---
title: "Configuring Internal Domains"
canonical: "https://docs.infoblox.com/space/BloxOneThreatDefense/35437388/Configuring%20Internal%20Domains"
format: markdown
---
<span style="color: #000000">When you use Endpoint or DNS Forwarding Proxy, DNS queries are sent directly to Infoblox Threat Defense. If you have internal domains that are served by local DNS servers and you want to reach them without interruptions, you should consider adding them to the bypassed internal domains list. If you add them, DNS queries for these internal domains are sent to the local DNS servers instead of </span><span style="color: #000000">Infoblox</span><span style="color: #000000"> Threat Defense.</span>

<span style="color: #000000">The internal domains list applies to NIOS DNS forwarding proxies as well. Infoblox recommends that you configure authoritative or forward zones for these domains. For more information, see </span>[*<span style="color: #000000">Adding Internal Resolvers and Internal Domains to DNS Forwarding Proxy</span>*](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35373441)<span style="color: #000000">. </span>

<span style="color: #000000">If you do not specify internal domains, DNS queries targeting these domains are sent to </span><span style="color: #000000">Infoblox</span><span style="color: #000000"> Threat Defense. Also, you might not be able to reach local resources such as servers and printers on your locally hosted domains. To ensure uninterrupted access to these resources, you should add these internal domains to the bypassed internal domains list. Essentially, all bypassed internal domains can resolve DNS records using local DNS servers. When you enter local resolvers when configuring a DNS forwarding proxy, the proxy uses the resolvers to provide resolution to local DNS zones as well as the bypassed internal domains. For information about adding local resolvers, see </span>[*<span style="color: #000000">Adding Internal Resolvers and Internal Domains to DNS Forwarding Proxy</span>*](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35373441)<span style="color: #000000">. </span>

<span style="color: #000000">A maximum of 3000 records can be added to an internal domains list. Both IPv4 and IPv6 addresses can be added to an internal domains list.  </span>

<span style="color: #000000">In scenarios where the customer has multiple offices with different internal domains located at each office, using multiple bypass lists allows the creation of one or more internal domains lists per security policy for </span><span style="color: #000000">Infoblox</span><span style="color: #000000"> Threat Defense Endpoint groups and for domain forwarding proxies. This is in addition to the creation of a global internal domains list to act as the default configuration for all offices. Using multiple internal domains lists allows each list to be assigned to a DNS Forwarding Proxy or </span><span style="color: #000000">Infoblox</span><span style="color: #000000"> Threat Defense Endpoint independent of other lists. </span>

<span style="color: #000000">On the</span><span style="color: #000000"> </span>*<span style="color: #000000">Internal Domains</span>**<span style="color: #000000"> </span>*<span style="color: #000000">page, you can view the following details for internal domains listed on the</span><span style="color: #000000"> </span>*<span style="color: #000000">Internal Domains</span>*<span style="color: #000000"> </span><span style="color: #000000">page: </span>

- **<span style="color: #000000">NAME</span>**<span style="color: #000000">: The name of the internal domain list.</span>
- **<span style="color: #000000">DESCRIPTION</span>**<span style="color: #000000">: The description of an internal domain list.</span>
- **<span style="color: #000000">DOMAINS</span>**<span style="color: #000000">: The domains populating the internal domains list.</span>
- **<span style="color: #000000">ASSOCIATED DNS FORWARDING PROXY/ENDPOINT GROUP</span>**<span style="color: #000000">: The domain forwarding proxies and endpoint groups associated with an internal domains list.</span>
- **<span style="color: #000000">TAG</span>**<span style="color: #000000">: Displays any tag or tags assigned to to the internal domain.</span>

<span style="color: #000000">You can also do the following in this</span><span style="color: #000000"> </span><span style="color: #000000">tab:</span>

- <span style="color: #000000">Click</span><span style="color: #000000"> the expand manu icon </span><span style="color: #000000">to select the columns you want to display or use the arrow keys to reorder the columns.</span>

- <span style="color: #000000">Click </span><span style="color: #000000">the expand manu icon</span><span style="color: #000000"> </span><span style="color: #000000">></span><span style="color: #000000"> </span><span style="color: #000000">**Edit**</span><span style="color: #000000"> to modify the internal domain. You can also select the respective internal domain and click the</span><span style="color: #000000"> </span>**<span style="color: #000000">Edit</span>**<span style="color: #000000"> </span><span style="color: #000000">button to do so.</span>
- <span style="color: #000000">Click </span><span style="color: #000000">the expand manu icon</span><span style="color: #000000"> </span><span style="color: #000000">></span><span style="color: #000000"> </span><span style="color: #000000">**Remove**</span><span style="color: #000000"> to delete an internal domain. You can also select the respective internal domain and click the</span><span style="color: #000000"> </span>**<span style="color: #000000">Remove</span>**<span style="color: #000000"> </span><span style="color: #000000">button to do so.</span>
- <span style="color: #000000">Click </span><span style="color: #000000">the expand manu icon</span><span style="color: #000000"> </span><span style="color: #000000">></span><span style="color: #000000"> </span><span style="color: #000000">**Import**</span><span style="color: #000000"> to import a list of internal domains residing on your network. You can import a new list or update an existing list.</span>
- <span style="color: #000000">Select an internal domain to view additional details in the right panel. You can collapse the right panel by clickingthe information icon</span><span style="color: #000000">.</span>
- <span style="color: #000000">Enter the value that you want to search in the</span><span style="color: #000000"> </span><span style="color: #000000">**Search**</span><span style="color: #000000"> </span><span style="color: #000000">text box. The </span><span style="color: #172B4D">Infoblox</span><span style="color: #000000"> Portal displays the list of records that match the keyword in the text box.</span>
- <span style="color: #000000">Click </span><span style="color: #000000">the filter icon </span><span style="color: #000000">and then</span><span style="color: #000000"> click the Add icon</span><span style="color: #000000"> </span><span style="color: #000000">to filter data by the available values.</span>

<span style="color: #000000">The internal domain list is used by Endpoint and NIOS DNS forwarding proxies. You should not include any remote sites on this list.</span>

<span style="color: #000000">For information on adding internal domains to an Endpoint Group, see </span>[<u>*<span style="color: #000000">Adding Internal Domains to an Endpoint Group</span>*</u>](https://infoblox-docs.atlassian.net/wiki/pages/createpage.action?spaceKey=bloxonethreatdefense&title=Adding%20Internal%20Domains%20to%20an%20Endpoint%20Group&linkCreation=true&fromPageId=35437388)<span style="color: #000000">.</span>

<span style="color: #000000">For information on adding internal domains to DNS Forwarding Proxy, see </span>[<u>*<span style="color: #000000">Adding Internal Resolvers and Internal Domains to DNS Forwarding Proxy</span>*</u>](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35373441)<span style="color: #000000">.</span>

<span style="color: #000000">For information on configuring local DNS servers on DNS Forwarding Proxy, see </span>[<u>*<span style="color: #000000">Configuring DNS Forwarding Proxy</span>*</u>](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneInfrastructure/pages/166134245)<span style="color: #000000">.</span>

<span style="color: #000000">For more information on internal domains, see the following:</span>

- [*<u>Creating an Internal Domain</u>*](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35375088)
- [*<u>Editing an Internal Domain</u>*](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35405849)
- [*<u>Removing an Internal Domain</u>*](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35471568)
- [*<u>Importing an Internal Domains List</u>*](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35375118)
- [*<u>Updating an Imported Internal Domains List</u>*](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35437437)