DNS Filter is a cloud-based DNS security and content filtering platform that protects organizations from malware, phishing, ransomware, and other web-based threats by analysing and filtering DNS queries in real time. It provides comprehensive visibility into all DNS traffic across networks, remote users, and deployed agents, enabling security teams to enforce policies, detect threats, and investigate suspicious activity. For more information on DNS Filter, see the official documentation here.
Integration Method: API
Tables: User Inventory Info (5003), DNS Activity (4003)
This integration supports the following events.
Event | Description |
|---|---|
Users | User account inventory records from the DNS Filter users API |
DNS Query Logs | DNS query and response events from the DNS Filter query logs API |
This integration supports the following versions.
DNS Filter API version | V1 |
Note:
DNS Filter is a continuously updated service. As for this document preparation, the latest release was in Aug 4, 2026. More information can be found here.
Prerequisites
An active DNS Filter account with Admin access to create API Keys.
The user should have access to the DataBee console.
Configuration Overview
Generate an API Key in DNS Filter.
Add the DNS Filter in the DataBee console with the below parameters
DataBee Parameter
DNS Filter Parameter
API Base URL
This is the Base URL that databee will interact with
Token
DNS Filter Configuration
Log in to your DNS Filter account at https://app.dnsfilter.com.
In the left navigation panel, expand the Account section and click Account Settings.

Within Account Settings, go to the Security section.

Scroll down to API Keys section and click on Create Key.

A Create API Key panel slides open on the right. In the Name field, enter a descriptive name for the key, In the Expiration dropdown, select the desired validity period (for example, 1 Year).

Once details are filled, click on Generate Key.

Once the key is generated, click the Copy icon to copy the API Key. This will be required while configuring feed in DataBee.

Note:
This is the only time the full API key is displayed. Store it in a secure location as you will not be able to retrieve it again. Once the API Key is expired, it needs to be generated again and updated in DataBee to continue data ingestion.
Click on Save to finalize key creation.

DataBee Configuration
Login to the DataBee UI, navigate to Data > Data Feeds and click the Add New Data Feed button.

Search for the DNS Filter and click it as shown below.

Click on the API Ingest option for collection method.

Enter feed contact information and scroll down.

In the configuration page, confirm the following:
API Base URL: This is the base URL that DataBee will interact with.
Authorization Method: Bearer Token
Token: Paste the API Key created.
Event Types: Preselected for all the event types that integration pulls.

Click Submit.
Troubleshooting Tips
Ensure the API Key is pasted correctly. Since you cannot view the Key after the 1st time, re-create the API Key, paste it on a text editor to ensure no spaces or unexpected characters are included and reconfigure the DataBee feed
If the API Key expires, create a new API Key using same steps and update it in DataBee to continue ingestion.