Back to Verisign Labs Tools
Domain Name: Detail: more(+) / less(-) Time: 2024-03-29 05:11:46 UTC

Analyzing DNSSEC problems for wildfire.gov

.
Found 3 DNSKEY records for .
DS=20326/SHA-256 verifies DNSKEY=20326/SEP
Found 1 RRSIGs over DNSKEY RRset
RRSIG=20326 and DNSKEY=20326/SEP verifies the DNSKEY RRset
gov
Found 1 DS records for gov in the . zone
DS=64280/SHA-256 has algorithm RSASHA256
Found 1 RRSIGs over DS RRset
RRSIG=30903 and DNSKEY=30903 verifies the DS RRset
Found 2 DNSKEY records for gov
DS=64280/SHA-256 verifies DNSKEY=64280/SEP
Found 1 RRSIGs over DNSKEY RRset
RRSIG=64280 and DNSKEY=64280/SEP verifies the DNSKEY RRset
wildfire.gov
Found 1 DS records for wildfire.gov in the gov zone
DS=19429/SHA-256 has algorithm RSASHA256
Found 1 RRSIGs over DS RRset
RRSIG=10104 and DNSKEY=10104 verifies the DS RRset
Found 4 DNSKEY records for wildfire.gov
DS=19429/SHA-256 verifies DNSKEY=19429/SEP
Found 4 RRSIGs over DNSKEY RRset
RRSIG=19429 and DNSKEY=19429/SEP verifies the DNSKEY RRset
ns1.usda.gov is authoritative for wildfire.gov
wildfire.gov A RR has value 162.79.29.95
Found 2 RRSIGs over A RRset
RRSIG=41751 and DNSKEY=41751 verifies the A RRset
wildfire.gov
ns2.usda.gov is authoritative for wildfire.gov
wildfire.gov A RR has value 162.79.29.95
Found 2 RRSIGs over A RRset
RRSIG=41751 and DNSKEY=41751 verifies the A RRset

Move your mouse over any or symbols for remediation hints.

Want a second opinion? Test wildfire.gov at dnsviz.net.

DNSSEC Debugger

↓ Advanced options