Comments

  • Gregg: Exactly and that is why the whole concept fails. I was incorrectly assuming that more than the IP address was inspected by the firewall in this process - but seemingly it is not. David
  • Totally clear now. Since DNS forward lookup only grabs the A and CNAME records and really has no idea that holder of the domain is using a Microsoft 365 system there is no correlation between the two and what I was hoping would be helpful is totally useless in this instance. Only if the domain had its own exclusive IPs for…
  • Bruce: I almost have it. I get that there is no domains coming through to the logs, but the exceptions allow for FQDN so am I good to make an exception on the domain as the documentation offers even though I cannot see it via the logs? It seems odd that the filter would be able to allow it through based on a domain that it…