View on GitHub

DNSViz: A DNS visualization tool

تونس

DNSSEC options (hide)
  1. |?|
  2. |?|
  3. |?|
  4. |?|
  5. |?|
  6. |?|
  7. |?|
Notices
DNSSEC Authentication Chain

RRset statusRRset status

Bogus (2)
  • تونس/NS
  • تونس/SOA

DNSKEY/DS/NSEC statusDNSKEY/DS/NSEC status

Bogus (2)
  • تونس/DNSKEY (alg 8, id 23341)
  • تونس/DNSKEY (alg 8, id 3471)
Secure (3)
  • ./DNSKEY (alg 8, id 19036)
  • ./DNSKEY (alg 8, id 46551)
  • تونس/DS (alg 8, id 23341)

Delegation statusDelegation status

Bogus (1)
  • . to تونس

NoticesNotices

Errors (6)
  • . to تونس: No valid RRSIGs made by a key corresponding to a DS RR were found covering the DNSKEY RRset, resulting in no secure entry point (SEP) into the zone. (147.28.0.39, 192.93.0.4, 193.95.66.10, 193.95.67.22, 196.216.168.25, 204.61.216.94, 2001:418:1::39, 2001:500:14:6004:ad::1, 2001:660:3005:1::1:2, 2001:4350:1:1::10, 2001:4350:2048:1::22, 2001:43f8:120::25, UDP_-_EDNS0_4096_D)
  • RRSIG تونس/DNSKEY alg 8, id 23341: The Signature Expiration field of the RRSIG RR (2016-08-20 11:33:35+00:00) is 4 hours, 59 minutes in the past.
  • RRSIG تونس/DNSKEY alg 8, id 23341: The Signature Expiration field of the RRSIG RR (2016-08-20 11:33:35+00:00) is 4 hours, 59 minutes in the past.
  • RRSIG تونس/DNSKEY alg 8, id 3471: The Signature Expiration field of the RRSIG RR (2016-08-20 11:33:35+00:00) is 4 hours, 59 minutes in the past.
  • RRSIG تونس/DNSKEY alg 8, id 3471: The Signature Expiration field of the RRSIG RR (2016-08-20 11:33:35+00:00) is 4 hours, 59 minutes in the past.
  • RRSIG تونس/NS alg 8, id 3471: The Signature Expiration field of the RRSIG RR (2016-08-20 10:39:54+00:00) is 5 hours, 53 minutes in the past.
Warnings (3)
  • . to تونس: The following NS name(s) were found in the delegation NS RRset (i.e., in the . zone), but not in the authoritative NS RRset: rip.psg.com, ns2.nic.fr, ns-tn.afrinic.net, pch.ati.tn
  • تونس/NS: No response was received until the UDP payload size was decreased, indicating that the server might be attempting to send a payload that exceeds the path maximum transmission unit (PMTU) size. (2001:4350:2048:1::22, UDP_-_EDNS0_4096_D)
  • تونس/SOA: No response was received until the UDP payload size was decreased, indicating that the server might be attempting to send a payload that exceeds the path maximum transmission unit (PMTU) size. (2001:4350:2048:1::22, UDP_-_EDNS0_4096_D)

DNSKEY legend

Full legend
SEP bit setSEP bit set
Revoke bit setRevoke bit set
Trust anchorTrust anchor
Download: png | svg
Warning JavaScript is required to make the graph below interactive.
DNSSEC authentication graph