Anycast DNS

Run authoritative Anycast DNS on 210+ servers with DDoS protection, IPv6, DNSSEC and a 1-second minimum TTL from Aptranet Cloud DNS.

210+Anycast DNS servers
210+Points of presence worldwide
1 secondMinimum TTL
30 msAverage network latency

Anycast DNS

Authoritative DNS should not have a home region.

Unicast DNS is a single path. If that path is congested or attacked, every lookup for the zone slows or fails — before the application even sees a request.

Cloud DNS advertises the same authoritative service from 210+ Anycast servers. Resolvers use a nearby available path, including during DDoS events.

Why teams use Aptranet

How it works with Aptranet

Cloud DNS combines Anycast resolution with traffic steering and health checks. Growth and Business support TTLs as low as one second.

210+ Anycast servers

Queries are answered from distributed infrastructure instead of one nameserver pair.

DDoS-protected authority

The DNS layer is designed to stay reachable under volumetric attack.

Fast change propagation

A one-second minimum TTL and rapid configuration distribution support production change.

How to set it up

Validate your setup before production changes.

Configure your Cloud DNS zone and verify its records and routing policies. Test answers from the authoritative nameservers before changing your domain delegation.

  1. 1
    Create the zone

    Import existing records into Cloud DNS.

  2. 2
    Delegate the nameservers

    Point the parent at Aptranet Anycast NS records, or vanity nameservers.

  3. 3
    Lower TTLs when you need to move

    Use low TTLs ahead of a cutover, then raise them if you want.

  4. 4
    Add steering once authority is stable

    GeoDNS, weights and health checks sit on the same Anycast service.

Outcomes

What changes once the hostname is on Aptranet.

  • The zone is served from 210+ locations
  • There is no single unicast nameserver target
  • DDoS is absorbed at the DNS layer
  • Steering features share the same footprint

Frequently asked questions

No. Cloud DNS is authoritative. It answers for zones you host, not general public recursion.

A zone has one set of nameservers. Delegate subzones if you must split authority.

No. Anycast is how the authority is reached. Records and policies still decide the answer.

Yes. Cloud DNS supports IPv4 and IPv6 records and transport.

Put Anycast DNS on the Aptranet edge.

Get started in the Management Console, or talk through origin, DNS and cutover with Aptranet.