Cloudflare Docs
Edit this page
Give us feedback
Set theme to dark (⇧+D)

Multi-signer DNSSEC

Multi-signer DNSSEC consists of two models that allow different authoritative DNS providers to serve the same zone and have DNSSEC enabled at the same time.

This means better compatibility with DNS features that require live-signing of DNS records (at query time), and also allows you to migrate zones to Cloudflare without having to disable DNSSEC.

You can set up multi-signer DNSSEC using either one of the models described in RFC 8901.

​​ Other resources