--- /dev/null
+0 example.com. IN DNSKEY 86400 257 3 13 ...
+0 example.com. IN MX 120 10 smtp-servers.example.com.
+0 example.com. IN MX 120 15 smtp-servers.test.com.
+0 example.com. IN NS 120 ns1.example.com.
+0 example.com. IN NS 120 ns2.example.com.
+0 example.com. IN NSEC 86400 _imap._tcp.example.com. NS SOA MX RRSIG NSEC DNSKEY
+0 example.com. IN RRSIG 100000 SOA 13 2 100000 [expiry] [inception] [keytag] example.com. ...
+0 example.com. IN RRSIG 120 MX 13 2 120 [expiry] [inception] [keytag] example.com. ...
+0 example.com. IN RRSIG 120 NS 13 2 120 [expiry] [inception] [keytag] example.com. ...
+0 example.com. IN RRSIG 86400 DNSKEY 13 2 86400 [expiry] [inception] [keytag] example.com. ...
+0 example.com. IN RRSIG 86400 NSEC 13 2 86400 [expiry] [inception] [keytag] example.com. ...
+0 example.com. IN SOA 100000 ns1.example.com. ahu.example.com. 2847484148 28800 7200 604800 86400
+2 . IN OPT 32768
+2 ns1.example.com. IN A 120 192.168.1.1
+2 ns1.example.com. IN RRSIG 120 A 13 3 120 [expiry] [inception] [keytag] example.com. ...
+2 ns2.example.com. IN A 120 192.168.1.2
+2 ns2.example.com. IN RRSIG 120 A 13 3 120 [expiry] [inception] [keytag] example.com. ...
+2 smtp-servers.example.com. IN A 120 192.168.0.2
+2 smtp-servers.example.com. IN A 120 192.168.0.3
+2 smtp-servers.example.com. IN A 120 192.168.0.4
+2 smtp-servers.example.com. IN RRSIG 120 A 13 3 120 [expiry] [inception] [keytag] example.com. ...
+Rcode: 0 (No Error), RD: 0, QR: 1, TC: 0, AA: 1, opcode: 0
+Reply to question for qname='example.com.', qtype=ANY
--- /dev/null
+0 example.com. IN DNSKEY 86400 257 3 13 ...
+0 example.com. IN MX 120 10 smtp-servers.example.com.
+0 example.com. IN MX 120 15 smtp-servers.test.com.
+0 example.com. IN NS 120 ns1.example.com.
+0 example.com. IN NS 120 ns2.example.com.
+0 example.com. IN NSEC3PARAM 86400 1 0 1 abcd
+0 example.com. IN RRSIG 100000 SOA 13 2 100000 [expiry] [inception] [keytag] example.com. ...
+0 example.com. IN RRSIG 120 MX 13 2 120 [expiry] [inception] [keytag] example.com. ...
+0 example.com. IN RRSIG 120 NS 13 2 120 [expiry] [inception] [keytag] example.com. ...
+0 example.com. IN RRSIG 86400 DNSKEY 13 2 86400 [expiry] [inception] [keytag] example.com. ...
+0 example.com. IN RRSIG 86400 NSEC3PARAM 13 2 86400 [expiry] [inception] [keytag] example.com. ...
+0 example.com. IN SOA 100000 ns1.example.com. ahu.example.com. 2847484148 28800 7200 604800 86400
+2 . IN OPT 32768
+2 ns1.example.com. IN A 120 192.168.1.1
+2 ns1.example.com. IN RRSIG 120 A 13 3 120 [expiry] [inception] [keytag] example.com. ...
+2 ns2.example.com. IN A 120 192.168.1.2
+2 ns2.example.com. IN RRSIG 120 A 13 3 120 [expiry] [inception] [keytag] example.com. ...
+2 smtp-servers.example.com. IN A 120 192.168.0.2
+2 smtp-servers.example.com. IN A 120 192.168.0.3
+2 smtp-servers.example.com. IN A 120 192.168.0.4
+2 smtp-servers.example.com. IN RRSIG 120 A 13 3 120 [expiry] [inception] [keytag] example.com. ...
+Rcode: 0 (No Error), RD: 0, QR: 1, TC: 0, AA: 1, opcode: 0
+Reply to question for qname='example.com.', qtype=ANY
--- /dev/null
+0 example.com. IN DNSKEY 86400 257 3 13 ...
+0 example.com. IN MX 120 10 smtp-servers.example.com.
+0 example.com. IN MX 120 15 smtp-servers.test.com.
+0 example.com. IN NS 120 ns1.example.com.
+0 example.com. IN NS 120 ns2.example.com.
+0 example.com. IN NSEC3PARAM 86400 1 0 1 abcd
+0 example.com. IN RRSIG 100000 SOA 13 2 100000 [expiry] [inception] [keytag] example.com. ...
+0 example.com. IN RRSIG 120 MX 13 2 120 [expiry] [inception] [keytag] example.com. ...
+0 example.com. IN RRSIG 120 NS 13 2 120 [expiry] [inception] [keytag] example.com. ...
+0 example.com. IN RRSIG 86400 DNSKEY 13 2 86400 [expiry] [inception] [keytag] example.com. ...
+0 example.com. IN RRSIG 86400 NSEC3PARAM 13 2 86400 [expiry] [inception] [keytag] example.com. ...
+0 example.com. IN SOA 100000 ns1.example.com. ahu.example.com. 2847484148 28800 7200 604800 86400
+2 . IN OPT 32768
+2 ns1.example.com. IN A 120 192.168.1.1
+2 ns1.example.com. IN RRSIG 120 A 13 3 120 [expiry] [inception] [keytag] example.com. ...
+2 ns2.example.com. IN A 120 192.168.1.2
+2 ns2.example.com. IN RRSIG 120 A 13 3 120 [expiry] [inception] [keytag] example.com. ...
+2 smtp-servers.example.com. IN A 120 192.168.0.2
+2 smtp-servers.example.com. IN A 120 192.168.0.3
+2 smtp-servers.example.com. IN A 120 192.168.0.4
+2 smtp-servers.example.com. IN RRSIG 120 A 13 3 120 [expiry] [inception] [keytag] example.com. ...
+Rcode: 0 (No Error), RD: 0, QR: 1, TC: 0, AA: 1, opcode: 0
+Reply to question for qname='example.com.', qtype=ANY
--- /dev/null
+#!/bin/sh
+cleandig example.com NSEC3PARAM dnssec
--- /dev/null
+Direct NSEC3PARAM query.
--- /dev/null
+1 example.com. IN SOA 86400 ns1.example.com. ahu.example.com. 2847484148 28800 7200 604800 86400
+2 . IN OPT 32768
+Rcode: 0 (No Error), RD: 0, QR: 1, TC: 0, AA: 1, opcode: 0
+Reply to question for qname='example.com.', qtype=NSEC3PARAM
--- /dev/null
+1 example.com. IN NSEC 86400 _imap._tcp.example.com. NS SOA MX RRSIG NSEC DNSKEY
+1 example.com. IN RRSIG 86400 NSEC 13 2 86400 [expiry] [inception] [keytag] example.com. ...
+1 example.com. IN RRSIG 86400 SOA 13 2 100000 [expiry] [inception] [keytag] example.com. ...
+1 example.com. IN SOA 86400 ns1.example.com. ahu.example.com. 2847484148 28800 7200 604800 86400
+2 . IN OPT 32768
+Rcode: 0 (No Error), RD: 0, QR: 1, TC: 0, AA: 1, opcode: 0
+Reply to question for qname='example.com.', qtype=NSEC3PARAM
--- /dev/null
+0 example.com. IN NSEC3PARAM 86400 1 0 1 abcd
+0 example.com. IN RRSIG 86400 NSEC3PARAM 13 2 86400 [expiry] [inception] [keytag] example.com. ...
+2 . IN OPT 32768
+Rcode: 0 (No Error), RD: 0, QR: 1, TC: 0, AA: 1, opcode: 0
+Reply to question for qname='example.com.', qtype=NSEC3PARAM
--- /dev/null
+0 example.com. IN NSEC3PARAM 86400 1 0 1 abcd
+0 example.com. IN RRSIG 86400 NSEC3PARAM 13 2 86400 [expiry] [inception] [keytag] example.com. ...
+2 . IN OPT 32768
+Rcode: 0 (No Error), RD: 0, QR: 1, TC: 0, AA: 1, opcode: 0
+Reply to question for qname='example.com.', qtype=NSEC3PARAM