Guides
ProductDeveloper
Guides

Get Started

Umbrella provides DNS-layer security, secure web gateway (SWG), cloud-delivered firewall (CDFW), application protection (cloud access security broker), and integrated threat intelligence as services in the cloud. To start protecting your systems, enable Umbrella DNS-layer security, and set up Web security through the Umbrella secure web gateway and cloud-delivered firewall.

Umbrella DNS-layer security is straightforward to deploy and is effective in protecting your systems. We recommend that you deploy the DNS-layer security on all networks to protect users and devices. For networks and devices where decryption is not enabled (for example, guest networks), DNS-layer security provides nearly the same efficacy as the SWG. If you require greater visibility and control within your networks, we recommend that you deploy the SWG and CDFW.

Prerequisites

Get Started with Umbrella

Summary of Umbrella Deployments

You can deploy various network entities, client connectors, and traffic forwarders with Umbrella.

Networks, Client Connectors, Traffic Forwarders

DNS-Layer Security

Secure Web Gateway

Cloud-Delivered Firewall

Network

:heavy-check-mark:

Umbrella Roaming Client (macOS, Windows)

:heavy-check-mark:

Umbrella mobile client app

  • iOS (Cisco Security Connector (CSC))
  • Android (Cisco Secure Client (Android OS))

:heavy-check-mark:

Umbrella Chromebook client

:heavy-check-mark:

:heavy-check-mark:

Umbrella Virtual Appliance

:heavy-check-mark:

PAC file

:heavy-check-mark:

Proxy chaining

:heavy-check-mark:

IPsec tunnel

An IPsec tunnel can forward DNS queries to Umbrella. However, the tunnel is not managed by the DNS policy.

:heavy-check-mark:

:heavy-check-mark:

  • Cisco AnyConnect Umbrella Roaming Security Module (macOS, Windows)
  • Cisco Secure Client (macOS, Windows)
✔️✔️

Contact Umbrella Support < Get Started > Set Up DNS-Layer Security