Origin of zone and owner name of SOA do not match.


Description

Origin of zone and owner name of SOA do not match.

Query · wazuh

regex="loading from master file \S+ failed: not at top of zone$"

Fires when

Wazuh evaluates a chain top-down. Every rule above this one must match on the same event before this rule is tested at all.

  1. decoded_as=named
  2. 12127 Origin of zone and owner name of SOA do not match. suppression level 1 this rule
    regex="loading from master file \S+ failed: not at top of zone$"

Rule dependencies

Depends on

Raw source Origin of zone and owner name of SOA do not match. · Wazuh XML
Esc
Published by Wazuh Core Ruleset ↗, licensed under GPLv2 ↗. Reproduced here unmodified.
<rule id="12127" level="1">
    <if_sid>12100</if_sid>
    <regex>loading from master file \S+ failed: not at top of zone$</regex>
    <description>Origin of zone and owner name of SOA do not match.</description>
  </rule>

Detection rules belong to the projects that publish them and remain under their own licenses. This site indexes and links to them; it claims no rights in them.