IPv4 Addresses

TTL

IPv6 Addresses

TTL

Name Servers

TTL

Mail Servers

TTL

SOA Details

TTL
20m
SOA Responsible
dns.cloudflare.com
SOA Serial
2402882988
SOA Times
Refresh 2h
Retry 40m
Expire 7d
Minimum TTL 30m

Certificate Authority Authorization

TTL

No CAA records were returned at this registrable domain name. With no CAA policy, any public certificate authority (CA) may issue TLS certificates for names under this zone unless a parent publishes CAA; add issue / issuewild / iodef records to restrict issuance.

DMARC

TTL
DMARC Policy

Organizational policy (p): how receivers treat mail that fails aligned DMARC checks — none (monitor only), quarantine (often junk), or reject (block).

none quarantine reject
2m
DMARC Subdomain Policy

Subdomain policy (sp): when set, it applies to hostnames below this domain instead of p; if omitted, subdomains inherit the organizational policy.

none quarantine reject
DMARC Percentage

pct: share of mail that gets quarantine/reject; 100 = all failing messages (default).

100
DMARC RUA

Aggregate DMARC reports (ZIP/XML). Optional but recommended for visibility.

DMARC RUF

Forensic (per-failure) reports. Often omitted for privacy or volume.

No forensic report URIs (RUF).

DKIM

TTL
DKIM Selector default
v=DKIM1 k=rsa
5m
Public Key
MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQC7t9VOZVyVterlWK8U...

SPF (Sender Policy Framework)

TTL
SPF SPFv1
Qualifier Mechanism Target / value Valid Details
+ Pass a
+ Pass ptr
+ Pass ip4
+ Pass mx
+ Pass include
+ Pass include
~ Softfail all

SPF warnings

  • The ptr mechanism is slow and discouraged in SPF
2m

MTA-STS

TTL

This hostname does not publish an MTA-STS policy (no v=STSv1 TXT at _mta-sts.<name> and/or no policy at https://mta-sts.<name>/.well-known/mta-sts.txt).

Text Content

TTL
google-site-verification=qqSGAeYSXyLFc03C1HNG6RPqGVc_tcInCVQSJfR5EVQ
2m
google-site-verification=tlcwxZ0DCvMoi7i6jDKoW1aoOPW6Fn5W5ZX_S4rDHeQ
2m
paddle-verification=094830e6
2m

DNSSEC Public Keys

TTL
DNSKEY
257 3 13 mdsswUyr3DPW132mOi8V9xESWE8jTo0dxCjjnopKl+GqJxpVXckHAeF+KkxLbxILfDLUT0rAK9iUzy1L53eKGQ==
20m
DNSKEY
256 3 13 oJMRESz5E4gYzS/q6XDrvU1qMPYIjCWzJaOau8XNEZeqCYKD5ar0IRd8KqXXFJkqmVfRvMGPmM1x8fGAa2XhSA==
20m

Delegation Signer

TTL
DS
2371 13 2 207F7F0FBAB087FC0632E655A52B80DF39AEEBAA85CC767AB2923022A6641A3B
20m

DNSSEC Next Secure

TTL
NSEC
.fragnet.net ["TYPE65", "TYPE64", "TYPE61", "TYPE60", "TYPE59", "TYPE55", "TYPE53", "TYPE52", "DNSKEY", "NSEC", "RRSIG", "TYPE44", "TYPE37", "TYPE35", "SRV", "TYPE29", "AAAA", "TXT", "MX", "TYPE13", "SOA", "NS", "A", "CAA", "TYPE256"]
20m