How can I tell whether DNSSEC is working?

Yes, the yesterday’s update contained no knot-resolver fixes, except for configuration update to really forward to multiple servers instead of the first one.

Thanks for the domain that doesn’t work; such test cases help us to eradicate the bugs.