FSPM:Getting lots of alerts "A DNS query was blocked for a domain" despite firewall disabled
I am getting a lot of client alerts from F-Secure Policy Manager like the following
Here are the most recent alerts (1) from Policy Manager.
Warning: A DNS query was blocked for a domain.
From: UCL/CLIENTPC1, 2021-11-29 14:13:02 +00:00
Details: A DNS query was blocked for a domain. DNS: proxyserverecs-1736642167.us-east-1.elb.amazonaws.com.
These have gradually been increasing in number, from different clients, varying DNS queries are blocked, not sure of the effect on end users, nobody has complained yet. A lot of the queries look like genuine cloud services- amazon, mozilla etc.
What is most puzzling is that we disable most features except real time protection on our clients, so no firewall, browsing protection or deepguard. So why are these alerts even being generated?
All alerts are coming from clients running F-Secure Client Security 14.22 build 109
I am running FSPM 14.41
Can anyone help please?