What is 220.127.116.11?
18.104.22.168 is Cloudflare’s fast and secure DNS resolver. When you request to visit an application like
cloudflare.com, your computer needs to know which server to connect you to so that it can load the application. Computers don’t know how to do this name to address translation, so they ask a specialized server to do it for them.
This specialized server is called a DNS recursive resolver. The resolver’s job is to find the address for a given name, like
cloudflare.com, and return it to the computer that asked for it.
Computers are configured to talk to specific DNS resolvers, identified by IP address. Usually the configuration is managed by your ISP (like Comcast or AT&T) if you’re on your home or wireless Internet, and by your network administrator if you’re connected to the office Internet. You can also change the configured DNS resolver your computer talks to yourself.
How can I check if my computer / smartphone / tablet is connected to 22.214.171.124?
What do DNS resolvers do?
DNS resolvers are like address books for the Internet. They translate the name of places to addresses so that your browser can figure out how to get there. DNS resolvers do this by working backwards from the top until they find the website your are looking for.
Every resolver knows how to find the invisible
. at the end of domain names (for example,
cloudflare.com.). There are all over the world that host the
. file, and resolvers are of those servers. Cloudflare itself hosts on all of its servers around the world through a .
The resolver asks one of the root servers where to find the next link in the chain — the top-level domain (abbreviated to TLD) or domain ending. An example of a TLD is
.org. Luckily, the root servers store the locations of all the TLD servers, so they can return which IP address the DNS resolver should go ask next.
The resolver then asks the TLD’s servers where it can find the domain it is looking for. For example, a resolver might ask
.com where to find
cloudflare.com. TLDs host a file containing the location of every domain using the TLD.
Once the resolver has the final IP address, it returns the answer to the computer that asked.
This whole system is called the Domain Name System (DNS). This system includes the servers that host the information (called authoritative DNS) and the servers that seek the information (the DNS resolvers).
Does 126.96.36.199 support ANY?
How does 188.8.131.52 work with DNSSEC?
184.108.40.206 is a DNSSEC validating resolver. 220.127.116.11 sends the
DNSSEC OK) bit on every query to convey to the authoritative server that it wishes to receive signed answers if available. 18.104.22.168 supports the signature algorithms specified in .
Does 22.214.171.124 send EDNS client subnet header?
126.96.36.199 is a privacy centric resolver so it does not send any client IP information and does not send the EDNS Client Subnet Header to authoritative servers. The exception is the single Akamai debug domain
whoami.ds.akahelp.net to aid in cross-provider debugging. However, Cloudflare does not send ECS to any of Akamai’s production domains, such as
akamaihd.net or similar.
Does 188.8.131.52 support IPv6?
184.108.40.206 has full IPv6 support.
What is Purge Cache?
What is query name minimization?
Cloudflare minimizes privacy leakage by only sending minimal query name to authoritative DNS servers. For example, if a client is looking for foo.bar.example.com, the only part of the query 220.127.116.11 discloses to .com is that we want to know who’s responsible for example.com and the zone internals stay hidden.