With DNSLookup=1 options awstats replaced ip addresses by reverse resolved hostnames in reports.
After DOS/traffic attack I found in awstats report few attacker hostnames, but these hostnames not resolved to any IP. So, reverse IP lookup returned wrong nonexisted hostnames.
It will be grate to have option like "ForwardConfirmedReverseDNSLookup"
This option will cause awstats to perform forward dns check of resolved hostname. If hostname not resolved back to given IP this IP must considered as unresolved. Such IP shows in all reports as numeric IP, not hostname.
Log in to post a comment.