Slightly OT: Looking for an old domain for spam collection

Douglas Otis dotis at mail-abuse.org
Wed Mar 28 13:54:15 UTC 2007


On Wed, 2007-03-28 at 13:34 +0100, Tony Finch wrote:
> On Wed, 28 Mar 2007, Chris L. Morrow wrote:
> >
> > didn't paul vixie post a problem domain a bit back that would suffice?
> 
> IIRC he was complaining about junk DNS lookups to the RBL's original
> domain.

Correct.

The conclusion of that thread can be found here:
http://www.merit.edu/mail.archives/nanog/msg04555.html


A word of caution.  When attempting to collect IP address based abuse
information, spoofed BGP announcements MUST be tracked as well.  This
topic or even mention of ASNs was excluded in the "Guidelines for
Management of DNS-Based Reputation Systems for Email" written by Yakov
Shafranovich, Nick Nicholas, Matt Sergeant, and Chris Lewis and
published by Nick Nicholas on the ASRG reflector.  This paper ironically
excluded the role of the provider.

A cooperative effort by providers is likely the _only_ viable solution
for dealing with this chronic problem.  Targeted abuse is also unlikely
to be detected from disposed MX domains, but will detect amateurs. 

-Doug




More information about the NANOG mailing list