* Jan de Groot <j...@jgc.homeip.net> [090810 14:22]: > On Mon, 2009-08-10 at 14:03 +0200, Thomas Liske wrote: > > if an access line like: > > > > Connect:localhost RELAY > > > > turns a MTA into an Open Relay than I would prefere a DSA, since the > > ACL > > implementation is broken IMHO. > > As long as reverse DNS can be faked, I would never use hostnames in my > configuration files like that.
How common is programs verifying reverse DNS by doing forward DNS of the result? At least all programs relying on this information I've yet met consciously had it. Hochachtungsvoll, Bernhard R. Link -- To UNSUBSCRIBE, email to debian-security-requ...@lists.debian.org with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org