| Previous | Next |
| DNS_ERROR_INVALID_ROLLOVER_PERIOD | DNS_ERROR_ROLLOVER_IN_PROGRESS |
DNS_ERROR_INVALID_INITIAL_ROLLOVER_OFFSET
DNS_ERROR_INVALID_INITIAL_ROLLOVER_OFFSET means the requested delay before the first key rollover is not valid for the configured signing schedule.
What to check for DNS_ERROR_INVALID_INITIAL_ROLLOVER_OFFSET
- Check the configured rollover period and the initial offset as one schedule, not as unrelated parameters.
- Make sure the first rollover is not scheduled before keys, signatures, and parent delegation data can propagate.
- Validate the settings before committing them to a production signed zone.
Test-DnsServerDnsSecZoneSetting -ZoneName "example.com"
Microsoft: Sign DNS zones with DNSSEC
Microsoft: Test-DnsServerDnsSecZoneSetting
Microsoft: Get-DnsServerDnsSecZoneSetting
Where the result is returned
This result is Win32 system error 9115 (0x0000239B) from winerror.h. AllStat describes it as “The specified initial rollover offset is invalid.”
Looking for a different code? Search another status or error code.
