OpenText™ Core DNS Protection

Protective DNS service for modern threats

Protect your users and devices on any network with full control of DNS traffic 

Why DNS protection matters

DNS is the backbone of internet connectivity, and it's a growing target for cyberattacks. With hybrid work expanding and encrypted DNS becoming standard, attackers use DNS resolution to bypass defenses, steal data, and communicate with malicious servers. Without full visibility and control over DNS traffic, you're vulnerable to malware, data loss, and compliance risks. 
 
DNS-based threats are stealthy, fast-moving, and often invisible to legacy security tools. You need a solution that closes these gaps, whether you're in the office, at home, or on public networks, before attackers exploit them. 


Introducing OpenText DNS Protection

OpenText Core DNS Protection is a cloud-native solution that filters every DNS request -- from browsers, app, or background process -- to block threats before they reach your network or device. It stops access to malicious domains, prevents DNS leaks on the fly, and ensures encrypted DNS traffic is resolved only by trusted sources.

Key benefits

  • Prevent malware by blocking access to malicious domains and servers 

  • Stop data exfiltration by cutting off access to Command and Control servers

  • Gain full visibility to all DNS activity with comprehensive logs

  • Deploy in seconds with immediate protection

  • Secure users and devices on any network, even at home

Features & capabilities

  • Centralized policy enforcement to filter all DNS requests

  • Simplified management

    Control encrypted DNS (DoH) by inspecting all HTTPS connections

  • Agent-level awareness to stop unauthorized DNS resolution

  • Dynamic detection of unauthorized DNS servers

  • Filter device DNS requests on any network, ensuring hybrid and remote worker protection

How it works

OpenText Core DNS Protection works by continuously monitoring all DNS traffic for signs of malicious activity. It acts as a type of firewall for all DNS resolution requests, filtering requests against our list of known DNS servers and dynamically identifying unknown DNS servers, blocking harmful queries in real-time.

The solution also provides detailed analytics and reporting, allowing you to gain insights into your DNS traffic and identify potential vulnerabilities. With automated response capabilities, it can quickly mitigate threats, ensuring the security and reliability of your DNS infrastructure.

What our customers say

For our clients with OpenText Core DNS Protection, help desk calls are reduced by almost 40%.

Jason Ballard
IT Solutions Manager
Sedona Technologies

Resources

Data Sheet
OpenText Core DNS Protection

Check out this datasheet to explore key features and benefits of DNS Protection.

 

Solution Overview
OpenText Core DNS Protection Leak Prevention

Get fast, intelligent, and scalable endpoint protection that’s easy to deploy, manage, and built for modern threats.

 

Blog
Evasive DNS tactic is considered national security threat

Read this blog to explore why evasive DNS tactic is considered national security threat

FAQs

Protective DNS is a security service that analyzes DNS requests, comparing them against threat intelligence feeds to block access to malicious domains before a connection is made. By blocking access to harmful domains and logging DNS activity for visibility and investigation, solutions like OpenText DNS Protection can stop multiple stages of cyberattacks (phishing, malware delivery, lateral movement) and even prevent threats before they reach your devices or users.

OpenText DNS Protection acts as a DNS firewall, blocking unauthorized DNS resolution - even at a process-level or from encrypted sources - ensuring all DNS traffic is filtered and logged.

Not at all. OpenText DNS Protection can be quickly deployed across your endpoints with no impact on user experience.

The OpenText DNS Protection agent secures deployed endpoints on any network, enforcing policies and logging DNS activity wherever users go.

OpenText DNS Protection blocks unauthorized DoH/DoT connections while ensuring use of trusted, encrypted DNS resolvers to guarantee the privacy and control of all DNS requests.