<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: DNS Sinkhole question in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/dns-sinkhole-question/m-p/79027#M43114</link>
    <description>&lt;P&gt;Hi all,&lt;/P&gt;
&lt;P&gt;If the Threate prevention subscription is needed for DNS sinkhole ?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;regards,&lt;/P&gt;
&lt;P&gt;Bruce&lt;/P&gt;</description>
    <pubDate>Thu, 02 Jun 2016 16:15:05 GMT</pubDate>
    <dc:creator>Retired Member</dc:creator>
    <dc:date>2016-06-02T16:15:05Z</dc:date>
    <item>
      <title>DNS Sinkhole question</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/dns-sinkhole-question/m-p/76213#M42213</link>
      <description>&lt;P&gt;Can DNS Sinkhole be done with Vwire configuration or does it need to be Layer 3?&lt;/P&gt;</description>
      <pubDate>Tue, 12 Apr 2016 06:36:37 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/dns-sinkhole-question/m-p/76213#M42213</guid>
      <dc:creator>clyde.franklin</dc:creator>
      <dc:date>2016-04-12T06:36:37Z</dc:date>
    </item>
    <item>
      <title>Re: DNS Sinkhole question</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/dns-sinkhole-question/m-p/76220#M42214</link>
      <description>&lt;P&gt;Hey...yes, DNS sinkhole can be configured&amp;nbsp;with vwire also.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 12 Apr 2016 08:37:15 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/dns-sinkhole-question/m-p/76220#M42214</guid>
      <dc:creator>singh</dc:creator>
      <dc:date>2016-04-12T08:37:15Z</dc:date>
    </item>
    <item>
      <title>Re: DNS Sinkhole question</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/dns-sinkhole-question/m-p/76226#M42218</link>
      <description>&lt;P&gt;Hi&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;yes this will work. the firewall will block the DNS and forge/spoof a reply packet containing the sinkhole IP address and send that to the client&lt;/P&gt;</description>
      <pubDate>Tue, 12 Apr 2016 10:28:50 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/dns-sinkhole-question/m-p/76226#M42218</guid>
      <dc:creator>reaper</dc:creator>
      <dc:date>2016-04-12T10:28:50Z</dc:date>
    </item>
    <item>
      <title>Re: DNS Sinkhole question</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/dns-sinkhole-question/m-p/76247#M42231</link>
      <description>&lt;P&gt;Thanks guys!!! My last question is if I have vwire already setup can I just modify antispyware profile to sinkhole on&amp;nbsp; that rule&amp;nbsp; or do I need a actual new zone&amp;nbsp; for sinkhole and a new rule? In vwire how do I test this? I assume I need someone sitting behind the firewall in my lab to try to access a malicous domain? FYI This is internal user to internal DNS setup&lt;/P&gt;</description>
      <pubDate>Tue, 12 Apr 2016 13:43:05 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/dns-sinkhole-question/m-p/76247#M42231</guid>
      <dc:creator>clyde.franklin</dc:creator>
      <dc:date>2016-04-12T13:43:05Z</dc:date>
    </item>
    <item>
      <title>Re: DNS Sinkhole question</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/dns-sinkhole-question/m-p/76303#M42256</link>
      <description>&lt;P&gt;You can configure it in existing security profile.&lt;/P&gt;</description>
      <pubDate>Wed, 13 Apr 2016 06:50:47 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/dns-sinkhole-question/m-p/76303#M42256</guid>
      <dc:creator>santonic</dc:creator>
      <dc:date>2016-04-13T06:50:47Z</dc:date>
    </item>
    <item>
      <title>Re: DNS Sinkhole question</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/dns-sinkhole-question/m-p/79027#M43114</link>
      <description>&lt;P&gt;Hi all,&lt;/P&gt;
&lt;P&gt;If the Threate prevention subscription is needed for DNS sinkhole ?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;regards,&lt;/P&gt;
&lt;P&gt;Bruce&lt;/P&gt;</description>
      <pubDate>Thu, 02 Jun 2016 16:15:05 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/dns-sinkhole-question/m-p/79027#M43114</guid>
      <dc:creator>Retired Member</dc:creator>
      <dc:date>2016-06-02T16:15:05Z</dc:date>
    </item>
  </channel>
</rss>

