Orkestia
Blog
DNS Providers

DNS Provider Connections

Connect DNS providers to manage DNS records, configure custom domains, and automate DNS operations.

Connect your DNS providers to Orkestia to manage DNS records, configure custom domains, and automate DNS operations.

What are DNS Provider Connections?

DNS Provider Connections allow Orkestia to manage DNS records in your DNS provider accounts. Instead of manually configuring DNS records, Orkestia can automatically create, update, and manage DNS records for your applications and custom domains.

Benefits

Automated DNS Management

Automatically create and update DNS records for your domains.

Multi-Provider Support

Use Cloudflare, Route 53, Google DNS, Vercel, or other providers.

Custom Domain Support

Easily configure custom domains for your applications.

Secure Credential Storage

Credentials are encrypted and stored securely.

Zone Synchronization

Automatically sync and cache DNS zones for faster access.

Unified Interface

Manage DNS across different providers with a single interface.

Supported Providers

ProviderAuthenticationBest For
CloudflareScoped API TokenCDN, DDoS protection, proxy features
AWS Route 53AWS Connection (IAM Role)AWS infrastructure, existing AWS accounts
Google Cloud DNSProject ID + Service Account KeyGoogle Cloud Platform users
Vercel DNSAPI TokenVercel deployments
DNS providers are part of Orkestia's wider connection catalog (AWS · Cloud connections) — link a credential once and every workflow that needs it reuses it. For the per-provider workflow catalog and schemas, see the workflow reference.

Connection Scopes

Organization-wide (Default)

DNS connections are available to all sites in your organization. This is the recommended approach when you want to use the same DNS provider for all deployments.

Site-specific

Coming Soon

Site-specific connections will allow you to connect different DNS providers to individual sites.

How It Works

Connection Statuses

StatusDescription
ActiveConnection is valid and ready to use
PendingConnection created, awaiting validation
InvalidValidation failed - check credentials or permissions
SuspendedToo many validation failures
ErrorConnection error occurred
DisconnectedConnection was disabled

Provider Capabilities

Cloudflare

  • Proxy/CDN support
  • Apex domain support
  • DDoS protection
  • Built-in SSL

AWS Route 53

  • Apex domain support
  • Integration with AWS services
  • ACM certificate support
  • Zone configuration (all or specific zones)

Google Cloud DNS

  • Apex domain support
  • Integration with GCP services
  • Service account authentication

Vercel DNS

  • Simple API token authentication
  • Integration with Vercel deployments

Required Permissions

Cloudflare

  • Scoped API Token: Zone:Read, DNS:Edit permissions (the Cloudflare Edit zone DNS template). Orkestia uses a scoped API token — never a global API key.

AWS Route 53

Requires existing AWS connection with:

  • route53:ChangeResourceRecordSets
  • route53:GetHostedZone
  • route53:ListHostedZones
  • route53:ListResourceRecordSets

Google Cloud DNS

  • Service account with dns.admin or dns.managedZones.* permissions

Vercel DNS

  • API token with DNS management permissions

Getting Started

Prerequisites and first connection.

Setup Methods

Provider-specific setup instructions.

Managing Connections

View, validate, update, and delete connections.

Zones and Records

Managing DNS zones and records.

Troubleshooting

Common issues and solutions.