The main improvement for BlueCat Edge's security configuration would be more granular control. Ideally, it would allow for filtering by categories like gambling, adult content, drugs, etc. This is because the current list provided by CrowdStrike, containing millions of URLs, lacks transparency and might block useful sites for our military company. For instance, we might want to allow consulting sites that are currently blocked. In essence, BlueCat Edge needs to function like a DNS-based HP proxy with selectable categories, making it a near-perfect product.
Enterprise Architect at a financial services firm with 10,001+ employees
Real User
Top 20
2024-02-02T18:42:00Z
Feb 2, 2024
I have concerns about several aspects of BlueCat's site management. Firstly, the cleanup process doesn't seem thorough enough, leaving behind residual data. Secondly, the logging duration has been significantly reduced. When I started using Edge, I had access to 3-6 months of historical data, but now this window has shrunk to just two weeks. I understand that the platform processes over one and a half billion queries per week, which necessitates data management. However, I believe access to longer-term logs would be beneficial for our analysis. The current two-week window limits our ability to identify trends and track historical events effectively. BlueCat Edge has a limitation of 10,000 records for exports. While I understand the need to export all data, it would be more efficient if I could selectively export the data I need. Currently, there is only one export mechanism that provides all 10,000 records. I would prefer the ability to select specific values and export more records at once, as I don't require all the data available.
It needs some work. I have put in some feature requests to BlueCat for some enhancements. About two months ago, we were still using their Edge endpoint version 3. We recently moved to version 4 of their Edge endpoint. In Edge endpoint version 3, we did not have the ability to clean up our dashboards properly. As we decommissioned sites and commissioned new sites, we were left with a mess of data still sitting there because of the way they had originally designed version 3. Now the old data is gone, and the function of the new version 4 has really helped with that. It was a nuisance for the past few years. One pain point concerning DNS Edge is the inability to see per Edge endpoint, what devices are querying against it. They do have the capability for you to look at that data, but the data is roughly 24 to 48 hours old. I am looking for real-time data, and I cannot get that per Edge endpoint. I would call it a work in progress. I am still finding things that bug me in terms of how something functions. I might find out how to do something when it is not documented. That is great, but documentation becomes an issue with me on that.
System/Network Administrator at a manufacturing company with 1,001-5,000 employees
Real User
2021-03-17T02:53:20Z
Mar 17, 2021
A more graphical user interface would be a benefit. It would be nice if I could click on a subnet and it would show me all of my links and everything. It seems pretty binary in the sense that it was just a little more advanced in the spreadsheet. A dashboard would be good. It would be nice if within that dashboard I could click on a subnet and it would tell me my yellow, red, and green access. If it could show me graphically, what's up and down on that, subnet, that would be great.
BlueCat Edge is an intelligent DNS resolver and caching layer that leverages existing DNS infrastructure to provide unprecedented visibility and control over DNS traffic. As a first hop DNS resolver, BlueCat Edge intelligently manages DNS forwarding rules and logs all queries to offer intuitive analytics and data governance. By monitoring all queries and IP addresses with BlueCat Edge, enterprises can also leverage BlueCat’s advanced Threat Protection and policy-based network/security...
The main improvement for BlueCat Edge's security configuration would be more granular control. Ideally, it would allow for filtering by categories like gambling, adult content, drugs, etc. This is because the current list provided by CrowdStrike, containing millions of URLs, lacks transparency and might block useful sites for our military company. For instance, we might want to allow consulting sites that are currently blocked. In essence, BlueCat Edge needs to function like a DNS-based HP proxy with selectable categories, making it a near-perfect product.
I have concerns about several aspects of BlueCat's site management. Firstly, the cleanup process doesn't seem thorough enough, leaving behind residual data. Secondly, the logging duration has been significantly reduced. When I started using Edge, I had access to 3-6 months of historical data, but now this window has shrunk to just two weeks. I understand that the platform processes over one and a half billion queries per week, which necessitates data management. However, I believe access to longer-term logs would be beneficial for our analysis. The current two-week window limits our ability to identify trends and track historical events effectively. BlueCat Edge has a limitation of 10,000 records for exports. While I understand the need to export all data, it would be more efficient if I could selectively export the data I need. Currently, there is only one export mechanism that provides all 10,000 records. I would prefer the ability to select specific values and export more records at once, as I don't require all the data available.
It needs some work. I have put in some feature requests to BlueCat for some enhancements. About two months ago, we were still using their Edge endpoint version 3. We recently moved to version 4 of their Edge endpoint. In Edge endpoint version 3, we did not have the ability to clean up our dashboards properly. As we decommissioned sites and commissioned new sites, we were left with a mess of data still sitting there because of the way they had originally designed version 3. Now the old data is gone, and the function of the new version 4 has really helped with that. It was a nuisance for the past few years. One pain point concerning DNS Edge is the inability to see per Edge endpoint, what devices are querying against it. They do have the capability for you to look at that data, but the data is roughly 24 to 48 hours old. I am looking for real-time data, and I cannot get that per Edge endpoint. I would call it a work in progress. I am still finding things that bug me in terms of how something functions. I might find out how to do something when it is not documented. That is great, but documentation becomes an issue with me on that.
Its price is on the higher side.
A more graphical user interface would be a benefit. It would be nice if I could click on a subnet and it would show me all of my links and everything. It seems pretty binary in the sense that it was just a little more advanced in the spreadsheet. A dashboard would be good. It would be nice if within that dashboard I could click on a subnet and it would tell me my yellow, red, and green access. If it could show me graphically, what's up and down on that, subnet, that would be great.