The new docs.trellix.com features a modernized UI and AI-powered conversational search. Content is currently available in English, with additional languages launching in early November 2026. We hope you enjoy the updated experience.

dnsprotect

Prev Next

This command, when executed, performs the following tasks:

  • Adds new DNS Spoof protection IP address

  • Deletes existing DNS Spoof protection IP addresses (IPv4, IPv6 or both) from the Protected Server List (PSL)

  • Re-lists the DNS spoofing protection IP address

Syntax:

dnsprotect <add/delete/> <ipv4/ipv6> <IP address>

While using the <resetlist> parameter, use the following syntax: dnsprotect <resetlist> <ipv4/ipv6/all>

Parameter

Description

add

Adds a new DNS spoofing protection IP address

delete

Deletes an existing DNS spoofing protection IP address

resetlist

Resets the list the DNS spoofing protection IP address

ipv4

Indicates that the IP address is for IPv4 packet

ipv6

Indicates that the IP address is for IPv6 packet

all

Indicates that the reset list of the existing DNS spoofing protection IP address is for both IPv4 and IPv6.

Example:

The following example shows the dnsprotect command used for adding the DNS Spoof protection IP address for IPv4.

dnsprotect add ipv4 157.125.202.255.

The following example shows the dnsprotect command used for reset listing of DNS Spoof protection IP address for all the IP addresses (IPv4 and IPv6).

dnsprotect resetlist all

Note

This command does not perform on IPv6 packets that have a routing header.