From owner-freebsd-hackers Tue Apr 29 23:36:25 1997 Return-Path: Received: (from root@localhost) by hub.freebsd.org (8.8.5/8.8.5) id XAA09348 for hackers-outgoing; Tue, 29 Apr 1997 23:36:25 -0700 (PDT) Received: from sax.sax.de (sax.sax.de [193.175.26.33]) by hub.freebsd.org (8.8.5/8.8.5) with SMTP id XAA09342 for ; Tue, 29 Apr 1997 23:36:22 -0700 (PDT) Received: (from uucp@localhost) by sax.sax.de (8.6.12/8.6.12-s1) with UUCP id IAA07103; Wed, 30 Apr 1997 08:36:13 +0200 Received: (from j@localhost) by uriah.heep.sax.de (8.8.5/8.8.5) id HAA02890; Wed, 30 Apr 1997 07:56:43 +0200 (MET DST) Message-ID: <19970430075643.VV65060@uriah.heep.sax.de> Date: Wed, 30 Apr 1997 07:56:43 +0200 From: j@uriah.heep.sax.de (J Wunsch) To: freebsd-hackers@freebsd.org (FreeBSD hackers) Cc: sysop@mixcom.com (Jeffrey J. Mountin) Subject: Re: Syslog bug? References: <3.0.32.19970429200413.00abaeb8@mixcom.com> X-Mailer: Mutt 0.60_p2-3,5,8-9 Mime-Version: 1.0 Tt: hackers@freebsd.com X-Phone: +49-351-2012 669 X-PGP-Fingerprint: DC 47 E6 E4 FF A6 E9 8F 93 21 E0 7D F9 12 D6 4E Reply-To: joerg_wunsch@uriah.heep.sax.de (Joerg Wunsch) In-Reply-To: <3.0.32.19970429200413.00abaeb8@mixcom.com>; from Jeffrey J. Mountin on Apr 29, 1997 20:04:14 -0500 Sender: owner-hackers@freebsd.org X-Loop: FreeBSD.org Precedence: bulk As Jeffrey J. Mountin wrote: > >They should get. This address appears in public, so it is expected to > >be reverse lookupable. > > That is one point, the other is that http is an accessed service. It does > not initiate any connections. It is sending packets into the public (perhaps only answer packets, but you probably can't even guarantee this, think of an FTP data channel). As such, it should be in reverse DNS. > From a security standpoint I'd say it is > better to *not* have inverse on web hosts. Huh? What security do you gain by this? None. > Just a bit annoyed at sendmail trying to tell me something is broken, when > to me it isn't. New feature, my.... And there doesn't look like any quick > fix. I agree that there should be a way to tell sendmail to not bind to all addresses. Go and add this feature. -- cheers, J"org joerg_wunsch@uriah.heep.sax.de -- http://www.sax.de/~joerg/ -- NIC: JW11-RIPE Never trust an operating system you don't have sources for. ;-)