Hi all,
I am kind of fresh towards the implementation of DoH and DoT in infoblox, not sure if i am asking the question the correct way.
Currently my customer environment is using Infoblox NIOS as their internal recursive DNS server + authoritative DNS zones (example localdomain.com) . They have just been asking to enable DoT and DoH on Infoblox, but i have doubt on this.
As far based on my searching, Infoblox uses ADP license to sort of "block" DoT and DoH DNS signature only, am i right?
Customer expectation is to allow internal users able to use DoT and DoH for external FQDN and Internal FQDN (localdomain.com) DNS resolution from internal users. I somehow not quite sure if Infoblox support this kind of setup.
With the implementation of both protocol, DNS traffic is no longer visible in UDP 53 packets, so i wonder how infoblox Auth and Recursive DNS still able to works for localdomain resolution?
Thanks for your feedback in advanced!