Sun Java System Messaging Server 6.3 Administration Guide Denying Access to Spoofed Domains

You can use the DNSSPOOFER wildcard name in a filter to detect host-name spoofing. When you specify DNSSPOOFER, the access-control system performs forward or reverse DNS lookups to verify that the client’s presented host name matches its actual IP address. Here is an example for a Deny filter:


This filter denies all services to all remote hosts whose IP addresses don’t match their DNS host names.