SonicOS 8 Rules and Policies for Classic Mode

Table of Contents

Access Rules for DNS Proxy

When DNS Proxy is enabled on an interface, one Allow Access Rule is added automatically with these settings:

  • From Interface and To Interface are the same.
  • Source is Any.
  • Destination is the interface IP.
  • Service is DNS (Name Service) TCP or DNS (Name Service) UDP.
  • Has the same attributes as other MGMT rules:
    • It cannot be disabled.
    • Only the Source IP can be modified to allow a less aggressive source than Any to be configured.

If DNS Proxy over TCP is enabled, another Allow Rule is auto‐added.