How To Block DNS Queries Using App Control Advanced
How To Block DNS Queries Using App Control Advanced
com/support/knowledge-base/how-to-block-dns-queries-using-app-control-advanced/170505827678272/
Enable the check box under Enable App Control and Accept.
Click on the Configure button on the signature you wish to block. In this example, we have chosen
Standard Query .xxx Adult Entertainment Domains -SID 6821.
In the Edit App control signature window set Enable under Block and Log.
Click OK to save the settings.
In the App Control App Settings Window, select Enable under Block and Log.
Click OK to save.
Click on Configure button on the Zone on where you want to enable Application Control.
Logging DNS queries from behind the SonicWall will be blocked and log messages will be generated under
Monitor | Logs | System Logs
Check the box under Enable App Control and click on the Accept button at the top to enable App Control.
Under Manage | Rules | App Control select PROTOCOLS under Category; select DNS Protocol under
Application; select Signature under Viewed By, to list the signatures available under this application:
Click on the configure icon of a signature you wish to block. In this example, we have chosen Standard Query .xxx
In the Edit App Control Signature window, select Enable under Block and Log.
Click on OK to save.
Blocking DNS application group
Click on the configure icon under Application with DNS selected.
In the Edit App Control App window, select Enable under Block and Log.
Click on OK to save.
Enabling Application Control on zones
Click on the configure button under the zone where you want enable App Control.
Click on OK to save.
Logging DNS queries from behind the SonicWall will be blocked and log messages similar to the following will be
generated under Investigate | Event Logs
Resolution for SonicOS 6.2 and Below
The below resolution is for customers using SonicOS 6.2 and earlier firmware. For firewalls that are
generation 6 and newer we suggest to upgrade to the latest general release of SonicOS 6.5 firmware.
Navigate to the Firewall | App Control Advanced page. NOTE: In Gen5 Tz devices this page is under Security
Check the box under Enable App Control and click on the Accept button at the top to enable App Control.
Under App Control Advanced | View Style select PROTOCOLS under Category; select DNS under Application;
select Signature under Viewed By, to list the signatures available under this application:
Blocking DNS application group
Click on the configure icon under Application with DNS selected.
In the Edit App Control App window, select Enable under Block and Log.
Click on OK to save.
Click on the configure icon of a signature you wish to block. In this example, we have chosen Standard Query .xxx
Click on OK to save.
Blocking a country code top-level domain
Click on the configure icon of a signature you wish to block. In this example, we have chosen Standard Query .cn
In the Edit App Control Signature window, select Enable under Block and Log.
Click on OK to save.
Enabling Application Control on zones
Navigate to Network | Zones
Click on the configure button under the zone where you want enable App Control.
Click on OK to save.
LoggingDNS queries from behind the SonicWall will be blocked and log messages similar to the following will be
generated under Log | View: