Protecting servers but allowing DNS resolution

This isn’t a problem or an issue, I’m just exploring protecting some servers a little better from attacks.

We have 4 WHM servers that provide DNS services for about 250 domains and usually house the sites as well. Initially we’re only looking to protect the WHM boxes themselves from some fairly constant hammering, and a few of the key sites. My initial thought is we’d need to go enterprise in order to utilize the DNS firewall but maybe not? Thanks for any suggestions!

