Deployment Options

Deploy DigitalStakeout Securd behind static IP networks, off-network endpoints and at the browser. Setup protection that best fits by forwarding your DNS, using a DNS-over-HTTPS (DoH) url, or installing a lightweight client on your endpoint.

Protect Networks Behind a Static IP Address

Protect endpoints behind a static IP from resolving malicious domains. Once your static address is configured in the DigitalStakeout Securd portal, setting up a security policy and forwarding your DNS to Securd is easy. This process can be completed by most security engineers or network administrators in less than 5 minutes.

  • Configure a IPv4 or IPv6 site.
  • Map a policy to enforce your security rules.
  • Forward IPv4/IPv6 DNS to Securd or setup DHCP to use DHCP.
  • Install Securd’s Root Certificate to support HTTPS block pages.
  • Securd will allow/deny DNS and HTTP/HTTPS traffic by policy.
Securd offers protection behind static IP networks, off-network endpoints and at the browser. Setup protection that best fits by forwarding your DNS, using a DNS-over-HTTPS (DoH) url, or installing a lightweight client on your endpoint.

Protect Off-Network Roaming Clients

The DigitalStakeout Securd Client is a light weight client taking up a 100MB of resources. Employees can access sites from anywhere via the Internet with the same level of protection anywhere they go. The DigitalStakeout Securd client routinely performance Anycast edge/protocol checks on 30+ global locations ensuring your end-users have the safest and fastest DNS experience possible. The DigitalStakeout Securd client currently supports Windows 7, 8, 8.1, 10, Server 2008, Server 2012, Server 2016, Server 2019 with .NET Framework 4.5 or greater.

DNS-over-HTTPS (DoH) and DNS-over-TLS (DoT)

DoH deployment is a zero-software option for an off-network endpoint that needs immediate protection. DigitalStakeout Securd DoH and DoT support adds security features to DNS resolution without loosing the protection that defensive DNS filtering provides. With custom DNS over HTTPS supported in Firefox, Chrome, and Windows 10 (Build 19628 or Newer), create a DoH URL, map it to a security policy and get an end-user protected in less than 5 mins. DoH is also an easy way to trial Securd without installing any software or making a single DNS configuration change.

Protect Resources with Granular Security Policies

You are in 100% control as to how DigitalStakeout Securd protects your systems.  DigitalStakeout Securd provides a default security policy which is a good starting point for protecting your network and endpoints from the most common Internet threats. In addition to 15+ security categories of protection, you can configure security polices for:

  • Internal Domain Suffix Bypass – Ignore local network domains.
  • Private Network Resolution – Enable or disable domains from resolving to private networks.
  • Response TTL – Block page time to live in seconds.
  • Require DNSSEC – Requires DNSSEC for all DNS queries.
  • Default Action – Implicitly allow or deny DNS queries.
  • Targeted Proxy – Enable or disable inspection of high-risk URLS.
  • Block Page – Select the Type of Block Page to be displayed.
  • Custom Network Allow List – Allow domains to be resolved on specific CIDR blocks.
  • Custom Network Block List – Block domains from being resolved on specific CIDR blocks.
  • Custom Domain Allow List – Allow specific domains to be resolved.
  • Custom Domain Block List – Block specific domains to be resolved.
  • Zero Trust Settings – Adjust DigitalStakeout domain trust sensitivity settings.

Get Protective DNS & Web Security Now