Vulnerability Development mailing list archives

RE: DNS zone transfer


From: "deepblue" <news () inlynx com>
Date: Mon, 10 Jun 2002 00:32:59 -0700

I tried a few experiments querying different types of dns servers and it
seems bind servers will give up all the zone data whereas win2k servers
with bind disabled won't.  Also, servers configured only to transfer
their zone info to particular IP's wouldn't give up the zone data,
whether it was bind or not.  I didn't query enough boxes with configs I
knew to say that this is definitive, maybe someone else can shed some
light on this.

pd


-----Original Message-----
From: Vlad [mailto:progman () netvision net il] 
Sent: Saturday, June 08, 2002 7:01 AM
To: vuln-dev () securityfocus com
Subject: DNS zone transfer

Greetings,

Is it possible to remotely retrieve all DNS records from a server
*without* knowing the specific zones it hosts? 
(cause then I can script "dig @dns-server.ip zone-domain ALL" )

If it matters the server runs the DNS service on Win2k and I've got no
preferance for Windows or *NIX tools. Any will do.


Thanks,
 - Vlad.


Current thread: