Domain Controller Zone Transfer
However if you do not protect your servers malicious parties may use axfr to get information about all your hosts.
Domain controller zone transfer. When the server has rebooted or dns service has restarted. The zone replication scope is set to the following value. While dns zone transfers are perfectly fine between dns servers intended to share zones information they could leak a lot of information that would otherwise not be available to an attacker.
Dns zone transfers using the axfr protocol are the simplest mechanism to replicate dns records across dns servers. To avoid the need to edit information on multiple dns servers you can edit information on one server and use axfr to copy information to other servers. A zone transfer is where the master dns servers transfer zone data from the master to secondary.
To all domain controllers in the domain for windows 2000 compatibility. Therefore any domain controller in the domain running the dns server service can write updates to the active directory integrated dns zones for the domain name for which they are authoritative. When the refresh interval expires.
A manual transfer has occured from the dns console. Dns zone transfers are one of the many methods available to administrators to replicate dns databases across a group of dns servers. Domain name system dns servers running on domain controllers can store their zones in active directory domain services ad ds.
In this way it is not necessary to configure a separate dns replication topology that uses ordinary dns zone transfers because all zone data is replicated automatically by means of active directory replication. A separate dns zone transfer topology is not needed. Zone transfers can occur during any of the following.