Skip to main content
Solved

DNS Protection and SSL/TLS Inspection


Forum|alt.badge.img+4

For home-based teleworkers (in particular) who do not have a hardware firewall doing SSL/TLS Deep Packet Inspection, does Webroot DNS Protection mitigate most of the threats that TLS Inspection would likely catch?  
 

Best answer by dstokes1

@gru_dyates The short answer would be YES for our Business product, but there is a lot more information at the following page and it is worth reading about how our DNS Agent works: DNS Web Filtering with Cloud Based Protection | Webroot

View original
Did this help you find an answer to your question?

4 replies

Forum|alt.badge.img+20
  • Retired Webrooter
  • 802 replies
  • April 26, 2021

Hey there David,

I’m going to ping one of our business product specialists to see if he has an answer for your question

@dstokes1 - Does Webroot DNS offer this kind of protection?


dstokes1
  • 23 replies
  • Answer
  • April 26, 2021

@gru_dyates The short answer would be YES for our Business product, but there is a lot more information at the following page and it is worth reading about how our DNS Agent works: DNS Web Filtering with Cloud Based Protection | Webroot


Forum|alt.badge.img+4
  • Author
  • New Voice
  • 56 replies
  • April 27, 2021

Thanks for the response!  I had assumed that Webroot DNS protection would mitigate most of the types of things that would be filtered by Deep Packet Inspection, as the sites dishing out the questionable material would be blocked.  All things being roughly equal, I much prefer blocking by originator than going through the packet inspection process. It feels inherently safer and more comprehensive, also.


dstokes1
  • 23 replies
  • April 27, 2021

@gru_dyates  The other benefit with our DNS Agent is the entire “discussion” from our agent to our DNS resolvers is encrypted during the look-up and response, so not only is it secure, it features privacy, as well. DoH (DNS over HTTPS) at the agent level, so browser, applications, any computer related DNS activity is fully protected. More information on DoH can be found in that link from my previous post, too.


Reply