DNSSEC Check Record: 129.67.86

Let's check if the DNSSEC extension is enabled for the domain 129.67.86 by reviewing all zones, record types, counts, and propagation times. The test is fast, reliable, and concise.

If you are the domain owner of 129.67.86 and haven't enabled DNSSEC yet, now is the perfect time to do so and protect your domain from hijacking, spoofing, hackers and create an extra layer of cyber security.




Website Server Overview
Website: 129.67.86
Server IP: 129.67.0.86
Resolved Hostname: 129.67.0.86 (If the resolved hostname is the same as the IP address, it may indicate that the hostname is misconfigured or not set at all.)
Domain Extension:86

Website Server Location
DNSSEC

-------------------------------------------

Zone: (Root zone) - 0.01 seconds
Record TypeCountDetails
DNSKEY ❌0None
DS ❌0None
RRSIG ✔️3. 85679 IN NSEC aaa. NS SOA RRSIG NSEC DNSKEY TYPE63
. 85679 IN RRSIG SOA 8 0 86400 20250701050000 (
. 85679 IN RRSIG NSEC 8 0 86400 20250701050000 (
NSEC ✔️2. 85679 IN NSEC aaa. NS SOA RRSIG NSEC DNSKEY TYPE63
. 85679 IN RRSIG NSEC 8 0 86400 20250701050000 (
NSEC3 ❌0None
No delegation security found.
RRSIG Analysis:
Latest Expiration: 2025-07-01 05:00:00
DNSSEC is active for this zone.

-------------------------------------------

Zone: (TLD) - 0.01 seconds
Record TypeCountDetails
DNSKEY ❌0None
DS ✔️1OeQBkbCGPfaow7nih3+8h4x/CPiQRdSyq6o8/0etH6Nv
RRSIG ✔️1. 76002 IN RRSIG NS 8 0 518400 20250701050000 (
NSEC ❌0None
NSEC3 ❌0None
Delegation is secure with DS records.
RRSIG Analysis:
Latest Expiration: 2025-07-01 05:00:00
DNSSEC is active for this zone.

-------------------------------------------

Zone: 129.67.86 (Domain) - 0.01 seconds
Record TypeCountDetails
DNSKEY ❌0None
DS ❌0None
RRSIG ✔️3. 1817 IN NSEC aaa. NS SOA RRSIG NSEC DNSKEY TYPE63
. 1817 IN RRSIG SOA 8 0 86400 20250701050000 (
. 1817 IN RRSIG NSEC 8 0 86400 20250701050000 (
NSEC ✔️2. 1817 IN NSEC aaa. NS SOA RRSIG NSEC DNSKEY TYPE63
. 1817 IN RRSIG NSEC 8 0 86400 20250701050000 (
NSEC3 ❌0None
No delegation security found.
RRSIG Analysis:
Latest Expiration: 2025-07-01 05:00:00
DNSSEC is active for this zone.
-------------------------------------------
Propagation Time for Each Zone (in seconds):
  • (Root zone) - 0.01 seconds
  • : 0.01 seconds
  • 129.67.86: 0.01 seconds
Global Conclusion: DNSSEC is enabled at the domain level.
DNSSEC Elements Legend:
  1. DNSKEY (DNS Key Record)
    • Contains the public key used to verify the signed DNS records.
    • Forms the foundation for verifying the authenticity of data in the DNSSEC system.
  2. DS (Delegation Signer Record)
    • Links subdomains to the parent domain.
    • Used to transfer the cryptographic chain of trust between the parent and child DNS zones.
  3. RRSIG (Resource Record Signature)
    • A digital signature for a specific DNS record.
    • Ensures the record has not been altered during transit and allows authenticity verification.
  4. NSEC (Next Secure Record)
    • Verifies that a specific record does not exist in the DNS zone.
    • Lists the next records in the zone file, ensuring integrity verification.
  5. NSEC3 (Next Secure Record, Version 3)
    • An improved version of NSEC that uses hash values to hide record names.
    • Offers improved privacy while enabling verification of missing records.