Deployment instructions for testing Public Preview of Zero Trust DNS (ZTDNS) on Windows 11 Insider builds.
Updated Nov 11, 2025
Version 4.0ZTDNS is a fantastic idea, but the "Ensure all applications and services are configured to use the Windows DNS client" part will probably be a huge pain... Imagine how many apps out there (and not only legacy ones) rely on their own DNS clients. I don't know, maybe it's not a very good idea, but at least during the roll-out period, I'd add a notification mechanism that would let users know that a certain Windows process failed to complete DNS resolving. And that could be an interactive notification, like "click here to add this process to the exclusions".