[GH-ISSUE #11] Feature request: Add support for logging DNS queries with dnstap #306

Open
opened 2026-03-15 21:51:22 +03:00 by kerem · 0 comments
Owner

Originally created by @pwrdwnsys on GitHub (Jun 2, 2016).
Original GitHub issue: https://github.com/hickory-dns/hickory-dns/issues/11

It would good to have support for generating dnstap (http://dnstap.info/) logs.

As a use case, in our current configuration the pf firewall redirects all outbound DNS requests to approved internal resolvers running Unbound. Each query is logged to dnstap and is ingested by our SIEM platform which alerts upon abnormal requests. dnstap logs also provide very useful data when investigating an incident.

Originally created by @pwrdwnsys on GitHub (Jun 2, 2016). Original GitHub issue: https://github.com/hickory-dns/hickory-dns/issues/11 It would good to have support for generating dnstap (http://dnstap.info/) logs. As a use case, in our current configuration the pf firewall redirects all outbound DNS requests to approved internal resolvers running Unbound. Each query is logged to dnstap and is ingested by our SIEM platform which alerts upon abnormal requests. dnstap logs also provide very useful data when investigating an incident.
Sign in to join this conversation.
No milestone
No project
No assignees
1 participant
Notifications
Due date
The due date is invalid or out of range. Please use the format "yyyy-mm-dd".

No due date set.

Dependencies

No dependencies set.

Reference
starred/hickory-dns#306
No description provided.