DNS filtering in FortiGate is a security feature designed to protect networks by controlling DNS (Domain Name System) queries and blocking access to malicious or harmful websites. It works by analyzing DNS requests made by users and comparing them to a list of known harmful or inappropriate domains. When a user attempts to access a website, FortiGate checks the domain against its filtering policies and blocks requests to malicious or undesired sites, preventing access before the connection is established.
FortiGate’s DNS filtering is powered by FortiGuard, Fortinet’s global threat intelligence service, which continuously updates its database of risky domains, including those involved in phishing, malware distribution, and botnet activity. This proactive approach helps protect against cyber threats at the DNS level, providing an additional layer of defense for users and devices on the network.
Administrators can configure DNS filtering policies based on categories, such as security threats, adult content, or gambling, or even block specific domains. This flexibility allows businesses to tailor filtering to their needs, whether for securing the network, improving productivity, or enforcing compliance. Additionally, DNS filtering has minimal impact on network performance and can be integrated with other security features like web filtering and firewall policies for a comprehensive security solution.
FortiGate’s DNS filtering provides an effective layer of security by preventing access to harmful or inappropriate websites at the DNS level. By blocking malicious domains and enforcing usage policies, it helps protect the network, improve productivity, and ensure compliance.
With real-time updates and customizable settings, FortiGate DNS filtering offers a proactive and efficient approach to safeguard network users.
DNS filtering blocks access to known malicious domains, preventing users from visiting phishing sites, malware distributors, or other security risks before a connection is made.
By preventing unnecessary or harmful DNS queries from reaching the network, DNS filtering reduces the strain on network resources, enhancing overall performance.
Administrators can create custom filtering policies to block specific categories or individual domains, ensuring tailored security based on organizational needs.
DNS filtering helps enforce corporate policies by restricting access to non-work-related content such as social media, gambling, or adult websites, promoting productivity in the workplace.
DNS filtering operates at the DNS query level, which means it can block harmful sites without significant delays, providing strong security with minimal impact on browsing speed.
Powered by FortiGuard, DNS filtering is continuously updated with the latest threat data, ensuring the system is always prepared to block newly discovered malicious domains.