Hi,

On 15 October I noticed from my logs that some queries to Validity's DNS
lists were being blocked. I was somewhat surprised as I find it hard to
believe that we did over 10k queries in 30 days, very far from it I
expect. And we do operate our own resolvers of course, so it's not a
public resolver issue.

Anyway, I decided fair play to register an account and list our resolver
IPs as a first step.

You do so at:

    https://my.validity.com/zone/settings?tab=ip

which offers four choices of things you can provide:

- Single IPv4
- Single IPv6
- IPv4 CIDR
- IPv6 CIDR

No matter what format I put in for our IPv6 block I got back an error
message "Invalid IPV6 CIDR address".

I sent an email to their support that day asking if I was
misunderstanding. One day later they said they needed to pass the matter
on to their engineering team. Today I have received an update:

    "I investigated this with our engineering team. We currently don't
    support IPV6 in the on the my validity/ zone file registration page.
    Our product team is working to remove IPV6 as option.

    Currently only IPV4 single and IPV4 range are supported. I apologize
    for any confusion."

Just now my NS queries for the lists used in SpamAssassin:

    sa-trusted.bondedsender.org
    sa-accredit.habeas.com
    bl.score.senderscore.com

are all returning SERVFAIL so I can't tell if they even have any
nameservers on IPv6. Obviously if all their nameservers are on IPv4 then
they are never going to see queries from IPv6 resolvers and it may be of
questionable value collecting those IPv6 addresses, but even then it
seems a bit short sighted.

Thanks,
Andy

-- 
https://bitfolk.com/ -- No-nonsense VPS hosting
_______________________________________________
mailop mailing list
mailop@mailop.org
https://list.mailop.org/listinfo/mailop

Reply via email to