cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
Announcements

Community Helping Community

466
Views
0
Helpful
0
Replies
Highlighted
Beginner

Firepower - DNS Inspection for _cisco-uds._tcp.* (Cisco Jabber)

Hello,

 

I am trying to filter DNS request from VPN Clients calling for "_cisco-uds._tcp.*" but when I did the obvious from the Connection Events Tab and trying to add the domain to the global blacklist it says that it is an invalid domain.

grafik.png

Priviously on the old ASA there was a an extra policy-map with regex matching on "_cisco-uds._tcp.*" tied to the global policy-map dns inspection that took care of it.

Since I ran into trouble by adding the domaoin to the global DNS blacklist I also tried it with an custom DNS list and DNS policy without luck.

What would be the best solution to drop/filter the DNS requests from the VPN Clients ?

Best regards,
Thomas

Everyone's tags (3)
CreatePlease to create content
Content for Community-Ad
FusionCharts will render here