DS record with DNS name ex.com not permitted in zone ex.com. Why?

0

When I attempt to create a DS record to establish a chain of trust https://docs.aws.amazon.com/Route53/latest/DeveloperGuide/dns-configuring-dnssec-enable-signing.html?icmpid=docs_console_unmapped#dns-configuring-dnssec-chain-of-trust
I get an error that I can't understand. The DS key appears to be correct. I'm not sure why it won't let me create it.

My full error:

Error occurred
Bad request.
(InvalidChangeBatch 400: RRSet of type DS with DNS name example.com. is not permitted in zone example.com.)

Edited by: 333one on Mar 4, 2021 5:59 PM

Edited by: 333one on Mar 4, 2021 6:00 PM

Edited by: 333one on Mar 4, 2021 6:00 PM

Edited by: 333one on Mar 4, 2021 6:01 PM

preguntada hace 3 años1181 visualizaciones
1 Respuesta
0

The DS record for example.com. goes in the com. zone. Your domain registrar will have somewhere to enter it.

If your domain registrar is Amazon, you'll have to use the domain management interface, not the DNS interface.

respondido hace 3 años

No has iniciado sesión. Iniciar sesión para publicar una respuesta.

Una buena respuesta responde claramente a la pregunta, proporciona comentarios constructivos y fomenta el crecimiento profesional en la persona que hace la pregunta.

Pautas para responder preguntas