It seems like your browser didn't download the required fonts. Please revise your security settings and try again.
Barracuda WAF-as-a-Service

DNS Zones

  • Last updated on

By default, one (1) DNS zone can be created to control the DNS components of the top-level domain and/or sub-domains for your application instead of doing so through your domain provider. In addition to this convenience, WAF-as-a-Service can protect against DNS attacks, including DNS reflection and other DDoS attacks.

To create a DNS zone:

  1. Log-in to https://waas.barracudanetworks.com

  2. Navigate to the DNS Zones tab.

  3. Click Add DNS Zone.

  4. Enter the hostname or sub-domain for your application.

  5. Select one of the following and click Add:

    • Transfer DNS records from an existing zone to Barracuda WAF-as-a-Service – Select this if a DNS zone already exists outside of WAF-as-a-Service.

    • Start with an empty zone and add records manually

  6. Log into your domain provider and change the nameserver (NS) records to those provided by WAF-as-a-Service to activate the zone.

DNS Records

Once the new zone has been established, the DNS records show in the main panel. Initially this includes NS and SOA records. More records can be added from the right panel, how many will depend on which license plan(s) you have. In addition to the standard DNS record types, a WAF-as-a-Service application pointer can also be added. This operates as an alias allowing traffic going to your Apex Domain (e.g. example.com) to reach the Fully Qualified Domain Name (FQDN) (e.g. www.example.com) for your application.

If an application is hosted on WAF-as-a-Service whose DNS is managed by WAF-as-a-Service itself, then the user should not use the same domain name in any other application hosted on WAF-as-a-Service. Additionally, do not import snapshots containing the same domain into other applications.

Creating another application with the same domain will cause the DNS to point to the new application, directing all traffic to it.