What is nslookup and How to use nslookup commands?

nslookup is the name of a program that lets an Internet server administrator or any computer user enter a host name (for example, “TheTechwin.com”) and find out the corresponding IP address or domain name system (DNS) record. The user can also enter a command for it to do a reverse DNS lookup and find the host name for an IP address that is specified.

Uses of nslookup

nslookup is used to troubleshoot server connections or for security reasons. Such reasons include guard against phishing attacks, in which a domain name is altered — for example, by substituting the numeral 1 for a lowercase l — to make an unfriendly site look friendly and familiar (joes1owerprices.com vs. joeslowerprices.com).

DNS, or nslookup, also helps deter cache poisoning, in which data is distributed to caching resolvers, posing as an authoritative origin server.

Examples of nslookup commands

If “WhatIs.com” is entered into a nslookup program, the user would receive the site’s IP address as a response, which happens to be 65.214.43.37. If the user enters “65.214.43.37”, it would return “sites.techtarget.com”.

Popular nslookup commands include:

  • /name: queries the current name server for the specified name
  • /server name: sets the current name server to the server the user specifies
  • /root: sets the root server as the current server
  • /set type=x: specifies the type of records to be displayed, such as A, CNAME, MX, NS, PTR or SOA. Specify ANY to display all records.
  • /set debug: turns on debug mode, which displays detailed information about each query
  • /set recurse: tells the DNS name server to query other servers if it does not have the information
  • /exit: exits nslookup and returns the user to a command prompt

Nslookup has two modes: interactive and noninteractive. To look up only a single piece of data, use noninteractive mode. To look up more than one piece of data, use interactive mode.

nslookup sends a domain name query packet to a designated (or defaulted) domain name system  server. Depending on the system being used, the default may be the local DNS server at the service provider, some intermediate name server or the root server system for the entire domain name system hierarchy.

Advertisements

Leave a Reply

Please log in using one of these methods to post your comment:

WordPress.com Logo

You are commenting using your WordPress.com account. Log Out /  Change )

Google photo

You are commenting using your Google account. Log Out /  Change )

Twitter picture

You are commenting using your Twitter account. Log Out /  Change )

Facebook photo

You are commenting using your Facebook account. Log Out /  Change )

Connecting to %s

This site uses Akismet to reduce spam. Learn how your comment data is processed.

Create a website or blog at WordPress.com

Up ↑

Create your website at WordPress.com
Get started
%d bloggers like this: