The IP address belongs to a network
ASN and provider information can identify the network announcing or hosting the public address.
Country data has limits
Geolocation databases can be wrong or reflect network registration rather than the physical location of every workload.
CDNs can hide the origin
A public hostname may resolve to a CDN or reverse proxy, so the visible provider is not necessarily the origin server operator.
Online adds infrastructure context
Scantide Online can enrich public domain findings with provider, ASN, country and jurisdiction-related evidence where available.
Practical depth: examples, failure modes and what to verify
Source note: current Scantide material describes the present platform. Older JufCorp/Red Cloud material is retained as field experience and historical context. Old product names, versions and configuration examples are not presented as current requirements.
Current Scantide detail
Current Scantide source: Domain Security Scanner for DNS, HTTPS and Web ExposureUse Scantide Online to check DNS and mail security, HTTPS/TLS, security headers, cookies and public infrastructure context from one domain scan.
Current Scantide source: Domain Security Scanner for DNS, HTTPS and Web ExposureScantide Online reviews public DNS, mail-security records, HTTP/HTTPS behavior, TLS, security headers, cookies, infrastructure and CVE-related context to provide a readable external assessment of a domain.
Current Scantide source: Public Server Security AssessmentUse Scantide Online to review public hosts, HTTPS, headers, DNS and infrastructure evidence for a readable first-pass public server security assessment.
Current Scantide source: External Attack Surface Assessment and DiscoveryExternal attack surface work begins with visibility: which hosts answer, which services are exposed and which systems appear to belong to the organization.
Current Scantide source: DNS, SPF and DMARC Security CheckerScantide Online checks public DNS and mail-security signals including SPF and DMARC as part of a broader external domain assessment.
Field experience from the archive
Historical source · JufCorp: Securing your datacenter - Physical aspectsKnow where your backups are, at all times. Have them encrypted. If using online backup services, be sure to use an encryption key and , if possible, be sure to have restrictions on the online backup service providers end on to and from where backups and restores are allowed
Historical source · JufCorp: Securing your servers, users and customers onlineAlso, as a complement, use an online service also that filters all of your incoming and outgoing mail from viruses and SPAM and also have you secondary MX records point to it. Usually these services also hold you mail in queue if they cant' be delivered, buying you time to change the IP addresses or server if you are under attack and not losing any mails.
If you're using an external "mail cleaning service", don't allow port 25 from any other IP/IP ranges than them. If your users are to use your Exchange Server for relaying , set up a connector with SSL and SMTP authentication on other port and enable logging on it.
That's six quite easy questions that sum up what that technical restore plan should contain. It should be able to be read even be outside consultants in case of your entire IT department got killed in a freak barbecue accident the night before. Keep it simple but detailed. Include all necessary background info such as server configurations, IP plans, passwords and where the data is stored. a Network map explaining dependencies might also be useful.
Practical review checklist
- Use Scantide Online to check DNS and mail security, HTTPS/TLS, security headers, cookies and public infrastructure context from one domain scan.
- Scantide Online reviews public DNS, mail-security records, HTTP/HTTPS behavior, TLS, security headers, cookies, infrastructure and CVE-related context to provide a readable external assessment of a domain.
- Use Scantide Online to review public hosts, HTTPS, headers, DNS and infrastructure evidence for a readable first-pass public server security assessment.
- External attack surface work begins with visibility: which hosts answer, which services are exposed and which systems appear to belong to the organization.
- Scantide Online checks public DNS and mail-security signals including SPF and DMARC as part of a broader external domain assessment.
- Also, as a complement, use an online service also that filters all of your incoming and outgoing mail from viruses and SPAM and also have you secondary MX records point to it.
- If you're using an external "mail cleaning service", don't allow port 25 from any other IP/IP ranges than them.