Document toolboxDocument toolbox

Implementing Clients over DoH

For Infoblox Threat Defense Business Cloud and Advanced entitlements, Infoblox offers agentless support for DNS resolution over direct, encrypted DoH (DNS over HTTPS) and unencrypted DNS or DOT for customer-approved external networks. You can eliminate the need for deploying Infoblox Endpoint or defining public subnets (External Networks), reducing the complexity of your network architecture. For information about External Networks, see Configuring External Networks.

You can also use this feature to integrate a variety of security solutions, such as Secure Service Edge (SSE), web proxy, VPN, and others, with Infoblox Threat Defense to support a robust and comprehensive security posture.

When traffic is sent over DoH, reports in the Infoblox Portal should show the source as "Unknown."

For information on implementing DoH on specific clients, see the following: