Reverse address entries
    Sam Wilson 
    Sam.Wilson at ed.ac.uk
       
    Mon Jul  1 13:11:00 UTC 2013
    
    
  
In article <mailman.718.1372672345.20661.bind-users at lists.isc.org>,
 Matus UHLAR - fantomas <uhlar at fantomas.sk> wrote:
> >> On Jun 28, 2013, at 10:54 AM, "Ward, Mike S" <mward at SSFCU.org> wrote:
> >> > Hello all, is there any reason to setup reverse address entries for a 
> >> > zone?
> 
> >In article <mailman.710.1372442831.20661.bind-users at lists.isc.org>,
> > Charles Swiger <cswiger at mac.com> wrote:
> >> Certainly.  Various software performs what's called a double-reverse 
> >> lookup
> >> to confirm that the A and PTR records match.
> 
> On 01.07.13 10:48, Sam Wilson wrote:
> >Isn't that paranoid reverse lookup?  Since reverse lookups can be faked
> >(I'll spare the details here) some uses of in-addr.arpa also require a
> >subsequent forward lookup.  If there is no PTR record then the double
> >lookup doesn't happen.  I don't know of anything to be gained by
> >requiring a reverse lookup after a forward lookup.
> 
> He apparently meant exactly the same. Also calles FcRDNS - "forward
> confirmed" or "full circle" reverse DNS.
OK.  So what Mr. Swiger refers to is not relevant - it's no reason to 
add PTR records.
Sam
-- 
The University of Edinburgh is a charitable body, registered in
Scotland, with registration number SC005336.
    
    
More information about the bind-users
mailing list