Custom System Settings

Table of Contents

Router

DNS ProviderUnencryptedEncrypted (DoT)Encrypted (DoH)Reference
Cloudflare1.1.1.1, 1.0.0.1, 2606:4700:4700::1111, 2606:4700:4700::1001one.one.one.one (by IP: 1.1.1.1, 1.0.0.1)https://1.1.1.1/dns-query, https://1.0.0.1/dns-query1.1.1.1
Quad99.9.9.9, 149.112.112.112, 2620:fe::fe, 2620:fe::9dns.quad9.nethttps://dns.quad9.net/dns-queryhttps://quad9.net/service/service-addresses-and-features
Mullvadn/adns.mullvad.nethttps://dns.mullvad.net/dns-querymullvad.net
Deutsche Telekomautomaticdns.telekom.de??n/a

Currently I use Cloudflare and Quad9 with DoT (no fallback to unencrypted DNS).

Other settings regarding DNS:

  • Fallback: Cloudflare DNS 1.1.1.1 and 1.0.0.1, if wanted

Further info:

Webbrowser Configuration Changes

All browsers
FeaturePreferenceValueReference
Set the preferred default search enginen/an/anone
Mozilla Firefox
FeaturePreferenceValueReference
Enable Firefox Syncn/an/anone
Disable cachebrowser.cache.check doc frequency1mozillazine.org
Disable media keysmedia.hardwaremediakeys.enabledfalsemozillazine.org
Disable internal PDF viewerpdfjs.disabledtruenone
Chromium-like browsers (Chromium, Vivaldi, Chrome, …)
FeaturePreferenceValueReference
Disable media keyschrome://flags/#global-media-controls > #hardware-media-key-handlingdisablednone
Allow mixed HTTP vs. HTTPS contentvivaldi://flags/#unsafely-treat-insecure-origin-as-securehttp://subdomain.domain.com:1234specified URLs only (ports matter!)
Microsoft Edge
FeaturePreferenceValueReference
Disable media keysedge://flags/#global-media-controls > #global-media-controlsdisablednone

Webrowser Addons

Mozilla Firefox
AddonSettingsReference
Add custom search engineAdd https://www.qwant.com/?... as Qwant en-DEmozilla.org
Facebook Containernonemozilla.org
Firefox Multi-Account Containersnonemozilla.org

Windows 10 Advanced Modifications

FeatureInstructionsReference
Disable auto mic adjustmentOpen sound controls and for each mic disable exclusive control
Enable auto tuning for networkas admin run: netsh int tcp set global autotuninglevel=normal
Disable web searchsee ghacks articleghacks.net
Disable Windows telemetry servicesRegedit: Computer\HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\DiagTrack\Start = 4: Start = 4
Regedit: Computer\HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\WMI\Autologger\Diagtrack-Listener: Startr = 0
PowerShell: Remove-Item “LogFiles\WMI\Diagtrack-Listener.etl*”
Reboot Windows
bsi.bund.de (German)
Disable download of manufaturer appsA broken URL in Windows 10 (and Windows 11?) causes an error that seems to affect some devices. As a temporary fix one can disable automatically downloading manufacturers’ apps and custom icons via the advanced system settings.
Hit the Windows icon in the taskbar and search for advanced system settings. Open them and go to the tab called Hardware. There select Device Installation Settings and change that setting to No. Save the changes and reboot the computer.
Microsoft Answers

Windows 10 Stuff to Think About

Zoom

FeaturePreferenceValueReference
Do not change window size when screen is sharedKeep current sizechecknone

In