Gateway DNS Filtering Policies Block Android Push Notifications

Hello!

I have policies configured in Gateway, and am enabling them on Android devices using private DNS with DNS over TLS endpoint.

Something in my policies is preventing Android notifications for all apps. Additionally, Microsoft Outlook can no longer send/receive mail in the background for my personal and work accounts.

I have no idea what is causing this issue, but it’s concerning given I am only using DNS filtering policies and not any of the more advanced traffic inspection. I am only using the typical country, content and security category policies, plus a few to force Bing and Google safe search. I have tried disabling policies individually, but I can’t seem to find what is causing these issues.

It’s clearly something with Cloudflare. As soon as I disable private DNS, a flood of notifications arrive from all of my apps, and Outlook works in the background. I’ve never experienced this with another DNS filtering platform.

I found the answer on another site. It’s the way I was implementing Google Safe Search. So I’m using Google Family Link instead of DNS rules.