DNSSEC/DOflag/さくらについて、ここに記述してください。
$ dig -t dnskey +norec +qr +dnssec sakura.ne.jp @ns1.dns.ne.jp
; <<>> DiG 9.11.1-P3 <<>> -t dnskey +norec +qr +dnssec sakura.ne.jp @ns1.dns.ne.jp ;; global options: +cmd ;; Sending: ;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 36465 ;; flags: ad; QUERY: 1, ANSWER: 0, AUTHORITY: 0, ADDITIONAL: 1 ;; OPT PSEUDOSECTION: ; EDNS: version: 0, flags: do; udp: 4096 ; COOKIE: 340dd35560c2aa69 ;; QUESTION SECTION: ;sakura.ne.jp. IN DNSKEY ;; QUERY SIZE: 53 ;; Got answer: ;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 36465 ;; flags: qr aa; QUERY: 1, ANSWER: 0, AUTHORITY: 1, ADDITIONAL: 1 ;; OPT PSEUDOSECTION: ; EDNS: version: 0, flags: do; udp: 4096 ;; QUESTION SECTION: ;sakura.ne.jp. IN DNSKEY ;; AUTHORITY SECTION: sakura.ne.jp. 3600 IN SOA dns.sakura.ad.jp. noc.sakura.ad.jp. 2017081501 3600 600 3600000 3600 ;; Query time: 7 msec ;; SERVER: 61.211.236.1#53(61.211.236.1) ;; WHEN: Fri Aug 25 12:19:00 JST 2017 ;; MSG SIZE rcvd: 95
sakura.ne.jp ゾーンはDNSSEC保護なしなのだが、
-- ToshinoriMaeno 2017-08-25 03:33:19