Hi, I got the 2nd result, mean DNSSEC not-enabled. Regards, Afifa On Thu, Mar 29, 2018 at 7:53 PM, Prateek Pathak <pathakprateek28@gmail.com> wrote:
Dear Yeslim,
Greetings.Thank you for sharing this link.
I tried to test the link on 29th March 2018 and got the following result(Snapshot 1).I am assuming that my concerned ISP has implemented DNSSec. Meanwhile, a saved copy in the cache does show a page on Comcast Network management as of 28th March 2018(Snapshot 2).
Can I analyse the screenshots and infer that my ISP has implemented DNSSec recently? Can you or someone direct me towards a more technical understanding of this test i.e. how does Option 1 lead to a valid inference that DNS resolver is DNSSEC enabled? I can then ask a few of my friends to check it as well on their screens and I am sure that they will ask this question to me :)
Regards, Prateek.
Regards, Prateek.
On Thu, Mar 29, 2018 at 1:56 PM, Yesim Nazlar <yesim.nazlar@icann.org> wrote:
Dear Lianna,
You’re right it might be a bit tricky to understand the result.
Thanks for sharing your own experience ☺
Thank you.
Kind Regards,
Yeşim Nazlar
*From: *APAC-Discuss <apac-discuss-bounces@atlarge-lists.icann.org> on behalf of Lianna Galstyan <lianna@isoc.am> *Date: *Thursday, March 29, 2018 at 10:18 AM *To: *"apac-discuss@atlarge-lists.icann.org" < apac-discuss@atlarge-lists.icann.org> *Subject: *Re: [APAC-Discuss] FW: DNSSEC KSK Rollover test
Dear Yesim,
Thanks for including the explanation. Actually I tested it yesterday and since the page did not appear to me, I thought it's a failure, which is just the contrary. It means the DNS resolver I'm using is DNSSEC-enabled :)
Lianna
On 29/03/2018 10:36, Yesim Nazlar wrote:
Dear All,
Below, you may find the DNSSEC KSK Rollover test link. Feel free to test! ☺
Thank you.
Kind Regards,
Yeşim Nazlar
Begin forwarded message:
*From: *Alan Greenberg <alan.greenberg@mcgill.ca>
*Subject: [ALAC] DNSSEC KSK Rollover test*
*Date: *28 March 2018 4:41:07 am AEDT
*To: *ALAC <alac@atlarge-lists.icann.org>
Please take a moment to go to http://dnssec-failed.org[dnssec-failed.org] <https://urldefense.proofpoint.com/v2/url?u=http-3A__dnssec-2Dfailed.org&d=Dw...> .
One of two things will happen:
1. You will not be able to reach the site.
or
2. You will get a page on Comcast Network Management.
If 2 is your result, the DNS resolver you are using is NOT DNSSEC-enabled and the KSK Rollover will be invisible to you.
If you will be on the ALAC meeting, please do this before the meeting so you can report your results.
Alan
_______________________________________________ ALAC mailing list ALAC@atlarge-lists.icann.org https://atlarge-lists.icann.org/mailman/listinfo/alac[atlarg e-lists.icann.org] <https://urldefense.proofpoint.com/v2/url?u=https-3A__atlarge-2Dlists.icann.o...>
At-Large Online: http://www.atlarge.icann.org[atlarge.icann.org] <https://urldefense.proofpoint.com/v2/url?u=http-3A__www.atlarge.icann.org&d=...> ALAC Working Wiki: https://community.icann.org/di splay/atlarge/At-Large+Advisory+Committee+(ALAC)[community.icann.org] <https://urldefense.proofpoint.com/v2/url?u=https-3A__community.icann.org_dis...>
_______________________________________________
APAC-Discuss mailing list
APAC-Discuss@atlarge-lists.icann.org
https://atlarge-lists.icann.org/mailman/listinfo/apac-discuss[atlarge-lists.icann.org] <https://urldefense.proofpoint.com/v2/url?u=https-3A__atlarge-2Dlists.icann.o...>
Homepage for the region: http://www.apralo.org[apralo.org] <https://urldefense.proofpoint.com/v2/url?u=http-3A__www.apralo.org&d=DwMDaQ&...>
_______________________________________________ APAC-Discuss mailing list APAC-Discuss@atlarge-lists.icann.org https://atlarge-lists.icann.org/mailman/listinfo/apac-discuss
Homepage for the region: http://www.apralo.org
_______________________________________________ APAC-Discuss mailing list APAC-Discuss@atlarge-lists.icann.org https://atlarge-lists.icann.org/mailman/listinfo/apac-discuss
Homepage for the region: http://www.apralo.org