Windows Ec2 Instance often Doing DNS query with Public DNS Resolver.

0

Hi Team. My Windows ec2 instance instance is often communication with public DNS resolvers (google, azure, Cloudflare) instead of AWS VPC's DNS resolver. EC2 instance's Network settings are set to automatic (DHCP) and unchanged. can you please help me find why my ec2 is communication with public DNS resolvers (google, azure, Cloudflare).

findings source: Guard Duty Findings and VPC flow logs. note: This not my windows DNS Server

Regards, Jayaprakash M

已提問 10 個月前檢視次數 397 次
2 個答案
0

I believe you asked the same question a week ago.

One thing comes to mind. Do you have Chrome installed??

As it can ignore the OS dns settings and use it’s own DNS servers.

https://www.reddit.com/r/chrome/comments/pexxds/google_chrome_ignores_other_dns_servers_in_system/

profile picture
專家
已回答 10 個月前
  • yes system has Chrome installed.

  • Try disabling the Chrome's Built in DNS resolver. I believe its enabled by default and this could be causing your issues

0

Navigate to chrome://flags/ Look for #enable-async-dns Async DNS enabled/disabled displays whether the server uses its own asynchronous DNS resolver instead of the operating system's synchronous resolver. This is by default disabled normally so might not be the actual issue, it could be some other service/app installed that could be sending these queries too.

AWS
PK
已回答 10 個月前
  • can you please help me how to find the service/app doing this query.?

您尚未登入。 登入 去張貼答案。

一個好的回答可以清楚地回答問題並提供建設性的意見回饋,同時有助於提問者的專業成長。

回答問題指南