ZONE TRANSFER:
Zone Transfer is a mechanism, Tat is used By the web server to update each other ServERS,by transferring the contents to their Database (Whereever in tha Planet).
There are two types of servers Primary and Secondary Servers, Primary Server is The Main(Authoritive Server) , Secondary Server is tha (Non –Authoritive Servers)
Name Server is nothing but , See If there is Google, They might have 10 or 15 locations, To Identify the location of each server,Name Server was Formed..Purinjitha no…!!
If a google in US ,Illonis(I love this place Persnaolly ,Coz Actor Surya Missed Her LoverHere only)m8 have name server like this :
US: ert1s.google.com
India: machi:google.com
Uk: per4t.google.com
Got it..Primary is the Main Server, all tha secondary are Cache Server also called as Back Up Servers.
Entering “nslookup” in the cmd will give the following results:
DNS Movves tha Information from one site to another called Zoned Transfers Port num 53: Ok
And More Port Numbers For ur eye, You need to Memorize this For God Sake if u wannna be a good Security professional..
Briefings of tha 2nd Command prompt image:
There are tha 4 steps involved in Zone transfer Process:
Ha ha ha…Very Firstly
1. The Secondary Server, Sends SOA(Start of authority) record to the Primary Server
2. Primary Server Checks, whether the Secondary Server SOA Is authorized(SOA Has Unique Nembers,Differs from Server to server in Diff locations)
3. If an update is need for the Secondary server, It will send (AXFR) All Zone Transfer , To Tha Primary Server
4. In Follow up response to the Secon, Primary will send the Updated Files to the Req Zones
DNS Records and types:
A --> Host (Maps an Domain Name to IP)
PTR- -> Pointer (Maps an IP To domain name)
NS- -> Name server(Which I said Earlier)
SOA - -> Start of authority(I Hope u Kno)
SRV- ->Service Locator(Used to Map tha Network)
MXà Mail((Usd to Identify the SMTP Services)
SOA record Has TTL(Time to live) For the Session (Zone transfers).
Yeap..Open Up tha Command Prompt:
#nslookup - Enter it on cmd n wait.
##Server <IP Address> - Enter it(I Hop u kno to obtain The Server IP,If kno Drop Comments,ADD ONS avail fr Firefox)
###set type = any (Tells Ns lookup To Query fr all record,If u want something particular,Refer abov Commands WE Discussed)
#### ls –d <domain name> = www.defendhacker.blogspot.com (Trust me u cant play Around wit Blogs) Asssuming u are targetin to transfer tha zone.
Either u will get eerrors Or ll See Zone transfers.
Here We perform Now
C:\user\h4ckfeak> nslookup
Default server: hi43/defendhackers.blogspot.com
Address: 193.445.345.344
Server 123.343.545.54(You are typing in after obtain tha server Addr)
Set type=any
ls –d defendhackers.blogspot.com
defendhackers.blogspot.com SOA host.defendhackes.com(12 23 123 0000)
defendhackers.blogspot.com NS auth.34.bc.net
defendhackers.blogspot.com NS auth.34.bc.net
defendhackers.blogspot.com A 12.43.55.56
defendhackers.blogspot.com MX chennaismtp1.defnd..rs.com
defendhackers.blogspot.com MX chennaismtp2.defnd..rs.com
defendhackers.blogspot.com MX chennaismtp1.defnd..rs.com
defendhackers.blogspot.com A 123.334.545.66
defendhackers.blogspot.com A 123.334.545.67
defendhackers.blogspot.com A 123.334.545.68
defendhackers.blogspot.com A 123.334.545.69
This Would Help u understand Better
There is a tool name called DIG Which Can provide These type Of Information to the Hackers, To Hack into the Servers This is the Intial Stage, Launchin tha Attack
##### Always one have to Ensure that the DNS Has Secured Properly. Periodic Check is Good Like Checkin ur fuel in Car, And Ensure its Security..But the Fuckin Thing is..The Secodary Servers Always Zone Transfers..And its about security of each compny Maintain
For Full Understandin Do Watch This Video,.Would Help u a lot..
Lat3r
2 comments:
Shoot me with ur Comments
Dishkaaaao.............
"Shooted you wid my comment"!!! HEHEHE!!!
Post a Comment