Engineering capabilities
- Policy design per site, group and device
- Roaming client rollout on laptops and mobiles
- Category and threat-feed tuning to cut false positives
- Reporting on blocked requests and repeat offenders
Security & DNS
Recursive DNS filtering that blocks malware, phishing and command-and-control domains before a connection is ever made, applied to offices and roaming devices.
Every lookup is answered by a filtering resolver, so known malicious destinations fail to resolve before any connection is attempted.
Roaming clients keep policy off-network, where most incidents actually start.
Policy can differ by site, group or device class.
Threat feeds are tuned so blocking does not disrupt legitimate business tools.
Hard-coded resolvers on devices are blocked so filtering cannot be sidestepped.
No. It removes a large share of commodity threats early and cheaply, but it does not inspect files or process behaviour u2014 endpoint protection still does that.
An exception workflow is set up on day one so a blocked business tool is released in minutes rather than becoming a reason to disable filtering.
Not where devices are managed: hard-coded public resolvers are blocked at the firewall and encrypted DNS is pointed at the filtering service.
Send the environment details and get an engineered proposal with assumptions, risks and a rollback path.