To minimize the risk of Kaminsky attacks, it is important that your name servers don’t answer recursive queries from just anyone. The risk of a Kaminsky attack also increases when you mix the authoritative function for a domain with the function of acting as a recursive resolver. This tool both indicates if your name servers act as recursive resolvers and test the vulnerability of these when it comes to the Kaminsky bug.
This tool was created by IANA and uses functions developed by DNS-OARC.
At http://dnscheck.iis.se/, you can do a more fundamental check-up on the DNS quality of different domains and find out more about DNS configuration in general.