- The document discusses DNS control and threat prevention mechanisms supported by Palo Alto Networks, including accurately classifying and inspecting DNS traffic, blocking DNS queries to known malicious domains to break command-and-control channels, and identifying compromised hosts on the network through DNS sinkholing.