Thursday, November 1, 2018

Forward and Reverse PTR for DNS Verification? - does it add any security against MITM?

Hello all,

I know the answer already, and it is NO.

That being said, aside from "obstructication" style security, does setting up DNS with forward and reverse PTR matching pairs NAME = IP, IP = NAME add any type of other benefit? (I also realize PTR does not often / always match directly to the forward look up)

Anyhow just exploring cheap ways to slightly improve the verification of a host, and yes yes I am aware of DNSSEC too.

Not to over answer and, be a know it all. Just hoping for some suggestions outside the realm of obvious. Thank you very much for taking the time to my question, beyond a solid "nope"

Thanks again!



No comments:

Post a Comment