DNS Filtering

Service Definition • Armstrong Bell • 8 August 2026

Document summary

This document sets out what's included in our DNS Filtering solution.

Core service provision

Our DNS filtering service is designed to protect customers from a variety of threats through advanced filtering, and provides the below feature set:

  • Block access to phishing, botnet and malware domains

  • Utilise application-aware filtering to block applications that should not be used

  • Apply content filtering rules to filter web-based content

  • Provide coverage when on and off the organisation's network

  • Block access to potentially risky domains that have not yet been classified as malicious

  • Full reporting dashboard

The solution is monitored and managed by our in-house team, with changes and requests able to be made as part of the service. During on-boarding, an agent is deployed to managed devices to enable the DNS filtering solution to be applied.

Service desk support

Customers can raise queries directly with our dedicated support team for assistance. Typical requests include modifying content filtering policies, resolving issues with blocked domains, and adjusting application blocking policies.

The service coverage is provided in line with the customer's existing Managed IT Service support contract.

Alert management

Our team receive alerts for a variety of events relating to the platform, including:

  • Planned maintenance

  • Degraded service due to issues arising

  • Critical incidents or major outages

When one of these is received, it is initially reviewed for impact, and if appropriate, communications will be sent to customers.

Available reporting

The following reports are built into the platform and provide detailed information on usage, content accessed and how security is being applied:

  • Agent counts

  • Server geolocation

  • User reports

  • Roaming client reports

  • Domain reports

Vendor escalation

Our team works closely with our preferred partner for DNS filtering services, with the ability to escalate incidents where required. All initial analysis and investigation is conducted internally, and specific platform or technical queries are then logged with the vendor; there is no additional cost to the customer, and our team will fully manage this process throughout.

Addition of new features

Where a new feature is introduced to the platform that would benefit a customer, the required changes are reviewed by our team to ensure they are suitable for implementation. If the change requires disruption to service, or an adjustment to core components that may alter existing functionality, this will be communicated to the customer and a route forward agreed.

For any additional functionality requiring considerable work and/or integration, these items will be scoped and discussed independently with the customer.

On-boarding

  • Initial consultation and requirements assessment

    • Discuss specific DNS security needs with the customer

    • Review any existing web filtering policies in place

  • Tenant configuration

    • Create the tenant within the filtering solution

    • Build the required policies and ruleset

  • Pilot deployment

    • Deploy the agent to pilot devices

    • Test the policy deployment and verify that devices are filtered

    • Review reporting content to ensure successful agent reporting

  • Rollout

    • Deploy the agent to the remaining devices and confirm registration

    • Implement DNS forwarding configuration for customer sites

    • Complete the adjustment of any policies and configurations

    • Review the platform for any errors

    • Provide any further assistance as required