TokenTalks
← Back to feed

Update:

When DNSSEC goes wrong: how we responded to the .de TLD outage

Cloudflare·Cloud·Silent·5/6/2026

On May 5, 2026, DENIC published broken DNSSEC signatures for the .de TLD, making millions of domains unreachable. Here's what 1.1.1.1 saw, how serve stale cushioned the impact, and how we restored resolution.

Why it mattersCloudflare released an update. Review the changelog for relevant changes.

Who should careTeams using this project.

View original source ↗

Source payload preview

{
  "guid": {
    "#text": "2MckFmlh9Epgpruqa9MXRh",
    "@_isPermaLink": "false"
  },
  "link": "https://blog.cloudflare.com/de-tld-outage-dnssec/",
  "title": "When DNSSEC goes wrong: how we responded to the .de TLD outage",
  "pubDate": "Wed, 06 May 2026 17:00:00 GMT",
  "category": [
    "DNS",
    "DNSSEC",
    "1.1.1.1",
    "Reliability",
    "Outage"
  ],
  "dc:creator": [
    "Sebastiaan Neuteboom",
    "Christian Elmerot",
    "Max Worsley"
  ],
  "description": " On May 5, 2026, DENIC published broken DNSSEC signatures for the .de TLD, making millions of domains unreachable. Here's what 1.1.1.1 saw, how serve stale cushioned the impact, and how we restored resolution. ",
  "content:encoded": " <p></p><p>On May 5, 2026, at roughly 19:30 UTC, DENIC, the registry operator for the <