Build your protection layer with confidence.
Learn how DNS Protector works from domain onboarding and DNS management to origin protection, SSL, traffic controls and Shield Mode.
Start here: protect your first domain
DNS Protector is designed around a simple flow: add your domain, review the DNS records, point the domain to the assigned nameservers, define your origin and enable the security controls that match your traffic.
- Add a domain to your account.
- Copy the DNS Protector nameservers:
ns1.ddos-guard.xyzandns2.ddos-guard.xyz. - Update the nameservers at your registrar.
- Configure A/AAAA/CNAME and other required records.
- Set the origin server and verify connectivity.
- Enable SSL and your desired security profile.
DNS management
Use centralized DNS controls to manage the records your website and services need.
Common records
- A / AAAA: route hostnames to IPv4 or IPv6 addresses.
- CNAME: point a hostname to another hostname.
- MX: define mail delivery destinations.
- TXT: publish verification and policy information.
- CAA: control which certificate authorities may issue certificates for your domain.
Origin protection
Your origin server is the infrastructure that ultimately serves the application. Configure firewall rules so only the traffic path you intend to support can reach your origin.
Shield / Under Attack mode
When a domain experiences an unusual surge of automated or suspicious requests, Shield Mode can add a visitor verification layer.
Automatic SSL
Protected domains can use automated HTTPS certificate workflows. Always verify that DNS and edge routing are correctly configured before expecting certificate issuance.
Recommended production checklist
- Confirm the correct domain and DNS records.
- Verify the origin responds correctly before enabling strict filtering.
- Keep origin firewall rules restrictive.
- Enable HTTPS and redirect HTTP where appropriate.
- Start with sensible rate limits and adjust from real traffic.
- Monitor security events after every major application change.