aws-amplify / aws-amplify/amplify-hosting

Be able to get Amplify project DNSSEC compliant

Open
#3,906 6 comments 4 reactions 0 assignees View on GitHub
feature-request
Dominant language
Dockerfile
Stars
481
Forks
123
PR merge metrics
No merged PRs in 30d

Description

### Before opening, please confirm:

- [X] I have checked to see if my question is addressed in the [FAQ](https://github.com/aws-amplify/amplify-hosting/blob/master/FAQ.md).
- [X] I have [searched for duplicate or closed issues](https://github.com/aws-amplify/amplify-hosting/issues?q=is%3Aissue+).
- [X] I have removed any sensitive information from my code snippets and submission.

### Amplify Hosting feature

Frontend builds

### Is your feature request related to a problem? Please describe:

We're hosting our React front-end application using AWS Amplify. We use a custom (sub)domain, which resolves and works from the browser.

However we noticed that the subdomain has DNSSEC issues and it seems impossible for us to solve this. We do not manage the cloudfront distribution that is being created by Amplify and cannot change anything for this domain.
![image](https://github.com/aws-amplify/amplify-hosting/assets/2428956/12cc9439-76a9-44e4-b2b6-f252336bad18)

### Describe how you'd like this feature to work

We would like to see a way to solve the DNSSEC issues

Contributor guide

Open the contributing guide

Research direction

Start by reviewing Amplify Hosting's custom-domain flow and how its managed CloudFront distribution handles the reported subdomain. Determine what DNSSEC capability or configuration is missing, and consider the issue complete only when a documented way to make an Amplify-hosted custom domain DNSSEC compliant is available.

Written by the indexing model from the issue text.

Assessment

Tech stack
aws
Domain
cloud, security
Issue type
Feature
Difficulty
5/5
Estimated time
Over a week
Activity status
Stale
Clarity
Needs clarification
Newbie friendliness
25/100

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.