Microsoft has recently unveiled that the DNS over HTTPS (DoH) feature, which leverages HTTPS-based encryption, is now officially activated in Windows Server 2025. This functionality encrypts DNS communications between clients and servers, effectively thwarting any attempts at data interception or tampering. Notably, DoH has already been a staple in Windows client versions for several years. Its inclusion in the server operating system variant marks a significant stride towards fortifying the security of enterprise-level network infrastructures.
Presently, the DoH feature in Windows Server 2025 is in its preview phase. To activate this feature, users are required to install the security update (KB5075899), which was rolled out in February 2026. Once enabled, the DNS server will maintain its support for conventional DNS queries, while simultaneously offering encrypted communication avenues for clients that are compatible with DoH.
