Domain Names and DNS Basics for Business: A Plain-English Guide
DNS is the quiet system that connects your domain name to your website and email. This plain-English guide explains what A, MX and TXT records do, why DNS matters for your website's reliability and your email security, and why keeping control of your domain is one of the most important things a business can do.
The quiet system behind your website and email
Most business owners never think about DNS, and for the most part that is fine — it is designed to work silently in the background. But when something goes wrong with it, the effects are dramatic: your website vanishes, your email stops arriving, or worse, criminals start sending fake emails in your name. A little plain-English understanding goes a long way towards keeping all of that from happening.
Think of DNS — the Domain Name System — as the internet’s phone book. You remember a business by its name; the phone book turns that name into a number you can actually call. DNS does the same job. It takes your friendly domain name, like yourbusiness.co.uk, and translates it into the technical addresses computers use to find your website and route your email to the right place.
Your domain name: the address you own
Your domain name is the piece you actually rent — usually paid for yearly through a registrar. It is your address on the internet, and everything else hangs off it: your website, your email, and the trust customers place in seeing your name.
Behind that domain sits a set of DNS records: small instructions that tell the world where to send people and messages. You will almost never edit them by hand, but knowing what the main ones do makes you a far more confident owner — and helps you ask the right questions when something needs changing.
The records that matter most
There are several types of DNS record, but three cover almost everything a small business needs to understand.
A records — where your website lives. An A record connects your domain name to the specific server that hosts your website. When someone types your address into their browser, the A record is what points them to the right place. Change it, and you change where your website is served from. Get it wrong, and visitors see nothing.
MX records — where your email is delivered. MX stands for Mail Exchange, and these records tell the world which server handles email for your domain. If you use Microsoft 365 or Google Workspace, your MX records point to them. This is why your domain can host your website in one place and your email in another entirely — they are governed by different records.
TXT records — small notes with big jobs. TXT records simply hold pieces of text attached to your domain. Modest as that sounds, they do some of the most important security work of all, because this is where the systems that protect your email from impersonation live.
Your domain can host your website in one place and your email in another entirely — they are governed by different records.
Why DNS is a security issue, not just a technical one
Here is the part many owners never hear: DNS is where a huge amount of your email security is decided.
Without the right settings, criminals can send emails that look exactly like they came from your business — same domain, same name — to your customers, your suppliers, or your own staff. This is how a lot of invoice fraud works: a fake email that appears genuine asks someone to pay a changed bank account, and the money is gone.
The defence sits in your TXT records, in three tools that work together:
- SPF lists which servers are allowed to send email using your domain.
- DKIM adds a tamper-proof signature that proves an email genuinely came from you.
- DMARC tells receiving systems what to do with messages that fail those checks — and can report attempts to abuse your name.
Set up correctly, they make it far harder for anyone to impersonate your business by email. This is important enough that we have a full walkthrough: how to stop invoice fraud with SPF, DKIM and DMARC explains it without the jargon. If you handle client money or sensitive data — as accountants and solicitors do — getting this right is not optional.
Keeping control of your domain
If you take one thing from this article, make it this: your domain must be owned and controlled by your business.
It is astonishingly common for a domain to be registered by a web designer, a marketing agency or an employee who has long since left — under their name, with login details only they hold. It works fine until the day you fall out, they disappear, or they simply forget to renew it. Then you can lose your website and your email overnight, and getting them back can be slow, costly or impossible.
Protect yourself with a few simple checks:
- The domain should be registered in your company’s name, not an individual’s or a supplier’s.
- You should hold the registrar login details yourself, even if someone else manages the settings day to day.
- Keep the renewal date in your calendar and make sure the payment card on file is current, so it never lapses by accident.
- Turn on any ‘domain lock’ or transfer protection your registrar offers, and secure the account with multi-factor authentication.
Whoever manages your DNS on a daily basis, ownership should always sit with you.
You do not have to do this alone
DNS rewards a light touch and punishes guesswork. A single mistyped record can take your website or email offline, and misconfigured email security quietly leaves the door open to fraud. You do not need to become an expert — but your business should either have someone competent handling it, or a provider you trust who documents everything and keeps you in control.
That is a core part of the managed IT support we provide: making sure the plumbing behind your domain is correct, secure and properly owned by you, so you can get on with running your business. If you are not sure who controls your domain, or whether your email is properly protected, get in touch and we will help you find out.
Frequently asked questions
What is DNS in simple terms?
DNS, the Domain Name System, is like the internet's phone book. It translates your easy-to-remember domain name into the numerical addresses computers use, and it directs your website visitors and emails to the right place. Most of the time it works silently in the background.
What is the difference between an A record and an MX record?
An A record points your domain name at the server that hosts your website, so visitors reach your site. An MX record points your domain at the server that handles your email. One controls where your website lives, the other controls where your email is delivered.
Why do TXT records matter for email security?
TXT records hold small pieces of text used to prove your email is genuine. SPF, DKIM and DMARC all live in TXT records and together they help stop criminals sending fake emails that appear to come from your business, which protects both you and your customers.
Who should control my domain name?
Your business should, always. The domain should be registered in your company's name with login details you hold, not owned by a web designer or ex-employee. Losing control of your domain can mean losing your website and email overnight, so keep it firmly in your own hands.
Dacros — led by Jordan Gilbert
Our guides are written and checked by the Dacros team, led by founder Jordan Gilbert. We run the IT and cyber security for UK small businesses — and hold our own systems to the same standard. About Jordan · About Dacros.
Related guides
The backup password on the laptop you're backing up
Recovery controls fail in a way audits miss: the control quietly depends on the very thing it is meant to recover you from. We found five in our own systems in a week — here's the one question that finds them, and a two-hour fix.
Read → GuideIT and Cyber Security for Charities and Non-Profits in the UK
A plain-English guide to IT and cyber security for UK charities: protecting donor and beneficiary data, controlling volunteer access, and Cyber Essentials on a tight budget.
Read → GuideIT & Cyber Security for Solicitors and Law Firms: A Plain-English Guide
A practical guide to IT security for UK law firms: client confidentiality, SRA-aligned controls, secure email and documents, DMARC, backups and staying compliant.
Read →Want this handled for you?
Dacros runs the IT and security for UK small businesses. Book a free review and we'll tell you what's worth doing — no jargon, no pressure.