Share via


DNS Client Request Logging

Question

Monday, January 31, 2011 3:06 PM

How and Where do you find logs on DNS Client Requests?  I would like to know which computer is peforming a DNS Request? 

 

Exp.

 

Comp 1 request DNS information for Malware.Com

 

How do i capture this information?

 

Thanks,
bobby

 

 

All replies (2)

Monday, January 31, 2011 3:22 PM ✅Answered

You can enable DNS debug Logging directly on the DNS server.  in 2003/2008 its straight forward.  As with any logging, it may bog down your DNS server, so run with caution, and disable when finished.

http://www.computerperformance.co.uk/w2k3/services/DNS_debug_logging.htm

http://technet.microsoft.com/en-us/library/cc776361(WS.10).aspx


Monday, January 31, 2011 5:24 PM ✅Answered

Install WireShark http://www.wireshark.org/  it is very simple to see any type of request going back and forward in your network by using it

 

ocd

 

 

 

ocd Oz Casey, Dedeal MCITP(EMA),MCITP(EA),MCITP (SA) MCSE 2003 M+ S+,MCDST,Security+,Project+,Server+ Microsoft MVP - Exchange Server http://smtp25.blogspot.com (Blog) http://telnet25.wordpress.com (Blog) This posting is provided AS-IS with no warranties or guarantees and confers no rights.