Geekzone: technology news, blogs, forums
Guest
Welcome Guest.
You haven't logged in yet. If you don't have an account you can register now.


timmmay

20587 posts

Uber Geek

Trusted
Lifetime subscriber

#260121 11-Nov-2019 19:52
Send private message

My web server IP has been added to the "Abusix Mail Intelligence Policy list". This is apparently because

 

"This blacklist lists all IP addresses that are unlikely to be used by a legitimate mail server. Legitimate mail servers should use a static IP address with a non-generic PTR record and that reflect the host and domain name of the mail server and ideally should match the forward lookup for the same name. This list is generated by running a reverse DNS lookup for every IPv4 IP address and lists IPs with:

 

  • no PTR record
  • PTR record with an invalid top-level domain (TLD)
  • PTR record contains part of the IP address (e.g. 127-0-0-1.example.com)
  • PTR indicates dynamic IP (e.g. subdomain contains: dynamic, dyn, cable, generic-host, nothing, dsl, dial, dhcp, unallocated, broadband, internetdsl, gprs, no-dns-yet, unassigned, unknown, ipngn, ...)

"

 

My IP address has a PTR record created by AWS, as below - IP changed obviously. As the IP address is in the PTR record it's been added to this list.

 

ec2-52-1-1-1.us-west-2.compute.amazonaws.com

 

 

 

I host about half a dozen domains on the server. I host my email on FastMail, so the only email that comes out of the server is notifications to me.

 

Should I add a PTR record to the main domain for the server? How about for every other domain on the server? It's fairly easy to get AWS to remove their PTR record.

 

I have already requested a delist - I'm just making sure I get the DNS set up properly.


Create new topic
SirHumphreyAppleby
2847 posts

Uber Geek


  #2351871 11-Nov-2019 20:31
Send private message

First of all, do you even care what this blacklist says? There are many out there, each with their own policies, and not all are used or intended to be used for mail filtering.

 

Just set the PTR for the IP address to match the hostname given during HELO/EHLO.

 

In the past, many servers violated RFC requirements by dropping connections immediately if these didn't match, preventing e-mails to postmaster. These days with SPF and DKIM, these checks are largely redundant, but having a matching PTR would be really a good idea still.




timmmay

20587 posts

Uber Geek

Trusted
Lifetime subscriber

  #2351872 11-Nov-2019 20:35
Send private message

There's no email server on the machine, so there's no HELO. The main thing was to get it off the spam list, but that was done already. Really just seeing if it's worth doing or not.


SirHumphreyAppleby
2847 posts

Uber Geek


  #2351874 11-Nov-2019 20:40
Send private message

timmmay:

 

There's no email server on the machine, so there's no HELO. The main thing was to get it off the spam list, but that was done already. Really just seeing if it's worth doing or not.

 

 

In that case, I wouldn't bother. I wouldn't jump through hoops just to please them or the next crowd that decide some arbitrary requirements mean anything.

 

I'd consider the information leakage from the PTR matching your primary domain to be more of a concern than the potential use of their RBL for the wrong purpose (or even the intended one).




timmmay

20587 posts

Uber Geek

Trusted
Lifetime subscriber

  #2351875 11-Nov-2019 20:41
Send private message

ok, thanks, I'll leave well enough alone then :)


Create new topic





News and reviews »

Air New Zealand Starts AI adoption with OpenAI
Posted 24-Jul-2025 16:00


eero Pro 7 Review
Posted 23-Jul-2025 12:07


BeeStation Plus Review
Posted 21-Jul-2025 14:21


eero Unveils New Wi-Fi 7 Products in New Zealand
Posted 21-Jul-2025 00:01


WiZ Introduces HDMI Sync Box and other Light Devices
Posted 20-Jul-2025 17:32


RedShield Enhances DDoS and Bot Attack Protection
Posted 20-Jul-2025 17:26


Seagate Ships 30TB Drives
Posted 17-Jul-2025 11:24


Oclean AirPump A10 Water Flosser Review
Posted 13-Jul-2025 11:05


Samsung Galaxy Z Fold7: Raising the Bar for Smartphones
Posted 10-Jul-2025 02:01


Samsung Galaxy Z Flip7 Brings New Edge-To-Edge FlexWindow
Posted 10-Jul-2025 02:01


Epson Launches New AM-C550Z WorkForce Enterprise printer
Posted 9-Jul-2025 18:22


Samsung Releases Smart Monitor M9
Posted 9-Jul-2025 17:46


Nearly Half of Older Kiwis Still Write their Passwords on Paper
Posted 9-Jul-2025 08:42


D-Link 4G+ Cat6 Wi-Fi 6 DWR-933M Mobile Hotspot Review
Posted 1-Jul-2025 11:34


Oppo A5 Series Launches With New Levels of Durability
Posted 30-Jun-2025 10:15









Geekzone Live »

Try automatic live updates from Geekzone directly in your browser, without refreshing the page, with Geekzone Live now.



Are you subscribed to our RSS feed? You can download the latest headlines and summaries from our stories directly to your computer or smartphone by using a feed reader.