[62046] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

Re: What *are* they smoking?

daemon@ATHENA.MIT.EDU (Matthew S. Hallacy)
Mon Sep 15 19:50:13 2003

Date: Mon, 15 Sep 2003 18:45:08 -0500
From: "Matthew S. Hallacy" <poptix@techmonkeys.org>
To: Jeroen Massar <jeroen@unfix.org>, nanog@merit.edu
In-Reply-To: <004601c37bdf$aac75720$210d640a@unfix.org>
Errors-To: owner-nanog-outgoing@merit.edu



--V88s5gaDVPzZ0KCq
Content-Type: text/plain; charset=us-ascii
Content-Disposition: inline
Content-Transfer-Encoding: quoted-printable

On Tue, Sep 16, 2003 at 01:18:26AM +0200, Jeroen Massar wrote:
>=20
> Even worse of this is that you can't verify domain names under .net
> any more for 'existence' as every .net domain suddenly has a A record
> and then can be used for spamming...
>=20
> From: Spammer <i@spam.using.verisign.eventhoughthisdomaindoesntexist.net>
> To: You <spamtarget@example.com>
>=20
> Thank you Verisign! Now we need to check for existence of an MX
> and then just break a couple of RFC's in the process :(

Checking for NS or SOA record(s) is sufficient, neither are being returned,
only A records.

Of course, you could just block anything that resolves to netsol.

--=20
Matthew S. Hallacy                            FUBAR, LART, BOFH Certified
http://www.poptix.net                           GPG public key 0x01938203

--V88s5gaDVPzZ0KCq
Content-Type: application/pgp-signature
Content-Disposition: inline

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.0.7 (GNU/Linux)

iD8DBQE/Zk8EXbLQQwGTggMRAqM2AKCzU9zVj9dKylrQOHoxewfC8I3rNQCaA9Kd
1KCTTCYqS7406gGoq5rmCbc=
=HaAv
-----END PGP SIGNATURE-----

--V88s5gaDVPzZ0KCq--

home help back first fref pref prev next nref lref last post