Endpoint web requests can reach harmful domains through DNS, HTTP or HTTPS traffic, including encrypted DNS over HTTPS connections. IT teams may also need to understand which cloud applications endpoints are accessing and apply restrictions to specific applications.
Heimdal DNS Security Endpoint processes web requests through a local DNS service, using threat intelligence and machine learning to identify and block malicious or potentially malicious destinations. It also supports allow and block lists, associates threats with processes, and discovers cloud applications for access control.
The product is suited to filtering endpoint DNS and web traffic for on-site and remote users, including VPN connections and DNS over HTTPS traffic. Process correlation and forensic information provide context for investigating identified threats.
It is also useful where organisations need an endpoint-derived record of cloud application use, including application vendors, endpoints and risk levels, with the option to control access or add applications to block lists.
Heimdal DNS Security Endpoint is intended for endpoint environments using on-site or remote connections, including VPN use and IPv4 or IPv6 traffic. It filters endpoint DNS, HTTP and HTTPS traffic rather than providing broader endpoint security on its own.
Reduces endpoint connections to malicious or potentially malicious web destinations.
Extends filtering to DNS over HTTPS traffic rather than relying on unencrypted DNS alone.
Links identified threats to associated processes and forensic information.
Provides a record of cloud applications accessed from endpoints and their risk levels.
Apply DNS-based filtering to endpoint requests for web destinations.
Filter endpoint traffic for users working remotely or through VPN connections.
Review identified threats alongside their associated endpoint processes.
Discover cloud applications and add selected applications to access block lists.
Armstrong can discuss endpoint DNS filtering requirements, including the need to filter DNS over HTTPS traffic and manage access to discovered cloud applications. Discovery meetings help establish whether the product's endpoint-focused controls fit the organisation's existing security arrangements.