Zone (*) | DNSSEC - Informations |
---|
|
|
Zone: (root)
|
|
(root)
| 1 DS RR published
|
|
|
|
|
| • Status: Valid because published
|
|
|
|
|
| 2 DNSKEY RR found
|
|
|
|
|
| Public Key with Algorithm 8, KeyTag 20326, Flags 257 (SEP = Secure Entry Point)
|
|
|
|
|
| Public Key with Algorithm 8, KeyTag 59944, Flags 256
|
|
|
|
|
| 1 RRSIG RR to validate DNSKEY RR found
|
|
|
|
|
| RRSIG-Owner (root), Algorithm: 8, 0 Labels, original TTL: 172800 sec, Signature-expiration: 20.09.2019, 00:00:00 +, Signature-Inception: 30.08.2019, 00:00:00 +, KeyTag 20326, Signer-Name: (root)
|
|
|
|
|
| • Status: Good - Algorithmus 8 and DNSKEY with KeyTag 20326 used to validate the DNSKEY RRSet
|
|
|
|
|
| • Status: Valid Chain of trust. Parent-DS with Algorithm 8, KeyTag 20326, DigestType 2 and Digest "4G1EuAuPHTmpXAsNfGXQhFjogECbvGg0VxBCN8f47I0=" validates local Key with the same values, Key ist Secure Entry Point (SEP) of the zone
|
|
|
Zone: org
|
|
org
| 2 DS RR in the parent zone found
|
|
|
|
|
| 1 RRSIG RR to validate DS RR found
|
|
|
|
|
| RRSIG-Owner org., Algorithm: 8, 1 Labels, original TTL: 86400 sec, Signature-expiration: 13.09.2019, 15:00:00 +, Signature-Inception: 31.08.2019, 14:00:00 +, KeyTag 59944, Signer-Name: (root)
|
|
|
|
|
| • Status: Good - Algorithmus 8 and DNSKEY with KeyTag 59944 used to validate the DS RRSet in the parent zone
|
|
|
|
|
| 4 DNSKEY RR found
|
|
|
|
|
| Public Key with Algorithm 7, KeyTag 9795, Flags 257 (SEP = Secure Entry Point)
|
|
|
|
|
| Public Key with Algorithm 7, KeyTag 17883, Flags 257 (SEP = Secure Entry Point)
|
|
|
|
|
| Public Key with Algorithm 7, KeyTag 44078, Flags 256
|
|
|
|
|
| Public Key with Algorithm 7, KeyTag 47612, Flags 256
|
|
|
|
|
| 3 RRSIG RR to validate DNSKEY RR found
|
|
|
|
|
| RRSIG-Owner org., Algorithm: 7, 1 Labels, original TTL: 900 sec, Signature-expiration: 15.09.2019, 15:28:19 +, Signature-Inception: 25.08.2019, 14:28:19 +, KeyTag 9795, Signer-Name: org
|
|
|
|
|
| RRSIG-Owner org., Algorithm: 7, 1 Labels, original TTL: 900 sec, Signature-expiration: 15.09.2019, 15:28:19 +, Signature-Inception: 25.08.2019, 14:28:19 +, KeyTag 17883, Signer-Name: org
|
|
|
|
|
| RRSIG-Owner org., Algorithm: 7, 1 Labels, original TTL: 900 sec, Signature-expiration: 15.09.2019, 15:28:19 +, Signature-Inception: 25.08.2019, 14:28:19 +, KeyTag 44078, Signer-Name: org
|
|
|
|
|
| • Status: Good - Algorithmus 7 and DNSKEY with KeyTag 9795 used to validate the DNSKEY RRSet
|
|
|
|
|
| • Status: Good - Algorithmus 7 and DNSKEY with KeyTag 17883 used to validate the DNSKEY RRSet
|
|
|
|
|
| • Status: Good - Algorithmus 7 and DNSKEY with KeyTag 44078 used to validate the DNSKEY RRSet
|
|
|
|
|
| • Status: Valid Chain of trust. Parent-DS with Algorithm 7, KeyTag 9795, DigestType 1 and Digest "Nk36s9ryVMq0d7VnWxB2bdqiSYI=" validates local Key with the same values, Key ist Secure Entry Point (SEP) of the zone
|
|
|
|
|
| • Status: Valid Chain of trust. Parent-DS with Algorithm 7, KeyTag 9795, DigestType 2 and Digest "OSKzG286TqkrGet7UhIPAx/Y4F/wsDuvz5+JG/5/+OU=" validates local Key with the same values, Key ist Secure Entry Point (SEP) of the zone
|
|
|
Zone: logactiond.org
|
|
logactiond.org
| 1 DS RR in the parent zone found
|
|
|
|
|
| 1 RRSIG RR to validate DS RR found
|
|
|
|
|
| RRSIG-Owner logactiond.org., Algorithm: 7, 2 Labels, original TTL: 86400 sec, Signature-expiration: 21.09.2019, 15:14:32 +, Signature-Inception: 31.08.2019, 14:14:32 +, KeyTag 44078, Signer-Name: org
|
|
|
|
|
| • Status: Good - Algorithmus 7 and DNSKEY with KeyTag 44078 used to validate the DS RRSet in the parent zone
|
|
|
|
|
| 2 DNSKEY RR found
|
|
|
|
|
| Public Key with Algorithm 7, KeyTag 14924, Flags 256
|
|
|
|
|
| Public Key with Algorithm 7, KeyTag 53910, Flags 257 (SEP = Secure Entry Point)
|
|
|
|
|
| 2 RRSIG RR to validate DNSKEY RR found
|
|
|
|
|
| RRSIG-Owner logactiond.org., Algorithm: 7, 2 Labels, original TTL: 259200 sec, Signature-expiration: 30.09.2019, 15:01:29 +, Signature-Inception: 31.08.2019, 14:01:29 +, KeyTag 14924, Signer-Name: logactiond.org
|
|
|
|
|
| RRSIG-Owner logactiond.org., Algorithm: 7, 2 Labels, original TTL: 259200 sec, Signature-expiration: 30.09.2019, 15:01:29 +, Signature-Inception: 31.08.2019, 14:01:29 +, KeyTag 53910, Signer-Name: logactiond.org
|
|
|
|
|
| • Status: Good - Algorithmus 7 and DNSKEY with KeyTag 14924 used to validate the DNSKEY RRSet
|
|
|
|
|
| • Status: Good - Algorithmus 7 and DNSKEY with KeyTag 53910 used to validate the DNSKEY RRSet
|
|
|
|
|
| • Status: Valid Chain of trust. Parent-DS with Algorithm 7, KeyTag 53910, DigestType 2 and Digest "BPMpzyJTCAS0rg6t4zaDdf3P98/gNddrdLwvqYq/gEM=" validates local Key with the same values, Key ist Secure Entry Point (SEP) of the zone
|
|
|
|
|
| RRSIG Type 1 validates the A - Result: 185.228.136.144
Validated: RRSIG-Owner logactiond.org., Algorithm: 7, 2 Labels, original TTL: 259200 sec, Signature-expiration: 30.09.2019, 14:23:20 +, Signature-Inception: 31.08.2019, 14:01:29 +, KeyTag 14924, Signer-Name: logactiond.org
|
|
|
|
|
| RRSIG Type 16 validates the TXT - Result: v=spf1 ip4:217.10.14.233 ip4:217.10.14.44 ip4:185.228.136.144 ip4:188.68.45.194 ip4:5.189.136.46 ip4:173.249.21.64 ip6:2a02:c207:3002:7375::1/64 ip6:2a03:4000:23:8c::1/64 ~all
Validated: RRSIG-Owner logactiond.org., Algorithm: 7, 2 Labels, original TTL: 259200 sec, Signature-expiration: 30.09.2019, 14:23:20 +, Signature-Inception: 31.08.2019, 14:01:29 +, KeyTag 14924, Signer-Name: logactiond.org
|
|
|
|
|
| RRSIG Type 28 validates the AAAA - Result: 2A03:4000:0023:008C:0000:0000:0000:0001
Validated: RRSIG-Owner logactiond.org., Algorithm: 7, 2 Labels, original TTL: 259200 sec, Signature-expiration: 30.09.2019, 14:23:20 +, Signature-Inception: 31.08.2019, 14:01:29 +, KeyTag 14924, Signer-Name: logactiond.org
|
|
|
|
|
| RRSIG Type 52 validates the TLSA - Result (_443._tcp.logactiond.org): _443._tcp.logactiond.org: CertUsage 2 (DANE-TA, Trust anchor assertion), Selector: 1 (SPKI, SubjectPublicKeyInfo), Matching: 1 (SHA2-256, 256 bit hash by SHA2), CertificateAssociationData: 60b87575447dcba2a36b7d11ac09fb24a9db406fee12d2cc90180517616e8a18
Validated: RRSIG-Owner _443._tcp.logactiond.org., Algorithm: 7, 4 Labels, original TTL: 259200 sec, Signature-expiration: 30.09.2019, 15:54:32 +, Signature-Inception: 31.08.2019, 14:54:32 +, KeyTag 14924, Signer-Name: logactiond.org
|
|
|
|
|
| RRSIG Type 257 validates the CAA - Result: 5|iodefmailto:hostmaster@aw.net
5|issueletsencrypt.org
9|issuewildletsencrypt.org
Validated: RRSIG-Owner logactiond.org., Algorithm: 7, 2 Labels, original TTL: 259200 sec, Signature-expiration: 30.09.2019, 14:23:20 +, Signature-Inception: 31.08.2019, 14:01:29 +, KeyTag 14924, Signer-Name: logactiond.org
|
|
|
|
|
| RRSIG Type 50, expiration 2019-09-30 15:49:55 + validates the NSEC3 RR that proves the not-existence of the CNAME RR.
Bitmap: A, NS, SOA, MX, TXT, RP, AAAA, RRSIG, DNSKEY, NSEC3PARAM, CAA
|
|
|
Zone: www.logactiond.org
|
|
www.logactiond.org
| 0 DS RR in the parent zone found
|
|
|
|
|
| RRSIG Type 1 validates the A - Result: 185.228.136.144
Validated: RRSIG-Owner www.logactiond.org., Algorithm: 7, 3 Labels, original TTL: 259200 sec, Signature-expiration: 30.09.2019, 14:54:52 +, Signature-Inception: 31.08.2019, 14:01:29 +, KeyTag 14924, Signer-Name: logactiond.org
|
|
|
|
|
| RRSIG Type 28 validates the AAAA - Result: 2A03:4000:0023:008C:0000:0000:0000:0001
Validated: RRSIG-Owner www.logactiond.org., Algorithm: 7, 3 Labels, original TTL: 259200 sec, Signature-expiration: 30.09.2019, 14:54:52 +, Signature-Inception: 31.08.2019, 14:01:29 +, KeyTag 14924, Signer-Name: logactiond.org
|
|
|
|
|
| RRSIG Type 50, expiration 2019-09-30 15:49:55 + validates the NSEC3 RR that proves the not-existence of the CNAME RR.
Bitmap: A, RP, AAAA, RRSIG
|
|
|
|
|
| RRSIG Type 50, expiration 2019-09-30 15:49:55 + validates the NSEC3 RR that proves the not-existence of the TXT RR.
Bitmap: A, RP, AAAA, RRSIG
|
|
|
|
|
| RRSIG Type 50, expiration 2019-09-30 15:49:55 + validates the NSEC3 RR that proves the not-existence of the TLSA RR.
Bitmap: A, RP, AAAA, RRSIG
|
|
|
|
|
| RRSIG Type 50, expiration 2019-09-30 15:49:55 + validates the NSEC3 RR that proves the not-existence of the TLSA RR.
Bitmap: TXT, RRSIG
|
|
|
|
|
| RRSIG Type 50, expiration 2019-09-30 15:49:55 + validates the NSEC3 RR that proves the not-existence of the CAA RR.
Bitmap: A, RP, AAAA, RRSIG
|