How to Use Amazon Route 53 as an Integrated DNS Provider
Table of Contents
- Before starting
- Create an AWS user for DNSimple
- Create a hosted zone with a few records
- Connect Route 53 to DNSimple
- Copy the records from Route 53 into DNSimple
- Send a change from DNSimple to Route 53
- Bring in changes made at Route 53
- Next steps
- Have more questions?
This tutorial connects Amazon Route 53 to DNSimple as an Integrated DNS Provider. You will create an AWS user for DNSimple, connect it, import a Route 53 hosted zone, copy its records into DNSimple, and then send a change from DNSimple back to Route 53. Afterwards, you can manage the zone at both providers from the DNSimple Record Editor.
Before starting
You need:
- An AWS account where you can create IAM policies, IAM users, and Route 53 hosted zones. Everything in AWS is done in the AWS Management Console.
- Full Access to your DNSimple account
Create an AWS user for DNSimple
DNSimple connects to Route 53 with an access key for an IAM user. Give that user only the Route 53 permissions DNSimple uses.
To create the user and access key
-
In the IAM console, create a policy with this JSON definition:
{ "Version": "2012-10-17", "Statement": [ { "Effect": "Allow", "Action": [ "route53:ChangeResourceRecordSets", "route53:CreateHostedZone", "route53:DeleteHostedZone", "route53:ListHostedZones", "route53:ListHostedZonesByName", "route53:ListResourceRecordSets" ], "Resource": "*" } ] } - Create an IAM user for DNSimple, and attach the policy directly to it.
- On the user’s tab, click .
- Select as the use case, and add a description such as “DNSimple Route 53 integration”.
- Copy the access key ID and the secret access key. AWS shows the secret only once.
Create a hosted zone with a few records
Skip this section if you already have a public hosted zone you want to use.
To create a test zone
- In the Route 53 console, create a public hosted zone for your domain.
- Add a few records to it, for example:
-
wwwA record pointing to192.0.2.1 -
staticCNAME record pointing tomybucket.s3.amazonaws.com - MX record pointing to
mail.example.com
-
Connect Route 53 to DNSimple
These steps follow Manage Integrated DNS Providers, with the AWS details filled in.
To connect Route 53
- If you have more than one account, select the relevant one from the account switcher at the top-right corner of the screen.
- From the account switcher, click , then click the tab.
- Under , click next to Route53.
- In the dialog, enter a for this AWS account, such as
AWS production, and the and you copied. - Click .
- DNSimple lists the hosted zones in the AWS account. Select the zone you created, and click .
DNSimple takes you to the list, where the zone import starts. Refresh and Import Integrated Zones explains what the import does. Route 53 is now listed under on the Integrated Providers page.
Copy the records from Route 53 into DNSimple
A sync makes the destination zone match the source zone. Here, Route 53 is the source and DNSimple is the destination.
Warning
A sync deletes records at the destination that are not at the source. Use a zone without records you need at DNSimple, or check both sides before you confirm.
To sync from Route 53 to DNSimple
- From the list, click the domain, then open the .
- The records at Route 53 and DNSimple now differ, so the Record Editor shows a warning. Click in it.
- In the dialog, choose your Route 53 connection as the . It is listed as
Route53 -followed by the nickname you entered. - Choose as the .
- Type
delete and synchronizeto confirm, then click .
The records you created at Route 53 now appear in the Record Editor, labeled with both DNSimple and your Route 53 connection.
Send a change from DNSimple to Route 53
To sync from DNSimple to Route 53
- In the Record Editor, add a record or edit an existing one at DNSimple only.
- In the warning, click .
- Choose as the and your Route 53 connection as the .
- Type
delete and synchronizeto confirm, then click . - In the Route 53 console, open the hosted zone and check that the change is there.
You can also apply a single change to both providers without a sync: when you add or edit a record, select both DNSimple and Route 53.
Bring in changes made at Route 53
Make changes in DNSimple when you can, so DNSimple stays your source of truth. If someone changes the zone in the Route 53 console, update DNSimple’s view of it first.
To pick up changes made in Route 53
- In the Record Editor, click , then select , as in Import Integrated Zone Records. DNSimple shows “Your zone records have been refreshed.”
- Review the Route 53 records in the Record Editor.
- To copy them into the DNSimple zone, sync from Route 53 to DNSimple.
Next steps
- Create a zone at DNSimple first, then add it to Route 53 from the DNS Zone Providers card.
- Connect another AWS account with its own nickname.
- See which record types Route 53 supports in Integrated DNS Provider Amazon Route 53.
- Serve your DNSimple zones from your own network with the CoreDNS tutorial.
Have more questions?
If you have additional questions or need any assistance with your Integrated DNS Providers, contact support, and we will be happy to help. You can also read more about DNSimple integrations.