RRSIG comcast.com/A alg 5, id 8970: DNSSEC specification recommends not signing with DNSSEC algorithm 5 (RSASHA1).
RRSIG comcast.com/DNSKEY alg 5, id 35356: DNSSEC specification recommends not signing with DNSSEC algorithm 5 (RSASHA1).
RRSIG comcast.com/DNSKEY alg 5, id 35356: DNSSEC specification recommends not signing with DNSSEC algorithm 5 (RSASHA1).
RRSIG comcast.com/DNSKEY alg 5, id 8970: DNSSEC specification recommends not signing with DNSSEC algorithm 5 (RSASHA1).
RRSIG comcast.com/DNSKEY alg 5, id 8970: DNSSEC specification recommends not signing with DNSSEC algorithm 5 (RSASHA1).
RRSIG comcast.com/MX alg 5, id 8970: DNSSEC specification recommends not signing with DNSSEC algorithm 5 (RSASHA1).
RRSIG comcast.com/NS alg 5, id 8970: DNSSEC specification recommends not signing with DNSSEC algorithm 5 (RSASHA1).
RRSIG comcast.com/SOA alg 5, id 8970: DNSSEC specification recommends not signing with DNSSEC algorithm 5 (RSASHA1).
RRSIG comcast.com/TXT alg 5, id 8970: DNSSEC specification recommends not signing with DNSSEC algorithm 5 (RSASHA1).
comcast.com/DS (alg 5, id 35356): DNSSEC specification prohibits signing with DS records that use digest algorithm 1 (SHA-1).
comcast.com/DS (alg 5, id 35356): DNSSEC specification prohibits signing with DS records that use digest algorithm 1 (SHA-1).
comcast.com/DS (alg 5, id 35356): DS records with digest type 1 (SHA-1) are ignored when DS records with digest type 2 (SHA-256) exist in the same RRset.
comcast.com/DS (alg 5, id 35356): DS records with digest type 1 (SHA-1) are ignored when DS records with digest type 2 (SHA-256) exist in the same RRset.