Domain Name System (DNS) snooping inspects and caches DNS responses in real-time. When you enable DNS snooping, the system captures DNS response packets as traffic traverses the network, extracts relevant DNS records, and builds a local cache mapping of Fully Qualified Domain Names (FQDNs) to IP addresses. The system keeps these mappings accurate and current for IPv4 or IPv6 traffic. Use this feature to implement real-time DNS mapping updates in environments with frequently changing DNS entries. Configuration is possible with relevant settings under security policies.
| Product / Application | Software | Introduced Release |
|---|---|---|
| vSRX | Junos OS | 25.2R1 |
| cSRX | Junos OS | 25.2R1 |
| SRX1500 | Junos OS | 25.2R1 |
| SRX1600 | Junos OS | 25.2R1 |
| SRX2300 | Junos OS | 25.2R1 |
| SRX4100 | Junos OS | 25.2R1 |
| SRX4120 | Junos OS | 25.2R1 |
| SRX4200 | Junos OS | 25.2R1 |
| SRX4300 | Junos OS | 25.2R1 |
| SRX4600 | Junos OS | 25.2R1 |
| SRX4700 | Junos OS | 25.2R1 |
| SRX5400 | Junos OS | 25.2R1 |
| SRX5600 | Junos OS | 25.2R1 |
| SRX5800 | Junos OS | 25.2R1 |