Zone (*) DNSSEC - Informations Zone : (root)(root) 1 DS RR published • Status: Valid because published3 DNSKEY RR found Public Key with Algorithm 8, KeyTag 20326, Flags 257 (SEP = Secure Entry Point)
Public Key with Algorithm 8, KeyTag 33853, Flags 256
Public Key with Algorithm 8, KeyTag 48903, Flags 256
1 RRSIG RR to validate DNSKEY RR found RRSIG-Owner (root), Algorithm: 8, 0 Labels, original TTL: 172800 sec, Signature-expiration: 11.04.2020, 00:00:00 +, Signature-Inception: 21.03.2020, 00:00:00 +, KeyTag 20326, Signer-Name: (root)
• Status: Good - Algorithmus 8 and DNSKEY with KeyTag 20326 used to validate the DNSKEY RRSet• Status: Valid Chain of trust. Parent-DS with Algorithm 8, KeyTag 20326, DigestType 2 and Digest "4G1EuAuPHTmpXAsNfGXQhFjogECbvGg0VxBCN8f47I0=" validates local Key with the same values, Key ist Secure Entry Point (SEP) of the zoneZone : comcom 1 DS RR in the parent zone found 1 RRSIG RR to validate DS RR found RRSIG-Owner com., Algorithm: 8, 1 Labels, original TTL: 86400 sec, Signature-expiration: 07.04.2020, 21:00:00 +, Signature-Inception: 25.03.2020, 20:00:00 +, KeyTag 33853, Signer-Name: (root)
• Status: Good - Algorithmus 8 and DNSKEY with KeyTag 33853 used to validate the DS RRSet in the parent zone2 DNSKEY RR found Public Key with Algorithm 8, KeyTag 30909, Flags 257 (SEP = Secure Entry Point)
Public Key with Algorithm 8, KeyTag 56311, Flags 256
1 RRSIG RR to validate DNSKEY RR found RRSIG-Owner com., Algorithm: 8, 1 Labels, original TTL: 86400 sec, Signature-expiration: 31.03.2020, 18:24:21 +, Signature-Inception: 16.03.2020, 18:19:21 +, KeyTag 30909, Signer-Name: com
RRSIG-Owner com., Algorithm: 8, 1 Labels, original TTL: 86400 sec, Signature-expiration: 31.03.2020, 18:24:21 +, Signature-Inception: 16.03.2020, 18:19:21 +, KeyTag 30909, Signer-Name: com
• Status: Good - Algorithmus 8 and DNSKEY with KeyTag 30909 used to validate the DNSKEY RRSet• Status: Good - Algorithmus 8 and DNSKEY with KeyTag 30909 used to validate the DNSKEY RRSet• Status: Valid Chain of trust. Parent-DS with Algorithm 8, KeyTag 30909, DigestType 2 and Digest "4tPJFvbe6scylOgmj7WIUESoM/xUWViPSpGEz8QaV2Y=" validates local Key with the same values, Key ist Secure Entry Point (SEP) of the zoneZone : adamgurysh.comadamgurysh.com 0 DS RR in the parent zone found DS-Query in the parent zone has a valid NSEC3 RR as result with the hashed query name "2q3bjpoq4l2lnv9ins106rd75jb4qve9" between the hashed NSEC3-owner "2q39t3d5qcp9v07pjo6vvaaks6hemtlb" and the hashed NextOwner "2q3bmkng6gdbq4ssf8ec0321jfum7ngk". So the parent zone confirmes the not-existence of a DS RR.Bitmap: NS, DS, RRSIG Validated: RRSIG-Owner 2q39t3d5qcp9v07pjo6vvaaks6hemtlb.com., Algorithm: 8, 2 Labels, original TTL: 86400 sec, Signature-expiration: 01.04.2020, 05:38:43 +, Signature-Inception: 25.03.2020, 04:28:43 +, KeyTag 56311, Signer-Name: com
0 DNSKEY RR found Zone : www.adamgurysh.comwww.adamgurysh.com 0 DS RR in the parent zone found