-
November 17th, 2015, 15:50
#1
پیام axfr در سرور مجازی
سلام برای سرور مجازی من این پیام اومده که 2 تا از دامنه های من رو توش گفته مشکل داره
اصلا نمی دونم معنی این پیام چیه و مشکل dns دامنه چی هست
ممنون میشم راهنمایی کنید
[CERT-Bund#2015111628002467]
Dear Sir or Madam,
The AXFR (Asynchronous Full Transfer Zone, or zone transfer) is used to
synchronize the DNS entries for a domain between authoritative name
servers. An AXFR query is usually only approved if it is from the
respective secondary DNS server to the primary DNS server. If there is a
mistake in the configuration of the DNS server, an AXFR query can
nevertheless still be made from any arbitrary IP address.
Attackers take advantage of this problem to obtain information from
systems that are connected to that domain. Then, from this information,
they identify other potential places where they could attack.
For further information, please see:
[You need an English-language link here; maybe try:
https://www.us-cert.gov/ncas/alerts/TA15-103A or
http://news.softpedia.com/news/Misco...-478331.shtml]
CERT-Bund (the CERT for the German Federal Office for Information
Security) has obtained a list of domain names whose authoritative DNS
servers are hosted in Germany and which permit an AXFR queries from any
random IP address.
Below are a list of affected domain names and the relevant DNS servers
in your network area. We request that you review the situation and take
necessary measures, such as informing your customers about this security
issue.
This email has been digitally signed using PGP. For information on the
key used for this signature, please see:
<https://www.cert-bund.de/reports-sig>
Please note: This is an automated response. Do not attempt to respond to
this email by sending a response to the above sender. Please send any
questions to certbund@bsi.bund.de.
Below is a list of affected domain names/DNS servers in your network
area. The format for that list is:
ASN | DNS server IP | domain name DNS server name |ASN description
*************************************
Best regards
Team CERT-Bund
Bundesamt für Sicherheit in der Informationstechnik (BSI)
Referat C21 - CERT-Bund
Godesberger Allee 185-189
D-53175 Bonn
-
-
November 17th, 2015 15:50
# ADS
-
November 17th, 2015, 15:59
#2
عضو انجمن
پاسخ : پیام axfr در سرور مجازی
-
تعداد تشکر ها از cartman10mpi به دلیل پست مفید
-
November 17th, 2015, 16:03
#3
پاسخ : پیام axfr در سرور مجازی
ممنون از شما دوست من
آیا فقط همین عبارت
کد:
allow-transfer {"none";};
که فرمودید رو اضافه کنم حل میشه یا باید کار دیگه ای انجام داد؟
با تشکر
-
-
November 17th, 2015, 16:12
#4
عضو انجمن
پاسخ : پیام axfr در سرور مجازی
اگر از سرور های اسلیو استفاده نمیکنید ، بله کافی است
در آخر باید دی ان اس سرور رو ریستارت کنید
ویرایش توسط cartman10mpi : November 17th, 2015 در ساعت 16:13
-
تعداد تشکر ها از cartman10mpi به دلیل پست مفید