Why Protecting DNS server through AWS DNS Firewall May Not Be a Good Idea in Practise

Zhimin Wen
5 min readMar 16, 2024
Generated by Gemini

I am having an outbound DNS resolver to perform conditional DNS forwarding to an internal DNS server. To protect the DNS server, one idea is to implement the DNS firewall to allow only some specific domain to go through while block all the disallowed domains.

--

--