DNSSEC signatures with key tag {0}, associated with records in zone {1}, will expire on {2} (UTC time). Once the signatures ...

DNSSEC signatures with key tag {0}, associated with records in zone {1}, will expire on {2} (UTC time). Once the signatures expire, name resolution will fail for resolvers that require validation  until new signatures are created.  To create new signatures, re-sign the zone.