DNSSEC with IDNA domain

*** DNSSEC with IDNA domain
I test the creation of an emoji domain…
Punycode encoded as xn–d09h.parent_domain. but when I’ll try to enable DNSSEC Cloudflare uses the Unicode form \240\159\170\130.parent_domain.
Not sure it is IDNA2008 compliant… But sure at parent_domain it generates an error since I cannot create a record like:
\240\159\170\130.parent_domain. IN DS …
It requires something like xn–d09h.parent_domain. IN DS …

A post was merged into an existing topic: DNSSEC incorrect name field used for signing