---
title: "Blocking public DoH servers with BloxOne"
canonical: "https://docs.infoblox.com/space/DeploymentGuideDoTDoH/695697507/Blocking%20public%20DoH%20servers%20with%20BloxOne"
format: markdown
---
This section of the guide covers how to block public DoH servers with BloxOne. Blocking Public DoH Server requires the use the BloxOne DoH feeds with an existing BloxOne security policy, or with new one, and a BloxOne source that is assigned to that BloxOne Security Policy. 

## **License and Configuration Requirements **

To block public DoH servers with BloxOne, you will need the BloxOne Threat Defense Essentials license, or higher.

## **Create a new Security Policy to block public DoH servers**

In order to block public DoH Servers with BloxOne, a security policy with the correct feeds applied is required. This section covers how to create a new security policy and apply the appropriate feeds to it.

If an existing security policy will be used to block public DoH servers, refer to the [Use an existing Security Policy to block public DoH servers](https://infoblox-docs.atlassian.net/wiki/spaces/DeploymentGuideDoTDoH/pages/edit-v2/662569253#Use-an-existing-Security-Policy-to-block-public-DoH-servers) section.

1. Navigate to **Policies → Security Policies**.

![image-20240604-152837.png](media://d6e74848-dbe0-4655-b355-2917eb13c97f)

2. Click** Create Security Policy.**

![image-20240604-165901.png](media://1946ab4b-298e-40d3-99db-460c934c850a)

3. Give the new security policy a **Name**.

![image-20240604-170554.png](media://2d0aa055-f8a2-4872-a0f8-fbcd7b0abc28)

4. (Optional) Give the new security policy a **Description**.

![image-20240604-170658.png](media://f3e3d616-f84b-4466-8086-eac31ca655c0)

5. Click **Next**.

![image-20240604-170904.png](media://b385dcf3-ec29-451f-a85e-5e7598d8546a)

6. Click **Add Source**. Then, select the source(s) that this policy will apply to. Repeat this step to add multiple sources.

![image-20240604-171029.png](media://fb97e1b2-a81a-46a7-9265-c2f56bb4e589)

7. Click **Next**.

![image-20240604-170904.png](media://b385dcf3-ec29-451f-a85e-5e7598d8546a)

8. Click **Add Rule**. Then, select **Feeds and Threat Insight**.

![image-20240604-171354.png](media://33650a1c-00a4-4d5a-9f11-a775b7907395)

9. Click the **Object drop-down**, then select **Public_DoH** near the bottom of the list.

![image-20240604-171540.png](media://87080b7a-19b2-405c-8b64-1ea60e6e241d)

10. Click **Select** to confirm the selection of the feed.

![image-20240604-171755.png](media://4705240f-583e-4c95-b817-69dbbbf39716)

11. Click the **Action drop-down**. Then, select the **action** that will be taken whenever this rule is triggered. *For more information on the the actions associated with security policy rules please view the Infoblox documentation **[here](https://docs.infoblox.com/space/BloxOneThreatDefense/35473746/About+Rule+Actions)**.*

![image-20240604-171847.png](media://63c0265d-144a-4fa7-ba72-16417f700023)

12. Click **Add Rule**. Then, select **Feeds and Threat Insight**.

![image-20240604-171354.png](media://33650a1c-00a4-4d5a-9f11-a775b7907395)

13. Click the **Object drop-down**, then select **Public_DoH_IP** near the bottom of the list.

![image-20240604-171540.png](media://87080b7a-19b2-405c-8b64-1ea60e6e241d)

14. Click **Select** to confirm the selection of the feed.

![image-20240604-171755.png](media://4705240f-583e-4c95-b817-69dbbbf39716)

15. Click the **Action drop-down**. Then, select the **action** that will be taken whenever this rule is triggered.

![image-20240604-171847.png](media://63c0265d-144a-4fa7-ba72-16417f700023)

16. Click **Finish**.

![image-20240604-173353.png](media://a142ca5f-b4b7-48d4-aced-08e9dadc014f)


17. Click **Save & Close** to confirm the creation of the new security policy

![image-20240604-173450.png](media://f5af18de-b56e-4ebd-a073-c0aebde19002)

## **Use an existing Security Policy to block public DoH servers **

In order to block public DoH Servers with BloxOne, a security policy with the correct feeds applied is required. This section covers how to apply the appropriate feeds to an existing security policy.

1. Navigate to **Policies → Security Policies**.

![image-20240604-152837.png](media://d6e74848-dbe0-4655-b355-2917eb13c97f)

2. Click the **hamburger icon** associated with the security policy that the DoH feeds will be applied to. Then, click **Edit**.

![image-20240604-173948.png](media://90e52654-6341-47ca-85b9-d49936f24e47)

3. Click **Policy Rules** on the left side of the panel.

![image-20240604-174058.png](media://13f99648-a911-4e42-9737-a8c8b415c1cb)

4. Click **Add Rule**. Then, select **Feeds and Threat Insight**.

![image-20240604-171354.png](media://33650a1c-00a4-4d5a-9f11-a775b7907395)

5. Click the **Object drop-down**, then select **Public_DoH** near the bottom of the list. *Note, if this feed is not visible it may already be selected and applied to the security policy that is currently being edited.*

![image-20240604-171540.png](media://87080b7a-19b2-405c-8b64-1ea60e6e241d)

6. Click **Select** to confirm the selection of the feed.

![image-20240604-171755.png](media://4705240f-583e-4c95-b817-69dbbbf39716)

7. Click the **Action drop-down**. Then, select the **action** that will be taken whenever this rule is triggered. *For more information on the the actions associated with security policy rules please view the Infoblox documentation **[here](https://docs.infoblox.com/space/BloxOneThreatDefense/35473746/About+Rule+Actions)**.*

![image-20240604-171847.png](media://63c0265d-144a-4fa7-ba72-16417f700023)

8. Click the **Object drop-down**, then select **Public_DoH_IP** near the bottom of the list. *Note, if this feed is not visible it may already be selected and applied to the security policy that is currently being edited.*

![image-20240604-171540.png](media://87080b7a-19b2-405c-8b64-1ea60e6e241d)

8. Click **Select** to confirm the selection of the feed.

![image-20240604-171755.png](media://4705240f-583e-4c95-b817-69dbbbf39716)

9. Click the **Action drop-down**. Then, select the **action** that will be taken whenever this rule is triggered.

![image-20240604-171847.png](media://63c0265d-144a-4fa7-ba72-16417f700023)

10. Click **Finish**.

![image-20240604-181828.png](media://a76409eb-476c-4505-8993-6351867183a3)


11. Click** Save & Close** to confirm the addition of the feeds to the security policy.

![image-20240604-182009.png](media://4096b9ea-318a-495a-a927-f927b1b4858a)