Juniper Advanced Threat Prevention Cloud (ATP Cloud)
-
Support to configure DNS cache entries (SRX300, SRX4200, and SRX4600)—Starting in Junos OS Release 22.2R1, you can configure a list of static benign and command-and-control (C2) domains in the DNS cache to take immediate action on configured domains.
To configure benign and C2 domains, run the commands
set services security-metadata-streaming dns-cache custom-list benign < domain >
andset services security-metadata-streaming dns-cache custom-list c2 <domain >
To view the benign and C2 entries in the DNS cache, use the commands
show services dns-filtering cache summary
,show services dns-filtering cache c2
, andshow services dns-filtering cache benign
.[See security-metadata-streaming and show services dns-filtering cache.]