| Zone (*) | DNSSEC - Informations |
|---|
|
|
Zone: (root)
|
|
(root)
| 1 DS RR published
|
|
|
|
|
| DS with Algorithm 8, KeyTag 20326, DigestType 2 and Digest 4G1EuAuPHTmpXAsNfGXQhFjogECbvGg0VxBCN8f47I0=
|
|
|
|
|
| • Status: Valid because published
|
|
|
|
|
| 4 DNSKEY RR found
|
|
|
|
|
| Public Key with Algorithm 8, KeyTag 20326, Flags 257 (SEP = Secure Entry Point)
|
|
|
|
|
| Public Key with Algorithm 8, KeyTag 38696, Flags 257 (SEP = Secure Entry Point)
|
|
|
|
|
| Public Key with Algorithm 8, KeyTag 46441, Flags 256
|
|
|
|
|
| Public Key with Algorithm 8, KeyTag 53148, Flags 256
|
|
|
|
|
| 1 RRSIG RR to validate DNSKEY RR found
|
|
|
|
|
| RRSIG-Owner (root), Algorithm: 8, 0 Labels, original TTL: 172800 sec, Signature-expiration: 20.09.2025, 00:00:00 +, Signature-Inception: 30.08.2025, 00:00:00 +, KeyTag 20326, Signer-Name: (root)
|
|
|
|
|
| • Status: Good - Algorithmus 8 and DNSKEY with KeyTag 20326 used to validate the DNSKEY RRSet
|
|
|
|
|
| • Status: Valid Chain of trust. Parent-DS with Algorithm 8, KeyTag 20326, DigestType 2 and Digest "4G1EuAuPHTmpXAsNfGXQhFjogECbvGg0VxBCN8f47I0=" validates local Key with the same values, Key ist Secure Entry Point (SEP) of the zone
|
|
|
Zone: zone
|
|
zone
| 1 DS RR in the parent zone found
|
|
|
|
|
| DS with Algorithm 8, KeyTag 12136, DigestType 2 and Digest RIU+ByqgxZA1G4IrmiP/lWMUEqNYMigWOplVmO92S68=
|
|
|
|
|
| 2 RRSIG RR to validate DS RR found
|
|
|
|
|
| RRSIG-Owner zone., Algorithm: 8, 1 Labels, original TTL: 86400 sec, Signature-expiration: 16.09.2025, 05:00:00 +, Signature-Inception: 03.09.2025, 04:00:00 +, KeyTag 46441, Signer-Name: (root)
|
|
|
|
|
| • Status: Good - Algorithmus 8 and DNSKEY with KeyTag 46441 used to validate the DS RRSet in the parent zone
|
|
|
|
|
| 3 DNSKEY RR found
|
|
|
|
|
| Public Key with Algorithm 8, KeyTag 11901, Flags 256
|
|
|
|
|
| Public Key with Algorithm 8, KeyTag 12136, Flags 257 (SEP = Secure Entry Point)
|
|
|
|
|
| Public Key with Algorithm 8, KeyTag 40608, Flags 256
|
|
|
|
|
| 1 RRSIG RR to validate DNSKEY RR found
|
|
|
|
|
| RRSIG-Owner zone., Algorithm: 8, 1 Labels, original TTL: 3600 sec, Signature-expiration: 22.09.2025, 15:36:23 +, Signature-Inception: 01.09.2025, 14:36:23 +, KeyTag 12136, Signer-Name: zone
|
|
|
|
|
| • Status: Good - Algorithmus 8 and DNSKEY with KeyTag 12136 used to validate the DNSKEY RRSet
|
|
|
|
|
| • Status: Valid Chain of trust. Parent-DS with Algorithm 8, KeyTag 12136, DigestType 2 and Digest "RIU+ByqgxZA1G4IrmiP/lWMUEqNYMigWOplVmO92S68=" validates local Key with the same values, Key ist Secure Entry Point (SEP) of the zone
|
|
|
Zone: froth.zone
|
|
froth.zone
| 1 DS RR in the parent zone found
|
|
|
|
|
| DS with Algorithm 13, KeyTag 59105, DigestType 2 and Digest srfSCjuZfcxHHvgDKOpiYyOOX9U/pchqkNfPTmXbtNY=
|
|
|
|
|
| 2 RRSIG RR to validate DS RR found
|
|
|
|
|
| RRSIG-Owner froth.zone., Algorithm: 8, 2 Labels, original TTL: 3600 sec, Signature-expiration: 22.09.2025, 15:36:23 +, Signature-Inception: 01.09.2025, 14:36:23 +, KeyTag 11901, Signer-Name: zone
|
|
|
|
|
| • Status: Good - Algorithmus 8 and DNSKEY with KeyTag 11901 used to validate the DS RRSet in the parent zone
|
|
|
|
|
| 2 DNSKEY RR found
|
|
|
|
|
| Public Key with Algorithm 13, KeyTag 59105, Flags 257 (SEP = Secure Entry Point)
|
|
|
|
|
| Public Key with Algorithm 13, KeyTag 59615, Flags 257 (SEP = Secure Entry Point)
|
|
|
|
|
| 2 RRSIG RR to validate DNSKEY RR found
|
|
|
|
|
| RRSIG-Owner froth.zone., Algorithm: 13, 2 Labels, original TTL: 3600 sec, Signature-expiration: 11.09.2025, 18:08:49 +, Signature-Inception: 28.08.2025, 06:22:41 +, KeyTag 59105, Signer-Name: froth.zone
|
|
|
|
|
| RRSIG-Owner froth.zone., Algorithm: 13, 2 Labels, original TTL: 3600 sec, Signature-expiration: 11.09.2025, 18:08:49 +, Signature-Inception: 28.08.2025, 06:22:41 +, KeyTag 59615, Signer-Name: froth.zone
|
|
|
|
|
| • Status: Good - Algorithmus 13 and DNSKEY with KeyTag 59105 used to validate the DNSKEY RRSet
|
|
|
|
|
| • Status: Good - Algorithmus 13 and DNSKEY with KeyTag 59615 used to validate the DNSKEY RRSet
|
|
|
|
|
| • Status: Valid Chain of trust. Parent-DS with Algorithm 13, KeyTag 59105, DigestType 2 and Digest "srfSCjuZfcxHHvgDKOpiYyOOX9U/pchqkNfPTmXbtNY=" validates local Key with the same values, Key ist Secure Entry Point (SEP) of the zone
|
|
|
|
|
| RRSIG Type 1 validates the A - Result: 95.216.99.249
Validated: RRSIG-Owner froth.zone., Algorithm: 13, 2 Labels, original TTL: 1800 sec, Signature-expiration: 08.09.2025, 18:27:17 +, Signature-Inception: 25.08.2025, 08:22:41 +, KeyTag 59615, Signer-Name: froth.zone
|
|
|
|
|
| RRSIG Type 16 validates the TXT - Result: v=spf1 mx a:mail.froth.zone -all
google-site-verification=3ykMfvqt_9Sa5e2IUewTNT6sbLc63JqDeprZEBSJlbA
Validated: RRSIG-Owner froth.zone., Algorithm: 13, 2 Labels, original TTL: 1800 sec, Signature-expiration: 08.09.2025, 12:32:44 +, Signature-Inception: 25.08.2025, 22:22:41 +, KeyTag 59615, Signer-Name: froth.zone
|
|
|
|
|
| RRSIG Type 28 validates the AAAA - Result: 2A01:04F9:002B:1305:0000:0000:0000:0002
Validated: RRSIG-Owner froth.zone., Algorithm: 13, 2 Labels, original TTL: 1800 sec, Signature-expiration: 10.09.2025, 09:50:26 +, Signature-Inception: 27.08.2025, 00:22:41 +, KeyTag 59615, Signer-Name: froth.zone
|
|
|
|
|
| RRSIG Type 257 validates the CAA - Result: 5|issueletsencrypt.org
5|issuesectigo.com
Validated: RRSIG-Owner froth.zone., Algorithm: 13, 2 Labels, original TTL: 1800 sec, Signature-expiration: 10.09.2025, 18:31:37 +, Signature-Inception: 27.08.2025, 22:22:41 +, KeyTag 59615, Signer-Name: froth.zone
|
|
|
|
|
| CNAME-Query sends a valid NSEC3 RR as result with the hashed query name "acqkn793l4h0bbbt4eth9sj0oe5frjee" equal the hashed NSEC3-owner "acqkn793l4h0bbbt4eth9sj0oe5frjee" and the hashed NextOwner "amhe1d2kj1ksa5qt1jqhr93fa7a2dac1". So the zone confirmes the not-existence of that CNAME RR, but the existence of that query name (minimal one RR with that name exists).
Bitmap: A, NS, SOA, MX, TXT, AAAA, RRSIG, DNSKEY, NSEC3PARAM, CAA Validated: RRSIG-Owner acqkn793l4h0bbbt4eth9sj0oe5frjee.froth.zone., Algorithm: 13, 3 Labels, original TTL: 3600 sec, Signature-expiration: 09.09.2025, 00:11:07 +, Signature-Inception: 26.08.2025, 10:22:41 +, KeyTag 59615, Signer-Name: froth.zone
|
|
|
|
|
| Status: Good. NoData-Proof required and found.
|
|
|
|
|
| TLSA-Query (_443._tcp.froth.zone) sends a valid NSEC3 RR as result with the hashed owner name "fbvoc4dm75sm734tqh9p8gmba9btnluo" (unhashed: _tcp.froth.zone). So that's the Closest Encloser of the query name.
Bitmap: No Bitmap? Validated: RRSIG-Owner fbvoc4dm75sm734tqh9p8gmba9btnluo.froth.zone., Algorithm: 13, 3 Labels, original TTL: 3600 sec, Signature-expiration: 09.09.2025, 15:23:01 +, Signature-Inception: 27.08.2025, 02:22:41 +, KeyTag 59615, Signer-Name: froth.zone
|
|
|
|
|
| Status: Good. NXDomain-Proof required and found.
|
|
|
|
|
| TLSA-Query sends a valid NSEC3 RR as result and covers the hashed Wildcard expansion of the ClosestEncloser "jbbsondv8c7mpifre8rieb3614cn3svt" (unhashed: *._tcp.froth.zone) with the owner "gt2sjqa5ofl4u5qa9av2dn5aik732u14" and the NextOwner "jiili93gfmfb65umuip1t3lgg75o0ldi". So that NSEC3 confirms the not-existence of the Wildcard expansion.
Bitmap: A, TXT, AAAA, RRSIG Validated: RRSIG-Owner gt2sjqa5ofl4u5qa9av2dn5aik732u14.froth.zone., Algorithm: 13, 3 Labels, original TTL: 3600 sec, Signature-expiration: 10.09.2025, 02:52:35 +, Signature-Inception: 27.08.2025, 00:22:41 +, KeyTag 59615, Signer-Name: froth.zone
|
|
|
|
|
| Status: Good. NXDomain-Proof required and found.
|
|
|
|
|
| TLSA-Query (_443._tcp.froth.zone) sends a valid NSEC3 RR as result with the hashed query name "nurfidv6gknqpmelakgt1jhjdtff7447" between the hashed NSEC3-owner "mpbut4a1c06nkpd07dgqm1jbqbf58b8r" and the hashed NextOwner "o9mmrd49smhgv7cejhlqgk046l2kfpob". So the zone confirmes the not-existence of that TLSA RR.
Bitmap: CNAME, RRSIG Validated: RRSIG-Owner mpbut4a1c06nkpd07dgqm1jbqbf58b8r.froth.zone., Algorithm: 13, 3 Labels, original TTL: 3600 sec, Signature-expiration: 10.09.2025, 13:00:18 +, Signature-Inception: 27.08.2025, 14:22:41 +, KeyTag 59615, Signer-Name: froth.zone
|
|
|
|
|
| Status: Good. NXDomain-Proof required and found.
|
|
|
Zone: www.froth.zone
|
|
www.froth.zone
| 0 DS RR in the parent zone found
|
|
|
|
|
| RRSIG Type 5 validates the CNAME - Result: kaguya.froth.zone
Validated: RRSIG-Owner www.froth.zone., Algorithm: 13, 3 Labels, original TTL: 1800 sec, Signature-expiration: 09.09.2025, 06:47:41 +, Signature-Inception: 25.08.2025, 20:22:41 +, KeyTag 59615, Signer-Name: froth.zone
|
|
|
Zone: (root)
|
|
(root)
| 1 DS RR published
|
|
|
|
|
| DS with Algorithm 8, KeyTag 20326, DigestType 2 and Digest 4G1EuAuPHTmpXAsNfGXQhFjogECbvGg0VxBCN8f47I0=
|
|
|
|
|
| • Status: Valid because published
|
|
|
|
|
| 4 DNSKEY RR found
|
|
|
|
|
| Public Key with Algorithm 8, KeyTag 20326, Flags 257 (SEP = Secure Entry Point)
|
|
|
|
|
| Public Key with Algorithm 8, KeyTag 38696, Flags 257 (SEP = Secure Entry Point)
|
|
|
|
|
| Public Key with Algorithm 8, KeyTag 46441, Flags 256
|
|
|
|
|
| Public Key with Algorithm 8, KeyTag 53148, Flags 256
|
|
|
|
|
| 1 RRSIG RR to validate DNSKEY RR found
|
|
|
|
|
| RRSIG-Owner (root), Algorithm: 8, 0 Labels, original TTL: 172800 sec, Signature-expiration: 20.09.2025, 00:00:00 +, Signature-Inception: 30.08.2025, 00:00:00 +, KeyTag 20326, Signer-Name: (root)
|
|
|
|
|
| • Status: Good - Algorithmus 8 and DNSKEY with KeyTag 20326 used to validate the DNSKEY RRSet
|
|
|
|
|
| • Status: Valid Chain of trust. Parent-DS with Algorithm 8, KeyTag 20326, DigestType 2 and Digest "4G1EuAuPHTmpXAsNfGXQhFjogECbvGg0VxBCN8f47I0=" validates local Key with the same values, Key ist Secure Entry Point (SEP) of the zone
|
|
|
Zone: zone
|
|
zone
| 1 DS RR in the parent zone found
|
|
|
|
|
| DS with Algorithm 8, KeyTag 12136, DigestType 2 and Digest RIU+ByqgxZA1G4IrmiP/lWMUEqNYMigWOplVmO92S68=
|
|
|
|
|
| 2 RRSIG RR to validate DS RR found
|
|
|
|
|
| RRSIG-Owner zone., Algorithm: 8, 1 Labels, original TTL: 86400 sec, Signature-expiration: 16.09.2025, 05:00:00 +, Signature-Inception: 03.09.2025, 04:00:00 +, KeyTag 46441, Signer-Name: (root)
|
|
|
|
|
| • Status: Good - Algorithmus 8 and DNSKEY with KeyTag 46441 used to validate the DS RRSet in the parent zone
|
|
|
|
|
| 3 DNSKEY RR found
|
|
|
|
|
| Public Key with Algorithm 8, KeyTag 11901, Flags 256
|
|
|
|
|
| Public Key with Algorithm 8, KeyTag 12136, Flags 257 (SEP = Secure Entry Point)
|
|
|
|
|
| Public Key with Algorithm 8, KeyTag 40608, Flags 256
|
|
|
|
|
| 1 RRSIG RR to validate DNSKEY RR found
|
|
|
|
|
| RRSIG-Owner zone., Algorithm: 8, 1 Labels, original TTL: 3600 sec, Signature-expiration: 22.09.2025, 15:36:23 +, Signature-Inception: 01.09.2025, 14:36:23 +, KeyTag 12136, Signer-Name: zone
|
|
|
|
|
| • Status: Good - Algorithmus 8 and DNSKEY with KeyTag 12136 used to validate the DNSKEY RRSet
|
|
|
|
|
| • Status: Valid Chain of trust. Parent-DS with Algorithm 8, KeyTag 12136, DigestType 2 and Digest "RIU+ByqgxZA1G4IrmiP/lWMUEqNYMigWOplVmO92S68=" validates local Key with the same values, Key ist Secure Entry Point (SEP) of the zone
|
|
|
Zone: froth.zone
|
|
froth.zone
| 1 DS RR in the parent zone found
|
|
|
|
|
| DS with Algorithm 13, KeyTag 59105, DigestType 2 and Digest srfSCjuZfcxHHvgDKOpiYyOOX9U/pchqkNfPTmXbtNY=
|
|
|
|
|
| 2 RRSIG RR to validate DS RR found
|
|
|
|
|
| RRSIG-Owner froth.zone., Algorithm: 8, 2 Labels, original TTL: 3600 sec, Signature-expiration: 22.09.2025, 15:36:23 +, Signature-Inception: 01.09.2025, 14:36:23 +, KeyTag 11901, Signer-Name: zone
|
|
|
|
|
| • Status: Good - Algorithmus 8 and DNSKEY with KeyTag 11901 used to validate the DS RRSet in the parent zone
|
|
|
|
|
| 2 DNSKEY RR found
|
|
|
|
|
| Public Key with Algorithm 13, KeyTag 59105, Flags 257 (SEP = Secure Entry Point)
|
|
|
|
|
| Public Key with Algorithm 13, KeyTag 59615, Flags 257 (SEP = Secure Entry Point)
|
|
|
|
|
| 2 RRSIG RR to validate DNSKEY RR found
|
|
|
|
|
| RRSIG-Owner froth.zone., Algorithm: 13, 2 Labels, original TTL: 3600 sec, Signature-expiration: 11.09.2025, 18:08:49 +, Signature-Inception: 28.08.2025, 06:22:41 +, KeyTag 59105, Signer-Name: froth.zone
|
|
|
|
|
| RRSIG-Owner froth.zone., Algorithm: 13, 2 Labels, original TTL: 3600 sec, Signature-expiration: 11.09.2025, 18:08:49 +, Signature-Inception: 28.08.2025, 06:22:41 +, KeyTag 59615, Signer-Name: froth.zone
|
|
|
|
|
| • Status: Good - Algorithmus 13 and DNSKEY with KeyTag 59105 used to validate the DNSKEY RRSet
|
|
|
|
|
| • Status: Good - Algorithmus 13 and DNSKEY with KeyTag 59615 used to validate the DNSKEY RRSet
|
|
|
|
|
| • Status: Valid Chain of trust. Parent-DS with Algorithm 13, KeyTag 59105, DigestType 2 and Digest "srfSCjuZfcxHHvgDKOpiYyOOX9U/pchqkNfPTmXbtNY=" validates local Key with the same values, Key ist Secure Entry Point (SEP) of the zone
|
|
|
Zone: kaguya.froth.zone
|
|
kaguya.froth.zone
| 0 DS RR in the parent zone found
|
|
|
|
|
| DS-Query in the parent zone has a valid NSEC3 RR as result with the hashed query name "te1lh92p6b2uhb4hrglc33s4etc88div" between the hashed NSEC3-owner "te1lh92p6b2uhb4hrglc33s4etc88div" and the hashed NextOwner "tj6es5ie6k23ee6nf9glklcufu4osaj2". So the parent zone confirmes the not-existence of a DS RR.
Bitmap: A, AAAA, RRSIG Validated: RRSIG-Owner te1lh92p6b2uhb4hrglc33s4etc88div.froth.zone., Algorithm: 13, 3 Labels, original TTL: 3600 sec, Signature-expiration: 11.09.2025, 00:45:58 +, Signature-Inception: 28.08.2025, 06:22:41 +, KeyTag 59615, Signer-Name: froth.zone
|
|
|
|
|
| 0 DNSKEY RR found
|
|
|
|
|
|
|
|
|
|
|
| RRSIG Type 1 validates the A - Result: 95.216.99.249
Validated: RRSIG-Owner kaguya.froth.zone., Algorithm: 13, 3 Labels, original TTL: 1800 sec, Signature-expiration: 09.09.2025, 12:28:12 +, Signature-Inception: 26.08.2025, 00:22:41 +, KeyTag 59615, Signer-Name: froth.zone
|
|
|
|
|
| RRSIG Type 28 validates the AAAA - Result: 2A01:04F9:002B:1305:0000:0000:0000:0002
Validated: RRSIG-Owner kaguya.froth.zone., Algorithm: 13, 3 Labels, original TTL: 1800 sec, Signature-expiration: 10.09.2025, 04:36:07 +, Signature-Inception: 27.08.2025, 08:22:41 +, KeyTag 59615, Signer-Name: froth.zone
|
|
|
|
|
| CNAME-Query sends a valid NSEC3 RR as result with the hashed query name "te1lh92p6b2uhb4hrglc33s4etc88div" equal the hashed NSEC3-owner "te1lh92p6b2uhb4hrglc33s4etc88div" and the hashed NextOwner "tj6es5ie6k23ee6nf9glklcufu4osaj2". So the zone confirmes the not-existence of that CNAME RR, but the existence of that query name (minimal one RR with that name exists).
Bitmap: A, AAAA, RRSIG Validated: RRSIG-Owner te1lh92p6b2uhb4hrglc33s4etc88div.froth.zone., Algorithm: 13, 3 Labels, original TTL: 3600 sec, Signature-expiration: 11.09.2025, 00:45:58 +, Signature-Inception: 28.08.2025, 06:22:41 +, KeyTag 59615, Signer-Name: froth.zone
|
|
|
|
|
| Status: Good. NoData-Proof required and found.
|
|
|
|
|
| TXT-Query sends a valid NSEC3 RR as result with the hashed query name "te1lh92p6b2uhb4hrglc33s4etc88div" equal the hashed NSEC3-owner "te1lh92p6b2uhb4hrglc33s4etc88div" and the hashed NextOwner "tj6es5ie6k23ee6nf9glklcufu4osaj2". So the zone confirmes the not-existence of that TXT RR, but the existence of that query name (minimal one RR with that name exists).
Bitmap: A, AAAA, RRSIG Validated: RRSIG-Owner te1lh92p6b2uhb4hrglc33s4etc88div.froth.zone., Algorithm: 13, 3 Labels, original TTL: 3600 sec, Signature-expiration: 11.09.2025, 00:45:58 +, Signature-Inception: 28.08.2025, 06:22:41 +, KeyTag 59615, Signer-Name: froth.zone
|
|
|
|
|
| Status: Good. NoData-Proof required and found.
|
|
|
|
|
| TLSA-Query (_443._tcp.kaguya.froth.zone) sends a valid NSEC3 RR as result with the hashed owner name "te1lh92p6b2uhb4hrglc33s4etc88div" (unhashed: kaguya.froth.zone). So that's the Closest Encloser of the query name.
Bitmap: A, AAAA, RRSIG Validated: RRSIG-Owner te1lh92p6b2uhb4hrglc33s4etc88div.froth.zone., Algorithm: 13, 3 Labels, original TTL: 3600 sec, Signature-expiration: 11.09.2025, 00:45:58 +, Signature-Inception: 28.08.2025, 06:22:41 +, KeyTag 59615, Signer-Name: froth.zone
|
|
|
|
|
| Status: Good. NXDomain-Proof required and found.
|
|
|
|
|
| TLSA-Query sends a valid NSEC3 RR as result and covers the hashed Next Closer Name "qumegjko351vht03c9h6c66o009km34u" (unhashed: _tcp.kaguya.froth.zone) with the owner "qlg643ogkeut8pdq07ptfmelkonjvstj" and the NextOwner "rqfbcica5u2gsunrif8d0jb4hkiuvv4s". So that NSEC3 confirms the not-existence of the Next Closer Name.
Bitmap: CNAME, RRSIG Validated: RRSIG-Owner qlg643ogkeut8pdq07ptfmelkonjvstj.froth.zone., Algorithm: 13, 3 Labels, original TTL: 3600 sec, Signature-expiration: 11.09.2025, 06:51:21 +, Signature-Inception: 28.08.2025, 02:22:41 +, KeyTag 59615, Signer-Name: froth.zone
|
|
|
|
|
| Status: Good. NXDomain-Proof required and found.
|
|
|
|
|
| TLSA-Query sends a valid NSEC3 RR as result and covers the hashed Wildcard expansion of the ClosestEncloser "lu98cliaa7l19pm1urrto3ogubms4b2c" (unhashed: *.kaguya.froth.zone) with the owner "lmpb961tmar8m0lbeecj3ggo1tamhfbf" and the NextOwner "mpbut4a1c06nkpd07dgqm1jbqbf58b8r". So that NSEC3 confirms the not-existence of the Wildcard expansion.
Bitmap: CNAME, RRSIG Validated: RRSIG-Owner lmpb961tmar8m0lbeecj3ggo1tamhfbf.froth.zone., Algorithm: 13, 3 Labels, original TTL: 3600 sec, Signature-expiration: 09.09.2025, 08:08:05 +, Signature-Inception: 26.08.2025, 18:22:41 +, KeyTag 59615, Signer-Name: froth.zone
|
|
|
|
|
| Status: Good. NXDomain-Proof required and found.
|
|
|
|
|
| CAA-Query sends a valid NSEC3 RR as result with the hashed query name "te1lh92p6b2uhb4hrglc33s4etc88div" equal the hashed NSEC3-owner "te1lh92p6b2uhb4hrglc33s4etc88div" and the hashed NextOwner "tj6es5ie6k23ee6nf9glklcufu4osaj2". So the zone confirmes the not-existence of that CAA RR, but the existence of that query name (minimal one RR with that name exists).
Bitmap: A, AAAA, RRSIG Validated: RRSIG-Owner te1lh92p6b2uhb4hrglc33s4etc88div.froth.zone., Algorithm: 13, 3 Labels, original TTL: 3600 sec, Signature-expiration: 11.09.2025, 00:45:58 +, Signature-Inception: 28.08.2025, 06:22:41 +, KeyTag 59615, Signer-Name: froth.zone
|
|
|
|
|
| Status: Good. NoData-Proof required and found.
|