SHARE
TWEET

Untitled

a guest Mar 28th, 2012 159 Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
  1. Hi Chris/Alan,
  2.  
  3. I have a question on AXFR (zone-transfer) records.
  4.  
  5. All my domains in the past have disallowed AXFR lookups.
  6.  
  7. Example:
  8. $ dig @ns1.telstra.net abc.net.au axfr
  9.  
  10. But after moving my DNS to a stock Ubuntu server, it seems to be a default to allow AXFR lookups for anyone. I also noticed the default for this is disallowed on Debian 6.
  11.  
  12. What I want to know is how important is it to restrict AXFR lookups.
  13. Should they be allowed to be public since DNS should be public anyway?
  14. If so then why do so many DNS hosts out there have this disabled by default?
  15.  
  16. Thanks for your time.
  17.  
  18. Regards
  19. Simon, Australia
RAW Paste Data
We use cookies for various purposes including analytics. By continuing to use Pastebin, you agree to our use of cookies as described in the Cookies Policy. OK, I Understand
Top