Skip to content

Poweradmin Features

A catalogue of what Poweradmin does, grouped by area. Each entry is marked with the release that introduced it, so you can tell at a glance whether your installation has it. For what a particular release added, see What's New.

Features without a version marker have been present since 3.x or earlier.

Zone and record management

Zone editor

Feature Since More
Master, Native and Slave zones Zone Management
Supermasters for automatic slave provisioning Users and Roles
Validation for A, AAAA, CNAME, HINFO, MX, NS, PTR, SOA, SRV, TXT and more Record Type Customization
IPv6 throughout Reverse DNS
Configurable record type lists, separately for forward and reverse zones 4.0.0 Record Type Customization
Separate reverse zone list with natural or hierarchical sorting 4.0.0 Reverse DNS
Editable supermasters 4.0.0 Users and Roles
Disabled records 4.1.0 Zone Management
Custom TLD whitelist for internal names 4.1.0 DNS Settings
RFC 2317 classless reverse delegation 4.1.0 Reverse DNS
Per-record comments 4.2.0 Zone Management
IDN and punycode support for record names and content 4.2.1 Zone Management
Zone metadata editor for PowerDNS domainmetadata 4.3.0 Zone Metadata
Zone health markers for disabled zones and missing SOA 4.4.0 Zone Management
Zone ownership modes: users only, groups only, or both 4.4.0 DNS Settings
Pinned record types at the top of every selector 4.4.0 Record Type Customization
IP-aware search 4.4.0 Zone Management
Views and networks for split-horizon DNS (PowerDNS LMDB backend only) 4.4.0 Views and Networks
Per-record-type default TTLs 4.5.0 Reverse DNS
Read-only replicated zones with a Read-only badge 4.5.0 Zone Management
Zone overlap guard on creation 4.5.0 DNS Settings
Secondary zone import over AXFR 4.5.0 Secondary Zone Import
Serial policies: per-zone SOA-EDIT and signed serial display 4.5.0 DNS Settings

Bulk operations and templates

Bulk record add

Feature Since More
DNS record templates with placeholder substitution DNS Templates
Bulk record add, bulk delete and batch PTR creation 4.0.0 Bulk Operations
CSV export of a zone's records 4.0.0 Zone Import/Export
Zones-per-template page with unlink 4.0.0 DNS Templates
DNS record wizards for DMARC, SPF, DKIM, CAA, TLSA and SRV 4.1.0 DNS Wizards
BIND zone file import and export, including merge into an existing zone 4.2.0 Zone Import/Export
Save an existing zone as a template 4.2.0 DNS Templates
Selective template updates instead of full replacement 4.3.0 DNS Templates
Default zone template pre-selected on the add-zone forms 4.4.0 DNS Templates
SOA serial placeholders in templates 4.5.0 DNS Templates

DNSSEC

Feature Since More
DNSSEC configuration and key management DNSSEC
Pre-flight zone validation before signing 4.1.0 DNSSEC
PEM private key import and export, PowerDNS 4.7+ 4.4.0 DNSSEC
Copy DS and DNSKEY records to the clipboard 4.4.0 DNSSEC
Presigned zone awareness 4.5.0 DNSSEC
Delegated key management through zone_dnssec_manage_own 4.5.0 Permissions

Users, groups and permissions

Group members

Feature Since More
Users with per-permission templates Users and Roles
User agreements with an audit trail 4.0.0 User Agreements
Per-user preferences stored in the database 4.0.0 Basic Configuration
Zone deletion separated from edit permission 4.1.0 Permissions
Preconfigured permission templates for common roles 4.1.0 Permissions
User groups with their own permission templates 4.2.0 User Groups
Group-based zone ownership 4.2.0 User Groups
Access template visibility toggles 4.3.0 Permissions
Zone owners can read the audit log for their own zones 4.4.0 Permissions
Log-view, metadata-view and ownership-view permissions 4.5.0 Permissions
Delegation NS editing below the apex 4.5.0 Permissions

Authentication and security

MFA setup

Feature Since More
LDAP and Active Directory integration with a custom filter LDAP Integration
CSRF protection, session security, SSL/TLS Security Policies
Multi-factor authentication: authenticator apps, email codes, recovery codes 4.0.0 Multi-Factor Authentication
Self-service password reset over email 4.0.0 Security Policies
Account lockout with IP tracking, allow and deny lists 4.0.0 Security Policies
Password policies for length and character classes 4.0.0 Password Policies
Google reCAPTCHA v2 and v3 on the login form 4.0.0 Security Policies
SAML 2.0 single sign-on with auto-provisioning 4.1.0 SAML Authentication
OpenID Connect with presets for six providers plus generic 4.1.0 OIDC Authentication
Username recovery over email 4.1.0 Username Recovery
LDAP session caching 4.1.0 LDAP Integration
MFA enforcement per user and per group 4.2.0 Multi-Factor Authentication
SSO group to permission template mapping, with source tracking 4.3.0 OIDC, SAML
bcrypt, argon2i and argon2id only for new password hashes 4.3.0 Security Policies
One IdP group mapped to several Poweradmin groups 4.4.0 OIDC, SAML
LDAP user-info sync, auto-provisioning and group mapping 4.5.0 LDAP Integration
MFA verification rate limiting 4.5.0 Security Policies
Trusted proxy allowlist for forwarded-IP headers 4.5.0 Reverse Proxy
IdP superuser provisioning off unless opted into 4.5.0 OIDC, SAML

API

API keys

Feature Since More
REST API with per-key authentication and OpenAPI documentation 4.0.0 API Overview
API v2 with a consistent response envelope, RRsets and bulk records 4.1.0 Endpoints
api_manage_keys permission and a per-user key quota 4.1.0 API Configuration
Zone owner, zone template and group endpoints 4.2.0 Endpoints
Zone metadata endpoints; every v2 operation audited 4.3.0 Endpoints
Accurate HTTP status codes from the service layer 4.4.0 API Overview
Granular API keys: read-only, operation-scoped, zone-scoped 4.5.0 Authentication
DNSSEC and dynamic DNS endpoints 4.5.0 Endpoints
API v1 removed; /api/v1/* answers 410 Gone 4.5.0 API Overview

Logging and monitoring

Zone logs

Feature Since More
Change tracking to database or syslog, with configurable levels Logging Setup
Database consistency checks 4.0.0 Maintenance
PowerDNS server status page 4.0.0 PowerDNS API
Group activity log 4.2.0 Database Logging
Structured audit events across users, zones, templates, DNSSEC, MFA and SSO 4.3.0 Database Logging
Log filters, CSV and JSON export, details modal, client IP and auth method 4.3.0 Database Logging
Dedicated API log page 4.3.0 Database Logging
Record change log with before and after snapshots 4.5.0 Record Change Log
Changesets with an optional or required reason 4.5.0 Record Change Log
Emailed change digest from cron 4.5.0 Record Change Log
Per-request API logging with retention 4.5.0 Database Logging
Unauthenticated health and liveness endpoints for external monitoring 4.5.0 Health Checks

Interface

Dashboard

Feature Since More
Bootstrap-based responsive interface with a card dashboard 4.0.0 UI Overview
Light and dark styles, selectable per user 4.0.0 Themes
Email template previews 4.0.0 Mail Configuration
Clean URLs, subdirectory and reverse-proxy deployment 4.1.0 Layout
The modern sidebar theme 4.1.0 Themes
Custom CSS overrides without forking a theme 4.1.0 Custom CSS
User avatars from OAuth or Gravatar 4.1.0 Avatar System
Module system to enable, disable and restrict optional features 4.2.0 Basic Configuration
Dashboard statistics toggle 4.3.0 UI Overview
Custom favicon and logo 4.4.0 Layout
Full-width layout, per user or site-wide 4.5.0 Layout
Zone list column toggles 4.5.0 UI Overview
43 languages, including right-to-left 4.5.0 Basic Configuration

Integrations and lookups

Feature Since More
Dynamic DNS updates Dynamic DNS
PowerDNS API integration PowerDNS API
WHOIS lookup with configurable servers 4.0.0 WHOIS Configuration
RDAP lookup 4.0.0 RDAP Configuration
Email through Symfony Mailer, with several transports 4.1.0 Mail Configuration
Custom TLD to server mapping for WHOIS and RDAP 4.3.0 WHOIS, RDAP
PowerDNS API backend mode, no direct database access 4.3.0 PowerDNS API
PowerDNS version detection and capability-adaptive interface 4.4.0 PowerDNS API

Deployment

Feature Since More
MySQL, MariaDB, PostgreSQL and SQLite Database Configuration
Tested with 15,000+ zones and 150,000+ records System Requirements
Structured configuration in config/settings.php 4.0.0 Basic Configuration
Guided installer with requirements validation 4.0.0 Web Installer Wizard
FrankenPHP Docker image with environment and secrets configuration 4.0.0 Docker Installation
Separate PowerDNS database 4.0.1 Database Configuration
Database SSL/TLS for MySQL and PostgreSQL 4.1.0 MySQL, PostgreSQL
Immutable and read-only container deployments 4.1.0 Docker Installation
Non-root and rootless container execution 4.1.3 Docker Installation
Custom CA certificate bundle 4.2.0 Docker Installation
Automatic schema initialisation on first container start 4.3.3 Docker Installation
Configurable PowerDNS API timeout with retry 4.4.0 PowerDNS API
Admin-managed settings groundwork 4.5.0 Admin-Managed Settings