RRSIG lr/DNSKEY alg 8, id 29984: The cryptographic signature of the RRSIG RR does not properly validate. See RFC 4035, Sec. 5.3.3.
RRSIG lr/DNSKEY alg 8, id 29984: The cryptographic signature of the RRSIG RR does not properly validate. See RFC 4035, Sec. 5.3.3.
lr/DNSKEY has errors; select the "Denial of existence" DNSSEC option to see them.
Warnings (4)
lr/NS: No response was received from the server over UDP (tried 6 times) until the COOKIE EDNS option was removed (however, this server appeared to respond legitimately to other queries with the COOKIE EDNS option present). See RFC 6891, Sec. 6.1.2. (2001:418:1::39, UDP_-_EDNS0_4096_D_KN)
lr/SOA: No response was received from the server over UDP (tried 6 times) until the COOKIE EDNS option was removed (however, this server appeared to respond legitimately to other queries with the COOKIE EDNS option present). See RFC 6891, Sec. 6.1.2. (147.28.0.39, UDP_-_EDNS0_4096_D_KN)
lr/NSEC3PARAM has warnings; select the "Denial of existence" DNSSEC option to see them.
lr/CNAME has warnings; select the "Denial of existence" DNSSEC option to see them.