win10 使用 cmd 下的 nslookup 得在管理员模式下运行。


  • Type = A,则Name是主机名,Value是该主机名对应的IP地址。 例如: (,, A)
  • Type = NS,则Name是域(如,而Value是知道如何获取该域中主机IP地址的权威DNS服务器的主机名,如(,, NS)
  • Type = CNAME, 则Value是别名为Name的主机对应的规范主机名,如(,



  1. nslookup

(1)Run nslookup to obtain the IP address of a Web server in Asia. What is the IP address of that server?

(2)Run nslookup to determine the authoritative DNS servers for a university in Europe.

University of Cambridge


(3)Run nslookup so that one of the DNS servers obtained in Question 2 is queried for the mail servers for Yahoo! mail. What is its IP address?

2. ipconfig
ipconfig \all

ipconfig /displaydns

ipconfig /flushdns

3. Tracing DNS with Wireshark

(4)Locate the DNS query and response messages. Are then sent over UDP or TCP?

(5) What is the destination port for the DNS query message? What is the source port of DNS response message?

destination port for the DNS is 53

(6) To what IP address is the DNS query message sent? Use ipconfig to determine the IP address of your local DNS server. Are these two IP addresses the same?

is the same

(7) Examine the DNS query message. What “Type” of DNS query is it? Does the query message contain any “answers”?

No,it didn’t.

(8)Examine the DNS response message. How many “answers” are provided? What do each of these answers contain?

5 answers.
domain name,type ,class, IP address

(9)Consider the subsequent TCP SYN packet sent by your host. Does the destination IP address of the SYN packet correspond to any of the IP addresses provided in the DNS response message?

the first

(10) This web page contains images. Before retrieving each image, does your host issue new DNS queries?

no,it didn’t.

Now let’s play with nslookup.

(11)What is the destination port for the DNS query message? What is the source port of DNS response message?

They are 53.

(12) To what IP address is the DNS query message sent? Is this the IP address of your default local DNS server?

The DNS query message sent to
Yes,it is.

(13) Examine the DNS query message. What “Type” of DNS query is it? Does the query message contain any “answers”?

A(ipv4) and AAA(ipv6).
No it didn’t.

(14) Examine the DNS response message. How many “answers” are provided? What do each of these answers contain?

2 answers.

(15) Provide a screenshot.

Now repeat the previous experiment, but instead issue the command:
nslookup –type=NS

Answer the following questions :

(16)To what IP address is the DNS query message sent? Is this the IP address of your default local DNS server?

The DNS query message sent to
Yes,it is.

(17) Examine the DNS query message. What “Type” of DNS query is it? Does the query message contain any “answers”?

No,it didn’t.

(18) Examine the DNS response message. What MIT nameservers does the response message provide? Does this response message also provide the IP addresses of the MIT namesers?

name,class, 权威域服务器的名字,权威域服务器的IPv4地址和部分IPv6的地址

(19)Provide a screenshot.

Now repeat the previous experiment, but instead issue the command:

(20)To what IP address is the DNS query message sent? Is this the IP address of your default local DNS server? If not, what does the IP address correspond to?

First ,it was sent to default local DNS to get the internet address of
And them it was sent to

(21)Examine the DNS query message. What “Type” of DNS query is it? Does the query message contain any “answers”?
A and AAA did’t.

(22)Examine the DNS response message. How many “answers” are provided? What does each of these answers contain?

2 answer provide.

【SOA 资源记录表明此 DNS 名称服务器是为该 DNS 域中的数据的信息的最佳来源。

SOA 记录与 NS 记录的区别:简单讲,NS记录表示域名服务器记录,用来指定该域名由哪个DNS服务器来进行解析;SOA记录设置一些数据版本和更新以及过期时间的信息。


(23) Provide a screenshot


