Work in progress!

Follow IntoDNS on Twitter


Category Status Test name Information
Parent Info Domain NS records Nameserver records returned by the parent servers are:

ns1.c21700.sgvps.net.   ['75.2.77.104'] (NO GLUE)   [TTL=3600]
ns2.c21700.sgvps.net.   ['99.83.229.113'] (NO GLUE)   [TTL=3600]

a0.org.afilias-nst.info was kind enough to give us that information.

Pass TLD Parent Check Good. a0.org.afilias-nst.info, the parent server I interrogated, has information for your TLD. This is a good thing as there are some other domain extensions like "co.us" for example that are missing a direct check.
Pass Your nameservers are listed Good. The parent server a0.org.afilias-nst.info has your nameservers listed. This is a must if you want to be found as anyone that does not know your DNS servers will first ask the parent nameservers.
Info DNS Parent sent Glue The parent nameserver a0.org.afilias-nst.info is not sending out GLUE for every nameservers listed, meaning he is sending out your nameservers host names without sending the A records of those nameservers. It's ok but you have to know that this will require an extra A lookup that can delay a little the connections to your site. This happens a lot if you have nameservers on different TLD (domain.com for example with nameserver ns.domain.org.)
Pass Nameservers A records Good. Every nameserver listed has A records. This is a must if you want to be found.
NS Info NS records from your nameserversNS records got from your nameservers listed at the parent NS are:

ns2.siteground.net  ['99.83.229.113']   [TTL=86400]
ns1.siteground.net  ['75.2.77.104']   [TTL=86400]

Pass Recursive Queries Good. Your nameservers (the ones reported by the parent server) do not report that they allow recursive queries for anyone.
Pass Same Glue The A records (the GLUE) got from the parent zone check are the same as the ones got from your nameservers. You have to make sure your parent server has the same NS records for your zone as you do according to the RFC. This tests only nameservers that are common at the parent and at your nameservers. If there are any missing or stealth nameservers you should see them below!
Information Glue for NS records INFO: GLUE was not sent when I asked your nameservers for your NS records.This is ok but you should know that in this case an extra A record lookup is required in order to get the IPs of your NS records. The nameservers without glue are:
99.83.229.113
75.2.77.104
You can fix this for example by adding A records to your nameservers for the zones listed above.
Pass Mismatched NS records OK. The NS records at all your nameservers are identical.
Pass DNS servers responded Good. All nameservers listed at the parent server responded.
Pass Name of nameservers are valid OK. All of the NS records that your nameservers report seem valid.
Pass Multiple Nameservers Good. You have multiple nameservers. According to RFC2182 section 5 you must have at least 3 nameservers, and no more than 7. Having 2 nameservers is also ok by me.
Pass Nameservers are lame OK. All the nameservers listed at the parent servers answer authoritatively for your domain.
Error Missing nameservers reported by parent FAIL: The following nameservers are listed at your nameservers as nameservers for your domain, but are not listed at the parent nameservers (see RFC2181 5.4.1). You need to make sure that these nameservers are working.If they are not working ok, you may have problems!
ns2.siteground.net
ns1.siteground.net
Error Missing nameservers reported by your nameservers ERROR: One or more of the nameservers listed at the parent servers are not listed as NS records at your nameservers. The problem NS records are:
ns1.c21700.sgvps.net
ns2.c21700.sgvps.net
This is listed as an ERROR because there are some cases where nasty problems can occur (if the TTLs vary from the NS records at the root servers and the NS records point to your own domain, for example).
Pass Domain CNAMEs OK. RFC1912 2.4 and RFC2181 10.3 state that there should be no CNAMEs if an NS (or any other) record is present.
Pass NSs CNAME check OK. RFC1912 2.4 and RFC2181 10.3 state that there should be no CNAMEs if an NS (or any other) record is present.
Pass Different subnets OK. Looks like you have nameservers on different subnets!
Pass IPs of nameservers are public Ok. Looks like the IP addresses of your nameservers are public. This is a good thing because it will prevent DNS delays and other problems like
Pass DNS servers allow TCP connection OK. Seems all your DNS servers allow TCP connections. This is a good thing and useful even if UDP connections are used by default.
Pass Different autonomous systems OK. It seems you are safe from a single point of failure. You must be careful about this and try to have nameservers on different locations as it can prevent a lot of problems if one nameserver goes down.
Pass Stealth NS records sent Ok. No stealth ns records are sent
SOA Info SOA recordThe SOA record is:
Primary nameserver: ns1.siteground.net
Hostmaster E-mail address: root.c21700.sgvps.net
Serial #: 2020031160
Refresh: 86400
Retry: 7200
Expire: 3600000   5 weeks
Default TTL: 86400
Pass NSs have same SOA serial OK. All your nameservers agree that your SOA serial number is 2020031160.
Warn SOA MNAME entry WARNING: SOA MNAME (ns1.siteground.net) is not listed as a primary nameserver at your parent nameserver!
Pass SOA Serial Your SOA serial number is: 2020031160. This appears to be in the recommended format of YYYYMMDDnn.
Pass SOA REFRESH OK. Your SOA REFRESH interval is: 86400. That is OK
Pass SOA RETRY Your SOA RETRY value is: 7200. Looks ok
Warn SOA EXPIRE Your SOA EXPIRE number is: 3600000. That is NOT OK
Pass SOA MINIMUM TTL Your SOA MINIMUM TTL is: 86400. This value was used to serve as a default TTL for records without a given TTL value and now is used for negative caching (indicates how long a resolver may cache the negative answer). RFC2308 recommends a value of 1-3 hours. Your value of 86400 is OK.
MX Info MX RecordsYour MX records that were reported by your nameservers are:

30   mx30.mailspamprotection.com   34.111.121.216 (no glue)
20   mx20.mailspamprotection.com   34.120.156.61 (no glue)
10   mx10.mailspamprotection.com   34.149.79.66 (no glue)

[These are all the MX records that I found. If there are some non common MX records at your nameservers you should see them below. ]
Pass Different MX records at nameservers Good. Looks like all your nameservers have the same set of MX records. This tests to see if there are any MX records not reported by all your nameservers and also MX records that have the same hostname but different IPs
Pass MX name validity Good. I did not detect any invalid hostnames for your MX records.
Pass MX IPs are public OK. All of your MX records appear to use public IPs.
Pass MX CNAME Check OK. No problems here.
Pass MX A request returns CNAME OK. No CNAMEs returned for A records lookups.
Pass MX is not IP OK. All of your MX records are host names.
Pass Number of MX records Good. Looks like you have multiple MX records at all your nameservers. This is a good thing and will help in preventing loss of mail.
Pass Mismatched MX A OK. I did not detect differing IPs for your MX records.
Pass Duplicate MX A records OK. I have not found duplicate IP(s) for your MX records. This is a good thing.
Pass Reverse MX A records (PTR) Your reverse (PTR) record:
66.79.149.34.in-addr.arpa ->  66.79.149.34.bc.googleusercontent.com
61.156.120.34.in-addr.arpa ->  61.156.120.34.bc.googleusercontent.com
216.121.111.34.in-addr.arpa ->  216.121.111.34.bc.googleusercontent.com
You have reverse (PTR) records for all your IPs, that is a good thing.
WWW Info WWW A Record Your www.palastinvestigativefund.org A record is:
www.palastinvestigativefund.org -> palastinvestigativefund.org -> [ 35.212.56.69  ]

[Looks like you have CNAME's]
Pass IPs are public OK. All of your WWW IPs appear to be public IPs.
Pass WWW CNAME OK. You do have a CNAME record for www.palastinvestigativefund.org.Your CNAME entry also returns the A record for the CNAME entry, which is good.

Processed in 0.523 seconds.