https://support.mozilla.org/en-US/kb/canary-domain-use-application-dnsnet * Skip to main content * Switch language * Skip to search Mozilla Support Logo Search Menu Avatar for Username * Get Help Close Firefox menu Ask a Question Get support from our contributors or staff members. + Firefox Browser + Mozilla VPN + Firefox for iOS + Firefox Focus + Firefox for Android + Browse All Products Explore Our Help Articles Dig into the knowledge base, tips and tricks, troubleshooting, and so much more. + Firefox Browser + Mozilla VPN + Firefox for iOS + Firefox Focus + Firefox for Android + Browse All Articles * Contribute * [ ] Search * Sign In/Up [ ] Search Search Support [ ] Search 1. Home 2. Firefox 3. Advanced and experimental features 4. Canary domain [ ] Search * + Customize this article [*] Firefox [Version 113] [Windows 8 ] Was this article helpful? Yes No Please wait... [2020-] Download Firefox * Systems and Languages * What's New * Privacy Give Firefox a tune up Refresh Firefox * How does it work? * Download a fresh copy Canary domain - use-application-dns.net To signal that their local DNS resolver implements special features that make the network unsuitable for DNS-over-HTTPS (DoH), network administrators may configure their networks to modify DNS requests for the following special-purpose domain, called a canary domain: use-application-dns.net. Note: The canary domain only applies to users who have DoH enabled as the default option. It does not apply for users who have made the choice to turn on DoH by themselves. Firefox will attempt to resolve this domain using the DNS server(s) configured in the operating system of the device, and examine the result. The result will be considered negative if: * A response code other than NOERROR is returned, such as NXDOMAIN (non-existent domain) or SERVFAIL. * A NOERROR response code is returned, but contains neither A nor AAAA records. The result will be considered positive if the query completes with NOERROR and contains A or AAAA records (or both). A negative result will be a signal to disable application DNS, (i.e., DoH). The use of this domain is specified by Mozilla, as a limited-time measure until a method for signaling the presence of DNS-based content filtering is defined and adopted by an Internet standards body. Note: Some existing DNS filtering providers implement similar domains for users to verify that filtering is working. This canary domain differs by being intended to be checked by software such as Firefox, rather than checked explicitly by the user, and by working across filtering providers. Share this article: https://mzl.la/3Q9672V Was this article helpful? Yes No Please wait... These fine people helped write this article: AliceWyman, Mozinet, Joni, Angela Lazar Illustration of hands Volunteer Grow and share your expertise with others. Answer questions and improve our knowledge base. Learn More Mozilla * Report Trademark Abuse * Source code * Twitter * Join our Community * Explore Help Articles Firefox * Download * Firefox Desktop * Android Browser * iOS Browser * Focus Browser Firefox for Developers * Developer Edition * Beta * Beta for Android * Nightly * Nightly for Android Firefox Accounts * Sign In/Up * Benefits * Firefox Private Network Language Language [English ] Go * Twitter(@firefox) * YouTube (firefoxchannel) * Instagram (firefox) Mozilla * mozilla.org * Terms of Service * Privacy * Cookies * Contact Visit Mozilla Corporation's not-for-profit parent, the Mozilla Foundation. Portions of this content are (c)1998-2023 by individual mozilla.org contributors. Content available under a Creative Commons license.