DNSKEY failure

@lbutlr kremels at kreme.com
Fri Feb 5 09:23:48 UTC 2021

So, with my test domain that is using dsnssec-policy default dnsviz reports 

"DNSKEY: No response was received from the server over UDP"


dig +norec +dnssec +bufsize=512 +ignore dnskey

Shows a DNSKEY record.

(There is no DNSKEY record shown on the domains still using auto-dnssec maintain; with alg-7 keys, but I think that is expected).

Is this a propagation issue, or is there something I need to do for ", UDP_-_EDNS0_512_D_KN" to see the DNSKEY record?

example.com.          3600    IN      RRSIG   DNSKEY 13 2 3600 20210217190645 20210203180645 18434 example.com. {blah blah blah}

"Get your facts first, and then you can distort them as much as you
	please." - Mark Twain

More information about the bind-users mailing list