
Microsoft

Microsoft DNS
Microsoft DNS Server is a Windows Server role that provides domain name resolution services for Active Directory and network resources. DNS analytical and audit logs capture every DNS query and response processed by the server, providing visibility into all name resolution activities across the network.
DNS logs are invaluable for security monitoring as they reveal communication with malicious domains, command-and-control callbacks, data exfiltration via DNS tunneling, domain generation algorithm (DGA) activity, and internal reconnaissance. Since virtually all network communications begin with a DNS lookup, these logs provide a comprehensive view of network activity that other data sources may miss.
Sophos Products
Sophos MDR/XDR Integrations
Partner Technology
Network & Infrastructure Security
Solution Category
Sophos MDR/XDR Integrations