X

DNS-problem - authoritative Nameserver refused, not defined or timeout

Checked:
10.07.2019 18:30:15


Older results

No older results found


1. IP-Addresses

HostTIP-Addressis auth.∑ Queries∑ Timeout
highlandscablegroup.com
A
104.219.87.195
Highlands/North Carolina/United States (US) - Highlands Cable Group
Hostname: speedtest.port1.highlandscablegroup.com
yes
1
0

AAAA

yes


www.highlandscablegroup.com
A
104.219.87.195
Highlands/North Carolina/United States (US) - Highlands Cable Group
Hostname: speedtest.port1.highlandscablegroup.com
yes
1
0

AAAA

yes



2. DNSSEC

Zone (*)DNSSEC - Informations (beta)
(root)
1 DS RR published

Status: Valid because published

3 DNSKEY RR found

Public Key with Algorithm 8, KeyTag 20326, Flags 257 (SEP = Secure Entry Point)

Public Key with Algorithm 8, KeyTag 25266, Flags 256

Public Key with Algorithm 8, KeyTag 59944, Flags 256

1 RRSIG RR to validate DNSKEY RR found

Algorithm: 8, 0 Labels, original TTL: 172800 sec, Signature-expiration: 22.07.2019, 00:00:00, Signature-Inception: 01.07.2019, 00:00:00, KeyTag 20326, Signer-Name: (root)

Status: Good - Algorithmus 8 and DNSKEY with KeyTag 20326 used to validate the DNSKEY RRSet

Status: Valid Chain of trust. Parent-DS with Algorithm 8, KeyTag 20326, DigestType 2 and Digest "4G1EuAuPHTmpXAsNfGXQhFjogECbvGg0VxBCN8f47I0=" validates local Key with the same values, Key ist Secure Entry Point (SEP) of the zone
com
1 DS RR in the parent zone found

1 RRSIG RR to validate DS RR found

Algorithm: 8, 1 Labels, original TTL: 86400 sec, Signature-expiration: 23.07.2019, 05:00:00, Signature-Inception: 10.07.2019, 04:00:00, KeyTag 59944, Signer-Name: (root)

Status: Good - Algorithmus 8 and DNSKEY with KeyTag 59944 used to validate the DS RRSet in the parent zone

2 DNSKEY RR found

Public Key with Algorithm 8, KeyTag 3800, Flags 256

Public Key with Algorithm 8, KeyTag 30909, Flags 257 (SEP = Secure Entry Point)

1 RRSIG RR to validate DNSKEY RR found

Algorithm: 8, 1 Labels, original TTL: 86400 sec, Signature-expiration: 16.07.2019, 18:25:33, Signature-Inception: 01.07.2019, 18:20:33, KeyTag 30909, Signer-Name: com

Status: Good - Algorithmus 8 and DNSKEY with KeyTag 30909 used to validate the DNSKEY RRSet

Status: Valid Chain of trust. Parent-DS with Algorithm 8, KeyTag 30909, DigestType 2 and Digest "4tPJFvbe6scylOgmj7WIUESoM/xUWViPSpGEz8QaV2Y=" validates local Key with the same values, Key ist Secure Entry Point (SEP) of the zone
highlandscablegroup.com
0 DS RR in the parent zone found

DS-Query in the parent zone has a valid NSEC3 RR as result with the hashed domain name between the hashed NSEC3-owner and the hashed NextOwner. So the parent zone confirmes the non-existence of a DS RR.

0 DNSKEY RR found


www.highlandscablegroup.com
0 DS RR in the parent zone found


3. Name Servers

DomainNameserverNS-IP
www.highlandscablegroup.com
U  ns1.highlandscablegroup.com

highlandscablegroup.com
  ns1.highlandscable.net
104.219.87.196
Highlands/North Carolina/United States (US) - Highlands Cable Group


U  ns1.highlandscablegroup.com
173.246.220.246
Franklin/North Carolina/United States (US) - Morris Broadband


  ns2.highlandscable.net
104.219.87.196
Highlands/North Carolina/United States (US) - Highlands Cable Group


U  ns2.highlandscablegroup.com
173.246.220.246
Franklin/North Carolina/United States (US) - Morris Broadband

com
  a.gtld-servers.net


  b.gtld-servers.net


  c.gtld-servers.net


  d.gtld-servers.net


  e.gtld-servers.net


  f.gtld-servers.net


  g.gtld-servers.net


  h.gtld-servers.net


  i.gtld-servers.net


  j.gtld-servers.net


  k.gtld-servers.net


  l.gtld-servers.net


  m.gtld-servers.net


4. SOA-Entries


Domain:com
Primary:a.gtld-servers.net
Mail:nstld.verisign-grs.com
Serial:1562776186
Refresh:1800
Retry:900
Expire:604800
TTL:86400
num Entries:1


Domain:com
Primary:a.gtld-servers.net
Mail:nstld.verisign-grs.com
Serial:1562776186
Refresh:1800
Retry:900
Expire:604800
TTL:86400
num Entries:1


Domain:com
Primary:a.gtld-servers.net
Mail:nstld.verisign-grs.com
Serial:1562776201
Refresh:1800
Retry:900
Expire:604800
TTL:86400
num Entries:10


Domain:com
Primary:a.gtld-servers.net
Mail:nstld.verisign-grs.com
Serial:1562776201
Refresh:1800
Retry:900
Expire:604800
TTL:86400
num Entries:10


Domain:com
Primary:a.gtld-servers.net
Mail:nstld.verisign-grs.com
Serial:1562776216
Refresh:1800
Retry:900
Expire:604800
TTL:86400
num Entries:2


Domain:com
Primary:a.gtld-servers.net
Mail:nstld.verisign-grs.com
Serial:1562776216
Refresh:1800
Retry:900
Expire:604800
TTL:86400
num Entries:2


Domain:highlandscablegroup.com
Primary:ns1.highlandscablegroup.com
Mail:ns1.highlandscablegroup.com
Serial:130
Refresh:604800
Retry:86400
Expire:2419200
TTL:604800
num Entries:2


5. Url-Checks


show header:
Domainname Http-StatusredirectSec.G
• http://highlandscablegroup.com/
104.219.87.195
301
http://www.highlandscablegroup.com/
0.257
D
Date: Wed, 10 Jul 2019 16:33:24 GMT
Server: Apache/2.4.18 (Ubuntu)
Location: http://www.highlandscablegroup.com/
Content-Length: 0
Connection: close
Content-Type: text/html; charset=UTF-8

• http://www.highlandscablegroup.com/
104.219.87.195
200

0.387
H
Date: Wed, 10 Jul 2019 16:33:24 GMT
Server: Apache/2.4.18 (Ubuntu)
Link: <http://www.highlandscablegroup.com/?rest_route=/>; rel="https://api.w.org/"
Vary: Accept-Encoding
Connection: close
Transfer-Encoding: chunked
Content-Type: text/html; charset=UTF-8

• https://highlandscablegroup.com/
104.219.87.195
-2

1.360
V
ConnectFailure - Unable to connect to the remote server No connection could be made because the target machine actively refused it 104.219.87.195:443

• https://www.highlandscablegroup.com/
104.219.87.195
-2

1.350
V
ConnectFailure - Unable to connect to the remote server No connection could be made because the target machine actively refused it 104.219.87.195:443

• http://highlandscablegroup.com/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
104.219.87.195
404

0.237
A
Not Found
Visible Content: Not Found The requested URL /.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de was not found on this server. Apache/2.4.18 (Ubuntu) Server at highlandscablegroup.com Port 80
Date: Wed, 10 Jul 2019 16:33:27 GMT
Server: Apache/2.4.18 (Ubuntu)
Content-Length: 356
Connection: close
Content-Type: text/html; charset=iso-8859-1

• http://www.highlandscablegroup.com/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
104.219.87.195
404

0.233
A
Not Found
Visible Content: Not Found The requested URL /.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de was not found on this server. Apache/2.4.18 (Ubuntu) Server at www.highlandscablegroup.com Port 80
Date: Wed, 10 Jul 2019 16:33:28 GMT
Server: Apache/2.4.18 (Ubuntu)
Content-Length: 360
Connection: close
Content-Type: text/html; charset=iso-8859-1

6. Comments

Aname "highlandscablegroup.com" is domain, public suffix is "com", top-level-domain-type is "generic", tld-manager is "VeriSign Global Registry Services"
Agood: All ip addresses are public addresses
Agood - only one version with Http-Status 200
AGood: All urls with http status 200/404 have a complete Content-Type header (MediaType / MediaSubType + correct charset)
Dhttp://highlandscablegroup.com/ 104.219.87.195
301
http://www.highlandscablegroup.com/
wrong redirect one version http to other version http - first redirect to https without new dns query
Hfatal error: No https - result with http-status 200, no encryption
HFatal error: http result with http-status 200, no encryption. Add a redirect http ⇒ https, so every connection is secure.
Vhttps://highlandscablegroup.com/ 104.219.87.195
-2

connect failure - perhaps firewall
Vhttps://www.highlandscablegroup.com/ 104.219.87.195
-2

connect failure - perhaps firewall
XFatal error: Nameserver isn't defined or has timeout
XFatal error: Nameserver doesn't support TCP connection: ns1.highlandscablegroup.com: Fatal error - no NameServer IP-Address or connection. Details: One or more errors occurred. - No connection could be made because the target machine actively refused it 173.246.220.246:53
XFatal error: Nameserver doesn't support TCP connection: ns1.highlandscablegroup.com / 173.246.220.246: Fatal error - no NameServer IP-Address or connection. Details: One or more errors occurred. - No connection could be made because the target machine actively refused it 173.246.220.246:53
XFatal error: Nameserver doesn't support TCP connection: ns2.highlandscablegroup.com / 173.246.220.246: Fatal error - no NameServer IP-Address or connection. Details: One or more errors occurred. - No connection could be made because the target machine actively refused it 173.246.220.246:53
AInfo: Nameserver mit different domain names found. May be a problem with DNS-Updates
XNameserver Timeout checking Echo Capitalization: ns1.highlandscablegroup.com
XNameserver Timeout checking Echo Capitalization: ns1.highlandscablegroup.com / 173.246.220.246
XNameserver Timeout checking Echo Capitalization: ns2.highlandscablegroup.com / 173.246.220.246
XNameserver Timeout checking EDNS512: ns1.highlandscablegroup.com
XNameserver Timeout checking EDNS512: ns1.highlandscablegroup.com / 173.246.220.246
XNameserver Timeout checking EDNS512: ns2.highlandscablegroup.com / 173.246.220.246
Nameserver doesn't pass all EDNS-Checks: ns1.highlandscablegroup.com: OP100: fatal timeout. FLAGS: fatal timeout. V1: fatal timeout. V1OP100: fatal timeout. V1FLAGS: fatal timeout. DNSSEC: fatal timeout. V1DNSSEC: fatal timeout. NSID: fatal timeout. COOKIE: fatal timeout. CLIENTSUBNET: fatal timeout.
Nameserver doesn't pass all EDNS-Checks: ns1.highlandscablegroup.com / 173.246.220.246: OP100: fatal timeout. FLAGS: fatal timeout. V1: fatal timeout. V1OP100: fatal timeout. V1FLAGS: fatal timeout. DNSSEC: fatal timeout. V1DNSSEC: fatal timeout. NSID: fatal timeout. COOKIE: fatal timeout. CLIENTSUBNET: fatal timeout.
Nameserver doesn't pass all EDNS-Checks: ns2.highlandscablegroup.com / 173.246.220.246: OP100: fatal timeout. FLAGS: fatal timeout. V1: fatal timeout. V1OP100: fatal timeout. V1FLAGS: fatal timeout. DNSSEC: fatal timeout. V1DNSSEC: fatal timeout. NSID: fatal timeout. COOKIE: fatal timeout. CLIENTSUBNET: fatal timeout.
AGood: All SOA have the same Serial Number
Warning: No CAA entry with issue/issuewild found, every CAA can create a certificate
AGood: All checks /.well-known/acme-challenge/random-filename without redirects answer with the expected http status 404 - Not Found. Creating a Letsencrypt certificate via http-01 challenge should work. If it doesn't work: Check your vHost configuration (apachectl -S, nginx -T). Every combination of port and ServerName / ServerAlias (Apache) or Server (Nginx) must be unique. Merge duplicated entries in one vHost. If you use an IIS, extensionless files must be allowed in the /.well-known/acme-challenge subdirectory ( <configuration><system.webServer><staticContent><mimeMap fileExtension="." mimeType="text/plain" /></staticContent></system.webServer></configuration>).
AGood: Domainname is not on the "Specially Designated Nationals And Blocked Persons List" (SDN)
ADuration: 197030 milliseconds, 197.030 seconds


7. Connections

No connection informations found. Perhaps only http - connections.


8. Certificates

No certificate informations found. Perhaps only http - connections.


9. Last Certificates - Certificate Transparency Log Check (BETA)

1. Source CertSpotter - active certificates

Issuerlast 7 daysactivenum Certs
CN=Let's Encrypt Authority X3, O=Let's Encrypt, C=US
0
3
3

CertSpotter-IdIssuernot beforenot afterDomain namesLE-Duplicatenext LE
987941276
CN=Let's Encrypt Authority X3, O=Let's Encrypt, C=US
2019-06-26 16:27:14
2019-09-24 16:27:14
www.highlandscablegroup.com - 1 entries


986634005
CN=Let's Encrypt Authority X3, O=Let's Encrypt, C=US
2019-06-25 23:53:27
2019-09-23 23:53:27
highlandscablegroup.com - 1 entries


986628386
CN=Let's Encrypt Authority X3, O=Let's Encrypt, C=US
2019-06-25 23:47:32
2019-09-23 23:47:32
highlandscablegroup.com, noc.highlandscable.net - 2 entries



2. Source crt.sh - old and new certificates, sometimes very slow.

Issuerlast 7 daysactivenum Certs
CN=Let's Encrypt Authority X3, O=Let's Encrypt, C=US
0
3
3

CRT-IdIssuernot beforenot afterDomain namesLE-Duplicatenext LE
1653501842
CN=Let's Encrypt Authority X3, O=Let's Encrypt, C=US
2019-06-26 14:27:14
2019-09-24 14:27:14
www.highlandscablegroup.com
1 entries


1647824548
CN=Let's Encrypt Authority X3, O=Let's Encrypt, C=US
2019-06-25 21:53:27
2019-09-23 21:53:27
highlandscablegroup.com
1 entries


1647801356
CN=Let's Encrypt Authority X3, O=Let's Encrypt, C=US
2019-06-25 21:47:32
2019-09-23 21:47:32
highlandscablegroup.com, noc.highlandscable.net
2 entries



10. Html-Content - Entries (BETA - mixed content and other checks)

No Html-Content entries found. Only checked if https + status 200/401/403/404


11. CAA - Entries

DomainnameflagNameValue∑ Queries∑ Timeout
www.highlandscablegroup.com
0

no CAA entry found
1
0
highlandscablegroup.com
0

no CAA entry found
1
0
com
0

no CAA entry found
1
0


12. TXT - Entries

DomainnameTXT EntryStatus∑ Queries∑ Timeout
highlandscablegroup.com

ok
1
0
www.highlandscablegroup.com

ok
1
0
_acme-challenge.highlandscablegroup.com

Name Error - The domain name does not exist
1
0
_acme-challenge.www.highlandscablegroup.com

Name Error - The domain name does not exist
1
0
_acme-challenge.highlandscablegroup.com.highlandscablegroup.com

Name Error - The domain name does not exist
1
0
_acme-challenge.www.highlandscablegroup.com.highlandscablegroup.com

Name Error - The domain name does not exist
1
0
_acme-challenge.www.highlandscablegroup.com.www.highlandscablegroup.com

Name Error - The domain name does not exist
1
0


13. Portchecks (BETA)

No Port checks



Permalink: https://check-your-website.server-daten.de/?i=626d86fa-70c9-43e0-bc5d-53290bee5ef1


Last Result: https://check-your-website.server-daten.de/?q=highlandscablegroup.com - 2019-07-10 18:30:15


Do you like this page? Support this tool, add a link on your page:

<a href="https://check-your-website.server-daten.de/?q=highlandscablegroup.com" target="_blank">Check this Site: highlandscablegroup.com</a>