Forum Discussion
Petri-X
Mar 27, 2020Bronze Contributor
Is it possible to control DNS client on Win 10
Hi, As we all know, the DNS is one of the services which is leaking information out from the organizations. I have read some plans to have possibilities to do filtering how much DNS servers are leak...
Petri-X
Apr 02, 2020Bronze Contributor
Oh! I was sure to get quick solution for this from here 🙂
Just though (or wild idea), as Windows defender cannot filter unwanted DNS queries (?). Would it be the only option to install a local DNS server to all of the workstations and force a dns client to use that. In the local DNS server we could define forwarders for the internal domains. This way internal queries are not sent out.
For not internal DNS queries, we need to query the DNS servers from the DHCP and forward the rest of the DNS queries to those DNS servers.
arexhaj
May 18, 2020Copper Contributor
Hi there
I am still thinking about a proper solution... But frankly speaking, it is difficult 🙂
However, if you route all the traffic through the VPN you could leave the dns servers blank and only add the url(s) needed for the vpn connection to the local hosts file. Everything else would then be resolved via the DNS servers provided through the vpn connection.
But either way (hosts file oder local dns resolver) seems to be more like a workaround than a proper solution...