Authoritative DNS vs Recursive DNS

What's the Difference?

The Domain Name System An Overview

When you type a website address into your browser, the page loads in seconds. Behind the scenes, however, a sophisticated system works to translate that human-readable domain name into an IP address your computer can understand. This process relies on the Domain Name System (DNS), often referred to as the internet’s map book.

If you’re Australian, and if you’re laymen to DNS & technology, a broad and basic example would be the pre year 2000 era Melway and Sydway map books. During this era, if we wanted to go from Point-A to Point-B, we would refer to a book called Melway – or Sydway if you’re in Sydney.

This book gave us maps of the roads, and we would follow the maps through the pages of the book. Whilst driving, we would constantly refer to this book to route ourselves to our intended destination.

We did not have a smart phone, and most importantly we did not get pulled over and fined for using a Melway – but that’s another story!

The Domain Name System or DNS is essentially a Melway for the Internet. When you type an internet address in to a URL bar on your browser, your computer contacts a series of Melway’s and Sydway’s (i.e. DNS Servers) which tells your computer the location and route to use to get to the intended destination (i.e. the destination being the URL typed in your URL bar).

There are two broad scopes of DNS. They are Authoritative DNS and Recursive DNS.

Although they work together to resolve domain names, they serve entirely different purposes.

In this guide, we’ll explain the difference between Authoritative DNS and Recursive DNS, how they interact, and why understanding both is essential for website owners, IT professionals, and anyone managing online infrastructure.

What Is Recursive DNS?

A Recursive DNS Resolver is the first server your computer contacts when looking up a domain name.

Its primary job is to find the answer on behalf of the user.

From the Melway concept above, when looking up the destination address, we would go to the listings of the destination street name at the back of the book and find the page number of book which contains the map of the destination street.

For a non-Australian, another example would be a librarian, when visiting a Library. Instead of making you search every shelf yourself, the librarian searches multiple sources until they find exactly what you’re looking for.

How Recursive DNS Works

When a user enters a website address:

  1. The browser asks the recursive resolver for the IP address.
  2. The resolver checks its cache.
  3. If the answer exists, it immediately returns the result.
  4. If not, it begins querying other DNS servers until it finds the authoritative answer.
  5. The result is cached for future requests.

Because recursive resolvers cache DNS responses, they significantly improve browsing performance and reduce unnecessary DNS traffic.

Examples of Recursive DNS

Some of the most popular recursive DNS services include:

  • Telnetworks DNS Servers (49.255.119.252 and 49.255.238.252)
  • Vocus DNS Servers (111.220.1.1 and 111.220.2.2)
  • Telstra (139.130.4.4)
  • AAPT (203.8.183.1 and 192.189.54.33)
  • Google Public DNS (8.8.8.8 and 8.8.4.4)

These DNS Servers focus on speed, security, reliability, and privacy.

What Is Authoritative DNS?

An Authoritative DNS Server stores the official DNS records for a particular domain.

Unlike recursive resolvers, authoritative servers already know the answer because they host the DNS zone for the domain.

They don’t search elsewhere. Instead, they respond with the official DNS records, including:

  • A Records
  • AAAA Records
  • MX Records
  • TXT Records
  • CNAME Records
  • NS Records
  • SRV Records

If someone asks:
“What is the IP address for telnetworks.com.au?”

The authoritative DNS server provides the official answer because it is the one who hosts that information.

Use our Free DNS Lookup Tool to lookup DNS records of Domain Names

How Does Authoritative DNS Work?

Every registered domain delegates authority to one or more authoritative name servers.

Authoritative name servers hosts information (i.e. DNS records pertaining to that domain name) relating to a domain name.

When a recursive resolver reaches the authoritative server, it requests the required record.

For example:

Please provide “A Record” for domain name ‘telnetworks.com.au’

The authoritative DNS server responds with the official IP address and includes a Time To Live (TTL), allowing recursive resolvers to cache the response.

Reply: 49.255.238.226 (3600 TTL)

Authoritative DNS Vs Recursive DNS

FeatureRecursive DNSAuthoritative DNS
PurposeFinds DNS answersStores official DNS records
Holds DNS zone?NoYes
Queries other servers?YesNo
Uses caching?YesNo (serves authoritative records)
Used by end users?YesIndirectly
Provides final answer?Retrieves itOwns it

DNS Resolution How They Work Together

The following steps give the complete step-by-step DNS lookup process.

Step 1 – Your browser asks the recursive resolver:
Where is telnetworks.com.au?

Step 2 – The recursive resolver checks its cache.
If no cached answer exists, it contacts:

  • Root DNS Server
  • TLD DNS Server (.com.au)
  • Authoritative DNS Server

Step 3 – The authoritative server replies with the correct DNS record.
RESPONSE: telnetworks.com.au is located at ns1.telnetworks.com.au

Step 4 – The recursive resolver caches the response

Step 5 – The browser receives the IP address and connects to the website.

This entire process typically takes only milliseconds.

Common Types of DNS Records

Here are some of the most common DNS record types:

A Record – Maps a domain to an IPv4 address.

AAAA Record – Maps a domain to an IPv6 address.

MX Record – Specifies mail servers responsible for receiving email

CNAME Record – Creates an alias from one domain to another.

TXT Record – Stores verification, SPF, DKIM, and other text-based information.

NS Record – Identifies the authoritative name servers for a domain.

Caching The Underlying Difference

Caching is one of the primary distinctions between recursive and authoritative DNS.

Recursive DNS caches responses for a period defined by the record’s TTL.

Benefits include:

  • Faster lookups
  • Reduced latency
  • Lower bandwidth usage
  • Less load on authoritative servers

Authoritative DNS servers, on the other hand, serve the original records rather than relying on cached copies.

Security Considerations

Both recursive and authoritative DNS can enhance security when properly configured.

Cyber Security Solution tailor made Network Engineering Hardening Technical Support Firewalls QoS

Recursive DNS SECURITY

  • DNS filtering

  • Malware blocking

  • Phishing protection

  • DNS-over-HTTPS (DoH)

  • DNS-over-TLS (DoT)

Authoritative DNS SECURITY

  • DNSSEC support


  • DDoS mitigation


  • Redundant global infrastructure


  • Access controls


  • Zone validation

DNS The Domain Name System

Although they often get mentioned together, Authoritative DNS and Recursive DNS perform fundamentally different roles within the DNS ecosystem.

Recursive DNS acts as the intermediary that searches for answers on behalf of users and speeds up future requests through caching. Authoritative DNS serves as the definitive source for a domain’s DNS records, ensuring users receive accurate and up-to-date information.

Understanding the distinction between these two services is essential for website owners, system administrators, and businesses aiming to optimize performance, improve reliability, and strengthen DNS security.

Together, Authoritative DNS and Recursive DNS form the backbone of every successful DNS lookup, enabling billions of internet users to access websites quickly and reliably every day.

Having DNS Issues?

TLS-RPT DNS Email Security DNSSEC Cyber Security

Telnetworks hosts multiple DNS servers for over ten thousand corporate domain names.

Our carrier grade DNS servers are hosted in the following Data Centers and configured for High Availability –

  • Next-DC M1 (Melbourne)
  • Next-DC S1 (Sydney)
  • Vocus 530 (Melbourne)
  • Equinix SG1 (Singapore)

Each of our Data Center presence points come with over 10 Gigabits of Bandwidth and multiple carrier links in to each location.

We host DNS for some of the most innovative companies across the globe.

If your business requires a robust and reliable DNS hosting and setup please contact us below.

DNS Record Lookup Tool MX MTA-STS NS DKIM DMARC SPF

The Domain Name System
The Backbone of the internet

Lets Setup Your DNS