Domain Blocking on All Ports

Hello everyone-


It looks like this topic has been beaten to death but for some reason I still cant fgure it out...


I am trying to block cetain domains on all ports (not only HTTP) and I am just not being able to figure it out.  I tried the webproxy solution which works great in blocking HTTP access to these domains but other ports seem to be still open.  


Also trying "set service dns forwarding options address=/.DOMAIN.COM/" did not help at all.  I am using Google's as my System DNS


I am thinking DPI rules can help but there doesn't seem to be any simple way to specify a specific domain?  


Please note that I am new to EdgeRoute, coming from a DD-WRT based solution where domain blocking is pretty straightforward.