Enabling Protocol Anomaly Detection For Dns - Watchguard Firebox X1000 User Manual

Vpn gateway
Hide thumbs Also See for Firebox X1000:
Table of Contents

Advertisement

3
Click DNS-Proxy. Click Add.
The Add Service dialog box appears. You can change the name
assigned to the DNS proxy or change the comment associated
with the proxy.
4
Click OK to close the Add Service dialog box.
The DNS-Proxy Properties dialog box appears.
5
Click the Incoming tab. Use the Incoming DNS-Proxy
connections are drop-down list to select Enabled and
Allowed.
6
Click the Outgoing tab. Use the Outgoing DNS-Proxy
connections are drop-down list to select Enabled and
Allowed.
7
Click OK to close the DNS-Proxy Properties dialog
box.
8
Click Close.
The Services dialog box closes. The DNS-Proxy icon appears in
the Services Arena.
Enabling protocol anomaly detection for
DNS
For a description of protocol anomaly detection, see "Pro-
tocol Anomaly Detection" on page 136.
1
From the DNS Properties dialog box, click the
Properties tab.
2
Select the Enable auto-blocking of sites using
protocol anomaly detection checkbox.
3
To set rules for anomaly detection, click the Auto-
blocking Rules button.
The PAD Rules for DNS Proxy dialog box appears, as shown in
the following figure.
User Guide
Configuring the DNS Proxy Service
157

Advertisement

Table of Contents
loading

Table of Contents