Zone transfer

Zone transfer is a type of DNS transaction where a DNS server passes a copy of full or part of it's zone file to another DNS server


Zone transfer(attack)

  • If zone transfers are not securely configured, anyone can initiate a zone transfer against a nameserver and get a copy of the zone file
  • By design, zone file contains a lot of information about the zone and the hosts that reside in the zone

Zone transfer using dig

$ dig +multi AXFR


