.cx

TLD SLA Compliance Monitoring

TLD SLA Compliance Metrics

Spec 10

DNS

Period Availability RTT Compliance RTT p50 RTT p95 Checks TSLAC
24h 100% 100% 42ms 202ms 66
7d 93.28% 93.28% 35ms 261ms 357
30d 98.80% 98.80% 28ms 583ms 2007

RDAP

Period Availability RTT Compliance RTT p50 RTT p95 Checks TSLAC
24h 85.00% 80.00% 2224ms 2405ms 40
7d 80.00% 80.00% 2225ms 2433ms 240
30d 94.05% 94.05% 866ms 1243ms 1344

DNSSEC Validation Metrics

Registry Agreement Spec 6

DNSSEC is required by the Registry Agreement (Specification 6) but is not part of the Spec 10 SLA. We monitor DNSSEC validation independently.

Period Validation Rate RTT p50 RTT p95 Checks Status
24h 100% 19ms 20ms 34
7d 94.32% 18ms 22ms 176
30d 98.71% 19ms 36ms 1004

Unlike Spec 10 services, DNSSEC has no formal availability SLA. Thresholds shown are operational guidelines.

Current Check Status

Reported by Any53 Probes
Type AF RTT Last Check Source Details Status TSLAC
DNS v4 45ms 15 minutes ago local NSID: gransy.anycastdns.cz OK
DNS v6 12ms 205 days, 11 hours ago local OK
DNSSEC v4 20ms 51 minutes ago local Key: 6500 OK
DNSSEC v6 20ms 51 minutes ago local Key: 6500 OK
RDAP v4 504ms 10 minutes ago local TLS 1.3 OK
RDAP v6 496ms 10 minutes ago local TLS 1.3 OK

RDAP HTTPS Timing

496ms total
DNS Lookup
TCP Connect
89ms
TLS Handshake
99ms
Time to First Byte
496ms

TLS 1.3 / TLS_AES_256_GCM_SHA384

Nameservers

3 IPs tested
Hostname IP Address AF ASN RPKI Status
ns.anycast.nic.cx 204.61.216.16 v4 AS42
ns1.anycastdns.cz 185.38.108.108 v4 AS60592
ns2.anycastdns.cz 185.28.194.194 v4 AS60592

Per ICANN Spec 10, we test all delegated nameserver IPs independently.

Test With Your Computer

DNS

dig @ns.anycast.nic.cx cx. SOA +dnssec +nsid Query SOA with DNSSEC validation and NSID
drill -D cx. SOA @ns.anycast.nic.cx Alternative using drill with DNSSEC trace

RDAP

curl -sS "https://rdap.nic.cx/domain/nic.cx" | jq . Fetch RDAP JSON (positive lookup)
curl -I -sS "https://rdap.nic.cx/domain/nic.cx" Headers only (check TLS, timing)
Open in Browser View RDAP response directly

Registry Information

Active
TLD .cx
Operator Christmas Island
RDAP Server https://rdap.nic.cx/ RDAP Client

ICANN SLA Requirements

Per ICANN Registry Agreement Specification 10:

DNS SLA UDP RTT ≤ 500ms for 95% of queries. Availability: 99% (max 432 min/month downtime).
RDAP SLA RTT ≤ 4000ms for 95% of queries. Availability: 98% (max 864 min/month downtime).

API Access

JSON API

Access .cx compliance metrics programmatically via our REST API.

Quick Start

GET /any53/api/v1/compliance/cx/
curl -H "X-API-Key: ${YOUR_API_KEY}" \
  "https://www.any53.com/any53/api/v1/compliance/cx/"

Example Response

{
  "tld": "cx",
  "display_name": ".cx",
  "operator": "Christmas Island",
  "updated_at": "2026-01-31T12:00:00Z",
  "dns": {
    "availability_24h": 99.99,
    "rtt_p50_ms": 12,
    "rtt_p95_ms": 42,
    "sla_threshold_ms": 500
  },
  "rdds": {
    "protocol": "RDAP",
    "availability_24h": 99.95,
    "rtt_p50_ms": 180,
    "rtt_p95_ms": 412,
    "sla_threshold_ms": 4000
  },
  "servers": {
    "rdap_url": "https://rdap.nic.cx/"
  },
  "spec10_compliant": true
}

Generate API Key

Get a free API key to start making requests. Provide an email to upgrade to the verified tier (600 requests/hour).

Endpoints

Endpoint Description Tier
GET /compliance/ List all monitored TLDs All
GET /compliance/{tld}/ Current metrics for a TLD All
GET /compliance/{tld}/history/ Historical time-series data Organization
GET /compliance/{tld}/probes/ Per-probe breakdown Organization
POST /compliance/keys/ Generate a new API key No auth

Rate Limits

Tier Rate Limit Features
Anonymous 100/hour Current snapshot, hourly aggregates
Verified 600/hour Current snapshot, hourly aggregates
Organization 6000/hour Historical data, per-minute resolution, per-probe breakdown