How to change the DNS settings on your router to improve speed and security

Last update: February 10th 2026
  • Changing your DNS settings can improve response speed, privacy, and content filtering without affecting your contracted bandwidth.
  • Configuring DNS on the router extends the change to all devices on the home or office network.
  • Choosing reliable public DNS servers (Google, Cloudflare, OpenDNS, Quad9, etc.) is key, depending on your location and needs.
  • Avoiding unknown DNS servers and securing your router reduces the risk of DNS poisoning or hijacking attacks.

Change DNS on router

If you've ever noticed your internet connection is slow, certain websites won't load, or you're concerned about privacy and security while browsing , changing your router's DNS settings is likely just what you need. While it might sound technical, it's an adjustment you can make yourself in just a few minutes and it can significantly improve your internet performance.

By default, your internet service provider configures automatic DNS servers, but you're not obligated to use them. Choosing different ones can give you faster speeds, greater stability, enhanced security, or even less censorship . Let's take a closer look at what DNS is, the risks of using unreliable servers, the benefits of changing them at home and in a business, how to do it step-by-step on your router and on different specific models, and which public DNS providers are most recommended today.

What is DNS and why is there so much talk about changing it?

What is DNS?

When you type an address like "google.com" or "facebook.com" into your browser, your device actually needs to connect to a specific numerical IP address of a server . It would be impractical for users to memorize these strings of numbers for every website, so there's a system that acts as an intermediary.

That system is the DNS (Domain Name System), a kind of giant internet directory or phone book that links human-readable domain names (xataka.com, avast.com, redeszone.net, etc.) with their corresponding IP addresses. When your computer asks "where is this website?", the DNS server responds with the IP address, and the browser connects.

DNS servers essentially act as translators between human language and network language . This way, you don't have to remember 172.217.0.0 or similar addresses, just a simple name. This translation happens hundreds of times a day without you even noticing: when you open websites, apps, cloud services, online games, streaming services, updates, and so on.

By default, almost all routers on the market use your Internet Service Provider's (ISP) DNS servers. This means that all devices connected to your network (mobile phones, computers, tablets, game consoles, televisions, smart home devices, etc.) send their queries to these DNS servers pre-configured by the provider without you having to change any settings.

Advantages of changing the DNS settings on your router

Advantages of changing DNS

The interesting thing is that you are not forced to use your ISP's servers: you can replace them with others and get concrete benefits in speed, security, privacy or control of the content that is loaded on your network.

In terms of performance, an alternative DNS can reduce resolution latency, that is, the time it takes your browser to determine which server to connect to . This doesn't increase your contracted bandwidth, but it can make pages load faster, apps respond more quickly, and allow certain services that were previously malfunctioning to start working normally.

There's also a clear security component: some third-party DNS providers filter and block malicious websites, phishing attempts, or domains used for malware . This way, if someone on your network clicks on a dangerous link, DNS resolution can stop it before the page even loads.

In terms of privacy, using servers other than those provided by your internet service provider (ISP) can help reduce the amount of tracking your browsing habits . Many public DNS services commit to deleting records within a few hours or not linking them to personal information, something that doesn't always happen with ISP-provided DNS servers.

Finally, there's the factor of access freedom: depending on the DNS you use, you can bypass blocks on certain websites imposed at the operator level or, conversely, apply parental control or productivity filters. By changing the nameserver, you can go from virtually uncensored browsing to a much more restricted environment.

DNS in business environments: advantages and risks

In a corporate network, the issue becomes even more serious because DNS affects productivity, security, and business continuity . A well-planned change can significantly improve performance, but it's also a delicate matter if implemented without planning.

On the positive side, implementing higher-quality DNS servers in your company can lead to significant improvements in loading times and stability when accessing websites, cloud-based work platforms, corporate email, and other critical tools. Furthermore, many business services allow the use of redundant DNS servers, so if one fails, another takes over, preventing outages.

Another key advantage for businesses is security: some providers offer DNS with advanced filtering, updated blacklists, and protection against suspicious domains . This significantly reduces the likelihood of an employee ending up on a phishing website or downloading malware by clicking on a link in an email.

However, everything has its downside: a poorly executed change or incorrect configuration can cause an immediate disruption of all services that depend on the network . If name resolution breaks down, many applications stop working, users can't access internal or external systems, and the company can lose time and money.

  Integrated Video Security Solutions for Businesses

Furthermore, improper configuration can lead to compatibility issues with certain devices, internal services, VPNs, or integrations that rely on specific DNS servers or internal resolutions . Therefore, in a corporate environment, it's advisable to thoroughly analyze the impact, test during periods of low activity, and, if possible, utilize internal DNS servers or hybrid solutions.

Dangers of using unknown or falsified DNS servers

Not just any DNS server will do: casually choosing any DNS provider you find on a forum or a dubious list can be a bad idea. Ultimately, all your name resolution traffic passes through that provider , so you're placing a lot of trust in them.

If you use compromised or malicious DNS servers, an attacker can manipulate responses and redirect you to fake websites that mimic legitimate ones (banks, email, social media, online stores, etc.). This is known as DNS cache poisoning or DNS spoofing on the server.

In these types of attacks, fake data is injected into the resolver cache, so that when your computer requests a known website, the server returns an IP address of a server controlled by the attacker . The website you see looks legitimate, but it's actually designed to steal credentials, banking information, or install malware.

There is also client-side spoofing, where the device or specific applications are tricked. Here, the goal remains the same: to confuse DNS requests so that the user ends up on fraudulent sites even when they believe they are browsing through secure channels.

To counter these risks, there are several measures: firstly, technologies like DNSSEC add cryptographic signatures that allow verification of the authenticity of responses . Secondly, encrypting queries (using DNS over HTTPS or DNS over TLS) makes it more difficult to intercept and manipulate requests in transit, although it doesn't protect against all types of server attacks.

Influence of DNS on Internet Speed

It's important to clarify that DNS doesn't change your contracted bandwidth, but it does impact how quickly the initial connection to each service is established . In other words, it won't reduce download speeds to 1 Gbps if you have 100 Mbps, but it can make websites start responding faster.

The impact is most noticeable in everyday browsing, streaming, and online gaming. A very slow or overloaded DNS server adds extra milliseconds to each query, resulting in pages that take longer to load, services that take too long to process, and potential intermittent errors when resolving certain domains.

By switching to a DNS with lower latency and better infrastructure, the experience becomes smoother: names resolve faster, the time your browser spends on "searching..." is reduced, and video platforms or online games connect more quickly to the appropriate servers . If the service is geographically well-distributed, you'll notice the difference.

However, just because a DNS is very popular doesn't mean it's the fastest in your specific area. Actual performance depends heavily on your location, your internet service provider, and the proximity of the servers . Therefore, it's best to test your own connection using specialized tools.

There are two widely used tools for this: DNS Benchmark (from Gibson Research Corporation) and DNS Jumper. The first analyzes tens or thousands of servers to show you which ones respond fastest from your network . The second allows you to run quick tests and choose the fastest DNS server from a list, even filtering by maximum response time.

How to change DNS: device vs router

You have two main options: modify the DNS on each device (PC, mobile, tablet, console, etc.) or do it directly on the router. Changing it on your device is useful for testing safely and without affecting the rest of the network . Changing it on the router has a global effect on all connected devices.

If you configure it only on your computer, that computer will use the servers you specified, but the router will continue to query the ISP's default DNS servers for all other devices . This is perfect if you want to run tests or if your ISP's router doesn't allow you to change the DNS settings.

However, if you change the router settings, any mobile phone, TV, laptop, or game console that connects via Wi-Fi or cable will automatically inherit the new DNS servers . You don't have to do it one by one, although the change affects the entire house or office, and a mistake could leave you without internet on all your devices.

Therefore, a prudent approach is usually to first test the chosen DNS servers on a single device. If you see that the connection is working well, pages load smoothly, and there's no unusual behavior, then it makes sense to apply the same change to the router to use it across the entire network.

General steps to change the DNS on the router

Although each brand and model has its own menu, almost all routers follow a similar structure. The generic process for changing DNS settings is usually very similar, with slight variations in the names of the sections.

The first step is to find out the router's default gateway , which is usually 192.168.1.1 or 192.168.0.1. On Windows, you can open Command Prompt, run the command ipconfig , and check the "Default Gateway" section to confirm it.

  Complete Guide to Network Mapping: Tools and Strategies

With that IP address, open a web browser and enter it in the address bar. The router will ask for a username and password. Many models come with generic passwords like "admin", "1234", or similar, but it's recommended to change these credentials to a strong, unique password to prevent unauthorized access to the device.

Once inside the control panel, you'll need to locate the "advanced settings," "Internet," "WAN," "Local Network," or something similar, depending on the firmware. Within one of these sections, you'll find fields such as "DNS," "DNS Server," "DNS Servers," or "Static DNS ," where you'll see the current servers, usually those provided by your internet service provider.

The next step is to disable automatic DNS usage (there's usually a checkbox or dropdown menu) and manually enter the addresses of the primary and secondary servers you want to use , such as Google, Cloudflare, OpenDNS, or other trusted providers. Then save the settings and restart your router so all devices can start using them.

It's important to remember that changing this setting is not a game: if you enter the addresses incorrectly or specify unresponsive servers, the entire network will lose name resolution . In that case, you would simply need to return to the router's interface (sometimes using a direct numerical IP address instead of a domain) and restore the original values ​​or try different DNS servers.

Practical examples: changing DNS on specific routers

Each manufacturer organizes menus differently, so it's worth taking a look at how it's done in some of the most common models found in homes and small offices. Even if you don't have the exact same model, the structure is usually similar and will serve as a guide.

D-LINK Routers

On a D-LINK router, the typical process involves opening the browser, typing the router's IP address (usually 192.168.1.1), entering the username and password (if you haven't changed it, it's usually "admin" in both fields ) and looking at the top for the "Advanced Settings" option.

Within that menu, go to the "Internet" section and locate the option to use manual DNS instead of the ISP's automatic DNS servers . There you will see boxes for "primary DNS server" and "secondary DNS server," where you simply need to enter your chosen addresses and save the settings.

Digi ZTE router

If you're a Digi customer and have one of their ZTE routers, the process is similar: access the device's IP address, enter your credentials, and go to the "Local Network" section of the main menu. From there, go to "LAN" and then to "DHCP Server."

On that screen, you'll find the fields for the primary and secondary DNS servers associated with the DHCP server, which is responsible for assigning network parameters to devices. By changing these addresses and selecting "No automatic" settings, you'll ensure that all devices receiving IP addresses from the router use the new DNS servers . Then, simply click "Apply" to save the change.

Vodafone routers and Secure DNS

Many Vodafone routers include a feature called Secure DNS , designed to block malicious websites and certain content. The problem is that, by default, this feature can prevent you from using third-party DNS servers, as the device forces the use of its own and "hijacks" the DNS resolution.

To modify the DNS servers on these routers, you need to activate expert mode in the interface, go to the "Internet > DNS & DDNS" menu, and uncheck the Secure DNS box if available. Only then will you be able to enter external DNS servers in the corresponding fields . Unfortunately, on some models, this option may not appear or may be blocked by the firmware.

When there is no way to disable this DNS hijacking on the router, the alternative is to manually configure the servers on each device: for example, in Windows by going to "Network and Internet", opening the adapter properties, selecting "Internet Protocol Version 4" and checking "use the following DNS server addresses" to enter the new ones.

FRITZ!Box Routers

On FRITZ!Box routers, the change is quite straightforward. After accessing the management interface through your browser, look at the menu on the left and go to "Internet" > "Access Details". At the top, you'll see several tabs, including one called "DNS Server".

By default, the active option is usually "Use the DNSv4 server assigned by your internet service provider." To customize it, select "Use a different DNSv4 server" and enter your desired DNS servers in the fields. Clicking "Apply" will cause the router to start using these alternative servers for all connections.

ASUS Routers

On ASUS devices, the menu may vary depending on the model, but the concept is similar. For example, on an ASUS RT-AC86U, you would access the interface, select "Advanced Settings" on the side panel, and then "LAN" to find the "DNS and WINS Server Settings" section , where you would enter the desired servers.

On other models, such as the ASUS ROG Rapture GT-AXE11000, the path is "Advanced Settings" > "WAN - Internet Connection". There, you'll find a section called "WAN DNS Settings" with an option to "Connect to server automatically". Changing this to "No" will allow you to manually set the primary and secondary DNS servers for your entire network.

Synology Routers

In the Synology ecosystem, once you've logged into your router with your username and password, go to the side menu and select "Local Network." On the "General" tab, you'll see the "DHCP Server" section , where you can specify manual DNS servers instead of the ones assigned automatically.

  The best free program to manage the Windows Firewall

When you save the changes, the new DHCP leases will include those DNS servers, so any device that gets an IP address from the router will start using the servers you have configured as preferred , without needing to adjust each device manually.

TP-Link Archer routers and compatibility

On many TP-Link Archer models (such as the AX10, C6, AX55, VR400, etc.), the latest firmware versions have expanded the functionality related to DNS, IPv6, and other advanced features. It's important to check the official support page for your specific model , select the correct hardware version, and download the datasheet or firmware release notes.

Not all routers are sold in all regions, nor do they all receive the same updates, so some DNS features described in generic manuals may not yet be available on your unit . Keeping your firmware up to date is key for both security and having access to the latest options.

Which public DNS servers are the most popular and recommended?

There are a huge number of public DNS servers you can use instead of the ones provided by your internet service provider. Some prioritize pure speed, others security, others the absence of censorship, or parental controls. Ideally, you should try several and see which one works best with your connection.

Among the best known and most commonly used at home are:

  • Google Public DNSIt offers fast servers with a robust infrastructure. IPv4 addresses: 8.8.8.8 and 8.8.4.4.
  • Cloudflare DNSHighly focused on privacy, it is advertised as the fastest resolver. IPv4: 1.1.1.1 and 1.0.0.1.
  • OpenDNS (Cisco): Combines performance with security and filtering. IPv4: 208.67.222.222 and 208.67.220.220.
  • Quad9 DNS: aimed at blocking malicious domains using threat lists. IPv4: 9.9.9.9 and 149.112.112.112.
  • Comodo Secure DNS: service managed by the security company Comodo, focused on Avoid sites with malware or phishing. IPv4: 8.26.56.26 and 8.20.247.20.
  • DNS.WatchIt prioritizes neutrality and the absence of censorship, without storing browsing data. IPv4: 84.200.69.80 and 84.200.70.40.

In addition to these, there are many other alternatives: Verisign (64.6.64.6 and 64.6.65.6), FreeDNS, IBM Quad9, Level3, CleanBrowsing (with family filters), Neustrar/UltraDNS and a long list of other services that may be more or less interesting depending on what you are looking for (speed, parental control, no censorship, etc.).

There's no single "magic" DNS that's best for everyone. Performance and user experience depend on factors like your physical location, your ISP's network, international routing, and current server congestion. That's why it's best to use tools like DNS Benchmark or DNS Jumper to get a list of optimal servers for your specific needs.

DNS Benchmark, for example, allows you to quickly analyze several servers or run a much more extensive test of thousands of options worldwide. At the end, it shows you which ones offer the fastest response times from your connection . DNS Jumper, meanwhile, includes a "fastest DNS" feature and latency filters, very useful for those who simply want to choose the fastest available service.

DNS, router security, and extra protection

DNS is just one piece of your network security, but an important one. To prevent an attacker from manipulating your servers or exploiting router vulnerabilities, the first step is to change the default login credentials on your device and disable any remote access you don't use.

It also helps to change the Wi-Fi network name so it doesn't reveal the router's make and model, and to always keep the firmware updated. This significantly reduces the attack surface against DNS hijacking through the network device itself , a tactic frequently used by cybercriminals when the device is still using factory settings.

Beyond DNS, you can add an extra layer with tools like a trusted VPN, which encrypts all traffic and makes it harder for anyone to see or modify the requests leaving your devices . Some services combine their own DNS servers with an encrypted tunnel, so your internet provider can no longer see which domains you're querying.

Ultimately, changing your DNS is a relatively simple adjustment that can give you a clear boost in speed, security, and control, especially when combined with other best practices: strong passwords, updated routers, up-to-date antivirus software, and some common sense when browsing and opening links.

  • The choice of DNS affects speed, privacy, and security.although the contracted bandwidth does not change.
  • Changing the DNS settings on your router applies the change to all devices.Whereas doing it on each device only affects that device.
  • There are public DNS servers focused on performance, security, or lack of censorship.Ideally, you should test which ones perform best in your location.
  • Avoid unknown DNS servers and protect your router. (firmware, passwords, security features) to avoid facilitating hijacking or spoofing attacks.