Cloud platformDNS hostingCapabilities verified
Cloudflare DNS
Migrate DNS zones to or from Cloudflare DNS: what's supported, what access you need, and what changes for each destination.
See how a domain's records would land at Cloudflare. Free and read-only.
Access we need
- Credentials
- Scoped API token
- Permissions
- Zone → DNS → Read for the preview, Zone → DNS → Edit to apply.
What Cloudflare supports
The same data the translation engine uses when it plans a migration.
- Create zones through the API
- List zones through the API
- Turn on DNSSEC through the API
- Apex CNAME (flattening)
- Apex ALIAS record
- Aliases to cloud resources
- CDN proxy on records
- Routing policies
- Minimum TTL
- 60s
Record types
- A
- AAAA
- CNAME
- MX
- TXT
- NS
- SRV
- CAA
- PTR
- DS
- HTTPS
- SVCB
- TLSA
- SSHFP
- NAPTR
- LOC
- CERT
- URI
Cloudflare-only records
- CF_REDIRECT
- CF_TEMP_REDIRECT
- CF_SINGLE_REDIRECT
- CF_WORKER_ROUTE
These have no equivalent elsewhere and are flagged in every preview.
Good to know
- Proxied (orange-cloud) records hide the origin IP. Moving them to another provider sends traffic straight to the origin.
- Apex CNAMEs are flattened by Cloudflare. Other providers need an ALIAS record or static A/AAAA records instead.
- Cloudflare Registrar only allows Cloudflare nameservers, so domains registered there must be transferred out first.