Anycast authoritative DNS
Serve authoritative answers from the distributed Hyx DNS fabric instead of a single location.
Product plane / Hyx DNS
Hyx DNS
operationalHyx DNS serves your zones on a distributed, dual-stack Anycast fabric. Scan or import the current zone, move nameservers only after review, sign with DNSSEC, and choose exactly which web records use the Hyx proxy.
Core capabilities
Hyx reads the live authoritative zone or a standard BIND export, lets you review what will move, and verifies delegation after the nameserver change. Day-to-day record, proxy, export, and signing controls stay in the same dashboard.
DNS-01 / example.com / authoritative zone
delegated / signed
Managed record types
09
Zone integrity
DNSSEC / DS ready
Scan existing DNS or import a BIND zone, review records, then delegate without rebuilding the zone by hand.
Ingress
Anycast v4 + v6
Migration
Scan / BIND
Signing
DNSSEC
Serve authoritative answers from the distributed Hyx DNS fabric instead of a single location.
Scan a domain's current authoritative DNS, review every discovered record, and move nameservers last.
Bring an exported zone file into Hyx or download a Hyx zone for backup and portability.
Create and edit the record types modern sites, mail, verification, and service discovery depend on.
Keep a record on authoritative DNS alone or route eligible web traffic through Hyx delivery and protection.
Sign a zone in Hyx and publish the supplied DS details at the registrar to protect the chain of trust.
How it works
Resolvers reach the Hyx DNS fabric through Anycast while zone changes travel through a versioned stream to connected DNS edges. DNSSEC protects the chain of trust, and API-side safeguards keep critical glue records routable.
DNS-02 / query and change paths
authoritative / distributed
Query / resolver to signed answer
Recursive resolver
Anycast ingress
Nearest Hyx DNS edge
Authoritative answer
Change / control plane to serving fabric
Dashboard
Versioned journal
Connected DNS edges
Query target
Nearest edge
Change order
Versioned
Delegation
Verified
Scan the domain's current authoritative DNS or load a BIND-format zone file.
Check every record, choose what to import, and correct anything before delegation changes.
Move nameservers at the registrar last; Hyx checks the live delegation automatically.
Manage records, proxy eligibility, zone exports, and DNSSEC from one control plane.
Operational detail
A concise list of what this part of Hyx provides. Roadmap items are labelled explicitly.
Anycast authoritative DNS
Guided DNS migration
BIND zone import and export
Complete record management
DNS-only or Hyx-proxied records
DNSSEC signing
Automatic delegation checks
Versioned network updates
Nameserver glue safeguards
Next system / Performance
See how the Hyx edge accelerates cacheable content, optimizes delivery, and keeps work away from your server.