_pgpkey-http._tcp.keys.openpgp.org
« Previous analysis
|
Next analysis »
RRset status
Secure (5)
-
_pgpkey-http._tcp.keys.openpgp.org/SRV (NXDOMAIN)
-
_tcp.keys.openpgp.org/NS (NXDOMAIN)
-
keys.openpgp.org/A
-
keys.openpgp.org/AAAA
-
keys.openpgp.org/SOA
DNSKEY/DS/NSEC status
Secure (15)
-
./DNSKEY (alg 8, id 20326)
-
./DNSKEY (alg 8, id 46594)
-
NSEC3 proving non-existence of _pgpkey-http._tcp.keys.openpgp.org/SRV
-
NSEC3 proving non-existence of _tcp.keys.openpgp.org/NS
-
keys.openpgp.org/DNSKEY (alg 8, id 14555)
-
keys.openpgp.org/DNSKEY (alg 8, id 30465)
-
keys.openpgp.org/DS (alg 8, id 14555)
-
openpgp.org/DNSKEY (alg 8, id 26041)
-
openpgp.org/DNSKEY (alg 8, id 63435)
-
openpgp.org/DS (alg 8, id 26041)
-
org/DNSKEY (alg 7, id 17883)
-
org/DNSKEY (alg 7, id 21869)
-
org/DNSKEY (alg 7, id 27353)
-
org/DS (alg 7, id 17883)
-
org/DS (alg 7, id 17883)
Delegation status
Secure (3)
-
. to org
-
openpgp.org to keys.openpgp.org
-
org to openpgp.org
Notices
Warnings (11)
-
RRSIG openpgp.org/DS alg 7, id 27353: DNSSEC specification recommends not signing with DNSSEC algorithm 7 (RSASHA1NSEC3SHA1).
-
RRSIG org/DNSKEY alg 7, id 17883: DNSSEC specification recommends not signing with DNSSEC algorithm 7 (RSASHA1NSEC3SHA1).
-
RRSIG org/DNSKEY alg 7, id 17883: DNSSEC specification recommends not signing with DNSSEC algorithm 7 (RSASHA1NSEC3SHA1).
-
RRSIG org/DNSKEY alg 7, id 17883: DNSSEC specification recommends not signing with DNSSEC algorithm 7 (RSASHA1NSEC3SHA1).
-
RRSIG org/DNSKEY alg 7, id 27353: DNSSEC specification recommends not signing with DNSSEC algorithm 7 (RSASHA1NSEC3SHA1).
-
RRSIG org/DNSKEY alg 7, id 27353: DNSSEC specification recommends not signing with DNSSEC algorithm 7 (RSASHA1NSEC3SHA1).
-
RRSIG org/DNSKEY alg 7, id 27353: DNSSEC specification recommends not signing with DNSSEC algorithm 7 (RSASHA1NSEC3SHA1).
-
org/DS (alg 7, id 17883): DNSSEC specification prohibits signing with DS records that use digest algorithm 1 (SHA-1).
-
org/DS (alg 7, id 17883): DNSSEC specification prohibits signing with DS records that use digest algorithm 1 (SHA-1).
-
org/DS (alg 7, id 17883): DS records with digest type 1 (SHA-1) are ignored when DS records with digest type 2 (SHA-256) exist in the same RRset.
-
org/DS (alg 7, id 17883): DS records with digest type 1 (SHA-1) are ignored when DS records with digest type 2 (SHA-256) exist in the same RRset.
DNSKEY legend
Full legend
| SEP bit set |
| Revoke bit set |
| Trust anchor |
JavaScript is required to make the graph below interactive.