Unable to establish DNSSEC chain of trust for .com domain hosted in Route 53

0

When setting up DNSSEC for our example.com domain in the Route 53 console, I am able to complete the first part successfully. Now I need to establish the chain of trust. AWS help tells me to add a DS record. However, DS is not an option in the "type of record dropdown" when using Quick Create.

Using the wizard produces this error message: InvalidChangeBatch 400: RRSet of type DS with DNS name example.com. is not permitted in zone example.com.

Does AWS automatically add the DS records for the .com zone?

kamuzz
已提問 1 年前檢視次數 319 次
1 個回答
0

The following documents appear to support DNSSEC settings themselves.
I was wondering if there is something wrong with the way it is set up?
https://docs.aws.amazon.com/Route53/latest/DeveloperGuide/domain-configure-dnssec.html

profile picture
專家
已回答 1 年前

您尚未登入。 登入 去張貼答案。

一個好的回答可以清楚地回答問題並提供建設性的意見回饋,同時有助於提問者的專業成長。

回答問題指南