SERVERROR code

I get response code “SERVFAIL” to every query i make.
dig:
; <<>> DiG 9.18.26 <<>> @8.8.8.8 redacted.com
; (1 server found)
;; global options: +cmd
;; Got answer:
;; ->>HEADER<<- opcode: QUERY, status: SERVFAIL, id: 24698
;; flags: qr rd ra; QUERY: 1, ANSWER: 0, AUTHORITY: 0, ADDITIONAL: 1

;; OPT PSEUDOSECTION:
; EDNS: version: 0, flags:; udp: 512
; EDE: 10 (RRSIGs Missing): (For redacted.com/a)
;; QUESTION SECTION:
;redacted.com. IN A

;; Query time: 13 msec
;; SERVER: 8.8.8.8#53(8.8.8.8) (UDP)
;; WHEN: Fri Apr 26 21:52:33 CEST 2024
;; MSG SIZE rcvd: 75

response from 8.8.8.8

{
“Status”: 2 /* SERVFAIL /,
“TC”: false,
“RD”: true,
“RA”: true,
“AD”: false,
“CD”: false,
“Question”: [
{
“name”: “dns.packets.cool.”,
“type”: 1 /
A */
}
],
“Comment”: “DNSSEC validation failure. Check dns.packets.cool | DNSViz and DNSSEC Debugger - dns.packets.cool for errors”,
“extended_dns_errors”: [
{
“info_code”: 9,
“extra_text”: “No DNSKEY matches DS RRs of packets.cool”
}
]
}

The DNSSEC configuration on your domain registrar, Spaceship, is incorrect:

Same is said with both the “EDE: 10 (RRSIGs Missing)” in your first output, and the “Comment” section in your second output.

1 Like

I contacted Spaceship and they said that DNSSEC is disabled on my domain.

DNSSEC is also disabled on cloudflare

They are wrong.

You can check here, at the bottom of the page it says DNSSEC: signedDelegation, which means DNSSEC is active for your domain:

Hmm. This is strange. I’ll contact them once again.

This topic was automatically closed 2 days after the last reply. New replies are no longer allowed.