The Securd DNS Firewall client enables on/off network windows clients to be protected by Securd, while being able to access internal resources.
Supports Windows 7, 8, 8.1, 10, Server 2008, Server 2012, Server 2016, Server 2019 with .NET Framework 4.5
Download Windows Client 64-bit (amd64) Download Windows Client 32-bit (i386)
Windows 32-bit
HTTPS (TCP/443) outbound to https://control.securd.com.
TCP/UDP (53) outbound to:
IPv4: 142.202.107.1
IPv4: 142.202.107.2
IPv6: 2620:82:6000:1
IPv6: 2620:82:6000:2
The Securd DNS Firewall Client is a Microsoft Installer (MSI) package and its very simple to install.
Installing the client requires a virtual site installation key found at Edge Protection > Virtual Sites.
Each virtual site maps to a policy. This allows for you to apply different policies to different classes of devices.
Once you successfully install the client, it will be listed your company's Devices inventory.
msiexec.exe /i "Securd.DNS-Client.amd64-1.2.0.33" /qn INSTALLKEY="xxxxxxx"
Location: Computer\HKEY_LOCAL_MACHINE\SOFTWARE\Securd\DNS Firewall Client
Address4 (REG_SZ - defaults to 127.0.53.1)
This is the IPv4 local address the dns-client listens on.
Address6 (REG_SZ - defaults to fd00::53:1)
This is the IPv6 local address the dns-client listens on.
Disable6 (REG_SZ - Disabled by Default / 1 to Enable - 0 to Disable)
Disable dns queries over IPv6.
AutoConfigure (REG_SZ - Enabled by Default / 1 to Enable - 0 to Disable)
Enables/Disables Interface Nameserver changes to Securd dns-client addresses.
Ignore4 (REG_SZ - Comma seperated list of nameservers.)
Do not change dns servers set to these IPv4 addresses.
Ignore6 (REG_SZ - Comma seperated list of nameservers.)
Do not change dns servers set to these IPv6 addresses.
IgnoreAdapters (REG_SZ - Comma seperated list of adapter names.)
Do not change dns servers on these adapters.
ExcludePrefer (REG_SZ - Prefer IPv4 or IPv6 Exclude Suffix Nameserver)
4 - Prefer IPv4
6 - Prefer IPv6
46 - Prefer Higher Metric with Tie Prefering IPv4
64 - Prefer Higher Metric with Tie Prefering IPv6
InstallKey (REG_SZ)
Obtained from Securd administrative interface and used to authorize client.
NameServer (REG_SZ - Comma seperated list.)
Static nameserver list to override system nameservers for Exclude Suffix lookup.
Debug (REG_SZ - Disabled by Default / 1 to Enable - 0 to Disable)
Enable debug logging.
MonitorMultiuser (REG_SZ - Disabled by Default / 1 to Enable - 0 to Disable)
Run monitor per user on multiuser RDSH servers.
AutoUpdate (REG_SZ - Enabled by Default / 1 to Enable - 0 to Disable)
Automatically update dns-client.