Advertisement
Guest User

Untitled

a guest
Mar 28th, 2012
588
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 0.62 KB | None | 0 0
  1. Hi Chris/Alan,
  2.  
  3. I have a question on AXFR (zone-transfer) records.
  4.  
  5. All my domains in the past have disallowed AXFR lookups.
  6.  
  7. Example:
  8. $ dig @ns1.telstra.net abc.net.au axfr
  9.  
  10. But after moving my DNS to a stock Ubuntu server, it seems to be a default to allow AXFR lookups for anyone. I also noticed the default for this is disallowed on Debian 6.
  11.  
  12. What I want to know is how important is it to restrict AXFR lookups.
  13. Should they be allowed to be public since DNS should be public anyway?
  14. If so then why do so many DNS hosts out there have this disabled by default?
  15.  
  16. Thanks for your time.
  17.  
  18. Regards
  19. Simon, Australia
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement