Normally, to test if a resolver is DNSSEC-enabled or not, IT people will use "dig +dnssec" followed by something and then verify that the message has the AD (Authenticated Data) set. Instead of using such command line testing, I am a bit lucky to find two webistes for performing the same task:
1. http://dnssec-or-not.net/
2. http://dnssectest.sidn.nl/
The screen dumps below are interesting.
No comments:
Post a Comment