Events of the DNS Security subsystem

The table below lists descriptions of the main events of the DNS Security subsystem that are logged by Kaspersky NGFW. the same event recording format is used for UDP and TCP.

Events of the DNS Security subsystem

Event description

Severity

DNS query received from client for processing by DNS Security

INFO (informational)

Result of scanning domains in client's DNS query for threats

A separate event is created for each domain.

INFO (informational)

DNS response received from DNS server for processing by DNS Security

INFO (informational)

Result of scanning IP addresses from DNS server response for threats

A separate event is generated for each domain/IP address pair from the DNS server response.

INFO (informational)

DNS Security successfully enabled

INFO (informational)

DNS Security databases successfully loaded

INFO (informational)

Error processing client DNS request

The event text includes an explanatory error message. Possible error types:

  • Incorrect DNS query format
  • Local database scan error

ERROR (error)

Error processing DNS server response

The event text includes an explanatory error message. Possible error types:

  • Incorrect DNS response format
  • Local database scan error

ERROR (error)

Error enabling DNS Security

ERROR (error)

Error loading DNS Security database

ERROR (error)

Page top