How to Disable Secure DNS in Google Chrome

The Local Network Bypass

Historically, when you typed a website address into Chrome, the browser would ask your router’s DNS server to translate the name into an IP address. This allowed network administrators to use tools like Pi-Hole to block advertisements network-wide. However, Google Chrome now utilizes “Secure DNS” (DNS-over-HTTPS). This feature encrypts your DNS requests and sends them directly to Google or Cloudflare, completely bypassing your local router. While this stops your internet service provider from seeing which websites you visit, it entirely breaks local network adblockers and parental control filters, as Chrome is secretly tunneling out of your network. You must disable this encryption.

How to Turn Off Secure DNS

You can force Chrome to respect your router’s DNS settings via the security menu.

  1. Open the Google Chrome desktop browser.
  2. Click the three vertical dots (⋮) in the top right corner and select Settings.
  3. In the left-hand sidebar, click on Privacy and security.
  4. In the main window, click on Security.
  5. Scroll down to the “Advanced” section.
  6. Look for the master toggle switch labeled Use secure DNS.
  7. Toggle this switch to the Off position (the switch will turn grey).

Restoring Network Control

The change takes effect instantly. Chrome will immediately stop encrypting its DNS requests and will revert to asking your local router for IP addresses. If you have a Pi-Hole or a local firewall blocking specific domains, Chrome will now successfully hit those blocks, restoring your ability to filter internet traffic for the entire network.

Get the best tech tips delivered straight to your inbox.

Join thousands of readers mastering Apple, Google, Microsoft, and Linux.