Secondary DNS Field Reference

Table of Contents


Secondary DNS at DNSimple has two directions, and each has its own form and its own limits. This page lists every field in both, with the values DNSimple accepts.

For what secondary DNS is, see What is Secondary DNS?. For setting it up, see Add a secondary DNS server to DNSimple or Add DNSimple as a secondary DNS server.

DNSimple as primary

Configured from the card on the domain DNS page. DNSimple holds the zone and your other provider transfers it.

Configuration fields

Field Required Limit Notes
Zone Name Yes - Only asked when you start from the account rather than from a domain
Name servers Yes 6 entries One per line. Each must be a valid hostname that already resolves. Can be lower for domains registered with DNSimple
IPs to whitelist Yes 35 entries One per line. IPv4 or IPv6

Name servers

These are the name servers your secondary provider will answer from. DNSimple publishes them as NS records in the zone alongside the DNSimple name servers. If the domain is registered with DNSimple, DNSimple also adds them to the domain delegation at the registry.

  • Enter one per line.
  • Each entry must be a valid hostname, at most 253 characters, with each label between 1 and 63 characters.
  • Each entry must already resolve. DNSimple looks up every name server when you save, and rejects any that is not delegated or has no A record.
  • Up to 6 entries.
  • For a domain registered with DNSimple, the limit can be lower. The registry sets a maximum number of name servers for each TLD, and the DNSimple name servers count toward it.
  • The whole list is stored in a single 255 character field, so 6 long hostnames may not fit even though the count is within the limit.
  • Duplicate entries are removed automatically.
  • DNSimple name servers are rejected, and so is any name server already listed as an NS record in the zone. DNSimple is already serving the zone from those name servers.

IPs to whitelist

These are the addresses your secondary provider transfers from.

  • Enter one per line.
  • IPv4 and IPv6 are both accepted.
  • CIDR prefix notation, such as 198.51.100.0/24, is accepted as a single entry and permits transfers from the whole range. DNSimple sends change notifications to individual addresses, not to ranges, so list the addresses your provider receives notifications on individually.
  • Up to 35 entries.
  • Duplicate entries are removed automatically.
  • Required whenever DNSimple is acting as primary. Zone transfers are not open to everyone, so a configuration with no addresses is rejected.

Note

These addresses do two jobs. They permit zone transfers, and they are also the addresses DNSimple notifies when the zone changes. A provider that transfers from one set of addresses but receives notifications on another needs both sets listed here. See Troubleshoot Secondary DNS Zone Transfers.

Provider choices

The first step of the form is choosing a provider. The built-in provider options, such as DNSMadeEasy and EasyDNS, prefill that provider’s transfer addresses, and in some cases its name servers, so you do not have to look them up. Because those values come from the provider, use the prefilled settings rather than copying addresses from elsewhere.

Two further options are not providers:

  • Custom - enter name servers and addresses by hand. Use this for any provider without a built-in option.
  • Choose from Name Server Set - use a name server set already defined in your account.

Transfer endpoint

Your secondary provider transfers the zone from DNSimple at this endpoint. Some providers ask for a hostname and others for an address.

Hostname IP addresses
axfr.dnsimple.com 18.189.127.127, 2600:1f16:ae2:e902:6881:5f5e:c245:887e

DNSimple as secondary

Another provider holds the zone and DNSimple transfers it. Create the secondary zone from > > . Primary servers are added and linked from inside the secondary zone.

This direction is available on plans that include Secondary DNS (DNSimple as secondary). See the plan comparison in DNSimple Plans.

Secondary zone fields

Field Required Notes
Zone name Yes The zone DNSimple will transfer, such as example.com

A new secondary zone has no records until it is linked to at least one primary server and a transfer completes.

Primary server fields

A primary server is defined once for the account and can be linked to more than one secondary zone.

Field Required Limit Notes
Name Yes 254 characters A label for your own reference, such as the provider name
IPv4 or IPv6 address Yes - Must be a public address
Port number Yes 1 to 65535 Defaults to 53

The address must be publicly routable. Addresses in private ranges are rejected, because DNSimple transfers from the public internet and cannot reach them. A primary on a private network needs a publicly reachable address before DNSimple can use it.

The port defaults to 53. Change it only if your primary offers zone transfers on another port.

Have more questions?

If you have any questions about secondary DNS, contact support, and we will be happy to help.