|
|
 |  |
Re: DNS spoofing and reverse DNS recordsFrom: Mark Lucas Date: Thursday, May 27, 1999
Time: 6:01:00 pm>>We have taken over responsibility for primary DNS for our domain from our
>>service provider. (They now act as secondary) However they still seem to
>>think that *they* are responsible for maintaining reverse DNS records for
>>our domain. (The reason we took over responsibility was their inability to
>>correctly maintain, amongst other things, the reverse DNS records!)
>>a.) Is this seeming inconsistency correct?
>
>This is pretty normal - your reverse zone is entirely separate from your
>domain zone(s). If you want responsibility for your reverse records, you'll
>have to tell them that.
>
>I've taken a look at the situation, and they can't easily delegate the
>whole class C subnet to you anyway; they don't own the surrounding class B.
>From this, I take it that they haven't given you the entire class C, but
>just a portion of it.
I asked for a full class C address and as far as I am aware that is what
they have given me. (1-255) Is there anyway to reliably determin if they
haven't? I've done a name scan (1-255) which returns nothing unexpected.
However when I tried pinging .255 I get a response but this host does not
belong to us.
If they have given me an entire class C and if they don't own the
surrounding class B what are the potential problems? BTW, who does own the
surrounding class B? And should we be discussing this in an open forum?
>If this is true, you'll have to deal with a classless subnet delegation in
>order to get your reverse zone away from them. Read RFC 2317 (and, if
>necessary, have your ISP read it, too). If you can understand it, great,
>but if you have questions about it, I can probably answer them.
>
><ftp://NIC.MERIT.EDU/internet/documents/rfc/rfc2317.txt>
Thanks. Yes, I have tried reading it. ARRG! I broadly see what their trying
to deal with but the practise and detail needs more study! For the moment
I'll stay with what I believe to be true above.
Mark Lucas
the ARC
http://the.arc.co.uk/
|

Return to Digital Point Solutions' Home Page |