Re: [Asrg] RFC 6471 and "listing the Internet" as a punishment

darxus@chaosreigns.com Tue, 24 January 2012 18:23 UTC

Return-Path: <darxus@chaosreigns.com>
X-Original-To: asrg@ietfa.amsl.com
Delivered-To: asrg@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id DB01011E80AB for <asrg@ietfa.amsl.com>; Tue, 24 Jan 2012 10:23:54 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.671
X-Spam-Level:
X-Spam-Status: No, score=-1.671 tagged_above=-999 required=5 tests=[AWL=-0.929, BAYES_20=-0.74, NO_RELAYS=-0.001]
Received: from mail.ietf.org ([12.22.58.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id LMznzzcVBHKH for <asrg@ietfa.amsl.com>; Tue, 24 Jan 2012 10:23:54 -0800 (PST)
Received: from panic.chaosreigns.com (panic.chaosreigns.com [IPv6:2001:470:1f05:1b8a::1]) by ietfa.amsl.com (Postfix) with ESMTP id 33A3F11E80A6 for <asrg@irtf.org>; Tue, 24 Jan 2012 10:23:54 -0800 (PST)
Received: by panic.chaosreigns.com (Postfix, from userid 1000) id D0C5E4C6A49; Tue, 24 Jan 2012 13:23:49 -0500 (EST)
Date: Tue, 24 Jan 2012 13:23:49 -0500
From: darxus@chaosreigns.com
To: asrg@irtf.org
Message-ID: <20120124182349.GR27359@chaosreigns.com>
References: <18B53BA2A483AD45962AAD1397BE13253846E0FE87@UK-EXCHMBX1.green.sophos> <4F1ECBE4.1050802@bofhland.org> <20120124153531.GA8414@gsp.org> <4F1ED3CA.5040200@bofhland.org>
MIME-Version: 1.0
Content-Type: text/plain; charset=us-ascii
Content-Disposition: inline
In-Reply-To: <4F1ED3CA.5040200@bofhland.org>
User-Agent: Mutt/1.5.20 (2009-06-14)
Subject: Re: [Asrg] RFC 6471 and "listing the Internet" as a punishment
X-BeenThere: asrg@irtf.org
X-Mailman-Version: 2.1.12
Precedence: list
Reply-To: Anti-Spam Research Group - IRTF <asrg@irtf.org>
List-Id: Anti-Spam Research Group - IRTF <asrg.irtf.org>
List-Unsubscribe: <http://www.irtf.org/mailman/options/asrg>, <mailto:asrg-request@irtf.org?subject=unsubscribe>
List-Archive: <http://www.irtf.org/mail-archive/web/asrg>
List-Post: <mailto:asrg@irtf.org>
List-Help: <mailto:asrg-request@irtf.org?subject=help>
List-Subscribe: <http://www.irtf.org/mailman/listinfo/asrg>, <mailto:asrg-request@irtf.org?subject=subscribe>
X-List-Received-Date: Tue, 24 Jan 2012 18:23:55 -0000

As I tried to say in the past, having a value to return for all
queries from a DNS server that has been deemed abusive is *useful* to
black/whitelist providers.  Enough that it's looking like it'll be done
whether the ASRG likes it or not.  If you'd prefer something other than
127.0.0.1 to be used, document it somewhere.

Also, as the linked article said, "...the 127.0.0.1 response indicates
that uribl.com does not accept any queries from the DNS server".
SpamAssassin had this handled as URIBL defined, no false positives
resulted.

-- 
"Go forth, and be excellent to one another." - http://www.jhuger.com/fredski.php
http://www.ChaosReigns.com