Knowledge Base
Browse Docs
  • Introduction
    1. DefensX
    2. DNS & Web Filtering
    3. Zero Trust Files
    4. Zero Trust Credentials
    5. ADWare Protection
    6. Remote Browser Isolation
    7. Secure Browser Extension
    8. Secure Mobile Browser
  • Management
    1. Role-Based Access Control
  • Deployment
    1. Deployment via RMM
    2. Operating System Agent
    3. Deployment via GPO
    4. Deployment via Intune
    5. VDI and Terminal Servers
    6. Windows Manual Deployment
    7. Mac MDM Deployment
    8. Mac Manual Deployment
    9. Network Deployment
    10. Secure Mobile Browser
    11. Bypass Option
    12. AI Protections
    13. SaaS Restrictions
    14. Bookmark Manager
  • Secure Access (ZTNA)
    1. Configuration
  • Integrations
    1. Azure AD
    2. Identity Providers
    3. SIEM
  • Policy Management
    1. Configuring Policies
    2. Configuring Consents
  • Questions & Answers
    1. Licensing
    2. Incognito Mode
    3. Onboarding
    4. Active Directory
    5. Group Synchronization
    6. Agent
    7. Conflicting Softwares
    8. Reporting
    9. Virtual Desktops
    10. Using the Backend
    11. DNS & Web Filtering
  • Training Videos
    1. Onboarding Videos
    2. Attack Scenarios
    3. MSP Admin Training Series
  • MSP Automation
    1. Overview
    2. External Notifications
    3. Integrations
    4. Partner API
ONLINE DOCUMENTATION

VPN and DefensX

VPN’s or split VPN solutions create a point to network or network to network access for your end-points. This approach creates conflict with agents (roaming clients) which in most of the cases binds to all network adapters and changes DNS settings on the computer to 127.0.0.1 (localhost) or similar loopback address. Thats why DNS layer filters with roaming clients won’t work with most of the VPN clients.

Another problem with the DNS agents and VPN solutions is most of the VPN solutions blocks all other DNS requests going out from the network interfaces other than the VPN itself. Even more, according the VPN profile configuration some of them only allow DNS requests to the servers which are provided by the VPN solution and blocks DNS requests going to other DNS servers completely.

Unlike other DNS based solutions in the market, DefensX Operating System Agent doesn’t have any conflicts with the VPN solutions. We have our unique approach to solve the problems with the VPNs at the kernel level.

DefensX agent includes our own kernel driver (which is signed by the Microsoft) and has the capability of processing DNS request at the kernel level. Driver automatically loaded by our agent and it enforces DefensX DNS policies in system wide. It doesn’t change your DNS settings, you can verify it with the utilities like nslookup or ipconfig in the command line.

www.defensx.com
Secure Industries, Inc 101 Avenue of The Americas, Floor 9 New York, NY 10013