Should the 'mail' CNAME record be proxied or not please?

What is the name of the domain?

1lit.com

What is the issue you’re encountering

We are switching our domain names from one webhost to another, all using Cloudflare. Should the ‘Proxy status’ be set to ‘Proxied’ or not please? Some of our domains have this set to on and some to off. All our domains have authentication set-up e.g. DKIM, DMARC, SPF with the details provided by the new webhost.

What feature, service or problem is this related to?

DNS records

Screenshot of the error

The proxy only handles HTTP/S traffic.

Everything else, like records for email, need to be set do DNS-Only.

2 Likes

Thank you for immediate response. Hugely appreciated.

So, based on your guidance, we will set the CNAME ‘mail’ record to not be proxied. What about the CNAME ‘www’ one please?

Your www record points to another record that is already proxied, so the toggle between Proxied and DNS-Only would not have any effect here.

If you don’t know what the proxy does, you might just want to switch everything to DNS-Only or read more about how Cloudflare works.

2 Likes

Understood. Thank you for the helpful advice and article links.

When we switch the proxy for the ‘mail’ record to off, Cloudflare presents us with the following message on the ‘Records’ page:

"### Recommended steps to complete zone set-upHide

Some of your DNS-only records are exposing IP addresses that are proxied through Cloudflare. Make sure to proxy all A, AAAA, and CNAME records pointing to proxied records to ensure your origin server is fully protected."

Should we ignore this please?

Thanks again!

Yes, you’ll have to.

This topic was automatically closed 15 days after the last reply. New replies are no longer allowed.