Back to Verisign Labs Tools
Domain Name: Detail: more(+) / less(-) Time: 2024-12-08 19:57:01 UTC

Analyzing DNSSEC problems for ng.mil

.
Found 2 DNSKEY records for .
DS=20326/SHA-256 verifies DNSKEY=20326/SEP
Found 1 RRSIGs over DNSKEY RRset
RRSIG=20326 and DNSKEY=20326/SEP verifies the DNSKEY RRset
mil
Found 1 DS records for mil in the . zone
DS=63500/SHA-256 has algorithm RSASHA256
Found 1 RRSIGs over DS RRset
RRSIG=61050 and DNSKEY=61050 verifies the DS RRset
Found 3 DNSKEY records for mil
DS=63500/SHA-256 verifies DNSKEY=63500/SEP
Found 2 RRSIGs over DNSKEY RRset
RRSIG=26770 and DNSKEY=26770 verifies the DNSKEY RRset
ng.mil
Found 2 DS records for ng.mil in the mil zone
DS=31984/SHA-1 uses a deprecated digest algorithm
DS=31984/SHA-256 has algorithm RSASHA256
DS=31984/SHA-1 has algorithm RSASHA256
Found 1 RRSIGs over DS RRset
RRSIG=26770 and DNSKEY=26770 verifies the DS RRset
Found 5 DNSKEY records for ng.mil
DS=31984/SHA-256 verifies DNSKEY=31984/SEP
Found 3 RRSIGs over DNSKEY RRset
RRSIG=19473 and DNSKEY=19473 verifies the DNSKEY RRset
NS01.ARMY.MIL is authoritative for ng.mil
Found 1 RRSIGs over SOA RRset
RRSIG=19473 and DNSKEY=19473 verifies the SOA RRset
ng.mil
NS03.ARMY.MIL is authoritative for ng.mil
Found 1 RRSIGs over SOA RRset
RRSIG=19473 and DNSKEY=19473 verifies the SOA RRset
ng.mil
NS02.ARMY.MIL is authoritative for ng.mil
Found 1 RRSIGs over SOA RRset
RRSIG=19473 and DNSKEY=19473 verifies the SOA RRset

Move your mouse over any or symbols for remediation hints.

Want a second opinion? Test ng.mil at dnsviz.net.

DNSSEC Debugger

↓ Advanced options