2021-07-22 08:41:50 +00:00
id : dnssec-detection
info :
name : DNSSEC Detection
author : pdteam
severity : info
2022-04-22 10:38:41 +00:00
description : Domain Name System Security Extensions (DNSSEC) are enabled. The Delegation of Signing (DS) record provides information about a signed zone file when DNSSEC enabled.
2022-03-14 13:44:54 +00:00
reference :
- https://www.icann.org/resources/pages/dnssec-what-is-it-why-important-2019-03-05-en
- https://www.cyberciti.biz/faq/unix-linux-test-and-validate-dnssec-using-dig-command-line/
classification :
cwe-id : CWE-200
2023-04-28 08:11:21 +00:00
metadata :
max-request : 1
2023-10-14 11:27:55 +00:00
tags : dns,dnssec
2021-07-22 08:41:50 +00:00
dns :
- name : "{{FQDN}}"
type : DS
2022-12-16 13:31:50 +00:00
matchers :
2021-07-22 08:41:50 +00:00
- type : regex
2023-09-29 15:10:50 +00:00
part : answer
2021-07-22 08:41:50 +00:00
regex :
2023-10-14 11:27:55 +00:00
- "IN\tDS\\t(.+)$"
2023-10-20 11:41:13 +00:00
# digest: 4b0a00483046022100dd7c45e1b16ab7caba75d6b28a27e3678896daad8cc2413e3f9120efa8be540202210095b8145af0ff47b2c140dc6f9f643f058bb31768759be99af4098f2cbd0d1997:922c64590222798bb761d5b6d8e72950