Site icon EfmSoft

What does Windows error code 9115 (DNS_ERROR_INVALID_INITIAL_ROLLOVER_OFFSET) mean?

 
Previous Next
DNS_ERROR_INVALID_ROLLOVER_PERIOD DNS_ERROR_ROLLOVER_IN_PROGRESS

DNS_ERROR_INVALID_INITIAL_ROLLOVER_OFFSET

DNS_ERROR_INVALID_INITIAL_ROLLOVER_OFFSET means the requested delay before the first key rollover is not valid for the configured signing schedule.

What to check for DNS_ERROR_INVALID_INITIAL_ROLLOVER_OFFSET

  • Check the configured rollover period and the initial offset as one schedule, not as unrelated parameters.
  • Make sure the first rollover is not scheduled before keys, signatures, and parent delegation data can propagate.
  • Validate the settings before committing them to a production signed zone.
Test-DnsServerDnsSecZoneSetting -ZoneName "example.com"

Microsoft: Sign DNS zones with DNSSEC

Microsoft: Test-DnsServerDnsSecZoneSetting

Microsoft: Get-DnsServerDnsSecZoneSetting

Where the result is returned

This result is Win32 system error 9115 (0x0000239B) from winerror.h. AllStat describes it as “The specified initial rollover offset is invalid.”


Looking for a different code? Search another status or error code.

Exit mobile version