Azure Firewall: DNS, DNS proxy and FQDN filtering

Did you know that in Azure Firewall it is possible to do custom DNS filtering, using your Azure Firewall as a DNS proxy and even create rules based on FQDN (for non-HTTP/S and non-MSSQL protocols).

Since its launch in September 2018, Azure Firewall has been built to use Azure DNS and securely ensure outbound dependencies. Custom DNS allows you to configure Azure Firewall to use your own internal DNS by configuring one or more DNS servers. With FQDN filtering in application rules, we are not dependent on a single IP but rather a DNS pointer, which resolves to one or more IPs.

