Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

How to find DNS querys from LAN zone to WAN Zone

Hello, I need to see the DNS queries generated from my LAN zone to the WAN zone of the XG Firewall.

Through the DHCP of the firewall I am assigning the same Firewall as the DNS server. But I cannot identify or find anything in the logs or reports that gives me a list of the queries made by the devices.

Any ideas?


This thread was automatically locked due to age.
Parents Reply Children
  • Thanks, that work for me. But I still confuse on the fact that we can log anything else (even on data lake) but not log the DNS querys.

  • Think about the amount of data you would have to store. A client can potentially bring up more than one request per second (easily). If you start to log this kind of data within a product, this will end up in a "large log". Let put it like that. DNS works with TTLs, so if you have to query the same DNS all the time, you have to store this as well, because it could potentially change etc. So there is no end in storing data for "little use". 

    __________________________________________________________________________________________________________________