effect on their ability to use
    it for out-bound mail. When they authenticate, they are added to the
    valid list of relay clients which will bypass these filters on the
    server. This is exactly how we provide smtp service for our traveling
    userbase.

    HTH

    -- 
    Derek Schaible <dschaible@cssiinc.com>
    CSSI, Inc.
    
    



  • Next message: AndrewC: "RE: How can I enable power users on W2k domain to defrag their hard drives??"

    Relevant Pages

    • How to do rDNS. WAS: RE: educating rDNS violators
      ... Just like to ask how does one implement rDNS from ... Or is it done from the DNS server? ... > catch the small bit of spam that hasn't caught up to the rest ... > We pointed our MX records to the filter then the filter would ...
      (Security-Basics)
    • Re: masquerading domain name
      ... a mail server issue, I'm going to backburner that for the time being. ... It's a fileserver that is indeed behind a firewall/NAT. ... This sounds like a bad rDNS record. ... your mentioning of having the ISP do a PTR or delegation... ...
      (comp.os.linux.misc)
    • Re: Reverse DNS
      ... SPAM filtering techniques ... As you say, RDNS used to be ... My own mail server has that capability also, ... I removed my reverse DNS listing about two weeks ago and have had no ...
      (comp.security.firewalls)
    • RE: educating rDNS violators
      ... SMTP server might try to use the distributed DNS database to ... Does the hostname provided in the HELO/EHLO resolve? ... Does the IP resolve, via rDNS, to this hostname? ...
      (Security-Basics)
    • Re: Port 53 need to be open for rDNS?
      ... > requests incoming on port 53 in my firewall logs? ... >> rDNS is handled by your ISP, and not by your SBS server. ... >>> I'm trying to get rDNS to work on my public IP for my SBS 2k3 domain. ...
      (microsoft.public.windows.server.sbs)

  • Quantcast