dns-snooping (Application Servies)
Syntax
dns-snooping;
Hierarchy Level
[edit security policies from-zone name to-zone name application-services],
Description
Enable DNS snooping for the current policy context. When you enable DNS snooping, the system captures DNS response packets as they traverse the network, extracting the relevant DNS records and build mapping of FQDN and IP address in a local cache.
This configuration restricts snooping for the traffic passing through certain zones only.
Configuring DNS snooping at the policy context is not supported if you have already enabled DNS snooping at the global level. To enable DNS snooping , see dns-snooping.
Required Privilege Level
[none specified]
Release Information
Statement introduced in Junos OS Release 25.2R1.