RRSIG ucsc.edu/DNSKEY alg 10, id 18264: With a TTL of 172800 the RRSIG RR can be in the cache of a non-validating resolver until 1 day after it expires at 2020-12-29 03:22:39+00:00.
RRSIG ucsc.edu/DNSKEY alg 10, id 18264: With a TTL of 172800 the RRSIG RR can be in the cache of a non-validating resolver until 1 day after it expires at 2020-12-29 03:22:39+00:00.
RRSIG ucsc.edu/DNSKEY alg 10, id 18264: With a TTL of 172800 the RRSIG RR can be in the cache of a non-validating resolver until 1 day after it expires at 2020-12-29 03:22:39+00:00.
RRSIG ucsc.edu/DNSKEY alg 10, id 49937: With a TTL of 172800 the RRSIG RR can be in the cache of a non-validating resolver until 1 day after it expires at 2020-12-29 03:22:39+00:00.
RRSIG ucsc.edu/DNSKEY alg 10, id 49937: With a TTL of 172800 the RRSIG RR can be in the cache of a non-validating resolver until 1 day after it expires at 2020-12-29 03:22:39+00:00.
RRSIG ucsc.edu/DNSKEY alg 10, id 49937: With a TTL of 172800 the RRSIG RR can be in the cache of a non-validating resolver until 1 day after it expires at 2020-12-29 03:22:39+00:00.
RRSIG ucsc.edu/MX alg 10, id 49937: The Signature Expiration field of the RRSIG RR (2020-12-28 15:27:11+00:00) is 17 minutes in the past.
RRSIG ucsc.edu/NS alg 10, id 49937: With a TTL of 86400 the RRSIG RR can be in the cache of a non-validating resolver until 23 hours, 25 minutes after it expires at 2020-12-28 16:19:32+00:00.
RRSIG ucsc.edu/SOA alg 10, id 35375: With a TTL of 86400 the RRSIG RR can be in the cache of a non-validating resolver until 45 minutes after it expires at 2020-12-29 14:59:49+00:00.
RRSIG ucsc.edu/TXT alg 10, id 49937: The Signature Expiration field of the RRSIG RR (2020-12-28 14:59:50+00:00) is 45 minutes in the past.
Warnings (17)
RRSIG ucsc.edu/A alg 10, id 35375: DNSSEC specification recommends not signing with DNSSEC algorithm 10 (RSASHA512).
RRSIG ucsc.edu/DNSKEY alg 10, id 18264: DNSSEC specification recommends not signing with DNSSEC algorithm 10 (RSASHA512).
RRSIG ucsc.edu/DNSKEY alg 10, id 18264: DNSSEC specification recommends not signing with DNSSEC algorithm 10 (RSASHA512).
RRSIG ucsc.edu/DNSKEY alg 10, id 18264: DNSSEC specification recommends not signing with DNSSEC algorithm 10 (RSASHA512).
RRSIG ucsc.edu/DNSKEY alg 10, id 49937: DNSSEC specification recommends not signing with DNSSEC algorithm 10 (RSASHA512).
RRSIG ucsc.edu/DNSKEY alg 10, id 49937: DNSSEC specification recommends not signing with DNSSEC algorithm 10 (RSASHA512).
RRSIG ucsc.edu/DNSKEY alg 10, id 49937: DNSSEC specification recommends not signing with DNSSEC algorithm 10 (RSASHA512).
RRSIG ucsc.edu/MX alg 10, id 49937: DNSSEC specification recommends not signing with DNSSEC algorithm 10 (RSASHA512).
RRSIG ucsc.edu/NS alg 10, id 49937: DNSSEC specification recommends not signing with DNSSEC algorithm 10 (RSASHA512).
RRSIG ucsc.edu/SOA alg 10, id 35375: DNSSEC specification recommends not signing with DNSSEC algorithm 10 (RSASHA512).
RRSIG ucsc.edu/TXT alg 10, id 49937: DNSSEC specification recommends not signing with DNSSEC algorithm 10 (RSASHA512).
edu to ucsc.edu: Authoritative AAAA records exist for adns1.ucsc.edu, but there are no corresponding AAAA glue records.
edu to ucsc.edu: Authoritative AAAA records exist for adns2.ucsc.edu, but there are no corresponding AAAA glue records.
ucsc.edu/DS (alg 10, id 18264): DNSSEC specification prohibits signing with DS records that use digest algorithm 1 (SHA-1).
ucsc.edu/DS (alg 10, id 18264): DNSSEC specification prohibits signing with DS records that use digest algorithm 1 (SHA-1).
ucsc.edu/DS (alg 10, id 18264): DS records with digest type 1 (SHA-1) are ignored when DS records with digest type 2 (SHA-256) exist in the same RRset.
ucsc.edu/DS (alg 10, id 18264): DS records with digest type 1 (SHA-1) are ignored when DS records with digest type 2 (SHA-256) exist in the same RRset.