NSEC3 proving non-existence of dnssec-test.balug.org/DS
balug.org/DNSKEY (alg 8, id 17095)
balug.org/DNSKEY (alg 8, id 47448)
balug.org/DS (alg 8, id 17095)
org/DNSKEY (alg 8, id 15678)
org/DNSKEY (alg 8, id 23064)
org/DNSKEY (alg 8, id 26974)
org/DS (alg 8, id 26974)
Delegation status
Insecure (1)
balug.org to dnssec-test.balug.org
Secure (2)
. to org
org to balug.org
Notices
Errors (2)
dnssec-test.balug.org/CDNSKEY: The CDNSKEY RRset must be signed with a key that is represented in both the current DNSKEY and the current DS RRset. See RFC 7344, Sec. 4.1.
dnssec-test.balug.org/CDS: The CDS RRset must be signed with a key that is represented in both the current DNSKEY and the current DS RRset. See RFC 7344, Sec. 4.1.