it/SOA: No response was received from the server over TCP (tried 3 times). See RFC 1035, Sec. 4.2. (194.119.192.34, TCP_-_EDNS0_4096_D_N)
Warnings (13)
RRSIG it/DNSKEY alg 10, id 18395: DNSSEC implementers are recommended against implementing signing with DNSSEC algorithm 10 (RSASHA512). See RFC 8624, Sec. 3.1.
RRSIG it/DNSKEY alg 10, id 18395: DNSSEC implementers are recommended against implementing signing with DNSSEC algorithm 10 (RSASHA512). See RFC 8624, Sec. 3.1.
RRSIG it/DNSKEY alg 10, id 41901: DNSSEC implementers are recommended against implementing signing with DNSSEC algorithm 10 (RSASHA512). See RFC 8624, Sec. 3.1.
RRSIG it/DNSKEY alg 10, id 41901: DNSSEC implementers are recommended against implementing signing with DNSSEC algorithm 10 (RSASHA512). See RFC 8624, Sec. 3.1.
RRSIG it/NS alg 10, id 18395: DNSSEC implementers are recommended against implementing signing with DNSSEC algorithm 10 (RSASHA512). See RFC 8624, Sec. 3.1.
RRSIG it/NSEC3PARAM alg 10, id 18395: DNSSEC implementers are recommended against implementing signing with DNSSEC algorithm 10 (RSASHA512). See RFC 8624, Sec. 3.1.
RRSIG it/SOA alg 10, id 18395: DNSSEC implementers are recommended against implementing signing with DNSSEC algorithm 10 (RSASHA512). See RFC 8624, Sec. 3.1.
it/SOA: No response was received until the UDP payload size was decreased, indicating that the server might be attempting to send a payload that exceeds the path maximum transmission unit (PMTU) size. See RFC 6891, Sec. 6.2.6. (193.206.141.46, UDP_-_EDNS0_4096_D_KN)
bvjh1.20gky.it/A has warnings; select the "Denial of existence" DNSSEC option to see them.
it/CDNSKEY has warnings; select the "Denial of existence" DNSSEC option to see them.
it/CNAME has warnings; select the "Denial of existence" DNSSEC option to see them.
it/DNSKEY has warnings; select the "Denial of existence" DNSSEC option to see them.
it/CDS has warnings; select the "Denial of existence" DNSSEC option to see them.