Help us improve your experience.

Let us know what you think.

Do you have time for a two-minute survey?


About the DNS Security and ETI Policy Page

To access this page, click Configure > Firewall Policy > DNS Security & ETI Policy.

Domain Name System (DNS) security provides an additional layer of protection between a user and the internet by blocklisting unwanted sites and filtering out unwanted content. Encrypted traffic insights (ETI) detect malicious threats hidden in encrypted traffic without intercepting and decrypting the traffic.

Tasks You Can Perform

You can perform following tasks from this page:

Field Descriptions

Table 1 provides guidelines on using fields on the DNS security and ETI policy page.

Table 1: Fields on the DNS Security & ETI Policy Page




Specifies the name for the DNS Security policy. The name must be a unique string of alphanumeric and special characters; 63-character maximum. Special characters such as < and > are not allowed.

Source Zone

User traffic received from the zone.

Destination Zone

The destination zone of the log.

DNS Security and ETI Profile

Specifies the DNS Security and ETI profile.


The devices on which the DNS Security and ETI policy is published.

Publish State

Displays the status of the DNS security and ETI policy configuration.


Domain in which the DNS Security and ETI policy is created.