DNS Setup on Android
Encrypted resolution system-wide – without an app.
From Android 9, Private DNS can be enabled directly in the system and applies to Wi-Fi as well as cellular. For older devices, the classic Wi-Fi DNS configuration is described.
DNS Server Credentials
This service has no IPv4 addresses yet. Use IPv6 or DNS-over-TLS.
DNS-over-TLS is being prepared on the anycast fleet and will appear here automatically once the service is live.
Private DNS (DNS-over-TLS, Android 9+)
DNS-over-TLS is being prepared on the anycast fleet — this section appears automatically once the service is live. Encrypted resolution already works today via DNS-over-HTTPS.
Wi-Fi DNS (Android 8 and older)
Only for individual Wi-Fi networks; cellular is not affected.
Settings → Network & Internet → Wi-Fi, select the active network and Edit.
Under Advanced options change IP settings from DHCP to Static.
1Confirm with Save or Connect.
Troubleshooting & notes
Cellular
Classic DNS settings only apply to Wi-Fi; use Private DNS for cellular.
Private DNS not visible?
The device probably does not support DoT – fall back to a third-party client.
Reconnect
After saving, disconnect from the network or restart the device for changes to take effect.
More notes in the official Android documentation.