On January 16, 2025, the White House issued an executive order (EO) aimed to strengthen and enhance cybersecurity, including the requirement for encrypted DNS protocols that ensure the confidentiality and integrity of DNS traffic.
This requirement recognizes DNS as a critical frontline security control, emphasizing the significance of DNS in cybersecurity defense-in-depth strategy.
Encrypting DNS protocols (like DNS over HTTPS (DoH) and DNS over TLS (DoT)) enhances security by protecting confidentiality and preserving integrity.
FCEB agencies are required to enable encrypted DNS protocols within 180 days on existing clients and servers that support these protocols and additional clients and servers supporting such protocols.
Implementing encrypted DNS protocols require additional computing resources, and agencies should ensure that their DNS servers have sufficient resources to handle the query load.
The use of encrypted DNS protocols may also make it more challenging to track DNS requests and responses, making troubleshooting more difficult.
Federal agencies should audit their existing DNS infrastructure, plan and implement the encrypted DNS protocols, and collaborate with vendors and service providers to ensure compliance with the new requirements.
Infoblox provides comprehensive, scalable, and easily deployable Secure DNS solutions to assist federal agencies in meeting these new requirements.
The new requirements set by the Executive Order should have a positive impact on cybersecurity resilience with Infoblox providing the tools and expertise necessary to secure the foundation of the internet.