/
Using DNS Fallback

Using DNS Fallback

Enabling DNS Fallback for DFP

Infoblox provides DNS fallback mechanisms to ensure continuous DNS protection for your networks. These mechanisms safeguard DNS resolution when your local DNS resolver is temporarily offline or when the connection between your hosts and the Infoblox Platform is unavailable. By enabling DNS fallback, your system always has a functional nameserver to fall back on, ensuring uninterrupted DNS query resolution.

You can enable DNS fallback through the Infoblox Portal or by configuring DFP on NIOS, depending on your network setup.

Configuring DNS Fallback via the Infoblox Portal

To enable DNS fallback on a DFP service using the Infoblox Portal, complete the following steps:

  1. Log in to the Infoblox Portal.

  2. Navigate to Configure > Service Deployment > Protocol Service.

  3. From the list of services, select the DFP service where you want to configure DNS fallback, and click Edit.

  4. Click the DNS Forwarding Proxy tab and expand the Internal and Fallback Local Resolvers section.

  5. Click Add, and add the Fully Qualified Domain Name (FQDN) or IP address of the fallback DNS server to the table.

  6. Enable the Fallback Resolver option for the fallback address.

  7. Click Next.

  8. Click Save & Close.

For more information about DFP fallback to local DNS servers and health checks, see DNS Forwarding Proxy Fallback to Local DNS Server.

Configuring DNS Fallback via the NIOS Grid Manager

To configure DNS fallback for DFP using the NIOS Grid Manager, follow these steps:

  1. Log in to the NIOS Grid Manager UI.

  2. Select a Grid member and navigate to Grid Member > DFP Properties.

  3. Select the Fallback to the default resolution process if Infoblox Threat Defense does not respond check box.

Note

  • When this option is enabled, DNS queries will fall back to the root servers, even if forwarders are configured at the DNS member level.

  • If root servers are not enabled or reachable, ensure DNS protection by enabling Fallback Resolver for the applicable DFP service. This configuration allows DNS queries to fall back to the specified server(s).

For information, see Configuring DNS Forwarding Proxy Settings.