ietf-clear
[Top] [All Lists]

[ietf-clear] CSV in action

2004-10-10 07:46:58
John Leslie wrote:

Mark <admin(_at_)asarian-host(_dot_)net> wrote:

I am noy clear about the reputation services, though. Are any of them
even existent?

   I'm not aware of any reputation services which attempt to report
on all domains which publish CSV SRV records. (There are periodic
discussions whether such services are in-scope for discussion here:
stay tuned...)

   There are definitely accreditation services which report on domain
names (as opposed to IP addresses). Any of these could easily report
in the DNA TXT format, if they don't already.


Thanks for your reply. One thing still remains fuzzy to me. :) The FAQ has
the following section:

--------------------------------
mailhost        IN      A       199.201.159.9
                IN      PTR     _vouch._smtp.csv_vouch
_client._smtp.mailhost  SRV 1 2 0 mailhost

saying that mailhost.jlc.net is authorized as an SMTP client, and that the
list of IP addresses is not empty; and saying that the csv_vouch.jlc.net
reputation service will vouch for it. (Not surprisingly, csv_vouch.jlc.net
reports an "excellent" rating.)
--------------------------------

Indeed, "not surprisingly". I mean, what is the point of (being allowed to)
point to an reputation service of your own choice? Yea, of your own making
even? Then people will just do what you did: set up an extra record for
themselves, and give themselves a big A+.

I currently use rating.cloudmark.com as reputation service for incoming mail
(non CSV related). But it serves as a jumping board for my question: should
not the receiving end decide/choose who they select to ascertain your
reputation? I must be missing something.

And is there even a point publishing CSV records without the
reputation service PTR?

   Absolutely. See the FAQ.

Ok, I set up the CSV record, so that "dig
_client._smtp.mail.asarian-host.net SRV" responds as follows:

----------------------------------
; <<>> DiG 8.4 <<>> _client._smtp.mail.asarian-host.net SRV
;; res options: init recurs defnam dnsrch
;; got answer:
;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 59260
;; flags: qr aa rd ra; QUERY: 1, ANSWER: 1, AUTHORITY: 2, ADDITIONAL: 3
;; QUERY SECTION:
;;      _client._smtp.mail.asarian-host.net, type = SRV, class = IN

;; ANSWER SECTION:
_client._smtp.mail.asarian-host.net.  1D IN SRV  1 2 0
mail.asarian-host.net.
----------------------------------

Does that look about right to you?

- Mark

        System Administrator Asarian-host.org

---
"If you were supposed to understand it,
we wouldn't call it code." - FedEx