Said It Here

Why do DNS changes take up to 48 hours to propagate?

Complex caching prevents DNS changes from being immediately reflected worldwide, with full propagation across all points of presence (PoPs) sometimes taking up to 48 hours. This unpredictability causes unexpected trouble and forces administrators to wait minutes or even days before tasks like ACME and DNS-01 validation can safely take place.

What people tried

Every workaround mentioned in the threads below. We haven’t tested any of them — and nobody here is claiming they worked.

  1. 1
    Keeping old servers active during transition until TTL expires
  2. 2
    Setting very low TTL values beforehand
  3. 3
    Waiting longer (3 to 5 minutes) before running ACME DNS-01 validations
  4. 4
    Switching to alternative providers like Bunny DNS or Cloudflare

In their words

Unedited, grouped by where they were said, most upvoted first within each place, each linked to the thread it came from.

Server Fault1 person · November 2025

Am I missing something, or are they wrong?source ↗

I got into some trouble over this, and this is why I feel that the caching is complex and as a result you can not be sure of a DNS change being reflected world wide until 48 hours has passed.source ↗

MagicLAMP · Server Fault · 7 upvotes
r/sysadmin1 person · September 2026

the one point of contention I have is how long it takes for them to propagate DNS changes across all of the PoPs.source ↗

Using ACME and DNS-01, I have to allow a minimum of around 3 minutes, sometimes closer to 5 minutes, before validation can safely happen.source ↗

rootdet · r/sysadmin

Where this came up

People with this problem also raised