DNS & IP Record Check for Ads.ma

This tool gives you a detailed overview of the DNS data retrieved for the requested domain, Ads.ma. For DNSSEC, use our separate DNSSEC check tool. It's not included in this test.


DNS Group DNS Check DNS Record Type DNS Data Information
PARENT
PASS Missing Direct Parent check OK. Your direct parent zone exists, SOA of parent zone ma is c.tld.ma which is good. Some domains (usually third or fourth level domains, such as example.co.us or subdomain.example.co.us) do not have a direct parent zone ('co.us' in this example), which is legal but can cause confusion.
PASS Glue at parent nameservers OK. The parent servers have glue for your nameservers. That means they send out the IP address of your nameservers, as well as their host names
INFO NS records at parent servers Your NS record at parent servers are:
srv1-ads.ma[IP Address=81.192.8.162][TTL=108000]

These were obtained from b.tld.ma. However these were obtained from authority section and not answer section. It is better if they were obtained from answer section.
PASS DNS servers have A records OK. All your DNS servers either have A records at the zone parent servers
PASS Parent nameservers have your nameservers listed OK. When someone uses DNS to look up your domain, the first step (if it doesn't already know about your domain) is to go to the parent servers. If you aren't listed there, you can't be found. But you are listed there.
DNS Group DNS Status DNS Record Type DNS Data Information
NS
INFO NS records at your nameservers Your NS records at your nameservers are:
srv1-ads.ma[TTL=86400]
DNS Group DNS Status DNS Record Type DNS Data Information
SOA
INFO SOA record Your SOA record [TTL=86400] is:
Primary Name server: srv1-ads.ma
Hostmaster E-mail address: [email protected]
Serial #:2010022749
Refresh: 3600
Retry: 1800
Expire: 604800
Default: 3600
PASS SOA MNAME entry SOA MNAME srv1-ads.ma is listed as a primary nameserver at your parent nameserver
FAIL SOA RNAME entry OK. valid SOA rname record not found
PASS NS agreement on SOA Serial # OK. All your nameservers agree that your SOA serial number is 2009050102. That means that all your nameservers are using the same data (unless you have different sets of data with the same serial number, which would be very bad)! Note that the DNS report only checks the NS records listed at the parent servers (not any stealth servers).
PASS SOA Serial Your SOA serial number is: 2010022749. This appears to be in the recommended format of YYYYMMDDnn.
INFO SOA REFRESH OK. Your SOA REFRESH interval is: 3600. RFC 1912 recommends 1200 to 43200 seconds, low (1200) if the data is volatile or 43200 (12 hours) if it's not. If you are using NOTIFY you can set for much higher values, for instance, 1 or more days (> 86400 seconds).
WARN SOA RETRY OK. Your SOA RETRY interval is: 1800. Typical values would be 180 (3 minutes) to 900 (15 minutes) or higher.
WARN SOA EXPIRE OK. Your SOA EXPIRE interval is: 604800 .RFC 1912 recommends 1209600 to 2419200 seconds (2-4 weeks) to allow for major outages of the zone master.
PASS SOA MINIMUM TTL OK. Your SOA MINIMUM TTL is: 3600. That is OK
DNS Group DNS Status DNS Record Type DNS Data Information
MX
FAIL MX Record No MX records found. You may ignore results of any other MX tests.
FAIL Reverse MX A records (PTR) There are no A records for your MXs, so the test cannot be performed.
DNS Group DNS Status DNS Record Type DNS Data Information
MAIL
PASS TXT record NC1404
PASS TXT record eyJ0eXAiOiJKV1QiLCJhbGciOiJIUzI1NiJ9.eyJkb21haW4iOiJhZHMubWEiLCJleHAiOjE2NzMyMjI0MDB9._rQzGCfVX5vFcBXPHfBm43ISHvMS9dAeBSjCzSubPAE
PASS TXT record google-site-verification=RurtqU70X5hTdTGMTVbxOXhjxjCnjS1A7d1OLr2g2_E
PASS TXT record 1vk64v8iabg1kfqmebcs7vodgf
WARN Sender ID record(spfv2.0) SenderID framework not implemented
WARN Domain Key Test Domain keys not implemenetd for _domainkey.Ads.ma. Separate domainkey records may exist for subdomains and selectors under this domain. this cannot be tested.
WARN DMARC DMARC policy not found. Not enabled.
DNS Group DNS Status DNS Record Type DNS Data Information
WWW
INFO WWW A record Your WWW A record is:
www.Ads.ma. Resolved IP: 192.64.117.14
You have separate A record for www.
WA & DA Score for www.Ads.ma
PASS IPs are public OK. All of your WWW IP addresses appear to be public IP addresses.
PASS HTTP Service OK: We can connect to http service on port 80.
FAIL Server http service on port 80 didn't return server information.
PASS Server Header http response header returns information about server as:
LiteSpeed
INFO Connection http connection header didn't return any information about HTTP connection
WARN Secure Header HSTS The server did not implement the HSTS (HTTP Strict Transport Security) policy. The header over the HTTPS connection was not found.
WARN Secure Header X-Frame-Options XFO clickjacking protection response header was not found. XFO enables content to be found or not within iframes via the browser.
WARN Secure Header X-Content-Type-Options The X-Content-Type-Options secure header is not set
WARN Secure Header Content-Security-Policy CSP is not defined in the policy. The return secure header does not send any feedback that the CSP has been set
WARN Secure Header X-Permitted-Cross-Domain-Policies X-Permitted-Cross-Domain-Policies was not found in the response header
WARN Secure Header Referrer-Policy The Referrer-Policy HTTP header is not set, as it is not in the Referrer header.
INFO Secure Header Clear-Site-Data Clear-Site-Data was not found in the response header
INFO Secure Header Cross-Origin-Embedder-Policy COEP response header was not found in the HTTP request
INFO Secure Header Cross-Origin-Opener-Policy COOP response header was not found in the HTTP request
WARN Secure Header Cross-Origin-Resource-Policy CORP policy not found in response header
WARN Secure Header Cache-Control Cache-Control policy header not found in HTTP responses
WARN Secure Header Permissions-Policy Permissions-Policy header was not found in the HTTP responses.
INFO Secure Header Feature-Policy Feature-Policy header was not found in the HTTP responses.
INFO Secure Header X-XSS-Protection (Deprecated) X-XSS-Protection header was not found in the HTTP responses.
INFO Secure Header HTTP Public Key Pinning (Deprecated) HPKP header was not found in the HTTP responses.
INFO Secure Header Expect-CT (Deprecated) Expect-CT header was not found in the HTTP responses.
PASS SSL / HTTPS Protocol Domain use encrypted SSL / HTTPS connection on port 443.
View SSL Certificate: Ads.ma.
FAIL IPv6 Your domain has no IPv6 support

Test Status Summary:
  1. PASS - No issues found in the DNS record.
  2. FAIL - DNS record error was found that should be fixed.
  3. WARN - A minor issue was detected in the DNS record.
  4. INFO - Just informational data, no problems found.
Click below to copy URL to clipboard for easy sharing of results: