Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

XG-Home v18: many DNS request for nothing

Hi,

I have installed the Sophos XG Home editon to be used as central firewall.

First of all, for the moment everthing works fine.

But what I can't belive is, this firewall alone creates per hour 3000 DNS request, for any google, yahoo and some other.

I know this because, any DNS request must going over Pi-Hole.

Why do they need so many DNS requests ?

There is no webproxy configured, or IPS or some other security options for the moment. The setup is only to blocking some Ports, thats for the moment all.

For example at night, the XG alone creates from 0 to 5 around 15.000 requests and for the whole day it's more than 76.800 request.

If I now take a look back to the time before this firewall was up and running, my dns reques over the day was not more than 16.000 and thats on a weekend day.

How can I find out which service creates so many request? Or ask every minutes this domains.



This thread was automatically locked due to age.
Parents
  • Hello,

    There's been a discussion about this 2 year ago, those requests are used by the pre-defined FQDN Hosts for Chromebook SSO, the Firewall does a periodically lookup to populate them with the right IP Address.

    If you don't need them, you can delete them from "Hosts and services" => "FQDN Host", a reminder, you should delete them from the "FQDN Host Group" first.

    Thanks!

  • periodically lookup for every Minute? My understanding for periodically lookup is at least around every 30 min but not so often in under 5 min.

    Sophos should have a configuration for that. It's a firewall and a periodically lookup should configure.

    But thanks for the information.

Reply
  • periodically lookup for every Minute? My understanding for periodically lookup is at least around every 30 min but not so often in under 5 min.

    Sophos should have a configuration for that. It's a firewall and a periodically lookup should configure.

    But thanks for the information.

Children
No Data