3.22. DNSAlgProfile

Description

A DNS ALG profile configures extended processing of DNS traffic.

Properties

Name
Specifies a symbolic name for the DNS profile. (Identifier)
MaxSessions
Maximum number of concurrent sessions. (Default: 1000)
MaxUDPQueryLength
Maximum payload size in DNS queries over UDP. (Default: 512)
MaxUDPResponseLength
Maximum payload size in DNS responses over UDP. (Default: 512)
MaxTCPQueryLength
Maximum message size in DNS queries over TCP. (Default: 4096)
MaxTCPResponseLength
Maximum message size in DNS responses over TCP. (Default: 4096)
RecursionDesiredFlag
Policy for handling the Recursion Desired flag in DNS messages. (Default: Allow)
MaxQuestionEntries
Maximum number of question entries. (Default: 1)
AllowedClasses
List of allowed classes. (Default: IN)
AllowedTypes
List of allowed types. (Default: <All>)
Translations
Set to a DNSTranslationList to enable DNS translations of addresses in DNS payload. (Default: <disabled>)
TranslationsOnDNSSEC
Force DNS translations to modify addresses even if DNSSEC is detected in a DNS packet. This will invalidate the signature, but for clients not performing their own validation it can still be useful. (Default: No)
ScrambleQueryID
Mitigation against cache poisoning. Scrambles message IDs in queries sent over UDP, and de-scrambles them before delivering the reply. (Default: Yes)
Comments
Text describing the current object. (Optional)