Skip to content
Cloud platformDNS hostingCapabilities verified

Cloudflare DNS

Migrate DNS zones to or from Cloudflare DNS: what's supported, what access you need, and what changes for each destination.

See how a domain's records would land at Cloudflare. Free and read-only.

Access we need

Credentials
Scoped API token
Permissions
Zone → DNS → Read for the preview, Zone → DNS → Edit to apply.

What Cloudflare supports

The same data the translation engine uses when it plans a migration.

Create zones through the API
List zones through the API
Turn on DNSSEC through the API
Apex CNAME (flattening)
Apex ALIAS record
Aliases to cloud resources
CDN proxy on records
Routing policies
Minimum TTL
60s

Record types

  • A
  • AAAA
  • CNAME
  • MX
  • TXT
  • NS
  • SRV
  • CAA
  • PTR
  • DS
  • HTTPS
  • SVCB
  • TLSA
  • SSHFP
  • NAPTR
  • LOC
  • CERT
  • URI

Cloudflare-only records

  • CF_REDIRECT
  • CF_TEMP_REDIRECT
  • CF_SINGLE_REDIRECT
  • CF_WORKER_ROUTE

These have no equivalent elsewhere and are flagged in every preview.

Good to know

  • Proxied (orange-cloud) records hide the origin IP. Moving them to another provider sends traffic straight to the origin.
  • Apex CNAMEs are flattened by Cloudflare. Other providers need an ALIAS record or static A/AAAA records instead.
  • Cloudflare Registrar only allows Cloudflare nameservers, so domains registered there must be transferred out first.