Ability to use Domain in Firewall Rules

  • Yes
  • No
0 voters

Use for example - Allow TCP Out to port 853 to example.com

This might require https filtering and blocking DNS over TLS in this example maybe better to just block the site in general but will be interesting to see if others find this useful.

1 Like

Intercept DNS request from Program to OS/DNS Client.
Have Comodo resolve DNS.

Hostname functionality is available in firewall rules; do you mean it does not work for domains, or only not for encrypted traffic? It would be great if CIS could also act as a DNS firewall that next to the A-records could also do and filter CNAME lookups to prevent cloaking. I agree with @EricCrypid that https filtering is unwished, so this would then of course only work for unencrypted DNS traffic.