Changing the DNS server is one of the simplest settings you can adjust on your cell phone, computer, and router—and one of the most poorly explained. DNS is the internet's "phone book": when you type an address, it translates the website name into the number of the server hosting the page. If this translation takes too long, everything seems slow, even with a fast internet plan.
There are free, public DNS servers that often respond faster than the standard DNS of many ISPs and also block known malicious domains. Below you will find the most commonly used options in Brazil, with the addresses of each, what the change actually does in daily use, and what it doesn't do.
What DNS switching does — and what it doesn't do.
Before we get to the list, it's worth aligning expectations, because a lot of misinformation is circulating about this topic. Changing the DNS It does not increase the contracted speed of your plan.. If you have 100 MB, you will continue to have 100 MB. What changes is the name resolution time, measured in milliseconds: a closer and faster DNS server makes the page load faster. to start Loading first. On connections with slow DNS, the difference is noticeable; on those who already have a good DNS, it is subtle.
It is also important to know that a public DNS It's not a VPN. And it doesn't hide your browsing activity from your internet provider. It doesn't change your IP address and doesn't unlock streaming catalogs from other countries. And while many of them block known phishing and malware domains, this is an extra layer of protection—it doesn't replace antivirus software, strong passwords, or common sense when clicking on links.
Benefits of using a good DNS
With expectations in place, the real gains are threefold. The first is response time: servers like those of Cloudflare and Google maintain infrastructure within Brazil, which reduces query latency and helps with online gaming and browsing with many tabs.
The second is stability. ISP DNS servers are usually the first to fail during network spikes, which is why "the internet goes down but WhatsApp works" happens so frequently. The third is security and filtering: some of these services automatically block domains linked to scams, and some offer versions with adult content filters, useful on networks with children at home.
5 best free DNS servers to use in Brazil
All the services below are free for personal use, work on any system, and can be configured on a standalone device or on the router, covering the entire house.
1. Google Public DNS — 8.8.8.8 and 8.8.4.4
Google Public DNS is the best known of all and a safe choice for those who simply want to switch and forget about it. It has servers spread around the world, including points of presence in Brazil, and is known for its stability: it rarely goes offline.
The addresses are 8.8.8.8 (primary) and 8.8.4.4 (Secondary). For IPv6, use 2001:4860:4860::8888 and 2001:4860:4860::8844. It doesn't filter content: it delivers any existing domain, with protection against cache poisoning attacks. If you want speed and reliability without blocking, it's the most straightforward option.
2. Cloudflare DNS — 1.1.1.1 and 1.0.0.1
Cloudflare's 1.1.1.1 domain is preferred by those concerned about privacy. The company publicly commits to not selling browsing data and not storing your IP address on disk, with periodic independent audits. Cloudflare's network is enormous and has a presence in São Paulo, which usually results in very low response times in Brazil.
The default addresses are 1.1.1.1 and 1.0.0.1. There are also two free variants: the pair 1.1.1.2 / 1.0.0.2, which blocks malware domains, and the pair 1.1.1.3 / 1.0.0.3, Cloudflare blocks malware and adult content. They also have their own mobile app if you prefer to activate it without changing your network settings.
3. OpenDNS Home — 208.67.222.222 and 208.67.220.220
OpenDNS, now owned by Cisco, is the veteran in the category and continues to offer a free home plan. Its distinguishing feature is the control panel: by creating a free account, you can choose categories of websites to block on your network and view reports of what has been accessed, something that the other services on this list don't offer for free.
The addresses are 208.67.222.222 and 208.67.220.220. For those who just want the filter ready to go, without configuring anything, they can use OpenDNS FamilyShield at the addresses 208.67.222.123 and 208.67.220.123, which already comes with adult content blocked. It's worth remembering that any DNS filter can be bypassed by someone who understands the subject — it reduces accidental access, but it doesn't replace conversation and supervision.
4. Quad9 — 9.9.9.9 and 149.112.112.112
Quad9 is maintained by a non-profit foundation based in Switzerland and has a stated focus on security. It cross-references queries with threat lists maintained by various security companies and simply does not resolve domains linked to phishing, botnets, and malware distribution—the site doesn't even load.
The addresses are 9.9.9.9 and 149.112.112.112. Because it is subject to Swiss data protection legislation and does not have a business model based on advertising, it is the choice for those who want to block threats without sacrificing privacy. The side effect is rare, but it exists: a legitimate domain that is mistakenly classified becomes inaccessible until the correction is made.
5. CleanBrowsing — 185.228.168.9 and 185.228.169.9
CleanBrowsing is the most complete free alternative for those who want a factory-configured filter. It offers three public profiles, and you choose which one to use simply by changing the addresses — there is no registration or installation required.
The security profile, in 185.228.168.9 and 185.228.169.9, It blocks malicious domains and keeps the rest free. The adult profile, in 185.228.168.10 and 185.228.169.11, adds the blocking of pornographic content. And the family profile, in 185.228.168.168 and 185.228.169.168, This is the most restrictive option, also forcing secure mode in search engines. It's a good option to configure directly on your home router.
And what about Norton ConnectSafe?
Many DNS lists still mention Norton ConnectSafe, but it was... Discontinued by Norton in November 2018. It no longer receives maintenance or updates to its threat lists. If you find the old addresses 199.85.126.10 and 199.85.127.10 in any tutorial, ignore them: for the same purpose, use CleanBrowsing, Quad9, or the Cloudflare filter pairs mentioned above.
How to configure your DNS
On Android, open Settings > Network and Internet > Private DNS, select “Private DNS provider hostname” and enter the service address (for example, dns.google or one.one.one.oneThis method is the most recommended because it encrypts queries and works on both Wi-Fi and mobile data. On iPhone, the equivalent path requires installing the official profile or app of the chosen service — on Wi-Fi, it's also possible to edit the DNS manually in [link to Wi-Fi settings]. Settings > Wi-Fi > (i) > Configure DNS > Manual.
On Windows, go to Settings > Network & Internet, Open the connection in use, click on edit DNS server assignment and change from “Automatic” to “Manual”, filling in the primary and secondary fields. On the router, look for the WAN or DHCP section and fill in the same two fields: this way, all devices in the house will use the new DNS without individual configuration. Note the old values before making any changes, so you can revert if something stops working.

How to know which DNS is best for you
There is no universal winner: the best DNS depends on where you are and which ISP you use, because what matters is the distance to the nearest server. The practical way to find out is to test. Set up a service, use it for a few days, then switch to another and compare the page loading experience. Free DNS benchmark tools for computers also measure the response time of each server from your connection and show the actual ranking in your home.
If any website stops loading after the change, the problem is almost always a filter: test the same address with an unblocked DNS, such as 8.8.8.8, before concluding that the site is down. And if all browsing stops, simply revert the setting to "Automatic" and the network will return to the ISP's DNS.
Conclusion
Switching DNS is free, takes two minutes, and is completely reversible. Between Google Public DNS, Cloudflare, OpenDNS Home, Quad9, and CleanBrowsing, you have options for every priority: pure speed, privacy, content control, or threat blocking. The gain is real, but modest and specific—it's in the name resolution time and the extra layer of security, not in the speed of your plan.
Choose a service from the list, note the previous configuration, test it for a few days, and keep the one that performs best with your connection. Do you have any questions about any step or would you like to suggest another server? Contact us at [email protected].
