Enable DNSSEC for a new zone

You use Control Center to enable DNSSEC. The steps you need to complete depend on the DNSSEC option you're using.

If you presently sign your zones and would like to use “sign and serve,” continuous signing is not supported. Before you configure the zone on Control Center, you must:

  • Remove the existing DS record
  • Wait out the TTL for the DS record

Continue with the instructions for the type of DNSSEC you're configuring: