How to enable DNS over HTTPS (DoH) in group policy on Windows 11?

andiluk 15 Reputation points
2023-01-24T14:37:33.2733333+00:00

I am trying to enable DNS over HTTPS on my personal Windows 11 (Build 22621.1105) machine (Lenovo ThinkPad). I am the only user account on this machine (MS Account, Admin).

In the settings for the DNS (e.g. link) I can specify the preferred/alternate DNS (I am using Cloudflare's 1.1.1.1/1.0.0.1) -- but the DNS over HTTPS combobox is disabled (and showing "Off"). At the top of these settings it shows a text like "*Some of these settings are disabled or managed by your organization" (translated from German) (screenshot).

So i checked the Group Policy and indeed under "Computer Configuration/Administrative Templates/Network/DNS Client" the "Configure DNS over HTTPS (DoH) name resolution" policy is enabled and configured as "Prohibit DoH". When I change this configuartion or disable the policy, then after reopening Group Policy it shows "Prohibit DoH" again. In contrast, I can (permanently) change other policies, so for whatever reason I am not able to change this particular policy.

So my question: How to change this policy and/or what's the reason I can't change it?

I am thankful for any help!

Windows
Windows
A family of Microsoft operating systems that run across personal computers, tablets, laptops, phones, internet of things devices, self-contained mixed reality headsets, large collaboration screens, and other devices.
4,500 questions
Windows 11
Windows 11
A Microsoft operating system designed for productivity, creativity, and ease of use.
7,607 questions
0 comments No comments
{count} vote

2 answers

Sort by: Most helpful
  1. Deleted

    This answer has been deleted due to a violation of our Code of Conduct. The answer was manually reported or identified through automated detection before action was taken. Please refer to our Code of Conduct for more information.


    Comments have been turned off. Learn more

  2. Limitless Technology 43,986 Reputation points
    2023-01-25T19:09:46.31+00:00

    Hi. Thank you for your question and reaching out. I’d be more than happy to help you with your query.

    Open Settings > Network & internet > Wi-Fi and manually set the "DNS server assignment" setting if you want to enable DoH on Windows 11.

    Open Settings > Network & internet > Wi-Fi and check the "IPv4 DNS servers" address should have an Encrypted label to verify DoH setting.

    If the reply was helpful, please don’t forget to upvote or accept as answer, thank you.

    0 comments No comments