A Records don't resolve globally, I am using Lightsail DNS.

0

I have recently transferred my domain from Google Domains to Hostinger. In Hostinger, I am using custom nameservers that Lightsail DNS zone gave me.

In the Lightsail DNS zone, I have properly pointed A records to Static IP, which is connected to my Lightsail instance. My website is working in my region, but it does not open in other regions. When I tried checking DNS using dnschecker.org, my domain did not resolve to the IP in all regions!

DNS Checker s.

It's already been 1 week and it is still not resolved globally. The website is thevertechs.com

Sarim
asked 3 months ago110 views
3 Answers
0

DNSchecker shows that A records are not propagated in all regions. I live in India and my instance's region is Mumbai. However, one of my friends lives in Europe so when he visited the site, it did not work.

This issue started only after I transferred my domain.

Here's the screenshot of DNSchecker Image

Sarim
answered 3 months ago
  • You seem to have DNSSEC enabled for your domain at your registrar and Lightsail DNS zones do NOT support DNSSEC. Hence I believe the DNSChecker is getting those differing results based on whether the respective check points validate for DNSSEC or not.

    You have a couple of options : you can either disable DNSSEC at the Domain Registrar and continue to use Lightsail DNS zone.

    Or if you do NOT wish to disable DNSSEC, you can use Amazon Route53 for your DNS management (known as hosted zone in Route53) which supports DNSSEC signing.

    Reference doc : https://docs.aws.amazon.com/Route53/latest/DeveloperGuide/domain-configure-dnssec.html

    For using Route53, you would create a hosted zone, copy over any A, MX, DKIM, etc records from Lightsail DNS zone to it, update the name-servers at the registrar with those from the hosted-zone and enable DNSSEC signing for it. Once you have that working, you can delete the not-in-use Lightsail DNS zone.

0

Hi,

I can't access the image you've attached to see what DNSChecker is showing. But if the name servers (NS) returned when you run command dig NS <domain-name> match the Lightsail DNS zone records, then the NameServers have been updated successfully at your domain registrar (Hostinger) to the Lightsail DNS zone provided ones.

When you say "website does not open in other regions" : how did you verify this ? Because that may be the symptom of some other issue and not DNS.

Thanks.

profile pictureAWS
EXPERT
AWS-SUM
answered 3 months ago
profile picture
EXPERT
reviewed a month ago
0

Okay, thank you so much. It worked.

Sarim
answered 3 months ago

You are not logged in. Log in to post an answer.

A good answer clearly answers the question and provides constructive feedback and encourages professional growth in the question asker.

Guidelines for Answering Questions