How to Enable Secure DNS in Microsoft Edge
Secure DNS in Microsoft Edge encrypts your web traffic to hide the websites you visit from your internet provider. Standard internet requests travel in plain text that anyone can read, but this feature routes your connection through a secure service like Cloudflare or Google.
Because Edge comes built into Windows 11 and Windows 10, you do not need to install extra software to protect your web history. Pick a trusted provider from the settings menu to block snoops from seeing your online activity.
Open Microsoft Edge, go to Settings Privacy, search, and services, then toggle “Use secure DNS” on or off under the Security section. You can then select a preferred DNS provider.
Choose secure DNS in the Microsoft Edge browser.
Secure DNS Microsoft Edge settings let you route your web traffic through a custom provider instead of your internet service provider for better privacy. Open Microsoft Edge, click the three-dot menu in the top right corner, select Settings, and go to the privacy section to turn on secure DNS and choose your preferred provider from the list.
Custom secure DNS providers offer better privacy, and Edge gives you full control over them.
Here’s how to configure the feature.
Open Microsoft Edge, click the 3 horizontal dots button for Settings and more (Alt+F) in the top right corner, and select Settings.

Select Privacy, search, and services from the left-hand menu.

In the Settings -> Privacy, search, and services pane, look under the Security section. Toggle the switch on the tile that reads "Use secure DNS to specify how to lookup the network address for websites" to On or Off.

Activating this setting requires picking a DNS provider from the available list:
- Use the current service provider
- Choose a service provider:
- NextDNS
- OpenDNS
- Google (Public DNS)
- Cloudflare
- CleanBrowsing (Family Filter)

Enable or disable the use of secure DNS in Edge via the Windows Registry Editor
Registry Editor lets you turn secure DNS on or off in Microsoft Edge using system-level policies. Open the Windows Registry and go to HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Edge to create or change the necessary values. This method is useful if you manage settings across multiple computers or want to lock the configuration in place.
Open the Windows Registry and navigate to the registry folder path shown below.
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Edge
If the Edge folder key isn't there, right-click the parent Microsoft key and create a new subkey named Edge.

Right-click inside the Edge folder key's right pane, select New DWORD (32-bit) Value, and name the new item BuiltInDnsClientEnabled.
Double-click BuiltInDnsClientEnabled. Enter 1 for the Value data to enable secure DNS in Microsoft Edge, or enter 0 to disable it.

Restart the computer to apply the registry modifications.
Edge routes traffic through the chosen compatible provider once configured. Unsupported providers cause the browser to fall back to standard unencrypted resolution.
Selecting a provider directs all browser DNS queries through that specific network infrastructure.
System-wide protection is also available by configuring DNS over HTTPS (DoH) in Windows 11.
All set!
Conclusion:
- The article provides comprehensive guidance on enabling or disabling secure DNS in the Microsoft Edge browser.
- Users can choose from a list of trusted secure DNS providers, including NextDNS, OpenDNS, Google Public DNS, Cloudflare, and others, to enhance their browsing security.
- It also offers an alternative method, using the Windows Registry Editor, to turn on or off secure DNS in Microsoft Edge.
- Users are reminded to restart their computers for the changes to take effect.
- Additionally, it suggests enabling DNS over HTTPS (DoH) as an alternative option for enhancing browsing security in Windows 11.
Was this guide helpful?
100% of readers found this helpful (1 votes)
About the Author
Richard
Tech Writer, IT Professional
Richard is a writer at Geek Rewind who turns complex IT tasks into clear, step-by-step guides. He draws on years of hands-on experience in system administration and enterprise IT operations, focusing on Windows, Linux and WordPress: the problems people actually run into, and the fixes that work. His server and WordPress guides come from systems he runs himself. Richard builds and maintains the platform behind Geek Rewind, from its Ubuntu servers and Nginx configuration to its custom WordPress plugins. Many new tutorials start with readers' questions, and he's always glad to answer them in the comments.
No comments yet — be the first to share your thoughts!