[dns-operations] is anybody awake at 5.0.1.0.0.2.ip6.arpa? (comcast and/or arin)

Paul Vixie vixie at fsi.io
Tue Oct 6 02:18:20 UTC 2020


ssh gets hinky when i connect from a server whose PTR is "servfail"
(dnssec "bogus")

  * 5.0.1.0.0.2.ip6.arpa to 9.5.5.0.1.0.0.2.ip6.arpa: No valid RRSIGs
    made by a key corresponding to a DS RR were found covering the
    DNSKEY RRset, resulting in no secure entry point (SEP) into the
    zone. (68.87.68.244, 68.87.72.244, 68.87.76.228, 68.87.85.132,
    69.252.250.103, 2001:558:1004:7:68:87:85:132,
    2001:558:100a:5:68:87:68:244, 2001:558:100e:5:68:87:72:244,
    2001:558:1014:c:68:87:76:228, 2001:558:fe23:8:69:252:250:103,
    UDP_-_EDNS0_4096_D_K)
  * RRSIG 9.5.5.0.1.0.0.2.ip6.arpa/DNSKEY alg 5, id 47242: The Signature
    Expiration field of the RRSIG RR (2020-05-09 17:44:32+00:00) is 149
    days in the past.
  * RRSIG 9.5.5.0.1.0.0.2.ip6.arpa/DNSKEY alg 5, id 47242: The Signature
    Expiration field of the RRSIG RR (2020-05-09 17:44:32+00:00) is 149
    days in the past.

https://dnsviz.net/d/5.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.d.c.0.0.0.0.0.8.9.5.5.0.1.0.0.2.ip6.arpa/dnssec/

-- 
Sent from Postbox <https://www.postbox-inc.com>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://lists.dns-oarc.net/pipermail/dns-operations/attachments/20201005/9e1d4fb2/attachment.html>


More information about the dns-operations mailing list