NSEC3 proving non-existence of akamai.csd.disa.mil/DS
apps.gcds.disa.mil/DNSKEY (alg 8, id 3094)
apps.gcds.disa.mil/DNSKEY (alg 8, id 57303)
apps.gcds.disa.mil/DS (alg 8, id 3094)
apps.gcds.disa.mil/DS (alg 8, id 3094)
army.mil/DNSKEY (alg 8, id 21310)
army.mil/DNSKEY (alg 8, id 39870)
army.mil/DNSKEY (alg 8, id 45846)
army.mil/DNSKEY (alg 8, id 559)
army.mil/DS (alg 8, id 21310)
army.mil/DS (alg 8, id 21310)
aro.army.mil/DNSKEY (alg 8, id 33213)
aro.army.mil/DNSKEY (alg 8, id 47662)
aro.army.mil/DNSKEY (alg 8, id 48888)
aro.army.mil/DNSKEY (alg 8, id 8034)
aro.army.mil/DS (alg 8, id 47662)
aro.army.mil/DS (alg 8, id 47662)
csd.disa.mil/DNSKEY (alg 8, id 46159)
csd.disa.mil/DNSKEY (alg 8, id 62064)
csd.disa.mil/DNSKEY (alg 8, id 64399)
csd.disa.mil/DS (alg 8, id 46159)
csd.disa.mil/DS (alg 8, id 46159)
csd.disa.mil/DS (alg 8, id 64399)
csd.disa.mil/DS (alg 8, id 64399)
disa.mil/DNSKEY (alg 8, id 4339)
disa.mil/DNSKEY (alg 8, id 46534)
disa.mil/DNSKEY (alg 8, id 6036)
disa.mil/DS (alg 8, id 4339)
disa.mil/DS (alg 8, id 4339)
gcds.disa.mil/DNSKEY (alg 8, id 17769)
gcds.disa.mil/DNSKEY (alg 8, id 18646)
gcds.disa.mil/DNSKEY (alg 8, id 31291)
gcds.disa.mil/DS (alg 8, id 18646)
gcds.disa.mil/DS (alg 8, id 18646)
gcds.disa.mil/DS (alg 8, id 31291)
gcds.disa.mil/DS (alg 8, id 31291)
mil/DNSKEY (alg 8, id 16801)
mil/DNSKEY (alg 8, id 51706)
mil/DS (alg 8, id 16801)
Delegation status
Insecure (4)
akamai.csd.disa.mil to akamaiedge.akamai.csd.disa.mil
akamai.csd.disa.mil to edgekey.dmz.akamai.csd.disa.mil
akamaiedge.akamai.csd.disa.mil to d.akamaiedge.akamai.csd.disa.mil
csd.disa.mil to akamai.csd.disa.mil
Secure (7)
. to mil
army.mil to aro.army.mil
disa.mil to csd.disa.mil
disa.mil to gcds.disa.mil
gcds.disa.mil to apps.gcds.disa.mil
mil to army.mil
mil to disa.mil
Notices
Errors (6)
akamai.csd.disa.mil zone: The server(s) were not responsive to queries over UDP. (214.48.1.73, 214.48.2.35, 214.48.3.40, 214.48.5.33)
akamaiedge.akamai.csd.disa.mil zone: The server(s) were not responsive to queries over UDP. (214.48.1.33, 214.48.2.75, 214.48.3.70, 214.48.4.12, 214.48.5.28, 214.48.7.12, 214.48.10.84)
d.akamaiedge.akamai.csd.disa.mil zone: The server(s) were not responsive to queries over UDP. (214.48.3.68, 214.48.5.29, 214.48.5.39, 214.48.5.70, 214.48.10.82)
disa.mil zone: The server(s) were not responsive to queries over UDP. (2608:102:0:182d:1001:9012:c00:21, 2608:125:0:1811:1001:9012:f00:21, 2608:145:0:180b:1001:9012:d00:21)
edgekey.dmz.akamai.csd.disa.mil zone: The server(s) were not responsive to queries over UDP. (214.48.1.73, 214.48.2.35, 214.48.3.40, 214.48.5.33)
gcds.disa.mil/DNSKEY: No response was received from the server over UDP (tried 4 times). (131.77.60.235, UDP_-_EDNS0_512_D_KN)
Warnings (35)
apps.gcds.disa.mil/DS (alg 8, id 3094): DNSSEC specification prohibits signing with DS records that use digest algorithm 1 (SHA-1).
apps.gcds.disa.mil/DS (alg 8, id 3094): DNSSEC specification prohibits signing with DS records that use digest algorithm 1 (SHA-1).
apps.gcds.disa.mil/DS (alg 8, id 3094): DS records with digest type 1 (SHA-1) are ignored when DS records with digest type 2 (SHA-256) exist in the same RRset.
apps.gcds.disa.mil/DS (alg 8, id 3094): DS records with digest type 1 (SHA-1) are ignored when DS records with digest type 2 (SHA-256) exist in the same RRset.
army.mil/DS (alg 8, id 21310): DNSSEC specification prohibits signing with DS records that use digest algorithm 1 (SHA-1).
army.mil/DS (alg 8, id 21310): DNSSEC specification prohibits signing with DS records that use digest algorithm 1 (SHA-1).
army.mil/DS (alg 8, id 21310): DS records with digest type 1 (SHA-1) are ignored when DS records with digest type 2 (SHA-256) exist in the same RRset.
army.mil/DS (alg 8, id 21310): DS records with digest type 1 (SHA-1) are ignored when DS records with digest type 2 (SHA-256) exist in the same RRset.
aro.army.mil/DS (alg 8, id 47662): DNSSEC specification prohibits signing with DS records that use digest algorithm 1 (SHA-1).
aro.army.mil/DS (alg 8, id 47662): DNSSEC specification prohibits signing with DS records that use digest algorithm 1 (SHA-1).
aro.army.mil/DS (alg 8, id 47662): DS records with digest type 1 (SHA-1) are ignored when DS records with digest type 2 (SHA-256) exist in the same RRset.
aro.army.mil/DS (alg 8, id 47662): DS records with digest type 1 (SHA-1) are ignored when DS records with digest type 2 (SHA-256) exist in the same RRset.
csd.disa.mil/DS (alg 8, id 46159): DNSSEC specification prohibits signing with DS records that use digest algorithm 1 (SHA-1).
csd.disa.mil/DS (alg 8, id 46159): DNSSEC specification prohibits signing with DS records that use digest algorithm 1 (SHA-1).
csd.disa.mil/DS (alg 8, id 46159): DS records with digest type 1 (SHA-1) are ignored when DS records with digest type 2 (SHA-256) exist in the same RRset.
csd.disa.mil/DS (alg 8, id 46159): DS records with digest type 1 (SHA-1) are ignored when DS records with digest type 2 (SHA-256) exist in the same RRset.
csd.disa.mil/DS (alg 8, id 64399): DNSSEC specification prohibits signing with DS records that use digest algorithm 1 (SHA-1).
csd.disa.mil/DS (alg 8, id 64399): DNSSEC specification prohibits signing with DS records that use digest algorithm 1 (SHA-1).
csd.disa.mil/DS (alg 8, id 64399): DS records with digest type 1 (SHA-1) are ignored when DS records with digest type 2 (SHA-256) exist in the same RRset.
csd.disa.mil/DS (alg 8, id 64399): DS records with digest type 1 (SHA-1) are ignored when DS records with digest type 2 (SHA-256) exist in the same RRset.
disa.mil/DS (alg 8, id 4339): DNSSEC specification prohibits signing with DS records that use digest algorithm 1 (SHA-1).
disa.mil/DS (alg 8, id 4339): DNSSEC specification prohibits signing with DS records that use digest algorithm 1 (SHA-1).
disa.mil/DS (alg 8, id 4339): DS records with digest type 1 (SHA-1) are ignored when DS records with digest type 2 (SHA-256) exist in the same RRset.
disa.mil/DS (alg 8, id 4339): DS records with digest type 1 (SHA-1) are ignored when DS records with digest type 2 (SHA-256) exist in the same RRset.
gcds.disa.mil/DS (alg 8, id 18646): DNSSEC specification prohibits signing with DS records that use digest algorithm 1 (SHA-1).
gcds.disa.mil/DS (alg 8, id 18646): DNSSEC specification prohibits signing with DS records that use digest algorithm 1 (SHA-1).
gcds.disa.mil/DS (alg 8, id 18646): DS records with digest type 1 (SHA-1) are ignored when DS records with digest type 2 (SHA-256) exist in the same RRset.
gcds.disa.mil/DS (alg 8, id 18646): DS records with digest type 1 (SHA-1) are ignored when DS records with digest type 2 (SHA-256) exist in the same RRset.
gcds.disa.mil/DS (alg 8, id 31291): DNSSEC specification prohibits signing with DS records that use digest algorithm 1 (SHA-1).
gcds.disa.mil/DS (alg 8, id 31291): DNSSEC specification prohibits signing with DS records that use digest algorithm 1 (SHA-1).
gcds.disa.mil/DS (alg 8, id 31291): DS records with digest type 1 (SHA-1) are ignored when DS records with digest type 2 (SHA-256) exist in the same RRset.
gcds.disa.mil/DS (alg 8, id 31291): DS records with digest type 1 (SHA-1) are ignored when DS records with digest type 2 (SHA-256) exist in the same RRset.
mil to disa.mil: AAAA glue records exist for ns.cybercom.mil, but there are no corresponding authoritative AAAA records.
mil to disa.mil: AAAA glue records exist for ns.jtfgno.mil, but there are no corresponding authoritative AAAA records.
mil to disa.mil: AAAA glue records exist for ns1.csd.disa.mil, but there are no corresponding authoritative AAAA records.