DNSSEC/DOflag/さくらについて、ここに記述してください。

$ dig -t dnskey +norec +qr +dnssec sakura.ne.jp @ns1.dns.ne.jp

; <<>> DiG 9.11.1-P3 <<>> -t dnskey +norec +qr +dnssec sakura.ne.jp @ns1.dns.ne.jp
;; global options: +cmd
;; Sending:
;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 36465
;; flags: ad; QUERY: 1, ANSWER: 0, AUTHORITY: 0, ADDITIONAL: 1

;; OPT PSEUDOSECTION:
; EDNS: version: 0, flags: do; udp: 4096
; COOKIE: 340dd35560c2aa69
;; QUESTION SECTION:
;sakura.ne.jp.                  IN      DNSKEY

;; QUERY SIZE: 53

;; Got answer:
;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 36465
;; flags: qr aa; QUERY: 1, ANSWER: 0, AUTHORITY: 1, ADDITIONAL: 1

;; OPT PSEUDOSECTION:
; EDNS: version: 0, flags: do; udp: 4096
;; QUESTION SECTION:
;sakura.ne.jp.                  IN      DNSKEY

;; AUTHORITY SECTION:
sakura.ne.jp.           3600    IN      SOA     dns.sakura.ad.jp. noc.sakura.ad.jp. 2017081501 3600 600 3600000 3600

;; Query time: 7 msec
;; SERVER: 61.211.236.1#53(61.211.236.1)
;; WHEN: Fri Aug 25 12:19:00 JST 2017
;; MSG SIZE  rcvd: 95

sakura.ne.jp ゾーンはDNSSEC保護なしなのだが、

-- ToshinoriMaeno 2017-08-25 03:33:19