Add a Resolved IP Filter to the Query Log
Minetta Gould
Add a Resolved IP filter to the Query Log to help administrators investigate queries resolving to a specific IP address.
Problem:
When investigating suspicious activity or validating DNS behavior, administrators need to isolate queries that resolved to a specific IP — a filter not currently available in the Query Log.
Who's Affected:
Administrators and security teams investigating DNS-based threats, misconfigured records, or unexpected traffic patterns.
Desired Outcome:
- A Resolved IP filter is available in the Query Log, alongside existing filters
- Supports faster investigation and DNS troubleshooting workflows