View on GitHub

DNSViz: A DNS visualization tool

com.cn

DNSSEC options (hide)
  1. |?|
  2. |?|
  3. |?|
  4. |?|
  5. |?|
  6. |?|
  7. |?|
Notices
DNSSEC Authentication Chain

RRset statusRRset status

Secure (6)
  • com.cn/NS
  • com.cn/NSEC3PARAM
  • com.cn/SOA
  • com.cn/SOA
  • com.cn/SOA
  • com.cn/SOA

DNSKEY/DS/NSEC statusDNSKEY/DS/NSEC status

Secure (8)
  • ./DNSKEY (alg 8, id 20326)
  • ./DNSKEY (alg 8, id 60955)
  • cn/DNSKEY (alg 8, id 38388)
  • cn/DNSKEY (alg 8, id 57724)
  • cn/DS (alg 8, id 57724)
  • com.cn/DNSKEY (alg 8, id 43326)
  • com.cn/DNSKEY (alg 8, id 46387)
  • com.cn/DS (alg 8, id 46387)

Delegation statusDelegation status

Secure (2)
  • . to cn
  • cn to com.cn

NoticesNotices

Errors (2)
  • com.cn zone: The server(s) were not responsive to queries over TCP. (202.112.0.44)
  • com.cn/SOA: No response was received from the server over TCP (tried 3 times). (202.112.0.44, TCP_-_EDNS0_4096_D_N)
Warnings (2)
  • . to cn: Authoritative AAAA records exist for ns.cernet.net, but there are no corresponding AAAA glue records.
  • . to cn: The glue address(es) for ns.cernet.net (202.112.0.44) differed from its authoritative address(es) (103.137.60.44, 202.112.0.44).

DNSKEY legend

Full legend
SEP bit setSEP bit set
Revoke bit setRevoke bit set
Trust anchorTrust anchor
Download: png | svg
Warning JavaScript is required to make the graph below interactive.
DNSSEC authentication graph