Configuring a DNS proxy
A DNS proxy helps control how internal clients connect to DNS servers and where they get domain information from, or which information they receive.
Important note
Clients must be configured with the firewall's interface IP set as the DNS server. This can be forced via the DNS attribute in the DHCP server or may need to be set manually. The firewall may need a security rule that allows DNS connections
to the firewall interface from the clients, and a second one that allows DNS from the firewall interface out to the internet.
Configure the DNS proxy by following these steps:
- Create a new DNS proxy object in Network > DNS Proxy.
- Add a name and, if you want to inherit DNS configuration from an upstream DHCP server (ISP), set the inheritance.
- Set the primary and secondary DNS server for outgoing DNS requests to servers of your choice, or select Inherit if you want to use your ISP's DNS servers for generic lookups.
- Add the...