DNSSEC issues take Fiji domains offline
On March 8, it was reported that .fj domains had gone offline, causing some hostnames within the Fiji top-level domain (ccTLD) to become unreachable. The issue impacted traffic to Cloudflare customer zones in the .com.fj second-level domain, with HTTP traffic dropping by approximately 40%. It was suggested that the problem could be DNSSEC related, and further investigation confirmed this as the cause. Around midnight UTC, the .fj zone started being signed with a key not in the root zone DS, possibly due to a scheduled rollover without checking for updates first. The issue was resolved when the DS was updated around 1400 UTC. Misconfigurations at the ccTLD level can have significant impacts on accessibility of websites and applications within that domain.
Company
Cloudflare
Date published
March 9, 2022
Author(s)
David Belson
Word count
657
Language
English
Hacker News points
7