Kerio Tech KERIO WINROUTE FIREWALL 6 User Manual

Page 105

Advertising
background image

8.1 DNS module

105

The DNS module configuration

By default, DNS server (the DNS forwarder service), cache (for faster responses to repeated

requests) and simple DNS names resolver are enabled in WinRoute.

The configuration can be fine-tuned in Configuration DNS.

Figure 8.1

DNS settings

Enable DNS forwarder

This option enables DNS server in WinRoute. Without other configuration, any DNS re-

quests are forwarded to DNS servers on the corresponding Internet interface.

If the DNS forwarder service is disabled, the DNS module is used only as a WinRoute’s

DNS resolver.

Warning

If DNS forwarder is not used for your network configuration, it can be switched off. If

you want to run another DNS server on the same host, DNS forwarder must be disabled,

otherwise collision might occur at the DNS service’s port (53/UDP).

Enable cache for faster response of repeated queries

If this option is on, all responses will be stored in local DNS cache. Responses to repeated

queries will be much faster (the same query sent by various clients is also considered as

a repeated query).

Physically, the DNS cache is kept in RAM. However, all DNS records are also saved in the

DnsCache.cfg

file (see chapter

25.2

). This means that records in DNS cache are kept

even after WinRoute Firewall Engine is stopped or the firewall is closed.

Advertising