Zone (*) DNSSEC - Informations Zone : (root)(root) 1 DS RR published • Status: Valid because published2 DNSKEY RR found Public Key with Algorithm 8, KeyTag 20326, Flags 257 (SEP = Secure Entry Point)
Public Key with Algorithm 8, KeyTag 48903, Flags 256
1 RRSIG RR to validate DNSKEY RR found RRSIG-Owner (root), Algorithm: 8, 0 Labels, original TTL: 172800 sec, Signature-expiration: 01.06.2020, 00:00:00 +, Signature-Inception: 11.05.2020, 00:00:00 +, KeyTag 20326, Signer-Name: (root)
• Status: Good - Algorithmus 8 and DNSKEY with KeyTag 20326 used to validate the DNSKEY RRSet• Status: Valid Chain of trust. Parent-DS with Algorithm 8, KeyTag 20326, DigestType 2 and Digest "4G1EuAuPHTmpXAsNfGXQhFjogECbvGg0VxBCN8f47I0=" validates local Key with the same values, Key ist Secure Entry Point (SEP) of the zoneZone : onlineonline 2 DS RR in the parent zone found 1 RRSIG RR to validate DS RR found RRSIG-Owner online., Algorithm: 8, 1 Labels, original TTL: 86400 sec, Signature-expiration: 27.05.2020, 05:00:00 +, Signature-Inception: 14.05.2020, 04:00:00 +, KeyTag 48903, Signer-Name: (root)
• Status: Good - Algorithmus 8 and DNSKEY with KeyTag 48903 used to validate the DS RRSet in the parent zone3 DNSKEY RR found Public Key with Algorithm 8, KeyTag 4267, Flags 257 (SEP = Secure Entry Point)
Public Key with Algorithm 8, KeyTag 8463, Flags 256
Public Key with Algorithm 8, KeyTag 31255, Flags 256
1 RRSIG RR to validate DNSKEY RR found RRSIG-Owner online., Algorithm: 8, 1 Labels, original TTL: 3600 sec, Signature-expiration: 04.06.2020, 00:04:57 +, Signature-Inception: 04.05.2020, 10:57:39 +, KeyTag 4267, Signer-Name: online
• Status: Good - Algorithmus 8 and DNSKEY with KeyTag 4267 used to validate the DNSKEY RRSet• Status: Valid Chain of trust. Parent-DS with Algorithm 8, KeyTag 4267, DigestType 1 and Digest "oDjaBqlq2Om/4rp4w5L/eAS0zSs=" validates local Key with the same values, Key ist Secure Entry Point (SEP) of the zone• Status: Valid Chain of trust. Parent-DS with Algorithm 8, KeyTag 4267, DigestType 2 and Digest "ZtcBBgnLGema0dooM92rjKLnrMHOhwzCjSnnbrU9Obo=" validates local Key with the same values, Key ist Secure Entry Point (SEP) of the zoneZone : crystalkcave.onlinecrystalkcave.online 0 DS RR in the parent zone found DS-Query in the parent zone has a valid NSEC3 RR as result with the hashed query name "g1n6al9utv4fd7rfrirqhp30f1qsrfkp" between the hashed NSEC3-owner "g1m7uhdq5l0kvq9jce1v8no6b73uhma8" and the hashed NextOwner "g1nquc5l6ucapik9le1s0qkdclc7fv3p". So the parent zone confirmes the not-existence of a DS RR.Bitmap: NS, DS, RRSIG Validated: RRSIG-Owner g1m7uhdq5l0kvq9jce1v8no6b73uhma8.online., Algorithm: 8, 2 Labels, original TTL: 3600 sec, Signature-expiration: 10.06.2020, 13:59:24 +, Signature-Inception: 11.05.2020, 13:57:19 +, KeyTag 8463, Signer-Name: online
Zone : www.crystalkcave.onlinewww.crystalkcave.online 0 DS RR in the parent zone found