Overview
Systems on your organization's network should only be using designated internal DNS servers. DNS activity to unauthorized DNS servers could be an indication that a rogue host has been attached to the network or a legitimate host has been compromised. Unusual DNS traffic can also be a sign that a host has been misconfigured. Use this content pack to monitor DNS activity to help detect, monitor, and prevent attacks or other unwanted DNS traffic.
Download Content Pack
Registered ServicePortal users can log in to access the Knowledge Center for further documentation or to download the content pack file manually.