Forum Discussion

AKH's avatar
AKH
Icon for Joining the Conversation rankJoining the Conversation
1 month ago

DNS Forwarding When Overriding Account-Level DNS Settings

Since I cannot leave comments on the KB, I am writing this down for others who may face the same issue.

https://support.catonetworks.com/hc/en-us/articles/12710391725981-Centralized-Management-of-SDP-User-DNS-Settings-with-the-DNS-Settings-Policy#UUID-13385199-3a2b-70d3-5da2-ea4ebb98e5dd

The article lists the following under Known Limitations:

DNS Forwarding is not supported if you override Account Level DNS settings.

This known limitation applies when using an untrusted DNS server.
If you use a trusted DNS server (such as 8.8.8.8), DNS Forwarding can still be used even when overriding the account‑level settings.


1 Reply

  • michaelsaw's avatar
    michaelsaw
    Icon for Cato Professional Services rankCato Professional Services

    Hi AKH, 

    Appreciate your feedback.

    You mentioned: "If you use a trusted DNS server (such as 8.8.8.8), DNS Forwarding can still be used even when overriding the account‑level settings.", are we referring to per-site DNS settings? ___

    Would it be clearer if we add additional details on the statement such as:  "DNS Forwarding is not supported if you override Account Level DNS settings, in scenarios, such as per-site levels..."

    Cheers