OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
Re: How to block a MX without revers DNS is working ?

From: Alexander Grüner (agruenergmx.de)
Date: Tue Jul 04 2006 - 00:15:58 CDT


>> Maybe someone will contribute a "check_reverse_client_hostname_access"
>> lookup in the future.
>
> I'm willing to implement it in Policyd if there is a requirement for it.

Hi Cami :-)

in my case it would be great. Within 24 hours yesterday I got:

zgrep -i "verification failed: Name or service not known"
mail.info-20060704.gz | wc
    581 9877 98145

In June 2006 there were 13519 of this kind on my MX !

It seems to be all spam or dialins. Just a few lines as example:

Jul 4 02:45:39 ns3 postfix/smtpd[21922]: warning: smtpd_peer_init:
190.49.143.207: hostname 190-49-143-207.speedy.com.ar verification
failed: Name or service not known
Jul 4 02:47:13 ns3 postfix/smtpd[21916]: warning: smtpd_peer_init:
200.93.159.189: hostname slerpool8_93159-189.etb.net.co verification
failed: Name or service not known
Jul 4 02:48:13 ns3 postfix/smtpd[21959]: warning: smtpd_peer_init:
88.134.116.201: hostname 88-134-116-201-dynip.superkabel.de verification
failed: Name or service not known
Jul 4 02:55:52 ns3 postfix/smtpd[22271]: warning: smtpd_peer_init:
190.49.143.207: hostname 190-49-143-207.speedy.com.ar verification
failed: Name or service not known
Jul 4 02:56:26 ns3 postfix/smtpd[22282]: warning: smtpd_peer_init:
24.229.99.56: hostname 24-229-99-56.cmts.tnk.ptd.net verification
failed: Name or service not known
Jul 4 02:59:25 ns3 postfix/smtpd[22282]: warning: smtpd_peer_init:
196.218.56.107: hostname host-196.218.107.56.tedata.net verification
failed: Name or service not known
Jul 4 02:59:27 ns3 postfix/smtpd[22173]: warning: smtpd_peer_init:
190.48.229.191: hostname 190-48-229-191.speedy.com.ar verification
failed: Name or service not known
Jul 4 02:59:55 ns3 postfix/smtpd[22271]: warning: smtpd_peer_init:
196.218.56.107: hostname host-196.218.107.56.tedata.net verification
failed: Name or service not known
Jul 4 03:02:41 ns3 postfix/smtpd[22271]: warning: smtpd_peer_init:
196.218.56.107: hostname host-196.218.107.56.tedata.net verification
failed: Name or service not known
Jul 4 03:04:25 ns3 postfix/smtpd[22377]: warning: smtpd_peer_init:
190.49.143.207: hostname 190-49-143-207.speedy.com.ar verification
failed: Name or service not known
Jul 4 03:05:17 ns3 postfix/smtpd[23343]: warning: smtpd_peer_init:
218.28.52.87: hostname hn.pds.kd.adsl verification failed: Name or
service not known
Jul 4 03:06:57 ns3 postfix/smtpd[22377]: warning: smtpd_peer_init:
218.187.47.191: hostname 218-187-47-191.cm.dynamic.apol.com.tw
verification failed: Name or service not known
Jul 4 03:10:43 ns3 postfix/smtpd[23546]: warning: smtpd_peer_init:
85.59.41.145: hostname 85-59-41-145.mad4.adsl.uni2.es verification
failed: Name or service not known
Jul 4 03:10:55 ns3 postfix/smtpd[23567]: warning: smtpd_peer_init:
190.6.1.63: hostname docs-res-ccs-190-6-1-63.net-uno.net verification
failed: Name or service not known
Jul 4 03:12:38 ns3 postfix/smtpd[23546]: warning: smtpd_peer_init:
203.210.224.155: hostname adsl.hnpt.com.vn verification failed: Name or
service not known

Alexander