DNSSEC Manager (Plesk)


Plesk Extensions,  

Admin-Ahead Plesk DNSSEC Extension is DNSSEC made easy. Domain Name Security Extensions (DNSSEC) add an extra layer of security to your domain names by attaching digital signatures to their DNS information. DNSSEC addresses an identified security risk and helps prevent malicious activities like cache poisoning, pharming, and man-in-the-middle attacks. It uses a digital signature to create a chain of authority. Then, it uses the chain to verify that the source domain name, which the DNS resolver returns, matches the DNS record stored at the authoritative DNS. If it cannot validate the source, it discards the response. To enable DNSSEC you must digitally create private and public keys and generate a Declaration of Signing record during the domain name signing process. The General Zone Signing Process involves :  
  • Generate a zone signing key.
  • Generate a key signing key.
  • Sign the zone and generate signed zone records.
  • Generate the declaration of signing (DS) record.
Everyone realizes that it's a great idea, but implementation requires effort, consensus, and expenses (often significant). Admin-Ahead Plesk DNSSEC Extension is the only available extension for Plesk that is built with a robust algorithm to help you through the above processes and manage the digital keys over a GUI.

- Price Per Month - By clicking on the “Buy” button on this website, it is understood that you have read and understood Admin-Ahead End User Agreement.

- Price Per Month
- Read Admin-Ahead End User Agreement.

Main Features

Sign/Un-sign/Re-sign a single zone.

Sign/Unsign multiple zones.

Automatically resigns zones when changes are detected.

Automatically resign every zone periodically before key expires.

24/7 Support from Admin-Ahead Team via Chat and Tickets.

Supported OS

Centos 6 & 7 , RHEL 6 & 7 , Ubuntu, Debian 6 & 7

Supported Plesk Versions

Plesk 12.5 and above, Plesk Onyx until 17.5.3
Currently Plesk Onyx 17.8 versions are not supported.


Version 2.4.4
-Plesk 12.5 compatible
-Minor Bug fixes
Version 2.0.3
-Minor Bug fixes
Version 2.0
-Support for automatic pushing of signed zone records to slave DNS servers setup using the following Parallels provided extension: Slave DNS Manager
-Reworked signing/unsigning algorithm.

OS Tested:

-CentOS 6.x
-CentOS 5.x
-CloudLinux 6.x
-CloudLinux 5.x
-Debian 7.0
-Debian 6.0
-openSUSE 13.1
-openSUSE 1.2.3
-RedHat Enterprise Linux 6.x.
-RedHat Enterprise Linux 5.x.
-Ubuntu 14.04 Server LTS
-Ubuntu 12.04 Server LTS
-Ubuntu 10.04 Server LTS

About our Support

We pride ourselves in delivering high quality support services. We have an average response time of less than 5 minutes and a resolution time in under 60 minutes for normal tickets related to our Plugins. In case you hit a bug, we try to resolve this in less than 24 hours.


You can open a ticket with us 24/7 at:
OR Chat with our Engineers at:


Andrey Kugaevskiy and Eugene Kazakov
of Parallels for their suggestions and support in this project.