DNS Controls
Options
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
12-19-2018 07:28 AM
Hello,
Our WCF (Umbrella) relies on devices using specific DNS servers. Currently I am able to statically assign a DNS server and bypass this security. Is there a way to prevent clients from connecting if they have statically assigned a DNS server?
We are using R510 and R310 Unleashed.
Our WCF (Umbrella) relies on devices using specific DNS servers. Currently I am able to statically assign a DNS server and bypass this security. Is there a way to prevent clients from connecting if they have statically assigned a DNS server?
We are using R510 and R310 Unleashed.
5 REPLIES 5
Options
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
12-19-2018 02:26 PM
We have a CLI WLAN configuration command "force-dhcp" which will disallow clients with a static IP, but I don't think we look at router-provided or client defined DNS hosts.
Options
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
12-20-2018 12:49 PM
Easy solution, block out bound DNS requests on your firewall port 53 outbound, only allow your dc's outbound on port 53 which you should do anyways as part of a good Cyber Security plan.
Options
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
12-20-2018 12:50 PM
Thumb's Up!
Options
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
12-21-2018 06:10 AM
Thanks for the replies guys. Tim that's a great point. We have, currently, chosen not to deploy Firewalls though, since this is for our branch office public Guest networks and are entirely separated from our corporate network.

