How to restrict zone transfers to specific authorized servers only
- by JonoB
I recently failed a PCI compliance scan because of the following:
This DNS server allows unrestricted zone transfers. Attackers may be
able to use this information to gain knowledge on the structure of
your networks to aid in device discovery prior to an actual attack.
And the suggested solution is as follows:
Reconfigure this DNS…