Is it OK to have 2 Reverse DNS records each at separate ISPs?

Posted on 2016-10-26
Medium Priority
Last Modified: 2016-11-18
I have an exchange server behind a Sonicwall and just added a second ISP with static IP for failover. In terms of outgoing email, I currently have a reverse dns entry for our domain at ISP 1. Can I add a second reverse DNS entry at ISP 2, in the event ISP1 is down and mail goes out ISP 2? (The thought being that the email will originate from the second ISP static IP, and a reverse look up will point to the same domain.
Question by:dseli
  • 2
  • 2
LVL 18

Assisted Solution

Ivan earned 1000 total points
ID: 41861249

yes, you can and should add PTR record for secondary ISP link. If you don't have PTR and fallback to secondary link, some mail servers will reject/ spam your email. Also, configure new public DNS name for that public ip address, and configure additional MX record, with higher value then MX on ISP 1 link.

If you have configured SPF record, then modify it, and add value for secondary link.

LVL 42

Accepted Solution

footech earned 1000 total points
ID: 41861444
Yes you should have a PTR record for the second ISP static IP.  Don't point it at the same name as you use for the IP from ISP 1, use a different one.  Create an A record with the new name to point at the IP from ISP 2.

Configuring another MX record for the secondary connection - even if you configure the MX record with lower priority (higher number) then your other, it's still possible that some mail could get sent to the lower priority MX.  You would have to determine if you want to allow incoming email on the secondary connection.

Author Comment

ID: 41892121
Thank You for your response. So to clarify, MX points to an external filter, so that would not need to change except the "forward to" if it has to forward to the mail server behind ISP2.  As far as the second PTR,  so if I had a PTR record at ISP 1, for example, ISP1 PTR----> resolves to mail.domain.com, I can set up at ISP2 PTR ----> resolves to mail2.domain.com with out any confusion on lookups?
LVL 42

Assisted Solution

footech earned 1000 total points
ID: 41892348
Yes, that's correct.
Recipients can be different in what they check.  Some don't check anything.  Some check that you have a PTR record, but don't care what it is.  Some check for forward confirmed reverse DNS (which is what I described above).  Other checks can be performed for SPF records, and whether your SMTP banner matches the name in your PTR record (this last one's pretty rare).

Author Closing Comment

ID: 41892859
Thank you for your reply!

Featured Post

Easily Design & Build Your Next Website

Squarespace’s all-in-one platform gives you everything you need to express yourself creatively online, whether it is with a domain, website, or online store. Get started with your free trial today, and when ready, take 10% off your first purchase with offer code 'EXPERTS'.

Question has a verified solution.

Are you are experiencing a similar issue? Get a personalized answer when you ask a related question.

Have a better answer? Share it in a comment.

Join & Write a Comment

I am posting this in case anyone runs into similar issues that I did, this may save you a lot of grief: Condition: 1. Your NetBIOS domain name contains an ampersand " & " character.  (e.g. AT&T) 2. You've tried to run any Microsoft installation…
The Exchange database may sometimes fail to mount owing to various technical reasons. A dismounted EDB file can be the source of many Exchange errors including mailbox inaccessibility for users. Resolving the root cause of mounting problems becomes …
This video shows how to quickly and easily add an email signature for all users on Exchange 2016. The resulting signature is applied on a server level by Exchange Online. The email signature template has been downloaded from: www.mail-signatures…
This video tutorial shows you the steps to go through to set up what I believe to be the best email app on the android platform to read Exchange mail.  Get the app on your phone: The first step is to make sure you have the Samsung Email app on your …

600 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question