DNS Manager: Enterprise DNS records management for Akamai Cloud
Manage domains globally with high‑availability DNS included at no extra cost. Akamai DNS Manager gives you fast anycast resolution, automated zone imports, API-first control, and primary/secondary DNS with AXFR — all integrated with Akamai Cloud.
DNS Manager is built into Akamai Cloud networking so you can manage DNS where your apps, Kubernetes clusters, databases, NodeBalancers, and firewalls already live.
Seamless onboarding. Import zones as‑is from your current provider, then update nameservers — no rebuild required.
Global anycast delivery. Anycasts to 250+ locations to speed lookups and improve resilience.
Scale for enterprise use. Support for up to 12,000 DNS records per domain and all common record types (A, AAAA, CNAME, TXT, MX).
Automate everything. Full API access, record cloning, and management via Cloud Manager or API for CI/CD workflows.
Primary/secondary anywhere. Operate as primary or secondary with incoming/outgoing zone transfers and bi‑directional AXFR.
IPv6-ready. Create and resolve AAAA records end‑to‑end.
High availability at no extra cost. Global serving and failover features help keep records reachable.
For mission‑critical authoritative DNS with advanced availability and DDoS defenses, pair or upgrade to Akamai Edge DNS. It provides a 100% uptime SLA, thousands of nameservers across 4,100+ points of presence, multi‑anycast cloud isolation, DNSSEC, and built‑in DDoS controls like rate limiting and allowlisting. You can also add Global Traffic Management for policy‑based, geo‑aware load balancing, and DNS Posture Management for continuous visibility, drift detection, and guided remediation.
Akamai DNS Manager vs. standalone DNS providers
Cloud‑native integration. Manage DNS alongside Akamai compute, storage, Kubernetes, and networking — fewer consoles and faster deployments than using a separate, standalone DNS tool.
Faster time to value. Zone import, record cloning, and APIs minimize manual work when standing up new regions or services.
Built‑in redundancy. Anycast across 250+ locations and failover features deliver reliable resolution without add‑on fees.
Smooth interoperability. Use AXFR both ways to fit into existing DNS pipelines and tools.
Clear growth path. When you need higher assurance, move zones to Edge DNS for a 100% uptime SLA, multi‑anycast architecture, DNSSEC, and DDoS resilience — without rethinking your broader Akamai stack.
Akamai vs. Cloudflare: coverage, scale, and integration
Global anycast coverage. Both providers offer global anycast. Akamai offers two service tiers:
DNS Manager anycasts to 250+ locations.
Edge DNS operates thousands of authoritative nameservers across 4,100+ points of presence with multiple independent anycast clouds for added resiliency.
Zone management at scale. DNS Manager supports large zones (up to 12,000 records per domain) and automates onboarding via imports and AXFR. Edge DNS adds zone‑based billing and enterprise controls.
Cloud integration. DNS Manager is tightly integrated with Akamai Cloud compute, networking, and automation. Edge DNS integrates with Akamai Control Center, APIs, and Terraform to manage DNS as code and pairs with GTM for advanced traffic steering.
Note: Cloudflare also provides global anycast authoritative DNS; differentiators above highlight Akamai’s multi‑anycast architecture, 100% uptime SLA on Edge DNS, and platform integration.
How Akamai Edge DNS compares to other enterprise DNS/security solutions
Edge DNS is designed for nonstop availability and resilience, not just raw performance:
100% uptime SLA with massively distributed architecture and multiple anycast clouds.
DDoS resilience with scale, rate limiting, and resolver allowlisting.
Faster, reliable resolution with zone apex mapping and global distribution.
DNSSEC to prevent forgery, plus API/Control Center/Terraform automation.
Predictable costs with zone‑based pricing, and secondary DNS to augment existing primaries.
DNS posture management and protection against DNS‑based attacks
Posture and compliance. DNS Posture Management delivers a single view across multi‑cloud and on‑prem, continuously detecting misconfigurations, drift, and fake/look‑alike domains. It provides prioritized alerts, remediation guidance, CIS‑aligned checks, certificate posture monitoring, and optional managed service — all via side scanning (no agents).
Attack resilience. Edge DNS adds DDoS absorption at scale, rate limiting, and trusted‑resolver allowlisting. Together, Posture Management and Edge DNS help prevent outages from floods, hijacking, spoofing, and data exfiltration attempts.
Cloudflare offers DNS security features as well; Akamai’s approach combines posture management, multi‑anycast authoritative DNS with a 100% uptime SLA, and optional GTM for granular routing on the same platform.
Best‑fit DNS choices for enterprises
Akamai DNS Manager: Included with Akamai Cloud for globally available record serving, anycast to 250+ locations, automated imports, APIs, and AXFR — ideal for app teams deploying on Akamai Cloud.
Akamai Edge DNS: Enterprise authoritative DNS for nonstop availability, large‑scale DDoS resilience, DNSSEC, and automation. Add GTM for geo/policy‑aware routing and posture management for continuous hygiene.
Evaluation criteria to prioritize:
- Global anycast depth and architectural isolation (multi‑anycast clouds).
- Uptime SLA and DDoS protections.
- Primary/secondary support with bi‑directional AXFR.
- Programmatic automation (APIs, Terraform) and “DNS as code.”
- DNSSEC support and manageable TTLs.
- Posture management for misconfigurations, drift, certificate risks, and compliance.
- Predictable pricing (e.g., zone‑based billing for authoritative DNS).
- Integration with your cloud/edge platform and traffic steering.
Feature spotlight: automation, AXFR, and failover
Automated zone imports: Yes. Import zones from your current provider, then switch nameservers.
Bi‑directional AXFR: Yes. DNS Manager supports incoming and outgoing transfers and can act as primary or secondary.
Failover:
DNS Manager provides globally served records and failover to help maintain uptime.
For advanced health‑check routing, geographic policies, and multi‑region failover, combine Edge DNS with Global Traffic Management.
If you’re moving from a health‑check‑based approach (such as those used by major cloud DNS services), GTM policies can deliver equivalent or more granular traffic steering while Edge DNS maintains authoritative availability.
How to migrate DNS zones without downtime
Prepare
Export your current zone files and validate records.
Lower TTLs on critical records (e.g., to 60–300 seconds) 24–48 hours before cutover.
Import and validate
Import zones into DNS Manager or transfer via AXFR.
Use staging or a subdomain to test resolution paths and record parity.
Enable redundancy
Configure primary/secondary with bi‑directional AXFR. If using Edge DNS, set it as secondary first to shadow prod.
Cut over safely
If using DNSSEC, enable DNSSEC on the new provider and perform dual‑signing or rollover per best practices.
Update registrar nameservers to Akamai’s. Monitor resolution from multiple regions.
Stabilize
Confirm health, then raise TTLs to normal values.
Add DNS Posture Management to watch for drift and misconfigurations post‑migration.
What to look for in a cloud‑integrated DNS manager
Global anycast footprint and resilient architecture.
Primary/secondary operation with bi‑directional AXFR.
Robust APIs and Terraform for “DNS as code.”
Easy zone import and bulk record cloning.
DNSSEC, fine‑grained TTLs, and secondary DNS support.
Posture management for misconfigurations, drift, fake domains, and certificate hygiene.
Optional global traffic management for geo/policy‑aware routing.
Clear SLAs and predictable pricing.
Get started
Spin up DNS with your Akamai Cloud resources. Create an account to try DNS Manager.
Need authoritative DNS with a 100% uptime SLA, DDoS resilience, and GTM? Explore Edge DNS and Global Traffic Management.
Want continuous visibility and control? Start a DNS Posture Management trial.