spf-discuss
[Top] [All Lists]

Re: AOL rejecting hosts with no rDNS?

2004-06-27 04:38:20
On Fri, Jun 25, 2004 at 09:08:09PM -0400,
 Nico Kadel-Garcia <nkadel(_at_)merl(_dot_)com> wrote 
 a message of 38 lines which said:

A valid PTR is not necessarily a *matching* PTR record: it simply
provides an address to contact where someone is responsible for that
IP address.

The IP address typically provides a much better address to contact,
thanks to the RIR whois service. And it is less prone to
spoofing. Using PTR for authentication, even weak authentication, is a
very bad idea which has been beaten to death many times many years
ago. It is strange that some people keep reinventing it.