Description
A DNS ALG profile configures extended processing of DNS traffic.
Properties
- Name
- Specifies a symbolic name for the DNS profile. (Identifier)
- MaxSessions
- Maximum number of concurrent sessions. (Default: 1000)
- MaxUDPQueryLength
- Maximum payload size in DNS queries over UDP. (Default: 512)
- MaxUDPResponseLength
- Maximum payload size in DNS responses over UDP. (Default: 512)
- MaxTCPQueryLength
- Maximum message size in DNS queries over TCP. (Default: 4096)
- MaxTCPResponseLength
- Maximum message size in DNS responses over TCP. (Default: 4096)
- RecursionDesiredFlag
- Policy for handling the Recursion Desired flag in DNS messages. (Default: Allow)
- MaxQuestionEntries
- Maximum number of question entries. (Default: 1)
- AllowedClasses
- List of allowed classes. (Default: IN)
- AllowedTypes
- List of allowed types. (Default: <All>)
- Translations
- Set to a DNSTranslationList to enable DNS translations of addresses in DNS payload. (Default: <disabled>)
- TranslationsOnDNSSEC
- Force DNS translations to modify addresses even if DNSSEC is detected in a DNS packet. This will invalidate the signature,
but for clients not performing their own validation it can still be useful. (Default: No)
- ScrambleQueryID
- Mitigation against cache poisoning. Scrambles message IDs in queries sent over UDP, and de-scrambles them before delivering
the reply. (Default: Yes)
- Comments
- Text describing the current object. (Optional)