Skip to content


Another great feature of HNSDNS is that it provides a Handshake nameserver service with full DNSSEC and DANE support (the first of the world).

Note: this is only for people who already have Handshake domains, or are interested in obtaining one. If you just want to browse Handshake domains, please ignore this section.

What are nameservers?

When you buy or obtain a domain name, it doesn't connect to your server by itself. It needs to be pointed to a "registry", which contains the DNS records that connect your domain to your server (and lots of other things). Nameservers say where that "registry" is, and its owner hosts the DNS records.

Usually (for Web 2.0), your domain's registrar provides nameservers for you when you register a domain with them. However, since Handshake is a pretty new domain name system and due to limitations only a few records are hosted on the blockchain, you'll need to find someone to host your DNS records (or host them by yourself).

For most cases, Namebase provides you free nameservers when you manage your Handshake domain with them. But this has obvious problems:

  • You can't use it without having your domain in your Namebase wallet.

  • It doesn't support IPv6.

  • It doesn't support DANE/TLSA, so connections use HTTP.

Porkbun also offers some Handshake nameservers, even if you don't manage your Handshake domain with them. However:

  • They don't support DNSSEC.
  • I had connection problems with them.

For that reason, I've built, alongside with HNSDNS's DNS resolver, Handshake nameservers for everyone.

  • They are extremely easy to setup.

  • They are reliable, with two servers to minimize possible downtimes.

  • You can have your Handshake domain in your own wallet (ie. Bob Wallet).

  • Full IPv6, DNSSEC and DANE/TLSA support.

You can point your domain to HNSDNS's nameservers using the following IP addresses:

  • (ns1)
  • (ns2)
  • (ns1) 2a01:7e01:e002:c301::
  • (ns2) 2a01:7e01:e002:c501::

You may also point your domain to the following nameservers instead:

  • ns1.dns.lumito
  • ns2.dns.lumito

Remember that you'll need an account, and don't forget to read the tutorial and the important notes sections!

Last update: January 4, 2023