View on GitHub

DNSViz: A DNS visualization tool

b.b.0.c.a.d.e.f.f.f.f.d.e.1.a.f.1.0.0.0.1.5.1.0.0.b.8.0.1.0.0.2.ip6.arpa

Updated: 2025-03-29 17:47:11 UTC (6 days ago) Update now
« Previous analysis | Next analysis »
DNSSEC options (hide)
  1. |?|
  2. |?|
  3. |?|
  4. |?|
  5. |?|
  6. |?|
  7. |?|
  8. |?|
  9. |?|
  10. |?|
Notices
DNSSEC Authentication Chain

RRset statusRRset status

Insecure (3)
  • 1.5.1.0.0.b.8.0.1.0.0.2.ip6.arpa/SOA
  • b.b.0.c.a.d.e.f.f.f.f.d.e.1.a.f.1.0.0.0.1.5.1.0.0.b.8.0.1.0.0.2.ip6.arpa/PTR (NODATA)
  • b.b.0.c.a.d.e.f.f.f.f.d.e.1.a.f.1.0.0.0.1.5.1.0.0.b.8.0.1.0.0.2.ip6.arpa/PTR (NXDOMAIN)
Secure (1)
  • 8.0.1.0.0.2.ip6.arpa/SOA

DNSKEY/DS/NSEC statusDNSKEY/DS/NSEC status

Secure (18)
  • ./DNSKEY (alg 8, id 20326)
  • ./DNSKEY (alg 8, id 26470)
  • ./DNSKEY (alg 8, id 38696)
  • ./DNSKEY (alg 8, id 53148)
  • 8.0.1.0.0.2.ip6.arpa/DNSKEY (alg 13, id 22039)
  • 8.0.1.0.0.2.ip6.arpa/DS (alg 13, id 22039)
  • NSEC proving non-existence of 0.b.8.0.1.0.0.2.ip6.arpa/DS
  • arpa/DNSKEY (alg 8, id 37615)
  • arpa/DNSKEY (alg 8, id 41220)
  • arpa/DNSKEY (alg 8, id 42581)
  • arpa/DS (alg 8, id 42581)
  • ip6.arpa/DNSKEY (alg 8, id 21619)
  • ip6.arpa/DNSKEY (alg 8, id 29628)
  • ip6.arpa/DNSKEY (alg 8, id 64060)
  • ip6.arpa/DNSKEY (alg 8, id 65256)
  • ip6.arpa/DS (alg 8, id 13880)
  • ip6.arpa/DS (alg 8, id 45094)
  • ip6.arpa/DS (alg 8, id 64060)
Non_existent (2)
  • ip6.arpa/DNSKEY (alg 8, id 13880)
  • ip6.arpa/DNSKEY (alg 8, id 45094)

Delegation statusDelegation status

Insecure (3)
  • 0.b.8.0.1.0.0.2.ip6.arpa to 1.5.1.0.0.b.8.0.1.0.0.2.ip6.arpa
  • 1.5.1.0.0.b.8.0.1.0.0.2.ip6.arpa to 1.0.0.0.1.5.1.0.0.b.8.0.1.0.0.2.ip6.arpa
  • 8.0.1.0.0.2.ip6.arpa to 0.b.8.0.1.0.0.2.ip6.arpa
Secure (3)
  • . to arpa
  • arpa to ip6.arpa
  • ip6.arpa to 8.0.1.0.0.2.ip6.arpa

NoticesNotices

Errors (4)
  • b.b.0.c.a.d.e.f.f.f.f.d.e.1.a.f.1.0.0.0.1.5.1.0.0.b.8.0.1.0.0.2.ip6.arpa/PTR (NODATA): The Authoritative Answer (AA) flag was not set in the response. See RFC 1035, Sec. 4.1.1. (194.4.173.2, 194.4.174.2, 2001:8b0:0:30::51bb:1e2a, 2001:8b0:0:81::51bb:5121, UDP_-_EDNS0_4096_D_KN)
  • b.b.0.c.a.d.e.f.f.f.f.d.e.1.a.f.1.0.0.0.1.5.1.0.0.b.8.0.1.0.0.2.ip6.arpa/PTR (NODATA): The NODATA response did not include an SOA record. See RFC 1034, Sec. 4.3.4, RFC 2308, Sec. 2.2. (194.4.173.2, 194.4.174.2, 2001:8b0:0:30::51bb:1e2a, 2001:8b0:0:81::51bb:5121, UDP_-_EDNS0_4096_D_KN)
  • b.b.0.c.a.d.e.f.f.f.f.d.e.1.a.f.1.0.0.0.1.5.1.0.0.b.8.0.1.0.0.2.ip6.arpa/PTR (NXDOMAIN): An SOA RR with owner name (1.5.1.0.0.b.8.0.1.0.0.2.ip6.arpa) not matching the zone name (1.0.0.0.1.5.1.0.0.b.8.0.1.0.0.2.ip6.arpa) was returned with the NXDOMAIN response. See RFC 1034, Sec. 4.3.4, RFC 2308, Sec. 2.1. (81.2.117.97, 194.4.173.1, 2001:8b0:0:81::51bb:5120, 2001:8b0:151:1:e2cb:4eff:fe26:6481, UDP_-_EDNS0_4096_D_KN)
  • 1.0.0.0.1.5.1.0.0.b.8.0.1.0.0.2.ip6.arpa/CNAME has errors; select the "Denial of existence" DNSSEC option to see them.
Warnings (2)
  • 0.b.8.0.1.0.0.2.ip6.arpa to 1.5.1.0.0.b.8.0.1.0.0.2.ip6.arpa: The server(s) for the parent zone (0.b.8.0.1.0.0.2.ip6.arpa) responded with a referral instead of answering authoritatively for the DS RR type. See RFC 4034, Sec. 5. (194.4.173.2, 194.4.174.2, 2001:8b0:0:30::51bb:1e2a, 2001:8b0:0:81::51bb:5121, UDP_-_EDNS0_4096_D_KN)
  • 1.5.1.0.0.b.8.0.1.0.0.2.ip6.arpa to 1.0.0.0.1.5.1.0.0.b.8.0.1.0.0.2.ip6.arpa: The server(s) for the parent zone (1.5.1.0.0.b.8.0.1.0.0.2.ip6.arpa) responded with a referral instead of answering authoritatively for the DS RR type. See RFC 4034, Sec. 5. (194.4.173.2, 194.4.174.2, 2001:8b0:0:30::51bb:1e2a, 2001:8b0:0:81::51bb:5121, UDP_-_EDNS0_4096_D_KN)

DNSKEY legend

Full legend
SEP bit setSEP bit set
Revoke bit setRevoke bit set
Trust anchorTrust anchor
Download: png | svg
Warning JavaScript is required to make the graph below interactive.
DNSSEC authentication graph