---
title: "Disable DNSSEC"
method: DELETE
path: "/{account}/domains/{domain}/dnssec"
tags: ["domain dnssec"]
---

# Disable DNSSEC

`DELETE /{account}/domains/{domain}/dnssec`

Disables DNSSEC for the domain.

It will disable signing of the zone. If the domain is registered with DNSimple, it will also remove the DS record at the registry corresponding to the disabled DNSSEC signing.

## Path parameters

- `account` integer, required
- `domain` string, required

## Response `204`

Successfully disabled DNSSEC

## Other responses

- `400` — A required parameter is missing or the request is invalid.
- `404` — The requested resource doesn't exist.
- `428` — If DNSSEC is not enabled

## Changes

- **2025-07-11** (v2) `06780be0ef17` — 3 info
  - the response property `errors` became required for the status `400`
  - the response property `message` became required for the status `400`
  - the response property `message` became required for the status `404`
- **2023-07-18** (v2) `c8591dcf8c29` — 3 breaking
  - the response property `errors` became optional for the status `400`
  - the response property `message` became optional for the status `400`
  - the response property `message` became optional for the status `404`

[Change history](https://skmtc.dev/dnsimple/apis/dnsimple-api/changes/:account/domains/:domain/dnssec/delete.md)

---

[API](https://skmtc.dev/dnsimple/apis/dnsimple-api.md) · [All operations](https://skmtc.dev/dnsimple/apis/dnsimple-api/llms.txt) · [OpenAPI document](https://skmtc.dev/dnsimple/apis/dnsimple-api/revisions/faec8b49cc03?raw)
