We launched Sophos DNS Safety for networks final 12 months, and it’s now near serving its 600 billionth question. Since then, lots of you could have requested for a model that can be utilized on roaming endpoints and for added insights into DNS requests together with DNS over HTTPS.
At the moment, we’re excited to launch the early entry program (EAP) for DNS Safety on Home windows endpoints with enhanced visibility into which customers and gadgets are making DNS queries and assist for HTTPS.
As , Sophos DNS Safety for Endpoints allows an added layer of clear net safety throughout all ports, protocols, and functions.
Sophos DNS Safety for Endpoints
DNS Safety can now be deployed and enabled in your Home windows endpoint gadgets in Sophos Central. As soon as deployed, the agent intercepts all DNS visitors from applications and apps on the Home windows system and forwards it to the closest DNS Safety resolver by way of DNS over HTTPS. DNS Safety will verify the requests for safety dangers and coverage compliance and permit or block entry accordingly.
DNS Safety insurance policies present a complete set of controls:
- Class-based permit and block guidelines
- Customized area permit and block lists
- Imposing protected search options on Google, YouTube, and different search engines like google and yahoo
Enhanced visibility
All DNS queries originating out of your endpoint gadgets are logged with the consumer and system names. This lets you pinpoint problematic gadgets and goal responses to deal with safety points. It additionally enhances the info obtainable throughout XDR and MDR incident investigations.
Word: system and consumer identities are solely obtainable when used at the side of the Sophos DNS Safety for Endpoints agent and never but for DNS Safety on Sophos Firewall.
DNS over HTTPS for privateness and integrity
Sophos DNS Safety for Endpoints helps DNS over HTTPS for added privateness and integrity. By utilizing a safe, encrypted TLS tunnel, all queries and responses are protected against community snooping and from assaults, reminiscent of DNS cache poisoning, that exploit the open nature of conventional DNS protocols.
HTTPS assist is barely obtainable on DNS Safety for Endpoints at this level, nevertheless it should come to Sophos Firewall within the close to future.
Getting began
Get began at the moment with the early entry program for Sophos DNS Safety for Endpoints on the Sophos Neighborhood.







