Solved Enable DNS over HTTPS (DoH) for Google Chrome with Group Policy?

Loki

Junior Member
VIP
Local time
9:40 PM
Posts
19
Thread starter
Is there a group policy to set DoH or can I add it to HKLM\Software\Policies\Google\Chrome somehow?

Thanks Loki :cool:
 

My Computer

System One

  • Operating System
    Windows 10
    Computer type
    PC/Desktop
    CPU
    AMD A8-5600K Trinity 32nm Technology
    Motherboard
    MSI A78M-E35 (MS-7721) (P0)
    Memory
    16.0GB Dual-Channel DDR3 @ 658MHz (9-9-9-24)
    Graphics Card(s)
    768MB ATI AMD Radeon HD 7560D (MSI)
    Sound Card
    AMD High Definition Audio Device
    Monitor(s) Displays
    SMXL2370HD (1920x1080@60Hz) ASUS VE278 (1920x1080@60Hz)
    Hard Drives
    119GB Crucial_ CT128MX100SSD1 SATA Disk Device (SATA (SSD))
    931GB Seagate ST1000DM 003-1CH162 SATA Disk Device (SATA )
    Browser
    Chrome, Firefox, Edge (Chrome)
    Antivirus
    MalwareBytes Premium

ad2048

New Member
Local time
3:40 AM
Posts
26
There is a tutorial at TenForums, but it shows how to enable it from Chrome itself not Local Group Policy.
 

My Computer

System One

  • Operating System
    Windows 10 Education
    Computer type
    Laptop
    Antivirus
    None

TairikuOkami

Brony
Member
VIP
Local time
3:40 AM
Posts
53
Location
Trnava

This, but I can not seem to be able to get it working on Edge, so it probably will not work on Chrome either.
Code:
reg add "HKLM\Software\Policies\Google\Chrome" /v "DnsOverHttpsMode" /t REG_SZ /d "secure" /f
reg add "HKLM\Software\Policies\Google\Chrome" /v "DnsOverHttpsTemplates" /t REG_SZ /d "https://dns.quad9.net/dns-query{?dns}" /f
 

My Computer

System One

  • Operating System
    Windows 11 Home
    CPU
    AMD Ryzen 5 3600 (07/19)
    Motherboard
    MSI B450 TOMAHAWK 7C02v1H5 (07/19)
    Memory
    4x 8GB ADATA XPG GAMMIX D10 DDR4 3200MHz CL16
    Graphics Card(s)
    MSI Radeon RX 580 ARMOR 8G OC (08/19)
    Sound Card
    Creative Sound Blaster Z (11/16)
    Monitor(s) Displays
    24" AOC G2460VQ6 (01/19) 1920×1080@75Hz + FreeSync (DisplayPort)
    Hard Drives
    ADATA XPG GAMMIX S11 Pro SSD 512GB (07/19)
    PSU
    Seasonic M12II-520 80 Plus Bronze (11/16)
    Case
    Lian Li PC-7NB + 3x Noctua NF-S12A FLX@700rpm
    Cooling
    CPU Cooler Noctua NH-U12S@700rpm
    Keyboard
    HP Pavilion Wireless Keyboard 600 (05/21)
    Mouse
    HP Wireless Silent 280M Mouse (05/21)
    Internet Speed
    300/30 Mbps via RouterOS (05/21) + TCP Optimizer
    Browser
    Microsoft Edge
    Antivirus
    None
    Other Info
    Headphones: Sennheiser RS170 (09/10) + Software: https://tinyurl.com/7hkjyhsj

Loki

Junior Member
VIP
Local time
9:40 PM
Posts
19
Thread starter
reg add HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Edge /v DnsOverHttpsTemplates /t REG_EXPAND_SZ /d https://chrome.cloudflare-dns.com/dns-query
reg add HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Edge /v DnsOverHttpsMode /t REG_EXPAND_SZ /d automatic

This works for Edge
 

My Computer

System One

  • Operating System
    Windows 10
    Computer type
    PC/Desktop
    CPU
    AMD A8-5600K Trinity 32nm Technology
    Motherboard
    MSI A78M-E35 (MS-7721) (P0)
    Memory
    16.0GB Dual-Channel DDR3 @ 658MHz (9-9-9-24)
    Graphics Card(s)
    768MB ATI AMD Radeon HD 7560D (MSI)
    Sound Card
    AMD High Definition Audio Device
    Monitor(s) Displays
    SMXL2370HD (1920x1080@60Hz) ASUS VE278 (1920x1080@60Hz)
    Hard Drives
    119GB Crucial_ CT128MX100SSD1 SATA Disk Device (SATA (SSD))
    931GB Seagate ST1000DM 003-1CH162 SATA Disk Device (SATA )
    Browser
    Chrome, Firefox, Edge (Chrome)
    Antivirus
    MalwareBytes Premium

Loki

Junior Member
VIP
Local time
9:40 PM
Posts
19
Thread starter
For Chrome this also works:

reg add HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Google\Chrome /v DnsOverHttpsTemplates /t REG_EXPAND_SZ /d https://chrome.cloudflare-dns.com/dns-query
reg add HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Google\Chrome /v DnsOverHttpsMode /t REG_EXPAND_SZ /d automatic
 

My Computer

System One

  • Operating System
    Windows 10
    Computer type
    PC/Desktop
    CPU
    AMD A8-5600K Trinity 32nm Technology
    Motherboard
    MSI A78M-E35 (MS-7721) (P0)
    Memory
    16.0GB Dual-Channel DDR3 @ 658MHz (9-9-9-24)
    Graphics Card(s)
    768MB ATI AMD Radeon HD 7560D (MSI)
    Sound Card
    AMD High Definition Audio Device
    Monitor(s) Displays
    SMXL2370HD (1920x1080@60Hz) ASUS VE278 (1920x1080@60Hz)
    Hard Drives
    119GB Crucial_ CT128MX100SSD1 SATA Disk Device (SATA (SSD))
    931GB Seagate ST1000DM 003-1CH162 SATA Disk Device (SATA )
    Browser
    Chrome, Firefox, Edge (Chrome)
    Antivirus
    MalwareBytes Premium

TairikuOkami

Brony
Member
VIP
Local time
3:40 AM
Posts
53
Location
Trnava
This works for Edge
Does it? Because when you use automatic, it falls back to the default DNS, if DoH fails for whatever reason.
But I am using DoH within Windows, so it might be interfering in some way. Windows 11/21H2 will solve it.
 

My Computer

System One

  • Operating System
    Windows 11 Home
    CPU
    AMD Ryzen 5 3600 (07/19)
    Motherboard
    MSI B450 TOMAHAWK 7C02v1H5 (07/19)
    Memory
    4x 8GB ADATA XPG GAMMIX D10 DDR4 3200MHz CL16
    Graphics Card(s)
    MSI Radeon RX 580 ARMOR 8G OC (08/19)
    Sound Card
    Creative Sound Blaster Z (11/16)
    Monitor(s) Displays
    24" AOC G2460VQ6 (01/19) 1920×1080@75Hz + FreeSync (DisplayPort)
    Hard Drives
    ADATA XPG GAMMIX S11 Pro SSD 512GB (07/19)
    PSU
    Seasonic M12II-520 80 Plus Bronze (11/16)
    Case
    Lian Li PC-7NB + 3x Noctua NF-S12A FLX@700rpm
    Cooling
    CPU Cooler Noctua NH-U12S@700rpm
    Keyboard
    HP Pavilion Wireless Keyboard 600 (05/21)
    Mouse
    HP Wireless Silent 280M Mouse (05/21)
    Internet Speed
    300/30 Mbps via RouterOS (05/21) + TCP Optimizer
    Browser
    Microsoft Edge
    Antivirus
    None
    Other Info
    Headphones: Sennheiser RS170 (09/10) + Software: https://tinyurl.com/7hkjyhsj

Loki

Junior Member
VIP
Local time
9:40 PM
Posts
19
Thread starter
Does it? Because when you use automatic, it falls back to the default DNS, if DoH fails for whatever reason.
But I am using DoH within Windows, so it might be interfering in some way. Windows 11/21H2 will solve it.

I've tested here: Cloudflare ESNI Checker | Cloudflare
And it shows I'm using Cloudflare 1.1.1.1 and SecureDNS DoH
 

My Computer

System One

  • Operating System
    Windows 10
    Computer type
    PC/Desktop
    CPU
    AMD A8-5600K Trinity 32nm Technology
    Motherboard
    MSI A78M-E35 (MS-7721) (P0)
    Memory
    16.0GB Dual-Channel DDR3 @ 658MHz (9-9-9-24)
    Graphics Card(s)
    768MB ATI AMD Radeon HD 7560D (MSI)
    Sound Card
    AMD High Definition Audio Device
    Monitor(s) Displays
    SMXL2370HD (1920x1080@60Hz) ASUS VE278 (1920x1080@60Hz)
    Hard Drives
    119GB Crucial_ CT128MX100SSD1 SATA Disk Device (SATA (SSD))
    931GB Seagate ST1000DM 003-1CH162 SATA Disk Device (SATA )
    Browser
    Chrome, Firefox, Edge (Chrome)
    Antivirus
    MalwareBytes Premium

F22 Simpilot

Junior Member
VIP
Local time
7:40 PM
Posts
140
I was going to say. I thought CloudFlare's DNS offerings offered DoH. If I'm not mistaken, just adding 1.1.1.1 or their others may have DoH for the whole computer. But I think not since it's application specific, though, the CloudFlare DNS would use DoH if available.

And there are proxies. When I messed with DSNcrypt, it hosed my network stack. May not for you so YMMV... dns over https proxy - Google Search

For those that want to craft their own. Or for those that like to rock... LOL DoHProxy.com | DoH Proxy & Anonymizer
 

My Computer

System One

  • Operating System
    Windows 7
Top