Dns Lookup
dns_lookupQuery DNS records for any domain and verify DNSSEC validation status. Use it to check DNS configuration, identify validation failures, and troubleshoot resolution issues with clear pass/fail results.
Instructions
Query DNS records for a domain with DNSSEC validation status.
Returns the requested records along with whether DNSSEC is enabled and whether validation passes. Use this to check DNS configuration and DNSSEC health for any domain.
If the resolver returns SERVFAIL (which a validating resolver does when DNSSEC validation fails), this re-queries with the CD (Checking Disabled) bit to distinguish a genuine DNSSEC failure from an unrelated server error.
Input Schema
| Name | Required | Description | Default |
|---|---|---|---|
| name | Yes | Domain name to query (e.g. 'cloudflare.com') | |
| resolver | No | DNS resolver IP to use. Defaults to the configured resolver. | |
| record_type | No | DNS record type: A, AAAA, MX, NS, TXT, SOA, CNAME, PTR, SRV, CAA, DNSKEY, DS (case-insensitive) | A |
Output Schema
| Name | Required | Description | Default |
|---|---|---|---|
| dnssec | Yes | DNSSEC status of the answer | |
| records | Yes | Answer records (empty if none) | |
| resolver | Yes | Resolver IP the query was sent to | |
| query_name | Yes | Name that was queried | |
| query_type | Yes | Record type that was queried | |
| response_time_ms | Yes | Round-trip time in milliseconds |