The new docs.trellix.com features a modernized UI and AI-powered conversational search. Content is currently available in English, with additional languages launching in mid-October 2026. We hope you enjoy the updated experience.

Block DNS traffic

Prev Next

To refine firewall protection, you can create a list of FQDNs to block. Firewall blocks connections to the IP addresses resolving to the domain names.

Task
  1. Select MenuPolicyPolicy Catalog, then select Endpoint Security Firewall from the Products list in the left pane.

  2. From the Category list in the right pane, select Options.

  3. Click the name of an editable policy.

  4. Under DNS Blocking, click Add.

  5. Enter the comma-separated FQDN of the domains to block, then click Save.

    You can use the * and ? wildcards. For example, *domain.com.

    Duplicate entries are removed automatically.

    Note

    If the firewall host has not initiated any DNS queries for the blocked domains or FQDN, the DNS blocking and FQDN-based rules do not work.

  6. Click Save.