roc-dns

This is an old revision of the document!


To get access to ROC-DNS, you must provision a ROC and then login to the Threat Detection dashboard. Please check th

Our enterprise level ROC-DNS is based on state of the art threat detection to ensure that your endpoints are protected. It uses its threat algorithm analysis to block malicious or suspicious domains. It is made up of a combination of opensource and proprietary solutions.

Getting Started with DNS Management

Once you login, you will see a quick overview of the DNS dashboard. Here you'll see the number of connected clients, queries blocked, and the number of the domains on the blocklist. You'll also see client and query activity over the last 24 hours.

Query Logging

You will be able to see specific queries. The Privatise VPN agent makes the data anonymous, but you will be able to break it down on a per group or per company basis.

Some of your company clients might ask for query logging to be disabled for privacy reasons. You can do that under settings.

Allow & Disallow / Whitelisting & Blacklisting

You can whitelist and blacklist domains directly from the dashboard. They work the same way, with the only difference being that whitelisting allows domains through the filter, and blacklist rejects domains through the filter.

Whitelisting is useful if you see in the Audit Log that a site was blocked that you don't want to block. Blacklisting is useful for banning specific websites for whatever reason.

You can whitelist or blacklist a domain by doing the following:

Under whitelisting or blacklisting, enter the domain you want to whitelist or blacklist.
Make sure to add domain as wildcard

Then click the “Add to whitelist” or “Add to blacklist” button depending on which one you are doing.

Audit Logs, Query Lists, Debugging

You will be able to create audit logs, query lists, and debugging from the

  • roc-dns.1603909136.txt.gz
  • Last modified: 2020/10/28 18:18
  • by rafi