View Single Post
Old 06-06-2009, 12:04 PM   #2 (permalink)
grue155
Registered User
 
Join Date: May 2008
Posts: 240
OS: LAN Herder


Re: Reverse DNS question

Quote:
I have read that turning off/disabling a reverse DNS for your computer can be a good thing and essentially make you more stealthy on the net. How does one go about doing this?
It's a site-specific management policy decision. Somebody, designated the DNS admininstrator, has responsibility for what goes into the DNS records. The data gets typed into the proper record format, loaded into the authorative DNS server, and from there, is propagated out over the Internet.

Reverse DNS is not a steathly-or-not indicator. From my own experience, its more an indicator of the competence of the site DNS admin, and some measure of how legit the site is. No rDNS is a mark in the checkbox to consider the site as rogue, and subject to being blocklisted. Malware sites don't spend the time to do rDNS setup, because most of the time, they can't (like they would provide an rDNS for their zombie bots? What's the point of having an anonymous zombie army then, if I can block the entire army with a DNS lookup?)

Quote:
Also, at work, they IT dept has some how managed to "close" every single port and hide the UDP's. How does that get done?
That's easy. Firewall it at the Internet router.
grue155 is offline   Reply With Quote