medicaid.gov/A: DNSSEC was effectively downgraded because the response had an invalid RCODE (SERVFAIL) with EDNS enabled. See RFC 6891, Sec. 7, RFC 2671, Sec. 5.3. (193.108.91.86, UDP_-_NOEDNS_)
medicaid.gov/A: The DNSSEC records necessary to validate the response could not be retrieved from the server. See RFC 4035, Sec. 3.1.1, RFC 4035, Sec. 3.1.3. (193.108.91.86, UDP_-_EDNS0_4096_D_KN)
medicaid.gov/A: The response had an invalid RCODE (SERVFAIL) until EDNS was disabled (however, this server appeared to respond legitimately to other queries with EDNS enabled). See RFC 6891, Sec. 6.2.6. (193.108.91.86, UDP_-_EDNS0_4096_D_KN)
medicaid.gov/CNAME has errors; select the "Denial of existence" DNSSEC option to see them.
medicaid.gov/MX has errors; select the "Denial of existence" DNSSEC option to see them.
7dphkbzon8.medicaid.gov/A has errors; select the "Denial of existence" DNSSEC option to see them.
Warnings (26)
RRSIG medicaid.gov/A alg 7, id 18510: DNSSEC implementers are recommended against implementing signing with DNSSEC algorithm 7 (RSASHA1NSEC3SHA1). See RFC 8624, Sec. 3.1.
RRSIG medicaid.gov/A alg 7, id 18510: DNSSEC implementers are recommended against implementing signing with DNSSEC algorithm 7 (RSASHA1NSEC3SHA1). See RFC 8624, Sec. 3.1.
RRSIG medicaid.gov/A alg 7, id 18510: DNSSEC implementers are recommended against implementing signing with DNSSEC algorithm 7 (RSASHA1NSEC3SHA1). See RFC 8624, Sec. 3.1.
RRSIG medicaid.gov/A alg 7, id 18510: DNSSEC implementers are recommended against implementing signing with DNSSEC algorithm 7 (RSASHA1NSEC3SHA1). See RFC 8624, Sec. 3.1.
RRSIG medicaid.gov/A alg 7, id 18510: DNSSEC implementers are recommended against implementing signing with DNSSEC algorithm 7 (RSASHA1NSEC3SHA1). See RFC 8624, Sec. 3.1.
RRSIG medicaid.gov/A alg 7, id 18510: DNSSEC implementers are recommended against implementing signing with DNSSEC algorithm 7 (RSASHA1NSEC3SHA1). See RFC 8624, Sec. 3.1.
RRSIG medicaid.gov/AAAA alg 7, id 18510: DNSSEC implementers are recommended against implementing signing with DNSSEC algorithm 7 (RSASHA1NSEC3SHA1). See RFC 8624, Sec. 3.1.
RRSIG medicaid.gov/AAAA alg 7, id 18510: DNSSEC implementers are recommended against implementing signing with DNSSEC algorithm 7 (RSASHA1NSEC3SHA1). See RFC 8624, Sec. 3.1.
RRSIG medicaid.gov/AAAA alg 7, id 18510: DNSSEC implementers are recommended against implementing signing with DNSSEC algorithm 7 (RSASHA1NSEC3SHA1). See RFC 8624, Sec. 3.1.
RRSIG medicaid.gov/AAAA alg 7, id 18510: DNSSEC implementers are recommended against implementing signing with DNSSEC algorithm 7 (RSASHA1NSEC3SHA1). See RFC 8624, Sec. 3.1.
RRSIG medicaid.gov/AAAA alg 7, id 18510: DNSSEC implementers are recommended against implementing signing with DNSSEC algorithm 7 (RSASHA1NSEC3SHA1). See RFC 8624, Sec. 3.1.
RRSIG medicaid.gov/AAAA alg 7, id 18510: DNSSEC implementers are recommended against implementing signing with DNSSEC algorithm 7 (RSASHA1NSEC3SHA1). See RFC 8624, Sec. 3.1.
RRSIG medicaid.gov/AAAA alg 7, id 18510: DNSSEC implementers are recommended against implementing signing with DNSSEC algorithm 7 (RSASHA1NSEC3SHA1). See RFC 8624, Sec. 3.1.
RRSIG medicaid.gov/AAAA alg 7, id 18510: DNSSEC implementers are recommended against implementing signing with DNSSEC algorithm 7 (RSASHA1NSEC3SHA1). See RFC 8624, Sec. 3.1.
RRSIG medicaid.gov/AAAA alg 7, id 18510: DNSSEC implementers are recommended against implementing signing with DNSSEC algorithm 7 (RSASHA1NSEC3SHA1). See RFC 8624, Sec. 3.1.
RRSIG medicaid.gov/DNSKEY alg 7, id 39438: DNSSEC implementers are recommended against implementing signing with DNSSEC algorithm 7 (RSASHA1NSEC3SHA1). See RFC 8624, Sec. 3.1.
RRSIG medicaid.gov/DNSKEY alg 7, id 39438: DNSSEC implementers are recommended against implementing signing with DNSSEC algorithm 7 (RSASHA1NSEC3SHA1). See RFC 8624, Sec. 3.1.
RRSIG medicaid.gov/DNSKEY alg 7, id 39438: DNSSEC implementers are recommended against implementing signing with DNSSEC algorithm 7 (RSASHA1NSEC3SHA1). See RFC 8624, Sec. 3.1.
RRSIG medicaid.gov/NS alg 7, id 18510: DNSSEC implementers are recommended against implementing signing with DNSSEC algorithm 7 (RSASHA1NSEC3SHA1). See RFC 8624, Sec. 3.1.
RRSIG medicaid.gov/NSEC3PARAM alg 7, id 18510: DNSSEC implementers are recommended against implementing signing with DNSSEC algorithm 7 (RSASHA1NSEC3SHA1). See RFC 8624, Sec. 3.1.
RRSIG medicaid.gov/SOA alg 7, id 18510: DNSSEC implementers are recommended against implementing signing with DNSSEC algorithm 7 (RSASHA1NSEC3SHA1). See RFC 8624, Sec. 3.1.
RRSIG medicaid.gov/TXT alg 7, id 18510: DNSSEC implementers are recommended against implementing signing with DNSSEC algorithm 7 (RSASHA1NSEC3SHA1). See RFC 8624, Sec. 3.1.
medicaid.gov/CNAME has warnings; select the "Denial of existence" DNSSEC option to see them.
medicaid.gov/MX has warnings; select the "Denial of existence" DNSSEC option to see them.
7dphkbzon8.medicaid.gov/A has warnings; select the "Denial of existence" DNSSEC option to see them.
medicaid.gov/DNSKEY has warnings; select the "Denial of existence" DNSSEC option to see them.