Documentation Index
Fetch the complete documentation index at: https://docs.xloud.tech/llms.txt
Use this file to discover all available pages before exploring further.
Overview
Zone transfers replicate zone data from the Xloud DNS service to secondary nameservers or other projects. Administrators control which destinations are permitted to perform zone transfers. Transfer requests use a one-time key mechanism — the requesting admin generates the request and shares the key with the recipient through a secure channel.Zone Transfer Workflow
Create a Transfer Request
Security Best Practices
| Practice | Description |
|---|---|
| Target-specific requests | Always specify --target-project-id — never create open transfers |
| Short expiration | Set 24-hour expiration windows on all transfer requests |
| Secure key delivery | Deliver transfer keys via encrypted channel only |
| Regular audit | Review accepted transfers monthly and revoke unnecessary ones |
Audit all accepted zone transfers (admin)
Next Steps
Pool Management
Manage nameserver pools that receive transferred zone data
Security
Full DNS security hardening guidelines
Backend Configuration
Configure
also_notifies for AXFR consumer nameserversAdmin Troubleshooting
Diagnose zone transfer failures and key errors