Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

The  DNS tab provides comprehensive security data about the types of DNS hits within your network over a specific time period. This tab collects the data from the other reports and makes the information available in one location. To export the DNS table data in csv format, click Export. The default file name is dns-activity_dns.csv. Exported data is limited to 50,000 records.

...

Note
titleNote
  • Depending on the availability of data records, not all filter options may be displayed.
  • Amplification/Reflection attacks BloxOne Threat Defense does not resolve QTYPE=ANY and QCLASS=INDNS queries. If this occurs, then BloxOne Threat Defense will respond with NOTIMP to such requests. NOTIMP responses will be displayed in the RESPONSE field.

The DNS table displays the following information by specific criteria where you can select the applicable objects from the following column drop-down menus: 

...

Note
titleNote

You can add and remove custom fields by clicking on the icon located in the top, right-hand corner of the table, and selecting or deselecting which custom fields you want to view. All fields can be selected or deselected, or they can be returned to the default configuration by clicking Restore to default GRID setting.

Export Records

Click Export to download a CSV file of report records. The maximum number of exported DNS report records is 50,000.