ResourceRecordSet
Information about the resource record set to create or delete.
Contents
- Name
-
For
ChangeResourceRecordSetsrequests, the name of the record that you want to create, update, or delete. ForListResourceRecordSetsresponses, the name of a record in the specified hosted zone.ChangeResourceRecordSets Only
Enter a fully qualified domain name, for example,
www.example.com. You can optionally include a trailing dot. If you omit the trailing dot, Amazon Route 53 assumes that the domain name that you specify is fully qualified. This means that Route 53 treatswww.example.com(without a trailing dot) andwww.example.com.(with a trailing dot) as identical.For information about how to specify characters other than
a-z,0-9, and-(hyphen) and how to specify internationalized domain names, see DNS Domain Name Format in the Amazon Route 53 Developer Guide.You can use the asterisk (*) wildcard to replace the leftmost label in a domain name, for example,
*.example.com. Note the following:-
The * must replace the entire label. For example, you can't specify
*prod.example.comorprod*.example.com. -
The * can't replace any of the middle labels, for example, marketing.*.example.com.
-
If you include * in any position other than the leftmost label in a domain name, DNS treats it as an * character (ASCII 42), not as a wildcard.
Important
You can't use the * wildcard for resource records sets that have a type of NS.
Type: String
Length Constraints: Maximum length of 1024.
Required: Yes
-
- Type
-
The DNS record type. For information about different record types and how data is encoded for them, see Supported DNS Resource Record Types in the Amazon Route 53 Developer Guide.
Valid values for basic resource record sets:
A|AAAA|CAA|CNAME|DS|MX|NAPTR|NS|PTR|SOA|SPF|SRV|TXT|TLSA|SSHFP|SVCB|HTTPSValues for weighted, latency, geolocation, and failover resource record sets:
A|AAAA|CAA|CNAME|MX|NAPTR|PTR|SPF|SRV|TXT|TLSA|SSHFP|SVCB|HTTPS. When creating a group of weighted, latency, geolocation, or failover resource record sets, specify the same value for all of the resource record sets in the group.Valid values for multivalue answer resource record sets:
A|AAAA|MX|NAPTR|PTR|SPF|SRV|TXT|CAA|TLSA|SSHFP|SVCB|HTTPSNote
SPF records were formerly used to verify the identity of the sender of email messages. However, we no longer recommend that you create resource record sets for which the value of
TypeisSPF. RFC 7208, Sender Policy Framework (SPF) for Authorizing Use of Domains in Email, Version 1, has been updated to say, "...[I]ts existence and mechanism defined in [RFC4408] have led to some interoperability issues. Accordingly, its use is no longer appropriate for SPF version 1; implementations are not to use it." In RFC 7208, see section 14.1, The SPF DNS Record Type. Values for alias resource record sets:
-
Amazon API Gateway custom regional APIs and edge-optimized APIs:
A -
CloudFront distributions:
AIf IPv6 is enabled for the distribution, create two resource record sets to route traffic to your distribution, one with a value of
Aand one with a value ofAAAA. -
Amazon API Gateway environment that has a regionalized subdomain:
A -
ELB load balancers:
A|AAAA -
Amazon S3 buckets:
A -
Amazon Virtual Private Cloud interface VPC endpoints
A -
Another resource record set in this hosted zone: Specify the type of the resource record set that you're creating the alias for. All values are supported except
NSandSOA.Note
If you're creating an alias record that has the same name as the hosted zone (known as the zone apex), you can't route traffic to a record for which the value of
TypeisCNAME. This is because the alias record must have the same type as the record you're routing traffic to, and creating a CNAME record for the zone apex isn't supported even for an alias record.
Type: String
Valid Values:
SOA | A | TXT | NS | CNAME | MX | NAPTR | PTR | SRV | SPF | AAAA | CAA | DS | TLSA | SSHFP | SVCB | HTTPSRequired: Yes
-
- AliasTarget
-
Alias resource record sets only: Information about the AWS resource, such as a CloudFront distribution or an Amazon S3 bucket, that you want to route traffic to.
If you're creating resource records sets for a private hosted zone, note the following:
-
You can't create an alias resource record set in a private hosted zone to route traffic to a CloudFront distribution.
-
For information about creating failover resource record sets in a private hosted zone, see Configuring Failover in a Private Hosted Zone in the Amazon Route 53 Developer Guide.
Type: AliasTarget object
Required: No
-
- CidrRoutingConfig
-
The object that is specified in resource record set object when you are linking a resource record set to a CIDR location.
A
LocationNamewith an asterisk “*” can be used to create a default CIDR record.CollectionIdis still required for default record.Type: CidrRoutingConfig object
Required: No
- Failover
-
Failover resource record sets only: To configure failover, you add the
Failoverelement to two resource record sets. For one resource record set, you specifyPRIMARYas the value forFailover; for the other resource record set, you specifySECONDARY. In addition, you include theHealthCheckIdelement and specify the health check that you want Amazon Route 53 to perform for each resource record set.Except where noted, the following failover behaviors assume that you have included the
HealthCheckIdelement in both resource record sets:-
When the primary resource record set is healthy, Route 53 responds to DNS queries with the applicable value from the primary resource record set regardless of the health of the secondary resource record set.
-
When the primary resource record set is unhealthy and the secondary resource record set is healthy, Route 53 responds to DNS queries with the applicable value from the secondary resource record set.
-
When the secondary resource record set is unhealthy, Route 53 responds to DNS queries with the applicable value from the primary resource record set regardless of the health of the primary resource record set.
-
If you omit the
HealthCheckIdelement for the secondary resource record set, and if the primary resource record set is unhealthy, Route 53 always responds to DNS queries with the applicable value from the secondary resource record set. This is true regardless of the health of the associated endpoint.
You can't create non-failover resource record sets that have the same values for the
NameandTypeelements as failover resource record sets.For failover alias resource record sets, you must also include the
EvaluateTargetHealthelement and set the value to true.For more information about configuring failover for Route 53, see the following topics in the Amazon Route 53 Developer Guide:
Type: String
Valid Values:
PRIMARY | SECONDARYRequired: No
-
- GeoLocation
-
Geolocation resource record sets only: A complex type that lets you control how Amazon Route 53 responds to DNS queries based on the geographic origin of the query. For example, if you want all queries from Africa to be routed to a web server with an IP address of
192.0.2.111, create a resource record set with aTypeofAand aContinentCodeofAF.If you create separate resource record sets for overlapping geographic regions (for example, one resource record set for a continent and one for a country on the same continent), priority goes to the smallest geographic region. This allows you to route most queries for a continent to one resource and to route queries for a country on that continent to a different resource.
You can't create two geolocation resource record sets that specify the same geographic location.
The value
*in theCountryCodeelement matches all geographic locations that aren't specified in other geolocation resource record sets that have the same values for theNameandTypeelements.Important
Geolocation works by mapping IP addresses to locations. However, some IP addresses aren't mapped to geographic locations, so even if you create geolocation resource record sets that cover all seven continents, Route 53 will receive some DNS queries from locations that it can't identify. We recommend that you create a resource record set for which the value of
CountryCodeis*. Two groups of queries are routed to the resource that you specify in this record: queries that come from locations for which you haven't created geolocation resource record sets and queries from IP addresses that aren't mapped to a location. If you don't create a*resource record set, Route 53 returns a "no answer" response for queries from those locations.You can't create non-geolocation resource record sets that have the same values for the
NameandTypeelements as geolocation resource record sets.Type: GeoLocation object
Required: No
- GeoProximityLocation
-
GeoproximityLocation resource record sets only: A complex type that lets you control how Route 53 responds to DNS queries based on the geographic origin of the query and your resources.
Type: GeoProximityLocation object
Required: No
- HealthCheckId
-
If you want Amazon Route 53 to return this resource record set in response to a DNS query only when the status of a health check is healthy, include the
HealthCheckIdelement and specify the ID of the applicable health check.Route 53 determines whether a resource record set is healthy based on one of the following:
-
By periodically sending a request to the endpoint that is specified in the health check
-
By aggregating the status of a specified group of health checks (calculated health checks)
-
By determining the current state of a CloudWatch alarm (CloudWatch metric health checks)
Important
Route 53 doesn't check the health of the endpoint that is specified in the resource record set, for example, the endpoint specified by the IP address in the
Valueelement. When you add aHealthCheckIdelement to a resource record set, Route 53 checks the health of the endpoint that you specified in the health check.For more information, see the following topics in the Amazon Route 53 Developer Guide:
When to Specify HealthCheckId
Specifying a value for
HealthCheckIdis useful only when Route 53 is choosing between two or more resource record sets to respond to a DNS query, and you want Route 53 to base the choice in part on the status of a health check. Configuring health checks makes sense only in the following configurations:-
Non-alias resource record sets: You're checking the health of a group of non-alias resource record sets that have the same routing policy, name, and type (such as multiple weighted records named www.example.com with a type of A) and you specify health check IDs for all the resource record sets.
If the health check status for a resource record set is healthy, Route 53 includes the record among the records that it responds to DNS queries with.
If the health check status for a resource record set is unhealthy, Route 53 stops responding to DNS queries using the value for that resource record set.
If the health check status for all resource record sets in the group is unhealthy, Route 53 considers all resource record sets in the group healthy and responds to DNS queries accordingly.
-
Alias resource record sets: You specify the following settings:
-
You set
EvaluateTargetHealthto true for an alias resource record set in a group of resource record sets that have the same routing policy, name, and type (such as multiple weighted records named www.example.com with a type of A). -
You configure the alias resource record set to route traffic to a non-alias resource record set in the same hosted zone.
-
You specify a health check ID for the non-alias resource record set.
If the health check status is healthy, Route 53 considers the alias resource record set to be healthy and includes the alias record among the records that it responds to DNS queries with.
If the health check status is unhealthy, Route 53 stops responding to DNS queries using the alias resource record set.
Note
The alias resource record set can also route traffic to a group of non-alias resource record sets that have the same routing policy, name, and type. In that configuration, associate health checks with all of the resource record sets in the group of non-alias resource record sets.
-
Geolocation Routing
For geolocation resource record sets, if an endpoint is unhealthy, Route 53 looks for a resource record set for the larger, associated geographic region. For example, suppose you have resource record sets for a state in the United States, for the entire United States, for North America, and a resource record set that has
*forCountryCodeis*, which applies to all locations. If the endpoint for the state resource record set is unhealthy, Route 53 checks for healthy resource record sets in the following order until it finds a resource record set for which the endpoint is healthy:-
The United States
-
North America
-
The default resource record set
Specifying the Health Check Endpoint by Domain Name
If your health checks specify the endpoint only by domain name, we recommend that you create a separate health check for each endpoint. For example, create a health check for each
HTTPserver that is serving content forwww.example.com. For the value of -