I find it rather surprising that att.net allows unrestricted zone transfers. 
Tsk.

Regards,

Michael B. Smith
Consultant and Exchange MVP
http://TheEssentialExchange.com

From: Ben Scott [mailto:[email protected]]
Sent: Monday, October 11, 2010 4:16 PM
To: NT System Admin Issues
Subject: Re: Entire SPF record publically seen?

On Mon, Oct 11, 2010 at 3:17 PM, Maglinger, Paul 
<[email protected]<mailto:[email protected]>> wrote:
 Additionally, just how much of your DNS records are publically available?

All of them.

$ dig AXFR scvl.com<http://scvl.com>. 
@cbru.br.ns.els-gms.att.net<http://cbru.br.ns.els-gms.att.net>.

; <<>> DiG 9.3.6-P1-RedHat-9.3.6-4.P1.el5_4.2 <<>> AXFR 
scvl.com<http://scvl.com>. 
@cbru.br.ns.els-gms.att.net<http://cbru.br.ns.els-gms.att.net>.
;; global options:  printcmd
scvl.com<http://scvl.com>.               86400   IN      SOA     
xbru.br.ns.els-gms.att.net<http://xbru.br.ns.els-gms.att.net>. 
rm-hostmaster.ems.att.com<http://rm-hostmaster.ems.att.com>. 30 86400 7200 
604800 86400
scvl.com<http://scvl.com>.               86400   IN      MX      0 
mailevv1.scvl.com<http://mailevv1.scvl.com>.
scvl.com<http://scvl.com>.               86400   IN      MX      20 
mailevv.scvl.com<http://mailevv.scvl.com>.
scvl.com<http://scvl.com>.               86400   IN      TXT     "v=spf1 
ip4:12.156.139.128/26<http://12.156.139.128/26> mx 
a:telstar.scvl.com<http://telstar.scvl.com> 
a:carniva5.scvl.com<http://carniva5.scvl.com> 
a:hector.scvl.com<http://hector.scvl.com> 
mx:shoecarnival.com<http://shoecarnival.com> ~all"
scvl.com<http://scvl.com>.               86400   IN      NS      
cbru.br.ns.els-gms.att.net<http://cbru.br.ns.els-gms.att.net>.
scvl.com<http://scvl.com>.               86400   IN      NS      
cmtu.mt.ns.els-gms.att.net<http://cmtu.mt.ns.els-gms.att.net>.
carniva5.corp.scvl.com<http://carniva5.corp.scvl.com>. 86400   IN      CNAME   
scvldmz1.
gateway.scvl.com<http://gateway.scvl.com>.       86400   IN      A       
12.156.139.135
mailevv.scvl.com<http://mailevv.scvl.com>.       86400   IN      A       
12.156.139.187
mailevv1.scvl.com<http://mailevv1.scvl.com>.      86400   IN      A       
12.156.139.186
price.scvl.com<http://price.scvl.com>.         86400   IN      CNAME   
bigip-price-scvl.oracle.com<http://bigip-price-scvl.oracle.com>.
pricetest.scvl.com<http://pricetest.scvl.com>.     86400   IN      CNAME   
bigip-pricetest-scvl.oracle.com<http://bigip-pricetest-scvl.oracle.com>.
*.store.scvl.com<http://store.scvl.com>.       86400   IN      MX      0 
mailevv1.scvl.com<http://mailevv1.scvl.com>.
*.store.scvl.com<http://store.scvl.com>.       86400   IN      MX      20 
mailevv.scvl.com<http://mailevv.scvl.com>.
telstar.scvl.com<http://telstar.scvl.com>.       86400   IN      A       
12.156.139.141
www.scvl.com<http://www.scvl.com>.           86400   IN      A       
12.156.139.136
scvl.com<http://scvl.com>.               86400   IN      SOA     
xbru.br.ns.els-gms.att.net<http://xbru.br.ns.els-gms.att.net>. 
rm-hostmaster.ems.att.com<http://rm-hostmaster.ems.att.com>. 30 86400 7200 
604800 86400
;; Query time: 51 msec
;; SERVER: 199.191.128.105#53(199.191.128.105)
;; WHEN: Mon Oct 11 16:14:50 2010
;; XFR size: 17 records (messages 1)

$

-- Ben

~ Finally, powerful endpoint security that ISN'T a resource hog! ~
~ <http://www.sunbeltsoftware.com/Business/VIPRE-Enterprise/>  ~

---
To manage subscriptions click here: 
http://lyris.sunbelt-software.com/read/my_forums/
or send an email to 
[email protected]<mailto:[email protected]>
with the body: unsubscribe ntsysadmin

~ Finally, powerful endpoint security that ISN'T a resource hog! ~
~ <http://www.sunbeltsoftware.com/Business/VIPRE-Enterprise/>  ~

---
To manage subscriptions click here: 
http://lyris.sunbelt-software.com/read/my_forums/
or send an email to [email protected]
with the body: unsubscribe ntsysadmin

Reply via email to