Address masks configured in Access Control Lists (ACIs), Connection Handlers, Connection Criteria, and Certificate handshake processing can trigger implicit reverse name lookups.
Ping Identity servers do not explicitly perform numeric IP address-to-hostname lookups. For more information about how address masks are configured in the server, review the following information for each server:
- ACI dns: Bind rules under Managing Access Control (PingDirectory server and PingDirectoryProxy servers)
ds-auth-allowed-address: Adding Operational Attributes that Restrict Authentication (PingDirectory server)
- Connection criteria: Restricting Server Access Based on Client IP Address (PingDirectory server and PingDirectoryProxy servers)
- Connection handlers: Restrict server access using Connection Handlers (Configuration Reference Guide for all PingDirectory servers)