[120353] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

Re: DNS question, null MX records

daemon@ATHENA.MIT.EDU (Tony Finch)
Thu Dec 17 07:55:38 2009

Date: Thu, 17 Dec 2009 12:54:39 +0000
From: Tony Finch <dot@dotat.at>
To: Douglas Otis <dotis@mail-abuse.org>
In-Reply-To: <4B297530.8030302@mail-abuse.org>
Cc: nanog@nanog.org
Errors-To: nanog-bounces+nanog.discuss=bloom-picayune.mit.edu@nanog.org

On Wed, 16 Dec 2009, Douglas Otis wrote:
>
> To avoid server access and hitting roots:
>
> host-1.example.com. IN A 192.0.2.0
> host-10.example.com. IN A 192.0.2.9
>
> example.com. 	IN MX 0 host-1.example.com.
> example.com. 	IN MX 90 host-10.example.com.

This is not very good from the point of view of a legitimate but mistaken
sender, because their messages will be queued and retried. The advantage
of pointing MX records at nonexistent hosts is most MTAs (and all common
ones) will stop trying to deliver the message immediately. It is perhaps
more polite to use a nonexistent name that you control, but that doesn't
allow the source MTA to skip further DNS lookups, unlike the nullmx or
sink.arpa ideas.

Tony.
-- 
f.anthony.n.finch  <dot@dotat.at>  http://dotat.at/
GERMAN BIGHT HUMBER: SOUTHWEST 5 TO 7. MODERATE OR ROUGH. SQUALLY SHOWERS.
MODERATE OR GOOD.


home help back first fref pref prev next nref lref last post