Updated Date: 07/07/2026
Create a custom DNS profile to firewall DNS traffic
Ensure that you have a DNS security profile created (Security > Protocol Security > Security Profiles > DNS) before you configure this system DNS profile.
You can create a custom DNS profile to configure the BIG-IP system firewall traffic through the system.
-
On the Main tab, click Local Traffic > Profiles > Services > DNS.
The DNS profile list screen opens.
-
Click Create.
The New DNS Profile screen opens.
-
In the Name field, type a unique name for the profile.
-
In the General Properties area, from the Parent Profile list, accept the default dns profile.
-
Select the Custom check box.
-
In the DNS Traffic area, from the DNS Security list, select Enabled.
-
In the DNS Traffic area, from the DNS Security Profile Name list, select the name of the DNS firewall profile.
-
Click Finished.
Assign the custom DNS profile to the protected object that handles the DNS traffic that you want to firewall.