PAN-OS

  1. Search for activity on the firewall for queries that have been processed using DNS Security.
    1. Select
      Monitor
      Logs
      Threat
      and filter based on the DNS category, for example,
      ( category-of-threatid eq dns-c2 )
      to view logs that have been determined to be a C2 domain. To search for other DNS types, replace c2 with another supported DNS category (ddns, parked, malware, etc).
    2. Select a log entry to view the details of a detected DNS threat.
    3. The threat
      Category
      is displayed in the
      Details
      pane of the detailed log view. Other relevant details about the threat are displayed in their corresponding windows.

Recommended For You