TLD SLA Compliance Metrics
Spec 10DNS
| Period | Availability | RTT Compliance | RTT p50 | RTT p95 | Checks | TSLAC |
|---|---|---|---|---|---|---|
| 24h | 100% | 100% | 145ms | 211ms | 231 | |
| 7d | 94.02% | 94.02% | 136ms | 217ms | 1287 | |
| 30d | 98.95% | 98.95% | 141ms | 298ms | 7348 |
RDAP
| Period | Availability | RTT Compliance | RTT p50 | RTT p95 | Checks | TSLAC |
|---|---|---|---|---|---|---|
| 24h | 40.00% | 35.00% | 213ms | 2300ms | 40 | |
| 7d | 33.33% | 33.33% | 438ms | 1421ms | 192 | |
| 30d | 32.10% | 32.10% | 243ms | 1095ms | 1296 |
DNSSEC Validation Metrics
Registry Agreement Spec 6DNSSEC is required by the Registry Agreement (Specification 6) but is not part of the Spec 10 SLA. We monitor DNSSEC validation independently.
| Period | Validation Rate | RTT p50 | RTT p95 | Checks | Status |
|---|---|---|---|---|---|
| 24h | 50.00% | 208ms | 210ms | 38 | |
| 7d | 47.41% | 196ms | 199ms | 232 | |
| 30d | 49.40% | 203ms | 233ms | 1332 |
Unlike Spec 10 services, DNSSEC has no formal availability SLA. Thresholds shown are operational guidelines.
DNS Protocol Issues
Non-Compliant BehaviorThese protocol issues were observed in the last 7 days and may affect DNS resolution or DNSSEC validation.
| Issue | Nameserver | First Seen | Last Seen |
|---|---|---|---|
edns0_ignored
— EDNS0 OPT absent in NOERROR response
|
ns3.uz
|
2026-02-19 05:58 | 2026-09-11 09:58 |
Issues like rrsig_missing_udp indicate nameservers silently dropping DNSSEC signatures
in UDP responses without setting the truncation bit, which breaks validation for resolvers.
Current Check Status
Reported by Any53 Probes| Type | AF | RTT | Last Check | Source | Details | Status | TSLAC |
|---|---|---|---|---|---|---|---|
DNS
|
v4 | 189ms | 6 minutes ago | local | — | OK | |
DNS
|
v6 | 58ms | 6 minutes ago | local | — | OK | |
DNSSEC
|
v4 | 211ms | 1 hour, 48 minutes ago | local | Key: 3685 | OK | |
DNSSEC
|
v6 | — | 1 hour, 48 minutes ago | local | — | FAIL | |
RDAP
|
v4 | 0.36ms | 3 hours, 15 minutes ago | local | — | FAIL | |
RDAP
|
v6 | 0.37ms | 3 hours, 14 minutes ago | local | — | FAIL |
RDAP HTTPS Timing
579ms total
TLS 1.3 / TLS_AES_256_GCM_SHA384
Nameservers
11 IPs tested| Hostname | IP Address | AF | ASN | RPKI | Status |
|---|---|---|---|---|---|
ns1.uz |
91.212.89.244 |
v4 | — | — | |
ns2.uz |
83.221.179.222 |
v4 | — | — | |
ns3.uz |
185.74.6.29 |
v4 | — | — | |
ns3.uz |
2a05:45c7:e001::4 |
v6 | — | — | |
ns4.uz |
83.69.136.139 |
v4 | — | — | |
ns5.uz |
217.12.81.129 |
v4 | — | — | |
ns6.uz |
83.69.129.33 |
v4 | — | — | |
ns6.uz |
2a01:7640:0:d::2 |
v6 | — | — | |
ns7.uz |
72.167.34.137 |
v4 | — | — | |
ns7.uz |
2603:3:6101:8ac0:: |
v6 | — | — | |
ns8.uz |
91.212.89.233 |
v4 | — | — |
Per ICANN Spec 10, we test all delegated nameserver IPs independently.
Test With Your Computer
DNS
dig @ns1.uz uz. SOA +dnssec +nsid
Query SOA with DNSSEC validation and NSID
drill -D uz. SOA @ns1.uz
Alternative using drill with DNSSEC trace
RDAP
curl -sS "https://rdap.cctld.uz/domain/nic.uz" | jq .
Fetch RDAP JSON (positive lookup)
curl -I -sS "https://rdap.cctld.uz/domain/nic.uz"
Headers only (check TLS, timing)
Registry Information
ActiveICANN SLA Requirements
Per ICANN Registry Agreement Specification 10:
API Access
JSON APIAccess .uz compliance metrics programmatically via our REST API.
Quick Start
/any53/api/v1/compliance/uz/
curl -H "X-API-Key: ${YOUR_API_KEY}" \
"https://www.any53.com/any53/api/v1/compliance/uz/"
Example Response
{
"tld": "uz",
"display_name": ".uz",
"operator": "Uzbekistan",
"updated_at": "2026-01-31T12:00:00Z",
"dns": {
"availability_24h": 99.99,
"rtt_p50_ms": 12,
"rtt_p95_ms": 42,
"sla_threshold_ms": 500
},
"rdds": {
"protocol": "RDAP",
"availability_24h": 99.95,
"rtt_p50_ms": 180,
"rtt_p95_ms": 412,
"sla_threshold_ms": 4000
},
"servers": {
"rdap_url": "https://rdap.cctld.uz/"
},
"spec10_compliant": true
}
Generate API Key
Get a free API key to start making requests. Provide an email to upgrade to the verified tier (600 requests/hour).
Endpoints
| Endpoint | Description | Tier |
|---|---|---|
GET /compliance/ |
List all monitored TLDs | All |
GET /compliance/{tld}/ |
Current metrics for a TLD | All |
GET /compliance/{tld}/history/ |
Historical time-series data | Organization |
GET /compliance/{tld}/probes/ |
Per-probe breakdown | Organization |
POST /compliance/keys/ |
Generate a new API key | No auth |
Rate Limits
| Tier | Rate Limit | Features |
|---|---|---|
| Anonymous | 100/hour | Current snapshot, hourly aggregates |
| Verified | 600/hour | Current snapshot, hourly aggregates |
| Organization | 6000/hour | Historical data, per-minute resolution, per-probe breakdown |