Operation: DNS List
Description: To configure Domain Name System(DNS). DNS translates domain names to IP addresses.  

Sample Configuration
<DNS> <DNSProtection> <Enabled>True/False</Enabled> <Fallback>True/False</Fallback> </DNSProtection> <DNSProtocol>DNSOverHTTPS/UnencryptedDNS</DNSProtocol><!--This tag is required. If not provided, the default value is "UnencryptedDNS" --> <IPv4Settings><!--This tag should be used only when <DNSProtocol>has value "UnencryptedDNS" --> <ObtainDNSFrom>DHCP/PPPoE/Static</ObtainDNSFrom> <DNSIPList><!--This tag should be used only when <ObtainDNSFrom>has value "Static" --> <DNS1>ipaddress</DNS1> <DNS2>ipaddress</DNS2> <DNS3>ipaddress</DNS3> </DNSIPList> </IPv4Settings> <IPv6Settings><!--This tag should be used only when <DNSProtocol>has value "UnencryptedDNS" --> <ObtainDNSFrom>DHCP/Static</ObtainDNSFrom> <DNSIPList><!--This tag should be used only when <ObtainDNSFrom>has value "Static" --> <DNS1>ipaddress</DNS1> <DNS2>ipaddress</DNS2> <DNS3>ipaddress</DNS3> </DNSIPList> </IPv6Settings> <DNSOverHTTPS><!--This tag should be used only when <DNSProtocol>has value "DNSOverHTTPS" --> <DNSServer1> <!--This tag is required when <DNSProtocol>has value "DNSOverHTTPS" --> <URL>url</URL> <IPv4Address>ipaddress</IPv4Address><!--Either IPv4Address or IPv6Address should be provided --> <IPv6Address>ipaddress</IPv6Address><!--Either IPv4Address or IPv6Address should be provided --> </DNSServer1> <DNSServer2> <URL>url</URL> <IPv4Address>ipaddress</IPv4Address><!--Either IPv4Address or IPv6Address should be provided --> <IPv6Address>ipaddress</IPv6Address><!--Either IPv4Address or IPv6Address should be provided --> </DNSServer2> <DNSServer3> <URL>url</URL> <IPv4Address>ipaddress</IPv4Address><!--Either IPv4Address or IPv6Address should be provided --> <IPv6Address>ipaddress</IPv6Address><!--Either IPv4Address or IPv6Address should be provided --> </DNSServer3> <FallbackToUnencryptedDns>True/False</FallbackToUnencryptedDns> </DNSOverHTTPS> <DNSSecProtection>True/False</DNSSecProtection> </DNS>



Parameter Mandatory Default Description
ObtainDNSFromNo  
Click to override the appliance DNS with the DNS address received from DHCP Server or PPPoE Server.
ObtainDNSFrom confines to:
  • Type is 'SCALAR'.
  • Only 'Static', 'DHCP', 'PPPoE' are allowed.
DNS1No  
Click to provide Static DNS Address 1.
DNS1 confines to:
  • Type is 'SCALAR'.
  • Datatype is 'IPADDRESS'.
  • IP Class other than 'MULTICAST', 'RESERVED', 'UNSPECIFIED', 'BROADCAST', 'LINKLOCAL' is allowed.
DNS2No  
Click to provide Static DNS Address 2.
DNS2 confines to:
  • Type is 'SCALAR'.
  • Datatype is 'IPADDRESS'.
  • IP Class other than 'MULTICAST', 'RESERVED', 'UNSPECIFIED', 'BROADCAST', 'LINKLOCAL' is allowed.
DNS3No  
Click to provide Static DNS Address 3.
DNS3 confines to:
  • Type is 'SCALAR'.
  • Datatype is 'IPADDRESS'.
  • IP Class other than 'MULTICAST', 'RESERVED', 'UNSPECIFIED', 'BROADCAST', 'LINKLOCAL' is allowed.
DNS1No  
Provide IPv6 DNS Server Address 1.
DNS1 confines to:
  • Type is 'SCALAR'.
  • Datatype is 'IPADDRESS6'.
  • IP Class other than 'MULTICAST', 'UNSPECIFIED', 'LINKLOCAL' is allowed.
DNS2No  
Provide IPv6 DNS Server Address 2.
DNS2 confines to:
  • Type is 'SCALAR'.
  • Datatype is 'IPADDRESS6'.
  • IP Class other than 'MULTICAST', 'UNSPECIFIED', 'LINKLOCAL' is allowed.
DNS3No  
Provide IPv6 DNS Server Address 3.
DNS3 confines to:
  • Type is 'SCALAR'.
  • Datatype is 'IPADDRESS6'.
  • IP Class other than 'MULTICAST', 'UNSPECIFIED', 'LINKLOCAL' is allowed.
DNS Query ConfigurationNo  
Select to choose the DNS Server to be used for resolving domain names.
DNS Query Configuration confines to:
  • Type is 'SCALAR'.
  • Only '0', '1', '2', '3' are allowed.
ObtainDNSFromNo  
Click to override the appliance DNSv6 with the DNSv6 address received from DHCP6 Server.
ObtainDNSFrom confines to:
  • Type is 'SCALAR'.
  • Only 'Static', 'DHCP' are allowed.



Operation   Status   Message
DNS List200
DNS List400
DNS List401
DNS List403
DNS List404
DNS List409
DNS List500


© Copyright Sophos Firewall Limited. All rights reserved.
Sophos Firewall is registered trademarks of Sophos Firewall Limited and Sophos Firewall Group. All other product and company names mentioned are trademarks or registered trademarks of their respective owners.
No part of this publication may be reproduced, stored in a retrieval system, or transmitted, in any form or by any means, electronic, mechanical, photocopying, recording or otherwise unless you are either a valid licensee where the documentation can be reproduced in accordance with the license terms or you otherwise have the prior permission in writing of the copyright owner.