Help us improve your experience.

Let us know what you think.

Do you have time for a two-minute survey?

 
 

Enable DNS Tunnel Detection

To enable DNS tunnel detections on SRX Series Firewalls, configure tunneling option at [edit services security-metadata-streaming policy dns-policy dns detections] hierarchy level.

Attach the security-metadata-streaming policy to a security firewall policy at zone-level.

set security policies from-zone zone-name to-zone zone-name application-services security-metadata-streaming-policy dns-policy

Use the show services security-metadata-streaming dns statistics command to view the DNS statistics of security metadata streaming policy.

Use the show services dns-filtering cache command to view the details within the DNS cache.

Note:

DNS tunnel detection is supported on Junos OS 21.2R1 and later releases.