Dns Over Https
Controls the default mode of the remote Domain Name System (DNS) resolution via the HTTPS protocol for each query. DNS-over-HTTPS (DoH) helps to improve safety and privacy while users are browsing the web. For example, attackers are prevented from observing what sites you visit or sending you to phishing websites.
Choose an option:
- Disable DNS-over-HTTPS — Chromium never sends DoH queries to DNS servers.
- Enable DNS-over-HTTPS with insecure fallback—If a DNS server that supports DoH is available, Chromium first sends a DNS-over-HTTPS query. If an error is received or a server that supports DoH isn’t available, Chromium just sends a DNS query to the server instead.
- Enable DNS-over-HTTPS without insecure fallback — Chromium sends DoH queries only to DNS servers.
If you enable DoH, you can add a list of the URI templates of DoH resolvers that you want to make available to your users.
The default setting is Enable DNS-over-HTTPS with insecure fallback. However, sometimes it reverts to Disable DNS-over-HTTPS and users can’t change it. This happens if Chromium detects parental controls or enterprise policies. Chromium detects enterprise policies if:
- You manage Chromium browser on domain-joined computers.
- You have set at least one active policy for Chromium browser.