Zone (*) | DNSSEC - Informations |
---|
|
|
Zone: (root)
|
|
(root)
| 1 DS RR published
|
|
|
|
|
| • Status: Valid because published
|
|
|
|
|
| 2 DNSKEY RR found
|
|
|
|
|
| Public Key with Algorithm 8, KeyTag 20326, Flags 257 (SEP = Secure Entry Point)
|
|
|
|
|
| Public Key with Algorithm 8, KeyTag 48903, Flags 256
|
|
|
|
|
| 1 RRSIG RR to validate DNSKEY RR found
|
|
|
|
|
| RRSIG-Owner (root), Algorithm: 8, 0 Labels, original TTL: 172800 sec, Signature-expiration: 02.05.2020, 00:00:00 +, Signature-Inception: 11.04.2020, 00:00:00 +, KeyTag 20326, Signer-Name: (root)
|
|
|
|
|
| • Status: Good - Algorithmus 8 and DNSKEY with KeyTag 20326 used to validate the DNSKEY RRSet
|
|
|
|
|
| • Status: Valid Chain of trust. Parent-DS with Algorithm 8, KeyTag 20326, DigestType 2 and Digest "4G1EuAuPHTmpXAsNfGXQhFjogECbvGg0VxBCN8f47I0=" validates local Key with the same values, Key ist Secure Entry Point (SEP) of the zone
|
|
|
Zone: au
|
|
au
| 2 DS RR in the parent zone found
|
|
|
|
|
| 1 RRSIG RR to validate DS RR found
|
|
|
|
|
| RRSIG-Owner au., Algorithm: 8, 1 Labels, original TTL: 86400 sec, Signature-expiration: 01.05.2020, 05:00:00 +, Signature-Inception: 18.04.2020, 04:00:00 +, KeyTag 48903, Signer-Name: (root)
|
|
|
|
|
| • Status: Good - Algorithmus 8 and DNSKEY with KeyTag 48903 used to validate the DS RRSet in the parent zone
|
|
|
|
|
| 2 DNSKEY RR found
|
|
|
|
|
| Public Key with Algorithm 8, KeyTag 1681, Flags 256
|
|
|
|
|
| Public Key with Algorithm 8, KeyTag 18875, Flags 257 (SEP = Secure Entry Point)
|
|
|
|
|
| 2 RRSIG RR to validate DNSKEY RR found
|
|
|
|
|
| RRSIG-Owner au., Algorithm: 8, 1 Labels, original TTL: 86400 sec, Signature-expiration: 16.07.2020, 13:57:05 +, Signature-Inception: 17.04.2020, 13:31:59 +, KeyTag 1681, Signer-Name: au
|
|
|
|
|
| RRSIG-Owner au., Algorithm: 8, 1 Labels, original TTL: 86400 sec, Signature-expiration: 16.07.2020, 13:57:05 +, Signature-Inception: 17.04.2020, 13:31:59 +, KeyTag 18875, Signer-Name: au
|
|
|
|
|
| • Status: Good - Algorithmus 8 and DNSKEY with KeyTag 1681 used to validate the DNSKEY RRSet
|
|
|
|
|
| • Status: Good - Algorithmus 8 and DNSKEY with KeyTag 18875 used to validate the DNSKEY RRSet
|
|
|
|
|
| • Status: Valid Chain of trust. Parent-DS with Algorithm 8, KeyTag 18875, DigestType 1 and Digest "pjYtk4QpR3wPXlHh9Ho1FrOdKBs=" validates local Key with the same values, Key ist Secure Entry Point (SEP) of the zone
|
|
|
|
|
| • Status: Valid Chain of trust. Parent-DS with Algorithm 8, KeyTag 18875, DigestType 2 and Digest "/nc7L3e7am3TG6J+sZ6PZCV5N2Isq5jzkm7nf+or558=" validates local Key with the same values, Key ist Secure Entry Point (SEP) of the zone
|
|
|
Zone: com.au
|
|
com.au
| 2 DS RR in the parent zone found
|
|
|
|
|
| 1 RRSIG RR to validate DS RR found
|
|
|
|
|
| RRSIG-Owner com.au., Algorithm: 8, 2 Labels, original TTL: 86400 sec, Signature-expiration: 16.07.2020, 20:48:46 +, Signature-Inception: 17.04.2020, 19:59:50 +, KeyTag 1681, Signer-Name: au
|
|
|
|
|
| • Status: Good - Algorithmus 8 and DNSKEY with KeyTag 1681 used to validate the DS RRSet in the parent zone
|
|
|
|
|
| 2 DNSKEY RR found
|
|
|
|
|
| Public Key with Algorithm 8, KeyTag 14185, Flags 257 (SEP = Secure Entry Point)
|
|
|
|
|
| Public Key with Algorithm 8, KeyTag 14968, Flags 256
|
|
|
|
|
| 2 RRSIG RR to validate DNSKEY RR found
|
|
|
|
|
| RRSIG-Owner com.au., Algorithm: 8, 2 Labels, original TTL: 86400 sec, Signature-expiration: 08.05.2020, 15:16:21 +, Signature-Inception: 17.04.2020, 14:16:21 +, KeyTag 14185, Signer-Name: com.au
|
|
|
|
|
| RRSIG-Owner com.au., Algorithm: 8, 2 Labels, original TTL: 86400 sec, Signature-expiration: 08.05.2020, 15:16:21 +, Signature-Inception: 17.04.2020, 14:16:21 +, KeyTag 14968, Signer-Name: com.au
|
|
|
|
|
| • Status: Good - Algorithmus 8 and DNSKEY with KeyTag 14185 used to validate the DNSKEY RRSet
|
|
|
|
|
| • Status: Good - Algorithmus 8 and DNSKEY with KeyTag 14968 used to validate the DNSKEY RRSet
|
|
|
|
|
| • Status: Valid Chain of trust. Parent-DS with Algorithm 8, KeyTag 14185, DigestType 1 and Digest "LwMkLkF6mgH36ROfYFtIzDii1FQ=" validates local Key with the same values, Key ist Secure Entry Point (SEP) of the zone
|
|
|
|
|
| • Status: Valid Chain of trust. Parent-DS with Algorithm 8, KeyTag 14185, DigestType 2 and Digest "k5S+oJ9evZE4SqXNA5ems5X9KymceRKXkkPNaJujh9s=" validates local Key with the same values, Key ist Secure Entry Point (SEP) of the zone
|
|
|
Zone: finsa.com.au
|
|
finsa.com.au
| 0 DS RR in the parent zone found
|
|
|
|
|
| DS-Query in the parent zone has a valid NSEC3 RR as result with the hashed query name "lkbkkpqtt5in7q4htk8e87as205rgfhf" between the hashed NSEC3-owner "ljnsbd3ee7vgdamncataurtg5o09k7uh" and the hashed NextOwner "lkemifngl5l1gepnle7a01shin1203tt". So the parent zone confirmes the not-existence of a DS RR.
Bitmap: NS, DS, RRSIG Validated: RRSIG-Owner ljnsbd3ee7vgdamncataurtg5o09k7uh.com.au., Algorithm: 8, 3 Labels, original TTL: 900 sec, Signature-expiration: 08.05.2020, 15:16:21 +, Signature-Inception: 17.04.2020, 14:16:21 +, KeyTag 14968, Signer-Name: com.au
|
|
|
|
|
| 0 DNSKEY RR found
|
|
|
|
|
|
|
|
|
Zone: democlient.finsa.com.au
|
|
democlient.finsa.com.au
| 0 DS RR in the parent zone found
|
|
|
|
|
| 0 DNSKEY RR found
|
|
|
|
|
|
|
|
|
Zone: www.democlient.finsa.com.au
|
|
www.democlient.finsa.com.au
| 0 DS RR in the parent zone found
|