DNS Firewall (software version) protects your internal network by filtering DNS traffic in real time and blocking malicious domain resolution requests. It supports on-premises deployment for low-latency protection.
Overview
DNS Firewall is a network security solution that provides protection at the Domain Name System (DNS) layer. It filters and monitors DNS traffic in real time to block malicious domain resolution requests, preventing users and systems from accessing high-risk targets such as phishing sites and malware distribution platforms. The software version supports on-premises deployment with low-latency performance to safeguard your internal network.
Solution architecture
-
Highly reliable threat intelligence: The intelligence database is powered by Alibaba Cloud's native threat intelligence, delivering accurate and comprehensive data for precise threat detection with rich contextual information.
-
Real-time threat defense: Intercepts malicious domain requests in real time, including phishing sites and Trojan domains. Helps you locate compromised hosts and block high-risk DNS queries to prevent unauthorized external communications.
-
Block threats at the DNS entry point: Unlike traditional firewalls that cannot address domain-layer risks, DNS Firewall operates at the DNS protocol layer with lightweight deployment, blocking threat domain resolution at an early stage of the attack chain.
-
Fully self-developed software for easy deployment and management: Part of Alibaba Cloud's integrated DNS software suite, the software version is independently developed with lightweight architecture. It supports distributed deployment and simple installation.
-
Detailed reports and logs for threat tracing: Provides full visibility into interception and protection status. Through threat intelligence analytics, you can view threat domain proportions, threat type distribution, compromised hosts, and other key metrics to understand your internal network's DNS security posture and trace threat sources.