Skip to content

How To Use the DNSimple DNS Plugin

This plugin works against the DNSimple DNS provider. It is assumed that you have already setup an account and created the DNS zone(s) you will be working against.


The link above is an affiliate link which reduces my out of pocket cost to maintain this plugin. I'd be most grateful if you use it when signing up for a new account.


This plugin works with both User and Account access tokens. Access tokens are generally preferred because User tokens may have access to multiple accounts. User tokens would only be necessary if the cert you're generating includes names from zones that span multiple accounts.

Login to the User Settings section of the dashboard. For Account tokens:

  • Scroll to the Accounts section
  • Click the appropriate account link
  • Click Access Tokens
  • Click Add

For User tokens:

  • Scroll to the User access tokens section
  • Click Add

After giving the token a name, it will show you the token string. Be sure to save it as you can't look it up if you forget later. You can only generate a new one.

Using the Plugin

With your token value, you'll need to set the DSToken SecureString parameter.


The DSTokenInsecure parameter is deprecated and will be removed in the next major module version. If you are using it, please migrate to the Secure parameter set.

$pArgs = @{
    DSToken = (Read-Host "DNSimple Token" -AsSecureString)
New-PACertificate -Plugin DNSimple -PluginArgs $pArgs