Adding A Dns Service Control Rule - ZyXEL Communications ZyWall ATP series User Manual

Table of Contents

Advertisement

The following table describes the labels in this screen.
Table 309 Configuration > System > DNS > Security Option Control Edit (Customize)
LABEL
Name
Query Recursion
Additional Info
from Cache
Address List
Available
Member
OK
Cancel

37.6.14 Adding a DNS Service Control Rule

Click the Add icon in the Service Control table to add a service control rule.
Figure 466 Configuration > System > DNS > Service Control Rule Add
The following table describes the labels in this screen.
Table 310 Configuration > System > DNS > Service Control Rule Add
LABEL
Create new
Object
Address Object
Zone
Chapter 37 System
DESCRIPTION
You may change the name for the customized security option control policy. The customized
security option control policy is checked first and if an address object match is not found, the
Default control policy is checked
Choose if the ZyWALL/USG is allowed or denied to forward DNS client requests to DNS servers
for resolution. This can apply to specific open DNS servers using the address objects in a
customized rule.
Choose if the ZyWALL/USG is allowed or denied to cache Resource Records (RR) obtained
from previous DNS queries.
Specifying address objects is not available in the default policy as all addresses are included.
This box displays address objects created in Object > Address. Select one (or more), and click
the > arrow to have it (them) join the Member list of address objects that will apply to this rule.
For example, you could specify an open DNS server suspect of sending compromised
resource records by adding an address object for that server to the member list.
This box displays address objects that will apply to this rule.
Click OK to save your customized settings and exit this screen.
Click Cancel to exit this screen without saving
DESCRIPTION
Use this to configure any new settings objects that you need to use in this screen.
Select ALL to allow or deny any computer to send DNS queries to the Zyxel Device.
Select a predefined address object to just allow or deny the computer with the IP address that
you specified to send DNS queries to the Zyxel Device.
Select ALL to allow or prevent DNS queries through any zones.
Select a predefined zone on which a DNS query to the Zyxel Device is allowed or denied.
ZyWALL ATP Series User's Guide
705

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

Atp500Atp200Atp800

Table of Contents