I like RFCI blacklists.. I use RFCI, I don't want to debate it, you
don't have to use them if you don't like them. You can set all the
scores to 0 if you won't want to use it.

I have a minor (DNS?) issue that might involve every frontbride client
in the world, and anyone using RFCI bogusx MX blacklist.  Or it might
affect every frontbridge client trying to get emails (if the TLD's are
messed up)

I think I might have a fix for the RFCI.  If you want to know WHY, read
below.

Quick fix for SA, in local.cf:
score DNS_FROM_RFC_BOGUSMX 0

Quick fix for postfix/mta, remove the check for bogusmx in main.cf

I can't fix the GTLD's.

For background, it looks like mail.global.frontbridge.com is not listed
in G.TLD

Find a frontbridge user (someone whos mx record points to  
mail.global.frontbridge.com

If you don't want to blacklist a client or friend, you can lookup an
existing record:
http://www.rfc-ignorant.org/tools/lookup.php?domain=advisor.com

Apparently this problem has been there (on the part of frontbridge?
TLD's? since Aug 8.

www.rfc-ignorant.org

Click on 'bogusmx'

Put that domain in the box, I think it will come up with this:
Bogusmx passed muster and has been added to database.

Click on details, and see:
Current status:
Return Code: 8
Description: g.gtld-servers.net reported that there was no A RR for
mail.global.frontbridge.com but it is not an NXDOMAIN

Trouble is, I don't know if all the TLD's are supposed to have records
for mail.global.frontbridge.com or not.

>From MY view, I don't see g.gtld-servers listed:

nslookup
Default Server:  secnap2.secnap.com
Address:  10.70.1.2

> root
Default Server:  f.root-servers.net
Address:  192.5.5.241

> mail.global.frontbridge.com.
Server:  f.root-servers.net
Address:  192.5.5.241

Name:    mail.global.frontbridge.com
Served by:
- H.GTLD-SERVERS.NET
          192.54.112.30
          com
- I.GTLD-SERVERS.NET
          192.43.172.30
          com
- J.GTLD-SERVERS.NET
          192.48.79.30
          com
- K.GTLD-SERVERS.NET
          192.52.178.30
          com
- L.GTLD-SERVERS.NET

          com
- M.GTLD-SERVERS.NET

          com
- A.GTLD-SERVERS.NET
          192.5.6.30, 2001:503:a83e::2:30
          com
- B.GTLD-SERVERS.NET
          192.33.14.30, 2001:503:231d::2:30
          com
- C.GTLD-SERVERS.NET
          192.26.92.30
          com
- D.GTLD-SERVERS.NET
          192.31.80.30
          com

Now, funny thing, lookup for 'frontbride.com' shows all TLD's, including
G.  But lookup for subdomains doesn't.

Any dns experts know why?

-- 
Michael Scheidell, CTO
SECNAP Network Security
561-999-5000 x 1131
www.secnap.com

_________________________________________________________________________
This email has been scanned and certified safe by SpammerTrap(tm).
For Information please see http://www.spammertrap.com
_________________________________________________________________________

Reply via email to