<http://www.dnsreport.com/tools/dnsreport.ch?domain=todhunter.com>http://www.dnsreport.com/tools/dnsreport.ch?domain=todhunter.com

It's ns2.todhunter.com

the soa has mname field as ns2.todhunter.com, but that field is manually edited (errors), and not a technical proof that the primary is ns2 and all the others are slaves.


You can't say definitively which NS is the master and which is slave by querying only. There is no DNS query that says "which NS is the master, which is slave?".

One practical indication, but not proof, that all is well with master/slave replication is that if all the NS's have the same zone serial number. This is the case with todhunter.com. I would say NetSol doesn't know what they are talking about.


The only definite way to know if an NS is master for a zone is to look at the zone config on each NS to see if the NS is declared master or slave for the zone.


ns2.todhunter.com has security vulnerability with unrestricted zone transfers:

# dig @ns2.todhunter.com. todhunter.com. axfr

; <<>> DiG 9.2.3 <<>> @ns2.todhunter.com. todhunter.com. axfr
;; global options: printcmd
todhunter.com. 3600 IN SOA ns2.todhunter.com. administrator.todhunter.com. 2004063002 3600 600 1209600 3600
todhunter.com. 3600 IN A 24.73.160.163
todhunter.com. 3600 IN NS ns2.todhunter.com.
todhunter.com. 3600 IN NS ns2.secondary.com.
todhunter.com. 3600 IN NS ns1.secondary.com.
todhunter.com. 3600 IN NS ns28.durocom.com.
todhunter.com. 3600 IN NS ns29.durocom.com.
todhunter.com. 3600 IN MX 10 mail.todhunter.com.
todhunter.com. 3600 IN TXT "v=spf1 ip4:24.73.160.162 a mx ptr -all"
aubserver.todhunter.com. 86400 IN A 192.168.120.241
bevpro.todhunter.com. 3600 IN A 192.168.100.7
bevproa.todhunter.com. 3600 IN A 192.168.100.7
calendars.todhunter.com. 3600 IN A 192.168.100.20
cfbshost.todhunter.com. 3600 IN A 192.168.100.7
devintranet.todhunter.com. 3600 IN A 192.168.100.247
freebusy.todhunter.com. 3600 IN A 192.168.100.247
fw.todhunter.com. 3600 IN A 192.168.100.2
ils.todhunter.com. 3600 IN A 192.168.100.247
intranet.todhunter.com. 3600 IN A 192.168.100.247
laftp.todhunter.com. 3600 IN A 24.73.160.163
mail.todhunter.com. 3600 IN A 24.73.160.163
mail.todhunter.com. 3600 IN TXT "v=spf1 a -all"
mail2.todhunter.com. 3600 IN A 24.73.160.163
mercury.todhunter.com. 3600 IN A 24.73.160.163
ns2.todhunter.com. 3600 IN A 24.73.160.163
pop.todhunter.com. 3600 IN CNAME mercury.todhunter.com.
smtp.todhunter.com. 3600 IN CNAME mercury.todhunter.com.
ts1.todhunter.com. 3600 IN A 192.168.100.242
wally.todhunter.com. 3600 IN A 24.73.160.162
web1.todhunter.com. 3600 IN A 24.73.160.186
www.todhunter.com. 3600 IN A 64.226.170.227
todhunter.com. 3600 IN SOA ns2.todhunter.com. administrator.todhunter.com. 2004063002 3600 600 1209600 3600
;; Query time: 144 msec
;; SERVER: 24.73.160.163#53(ns2.todhunter.com.)
;; WHEN: Fri Sep 10 07:00:45 2004
;; XFR size: 32 records


Another error is that public zone is publishing private IP addresses. There should be a separate zone for the private IP space.

Len


_____________________________________________________________________ http://IMGate.MEIway.com : free anti-spam gateway, runs on 1000's of sites


To Unsubscribe: http://www.ipswitch.com/support/mailing-lists.html List Archive: http://www.mail-archive.com/imail_forum%40list.ipswitch.com/ Knowledge Base/FAQ: http://www.ipswitch.com/support/IMail/

Reply via email to