Passive DNS Replication

Passive DNS replication is a technology which constructs zone replicas without cooperation from zone administrators, based on captured name server responses.

Supported resource record types

The following resource record types are supported:

Unless otherwise noted, the record types are defined in RFC 1035 <https://www.rfc-editor.org/rfc/rfc1035.txt>.

Presentation at FIRST 2005

Passive DNS replication and the dnslogger software were presented at FIRST 2005:

For technical reasons, the print version of the slides differs from the version which was actually used in the presentation.

Source code

A C implementation of the sensor is now available. (The second link leads to the public GIT repository containing the source code.)

Sites running passive DNS replication

The following organizations run a passive DNS replication database with a public query front end.

Further Resources

Revisions


Florian Weimer
Home Blog (DE) Blog (EN) RSS Feeds Impressum