IDS/IPS DNS enabled, causing connection drops

Hello.
Using the ER8411 router controlled by an OC200 device, we enabled IDS/IPS DNS, along with the rest of the Threat Categories.
We have verified that with DNS enabled, some wired users experience internet disconnections caused by this feature. These problems typically last a few minutes, but during the problem, users are unable to browse the internet.
After disabling DNS filtering, this problem has not occurred again.
Regards.
- Copy Link
- Subscribe
- Bookmark
- Report Inappropriate Content
I also use an ER8411 and experience the same thing, I had to turn off DNS in the IPS configuration, after I disabled DNS I have not had any problems with IPS,
- Copy Link
- Report Inappropriate Content
Thank you for your feedback about this feature.
To understand this issue, would you please share us the following info:
1. Some screenshots showing the IDS/IPS DNS config ;
2. Does this only affect certain clients? If yes, what kind of clients are they?
3. How often will the disconnection issue happen?
4. The firmware version of the ER8411 and the controller you are using.
- Copy Link
- Report Inappropriate Content
Vincent-TP wrote
Thank you for your feedback about this feature.
To understand this issue, would you please share us the following info:
1. Some screenshots showing the IDS/IPS DNS config ;
2. Does this only affect certain clients? If yes, what kind of clients are they?
3. How often will the disconnection issue happen?
4. The firmware version of the ER8411 and the controller you are using.
1.
2. Log is on my pc, but not many pc in my house. for the most IoT and phone and media streamer.
3. unsure, disabled DNS when I figure out what happend. but enabled again for test and the same thing happend
4. 1.2.3, I now use 1.3.0 and I will enable DNS again to se hvat happend with the new version.. I give you more info if it happend again.
- Copy Link
- Report Inappropriate Content
This is the current configuration.
Out of a total of 50 users, this has happened to many. I can't specify. All connected via Ethernet.
Disconnections occur several times a day.
The er8411 firmware version is 1.2.3 Build 20241121 Rel.21021
- Copy Link
- Report Inappropriate Content
DShield is also problematic - it can interfere with apple devices who use icloud proxy serivces.
I cant say i have had any issues with the DNS part of IDS at all, but i do run the DNS proxy cache on my 8411 and have set it to DNS override in the proxy settings to cloudflare and opendns family servers.
- Copy Link
- Report Inappropriate Content
I had emailed you to collect the config file of your controller.
We would like to test this locally. Please kindly check your email inbox. Thanks.
- Copy Link
- Report Inappropriate Content

Information
Helpful: 0
Views: 89
Replies: 6
Voters 0
No one has voted for it yet.