Protection
...
Policy configuration
Advanced
3 min
navigate to the sidebar menu https //app archbee com/docs/k8lcemftgndlt4nfq176k/5vkvzyeveco0n cz4p54q > https //app archbee com/docs/k8lcemftgndlt4nfq176k/ytrytsh3od3lc 34gvaz1 , open a standard policy , and select the advanced tab in the top navigation bar overview the advanced module allows you to configure specific technical parameters to further harden your network security unlike the category based filters, these settings target specific dns behaviors and evasion techniques used by advanced threats or users trying to bypass your policies interface overview the interface is streamlined into individual configuration cards , each representing a specific security feature unlike the list views in other modules, these settings are presented as distinct functional blocks for quick activation understanding the settings use this guide to understand the specific impact of each advanced setting feature function & security benefit block dns leaks blocks third party doh (dns over https) and dot (dns over tls) services browsers and malware often use these encrypted protocols to bypass your local dns filters and hide their traffic block resolution on malicious ips blocks threats by cross referencing the destination ip address even if a domain name is brand new or not yet categorized, this feature will block it if it resolves to a server ip known to host malware block parked domains blocks "parked" domains—websites that have no content other than ads or placeholder text these are often used for typosquatting (fake versions of popular sites), spam, or future malware distribution configuration & logic configuring these settings follows the standard toggle logic of the platform toggle on ( blue blue ) the protection feature is active toggle off ( grey grey ) the protection feature is disabled