Policy
Configure Discovery of Designated Resolvers (DDR) protocol
Windows 11 25H2
Policy overview
Key metadata and intent for this policy.
Supported OS tags: Windows11
Specifies if the DNS client would use the DDR protocol. The Discovery of Designated Resolvers (DDR) protocol allows Windows to move from unencrypted DNS to encrypted DNS when only the IP address of a resolver is known. If you enable this policy, the DNS client will use the DDR protocol. If you disable this policy setting, or if you do not configure this policy setting, the DNS client will use locally configured settings.
Internal name
DNS_Ddr
Policy ID
ad7076785940
Elements
0
Registry values
How enabled and disabled states update the registry.
| Registry location | Type | Enabled value | Disabled value |
|---|---|---|---|
| HKLM\Software\Policies\Microsoft\Windows NT\DNSClient\EnableDdr | REG_DWORD | 1 | 0 |
Policy elements
Inputs and configuration options exposed by this policy.
This policy has no additional user input fields.
Other policies in this category
Explore related policies at the same level.
- ComputerAllow DNS suffix appending to unqualified multi-label name queriesAt least Windows Vista
- ComputerAllow NetBT queries for fully qualified domain namesAt least Windows Server 2012, Windows 8 or Windows RT
- ComputerConfigure encrypted name resolutionAt least Windows Server 20H2, Windows 10 Version 20H2
- ComputerConfigure multicast DNS (mDNS) protocolAt least Windows Server 2016, Windows 10 Version 1703
- ComputerConfigure NetBIOS settingsAt least Windows Vista
- ComputerConnection-specific DNS suffixWindows XP Professional only
- ComputerDNS serversWindows XP Professional only
- ComputerDNS suffix search listAt least Windows Server 2003 operating systems or Windows XP Professional
- ComputerDynamic updateAt least Windows Server 2003 operating systems or Windows XP Professional
- ComputerIDN mappingAt least Windows Server 2012, Windows 8 or Windows RT
- ComputerPrefer link local responses over DNS when received over a network with higher precedenceAt least Windows Server 2012, Windows 8 or Windows RT
- ComputerPrimary DNS suffixAt least Windows 2000