/build/static/layout/Breadcrumb_cap_w.png

Outgoing DNS Protocol

Is there something that I would be looking at when setting up a new outgoing DNS protocol. When setting up a new IP Address within the firewall for the outgoing DNS Protocol? Any help would be appreciated.


0 Comments   [ + ] Show comments

Answers (2)

Posted by: matthall 11 years ago
Purple Belt
0

If I understand your question, you are trying to setup your firewall with external DNS servers. 

If that is the case, best practices are typically to either use the DNS server IPs utilized by your ISP, or to use something like 8.8.8.8, which is the IP of google DNS servers. Some people like to do both.

Hope that helps.

Posted by: cyclopssecurity 11 years ago
White Belt
0

Since we don't have a need for any outside DNS server to contact our internal network, we block almost all incoming ports. We do have our outgoing ports open so any external DNS server addresses that we add are done on our internal domain controllers. That way if we changed, nothing would have to be done on the firewall. 

We use OpenDNS as our external DNS servers since they allow us to block certain categories of sites like pr0n, streaming media, bit torrents, etc. It has made managing the traffic a lot easier.

 
This website uses cookies. By continuing to use this site and/or clicking the "Accept" button you are providing consent Quest Software and its affiliates do NOT sell the Personal Data you provide to us either when you register on our websites or when you do business with us. For more information about our Privacy Policy and our data protection efforts, please visit GDPR-HQ