Zone (*) | DNSSEC - Informations |
---|
|
|
Zone: (root)
|
|
(root)
| 1 DS RR published
|
|
|
|
|
| DS with Algorithm 8, KeyTag 20326, DigestType 2 and Digest 4G1EuAuPHTmpXAsNfGXQhFjogECbvGg0VxBCN8f47I0=
|
|
|
|
|
| • Status: Valid because published
|
|
|
|
|
| 2 DNSKEY RR found
|
|
|
|
|
| Public Key with Algorithm 8, KeyTag 14748, Flags 256
|
|
|
|
|
| Public Key with Algorithm 8, KeyTag 20326, Flags 257 (SEP = Secure Entry Point)
|
|
|
|
|
| 1 RRSIG RR to validate DNSKEY RR found
|
|
|
|
|
| RRSIG-Owner (root), Algorithm: 8, 0 Labels, original TTL: 172800 sec, Signature-expiration: 11.12.2021, 00:00:00 +, Signature-Inception: 20.11.2021, 00:00:00 +, KeyTag 20326, Signer-Name: (root)
|
|
|
|
|
| • Status: Good - Algorithmus 8 and DNSKEY with KeyTag 20326 used to validate the DNSKEY RRSet
|
|
|
|
|
| • Status: Valid Chain of trust. Parent-DS with Algorithm 8, KeyTag 20326, DigestType 2 and Digest "4G1EuAuPHTmpXAsNfGXQhFjogECbvGg0VxBCN8f47I0=" validates local Key with the same values, Key ist Secure Entry Point (SEP) of the zone
|
|
|
Zone: org
|
|
org
| 1 DS RR in the parent zone found
|
|
|
|
|
| DS with Algorithm 8, KeyTag 26974, DigestType 2 and Digest T+3ilMU/Q4oVjEHTlInNeKhr6w2KCur/FHRcDRbh3jI=
|
|
|
|
|
| 1 RRSIG RR to validate DS RR found
|
|
|
|
|
| RRSIG-Owner org., Algorithm: 8, 1 Labels, original TTL: 86400 sec, Signature-expiration: 04.12.2021, 17:00:00 +, Signature-Inception: 21.11.2021, 16:00:00 +, KeyTag 14748, Signer-Name: (root)
|
|
|
|
|
| • Status: Good - Algorithmus 8 and DNSKEY with KeyTag 14748 used to validate the DS RRSet in the parent zone
|
|
|
|
|
| 3 DNSKEY RR found
|
|
|
|
|
| Public Key with Algorithm 8, KeyTag 26974, Flags 257 (SEP = Secure Entry Point)
|
|
|
|
|
| Public Key with Algorithm 8, KeyTag 63858, Flags 256
|
|
|
|
|
| Public Key with Algorithm 8, KeyTag 63966, Flags 256
|
|
|
|
|
| 1 RRSIG RR to validate DNSKEY RR found
|
|
|
|
|
| RRSIG-Owner org., Algorithm: 8, 1 Labels, original TTL: 900 sec, Signature-expiration: 08.12.2021, 15:23:27 +, Signature-Inception: 17.11.2021, 14:23:27 +, KeyTag 26974, Signer-Name: org
|
|
|
|
|
| • Status: Good - Algorithmus 8 and DNSKEY with KeyTag 26974 used to validate the DNSKEY RRSet
|
|
|
|
|
| • Status: Valid Chain of trust. Parent-DS with Algorithm 8, KeyTag 26974, DigestType 2 and Digest "T+3ilMU/Q4oVjEHTlInNeKhr6w2KCur/FHRcDRbh3jI=" validates local Key with the same values, Key ist Secure Entry Point (SEP) of the zone
|
|
|
Zone: rmbs.org
|
|
rmbs.org
| 2 DS RR in the parent zone found
|
|
|
|
|
| DS with Algorithm 13, KeyTag 53524, DigestType 2 and Digest 8MjxG33ehM5rLv6z/uxzGFat87VzfzVmBMZ/lcSb4h4=
|
|
|
|
|
| DS with Algorithm 8, KeyTag 64646, DigestType 2 and Digest XX/IGPFILxtkLR+ciFSb1kyuTVKWSUst9lVA/h8Kdag=
|
|
|
|
|
| 1 RRSIG RR to validate DS RR found
|
|
|
|
|
| RRSIG-Owner rmbs.org., Algorithm: 8, 2 Labels, original TTL: 86400 sec, Signature-expiration: 08.12.2021, 15:23:27 +, Signature-Inception: 17.11.2021, 14:23:27 +, KeyTag 63966, Signer-Name: org
|
|
|
|
|
| • Status: Good - Algorithmus 8 and DNSKEY with KeyTag 63966 used to validate the DS RRSet in the parent zone
|
|
|
|
|
| 4 DNSKEY RR found
|
|
|
|
|
| Public Key with Algorithm 13, KeyTag 4925, Flags 256
|
|
|
|
|
| Public Key with Algorithm 8, KeyTag 24895, Flags 256
|
|
|
|
|
| Public Key with Algorithm 13, KeyTag 53524, Flags 257 (SEP = Secure Entry Point)
|
|
|
|
|
| Public Key with Algorithm 8, KeyTag 64646, Flags 257 (SEP = Secure Entry Point)
|
|
|
|
|
| 4 RRSIG RR to validate DNSKEY RR found
|
|
|
|
|
| RRSIG-Owner rmbs.org., Algorithm: 13, 2 Labels, original TTL: 600 sec, Signature-expiration: 20.12.2021, 00:41:29 +, Signature-Inception: 20.11.2021, 00:41:29 +, KeyTag 4925, Signer-Name: rmbs.org
|
|
|
|
|
| RRSIG-Owner rmbs.org., Algorithm: 8, 2 Labels, original TTL: 600 sec, Signature-expiration: 20.12.2021, 00:41:29 +, Signature-Inception: 20.11.2021, 00:41:29 +, KeyTag 24895, Signer-Name: rmbs.org
|
|
|
|
|
| RRSIG-Owner rmbs.org., Algorithm: 13, 2 Labels, original TTL: 600 sec, Signature-expiration: 20.12.2021, 00:41:29 +, Signature-Inception: 20.11.2021, 00:41:29 +, KeyTag 53524, Signer-Name: rmbs.org
|
|
|
|
|
| RRSIG-Owner rmbs.org., Algorithm: 8, 2 Labels, original TTL: 600 sec, Signature-expiration: 20.12.2021, 00:41:29 +, Signature-Inception: 20.11.2021, 00:41:29 +, KeyTag 64646, Signer-Name: rmbs.org
|
|
|
|
|
| • Status: Good - Algorithmus 13 and DNSKEY with KeyTag 4925 used to validate the DNSKEY RRSet
|
|
|
|
|
| • Status: Good - Algorithmus 8 and DNSKEY with KeyTag 24895 used to validate the DNSKEY RRSet
|
|
|
|
|
| • Status: Good - Algorithmus 13 and DNSKEY with KeyTag 53524 used to validate the DNSKEY RRSet
|
|
|
|
|
| • Status: Good - Algorithmus 8 and DNSKEY with KeyTag 64646 used to validate the DNSKEY RRSet
|
|
|
|
|
| • Status: Valid Chain of trust. Parent-DS with Algorithm 13, KeyTag 53524, DigestType 2 and Digest "8MjxG33ehM5rLv6z/uxzGFat87VzfzVmBMZ/lcSb4h4=" validates local Key with the same values, Key ist Secure Entry Point (SEP) of the zone
|
|
|
|
|
| • Status: Valid Chain of trust. Parent-DS with Algorithm 8, KeyTag 64646, DigestType 2 and Digest "XX/IGPFILxtkLR+ciFSb1kyuTVKWSUst9lVA/h8Kdag=" validates local Key with the same values, Key ist Secure Entry Point (SEP) of the zone
|
|
|
Zone: journal.rmbs.org
|
|
journal.rmbs.org
| 2 DS RR in the parent zone found
|
|
|
|
|
| DS with Algorithm 13, KeyTag 16275, DigestType 2 and Digest gBlLQ8LzsmtQfANZpkrWkVYzg/vgZl0pbu1U8JkKUac=
|
|
|
|
|
| DS with Algorithm 8, KeyTag 17674, DigestType 2 and Digest 5rtd/nMcSTrUTVOZEXtiHX+Rz47HJPErrDUZMZU4/u0=
|
|
|
|
|
| 2 RRSIG RR to validate DS RR found
|
|
|
|
|
| RRSIG-Owner journal.rmbs.org., Algorithm: 13, 3 Labels, original TTL: 600 sec, Signature-expiration: 20.12.2021, 00:41:29 +, Signature-Inception: 20.11.2021, 00:41:29 +, KeyTag 4925, Signer-Name: rmbs.org
|
|
|
|
|
| RRSIG-Owner journal.rmbs.org., Algorithm: 8, 3 Labels, original TTL: 600 sec, Signature-expiration: 20.12.2021, 00:41:29 +, Signature-Inception: 20.11.2021, 00:41:29 +, KeyTag 24895, Signer-Name: rmbs.org
|
|
|
|
|
| • Status: Good - Algorithmus 13 and DNSKEY with KeyTag 4925 used to validate the DS RRSet in the parent zone
|
|
|
|
|
| • Status: Good - Algorithmus 8 and DNSKEY with KeyTag 24895 used to validate the DS RRSet in the parent zone
|
|
|
|
|
| 4 DNSKEY RR found
|
|
|
|
|
| Public Key with Algorithm 13, KeyTag 16275, Flags 257 (SEP = Secure Entry Point)
|
|
|
|
|
| Public Key with Algorithm 8, KeyTag 17674, Flags 257 (SEP = Secure Entry Point)
|
|
|
|
|
| Public Key with Algorithm 8, KeyTag 36784, Flags 256
|
|
|
|
|
| Public Key with Algorithm 13, KeyTag 38084, Flags 256
|
|
|
|
|
| 4 RRSIG RR to validate DNSKEY RR found
|
|
|
|
|
| RRSIG-Owner journal.rmbs.org., Algorithm: 13, 3 Labels, original TTL: 600 sec, Signature-expiration: 20.12.2021, 00:41:40 +, Signature-Inception: 20.11.2021, 00:41:40 +, KeyTag 16275, Signer-Name: journal.rmbs.org
|
|
|
|
|
| RRSIG-Owner journal.rmbs.org., Algorithm: 8, 3 Labels, original TTL: 600 sec, Signature-expiration: 20.12.2021, 00:41:40 +, Signature-Inception: 20.11.2021, 00:41:40 +, KeyTag 17674, Signer-Name: journal.rmbs.org
|
|
|
|
|
| RRSIG-Owner journal.rmbs.org., Algorithm: 8, 3 Labels, original TTL: 600 sec, Signature-expiration: 20.12.2021, 00:41:40 +, Signature-Inception: 20.11.2021, 00:41:40 +, KeyTag 36784, Signer-Name: journal.rmbs.org
|
|
|
|
|
| RRSIG-Owner journal.rmbs.org., Algorithm: 13, 3 Labels, original TTL: 600 sec, Signature-expiration: 20.12.2021, 00:41:40 +, Signature-Inception: 20.11.2021, 00:41:40 +, KeyTag 38084, Signer-Name: journal.rmbs.org
|
|
|
|
|
| • Status: Good - Algorithmus 13 and DNSKEY with KeyTag 16275 used to validate the DNSKEY RRSet
|
|
|
|
|
| • Status: Good - Algorithmus 8 and DNSKEY with KeyTag 17674 used to validate the DNSKEY RRSet
|
|
|
|
|
| • Status: Good - Algorithmus 8 and DNSKEY with KeyTag 36784 used to validate the DNSKEY RRSet
|
|
|
|
|
| • Status: Good - Algorithmus 13 and DNSKEY with KeyTag 38084 used to validate the DNSKEY RRSet
|
|
|
|
|
| • Status: Valid Chain of trust. Parent-DS with Algorithm 13, KeyTag 16275, DigestType 2 and Digest "gBlLQ8LzsmtQfANZpkrWkVYzg/vgZl0pbu1U8JkKUac=" validates local Key with the same values, Key ist Secure Entry Point (SEP) of the zone
|
|
|
|
|
| • Status: Valid Chain of trust. Parent-DS with Algorithm 8, KeyTag 17674, DigestType 2 and Digest "5rtd/nMcSTrUTVOZEXtiHX+Rz47HJPErrDUZMZU4/u0=" validates local Key with the same values, Key ist Secure Entry Point (SEP) of the zone
|
|
|
|
|
| RRSIG Type 1 validates the A - Result: 209.141.42.15
Validated: RRSIG-Owner journal.rmbs.org., Algorithm: 8, 3 Labels, original TTL: 600 sec, Signature-expiration: 20.12.2021, 00:41:40 +, Signature-Inception: 20.11.2021, 00:41:40 +, KeyTag 36784, Signer-Name: journal.rmbs.org
|
|
|
|
|
| RRSIG Type 1 validates the A - Result: 209.141.42.15
Validated: RRSIG-Owner journal.rmbs.org., Algorithm: 8, 3 Labels, original TTL: 600 sec, Signature-expiration: 20.12.2021, 00:41:40 +, Signature-Inception: 20.11.2021, 00:41:40 +, KeyTag 36784, Signer-Name: journal.rmbs.org
|
|
|
|
|
| RRSIG Type 16 validates the TXT - Result: v=spf1 include:rmbs.org -all
spf2.0/pra,mfrom include:rmbs.org -all
Validated: RRSIG-Owner journal.rmbs.org., Algorithm: 8, 3 Labels, original TTL: 600 sec, Signature-expiration: 20.12.2021, 00:41:40 +, Signature-Inception: 20.11.2021, 00:41:40 +, KeyTag 36784, Signer-Name: journal.rmbs.org
|
|
|
|
|
| RRSIG Type 16 validates the TXT - Result: v=spf1 include:rmbs.org -all
spf2.0/pra,mfrom include:rmbs.org -all
Validated: RRSIG-Owner journal.rmbs.org., Algorithm: 8, 3 Labels, original TTL: 600 sec, Signature-expiration: 20.12.2021, 00:41:40 +, Signature-Inception: 20.11.2021, 00:41:40 +, KeyTag 36784, Signer-Name: journal.rmbs.org
|
|
|
|
|
| RRSIG Type 28 validates the AAAA - Result: 2605:6400:0020:1A97:0000:0000:0000:0005
Validated: RRSIG-Owner journal.rmbs.org., Algorithm: 8, 3 Labels, original TTL: 600 sec, Signature-expiration: 20.12.2021, 00:41:40 +, Signature-Inception: 20.11.2021, 00:41:40 +, KeyTag 36784, Signer-Name: journal.rmbs.org
|
|
|
|
|
| RRSIG Type 28 validates the AAAA - Result: 2605:6400:0020:1A97:0000:0000:0000:0005
Validated: RRSIG-Owner journal.rmbs.org., Algorithm: 8, 3 Labels, original TTL: 600 sec, Signature-expiration: 20.12.2021, 00:41:40 +, Signature-Inception: 20.11.2021, 00:41:40 +, KeyTag 36784, Signer-Name: journal.rmbs.org
|
|
|
|
|
| RRSIG Type 52 validates the TLSA - Result (_443._tcp.journal.rmbs.org): _443._tcp.journal.rmbs.org: CertUsage 3 (DANE-EE, Domain-issued certificate), Selector: 0 (Cert, Full certificate), Matching: 1 (SHA2-256, 256 bit hash by SHA2), CertificateAssociationData: 88af693ed5f979733c4df139e9ba95d07978a708a2518a2fd2e26696ea0de6ba
_443._tcp.journal.rmbs.org: CertUsage 3 (DANE-EE, Domain-issued certificate), Selector: 0 (Cert, Full certificate), Matching: 1 (SHA2-256, 256 bit hash by SHA2), CertificateAssociationData: a49a87085b2b908fb3d33878b31536ce6de5f07a01e3dc3b0d64e49488487609
_443._tcp.journal.rmbs.org: CertUsage 3 (DANE-EE, Domain-issued certificate), Selector: 0 (Cert, Full certificate), Matching: 1 (SHA2-256, 256 bit hash by SHA2), CertificateAssociationData: ecc4e4f7f74a9ae1fa7341e2a825c48b91740801ccfa9b95e37f27eb6274b0e1
_443._tcp.journal.rmbs.org: CertUsage 3 (DANE-EE, Domain-issued certificate), Selector: 0 (Cert, Full certificate), Matching: 1 (SHA2-256, 256 bit hash by SHA2), CertificateAssociationData: f8251a8b22e08ec3d47b2acbd50975b480bd5c7e0ebf90c15180b42a89692095
Validated: RRSIG-Owner _443._tcp.journal.rmbs.org., Algorithm: 8, 5 Labels, original TTL: 600 sec, Signature-expiration: 20.12.2021, 00:41:40 +, Signature-Inception: 20.11.2021, 00:41:40 +, KeyTag 36784, Signer-Name: journal.rmbs.org
|
|
|
|
|
| RRSIG Type 52 validates the TLSA - Result (_443._tcp.journal.rmbs.org): _443._tcp.journal.rmbs.org: CertUsage 3 (DANE-EE, Domain-issued certificate), Selector: 0 (Cert, Full certificate), Matching: 1 (SHA2-256, 256 bit hash by SHA2), CertificateAssociationData: 88af693ed5f979733c4df139e9ba95d07978a708a2518a2fd2e26696ea0de6ba
_443._tcp.journal.rmbs.org: CertUsage 3 (DANE-EE, Domain-issued certificate), Selector: 0 (Cert, Full certificate), Matching: 1 (SHA2-256, 256 bit hash by SHA2), CertificateAssociationData: a49a87085b2b908fb3d33878b31536ce6de5f07a01e3dc3b0d64e49488487609
_443._tcp.journal.rmbs.org: CertUsage 3 (DANE-EE, Domain-issued certificate), Selector: 0 (Cert, Full certificate), Matching: 1 (SHA2-256, 256 bit hash by SHA2), CertificateAssociationData: ecc4e4f7f74a9ae1fa7341e2a825c48b91740801ccfa9b95e37f27eb6274b0e1
_443._tcp.journal.rmbs.org: CertUsage 3 (DANE-EE, Domain-issued certificate), Selector: 0 (Cert, Full certificate), Matching: 1 (SHA2-256, 256 bit hash by SHA2), CertificateAssociationData: f8251a8b22e08ec3d47b2acbd50975b480bd5c7e0ebf90c15180b42a89692095
Validated: RRSIG-Owner _443._tcp.journal.rmbs.org., Algorithm: 8, 5 Labels, original TTL: 600 sec, Signature-expiration: 20.12.2021, 00:41:40 +, Signature-Inception: 20.11.2021, 00:41:40 +, KeyTag 36784, Signer-Name: journal.rmbs.org
|
|
|
|
|
| RRSIG Type 257 validates the CAA - Result: 5|iodefmailto:hostmaster@rmbs.org
5|issuesectigo.com
9|issuewildsectigo.com
Validated: RRSIG-Owner journal.rmbs.org., Algorithm: 8, 3 Labels, original TTL: 600 sec, Signature-expiration: 20.12.2021, 00:41:40 +, Signature-Inception: 20.11.2021, 00:41:40 +, KeyTag 36784, Signer-Name: journal.rmbs.org
|
|
|
|
|
| RRSIG Type 257 validates the CAA - Result: 5|iodefmailto:hostmaster@rmbs.org
5|issuesectigo.com
9|issuewildsectigo.com
Validated: RRSIG-Owner journal.rmbs.org., Algorithm: 8, 3 Labels, original TTL: 600 sec, Signature-expiration: 20.12.2021, 00:41:40 +, Signature-Inception: 20.11.2021, 00:41:40 +, KeyTag 36784, Signer-Name: journal.rmbs.org
|
|
|
|
|
| RRSIG Type 1 validates the A - Result: 209.141.42.15
Validated: RRSIG-Owner journal.rmbs.org., Algorithm: 13, 3 Labels, original TTL: 600 sec, Signature-expiration: 20.12.2021, 00:41:40 +, Signature-Inception: 20.11.2021, 00:41:40 +, KeyTag 38084, Signer-Name: journal.rmbs.org
|
|
|
|
|
| RRSIG Type 1 validates the A - Result: 209.141.42.15
Validated: RRSIG-Owner journal.rmbs.org., Algorithm: 13, 3 Labels, original TTL: 600 sec, Signature-expiration: 20.12.2021, 00:41:40 +, Signature-Inception: 20.11.2021, 00:41:40 +, KeyTag 38084, Signer-Name: journal.rmbs.org
|
|
|
|
|
| RRSIG Type 16 validates the TXT - Result: v=spf1 include:rmbs.org -all
spf2.0/pra,mfrom include:rmbs.org -all
Validated: RRSIG-Owner journal.rmbs.org., Algorithm: 13, 3 Labels, original TTL: 600 sec, Signature-expiration: 20.12.2021, 00:41:40 +, Signature-Inception: 20.11.2021, 00:41:40 +, KeyTag 38084, Signer-Name: journal.rmbs.org
|
|
|
|
|
| RRSIG Type 16 validates the TXT - Result: v=spf1 include:rmbs.org -all
spf2.0/pra,mfrom include:rmbs.org -all
Validated: RRSIG-Owner journal.rmbs.org., Algorithm: 13, 3 Labels, original TTL: 600 sec, Signature-expiration: 20.12.2021, 00:41:40 +, Signature-Inception: 20.11.2021, 00:41:40 +, KeyTag 38084, Signer-Name: journal.rmbs.org
|
|
|
|
|
| RRSIG Type 28 validates the AAAA - Result: 2605:6400:0020:1A97:0000:0000:0000:0005
Validated: RRSIG-Owner journal.rmbs.org., Algorithm: 13, 3 Labels, original TTL: 600 sec, Signature-expiration: 20.12.2021, 00:41:40 +, Signature-Inception: 20.11.2021, 00:41:40 +, KeyTag 38084, Signer-Name: journal.rmbs.org
|
|
|
|
|
| RRSIG Type 28 validates the AAAA - Result: 2605:6400:0020:1A97:0000:0000:0000:0005
Validated: RRSIG-Owner journal.rmbs.org., Algorithm: 13, 3 Labels, original TTL: 600 sec, Signature-expiration: 20.12.2021, 00:41:40 +, Signature-Inception: 20.11.2021, 00:41:40 +, KeyTag 38084, Signer-Name: journal.rmbs.org
|
|
|
|
|
| RRSIG Type 52 validates the TLSA - Result (_443._tcp.journal.rmbs.org): _443._tcp.journal.rmbs.org: CertUsage 3 (DANE-EE, Domain-issued certificate), Selector: 0 (Cert, Full certificate), Matching: 1 (SHA2-256, 256 bit hash by SHA2), CertificateAssociationData: 88af693ed5f979733c4df139e9ba95d07978a708a2518a2fd2e26696ea0de6ba
_443._tcp.journal.rmbs.org: CertUsage 3 (DANE-EE, Domain-issued certificate), Selector: 0 (Cert, Full certificate), Matching: 1 (SHA2-256, 256 bit hash by SHA2), CertificateAssociationData: a49a87085b2b908fb3d33878b31536ce6de5f07a01e3dc3b0d64e49488487609
_443._tcp.journal.rmbs.org: CertUsage 3 (DANE-EE, Domain-issued certificate), Selector: 0 (Cert, Full certificate), Matching: 1 (SHA2-256, 256 bit hash by SHA2), CertificateAssociationData: ecc4e4f7f74a9ae1fa7341e2a825c48b91740801ccfa9b95e37f27eb6274b0e1
_443._tcp.journal.rmbs.org: CertUsage 3 (DANE-EE, Domain-issued certificate), Selector: 0 (Cert, Full certificate), Matching: 1 (SHA2-256, 256 bit hash by SHA2), CertificateAssociationData: f8251a8b22e08ec3d47b2acbd50975b480bd5c7e0ebf90c15180b42a89692095
Validated: RRSIG-Owner _443._tcp.journal.rmbs.org., Algorithm: 13, 5 Labels, original TTL: 600 sec, Signature-expiration: 20.12.2021, 00:41:40 +, Signature-Inception: 20.11.2021, 00:41:40 +, KeyTag 38084, Signer-Name: journal.rmbs.org
|
|
|
|
|
| RRSIG Type 52 validates the TLSA - Result (_443._tcp.journal.rmbs.org): _443._tcp.journal.rmbs.org: CertUsage 3 (DANE-EE, Domain-issued certificate), Selector: 0 (Cert, Full certificate), Matching: 1 (SHA2-256, 256 bit hash by SHA2), CertificateAssociationData: 88af693ed5f979733c4df139e9ba95d07978a708a2518a2fd2e26696ea0de6ba
_443._tcp.journal.rmbs.org: CertUsage 3 (DANE-EE, Domain-issued certificate), Selector: 0 (Cert, Full certificate), Matching: 1 (SHA2-256, 256 bit hash by SHA2), CertificateAssociationData: a49a87085b2b908fb3d33878b31536ce6de5f07a01e3dc3b0d64e49488487609
_443._tcp.journal.rmbs.org: CertUsage 3 (DANE-EE, Domain-issued certificate), Selector: 0 (Cert, Full certificate), Matching: 1 (SHA2-256, 256 bit hash by SHA2), CertificateAssociationData: ecc4e4f7f74a9ae1fa7341e2a825c48b91740801ccfa9b95e37f27eb6274b0e1
_443._tcp.journal.rmbs.org: CertUsage 3 (DANE-EE, Domain-issued certificate), Selector: 0 (Cert, Full certificate), Matching: 1 (SHA2-256, 256 bit hash by SHA2), CertificateAssociationData: f8251a8b22e08ec3d47b2acbd50975b480bd5c7e0ebf90c15180b42a89692095
Validated: RRSIG-Owner _443._tcp.journal.rmbs.org., Algorithm: 13, 5 Labels, original TTL: 600 sec, Signature-expiration: 20.12.2021, 00:41:40 +, Signature-Inception: 20.11.2021, 00:41:40 +, KeyTag 38084, Signer-Name: journal.rmbs.org
|
|
|
|
|
| RRSIG Type 257 validates the CAA - Result: 5|iodefmailto:hostmaster@rmbs.org
5|issuesectigo.com
9|issuewildsectigo.com
Validated: RRSIG-Owner journal.rmbs.org., Algorithm: 13, 3 Labels, original TTL: 600 sec, Signature-expiration: 20.12.2021, 00:41:40 +, Signature-Inception: 20.11.2021, 00:41:40 +, KeyTag 38084, Signer-Name: journal.rmbs.org
|
|
|
|
|
| RRSIG Type 257 validates the CAA - Result: 5|iodefmailto:hostmaster@rmbs.org
5|issuesectigo.com
9|issuewildsectigo.com
Validated: RRSIG-Owner journal.rmbs.org., Algorithm: 13, 3 Labels, original TTL: 600 sec, Signature-expiration: 20.12.2021, 00:41:40 +, Signature-Inception: 20.11.2021, 00:41:40 +, KeyTag 38084, Signer-Name: journal.rmbs.org
|
|
|
|
|
| CNAME-Query sends a valid NSEC3 RR as result with the hashed query name "uv9tr1blvu53pgfpm4sf5b3uj12bkoo5" equal the hashed NSEC3-owner "uv9tr1blvu53pgfpm4sf5b3uj12bkoo5" and the hashed NextOwner "v85b6hvg706m6sk8teenhb0hnpnr50i7". So the zone confirmes the not-existence of that CNAME RR, but the existence of that query name (minimal one RR with that name exists).
Bitmap: A, NS, SOA, MX, TXT, AAAA, RRSIG, DNSKEY, NSEC3PARAM, CAA Validated: RRSIG-Owner uv9tr1blvu53pgfpm4sf5b3uj12bkoo5.journal.rmbs.org., Algorithm: 13, 4 Labels, original TTL: 300 sec, Signature-expiration: 20.12.2021, 00:41:40 +, Signature-Inception: 20.11.2021, 00:41:40 +, KeyTag 38084, Signer-Name: journal.rmbs.org
|
|
|
|
|
| Status: Good. NoData-Proof required and found.
|
|
|
Zone: www.journal.rmbs.org
|
|
www.journal.rmbs.org
| 0 DS RR in the parent zone found
|
|
|
|
|
| DS-Query in the parent zone has a valid NSEC3 RR as result with the hashed query name "24a58pd6uem38jcdjan1lhq7lgcog6n3" between the hashed NSEC3-owner "24a58pd6uem38jcdjan1lhq7lgcog6n3" and the hashed NextOwner "2bkof9l3qqr3mviic1bq0aiclsg8l7sk". So the parent zone confirmes the not-existence of a DS RR.
Bitmap: A, TXT, AAAA, RRSIG Validated: RRSIG-Owner 24a58pd6uem38jcdjan1lhq7lgcog6n3.journal.rmbs.org., Algorithm: 8, 4 Labels, original TTL: 300 sec, Signature-expiration: 20.12.2021, 00:41:40 +, Signature-Inception: 20.11.2021, 00:41:40 +, KeyTag 36784, Signer-Name: journal.rmbs.org
|
|
|
|
|
| DS-Query in the parent zone has a valid NSEC3 RR as result with the hashed query name "24a58pd6uem38jcdjan1lhq7lgcog6n3" between the hashed NSEC3-owner "24a58pd6uem38jcdjan1lhq7lgcog6n3" and the hashed NextOwner "2bkof9l3qqr3mviic1bq0aiclsg8l7sk". So the parent zone confirmes the not-existence of a DS RR.
Bitmap: A, TXT, AAAA, RRSIG Validated: RRSIG-Owner 24a58pd6uem38jcdjan1lhq7lgcog6n3.journal.rmbs.org., Algorithm: 13, 4 Labels, original TTL: 300 sec, Signature-expiration: 20.12.2021, 00:41:40 +, Signature-Inception: 20.11.2021, 00:41:40 +, KeyTag 38084, Signer-Name: journal.rmbs.org
|
|
|
|
|
| RRSIG Type 1 validates the A - Result: 209.141.42.15
Validated: RRSIG-Owner www.journal.rmbs.org., Algorithm: 8, 4 Labels, original TTL: 600 sec, Signature-expiration: 20.12.2021, 00:41:40 +, Signature-Inception: 20.11.2021, 00:41:40 +, KeyTag 36784, Signer-Name: journal.rmbs.org
|
|
|
|
|
| RRSIG Type 1 validates the A - Result: 209.141.42.15
Validated: RRSIG-Owner www.journal.rmbs.org., Algorithm: 8, 4 Labels, original TTL: 600 sec, Signature-expiration: 20.12.2021, 00:41:40 +, Signature-Inception: 20.11.2021, 00:41:40 +, KeyTag 36784, Signer-Name: journal.rmbs.org
|
|
|
|
|
| RRSIG Type 16 validates the TXT - Result: v=spf1 -all
v=spf2 /pra,mfrom -all
Validated: RRSIG-Owner www.journal.rmbs.org., Algorithm: 8, 4 Labels, original TTL: 600 sec, Signature-expiration: 20.12.2021, 00:41:40 +, Signature-Inception: 20.11.2021, 00:41:40 +, KeyTag 36784, Signer-Name: journal.rmbs.org
|
|
|
|
|
| RRSIG Type 16 validates the TXT - Result: v=spf1 -all
v=spf2 /pra,mfrom -all
Validated: RRSIG-Owner www.journal.rmbs.org., Algorithm: 8, 4 Labels, original TTL: 600 sec, Signature-expiration: 20.12.2021, 00:41:40 +, Signature-Inception: 20.11.2021, 00:41:40 +, KeyTag 36784, Signer-Name: journal.rmbs.org
|
|
|
|
|
| RRSIG Type 28 validates the AAAA - Result: 2605:6400:0020:1A97:0000:0000:0000:0005
Validated: RRSIG-Owner www.journal.rmbs.org., Algorithm: 8, 4 Labels, original TTL: 600 sec, Signature-expiration: 20.12.2021, 00:41:40 +, Signature-Inception: 20.11.2021, 00:41:40 +, KeyTag 36784, Signer-Name: journal.rmbs.org
|
|
|
|
|
| RRSIG Type 28 validates the AAAA - Result: 2605:6400:0020:1A97:0000:0000:0000:0005
Validated: RRSIG-Owner www.journal.rmbs.org., Algorithm: 8, 4 Labels, original TTL: 600 sec, Signature-expiration: 20.12.2021, 00:41:40 +, Signature-Inception: 20.11.2021, 00:41:40 +, KeyTag 36784, Signer-Name: journal.rmbs.org
|
|
|
|
|
| RRSIG Type 52 validates the TLSA - Result (_443._tcp.www.journal.rmbs.org): _443._tcp.www.journal.rmbs.org: CertUsage 3 (DANE-EE, Domain-issued certificate), Selector: 0 (Cert, Full certificate), Matching: 1 (SHA2-256, 256 bit hash by SHA2), CertificateAssociationData: 88af693ed5f979733c4df139e9ba95d07978a708a2518a2fd2e26696ea0de6ba
_443._tcp.www.journal.rmbs.org: CertUsage 3 (DANE-EE, Domain-issued certificate), Selector: 0 (Cert, Full certificate), Matching: 1 (SHA2-256, 256 bit hash by SHA2), CertificateAssociationData: a49a87085b2b908fb3d33878b31536ce6de5f07a01e3dc3b0d64e49488487609
_443._tcp.www.journal.rmbs.org: CertUsage 3 (DANE-EE, Domain-issued certificate), Selector: 0 (Cert, Full certificate), Matching: 1 (SHA2-256, 256 bit hash by SHA2), CertificateAssociationData: ecc4e4f7f74a9ae1fa7341e2a825c48b91740801ccfa9b95e37f27eb6274b0e1
_443._tcp.www.journal.rmbs.org: CertUsage 3 (DANE-EE, Domain-issued certificate), Selector: 0 (Cert, Full certificate), Matching: 1 (SHA2-256, 256 bit hash by SHA2), CertificateAssociationData: f8251a8b22e08ec3d47b2acbd50975b480bd5c7e0ebf90c15180b42a89692095
Validated: RRSIG-Owner _443._tcp.www.journal.rmbs.org., Algorithm: 8, 6 Labels, original TTL: 600 sec, Signature-expiration: 20.12.2021, 00:41:40 +, Signature-Inception: 20.11.2021, 00:41:40 +, KeyTag 36784, Signer-Name: journal.rmbs.org
|
|
|
|
|
| RRSIG Type 52 validates the TLSA - Result (_443._tcp.www.journal.rmbs.org): _443._tcp.www.journal.rmbs.org: CertUsage 3 (DANE-EE, Domain-issued certificate), Selector: 0 (Cert, Full certificate), Matching: 1 (SHA2-256, 256 bit hash by SHA2), CertificateAssociationData: 88af693ed5f979733c4df139e9ba95d07978a708a2518a2fd2e26696ea0de6ba
_443._tcp.www.journal.rmbs.org: CertUsage 3 (DANE-EE, Domain-issued certificate), Selector: 0 (Cert, Full certificate), Matching: 1 (SHA2-256, 256 bit hash by SHA2), CertificateAssociationData: a49a87085b2b908fb3d33878b31536ce6de5f07a01e3dc3b0d64e49488487609
_443._tcp.www.journal.rmbs.org: CertUsage 3 (DANE-EE, Domain-issued certificate), Selector: 0 (Cert, Full certificate), Matching: 1 (SHA2-256, 256 bit hash by SHA2), CertificateAssociationData: ecc4e4f7f74a9ae1fa7341e2a825c48b91740801ccfa9b95e37f27eb6274b0e1
_443._tcp.www.journal.rmbs.org: CertUsage 3 (DANE-EE, Domain-issued certificate), Selector: 0 (Cert, Full certificate), Matching: 1 (SHA2-256, 256 bit hash by SHA2), CertificateAssociationData: f8251a8b22e08ec3d47b2acbd50975b480bd5c7e0ebf90c15180b42a89692095
Validated: RRSIG-Owner _443._tcp.www.journal.rmbs.org., Algorithm: 8, 6 Labels, original TTL: 600 sec, Signature-expiration: 20.12.2021, 00:41:40 +, Signature-Inception: 20.11.2021, 00:41:40 +, KeyTag 36784, Signer-Name: journal.rmbs.org
|
|
|
|
|
| RRSIG Type 1 validates the A - Result: 209.141.42.15
Validated: RRSIG-Owner www.journal.rmbs.org., Algorithm: 13, 4 Labels, original TTL: 600 sec, Signature-expiration: 20.12.2021, 00:41:40 +, Signature-Inception: 20.11.2021, 00:41:40 +, KeyTag 38084, Signer-Name: journal.rmbs.org
|
|
|
|
|
| RRSIG Type 1 validates the A - Result: 209.141.42.15
Validated: RRSIG-Owner www.journal.rmbs.org., Algorithm: 13, 4 Labels, original TTL: 600 sec, Signature-expiration: 20.12.2021, 00:41:40 +, Signature-Inception: 20.11.2021, 00:41:40 +, KeyTag 38084, Signer-Name: journal.rmbs.org
|
|
|
|
|
| RRSIG Type 16 validates the TXT - Result: v=spf1 -all
v=spf2 /pra,mfrom -all
Validated: RRSIG-Owner www.journal.rmbs.org., Algorithm: 13, 4 Labels, original TTL: 600 sec, Signature-expiration: 20.12.2021, 00:41:40 +, Signature-Inception: 20.11.2021, 00:41:40 +, KeyTag 38084, Signer-Name: journal.rmbs.org
|
|
|
|
|
| RRSIG Type 16 validates the TXT - Result: v=spf1 -all
v=spf2 /pra,mfrom -all
Validated: RRSIG-Owner www.journal.rmbs.org., Algorithm: 13, 4 Labels, original TTL: 600 sec, Signature-expiration: 20.12.2021, 00:41:40 +, Signature-Inception: 20.11.2021, 00:41:40 +, KeyTag 38084, Signer-Name: journal.rmbs.org
|
|
|
|
|
| RRSIG Type 28 validates the AAAA - Result: 2605:6400:0020:1A97:0000:0000:0000:0005
Validated: RRSIG-Owner www.journal.rmbs.org., Algorithm: 13, 4 Labels, original TTL: 600 sec, Signature-expiration: 20.12.2021, 00:41:40 +, Signature-Inception: 20.11.2021, 00:41:40 +, KeyTag 38084, Signer-Name: journal.rmbs.org
|
|
|
|
|
| RRSIG Type 28 validates the AAAA - Result: 2605:6400:0020:1A97:0000:0000:0000:0005
Validated: RRSIG-Owner www.journal.rmbs.org., Algorithm: 13, 4 Labels, original TTL: 600 sec, Signature-expiration: 20.12.2021, 00:41:40 +, Signature-Inception: 20.11.2021, 00:41:40 +, KeyTag 38084, Signer-Name: journal.rmbs.org
|
|
|
|
|
| RRSIG Type 52 validates the TLSA - Result (_443._tcp.www.journal.rmbs.org): _443._tcp.www.journal.rmbs.org: CertUsage 3 (DANE-EE, Domain-issued certificate), Selector: 0 (Cert, Full certificate), Matching: 1 (SHA2-256, 256 bit hash by SHA2), CertificateAssociationData: 88af693ed5f979733c4df139e9ba95d07978a708a2518a2fd2e26696ea0de6ba
_443._tcp.www.journal.rmbs.org: CertUsage 3 (DANE-EE, Domain-issued certificate), Selector: 0 (Cert, Full certificate), Matching: 1 (SHA2-256, 256 bit hash by SHA2), CertificateAssociationData: a49a87085b2b908fb3d33878b31536ce6de5f07a01e3dc3b0d64e49488487609
_443._tcp.www.journal.rmbs.org: CertUsage 3 (DANE-EE, Domain-issued certificate), Selector: 0 (Cert, Full certificate), Matching: 1 (SHA2-256, 256 bit hash by SHA2), CertificateAssociationData: ecc4e4f7f74a9ae1fa7341e2a825c48b91740801ccfa9b95e37f27eb6274b0e1
_443._tcp.www.journal.rmbs.org: CertUsage 3 (DANE-EE, Domain-issued certificate), Selector: 0 (Cert, Full certificate), Matching: 1 (SHA2-256, 256 bit hash by SHA2), CertificateAssociationData: f8251a8b22e08ec3d47b2acbd50975b480bd5c7e0ebf90c15180b42a89692095
Validated: RRSIG-Owner _443._tcp.www.journal.rmbs.org., Algorithm: 13, 6 Labels, original TTL: 600 sec, Signature-expiration: 20.12.2021, 00:41:40 +, Signature-Inception: 20.11.2021, 00:41:40 +, KeyTag 38084, Signer-Name: journal.rmbs.org
|
|
|
|
|
| RRSIG Type 52 validates the TLSA - Result (_443._tcp.www.journal.rmbs.org): _443._tcp.www.journal.rmbs.org: CertUsage 3 (DANE-EE, Domain-issued certificate), Selector: 0 (Cert, Full certificate), Matching: 1 (SHA2-256, 256 bit hash by SHA2), CertificateAssociationData: 88af693ed5f979733c4df139e9ba95d07978a708a2518a2fd2e26696ea0de6ba
_443._tcp.www.journal.rmbs.org: CertUsage 3 (DANE-EE, Domain-issued certificate), Selector: 0 (Cert, Full certificate), Matching: 1 (SHA2-256, 256 bit hash by SHA2), CertificateAssociationData: a49a87085b2b908fb3d33878b31536ce6de5f07a01e3dc3b0d64e49488487609
_443._tcp.www.journal.rmbs.org: CertUsage 3 (DANE-EE, Domain-issued certificate), Selector: 0 (Cert, Full certificate), Matching: 1 (SHA2-256, 256 bit hash by SHA2), CertificateAssociationData: ecc4e4f7f74a9ae1fa7341e2a825c48b91740801ccfa9b95e37f27eb6274b0e1
_443._tcp.www.journal.rmbs.org: CertUsage 3 (DANE-EE, Domain-issued certificate), Selector: 0 (Cert, Full certificate), Matching: 1 (SHA2-256, 256 bit hash by SHA2), CertificateAssociationData: f8251a8b22e08ec3d47b2acbd50975b480bd5c7e0ebf90c15180b42a89692095
Validated: RRSIG-Owner _443._tcp.www.journal.rmbs.org., Algorithm: 13, 6 Labels, original TTL: 600 sec, Signature-expiration: 20.12.2021, 00:41:40 +, Signature-Inception: 20.11.2021, 00:41:40 +, KeyTag 38084, Signer-Name: journal.rmbs.org
|
|
|
|
|
| CNAME-Query sends a valid NSEC3 RR as result with the hashed query name "24a58pd6uem38jcdjan1lhq7lgcog6n3" equal the hashed NSEC3-owner "24a58pd6uem38jcdjan1lhq7lgcog6n3" and the hashed NextOwner "2bkof9l3qqr3mviic1bq0aiclsg8l7sk". So the zone confirmes the not-existence of that CNAME RR, but the existence of that query name (minimal one RR with that name exists).
Bitmap: A, TXT, AAAA, RRSIG Validated: RRSIG-Owner 24a58pd6uem38jcdjan1lhq7lgcog6n3.journal.rmbs.org., Algorithm: 13, 4 Labels, original TTL: 300 sec, Signature-expiration: 20.12.2021, 00:41:40 +, Signature-Inception: 20.11.2021, 00:41:40 +, KeyTag 38084, Signer-Name: journal.rmbs.org
|
|
|
|
|
| Status: Good. NoData-Proof required and found.
|
|
|
|
|
| CAA-Query sends a valid NSEC3 RR as result with the hashed query name "24a58pd6uem38jcdjan1lhq7lgcog6n3" equal the hashed NSEC3-owner "24a58pd6uem38jcdjan1lhq7lgcog6n3" and the hashed NextOwner "2bkof9l3qqr3mviic1bq0aiclsg8l7sk". So the zone confirmes the not-existence of that CAA RR, but the existence of that query name (minimal one RR with that name exists).
Bitmap: A, TXT, AAAA, RRSIG Validated: RRSIG-Owner 24a58pd6uem38jcdjan1lhq7lgcog6n3.journal.rmbs.org., Algorithm: 13, 4 Labels, original TTL: 300 sec, Signature-expiration: 20.12.2021, 00:41:40 +, Signature-Inception: 20.11.2021, 00:41:40 +, KeyTag 38084, Signer-Name: journal.rmbs.org
|
|
|
|
|
| Status: Good. NoData-Proof required and found.
|