Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
PullThePin
New Contributor

Threat: DNS.TXT.Records.Tunneling how to stop this from being logged for DNS server?

Since we have installed our Fortinet Server and Analyzer over a year ago I have been seeing constant logs indicating the threat of DNS.TXT.Records.Tunneling. The source is the domain controller and the destination is googles DNS 8.8.8.8. To me, it appears that DNS queries sent from end users workstations to the domain controller and then to google are triggering this Application Control alert. How can I stop this specific event to stop filling up my logs and skewing my threat reports?

0 REPLIES 0
Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors