Protecting againstmaliciousandmisconfigured domainsrequires two critical services:
Advanced Threat Prevention
Provides signature-based and advanced analysis to identify threats, including DNS-based attacks.
“Advanced Threat Prevention enables the NGFW to detect and prevent exploits and malware-based communications, including those leveraging DNS.”
(Source: Advanced Threat Prevention)
Advanced DNS Security
Specifically designed to detect and sinkhole malicious and misconfigured DNS queries.
“DNS Security uses real-time intelligence to block DNS-based threats, protect against data exfiltration, and automatically sinkhole suspicious domain lookups.”
(Source: DNS Security)
Bycombiningthese services in security policies, NGFWs ensure robust protection against domain-based threats and misconfigurations.