Cloudflare DNS

Fast, Secure, and Resilient DNS

DNS is a mission-critical component for any online business. Yet this component is often overlooked and forgotten, until something breaks.

Cloudflare DNS is an enterprise-grade authoritative DNS service that offers the fastest response time, unparalleled redundancy, and advanced security with built-in DDoS mitigation and DNSSEC.

The Cloudflare Difference

Always Available

Our global Anycast network allows DNS resolution at the network edge in each of our data centers across 200+ cities, resulting in unparalleled redundancy and 100% uptime.

Integrated Security

Cloudflare offers built-in DDoS protection and one-click DNSSEC to ensure your applications are always safeguarded from DNS attacks.

Superior Performance

Our authoritative DNS is the fastest in the world, offering DNS lookup speed of 11ms on average and worldwide DNS propagation in less than 5 seconds.

Unlimited and Unmetered DDoS Mitigation

Relieve your organization from the costs and stress of DDoS attacks against your DNS. With Cloudflare Managed DNS, you get unlimited and unmetered mitigation against DNS-based DDoS attacks. Our network capacity is 23x bigger than the largest DDoS attack ever recorded.


One-Click DNSSEC

Cloudflare Managed DNS comes with built-in DNSSEC to protect your users from on-path attacks that can spoof or hijack your DNS records. DNSSEC adds an additional layer of security at every level in the DNS lookup process. The best part — you can easily deploy DNSSEC at the click of a single button.


Easy Configuration Backed By 24/7/365 Technical Support

We make DNS easy. All your domains can be managed through our user-friendly interface or via an API, regardless of where your Internet properties are hosted. Terraform integration further automates DNS management and configuration.

You get 24/7 phone and email support, and dedicated solutions and success engineers — helping onboard and configure DNS records with zero downtime.


Global and Local Load Balancing

With Cloudflare Load Balancing, you can reduce latency and improve application availability by steering traffic away from unhealthy origins and dynamically distributing it to the most available and responsive server pools. Our load balancing solution leverages Cloudflare’s global Anycast network and supports all protocols from HTTP(S) to TCP and UDP.


Advanced Analytics

Get in-depth, real-time analytics into the health of your DNS traffic — all easily accessible from the Cloudflare Dashboard. Generate detailed raw and visual reports for your DNS queries - filtered by response codes, record types, geography, domains, etc. Raw log files are also available via API and can be integrated with SIEM/parsing tools.

Not Ready to Change Your Authoritative DNS?

Cloudflare DNS can easily integrate into a multi-vendor environment.

Maintain your existing DNS infrastructure while using Cloudflare DNS as a secondary DNS or in a hidden primary setup. We support TSIG authentication for zone transfers.

Key Features

Fully redundant architecture designed for 100% uptime

Unmetered and unlimited DDoS mitigation

Support for CNAME records at the apex level

DNS resolution at the edge

One-click DNSSEC support

Custom Nameservers

Global and local load balancing

Role-based access controls

Advanced analytics (up to 6 months)

24/7/365 dedicated technical support

Multi-factor authentication and SSO

Integration with SIEM/parsing tools

Trusted by approximately 25 million Internet properties