This always included my drilling a hole for UDP on port 53 to my on-premise DNS forwarding server.
Now, some hosts got upgraded to a newer Windows Server, and I can see them logging blocked access to that same DNS server but on TCP port 52. The EXE that tries is svchost.
Has Windows Server switched from UDP DNS to TCP DNS? Or does it use both?
Basically trying to figure out whether I should drill another hole in the firewall or safely ignore those failures.
...



Print Thread
