DNS (domain name system) security solutions are used to secure DNS servers and the websites they support. These tools redirect end-user web traffic through filters capable of identifying malware signatures and other characteristics of potentially dangerous websites and media. DNS security solutions provide IT personnel with tools to classify websites, categorize users, group devices, and customize usage policies. Companies use these tools to protect their employees’ endpoint devices and their own servers by blocking dangerous content, media, and websites. They can also be used to prevent employees from accessing unapproved content, such as adult or streaming sites, in the workplace.
DNS-based attacks have a variety of impacts and can cause significant disruptions. To combat this, DNS security software also possesses monitoring capabilities to identify unauthorized or malicious bots that may be capable of disrupting server performance, service availability, and network connectivity.
Many DNS protection solutions are capable of detecting and mitigating distributed denial of service (DDoS) attacks. DDoS attacks may target DNS servers but can attack virtually any kind of computer or network resource. DNS protections may not be able to protect against all kinds of DDoS attacks. DDoS-specific solutions include cloud DDoS mitigation software and DDoS protection software.
To qualify for inclusion in the DNS Security category, a product must:
Identify and block high-risk traffic at the DNS level
Monitor traffic for dangerous sites and scan content for malware
Facilitate the classification of end users, endpoints, and digital content