exam questions

Exam PT0-002 All Questions

View all questions & answers for the PT0-002 exam

Exam PT0-002 topic 1 question 257 discussion

Actual exam question from CompTIA's PT0-002
Question #: 257
Topic #: 1
[All PT0-002 Questions]

A penetration tester runs the following command:

dig @ dns01.comptia.local axfr comptia.local

If successful, which of the following types of information would be provided?

  • A. The DNSSEC certificate and CA
  • B. The DHCP scopes and ranges used on the network
  • C. The hostnames and IP addresses of internal systems
  • D. The OS and version of the DNS server
Show Suggested Answer Hide Answer
Suggested Answer: C 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Etc_Shadow28000
10 months, 1 week ago
Selected Answer: C
C. The hostnames and IP addresses of internal systems Explanation: • A. The DNSSEC certificate and CA: This information is related to DNS security extensions and certificate authorities, and would not be provided by a standard AXFR (zone transfer) command. • B. The DHCP scopes and ranges used on the network: DHCP scopes and ranges are managed by DHCP servers and are not part of the DNS zone data. They would not be included in a DNS zone transfer. • C. The hostnames and IP addresses of internal systems: A DNS zone transfer (AXFR) command requests a copy of the entire zone file from a DNS server. If successful, it provides detailed information about the DNS records in the zone, including hostnames, IP addresses, mail servers, and other resource records. • D. The OS and version of the DNS server: This information pertains to the server’s operating system and software version, which is not typically revealed through a DNS zone transfer.
upvoted 1 times
...
041ba31
1 year, 2 months ago
Selected Answer: C
The command performs a DNS zone transfer, which, if successful, reveals detailed information about the DNS records within the domain. This includes hostnames and IP addresses, aiding in mapping the network.
upvoted 1 times
...
LiveLaughToasterBath
1 year, 3 months ago
Selected Answer: C
Per cisa.gov: If improperly configured, the DNS server may respond with information about the requested zone, revealing internal network structure and potentially sensitive information.
upvoted 1 times
...
[Removed]
1 year, 5 months ago
Selected Answer: C
NOT A Not likely since a DNS zone transfer (axfr) usually provides info about DNS records ( hostnames and IP addresses), but not specifically about DNSSEC certificates and Certificate Authorities (CA). NOT B axfr command is related to DNS and doesn't give info about DHCP scopes and ranges. Option is not relevant to a DNS zone transfer. CORRECT ANSWER IS C) The hostnames and IP addresses of internal systems axfr command is designed to perform a zone transfer, and if successful, would give hostnames and IP addresses of systems within the DNS zone. NOT D focused on DNS records rather than providing info about the DNS server itself.
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago