Zone (*) | DNSSEC - Informations |
---|
|
|
Zone: (root)
|
|
(root)
| 1 DS RR published
|
|
|
|
|
| • Status: Valid because published
|
|
|
|
|
| 2 DNSKEY RR found
|
|
|
|
|
| Public Key with Algorithm 8, KeyTag 20326, Flags 257 (SEP = Secure Entry Point)
|
|
|
|
|
| Public Key with Algorithm 8, KeyTag 33853, Flags 256
|
|
|
|
|
| 1 RRSIG RR to validate DNSKEY RR found
|
|
|
|
|
| RRSIG-Owner (root), Algorithm: 8, 0 Labels, original TTL: 172800 sec, Signature-expiration: 21.02.2020, 00:00:00 +, Signature-Inception: 31.01.2020, 00:00:00 +, KeyTag 20326, Signer-Name: (root)
|
|
|
|
|
| • Status: Good - Algorithmus 8 and DNSKEY with KeyTag 20326 used to validate the DNSKEY RRSet
|
|
|
|
|
| • Status: Valid Chain of trust. Parent-DS with Algorithm 8, KeyTag 20326, DigestType 2 and Digest "4G1EuAuPHTmpXAsNfGXQhFjogECbvGg0VxBCN8f47I0=" validates local Key with the same values, Key ist Secure Entry Point (SEP) of the zone
|
|
|
Zone: nz
|
|
nz
| 4 DS RR in the parent zone found
|
|
|
|
|
| 1 RRSIG RR to validate DS RR found
|
|
|
|
|
| RRSIG-Owner nz., Algorithm: 8, 1 Labels, original TTL: 86400 sec, Signature-expiration: 16.02.2020, 17:00:00 +, Signature-Inception: 03.02.2020, 16:00:00 +, KeyTag 33853, Signer-Name: (root)
|
|
|
|
|
| • Status: Good - Algorithmus 8 and DNSKEY with KeyTag 33853 used to validate the DS RRSet in the parent zone
|
|
|
|
|
| 4 DNSKEY RR found
|
|
|
|
|
| Public Key with Algorithm 8, KeyTag 5029, Flags 257 (SEP = Secure Entry Point)
|
|
|
|
|
| Public Key with Algorithm 8, KeyTag 40813, Flags 256
|
|
|
|
|
| Public Key with Algorithm 8, KeyTag 45320, Flags 257 (SEP = Secure Entry Point)
|
|
|
|
|
| Public Key with Algorithm 8, KeyTag 57268, Flags 256
|
|
|
|
|
| 1 RRSIG RR to validate DNSKEY RR found
|
|
|
|
|
| RRSIG-Owner nz., Algorithm: 8, 1 Labels, original TTL: 3600 sec, Signature-expiration: 16.02.2020, 10:43:36 +, Signature-Inception: 02.02.2020, 09:26:30 +, KeyTag 45320, Signer-Name: nz
|
|
|
|
|
| • Status: Good - Algorithmus 8 and DNSKEY with KeyTag 45320 used to validate the DNSKEY RRSet
|
|
|
|
|
| • Status: Valid Chain of trust. Parent-DS with Algorithm 8, KeyTag 45320, DigestType 1 and Digest "u5QMNdY4IWF638ijqc89hZrzwgI=" validates local Key with the same values, Key ist Secure Entry Point (SEP) of the zone
|
|
|
|
|
| • Status: Valid Chain of trust. Parent-DS with Algorithm 8, KeyTag 45320, DigestType 2 and Digest "KSHqvH1e+AP1MTWXTjDS88lwFWp1U3gvc3yumWql+Qo=" validates local Key with the same values, Key ist Secure Entry Point (SEP) of the zone
|
|
|
Zone: co.nz
|
|
co.nz
| 4 DS RR in the parent zone found
|
|
|
|
|
| 1 RRSIG RR to validate DS RR found
|
|
|
|
|
| RRSIG-Owner co.nz., Algorithm: 8, 2 Labels, original TTL: 3600 sec, Signature-expiration: 14.02.2020, 15:56:28 +, Signature-Inception: 29.01.2020, 22:11:28 +, KeyTag 40813, Signer-Name: nz
|
|
|
|
|
| • Status: Good - Algorithmus 8 and DNSKEY with KeyTag 40813 used to validate the DS RRSet in the parent zone
|
|
|
|
|
| 4 DNSKEY RR found
|
|
|
|
|
| Public Key with Algorithm 8, KeyTag 573, Flags 256
|
|
|
|
|
| Public Key with Algorithm 8, KeyTag 14885, Flags 257 (SEP = Secure Entry Point)
|
|
|
|
|
| Public Key with Algorithm 8, KeyTag 14887, Flags 257 (SEP = Secure Entry Point)
|
|
|
|
|
| Public Key with Algorithm 8, KeyTag 25339, Flags 256
|
|
|
|
|
| 1 RRSIG RR to validate DNSKEY RR found
|
|
|
|
|
| RRSIG-Owner co.nz., Algorithm: 8, 2 Labels, original TTL: 3600 sec, Signature-expiration: 15.02.2020, 06:16:08 +, Signature-Inception: 02.02.2020, 09:26:32 +, KeyTag 14887, Signer-Name: co.nz
|
|
|
|
|
| • Status: Good - Algorithmus 8 and DNSKEY with KeyTag 14887 used to validate the DNSKEY RRSet
|
|
|
|
|
| • Status: Valid Chain of trust. Parent-DS with Algorithm 8, KeyTag 14887, DigestType 1 and Digest "o44OE0bW3j30akhnFo4T05OtIRc=" validates local Key with the same values, Key ist Secure Entry Point (SEP) of the zone
|
|
|
|
|
| • Status: Valid Chain of trust. Parent-DS with Algorithm 8, KeyTag 14887, DigestType 2 and Digest "Ad+wkR2t8wdqj0tCgx0pdDjtbXAO6ht9Q1aUBN05Z9E=" validates local Key with the same values, Key ist Secure Entry Point (SEP) of the zone
|
|
|
Zone: neilpatil.co.nz
|
|
neilpatil.co.nz
| 0 DS RR in the parent zone found
|
|
|
|
|
| DS-Query in the parent zone has a valid NSEC3 RR as result with the hashed query name "hebl9f5jeum21obk17g3r9su44rbgj4p" between the hashed NSEC3-owner "hdhs97cv8k37svlc3tc1u8iqo88i495g" and the hashed NextOwner "hhgr3ot9hkerchvc60laftbcgaunhi06". So the parent zone confirmes the not-existence of a DS RR.
Bitmap: NS, DS, RRSIG Validated: RRSIG-Owner hdhs97cv8k37svlc3tc1u8iqo88i495g.co.nz., Algorithm: 8, 3 Labels, original TTL: 3600 sec, Signature-expiration: 11.02.2020, 15:39:02 +, Signature-Inception: 03.02.2020, 09:56:33 +, KeyTag 573, Signer-Name: co.nz
|
|
|
|
|
| 0 DNSKEY RR found
|
|
|
|
|
|
|
|
|
Zone: www.neilpatil.co.nz
|
|
www.neilpatil.co.nz
| 0 DS RR in the parent zone found
|