MESSAGE
DATE | 2013-03-28 |
FROM | Ron Guerin
|
SUBJECT | Re: [NYLXS - HANGOUT] [SECURE1@cablevision.com: case # 157902]
|
On 03/28/2013 02:23 PM, Ruben Safir wrote: >>> We have been notified of 116 OOL ips involved in DNS abuse based attack on Spamhaus. These appear to be all Static IPs (Businesses) of ours that have DNS resolver mis-configured / unsecured. Many of our customers were unaware of the issue and have since corrected the problem on their side. >> >> Are they saying you're one of those 116? I didn't get one of these. >> >> In any event, shed no tears for Spamhaus, they stopped being the >> good guys long ago. There are no good people to root for in this >> dispute. >> > > How is it that Spamhuas is bad guys?
They started a spite listing list called the DBL where they routinely list things that have no business being listed (ie: well run services not emitting spam), except that the operators of Spamhaus don't like them. Call that what you like, I call it network abuse. They have become the thing they claim to despise.
> You know, the bottom line is these mother fuckers at cyberbunker layed > into the internet during the holiday and ran my DNS into the fucking > ground because they have a dispute with the community at spamhaus.
That's wrong for them to do, in any event.
> Then Cablevision says I don't need a recursive DNS. Really? So how do > I become an authoritative server for 23 domains.
You don't need a recursive server to serve authoritatively. That's what's meant by being authoritative. You don't look up the infomation elsewhere.
I believe the issue is you're recursive for everyone, and not just your own users. You need to run a recursive service for yourself, but you don't want to let the Internet at large to make use of it.
Forgive me if there was something in that PDF I should have read (I glanced at it). My eyes (and various other parts of me) are itching like there's no tomorrow, and I'm having to use them judiciously.
- Ron
|
|