tencent cloud

Feedback

NS Connection

Last updated: 2022-08-16 15:43:39

    With the NS connection method, you can modify the NS to transfer your site's DNS resolution permission to EdgeOne. This quickly enables the EdgeOne security/acceleration services while implementing a stable and professional DNS service.

    Note:

    The EdgeOne console is now only available to beta users. Contact us to join the beta.

    NS Record

    EdgeOne DNS supports the smart DNS service for various record types to intelligently return the optimal split zone based on end users' geographical locations and ISPs.

    1. Log in to the EdgeOne console and click Domain Name Service on the left sidebar.
    2. On the page that appears, select the target site and click DNS records.
    3. On the page you enter, select the target record, click Edit to edit the parameters, and click Save.

    Parameter description:

    • Record type and value: Different record types have different purposes.
    Record Type Sample Record Value Usage Description
    A 8.8.8.8 It points a domain name to a public network IPv4 address such as `8.8.8.8`.
    AAAA 2400:cb00:2049:1::a29f:f9 It points a domain name to a public network IPv6 address.
    CNAME cname.edgeone.com It points a domain name to another domain, from which the final IP address will be resolved.
    MX 10 mail.edgeone.com It is used for email servers. The record value and priority parameters are provided by email service providers. If there are multiple MX records, the lower the priority value, the higher the priority.
    TXT ba21a62exxxxxxxxxxcf5f06e It identifies and describes a domain name and is usually used for domain verification and as SPF records (for anti-spam).
    NS ns01.edgeone.com If you need to authorize a subdomain name to another DNS service provider for DNS resolution, you need to add an NS record. You cannot add an NS record for a root domain name.
    SRV 1 5 7001 srvhostname.example.com It identifies a service used by a server and is commonly used in Microsoft directory management.
    CAA 0 issue trustasia.com It specifies CAs to issue certificates for sites.
    Note:

    For an A, AAAA, or CNAME record, if proxy acceleration or secure acceleration is enabled, the record value will be the origin server address for eventual origin-pull after proxy.

    • Host record: It is equivalent to the prefix of a subdomain. If the root domain of the current site is edgeone.com, then common host records are as listed below:
    Record Type A AAAA CNAME MX NS TXT SRV CAA
    A × ×
    AAAA × ×
    CNAME × × × × × × × ×
    MX × ×
    NS × × × × × × ×
    TXT × ×
    SRV × ×
    CAA × ×
    • Proxy mode: Select Only DNS or Enable proxy based on the record type.
    Record Type Proxy Mode
    A/AAAA/CNAME Support both Only DNS and Enable proxy.
    MX/TXT/NS/SRV/CAA Only support Only DNS.
    Note:

    • In the case that there are multiple DNS records contain the same host record (the same subdomain prefix), if the proxy is enabled for only one record, the other records will be invalid.
    • When multiple DNS records contain the same host record (i.e., the same subdomain prefix): Proxy can be enabled for multiple A/AAAA records at the same time, but for only one CNAME record.
    • TTL: It is the DNS record cache time. Generally, the shorter the TTL, the shorter the cache time, and the faster the record value will take effect when it is updated, but the DNS speed will be slightly affected.
      • Available TTL values include: Automatic, 1 minute, 2 minutes, 5 minutes, 10 minutes, 15 minutes, 30 minutes, 1 hour, 2 hours, 5 hours, 12 hours, and 1 day. If you select Automatic, the system will configure TTL to 300 seconds.
      • How to configure TTL:
        • If the record value changes infrequently, select one hour or longer to speed up DNS resolution.
        • If the record value changes frequently, select a shorter TTL value such as one minute, which, however, may slightly slow down DNS resolution.
          Note:

          • In proxy acceleration, the TTL is Automatic by default and cannot be modified.
          • In actual conditions, TTL is not necessarily applied to LDNS cache configuration, which usually makes the time it takes for the record update to take effect much longer than the TTL.

    Switching to CNAME Connection

    On the NS connection page, you can click Switch to CNAME access in the top-right corner. For the first switch, you need to verify the ownership of the site. If the site has been verified, verification will be skipped for later switches. After the switch:

    • Original DNS records will be retained. A, AAAA, and CNAME records can be edited/deleted, while MX, NS, TXT, SRV and CAA records can be deleted only.
    • The proxy modes of all records will be inherited. After the switch, the "Only DNS" proxy mode set for records will become "Proxy disabled".
    • The EdgeOne universal certificate will be retained. However, it cannot be automatically updated in CNAME connection mode and will be automatically deleted upon expiration.
    • The custom certificates of all subdomains will be retained.

    DNS Configuration

    Advanced configuration items such as DNSSEC, custom NS, and CNAME acceleration are supported.

    DNSSEC

    DNS Security Extension (DNSSEC) uses a digital signature to authenticate the DNS data source in order to effectively protect the security and integrity of DNS resolution results. It is commonly used to prevent DNS spoofing and DNS cache poisoning.

    1. Log in to the EdgeOne console and click Domain Name Service on the left sidebar.

    2. On the page that appears, select the target site and click DNS configuration.

    3. On the DNS configuration page, click in the DNSSEC module and confirm the operation. Then the DS information will be generated.

    4. Add a DS record at your domain registrar according to the above information. For detailed directions with certain registrars, see the following documents:

    Custom NS

    The custom NS feature allows you to create a name server (NS) dedicated to your own site to replace the default assigned name server. After creation, EdgeOne will automatically assign an IP to it.

    Note:

    Custom NS has the following limits:

    • Only a subdomain (ns.example.com) of the current site (example.com) can be used as a custom NS.
    • You can add only two to five custom name servers.
    • If you enable custom NS for the first time, you need to add two custom name servers, and the custom names must be different from existing DNS records.
    1. On the Domain Name Service page, select the target site and click DNS configuration.
    2. On the DNS configuration page, click in the custom NS module, enter a custom NS domain name, and click Add.
    3. After adding a custom NS successfully, you need to add its glue records at your domain registrar for it to take effect.

    CNAME acceleration

    Once enabled, CNAME acceleration can effectively accelerate DNS resolution. If multi-level CNAME records are set in EdgeOne DNS for a domain, the system will directly provide the final IP DNS resolution result to reduce the number of resolutions. This feature is enabled by default.

    1. On the Domain Name Service page, select the target site and click DNS configuration.
    2. On the DNS configuration page, you can toggle CNAME acceleration on or off.
      Note:

      To directly get the final IP DNS resolution result, all multi-level CNAME records must be in EdgeOne DNS.

    Contact Us

    Contact our sales team or business advisors to help your business.

    Technical Support

    Open a ticket if you're looking for further assistance. Our Ticket is 7x24 avaliable.

    7x24 Phone Support