Criminals, The Network, and You [Was: Something Else]

Paul Ferguson fergdawg at netzero.net
Fri Aug 17 05:43:45 UTC 2007


Re-sending due to Merit's minor outage.

- ferg


---------- Forwarded Message ----------


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

- -- Robert Blayzor <rblayzor at inoc.net> wrote:

>The fact that they're rejecting on a 5xx error based on no DNS PTR is a=

bit harsh.  While I'm all for requiring all hosts to have valid PTR
records, there are times when transient or problem servers can cause a
DNS lookup failure or miss, etc.  If anything they should be returning a=

4xx to have the remote host"try again later".
>

Oh, wait till you realize that some of the HTTP returns are bogus
altogether -- and actually still serve malware.

It's pretty rampant right now. :-/

- - ferg

-----BEGIN PGP SIGNATURE-----
Version: PGP Desktop 9.6.2 (Build 2014)

wj8DBQFGxR1lq1pz9mNUZTMRApQRAKCEOLpuu69A1+B4vCHQTZs+hHLKaACcD1Ak
9JNwl2i1mL08WNUQSlXBYGM=3D
=3DffuN
-----END PGP SIGNATURE-----


--
"Fergie", a.k.a. Paul Ferguson
 Engineering Architecture for the Internet
 fergdawg(at)netzero.net
 ferg's tech blog: http://fergdawg.blogspot.com/






More information about the NANOG mailing list