What does it mean?

Mordechai T. Abzug morty at sanctuary.arbutus.md.us
Fri Oct 6 05:22:46 UTC 2000


On Fri, Oct 06, 2000 at 11:12:44AM +0700, Sangbutsarakum, Patai wrote:

> 	I found this message in /var/adm/messages. Actually my dns zone
> file have not host this domain why this domain appear on my log file.
> 
> Oct  6 05:55:18 dns2 named[22449]: unapproved AXFR from
> [202.44.204.43].5992 for "strs.co.th" (not master/slave
> )

That means someone tried to do a zone transfer using your server.
With dig, the syntax for this would be:

dig @your_server_ip strs.co.th AXFR

If the user's IP isn't a legitimate user of your bind server, it might
be an attempt by the user to find a remote DNS server to perform zone
transfers on his/her behalf.

[posted, and mailed directly.]

- Morty



More information about the bind-users mailing list