Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

I read your post in http://blog.netspi.com/exploiting-adidns/#comment-218988, and I have a little question #8

Open
qwgrsftewg opened this issue Sep 13, 2020 · 6 comments

Comments

@qwgrsftewg
Copy link

in the post, you said we can find DomainDNSZones in LDAP:
image
but in fact, here in my domain environment, I can't find that after searching every corner, and this is really wired, so I open this issue to ask you why is that, thanks
image

@Kevin-Robertson
Copy link
Owner

Get-ADIDNSZone from Powermad should find it. It's probably in DC=DomainDnsZones,DC=matric,DC=loc. You'll need to connect directly to that distinguished name to see it.

@qwgrsftewg
Copy link
Author

qwgrsftewg commented Sep 15, 2020

Get-ADIDNSZone from Powermad should find it. It's probably in DC=DomainDnsZones,DC=matric,DC=loc. You'll need to connect directly to that distinguished name to see it.

still nothing, I just don't have this container, but still thanks the reply.

@Kevin-Robertson
Copy link
Owner

Kevin-Robertson commented Sep 15, 2020

No results from Get-ADIDNSZone? If you have access to the DNS manager you can go into security/advanced for the zone and you should see the distinguished name listed in the "Inherited from" column.

@Kevin-Robertson
Copy link
Owner

Here is a good video that covers zone storage and partitions:
https://www.youtube.com/watch?v=iKEbXBbG_VQ

@qwgrsftewg
Copy link
Author

qwgrsftewg commented Sep 15, 2020

Here is a good video that covers zone storage and partitions:
https://www.youtube.com/watch?v=iKEbXBbG_VQ

It works, thanks a lot
image

but i'm still confusing about why can't I see it when I connect to dc=matrix,dc=loc

@qwgrsftewg
Copy link
Author

Here is a good video that covers zone storage and partitions:
https://www.youtube.com/watch?v=iKEbXBbG_VQ

It works, thanks a lot
image

but i'm still confusing about why can't I see it when I connect to dc=matrix,dc=loc

and here I didn't see that distinguished name
image

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants