Configure DNS
The NGFW Engine uses domain name system (DNS) servers to resolve domain names to IP addresses.
Note: This feature requires Internet connectivity.
The NGFW Engine needs DNS resolution to contact services that are defined using URLs or domain names, and to resolve fully qualified domain names (FQDNs) used in policies.
There are two ways to define DNS servers:
- You can create reusable DNS Server elements.
- You can add the IP addresses of DNS servers directly to the NGFW Engine properties.
You can add several DNS servers to the NGFW Engine. The NGFW Engine uses the DNS servers in the order that they are listed. If the first DNS server is not available, the NGFW Engine uses the next DNS server in the list.
Steps
Example
Fields marked with an asterisk are mandatory.
Option | Definition |
---|---|
IP List | The IP addresses of the DNS server. Click to add an IP address. |
Time To Live | Defines how long a DNS entry can be cached before querying the DNS server again. |
Update Interval | Defines how often the DNS entries can be updated to the DNS server if the link status changes constantly. |