Check DNS, Urls + Redirects, Certificates and Content of your Website




X

DNS-problem - authoritative Nameserver refused, not defined or timeout

Checked:
18.03.2023 20:22:53


Older results


1. IP-Addresses

HostTypeIP-Addressis auth.∑ Queries∑ Timeout
ocsp.digicert.com
CNAME
fp2E7A.wpc.2BE4.phicdn.net
yes
1
0

CNAME
ocsp.edge.digicert.com
yes
1
0

CNAME
fp2e7a.wpc.phicdn.net
yes



CNAME
fp2E7A.wpc.2BE4.phicdn.net
yes


www.ocsp.digicert.com

Name Error
yes
1
0
ocsp.digicert.com
A
192.229.221.95
Paris/Île-de-France/France (FR) - Edgecast Inc.
No Hostname found
no


*.digicert.com
A
Name Error
yes



AAAA
Name Error
yes



CNAME
Name Error
yes


*.ocsp.digicert.com
A
Name Error
yes



AAAA
Name Error
yes



AAAA
Name Error
yes



CNAME
Name Error
yes



2. DNSSEC

Zone (*)DNSSEC - Informations

Zone: (root)
(root)
1 DS RR published



DS with Algorithm 8, KeyTag 20326, DigestType 2 and Digest 4G1EuAuPHTmpXAsNfGXQhFjogECbvGg0VxBCN8f47I0=



Status: Valid because published



2 DNSKEY RR found



Public Key with Algorithm 8, KeyTag 951, Flags 256



Public Key with Algorithm 8, KeyTag 20326, Flags 257 (SEP = Secure Entry Point)



1 RRSIG RR to validate DNSKEY RR found



RRSIG-Owner (root), Algorithm: 8, 0 Labels, original TTL: 172800 sec, Signature-expiration: 02.04.2023, 00:00:00 +, Signature-Inception: 12.03.2023, 00:00:00 +, KeyTag 20326, Signer-Name: (root)



Status: Good - Algorithmus 8 and DNSKEY with KeyTag 20326 used to validate the DNSKEY RRSet



Status: Valid Chain of trust. Parent-DS with Algorithm 8, KeyTag 20326, DigestType 2 and Digest "4G1EuAuPHTmpXAsNfGXQhFjogECbvGg0VxBCN8f47I0=" validates local Key with the same values, Key ist Secure Entry Point (SEP) of the zone

Zone: com
com
1 DS RR in the parent zone found



DS with Algorithm 8, KeyTag 30909, DigestType 2 and Digest 4tPJFvbe6scylOgmj7WIUESoM/xUWViPSpGEz8QaV2Y=



2 RRSIG RR to validate DS RR found



RRSIG-Owner com., Algorithm: 8, 1 Labels, original TTL: 86400 sec, Signature-expiration: 31.03.2023, 17:00:00 +, Signature-Inception: 18.03.2023, 16:00:00 +, KeyTag 951, Signer-Name: (root)



Status: Good - Algorithmus 8 and DNSKEY with KeyTag 951 used to validate the DS RRSet in the parent zone



2 DNSKEY RR found



Public Key with Algorithm 8, KeyTag 30909, Flags 257 (SEP = Secure Entry Point)



Public Key with Algorithm 8, KeyTag 36739, Flags 256



1 RRSIG RR to validate DNSKEY RR found



RRSIG-Owner com., Algorithm: 8, 1 Labels, original TTL: 86400 sec, Signature-expiration: 26.03.2023, 18:24:21 +, Signature-Inception: 11.03.2023, 18:19:21 +, KeyTag 30909, Signer-Name: com



Status: Good - Algorithmus 8 and DNSKEY with KeyTag 30909 used to validate the DNSKEY RRSet



Status: Valid Chain of trust. Parent-DS with Algorithm 8, KeyTag 30909, DigestType 2 and Digest "4tPJFvbe6scylOgmj7WIUESoM/xUWViPSpGEz8QaV2Y=" validates local Key with the same values, Key ist Secure Entry Point (SEP) of the zone

Zone: digicert.com
digicert.com
0 DS RR in the parent zone found



DS-Query in the parent zone has a valid NSEC3 RR as result with the hashed query name "14o63oiqo45tke02hna23m3cimohpr11" between the hashed NSEC3-owner "14o63appfn28n56veah3vi64iohha84o" and the hashed NextOwner "14o640b5d1ao5s1iusr2339ecp5solo6". So the parent zone confirmes the not-existence of a DS RR.
Bitmap: NS, DS, RRSIG Validated: RRSIG-Owner 14o63appfn28n56veah3vi64iohha84o.com., Algorithm: 8, 2 Labels, original TTL: 86400 sec, Signature-expiration: 24.03.2023, 04:42:01 +, Signature-Inception: 17.03.2023, 03:32:01 +, KeyTag 36739, Signer-Name: com



DS-Query in the parent zone sends valid NSEC3 RR with the Hash "ck0pojmg874ljref7efn8430qvit8bsm" as Owner. That's the Hash of "com" with the NextHashedOwnerName "ck0q2d6ni4i7eqh8na30ns61o48ul8g5". So that domain name is the Closest Encloser of "digicert.com". Opt-Out: True.
Bitmap: NS, SOA, RRSIG, DNSKEY, NSEC3PARAM Validated: RRSIG-Owner ck0pojmg874ljref7efn8430qvit8bsm.com., Algorithm: 8, 2 Labels, original TTL: 86400 sec, Signature-expiration: 23.03.2023, 04:22:56 +, Signature-Inception: 16.03.2023, 03:12:56 +, KeyTag 36739, Signer-Name: com



0 DNSKEY RR found




Zone: ocsp.digicert.com
ocsp.digicert.com
0 DS RR in the parent zone found

Zone: www.ocsp.digicert.com
www.ocsp.digicert.com
0 DS RR in the parent zone found

Zone: (root)
(root)
1 DS RR published



DS with Algorithm 8, KeyTag 20326, DigestType 2 and Digest 4G1EuAuPHTmpXAsNfGXQhFjogECbvGg0VxBCN8f47I0=



Status: Valid because published



2 DNSKEY RR found



Public Key with Algorithm 8, KeyTag 951, Flags 256



Public Key with Algorithm 8, KeyTag 20326, Flags 257 (SEP = Secure Entry Point)



1 RRSIG RR to validate DNSKEY RR found



RRSIG-Owner (root), Algorithm: 8, 0 Labels, original TTL: 172800 sec, Signature-expiration: 02.04.2023, 00:00:00 +, Signature-Inception: 12.03.2023, 00:00:00 +, KeyTag 20326, Signer-Name: (root)



Status: Good - Algorithmus 8 and DNSKEY with KeyTag 20326 used to validate the DNSKEY RRSet



Status: Valid Chain of trust. Parent-DS with Algorithm 8, KeyTag 20326, DigestType 2 and Digest "4G1EuAuPHTmpXAsNfGXQhFjogECbvGg0VxBCN8f47I0=" validates local Key with the same values, Key ist Secure Entry Point (SEP) of the zone

Zone: net
net
1 DS RR in the parent zone found



DS with Algorithm 8, KeyTag 35886, DigestType 2 and Digest eGKyf19Rbr4ZaARE1M5edimBkxhCxGXwAjZAHYvZc+4=



1 RRSIG RR to validate DS RR found



RRSIG-Owner net., Algorithm: 8, 1 Labels, original TTL: 86400 sec, Signature-expiration: 31.03.2023, 17:00:00 +, Signature-Inception: 18.03.2023, 16:00:00 +, KeyTag 951, Signer-Name: (root)



Status: Good - Algorithmus 8 and DNSKEY with KeyTag 951 used to validate the DS RRSet in the parent zone



2 DNSKEY RR found



Public Key with Algorithm 8, KeyTag 27254, Flags 256



Public Key with Algorithm 8, KeyTag 35886, Flags 257 (SEP = Secure Entry Point)



1 RRSIG RR to validate DNSKEY RR found



RRSIG-Owner net., Algorithm: 8, 1 Labels, original TTL: 86400 sec, Signature-expiration: 25.03.2023, 17:28:30 +, Signature-Inception: 10.03.2023, 17:23:30 +, KeyTag 35886, Signer-Name: net



Status: Good - Algorithmus 8 and DNSKEY with KeyTag 35886 used to validate the DNSKEY RRSet



Status: Valid Chain of trust. Parent-DS with Algorithm 8, KeyTag 35886, DigestType 2 and Digest "eGKyf19Rbr4ZaARE1M5edimBkxhCxGXwAjZAHYvZc+4=" validates local Key with the same values, Key ist Secure Entry Point (SEP) of the zone

Zone: phicdn.net
phicdn.net
0 DS RR in the parent zone found



DS-Query in the parent zone has a valid NSEC3 RR as result with the hashed query name "281v1t85ld68rvappkf0ocjhhovfuski" between the hashed NSEC3-owner "281t6hk0otbiu5n0626bg6bem835k73h" and the hashed NextOwner "281val4h6g517hd63ibgr0c96lj3hlr4". So the parent zone confirmes the not-existence of a DS RR.
Bitmap: NS, DS, RRSIG Validated: RRSIG-Owner 281t6hk0otbiu5n0626bg6bem835k73h.net., Algorithm: 8, 2 Labels, original TTL: 86400 sec, Signature-expiration: 25.03.2023, 06:19:11 +, Signature-Inception: 18.03.2023, 05:09:11 +, KeyTag 27254, Signer-Name: net



DS-Query in the parent zone sends valid NSEC3 RR with the Hash "a1rt98bs5qgc9nfi51s9hci47uljg6jh" as Owner. That's the Hash of "net" with the NextHashedOwnerName "a1rtlnpgulogn7b9a62shje1u3ttp8dr". So that domain name is the Closest Encloser of "phicdn.net". Opt-Out: True.
Bitmap: NS, SOA, RRSIG, DNSKEY, NSEC3PARAM Validated: RRSIG-Owner a1rt98bs5qgc9nfi51s9hci47uljg6jh.net., Algorithm: 8, 2 Labels, original TTL: 86400 sec, Signature-expiration: 23.03.2023, 06:18:20 +, Signature-Inception: 16.03.2023, 05:08:20 +, KeyTag 27254, Signer-Name: net



0 DNSKEY RR found




Zone: 2BE4.phicdn.net
2BE4.phicdn.net
0 DS RR in the parent zone found



0 DNSKEY RR found




Zone: wpc.2BE4.phicdn.net
wpc.2BE4.phicdn.net
0 DS RR in the parent zone found

Zone: fp2E7A.wpc.2BE4.phicdn.net
fp2E7A.wpc.2BE4.phicdn.net
0 DS RR in the parent zone found

Zone: (root)
(root)
1 DS RR published



DS with Algorithm 8, KeyTag 20326, DigestType 2 and Digest 4G1EuAuPHTmpXAsNfGXQhFjogECbvGg0VxBCN8f47I0=



Status: Valid because published



2 DNSKEY RR found



Public Key with Algorithm 8, KeyTag 951, Flags 256



Public Key with Algorithm 8, KeyTag 20326, Flags 257 (SEP = Secure Entry Point)



1 RRSIG RR to validate DNSKEY RR found



RRSIG-Owner (root), Algorithm: 8, 0 Labels, original TTL: 172800 sec, Signature-expiration: 02.04.2023, 00:00:00 +, Signature-Inception: 12.03.2023, 00:00:00 +, KeyTag 20326, Signer-Name: (root)



Status: Good - Algorithmus 8 and DNSKEY with KeyTag 20326 used to validate the DNSKEY RRSet



Status: Valid Chain of trust. Parent-DS with Algorithm 8, KeyTag 20326, DigestType 2 and Digest "4G1EuAuPHTmpXAsNfGXQhFjogECbvGg0VxBCN8f47I0=" validates local Key with the same values, Key ist Secure Entry Point (SEP) of the zone

Zone: com
com
1 DS RR in the parent zone found



DS with Algorithm 8, KeyTag 30909, DigestType 2 and Digest 4tPJFvbe6scylOgmj7WIUESoM/xUWViPSpGEz8QaV2Y=



2 RRSIG RR to validate DS RR found



RRSIG-Owner com., Algorithm: 8, 1 Labels, original TTL: 86400 sec, Signature-expiration: 31.03.2023, 17:00:00 +, Signature-Inception: 18.03.2023, 16:00:00 +, KeyTag 951, Signer-Name: (root)



Status: Good - Algorithmus 8 and DNSKEY with KeyTag 951 used to validate the DS RRSet in the parent zone



2 DNSKEY RR found



Public Key with Algorithm 8, KeyTag 30909, Flags 257 (SEP = Secure Entry Point)



Public Key with Algorithm 8, KeyTag 36739, Flags 256



1 RRSIG RR to validate DNSKEY RR found



RRSIG-Owner com., Algorithm: 8, 1 Labels, original TTL: 86400 sec, Signature-expiration: 26.03.2023, 18:24:21 +, Signature-Inception: 11.03.2023, 18:19:21 +, KeyTag 30909, Signer-Name: com



Status: Good - Algorithmus 8 and DNSKEY with KeyTag 30909 used to validate the DNSKEY RRSet



Status: Valid Chain of trust. Parent-DS with Algorithm 8, KeyTag 30909, DigestType 2 and Digest "4tPJFvbe6scylOgmj7WIUESoM/xUWViPSpGEz8QaV2Y=" validates local Key with the same values, Key ist Secure Entry Point (SEP) of the zone

Zone: digicert.com
digicert.com
0 DS RR in the parent zone found



DS-Query in the parent zone has a valid NSEC3 RR as result with the hashed query name "14o63oiqo45tke02hna23m3cimohpr11" between the hashed NSEC3-owner "14o63appfn28n56veah3vi64iohha84o" and the hashed NextOwner "14o640b5d1ao5s1iusr2339ecp5solo6". So the parent zone confirmes the not-existence of a DS RR.
Bitmap: NS, DS, RRSIG Validated: RRSIG-Owner 14o63appfn28n56veah3vi64iohha84o.com., Algorithm: 8, 2 Labels, original TTL: 86400 sec, Signature-expiration: 24.03.2023, 04:42:01 +, Signature-Inception: 17.03.2023, 03:32:01 +, KeyTag 36739, Signer-Name: com



DS-Query in the parent zone sends valid NSEC3 RR with the Hash "ck0pojmg874ljref7efn8430qvit8bsm" as Owner. That's the Hash of "com" with the NextHashedOwnerName "ck0q2d6ni4i7eqh8na30ns61o48ul8g5". So that domain name is the Closest Encloser of "digicert.com". Opt-Out: True.
Bitmap: NS, SOA, RRSIG, DNSKEY, NSEC3PARAM Validated: RRSIG-Owner ck0pojmg874ljref7efn8430qvit8bsm.com., Algorithm: 8, 2 Labels, original TTL: 86400 sec, Signature-expiration: 23.03.2023, 04:22:56 +, Signature-Inception: 16.03.2023, 03:12:56 +, KeyTag 36739, Signer-Name: com



0 DNSKEY RR found




Zone: edge.digicert.com
edge.digicert.com
0 DS RR in the parent zone found



0 DNSKEY RR found




Zone: ocsp.edge.digicert.com
ocsp.edge.digicert.com
0 DS RR in the parent zone found


3. Name Servers

DomainNameserverNS-IP
www.ocsp.digicert.com
  ns1.p03.dynect.net

digicert.com
  ns1.p03.dynect.net / dns4-02-fra-ad2.eu-frankfurt-1
108.59.161.3
San Jose/California/United States (US) - Oracle Corporation


 
2600:2000:2210::3
London/England/United Kingdom (GB) - Oracle Corporation


  ns10.dnsmadeeasy.com
208.94.148.4
Reston/Virginia/United States (US) - Tiggee LLC


 
2600:1800:10::1
Reston/Virginia/United States (US) - Tiggee LLC


  ns11.dnsmadeeasy.com
208.80.124.4
Reston/Virginia/United States (US) - Tiggee LLC


 
2600:1801:11::1
Reston/Virginia/United States (US) - Tiggee LLC


  ns12.dnsmadeeasy.com
208.80.126.4
Reston/Virginia/United States (US) - Tiggee LLC


 
2600:1802:12::1
Reston/Virginia/United States (US) - Tiggee LLC


  ns13.dnsmadeeasy.com
208.80.125.4
Reston/Virginia/United States (US) - Tiggee LLC


 
2600:1801:13::1
Reston/Virginia/United States (US) - Tiggee LLC


  ns2.p03.dynect.net / dns4-04-fra-ad1.eu-frankfurt-1
108.59.162.3
San Jose/California/United States (US) - Oracle Corporation


T 
2600:2000:2220::3
London/England/United Kingdom (GB) - Oracle Corporation


  ns3.p03.dynect.net / dns4-02-ams-ad1.eu-amsterdam-1
108.59.163.3
San Jose/California/United States (US) - Oracle Corporation


 
2600:2000:2230::3
London/England/United Kingdom (GB) - Oracle Corporation


  ns4.p03.dynect.net / dns4-04-fra-ad1.eu-frankfurt-1
108.59.164.3
Melbourne/Victoria/Australia (AU) - Oracle Corporation


 
2600:2000:2240::3
London/England/United Kingdom (GB) - Oracle Corporation

com
  a.gtld-servers.net / nnn1-fra6


  b.gtld-servers.net / nnn1-elpar7


  c.gtld-servers.net / nnn1-fra6


  d.gtld-servers.net / nnn1-fra6


  e.gtld-servers.net / nnn1-fra6


  f.gtld-servers.net / nnn1-fra5


  g.gtld-servers.net / nnn1-fra5


  h.gtld-servers.net / nnn1-fra5


  i.gtld-servers.net / nnn1-fra5


  j.gtld-servers.net / nnn1-nlams-1a


  k.gtld-servers.net / nnn1-nlams-1c


  l.gtld-servers.net / nnn1-nlams-1b


  m.gtld-servers.net / nnn1-nlams-1c


edge.digicert.com
  ns1.p03.dynect.net / dns4-01-fra-ad1.eu-frankfurt-1
108.59.161.3
San Jose/California/United States (US) - Oracle Corporation


 
2600:2000:2210::3
London/England/United Kingdom (GB) - Oracle Corporation


  ns10.dnsmadeeasy.com

2BE4.phicdn.net
  ns1.phicdn.net
72.21.80.5
Boston/Massachusetts/United States (US) - Edgecast Inc.


 
2606:2800:1::5
Albany/New York/United States (US) - Edgecast Inc.

digicert.com
  ns1.p03.dynect.net / dns4-01-fra-ad1.eu-frankfurt-1
108.59.161.3
San Jose/California/United States (US) - Oracle Corporation


T 
2600:2000:2210::3
London/England/United Kingdom (GB) - Oracle Corporation


  ns10.dnsmadeeasy.com
208.94.148.4
Reston/Virginia/United States (US) - Tiggee LLC


 
2600:1800:10::1
Reston/Virginia/United States (US) - Tiggee LLC


  ns11.dnsmadeeasy.com
208.80.124.4
Reston/Virginia/United States (US) - Tiggee LLC


 
2600:1801:11::1
Reston/Virginia/United States (US) - Tiggee LLC


  ns12.dnsmadeeasy.com
208.80.126.4
Reston/Virginia/United States (US) - Tiggee LLC


 
2600:1802:12::1
Reston/Virginia/United States (US) - Tiggee LLC


  ns13.dnsmadeeasy.com
208.80.125.4
Reston/Virginia/United States (US) - Tiggee LLC


 
2600:1801:13::1
Reston/Virginia/United States (US) - Tiggee LLC


  ns2.p03.dynect.net / dns4-03-fra-ad3.eu-frankfurt-1
108.59.162.3
San Jose/California/United States (US) - Oracle Corporation


 
2600:2000:2220::3
London/England/United Kingdom (GB) - Oracle Corporation


  ns3.p03.dynect.net / dns4-02-ams-ad1.eu-amsterdam-1
108.59.163.3
San Jose/California/United States (US) - Oracle Corporation


 
2600:2000:2230::3
London/England/United Kingdom (GB) - Oracle Corporation


  ns4.p03.dynect.net / dns4-03-fra-ad3.eu-frankfurt-1
108.59.164.3
Melbourne/Victoria/Australia (AU) - Oracle Corporation


 
2600:2000:2240::3
London/England/United Kingdom (GB) - Oracle Corporation

phicdn.net
  ns1.phicdn.net / dnsa001.frb
72.21.80.5
Boston/Massachusetts/United States (US) - Edgecast Inc.


 
2606:2800:1::5
Albany/New York/United States (US) - Edgecast Inc.


  ns2.phicdn.net / dnsa002.frc
72.21.80.6
Boston/Massachusetts/United States (US) - Edgecast Inc.


 
2606:2800:1::6
Albany/New York/United States (US) - Edgecast Inc.


  ns3.phicdn.net / dnsa002.frc
192.229.254.5
Boston/Massachusetts/United States (US) - Edgecast Inc.


 
2606:2800:e::5
Boston/Massachusetts/United States (US) - Edgecast Inc.


  ns4.phicdn.net / dnsa002.frc
192.229.254.6
Boston/Massachusetts/United States (US) - Edgecast Inc.


 
2606:2800:e::6
Boston/Massachusetts/United States (US) - Edgecast Inc.

net
  a.gtld-servers.net / nnn1-fra6


  a.gtld-servers.net / nnn1-fra6


  b.gtld-servers.net / nnn1-elpar7


  b.gtld-servers.net / nnn1-elpar7


  c.gtld-servers.net / nnn1-fra6


  c.gtld-servers.net / nnn1-fra6


  d.gtld-servers.net / nnn1-fra6


  d.gtld-servers.net / nnn1-fra6


  e.gtld-servers.net / nnn1-fra6


  e.gtld-servers.net / nnn1-fra6


  f.gtld-servers.net / nnn1-fra5


  f.gtld-servers.net / nnn1-fra5


  g.gtld-servers.net / nnn1-fra5


  g.gtld-servers.net / nnn1-fra5


  h.gtld-servers.net / nnn1-fra5


  h.gtld-servers.net / nnn1-fra5


  i.gtld-servers.net / nnn1-fra5


  i.gtld-servers.net / nnn1-fra5


  j.gtld-servers.net / nnn1-nlams-1a


  j.gtld-servers.net / nnn1-nlams-1c


  k.gtld-servers.net / nnn1-nlams-1b


  k.gtld-servers.net / nnn1-nlams-1e


  l.gtld-servers.net / nnn1-nlams-1c


  l.gtld-servers.net / nnn1-nlams-1b


  m.gtld-servers.net / nnn1-nlams-1e


  m.gtld-servers.net / nnn1-nlams-1b


4. SOA-Entries


Domain:com
Zone-Name:com
Primary:a.gtld-servers.net
Mail:nstld.verisign-grs.com
Serial:1679167343
Refresh:1800
Retry:900
Expire:604800
TTL:86400
num Entries:1


Domain:com
Zone-Name:com
Primary:a.gtld-servers.net
Mail:nstld.verisign-grs.com
Serial:1679167358
Refresh:1800
Retry:900
Expire:604800
TTL:86400
num Entries:12


Domain:digicert.com
Zone-Name:digicert.com
Primary:ns1.p03.dynect.net
Mail:hostmaster.digicert.com
Serial:1769
Refresh:3600
Retry:600
Expire:604800
TTL:1200
num Entries:8


Domain:digicert.com
Zone-Name:digicert.com
Primary:ns10.dnsmadeeasy.com
Mail:dns.dnsmadeeasy.com
Serial:2009020112
Refresh:43200
Retry:3600
Expire:1209600
TTL:1200
num Entries:8


Domain:www.ocsp.digicert.com
Zone-Name:
Primary:
Mail:
Serial:
Refresh:
Retry:
Expire:
TTL:
num Entries:1



Domain:net
Zone-Name:net
Primary:a.gtld-servers.net
Mail:nstld.verisign-grs.com
Serial:1679167413
Refresh:1800
Retry:900
Expire:604800
TTL:86400
num Entries:11


Domain:net
Zone-Name:net
Primary:a.gtld-servers.net
Mail:nstld.verisign-grs.com
Serial:1679167438
Refresh:1800
Retry:900
Expire:604800
TTL:86400
num Entries:2


Domain:phicdn.net
Zone-Name:phicdn.net
Primary:ns1.phicdn.net
Mail:noc.edgecast.com
Serial:1638403987
Refresh:3600
Retry:600
Expire:604800
TTL:600
num Entries:8


Domain:2BE4.phicdn.net
Zone-Name:2BE4.phicdn.net
Primary:ns1.phicdn.net
Mail:noc.phicdn.net
Serial:1673299202
Refresh:3600
Retry:600
Expire:608400
TTL:600
num Entries:2



Domain:com
Zone-Name:com
Primary:a.gtld-servers.net
Mail:nstld.verisign-grs.com
Serial:1679167453
Refresh:1800
Retry:900
Expire:604800
TTL:86400
num Entries:8


Domain:com
Zone-Name:com
Primary:a.gtld-servers.net
Mail:nstld.verisign-grs.com
Serial:1679167468
Refresh:1800
Retry:900
Expire:604800
TTL:86400
num Entries:5


Domain:digicert.com
Zone-Name:digicert.com
Primary:ns1.p03.dynect.net
Mail:hostmaster.digicert.com
Serial:1769
Refresh:3600
Retry:600
Expire:604800
TTL:1200
num Entries:8


Domain:digicert.com
Zone-Name:digicert.com
Primary:ns10.dnsmadeeasy.com
Mail:dns.dnsmadeeasy.com
Serial:2009020112
Refresh:43200
Retry:3600
Expire:1209600
TTL:1200
num Entries:8


Domain:edge.digicert.com
Zone-Name:
Primary:
Mail:
Serial:
Refresh:
Retry:
Expire:
TTL:
num Entries:1


Domain:edge.digicert.com
Zone-Name:digicert.com
Primary:ns1.p03.dynect.net
Mail:hostmaster.digicert.com
Serial:1769
Refresh:3600
Retry:600
Expire:604800
TTL:1200
num Entries:2


5. Screenshots

Startaddress: https://ocsp.digicert.com/, address used: https://ocsp.digicert.com/, Screenshot created 2023-03-18 20:28:01 +00:0 url is insecure, certificate invalid

Mobil (412px x 732px)

146 milliseconds

Screenshot mobile - https://ocsp.digicert.com/
Mobil + Landscape (732px x 412px)

154 milliseconds

Screenshot mobile landscape - https://ocsp.digicert.com/
Screen (1280px x 1680px)

253 milliseconds

Screenshot Desktop - https://ocsp.digicert.com/

Mobile- and other Chrome-Checks

widthheight
visual Viewport412732
content Size412732

Good: No horizontal scrollbar. Content-size width = visual Viewport width.

6. Url-Checks


:

:
DomainnameHttp-StatusredirectSec.G
• http://ocsp.digicert.com/
192.229.221.95
200

Html is minified: 101.96 %
0.044
H
small visible content (num chars: 21)
CRL/CACERT Repository
Accept-Ranges: bytes
Age: 5155
Content-Type: text/html
Date: Sat, 18 Mar 2023 19:27:38 GMT
Etag: "63bf857b-34"
Last-Modified: Thu, 12 Jan 2023 03:58:51 GMT
Server: ECAcc (frc/4D0C)
X-Cache: HIT
X-Content-Type-Options: nosniff
X-Frame-Options: SAMEORIGIN
X-XSS-Protection: 1; mode=block
Content-Length: 52
Connection: close

• https://ocsp.digicert.com/
192.229.221.95
Inline-JavaScript (∑/total): 0/0 Inline-CSS (∑/total): 0/0
404

Html is minified: 107.14 %
2.770
N
Not Found
Certificate error: RemoteCertificateNameMismatch
small visible content (num chars: 15)
404 - Not Found
Content-Type: text/html
Date: Sat, 18 Mar 2023 19:27:38 GMT
Server: ECAcc (frc/4CD8)
Content-Length: 345
Connection: close

• http://ocsp.digicert.com/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
192.229.221.95
Inline-JavaScript (∑/total): 0/0 Inline-CSS (∑/total): 0/0
200
Warning: Control chars (Ascii 1, 3, 6) found in Html-Content

Html is minified: 500.00 %
0.516

Visible Content: 0
Cache-Control: 'max-age=300'
Content-Type: application/ocsp-response
Date: Sat, 18 Mar 2023 19:27:42 GMT
Server: ECAcc (amb/6B44)
Content-Length: 5
Connection: close

• https://192.229.221.95/
192.229.221.95
Inline-JavaScript (∑/total): 0/0 Inline-CSS (∑/total): 0/0
404

Html is minified: 107.14 %
2.597
N
Not Found
Certificate error: RemoteCertificateNameMismatch
small visible content (num chars: 15)
404 - Not Found
Content-Type: text/html
Date: Sat, 18 Mar 2023 19:27:43 GMT
Server: ECAcc (frc/4CE9)
Content-Length: 345
Connection: close

7. Comments


1. General Results, most used to calculate the result

Aname "ocsp.digicert.com" is subdomain, public suffix is ".com", top-level-domain is ".com", top-level-domain-type is "generic", tld-manager is "VeriSign Global Registry Services", num .com-domains preloaded: 85538 (complete: 220007)
AGood: All ip addresses are public addresses
AGood: No asked Authoritative Name Server had a timeout
ADNS: "Name Error" means: No www-dns-entry defined. This isn't a problem
AGood - only one version with Http-Status 200
AGood: No cookie sent via http.
HSTS-Preload-Status: unknown. Domain never included in the Preload-list. Check https://hstspreload.org/ to learn some basics about the Google-Preload-List.
AGood: Some urls with http status 200/404 have a complete Content-Type header (MediaType / MediaSubType + correct charset):0 complete Content-Type - header (4 urls)
http://ocsp.digicert.com/ 192.229.221.95


Url with incomplete Content-Type - header - missing charset
https://ocsp.digicert.com/ 192.229.221.95


Url with incomplete Content-Type - header - missing charset
http://ocsp.digicert.com/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de 192.229.221.95


Url with incomplete Content-Type - header - missing charset
https://192.229.221.95/ 192.229.221.95


Url with incomplete Content-Type - header - missing charset
Bhttps://ocsp.digicert.com/ 192.229.221.95
404

Missing HSTS-Header
HFatal error: No https - result with http-status 200, no encryption
HFatal error: http result with http-status 200, no encryption. Add a redirect http ⇒ https, so every connection is secure. Perhaps in your port 80 vHost something like "RewriteEngine on" + "RewriteRule ^ https://%{SERVER_NAME}%{REQUEST_URI} [END,QSA,R=permanent]" (two rows, without the "). Don't add this in your port 443 vHost, that would create a loop.
Mhttps://ocsp.digicert.com/ 192.229.221.95
404

Misconfiguration - main pages should never send http status 400 - 499
Mhttps://192.229.221.95/ 192.229.221.95
404

Misconfiguration - main pages should never send http status 400 - 499
Nhttps://ocsp.digicert.com/ 192.229.221.95
404

Error - Certificate isn't trusted, RemoteCertificateNameMismatch
Nhttps://192.229.221.95/ 192.229.221.95
404

Error - Certificate isn't trusted, RemoteCertificateNameMismatch
BNo _mta-sts TXT record found (mta-sts: Mail Transfer Agent Strict Transport Security - see RFC 8461). Read the result of server-daten.de (Url-Checks, Comments, Connections and DomainServiceRecords) to see a complete definition. Domainname: _mta-sts.ocsp.digicert.com

2. Header-Checks (alpha, started 2022-10-23, may be buggy / incomplete)

Focsp.digicert.com 192.229.221.95
Content-Security-Policy
Critical: Missing Header:
Focsp.digicert.com 192.229.221.95
X-Content-Type-Options
Critical: Missing Header:
Focsp.digicert.com 192.229.221.95
Referrer-Policy
Critical: Missing Header:
Focsp.digicert.com 192.229.221.95
Permissions-Policy
Critical: Missing Header:

3. DNS- and NameServer - Checks

AInfo:: 28 Root-climbing DNS Queries required to find all IPv4- and IPv6-Addresses of 8 Name Servers.
AInfo:: 28 Queries complete, 26 with IPv6, 0 with IPv4.
Warning: Only some DNS Queries done via ipv6. IPv6 is the future, so the name servers of your name servers should have ipv6 addresses.
Ok (4 - 8):: An average of 3.5 queries per domain name server required to find all ip addresses of all name servers.
AInfo:: 8 different Name Servers found: ns1.p03.dynect.net, ns10.dnsmadeeasy.com, ns11.dnsmadeeasy.com, ns12.dnsmadeeasy.com, ns13.dnsmadeeasy.com, ns2.p03.dynect.net, ns3.p03.dynect.net, ns4.p03.dynect.net, 7 Name Servers included in Delegation: ns1.p03.dynect.net, ns11.dnsmadeeasy.com, ns12.dnsmadeeasy.com, ns13.dnsmadeeasy.com, ns2.p03.dynect.net, ns3.p03.dynect.net, ns4.p03.dynect.net, 8 Name Servers included in 1 Zone definitions: ns1.p03.dynect.net, ns10.dnsmadeeasy.com, ns11.dnsmadeeasy.com, ns12.dnsmadeeasy.com, ns13.dnsmadeeasy.com, ns2.p03.dynect.net, ns3.p03.dynect.net, ns4.p03.dynect.net, 2 Name Servers listed in SOA.Primary: ns1.p03.dynect.net, ns10.dnsmadeeasy.com.
Error: Different SOA.Primary Name Servers found, different SOA Definitions.: ns1.p03.dynect.net,ns10.dnsmadeeasy.com.
Error: SOA.Primary Name Server not included in the delegation set.: ns1.p03.dynect.net,ns10.dnsmadeeasy.com.
XFatal: Inconsistency between delegation and zone. The set of NS records served by the authoritative name servers must match those proposed for the delegation in the parent zone. Read https://www.iana.org/help/nameserver-requirements and send it to your Name Server Hoster.: ns1.p03.dynect.net (108.59.161.3): Delegation: ns1.p03.dynect.net, ns11.dnsmadeeasy.com, ns12.dnsmadeeasy.com, ns13.dnsmadeeasy.com, ns2.p03.dynect.net, ns3.p03.dynect.net, ns4.p03.dynect.net, Zone: ns1.p03.dynect.net, ns10.dnsmadeeasy.com, ns11.dnsmadeeasy.com, ns12.dnsmadeeasy.com, ns13.dnsmadeeasy.com, ns2.p03.dynect.net, ns3.p03.dynect.net, ns4.p03.dynect.net. Name Servers defined in Zone, missing in Delegation: ns10.dnsmadeeasy.com.
XFatal: Inconsistency between delegation and zone. The set of NS records served by the authoritative name servers must match those proposed for the delegation in the parent zone. Read https://www.iana.org/help/nameserver-requirements and send it to your Name Server Hoster.: ns1.p03.dynect.net (2600:2000:2210::3): Delegation: ns1.p03.dynect.net, ns11.dnsmadeeasy.com, ns12.dnsmadeeasy.com, ns13.dnsmadeeasy.com, ns2.p03.dynect.net, ns3.p03.dynect.net, ns4.p03.dynect.net, Zone: ns1.p03.dynect.net, ns10.dnsmadeeasy.com, ns11.dnsmadeeasy.com, ns12.dnsmadeeasy.com, ns13.dnsmadeeasy.com, ns2.p03.dynect.net, ns3.p03.dynect.net, ns4.p03.dynect.net. Name Servers defined in Zone, missing in Delegation: ns10.dnsmadeeasy.com.
XFatal: Inconsistency between delegation and zone. The set of NS records served by the authoritative name servers must match those proposed for the delegation in the parent zone. Read https://www.iana.org/help/nameserver-requirements and send it to your Name Server Hoster.: ns1.p03.dynect.net (108.59.161.3): Delegation: ns1.p03.dynect.net, ns11.dnsmadeeasy.com, ns12.dnsmadeeasy.com, ns13.dnsmadeeasy.com, ns2.p03.dynect.net, ns3.p03.dynect.net, ns4.p03.dynect.net, Zone: ns1.p03.dynect.net, ns10.dnsmadeeasy.com, ns11.dnsmadeeasy.com, ns12.dnsmadeeasy.com, ns13.dnsmadeeasy.com, ns2.p03.dynect.net, ns3.p03.dynect.net, ns4.p03.dynect.net. Name Servers defined in Zone, missing in Delegation: ns10.dnsmadeeasy.com.
XFatal: Inconsistency between delegation and zone. The set of NS records served by the authoritative name servers must match those proposed for the delegation in the parent zone. Read https://www.iana.org/help/nameserver-requirements and send it to your Name Server Hoster.: ns1.p03.dynect.net (2600:2000:2210::3): Delegation: ns1.p03.dynect.net, ns11.dnsmadeeasy.com, ns12.dnsmadeeasy.com, ns13.dnsmadeeasy.com, ns2.p03.dynect.net, ns3.p03.dynect.net, ns4.p03.dynect.net, Zone: ns1.p03.dynect.net, ns10.dnsmadeeasy.com, ns11.dnsmadeeasy.com, ns12.dnsmadeeasy.com, ns13.dnsmadeeasy.com, ns2.p03.dynect.net, ns3.p03.dynect.net, ns4.p03.dynect.net. Name Servers defined in Zone, missing in Delegation: ns10.dnsmadeeasy.com.
XFatal: Inconsistency between delegation and zone. The set of NS records served by the authoritative name servers must match those proposed for the delegation in the parent zone. Read https://www.iana.org/help/nameserver-requirements and send it to your Name Server Hoster.: ns10.dnsmadeeasy.com (208.94.148.4): Delegation: ns1.p03.dynect.net, ns11.dnsmadeeasy.com, ns12.dnsmadeeasy.com, ns13.dnsmadeeasy.com, ns2.p03.dynect.net, ns3.p03.dynect.net, ns4.p03.dynect.net, Zone: ns1.p03.dynect.net, ns10.dnsmadeeasy.com, ns11.dnsmadeeasy.com, ns12.dnsmadeeasy.com, ns13.dnsmadeeasy.com, ns2.p03.dynect.net, ns3.p03.dynect.net, ns4.p03.dynect.net. Name Servers defined in Zone, missing in Delegation: ns10.dnsmadeeasy.com.
XFatal: Inconsistency between delegation and zone. The set of NS records served by the authoritative name servers must match those proposed for the delegation in the parent zone. Read https://www.iana.org/help/nameserver-requirements and send it to your Name Server Hoster.: ns10.dnsmadeeasy.com (2600:1800:10::1): Delegation: ns1.p03.dynect.net, ns11.dnsmadeeasy.com, ns12.dnsmadeeasy.com, ns13.dnsmadeeasy.com, ns2.p03.dynect.net, ns3.p03.dynect.net, ns4.p03.dynect.net, Zone: ns1.p03.dynect.net, ns10.dnsmadeeasy.com, ns11.dnsmadeeasy.com, ns12.dnsmadeeasy.com, ns13.dnsmadeeasy.com, ns2.p03.dynect.net, ns3.p03.dynect.net, ns4.p03.dynect.net. Name Servers defined in Zone, missing in Delegation: ns10.dnsmadeeasy.com.
XFatal: Inconsistency between delegation and zone. The set of NS records served by the authoritative name servers must match those proposed for the delegation in the parent zone. Read https://www.iana.org/help/nameserver-requirements and send it to your Name Server Hoster.: ns10.dnsmadeeasy.com (208.94.148.4): Delegation: ns1.p03.dynect.net, ns11.dnsmadeeasy.com, ns12.dnsmadeeasy.com, ns13.dnsmadeeasy.com, ns2.p03.dynect.net, ns3.p03.dynect.net, ns4.p03.dynect.net, Zone: ns1.p03.dynect.net, ns10.dnsmadeeasy.com, ns11.dnsmadeeasy.com, ns12.dnsmadeeasy.com, ns13.dnsmadeeasy.com, ns2.p03.dynect.net, ns3.p03.dynect.net, ns4.p03.dynect.net. Name Servers defined in Zone, missing in Delegation: ns10.dnsmadeeasy.com.
XFatal: Inconsistency between delegation and zone. The set of NS records served by the authoritative name servers must match those proposed for the delegation in the parent zone. Read https://www.iana.org/help/nameserver-requirements and send it to your Name Server Hoster.: ns10.dnsmadeeasy.com (2600:1800:10::1): Delegation: ns1.p03.dynect.net, ns11.dnsmadeeasy.com, ns12.dnsmadeeasy.com, ns13.dnsmadeeasy.com, ns2.p03.dynect.net, ns3.p03.dynect.net, ns4.p03.dynect.net, Zone: ns1.p03.dynect.net, ns10.dnsmadeeasy.com, ns11.dnsmadeeasy.com, ns12.dnsmadeeasy.com, ns13.dnsmadeeasy.com, ns2.p03.dynect.net, ns3.p03.dynect.net, ns4.p03.dynect.net. Name Servers defined in Zone, missing in Delegation: ns10.dnsmadeeasy.com.
XFatal: Inconsistency between delegation and zone. The set of NS records served by the authoritative name servers must match those proposed for the delegation in the parent zone. Read https://www.iana.org/help/nameserver-requirements and send it to your Name Server Hoster.: ns11.dnsmadeeasy.com (208.80.124.4): Delegation: ns1.p03.dynect.net, ns11.dnsmadeeasy.com, ns12.dnsmadeeasy.com, ns13.dnsmadeeasy.com, ns2.p03.dynect.net, ns3.p03.dynect.net, ns4.p03.dynect.net, Zone: ns1.p03.dynect.net, ns10.dnsmadeeasy.com, ns11.dnsmadeeasy.com, ns12.dnsmadeeasy.com, ns13.dnsmadeeasy.com, ns2.p03.dynect.net, ns3.p03.dynect.net, ns4.p03.dynect.net. Name Servers defined in Zone, missing in Delegation: ns10.dnsmadeeasy.com.
XFatal: Inconsistency between delegation and zone. The set of NS records served by the authoritative name servers must match those proposed for the delegation in the parent zone. Read https://www.iana.org/help/nameserver-requirements and send it to your Name Server Hoster.: ns11.dnsmadeeasy.com (2600:1801:11::1): Delegation: ns1.p03.dynect.net, ns11.dnsmadeeasy.com, ns12.dnsmadeeasy.com, ns13.dnsmadeeasy.com, ns2.p03.dynect.net, ns3.p03.dynect.net, ns4.p03.dynect.net, Zone: ns1.p03.dynect.net, ns10.dnsmadeeasy.com, ns11.dnsmadeeasy.com, ns12.dnsmadeeasy.com, ns13.dnsmadeeasy.com, ns2.p03.dynect.net, ns3.p03.dynect.net, ns4.p03.dynect.net. Name Servers defined in Zone, missing in Delegation: ns10.dnsmadeeasy.com.
XFatal: Inconsistency between delegation and zone. The set of NS records served by the authoritative name servers must match those proposed for the delegation in the parent zone. Read https://www.iana.org/help/nameserver-requirements and send it to your Name Server Hoster.: ns11.dnsmadeeasy.com (208.80.124.4): Delegation: ns1.p03.dynect.net, ns11.dnsmadeeasy.com, ns12.dnsmadeeasy.com, ns13.dnsmadeeasy.com, ns2.p03.dynect.net, ns3.p03.dynect.net, ns4.p03.dynect.net, Zone: ns1.p03.dynect.net, ns10.dnsmadeeasy.com, ns11.dnsmadeeasy.com, ns12.dnsmadeeasy.com, ns13.dnsmadeeasy.com, ns2.p03.dynect.net, ns3.p03.dynect.net, ns4.p03.dynect.net. Name Servers defined in Zone, missing in Delegation: ns10.dnsmadeeasy.com.
XFatal: Inconsistency between delegation and zone. The set of NS records served by the authoritative name servers must match those proposed for the delegation in the parent zone. Read https://www.iana.org/help/nameserver-requirements and send it to your Name Server Hoster.: ns11.dnsmadeeasy.com (2600:1801:11::1): Delegation: ns1.p03.dynect.net, ns11.dnsmadeeasy.com, ns12.dnsmadeeasy.com, ns13.dnsmadeeasy.com, ns2.p03.dynect.net, ns3.p03.dynect.net, ns4.p03.dynect.net, Zone: ns1.p03.dynect.net, ns10.dnsmadeeasy.com, ns11.dnsmadeeasy.com, ns12.dnsmadeeasy.com, ns13.dnsmadeeasy.com, ns2.p03.dynect.net, ns3.p03.dynect.net, ns4.p03.dynect.net. Name Servers defined in Zone, missing in Delegation: ns10.dnsmadeeasy.com.
XFatal: Inconsistency between delegation and zone. The set of NS records served by the authoritative name servers must match those proposed for the delegation in the parent zone. Read https://www.iana.org/help/nameserver-requirements and send it to your Name Server Hoster.: ns12.dnsmadeeasy.com (208.80.126.4): Delegation: ns1.p03.dynect.net, ns11.dnsmadeeasy.com, ns12.dnsmadeeasy.com, ns13.dnsmadeeasy.com, ns2.p03.dynect.net, ns3.p03.dynect.net, ns4.p03.dynect.net, Zone: ns1.p03.dynect.net, ns10.dnsmadeeasy.com, ns11.dnsmadeeasy.com, ns12.dnsmadeeasy.com, ns13.dnsmadeeasy.com, ns2.p03.dynect.net, ns3.p03.dynect.net, ns4.p03.dynect.net. Name Servers defined in Zone, missing in Delegation: ns10.dnsmadeeasy.com.
XFatal: Inconsistency between delegation and zone. The set of NS records served by the authoritative name servers must match those proposed for the delegation in the parent zone. Read https://www.iana.org/help/nameserver-requirements and send it to your Name Server Hoster.: ns12.dnsmadeeasy.com (2600:1802:12::1): Delegation: ns1.p03.dynect.net, ns11.dnsmadeeasy.com, ns12.dnsmadeeasy.com, ns13.dnsmadeeasy.com, ns2.p03.dynect.net, ns3.p03.dynect.net, ns4.p03.dynect.net, Zone: ns1.p03.dynect.net, ns10.dnsmadeeasy.com, ns11.dnsmadeeasy.com, ns12.dnsmadeeasy.com, ns13.dnsmadeeasy.com, ns2.p03.dynect.net, ns3.p03.dynect.net, ns4.p03.dynect.net. Name Servers defined in Zone, missing in Delegation: ns10.dnsmadeeasy.com.
XFatal: Inconsistency between delegation and zone. The set of NS records served by the authoritative name servers must match those proposed for the delegation in the parent zone. Read https://www.iana.org/help/nameserver-requirements and send it to your Name Server Hoster.: ns12.dnsmadeeasy.com (208.80.126.4): Delegation: ns1.p03.dynect.net, ns11.dnsmadeeasy.com, ns12.dnsmadeeasy.com, ns13.dnsmadeeasy.com, ns2.p03.dynect.net, ns3.p03.dynect.net, ns4.p03.dynect.net, Zone: ns1.p03.dynect.net, ns10.dnsmadeeasy.com, ns11.dnsmadeeasy.com, ns12.dnsmadeeasy.com, ns13.dnsmadeeasy.com, ns2.p03.dynect.net, ns3.p03.dynect.net, ns4.p03.dynect.net. Name Servers defined in Zone, missing in Delegation: ns10.dnsmadeeasy.com.
XFatal: Inconsistency between delegation and zone. The set of NS records served by the authoritative name servers must match those proposed for the delegation in the parent zone. Read https://www.iana.org/help/nameserver-requirements and send it to your Name Server Hoster.: ns12.dnsmadeeasy.com (2600:1802:12::1): Delegation: ns1.p03.dynect.net, ns11.dnsmadeeasy.com, ns12.dnsmadeeasy.com, ns13.dnsmadeeasy.com, ns2.p03.dynect.net, ns3.p03.dynect.net, ns4.p03.dynect.net, Zone: ns1.p03.dynect.net, ns10.dnsmadeeasy.com, ns11.dnsmadeeasy.com, ns12.dnsmadeeasy.com, ns13.dnsmadeeasy.com, ns2.p03.dynect.net, ns3.p03.dynect.net, ns4.p03.dynect.net. Name Servers defined in Zone, missing in Delegation: ns10.dnsmadeeasy.com.
XFatal: Inconsistency between delegation and zone. The set of NS records served by the authoritative name servers must match those proposed for the delegation in the parent zone. Read https://www.iana.org/help/nameserver-requirements and send it to your Name Server Hoster.: ns13.dnsmadeeasy.com (208.80.125.4): Delegation: ns1.p03.dynect.net, ns11.dnsmadeeasy.com, ns12.dnsmadeeasy.com, ns13.dnsmadeeasy.com, ns2.p03.dynect.net, ns3.p03.dynect.net, ns4.p03.dynect.net, Zone: ns1.p03.dynect.net, ns10.dnsmadeeasy.com, ns11.dnsmadeeasy.com, ns12.dnsmadeeasy.com, ns13.dnsmadeeasy.com, ns2.p03.dynect.net, ns3.p03.dynect.net, ns4.p03.dynect.net. Name Servers defined in Zone, missing in Delegation: ns10.dnsmadeeasy.com.
XFatal: Inconsistency between delegation and zone. The set of NS records served by the authoritative name servers must match those proposed for the delegation in the parent zone. Read https://www.iana.org/help/nameserver-requirements and send it to your Name Server Hoster.: ns13.dnsmadeeasy.com (2600:1801:13::1): Delegation: ns1.p03.dynect.net, ns11.dnsmadeeasy.com, ns12.dnsmadeeasy.com, ns13.dnsmadeeasy.com, ns2.p03.dynect.net, ns3.p03.dynect.net, ns4.p03.dynect.net, Zone: ns1.p03.dynect.net, ns10.dnsmadeeasy.com, ns11.dnsmadeeasy.com, ns12.dnsmadeeasy.com, ns13.dnsmadeeasy.com, ns2.p03.dynect.net, ns3.p03.dynect.net, ns4.p03.dynect.net. Name Servers defined in Zone, missing in Delegation: ns10.dnsmadeeasy.com.
XFatal: Inconsistency between delegation and zone. The set of NS records served by the authoritative name servers must match those proposed for the delegation in the parent zone. Read https://www.iana.org/help/nameserver-requirements and send it to your Name Server Hoster.: ns13.dnsmadeeasy.com (208.80.125.4): Delegation: ns1.p03.dynect.net, ns11.dnsmadeeasy.com, ns12.dnsmadeeasy.com, ns13.dnsmadeeasy.com, ns2.p03.dynect.net, ns3.p03.dynect.net, ns4.p03.dynect.net, Zone: ns1.p03.dynect.net, ns10.dnsmadeeasy.com, ns11.dnsmadeeasy.com, ns12.dnsmadeeasy.com, ns13.dnsmadeeasy.com, ns2.p03.dynect.net, ns3.p03.dynect.net, ns4.p03.dynect.net. Name Servers defined in Zone, missing in Delegation: ns10.dnsmadeeasy.com.
XFatal: Inconsistency between delegation and zone. The set of NS records served by the authoritative name servers must match those proposed for the delegation in the parent zone. Read https://www.iana.org/help/nameserver-requirements and send it to your Name Server Hoster.: ns13.dnsmadeeasy.com (2600:1801:13::1): Delegation: ns1.p03.dynect.net, ns11.dnsmadeeasy.com, ns12.dnsmadeeasy.com, ns13.dnsmadeeasy.com, ns2.p03.dynect.net, ns3.p03.dynect.net, ns4.p03.dynect.net, Zone: ns1.p03.dynect.net, ns10.dnsmadeeasy.com, ns11.dnsmadeeasy.com, ns12.dnsmadeeasy.com, ns13.dnsmadeeasy.com, ns2.p03.dynect.net, ns3.p03.dynect.net, ns4.p03.dynect.net. Name Servers defined in Zone, missing in Delegation: ns10.dnsmadeeasy.com.
XFatal: Inconsistency between delegation and zone. The set of NS records served by the authoritative name servers must match those proposed for the delegation in the parent zone. Read https://www.iana.org/help/nameserver-requirements and send it to your Name Server Hoster.: ns2.p03.dynect.net (108.59.162.3): Delegation: ns1.p03.dynect.net, ns11.dnsmadeeasy.com, ns12.dnsmadeeasy.com, ns13.dnsmadeeasy.com, ns2.p03.dynect.net, ns3.p03.dynect.net, ns4.p03.dynect.net, Zone: ns1.p03.dynect.net, ns10.dnsmadeeasy.com, ns11.dnsmadeeasy.com, ns12.dnsmadeeasy.com, ns13.dnsmadeeasy.com, ns2.p03.dynect.net, ns3.p03.dynect.net, ns4.p03.dynect.net. Name Servers defined in Zone, missing in Delegation: ns10.dnsmadeeasy.com.
XFatal: Inconsistency between delegation and zone. The set of NS records served by the authoritative name servers must match those proposed for the delegation in the parent zone. Read https://www.iana.org/help/nameserver-requirements and send it to your Name Server Hoster.: ns2.p03.dynect.net (2600:2000:2220::3): Delegation: ns1.p03.dynect.net, ns11.dnsmadeeasy.com, ns12.dnsmadeeasy.com, ns13.dnsmadeeasy.com, ns2.p03.dynect.net, ns3.p03.dynect.net, ns4.p03.dynect.net, Zone: ns1.p03.dynect.net, ns10.dnsmadeeasy.com, ns11.dnsmadeeasy.com, ns12.dnsmadeeasy.com, ns13.dnsmadeeasy.com, ns2.p03.dynect.net, ns3.p03.dynect.net, ns4.p03.dynect.net. Name Servers defined in Zone, missing in Delegation: ns10.dnsmadeeasy.com.
XFatal: Inconsistency between delegation and zone. The set of NS records served by the authoritative name servers must match those proposed for the delegation in the parent zone. Read https://www.iana.org/help/nameserver-requirements and send it to your Name Server Hoster.: ns2.p03.dynect.net (108.59.162.3): Delegation: ns1.p03.dynect.net, ns11.dnsmadeeasy.com, ns12.dnsmadeeasy.com, ns13.dnsmadeeasy.com, ns2.p03.dynect.net, ns3.p03.dynect.net, ns4.p03.dynect.net, Zone: ns1.p03.dynect.net, ns10.dnsmadeeasy.com, ns11.dnsmadeeasy.com, ns12.dnsmadeeasy.com, ns13.dnsmadeeasy.com, ns2.p03.dynect.net, ns3.p03.dynect.net, ns4.p03.dynect.net. Name Servers defined in Zone, missing in Delegation: ns10.dnsmadeeasy.com.
XFatal: Inconsistency between delegation and zone. The set of NS records served by the authoritative name servers must match those proposed for the delegation in the parent zone. Read https://www.iana.org/help/nameserver-requirements and send it to your Name Server Hoster.: ns2.p03.dynect.net (2600:2000:2220::3): Delegation: ns1.p03.dynect.net, ns11.dnsmadeeasy.com, ns12.dnsmadeeasy.com, ns13.dnsmadeeasy.com, ns2.p03.dynect.net, ns3.p03.dynect.net, ns4.p03.dynect.net, Zone: ns1.p03.dynect.net, ns10.dnsmadeeasy.com, ns11.dnsmadeeasy.com, ns12.dnsmadeeasy.com, ns13.dnsmadeeasy.com, ns2.p03.dynect.net, ns3.p03.dynect.net, ns4.p03.dynect.net. Name Servers defined in Zone, missing in Delegation: ns10.dnsmadeeasy.com.
XFatal: Inconsistency between delegation and zone. The set of NS records served by the authoritative name servers must match those proposed for the delegation in the parent zone. Read https://www.iana.org/help/nameserver-requirements and send it to your Name Server Hoster.: ns3.p03.dynect.net (108.59.163.3): Delegation: ns1.p03.dynect.net, ns11.dnsmadeeasy.com, ns12.dnsmadeeasy.com, ns13.dnsmadeeasy.com, ns2.p03.dynect.net, ns3.p03.dynect.net, ns4.p03.dynect.net, Zone: ns1.p03.dynect.net, ns10.dnsmadeeasy.com, ns11.dnsmadeeasy.com, ns12.dnsmadeeasy.com, ns13.dnsmadeeasy.com, ns2.p03.dynect.net, ns3.p03.dynect.net, ns4.p03.dynect.net. Name Servers defined in Zone, missing in Delegation: ns10.dnsmadeeasy.com.
XFatal: Inconsistency between delegation and zone. The set of NS records served by the authoritative name servers must match those proposed for the delegation in the parent zone. Read https://www.iana.org/help/nameserver-requirements and send it to your Name Server Hoster.: ns3.p03.dynect.net (2600:2000:2230::3): Delegation: ns1.p03.dynect.net, ns11.dnsmadeeasy.com, ns12.dnsmadeeasy.com, ns13.dnsmadeeasy.com, ns2.p03.dynect.net, ns3.p03.dynect.net, ns4.p03.dynect.net, Zone: ns1.p03.dynect.net, ns10.dnsmadeeasy.com, ns11.dnsmadeeasy.com, ns12.dnsmadeeasy.com, ns13.dnsmadeeasy.com, ns2.p03.dynect.net, ns3.p03.dynect.net, ns4.p03.dynect.net. Name Servers defined in Zone, missing in Delegation: ns10.dnsmadeeasy.com.
XFatal: Inconsistency between delegation and zone. The set of NS records served by the authoritative name servers must match those proposed for the delegation in the parent zone. Read https://www.iana.org/help/nameserver-requirements and send it to your Name Server Hoster.: ns3.p03.dynect.net (108.59.163.3): Delegation: ns1.p03.dynect.net, ns11.dnsmadeeasy.com, ns12.dnsmadeeasy.com, ns13.dnsmadeeasy.com, ns2.p03.dynect.net, ns3.p03.dynect.net, ns4.p03.dynect.net, Zone: ns1.p03.dynect.net, ns10.dnsmadeeasy.com, ns11.dnsmadeeasy.com, ns12.dnsmadeeasy.com, ns13.dnsmadeeasy.com, ns2.p03.dynect.net, ns3.p03.dynect.net, ns4.p03.dynect.net. Name Servers defined in Zone, missing in Delegation: ns10.dnsmadeeasy.com.
XFatal: Inconsistency between delegation and zone. The set of NS records served by the authoritative name servers must match those proposed for the delegation in the parent zone. Read https://www.iana.org/help/nameserver-requirements and send it to your Name Server Hoster.: ns3.p03.dynect.net (2600:2000:2230::3): Delegation: ns1.p03.dynect.net, ns11.dnsmadeeasy.com, ns12.dnsmadeeasy.com, ns13.dnsmadeeasy.com, ns2.p03.dynect.net, ns3.p03.dynect.net, ns4.p03.dynect.net, Zone: ns1.p03.dynect.net, ns10.dnsmadeeasy.com, ns11.dnsmadeeasy.com, ns12.dnsmadeeasy.com, ns13.dnsmadeeasy.com, ns2.p03.dynect.net, ns3.p03.dynect.net, ns4.p03.dynect.net. Name Servers defined in Zone, missing in Delegation: ns10.dnsmadeeasy.com.
XFatal: Inconsistency between delegation and zone. The set of NS records served by the authoritative name servers must match those proposed for the delegation in the parent zone. Read https://www.iana.org/help/nameserver-requirements and send it to your Name Server Hoster.: ns4.p03.dynect.net (108.59.164.3): Delegation: ns1.p03.dynect.net, ns11.dnsmadeeasy.com, ns12.dnsmadeeasy.com, ns13.dnsmadeeasy.com, ns2.p03.dynect.net, ns3.p03.dynect.net, ns4.p03.dynect.net, Zone: ns1.p03.dynect.net, ns10.dnsmadeeasy.com, ns11.dnsmadeeasy.com, ns12.dnsmadeeasy.com, ns13.dnsmadeeasy.com, ns2.p03.dynect.net, ns3.p03.dynect.net, ns4.p03.dynect.net. Name Servers defined in Zone, missing in Delegation: ns10.dnsmadeeasy.com.
XFatal: Inconsistency between delegation and zone. The set of NS records served by the authoritative name servers must match those proposed for the delegation in the parent zone. Read https://www.iana.org/help/nameserver-requirements and send it to your Name Server Hoster.: ns4.p03.dynect.net (2600:2000:2240::3): Delegation: ns1.p03.dynect.net, ns11.dnsmadeeasy.com, ns12.dnsmadeeasy.com, ns13.dnsmadeeasy.com, ns2.p03.dynect.net, ns3.p03.dynect.net, ns4.p03.dynect.net, Zone: ns1.p03.dynect.net, ns10.dnsmadeeasy.com, ns11.dnsmadeeasy.com, ns12.dnsmadeeasy.com, ns13.dnsmadeeasy.com, ns2.p03.dynect.net, ns3.p03.dynect.net, ns4.p03.dynect.net. Name Servers defined in Zone, missing in Delegation: ns10.dnsmadeeasy.com.
XFatal: Inconsistency between delegation and zone. The set of NS records served by the authoritative name servers must match those proposed for the delegation in the parent zone. Read https://www.iana.org/help/nameserver-requirements and send it to your Name Server Hoster.: ns4.p03.dynect.net (108.59.164.3): Delegation: ns1.p03.dynect.net, ns11.dnsmadeeasy.com, ns12.dnsmadeeasy.com, ns13.dnsmadeeasy.com, ns2.p03.dynect.net, ns3.p03.dynect.net, ns4.p03.dynect.net, Zone: ns1.p03.dynect.net, ns10.dnsmadeeasy.com, ns11.dnsmadeeasy.com, ns12.dnsmadeeasy.com, ns13.dnsmadeeasy.com, ns2.p03.dynect.net, ns3.p03.dynect.net, ns4.p03.dynect.net. Name Servers defined in Zone, missing in Delegation: ns10.dnsmadeeasy.com.
XFatal: Inconsistency between delegation and zone. The set of NS records served by the authoritative name servers must match those proposed for the delegation in the parent zone. Read https://www.iana.org/help/nameserver-requirements and send it to your Name Server Hoster.: ns4.p03.dynect.net (2600:2000:2240::3): Delegation: ns1.p03.dynect.net, ns11.dnsmadeeasy.com, ns12.dnsmadeeasy.com, ns13.dnsmadeeasy.com, ns2.p03.dynect.net, ns3.p03.dynect.net, ns4.p03.dynect.net, Zone: ns1.p03.dynect.net, ns10.dnsmadeeasy.com, ns11.dnsmadeeasy.com, ns12.dnsmadeeasy.com, ns13.dnsmadeeasy.com, ns2.p03.dynect.net, ns3.p03.dynect.net, ns4.p03.dynect.net. Name Servers defined in Zone, missing in Delegation: ns10.dnsmadeeasy.com.
AGood: All Name Server Domain Names have a Public Suffix.
AGood: All Name Server Domain Names ending with a Public Suffix have minimal one IPv4- or IPv6 address.
AGood: All Name Server ip addresses are public.
AInfo: Ipv4-Subnet-list: 8 Name Servers, 2 different subnets (first Byte): 108., 208., 3 different subnets (first two Bytes): 108.59., 208.80., 208.94., 8 different subnets (first three Bytes): 108.59.161., 108.59.162., 108.59.163., 108.59.164., 208.80.124., 208.80.125., 208.80.126., 208.94.148.
AGood: Name Server IPv4-addresses from different subnet found:
AInfo: IPv6-Subnet-list: 8 Name Servers with IPv6, 1 different subnets (first block): 2600:, 4 different subnets (first two blocks): 2600:1800:, 2600:1801:, 2600:1802:, 2600:2000:, 8 different subnets (first three blocks): 2600:1800:0010:, 2600:1801:0011:, 2600:1801:0013:, 2600:1802:0012:, 2600:2000:2210:, 2600:2000:2220:, 2600:2000:2230:, 2600:2000:2240:, 8 different subnets (first four blocks): 2600:1800:0010:0000:, 2600:1801:0011:0000:, 2600:1801:0013:0000:, 2600:1802:0012:0000:, 2600:2000:2210:0000:, 2600:2000:2220:0000:, 2600:2000:2230:0000:, 2600:2000:2240:0000:
AGood: Name Server IPv6 addresses from different subnets found.
AGood: Nameserver supports TCP connections: 32 good Nameserver
XNameserver Timeout checking Echo Capitalization: ns1.p03.dynect.net / 2600:2000:2210::3
XNameserver Timeout checking EDNS512: ns2.p03.dynect.net / 2600:2000:2220::3
Nameserver doesn't pass all EDNS-Checks: ns1.p03.dynect.net: OP100: no result. FLAGS: no result. V1: no result. V1OP100: no result. V1FLAGS: no result. DNSSEC: no result. V1DNSSEC: no result. NSID: no result. COOKIE: no result. CLIENTSUBNET: no result.
Nameserver doesn't pass all EDNS-Checks: ns1.p03.dynect.net / 108.59.161.3: OP100: ok. FLAGS: ok. V1: SOA NOT expected and NOT found, BADVER expected, NOERR found, Version 0 expectend and found. V1OP100: SOA NOT expected and NOT found, BADVER expected, NOERR found, Version 0 expectend and found, no OPT100 expected, no OPT100 found. V1FLAGS: SOA NOT expected and NOT found, BADVER expected, NOERR found, Version 0 expectend and found. DNSSEC: ok. V1DNSSEC: SOA NOT expected and NOT found, BADVER expected, NOERR found, Version 0 expectend and found. NSID: ok (dns4-02-fra-ad2.eu-frankfurt-1). COOKIE: ok. CLIENTSUBNET: ok.
Nameserver doesn't pass all EDNS-Checks: ns1.p03.dynect.net / 108.59.161.3: OP100: ok. FLAGS: ok. V1: SOA NOT expected and NOT found, BADVER expected, NOERR found, Version 0 expectend and found. V1OP100: SOA NOT expected and NOT found, BADVER expected, NOERR found, Version 0 expectend and found, no OPT100 expected, no OPT100 found. V1FLAGS: SOA NOT expected and NOT found, BADVER expected, NOERR found, Version 0 expectend and found. DNSSEC: ok. V1DNSSEC: SOA NOT expected and NOT found, BADVER expected, NOERR found, Version 0 expectend and found. NSID: ok (dns4-01-fra-ad1.eu-frankfurt-1). COOKIE: ok. CLIENTSUBNET: ok.
Nameserver doesn't pass all EDNS-Checks: ns1.p03.dynect.net / 108.59.161.3: OP100: ok. FLAGS: ok. V1: SOA NOT expected and NOT found, BADVER expected, NOERR found, Version 0 expectend and found. V1OP100: SOA NOT expected and NOT found, BADVER expected, NOERR found, Version 0 expectend and found, no OPT100 expected, no OPT100 found. V1FLAGS: SOA NOT expected and NOT found, BADVER expected, NOERR found, Version 0 expectend and found. DNSSEC: ok. V1DNSSEC: SOA NOT expected and NOT found, BADVER expected, NOERR found, Version 0 expectend and found. NSID: ok (dns4-01-fra-ad1.eu-frankfurt-1). COOKIE: ok. CLIENTSUBNET: ok.
Nameserver doesn't pass all EDNS-Checks: ns1.p03.dynect.net / 2600:2000:2210::3: OP100: fatal timeout. FLAGS: ok. V1: SOA NOT expected and NOT found, BADVER expected, NOERR found, Version 0 expectend and found. V1OP100: SOA NOT expected and NOT found, BADVER expected, NOERR found, Version 0 expectend and found, no OPT100 expected, no OPT100 found. V1FLAGS: SOA NOT expected and NOT found, BADVER expected, NOERR found, Version 0 expectend and found. DNSSEC: ok. V1DNSSEC: SOA NOT expected and NOT found, BADVER expected, NOERR found, Version 0 expectend and found. NSID: ok (dns4-01-sin-ad1.ap-singapore-1). COOKIE: fatal timeout. CLIENTSUBNET: fatal timeout.
Nameserver doesn't pass all EDNS-Checks: ns1.p03.dynect.net / 2600:2000:2210::3: OP100: ok. FLAGS: ok. V1: fatal timeout. V1OP100: SOA NOT expected and NOT found, BADVER expected, NOERR found, Version 0 expectend and found, no OPT100 expected, no OPT100 found. V1FLAGS: SOA NOT expected and NOT found, BADVER expected, NOERR found, Version 0 expectend and found. DNSSEC: ok. V1DNSSEC: SOA NOT expected and NOT found, BADVER expected, NOERR found, Version 0 expectend and found. NSID: ok (dns4-02-sin-ad1.ap-singapore-1). COOKIE: ok. CLIENTSUBNET: ok.
Nameserver doesn't pass all EDNS-Checks: ns1.p03.dynect.net / 2600:2000:2210::3: OP100: ok. FLAGS: ok. V1: SOA NOT expected and NOT found, BADVER expected, NOERR found, Version 0 expectend and found. V1OP100: SOA NOT expected and NOT found, BADVER expected, NOERR found, Version 0 expectend and found, no OPT100 expected, no OPT100 found. V1FLAGS: SOA NOT expected and NOT found, BADVER expected, NOERR found, Version 0 expectend and found. DNSSEC: ok. V1DNSSEC: fatal timeout. NSID: ok (dns4-03-sin-ad1.ap-singapore-1). COOKIE: ok. CLIENTSUBNET: ok.
Nameserver doesn't pass all EDNS-Checks: ns1.phicdn.net / 72.21.80.5: OP100: no result. FLAGS: no result. V1: no result. V1OP100: no result. V1FLAGS: no result. DNSSEC: no result. V1DNSSEC: no result. NSID: no result. COOKIE: no result. CLIENTSUBNET: no result.
Nameserver doesn't pass all EDNS-Checks: ns1.phicdn.net / 2606:2800:1::5: OP100: no result. FLAGS: no result. V1: no result. V1OP100: no result. V1FLAGS: no result. DNSSEC: no result. V1DNSSEC: no result. NSID: no result. COOKIE: no result. CLIENTSUBNET: no result.
Nameserver doesn't pass all EDNS-Checks: ns10.dnsmadeeasy.com: OP100: no result. FLAGS: no result. V1: no result. V1OP100: no result. V1FLAGS: no result. DNSSEC: no result. V1DNSSEC: no result. NSID: no result. COOKIE: no result. CLIENTSUBNET: no result.
Nameserver doesn't pass all EDNS-Checks: ns2.p03.dynect.net / 108.59.162.3: OP100: ok. FLAGS: ok. V1: SOA NOT expected and NOT found, BADVER expected, NOERR found, Version 0 expectend and found. V1OP100: SOA NOT expected and NOT found, BADVER expected, NOERR found, Version 0 expectend and found, no OPT100 expected, no OPT100 found. V1FLAGS: SOA NOT expected and NOT found, BADVER expected, NOERR found, Version 0 expectend and found. DNSSEC: ok. V1DNSSEC: SOA NOT expected and NOT found, BADVER expected, NOERR found, Version 0 expectend and found. NSID: ok (dns4-03-fra-ad3.eu-frankfurt-1). COOKIE: ok. CLIENTSUBNET: ok.
Nameserver doesn't pass all EDNS-Checks: ns2.p03.dynect.net / 108.59.162.3: OP100: ok. FLAGS: ok. V1: SOA NOT expected and NOT found, BADVER expected, NOERR found, Version 0 expectend and found. V1OP100: SOA NOT expected and NOT found, BADVER expected, NOERR found, Version 0 expectend and found, no OPT100 expected, no OPT100 found. V1FLAGS: SOA NOT expected and NOT found, BADVER expected, NOERR found, Version 0 expectend and found. DNSSEC: ok. V1DNSSEC: SOA NOT expected and NOT found, BADVER expected, NOERR found, Version 0 expectend and found. NSID: ok (dns4-04-fra-ad1.eu-frankfurt-1). COOKIE: ok. CLIENTSUBNET: ok.
Nameserver doesn't pass all EDNS-Checks: ns2.p03.dynect.net / 2600:2000:2220::3: OP100: ok. FLAGS: ok. V1: SOA NOT expected and NOT found, BADVER expected, NOERR found, Version 0 expectend and found. V1OP100: SOA NOT expected and NOT found, BADVER expected, NOERR found, Version 0 expectend and found, no OPT100 expected, no OPT100 found. V1FLAGS: fatal timeout. DNSSEC: ok. V1DNSSEC: SOA NOT expected and NOT found, BADVER expected, NOERR found, Version 0 expectend and found. NSID: ok (dns4-01-sin-ad1.ap-singapore-1). COOKIE: ok. CLIENTSUBNET: ok.
Nameserver doesn't pass all EDNS-Checks: ns2.p03.dynect.net / 2600:2000:2220::3: OP100: ok. FLAGS: ok. V1: SOA NOT expected and NOT found, BADVER expected, NOERR found, Version 0 expectend and found. V1OP100: SOA NOT expected and NOT found, BADVER expected, NOERR found, Version 0 expectend and found, no OPT100 expected, no OPT100 found. V1FLAGS: SOA NOT expected and NOT found, BADVER expected, NOERR found, Version 0 expectend and found. DNSSEC: ok. V1DNSSEC: SOA NOT expected and NOT found, BADVER expected, NOERR found, Version 0 expectend and found. NSID: ok (dns4-04-sin-ad1.ap-singapore-1). COOKIE: ok. CLIENTSUBNET: ok.
Nameserver doesn't pass all EDNS-Checks: ns3.p03.dynect.net / 108.59.163.3: OP100: ok. FLAGS: ok. V1: SOA NOT expected and NOT found, BADVER expected, NOERR found, Version 0 expectend and found. V1OP100: SOA NOT expected and NOT found, BADVER expected, NOERR found, Version 0 expectend and found, no OPT100 expected, no OPT100 found. V1FLAGS: SOA NOT expected and NOT found, BADVER expected, NOERR found, Version 0 expectend and found. DNSSEC: ok. V1DNSSEC: SOA NOT expected and NOT found, BADVER expected, NOERR found, Version 0 expectend and found. NSID: ok (dns4-02-ams-ad1.eu-amsterdam-1). COOKIE: ok. CLIENTSUBNET: ok.
Nameserver doesn't pass all EDNS-Checks: ns3.p03.dynect.net / 108.59.163.3: OP100: ok. FLAGS: ok. V1: SOA NOT expected and NOT found, BADVER expected, NOERR found, Version 0 expectend and found. V1OP100: SOA NOT expected and NOT found, BADVER expected, NOERR found, Version 0 expectend and found, no OPT100 expected, no OPT100 found. V1FLAGS: SOA NOT expected and NOT found, BADVER expected, NOERR found, Version 0 expectend and found. DNSSEC: ok. V1DNSSEC: SOA NOT expected and NOT found, BADVER expected, NOERR found, Version 0 expectend and found. NSID: ok (dns4-02-ams-ad1.eu-amsterdam-1). COOKIE: ok. CLIENTSUBNET: ok.
Nameserver doesn't pass all EDNS-Checks: ns3.p03.dynect.net / 2600:2000:2230::3: OP100: ok. FLAGS: ok. V1: SOA NOT expected and NOT found, BADVER expected, NOERR found, Version 0 expectend and found. V1OP100: SOA NOT expected and NOT found, BADVER expected, NOERR found, Version 0 expectend and found, no OPT100 expected, no OPT100 found. V1FLAGS: SOA NOT expected and NOT found, BADVER expected, NOERR found, Version 0 expectend and found. DNSSEC: ok. V1DNSSEC: SOA NOT expected and NOT found, BADVER expected, NOERR found, Version 0 expectend and found. NSID: ok (dns4-04-sin-ad1.ap-singapore-1). COOKIE: ok. CLIENTSUBNET: ok.
Nameserver doesn't pass all EDNS-Checks: ns3.p03.dynect.net / 2600:2000:2230::3: OP100: ok. FLAGS: ok. V1: SOA NOT expected and NOT found, BADVER expected, NOERR found, Version 0 expectend and found. V1OP100: SOA NOT expected and NOT found, BADVER expected, NOERR found, Version 0 expectend and found, no OPT100 expected, no OPT100 found. V1FLAGS: SOA NOT expected and NOT found, BADVER expected, NOERR found, Version 0 expectend and found. DNSSEC: ok. V1DNSSEC: SOA NOT expected and NOT found, BADVER expected, NOERR found, Version 0 expectend and found. NSID: ok (dns4-04-sin-ad1.ap-singapore-1). COOKIE: ok. CLIENTSUBNET: ok.
Nameserver doesn't pass all EDNS-Checks: ns4.p03.dynect.net / 108.59.164.3: OP100: ok. FLAGS: ok. V1: SOA NOT expected and NOT found, BADVER expected, NOERR found, Version 0 expectend and found. V1OP100: SOA NOT expected and NOT found, BADVER expected, NOERR found, Version 0 expectend and found, no OPT100 expected, no OPT100 found. V1FLAGS: SOA NOT expected and NOT found, BADVER expected, NOERR found, Version 0 expectend and found. DNSSEC: ok. V1DNSSEC: SOA NOT expected and NOT found, BADVER expected, NOERR found, Version 0 expectend and found. NSID: ok (dns4-03-fra-ad3.eu-frankfurt-1). COOKIE: ok. CLIENTSUBNET: ok.
Nameserver doesn't pass all EDNS-Checks: ns4.p03.dynect.net / 108.59.164.3: OP100: ok. FLAGS: ok. V1: SOA NOT expected and NOT found, BADVER expected, NOERR found, Version 0 expectend and found. V1OP100: SOA NOT expected and NOT found, BADVER expected, NOERR found, Version 0 expectend and found, no OPT100 expected, no OPT100 found. V1FLAGS: SOA NOT expected and NOT found, BADVER expected, NOERR found, Version 0 expectend and found. DNSSEC: ok. V1DNSSEC: SOA NOT expected and NOT found, BADVER expected, NOERR found, Version 0 expectend and found. NSID: ok (dns4-04-fra-ad1.eu-frankfurt-1). COOKIE: ok. CLIENTSUBNET: ok.
Nameserver doesn't pass all EDNS-Checks: ns4.p03.dynect.net / 2600:2000:2240::3: OP100: ok. FLAGS: ok. V1: SOA NOT expected and NOT found, BADVER expected, NOERR found, Version 0 expectend and found. V1OP100: SOA NOT expected and NOT found, BADVER expected, NOERR found, Version 0 expectend and found, no OPT100 expected, no OPT100 found. V1FLAGS: SOA NOT expected and NOT found, BADVER expected, NOERR found, Version 0 expectend and found. DNSSEC: ok. V1DNSSEC: SOA NOT expected and NOT found, BADVER expected, NOERR found, Version 0 expectend and found. NSID: ok (dns4-04-fra-ad1.eu-frankfurt-1). COOKIE: ok. CLIENTSUBNET: ok.
Nameserver doesn't pass all EDNS-Checks: ns4.p03.dynect.net / 2600:2000:2240::3: OP100: ok. FLAGS: ok. V1: SOA NOT expected and NOT found, BADVER expected, NOERR found, Version 0 expectend and found. V1OP100: SOA NOT expected and NOT found, BADVER expected, NOERR found, Version 0 expectend and found, no OPT100 expected, no OPT100 found. V1FLAGS: SOA NOT expected and NOT found, BADVER expected, NOERR found, Version 0 expectend and found. DNSSEC: ok. V1DNSSEC: SOA NOT expected and NOT found, BADVER expected, NOERR found, Version 0 expectend and found. NSID: ok (dns4-01-fra-ad1.eu-frankfurt-1). COOKIE: ok. CLIENTSUBNET: ok.
AGood: All SOA have the same Serial Number
AGood: CAA entries found, creating certificate is limited: digicert.com is allowed to create certificates
AGood: CAA entries found, creating certificate is limited: digicert.com is allowed to create wildcard-certificates

4. Content- and Performance-critical Checks

http://ocsp.digicert.com/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de 192.229.221.95
200

Warning: Not existing ACME-file, but Server sends 200, not 404 or redirect. May be a problem creating a Letsencrypt certificate. Checking /.well-known/acme-challenge/random-filename - a http status 404 - Not Found - is expected. If your server sends content and a http status 200, the validation file (87 bytes, token, dot and the hash of the public part of the account key) may be invisible, so Letsencrypt can't validate your domain. If it is an application that sends this content, perhaps create an exception, so /.well-known/acme-challenge sends raw files. Or create a redirect to another domain and / or port 443, but your Letsencrypt client must support such a solution. Certbot: Use webroot as authenticator - https://certbot.eff.org/docs/using.html Trouble creating a certificate? Use https://community.letsencrypt.org/ to ask.
AInfo: No img element found, no alt attribute checked
AGood: Domainname is not on the "Specially Designated Nationals And Blocked Persons List" (SDN). That's an US-list of individuals and companies owned or controlled by, or acting for or on behalf of, targeted countries. It also lists individuals, groups, and entities, such as terrorists and narcotics traffickers designated under programs that are not country-specific. Collectively, such individuals and companies are called "Specially Designated Nationals" or "SDNs." Their assets are blocked and U.S. persons are generally prohibited from dealing with them. So if a domain name is on that list, it's impossible to create a Letsencrypt certificate with that domain name. Check the list manual - https://www.treasury.gov/resource-center/sanctions/sdn-list/pages/default.aspx
https://ocsp.digicert.com/ 192.229.221.95
404
2.770 seconds
Warning: 404 needs more then one second
https://192.229.221.95/ 192.229.221.95
404
2.597 seconds
Warning: 404 needs more then one second
AInfo: Different Server-Headers found
ADuration: 321130 milliseconds, 321.130 seconds


8. Connections

DomainIPPortCert.ProtocolKeyExchangeStrengthCipherStrengthHashAlgorithmOCSP stapling
Domain/KeyExchangeIP/StrengthPort/CipherCert./StrengthProtocol/HashAlgorithmOCSP stapling
ocsp.digicert.com
192.229.221.95
443
name does not match
Tls12
ECDH Ephermal
256
Aes128
128
Sha256
supported
ok
ocsp.digicert.com
192.229.221.95
443
name does not match
Tls12

ECDH Ephermal
256
Aes128
128
Sha256
supported
ok
http/2 via ALPN supported 
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
http/2 via ALPN supported
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
Chain - incomplete
1CN=digicert.edgecastcdn.net, O=Edgecast Inc., L=Los Angeles, C=US, ST=California

2CN=DigiCert TLS RSA SHA256 2020 CA1, O=DigiCert Inc, C=US


192.229.221.95
192.229.221.95
443
name does not match
Tls12
ECDH Ephermal
256
Aes128
128
Sha256
supported
ok

192.229.221.95
192.229.221.95
443
name does not match
Tls12

ECDH Ephermal
256
Aes128
128
Sha256
supported
ok
http/2 via ALPN supported 
Cert sent without SNI
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
http/2 via ALPN supported
Cert sent without SNI
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
Chain - incomplete
1CN=digicert.edgecastcdn.net, O=Edgecast Inc., L=Los Angeles, C=US, ST=California

2CN=DigiCert TLS RSA SHA256 2020 CA1, O=DigiCert Inc, C=US


9. Certificates

1.
1.
CN=digicert.edgecastcdn.net, O=Edgecast Inc., L=Los Angeles, S=California, C=US
17.02.2023
12.05.2023
expires in 45 days
digicert.edgecastcdn.net, cacerts.digicert.com, dl.cacerts.digicert.com, vmc.digicert.com - 4 entries
1.
1.
CN=digicert.edgecastcdn.net, O=Edgecast Inc., L=Los Angeles, S=California, C=US
17.02.2023

12.05.2023
expires in 45 days
digicert.edgecastcdn.net, cacerts.digicert.com, dl.cacerts.digicert.com, vmc.digicert.com - 4 entries

KeyalgorithmRSA encryption (2048 bit)
Signatur:SHA256 With RSA-Encryption
Serial Number:0C51AD1C41FABBDED94C7420E7CA74C6
Thumbprint:15DEBEFE84ED78DFEEC43D2ED3FEA0B6C4043DEE
SHA256 / Certificate:in6DH4S5aVHmCsJ5FowHv+5KbDikhKr7VpgX9ejhMVI=
SHA256 hex / Cert (DANE * 0 1):e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA256 hex / PublicKey (DANE * 1 1):b996205e1891a20b761a2b4411912ea9a23d8b73aa7d90c8c1224a8ebd960b39
SHA256 hex / Subject Public Key Information (SPKI):b996205e1891a20b761a2b4411912ea9a23d8b73aa7d90c8c1224a8ebd960b39 (is buggy, ignore the result)
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Check unknown. No result 404 / 200
OCSP - Url:http://ocsp.digicert.com
OCSP - must staple:no
Certificate Transparency:yes
Enhanced Key Usage:Serverauthentifizierung (1.3.6.1.5.5.7.3.1), Clientauthentifizierung (1.3.6.1.5.5.7.3.2)


2.
CN=digicert.edgecastcdn.net, O=Edgecast Inc., L=Los Angeles, S=California, C=US
17.02.2023
12.05.2023
expires in 45 days
digicert.edgecastcdn.net, cacerts.digicert.com, dl.cacerts.digicert.com, vmc.digicert.com - 4 entries

2.
CN=digicert.edgecastcdn.net, O=Edgecast Inc., L=Los Angeles, S=California, C=US
17.02.2023

12.05.2023
expires in 45 days
digicert.edgecastcdn.net, cacerts.digicert.com, dl.cacerts.digicert.com, vmc.digicert.com - 4 entries

KeyalgorithmRSA encryption (2048 bit)
Signatur:SHA256 With RSA-Encryption
Serial Number:0C51AD1C41FABBDED94C7420E7CA74C6
Thumbprint:15DEBEFE84ED78DFEEC43D2ED3FEA0B6C4043DEE
SHA256 / Certificate:in6DH4S5aVHmCsJ5FowHv+5KbDikhKr7VpgX9ejhMVI=
SHA256 hex / Cert (DANE * 0 1):e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA256 hex / PublicKey (DANE * 1 1):b996205e1891a20b761a2b4411912ea9a23d8b73aa7d90c8c1224a8ebd960b39
SHA256 hex / Subject Public Key Information (SPKI):b996205e1891a20b761a2b4411912ea9a23d8b73aa7d90c8c1224a8ebd960b39 (is buggy, ignore the result)
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Check unknown. No result 404 / 200
OCSP - Url:http://ocsp.digicert.com
OCSP - must staple:no
Certificate Transparency:yes
Enhanced Key Usage:Serverauthentifizierung (1.3.6.1.5.5.7.3.1), Clientauthentifizierung (1.3.6.1.5.5.7.3.2)


3.
CN=DigiCert TLS RSA SHA256 2020 CA1, O=DigiCert Inc, C=US
14.04.2021
14.04.2031
expires in 2939 days


3.
CN=DigiCert TLS RSA SHA256 2020 CA1, O=DigiCert Inc, C=US
14.04.2021

14.04.2031
expires in 2939 days


KeyalgorithmRSA encryption (2048 bit)
Signatur:SHA256 With RSA-Encryption
Serial Number:06D8D904D5584346F68A2FA754227EC4
Thumbprint:1C58A3A8518E8759BF075B76B750D4F2DF264FCD
SHA256 / Certificate:UidMV85N7jtJ23p/9wjAQPdxiYs76IclqG+0QwGC/hQ=
SHA256 hex / Cert (DANE * 0 1):e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA256 hex / PublicKey (DANE * 1 1):450799901e36ce751fb0320815621189811c2a5ee71f0345c160ab9cc3096d57
SHA256 hex / Subject Public Key Information (SPKI):450799901e36ce751fb0320815621189811c2a5ee71f0345c160ab9cc3096d57
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Check unknown. No result 404 / 200
OCSP - Url:http://ocsp.digicert.com
OCSP - must staple:no
Certificate Transparency:no
Enhanced Key Usage:Serverauthentifizierung (1.3.6.1.5.5.7.3.1), Clientauthentifizierung (1.3.6.1.5.5.7.3.2)


4.
CN=DigiCert TLS RSA SHA256 2020 CA1, O=DigiCert Inc, C=US
14.04.2021
14.04.2031
expires in 2939 days


4.
CN=DigiCert TLS RSA SHA256 2020 CA1, O=DigiCert Inc, C=US
14.04.2021

14.04.2031
expires in 2939 days


KeyalgorithmRSA encryption (2048 bit)
Signatur:SHA256 With RSA-Encryption
Serial Number:06D8D904D5584346F68A2FA754227EC4
Thumbprint:1C58A3A8518E8759BF075B76B750D4F2DF264FCD
SHA256 / Certificate:UidMV85N7jtJ23p/9wjAQPdxiYs76IclqG+0QwGC/hQ=
SHA256 hex / Cert (DANE * 0 1):e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA256 hex / PublicKey (DANE * 1 1):450799901e36ce751fb0320815621189811c2a5ee71f0345c160ab9cc3096d57
SHA256 hex / Subject Public Key Information (SPKI):450799901e36ce751fb0320815621189811c2a5ee71f0345c160ab9cc3096d57
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Check unknown. No result 404 / 200
OCSP - Url:http://ocsp.digicert.com
OCSP - must staple:no
Certificate Transparency:no
Enhanced Key Usage:Serverauthentifizierung (1.3.6.1.5.5.7.3.1), Clientauthentifizierung (1.3.6.1.5.5.7.3.2)


5.
CN=DigiCert Global Root CA, OU=www.digicert.com, O=DigiCert Inc, C=US
10.11.2006
10.11.2031
expires in 3149 days


5.
CN=DigiCert Global Root CA, OU=www.digicert.com, O=DigiCert Inc, C=US
10.11.2006

10.11.2031
expires in 3149 days


KeyalgorithmRSA encryption (2048 bit)
Signatur:SHA-1 with RSA Encryption
Serial Number:083BE056904246B1A1756AC95991C74A
Thumbprint:A8985D3A65E5E5C4B2D7D66D40C6DD2FB19C5436
SHA256 / Certificate:Q0ig6URMeMsmXgWNXolEtNhPlmK9Jtslf4k0pEPHAWE=
SHA256 hex / Cert (DANE * 0 1):4348a0e9444c78cb265e058d5e8944b4d84f9662bd26db257f8934a443c70161
SHA256 hex / PublicKey (DANE * 1 1):aff988906dde12955d9bebbf928fdcc31cce328d5b9384f21c8941ca26e20391
SHA256 hex / Subject Public Key Information (SPKI):aff988906dde12955d9bebbf928fdcc31cce328d5b9384f21c8941ca26e20391
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Good: Key isn't compromised
OCSP - Url:
OCSP - must staple:no
Certificate Transparency:no
Enhanced Key Usage:



6.
CN=DigiCert Global Root CA, OU=www.digicert.com, O=DigiCert Inc, C=US
07.12.2016
10.05.2025
expires in 774 days


6.
CN=DigiCert Global Root CA, OU=www.digicert.com, O=DigiCert Inc, C=US
07.12.2016

10.05.2025
expires in 774 days


KeyalgorithmRSA encryption (2048 bit)
Signatur:SHA256 With RSA-Encryption
Serial Number:0F5BC3A176CB789E2020C7893C8167B4
Thumbprint:FB20FA8A6A93B375F054814F9E00273EA51A6138
SHA256 / Certificate:bay7iUUTex2tQhGwQ2774G8SrONpBJc7Ra4ldAgj02k=
SHA256 hex / Cert (DANE * 0 1):6dacbb8945137b1dad4211b0436efbe06f12ace36904973b45ae25740823d369
SHA256 hex / PublicKey (DANE * 1 1):aff988906dde12955d9bebbf928fdcc31cce328d5b9384f21c8941ca26e20391
SHA256 hex / Subject Public Key Information (SPKI):aff988906dde12955d9bebbf928fdcc31cce328d5b9384f21c8941ca26e20391
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Good: Key isn't compromised
OCSP - Url:http://ocsp.digicert.com
OCSP - must staple:no
Certificate Transparency:no
Enhanced Key Usage:


7.
CN=Baltimore CyberTrust Root, OU=CyberTrust, O=Baltimore, C=IE
12.05.2000
13.05.2025
expires in 777 days


7.
CN=Baltimore CyberTrust Root, OU=CyberTrust, O=Baltimore, C=IE
12.05.2000

13.05.2025
expires in 777 days


KeyalgorithmRSA encryption (2048 bit)
Signatur:SHA-1 with RSA Encryption
Serial Number:020000B9
Thumbprint:D4DE20D05E66FC53FE1A50882C78DB2852CAE474
SHA256 / Certificate:Fq9XqfZ2sKsSYJWqXrre8iqzERnWRKyVzUuT2/Pyaus=
SHA256 hex / Cert (DANE * 0 1):16af57a9f676b0ab126095aa5ebadef22ab31119d644ac95cd4b93dbf3f26aeb
SHA256 hex / PublicKey (DANE * 1 1):63d9af9b47b1064d49a10e7b7fd566dbc8caa399459bfc2829c571ad8c6ef34a
SHA256 hex / Subject Public Key Information (SPKI):63d9af9b47b1064d49a10e7b7fd566dbc8caa399459bfc2829c571ad8c6ef34a
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Good: Key isn't compromised
OCSP - Url:
OCSP - must staple:no
Certificate Transparency:no
Enhanced Key Usage:



10. Last Certificates - Certificate Transparency Log Check

1. Source CertSpotter - active certificates (one check per day)

No CertSpotter - CT-Log entries found


2. Source crt.sh - old and new certificates, sometimes very slow - only certificates with "not after" > of the last months are listed

No CRT - CT-Log entries found


11. Html-Content - Entries

No Html-Content entries found. Only checked if https + status 200/401/403/404


12. Nameserver - IP-Adresses

Required Root-climbing DNS-Queries to find ip addresses of all Name Servers: ns1.p03.dynect.net, ns10.dnsmadeeasy.com, ns11.dnsmadeeasy.com, ns12.dnsmadeeasy.com, ns13.dnsmadeeasy.com, ns2.p03.dynect.net, ns3.p03.dynect.net, ns4.p03.dynect.net

QNr.DomainTypeNS used
1
net
NS
b.root-servers.net (2001:500:200::b)

Answer: a.gtld-servers.net, b.gtld-servers.net, c.gtld-servers.net, d.gtld-servers.net, e.gtld-servers.net, f.gtld-servers.net, g.gtld-servers.net, h.gtld-servers.net, i.gtld-servers.net, j.gtld-servers.net, k.gtld-servers.net, l.gtld-servers.net, m.gtld-servers.net
2
ns1.p03.dynect.net
NS
a.gtld-servers.net (2001:503:a83e::2:30)

Answer: ns1.dynamicnetworkservices.net, ns2.dynamicnetworkservices.net, ns3.dynamicnetworkservices.net, ns4.dynamicnetworkservices.net, ns5.dynamicnetworkservices.net, ns6.dynamicnetworkservices.net

Answer: ns1.dynamicnetworkservices.net
108.59.161.136, 2600:2000:2210::136

Answer: ns2.dynamicnetworkservices.net
108.59.162.136, 2600:2000:2220::136

Answer: ns3.dynamicnetworkservices.net
108.59.163.136, 2600:2000:2230::136

Answer: ns4.dynamicnetworkservices.net
108.59.164.136, 2600:2000:2240::136

Answer: ns5.dynamicnetworkservices.net
108.59.161.136, 2600:2000:2210::136

Answer: ns6.dynamicnetworkservices.net
108.59.163.136, 2600:2000:2230::136
3
com
NS
d.root-servers.net (2001:500:2d::d)

Answer: a.gtld-servers.net, b.gtld-servers.net, c.gtld-servers.net, d.gtld-servers.net, e.gtld-servers.net, f.gtld-servers.net, g.gtld-servers.net, h.gtld-servers.net, i.gtld-servers.net, j.gtld-servers.net, k.gtld-servers.net, l.gtld-servers.net, m.gtld-servers.net
4
ns10.dnsmadeeasy.com
NS
a.gtld-servers.net (2001:503:a83e::2:30)

Answer: ns0.dnsmadeeasy.com, ns1.dnsmadeeasy.com, ns2.dnsmadeeasy.com, ns3.dnsmadeeasy.com, ns4.dnsmadeeasy.com, ns8.dnsmadeeasy.com

Answer: ns0.dnsmadeeasy.com
208.94.148.2, 2600:1800::1

Answer: ns1.dnsmadeeasy.com
208.80.124.2, 2600:1801:1::1

Answer: ns2.dnsmadeeasy.com
208.80.126.2, 2600:1802:2::1

Answer: ns3.dnsmadeeasy.com
208.80.125.2, 2600:1801:3::1

Answer: ns4.dnsmadeeasy.com
208.80.127.2, 2600:1802:4::1

Answer: ns8.dnsmadeeasy.com
208.94.149.2, 2600:1800:8::1
5
ns11.dnsmadeeasy.com
NS
a.gtld-servers.net (2001:503:a83e::2:30)

Answer: ns0.dnsmadeeasy.com, ns1.dnsmadeeasy.com, ns2.dnsmadeeasy.com, ns3.dnsmadeeasy.com, ns4.dnsmadeeasy.com, ns8.dnsmadeeasy.com

Answer: ns0.dnsmadeeasy.com
208.94.148.2, 2600:1800::1

Answer: ns1.dnsmadeeasy.com
208.80.124.2, 2600:1801:1::1

Answer: ns2.dnsmadeeasy.com
208.80.126.2, 2600:1802:2::1

Answer: ns3.dnsmadeeasy.com
208.80.125.2, 2600:1801:3::1

Answer: ns4.dnsmadeeasy.com
208.80.127.2, 2600:1802:4::1

Answer: ns8.dnsmadeeasy.com
208.94.149.2, 2600:1800:8::1
6
ns12.dnsmadeeasy.com
NS
a.gtld-servers.net (2001:503:a83e::2:30)

Answer: ns0.dnsmadeeasy.com, ns1.dnsmadeeasy.com, ns2.dnsmadeeasy.com, ns3.dnsmadeeasy.com, ns4.dnsmadeeasy.com, ns8.dnsmadeeasy.com

Answer: ns0.dnsmadeeasy.com
208.94.148.2, 2600:1800::1

Answer: ns1.dnsmadeeasy.com
208.80.124.2, 2600:1801:1::1

Answer: ns2.dnsmadeeasy.com
208.80.126.2, 2600:1802:2::1

Answer: ns3.dnsmadeeasy.com
208.80.125.2, 2600:1801:3::1

Answer: ns4.dnsmadeeasy.com
208.80.127.2, 2600:1802:4::1

Answer: ns8.dnsmadeeasy.com
208.94.149.2, 2600:1800:8::1
7
ns13.dnsmadeeasy.com
NS
a.gtld-servers.net (2001:503:a83e::2:30)

Answer: ns0.dnsmadeeasy.com, ns1.dnsmadeeasy.com, ns2.dnsmadeeasy.com, ns3.dnsmadeeasy.com, ns4.dnsmadeeasy.com, ns8.dnsmadeeasy.com

Answer: ns0.dnsmadeeasy.com
208.94.148.2, 2600:1800::1

Answer: ns1.dnsmadeeasy.com
208.80.124.2, 2600:1801:1::1

Answer: ns2.dnsmadeeasy.com
208.80.126.2, 2600:1802:2::1

Answer: ns3.dnsmadeeasy.com
208.80.125.2, 2600:1801:3::1

Answer: ns4.dnsmadeeasy.com
208.80.127.2, 2600:1802:4::1

Answer: ns8.dnsmadeeasy.com
208.94.149.2, 2600:1800:8::1
8
ns2.p03.dynect.net
NS
a.gtld-servers.net (2001:503:a83e::2:30)

Answer: ns1.dynamicnetworkservices.net, ns2.dynamicnetworkservices.net, ns3.dynamicnetworkservices.net, ns4.dynamicnetworkservices.net, ns5.dynamicnetworkservices.net, ns6.dynamicnetworkservices.net

Answer: ns1.dynamicnetworkservices.net
108.59.161.136, 2600:2000:2210::136

Answer: ns2.dynamicnetworkservices.net
108.59.162.136, 2600:2000:2220::136

Answer: ns3.dynamicnetworkservices.net
108.59.163.136, 2600:2000:2230::136

Answer: ns4.dynamicnetworkservices.net
108.59.164.136, 2600:2000:2240::136

Answer: ns5.dynamicnetworkservices.net
108.59.161.136, 2600:2000:2210::136

Answer: ns6.dynamicnetworkservices.net
108.59.163.136, 2600:2000:2230::136
9
ns3.p03.dynect.net
NS
a.gtld-servers.net (2001:503:a83e::2:30)

Answer: ns1.dynamicnetworkservices.net, ns2.dynamicnetworkservices.net, ns3.dynamicnetworkservices.net, ns4.dynamicnetworkservices.net, ns5.dynamicnetworkservices.net, ns6.dynamicnetworkservices.net

Answer: ns1.dynamicnetworkservices.net
108.59.161.136, 2600:2000:2210::136

Answer: ns2.dynamicnetworkservices.net
108.59.162.136, 2600:2000:2220::136

Answer: ns3.dynamicnetworkservices.net
108.59.163.136, 2600:2000:2230::136

Answer: ns4.dynamicnetworkservices.net
108.59.164.136, 2600:2000:2240::136

Answer: ns5.dynamicnetworkservices.net
108.59.161.136, 2600:2000:2210::136

Answer: ns6.dynamicnetworkservices.net
108.59.163.136, 2600:2000:2230::136
10
ns4.p03.dynect.net
NS
a.gtld-servers.net (2001:503:a83e::2:30)

Answer: ns1.dynamicnetworkservices.net, ns2.dynamicnetworkservices.net, ns3.dynamicnetworkservices.net, ns4.dynamicnetworkservices.net, ns5.dynamicnetworkservices.net, ns6.dynamicnetworkservices.net

Answer: ns1.dynamicnetworkservices.net
108.59.161.136, 2600:2000:2210::136

Answer: ns2.dynamicnetworkservices.net
108.59.162.136, 2600:2000:2220::136

Answer: ns3.dynamicnetworkservices.net
108.59.163.136, 2600:2000:2230::136

Answer: ns4.dynamicnetworkservices.net
108.59.164.136, 2600:2000:2240::136

Answer: ns5.dynamicnetworkservices.net
108.59.161.136, 2600:2000:2210::136

Answer: ns6.dynamicnetworkservices.net
108.59.163.136, 2600:2000:2230::136
11
ns1.p03.dynect.net: 108.59.161.3
A
ns1.dynamicnetworkservices.net (2600:2000:2210::136)
12
ns1.p03.dynect.net: 2600:2000:2210::3
AAAA
ns1.dynamicnetworkservices.net (2600:2000:2210::136)
13
ns10.dnsmadeeasy.com: 208.94.148.4
A
ns0.dnsmadeeasy.com (2600:1800::1)
14
ns10.dnsmadeeasy.com: 2600:1800:10::1
AAAA
ns0.dnsmadeeasy.com (2600:1800::1)
15
ns11.dnsmadeeasy.com: 208.80.124.4
A
ns0.dnsmadeeasy.com (2600:1800::1)
16
ns11.dnsmadeeasy.com: 2600:1801:11::1
AAAA
ns0.dnsmadeeasy.com (2600:1800::1)
17
ns12.dnsmadeeasy.com: 208.80.126.4
A
ns0.dnsmadeeasy.com (2600:1800::1)
18
ns12.dnsmadeeasy.com: 2600:1802:12::1
AAAA
ns0.dnsmadeeasy.com (2600:1800::1)
19
ns13.dnsmadeeasy.com: 208.80.125.4
A
ns0.dnsmadeeasy.com (2600:1800::1)
20
ns13.dnsmadeeasy.com: 2600:1801:13::1
AAAA
ns0.dnsmadeeasy.com (2600:1800::1)
23
ns2.p03.dynect.net: 108.59.162.3
A
ns1.dynamicnetworkservices.net (2600:2000:2210::136)
24
ns2.p03.dynect.net: 2600:2000:2220::3
AAAA
ns1.dynamicnetworkservices.net (2600:2000:2210::136)
25
ns3.p03.dynect.net: 108.59.163.3
A
ns1.dynamicnetworkservices.net (2600:2000:2210::136)
26
ns3.p03.dynect.net: 2600:2000:2230::3
AAAA
ns1.dynamicnetworkservices.net (2600:2000:2210::136)
27
ns4.p03.dynect.net: 108.59.164.3
A
ns1.dynamicnetworkservices.net (2600:2000:2210::136)
28
ns4.p03.dynect.net: 2600:2000:2240::3
AAAA
ns1.dynamicnetworkservices.net (2600:2000:2210::136)


13. CAA - Entries

DomainnameflagNameValue∑ Queries∑ Timeout
fp2E7A.wpc.2BE4.phicdn.net



1
0
ocsp.edge.digicert.com



1
0
wpc.2BE4.phicdn.net



1
0
edge.digicert.com
0

no CAA entry found
1
0
ocsp.digicert.com



1
0
2BE4.phicdn.net
0

no CAA entry found
1
0
digicert.com
5
issue
digicert.com
1
0

5
issue
digicert.com
1
0

9
issuewild
digicert.com
1
0

9
issuewild
digicert.com
1
0
phicdn.net
5
issue
digicert.com
1
0

5
iodef
mailto:caa-edgecast@verizondigitalmedia.com
1
0
com
0

no CAA entry found
1
0
net
0

no CAA entry found
1
0

0

no CAA entry found
1
0


14. TXT - Entries

DomainnameTXT EntryStatus∑ Queries∑ Timeout
digicert.com

ok
1
0
ocsp.digicert.com


1
0
_acme-challenge.ocsp.digicert.com

Name Error - The domain name does not exist
1
0
_acme-challenge.ocsp.edge.digicert.com

Name Error - The domain name does not exist
1
0
_acme-challenge.fp2E7A.wpc.2BE4.phicdn.net

Name Error - The domain name does not exist
1
0
_acme-challenge.ocsp.digicert.com.digicert.com

Name Error - The domain name does not exist
1
0
_acme-challenge.ocsp.digicert.com.ocsp.digicert.com

Name Error - The domain name does not exist
1
0
_acme-challenge.ocsp.edge.digicert.com.ocsp.edge.digicert.com

Name Error - The domain name does not exist
1
0
_acme-challenge.fp2E7A.wpc.2BE4.phicdn.net.fp2E7A.wpc.2BE4.phicdn.net

Name Error - The domain name does not exist
1
0


15. DomainService - Entries (SSHFP Check is new - 2022-09-24, may be incomplete, alpha, some results are required)

No DomainServiceEntries entries found



16. Cipher Suites

No results


17. Portchecks

No open Ports <> 80 / 443 found, so no additional Ports checked.



Permalink: https://check-your-website.server-daten.de/?i=f96361ed-4cf4-4cf0-ad21-5c43b4936eea


Last Result: https://check-your-website.server-daten.de/?q=ocsp.digicert.com - 2023-03-18 20:22:53


Do you like this page? Support this tool, add a link on your page:

<a href="https://check-your-website.server-daten.de/?q=ocsp.digicert.com" target="_blank">Check this Site: ocsp.digicert.com</a>

Do you really want to support this project? Donate: Check-your-website, IBAN DE98 1001 0010 0575 2211 07, SWIFT/BIC PBNKDEFF, Euro