DNS policy rule conditions

A DNS policy rule condition is a DNS rule component that

  • allows you to control traffic if a DNS list, feed, or category contains the domain name requested by the client,

  • must be defined in a DNS rule, and

  • applies the configured rule action to traffic regardless of whether you add a global or custom Block or Do Not Block list.

DNS condition behavior

The system applies the configured rule action to the traffic regardless of the list type. For example, if you add the Global Do Not Block List to a rule, and configure a Drop action, the system blocks all traffic that should have been allowed to pass to the next phase of inspection.