1.1.1.1
A free public recursive DNS service operated by Cloudflare in partnership with APNIC, with related applications that provide encrypted DNS and the WARP network tunnel.
Last updated August 21, 2026
Overview
1.1.1.1 is a public Internet service and product brand operated by Cloudflare in cooperation with the Asia Pacific Network Information Centre (APNIC). Its principal function is recursive Domain Name System resolution: users send domain-name queries to Cloudflare-operated name servers, which resolve host names into IP addresses so that applications can connect to websites and other Internet services. The service is available without charge and is identified primarily by the memorable IPv4 addresses 1.1.1.1 and 1.0.0.1, together with additional IPv4 and IPv6 endpoints. Cloudflare announced 1.1.1.1 on April 1, 2018, positioning it as a fast, privacy-oriented alternative to DNS resolvers supplied by Internet service providers. The service uses anycast routing to direct requests to a nearby operational location. Cloudflare's extensive network and its presence in front of a large number of Internet properties can allow some answers to be served efficiently within the same broader infrastructure. The service is also accessible to Tor users through an onion address, although the standard consumer configuration uses public IP endpoints. The brand expanded beyond manually configured DNS settings with the release of mobile applications for Android and iOS in November 2018, followed by support for desktop platforms including Windows, macOS and Linux. These applications can configure a device to use 1.1.1.1 and protect DNS queries through encrypted DNS protocols such as DNS over HTTPS and DNS over TLS. In September 2019, Cloudflare added WARP, a VPN-like mode built into the application. WARP establishes an encrypted connection from the device to a nearby Cloudflare location and is intended to protect traffic from local intermediaries while improving the path to some destinations. Its tunnel technology uses BoringTun, Cloudflare's Rust-based, user-space implementation of WireGuard. WARP is distinct from a conventional anonymity service. It is designed primarily to secure a device's connection rather than to provide multi-hop identity obfuscation. For destinations outside Cloudflare's network, the service can present a Cloudflare address representing the user's approximate location. Cloudflare has also changed the consumer service so that websites protected by Cloudflare do not receive the user's original address through the service's forwarding behavior. WARP+ extends the basic product by using Cloudflare's private backbone and Argo-related routing capabilities to seek less congested paths. The product has included referral-based and paid offerings over time; the current reference material describes WARP+ Unlimited as a paid subscription with no data limit as of November 2025. The choice of 1.1.1.1 was technically consequential. Before the launch, the address had been used improperly by some routers, corporate networks and testing configurations for captive portals, login pages or internal purposes. Because 1.1.1.1 was public address space rather than private reserved space, those configurations could generate malformed or unwanted traffic and interfere with legitimate routing. Cloudflare and APNIC therefore had to manage a substantial volume of garbage traffic and address compatibility problems in network equipment and ISP infrastructure. The service nevertheless became one of the most recognizable public DNS brands, commonly compared with Google's 8.8.8.8 and Quad9. It remains part of Cloudflare's broader consumer connectivity and privacy portfolio.
History
1.1.1.1 emerged from a collaboration between Cloudflare and APNIC to operate a public recursive DNS resolver. The service was announced on April 1, 2018. Its identifying address was selected for memorability and ease of configuration, while Cloudflare supplied the global operational network and APNIC contributed expertise and stewardship relating to Internet number resources. The service was presented as a freely available alternative to DNS resolvers operated by access providers and other large technology companies. The resolver uses anycast routing, allowing requests sent to its public addresses to be handled by a nearby Cloudflare location. In addition to conventional DNS resolution, the service became associated with privacy-oriented transport options. Cloudflare's applications support encrypted DNS through DNS over HTTPS and DNS over TLS, reducing the exposure of DNS queries to parties observing the local network or access connection. Cloudflare's network also contains authoritative DNS and other Internet infrastructure, allowing some queries to be handled efficiently within the company's environment. A significant operational issue was that 1.1.1.1 had been misused before becoming a public resolver. Some routers, corporate networks and captive-portal systems treated the address as if it were an internal or test address, despite it not being reserved private space. Those configurations produced invalid or unwanted traffic and could prevent users from reaching the legitimate service. The history of the product therefore includes cleanup and compatibility work involving Cloudflare, APNIC, network equipment vendors and Internet service providers. The related 1.0.0.0/8 address block had been allocated to APNIC in 2010, reinforcing the distinction between unassigned address space and address space reserved for private use. In November 2018, Cloudflare extended the service through Android and iOS applications. The applications made resolver configuration easier and added encrypted DNS capabilities. Desktop clients for Windows, macOS and Linux followed as the product expanded from a resolver configured in network settings into a consumer application family. In September 2019, Cloudflare introduced WARP within the 1.1.1.1 application. WARP is a VPN-like encrypted tunnel rather than merely a DNS configuration tool. It connects a device to a nearby Cloudflare data center and can route device traffic through Cloudflare's network. The system is based on BoringTun, Cloudflare's Rust implementation of the WireGuard protocol. Cloudflare described potential benefits including protection from local intermediaries, secure DNS handling, and improved routing for certain connections. WARP can replace the user's apparent source address with a Cloudflare address corresponding to an approximate location when accessing destinations outside Cloudflare's network. WARP+ developed as a premium or enhanced version using Cloudflare's private backbone and Argo-related routing. Earlier versions included referral mechanisms for obtaining additional service access, while later product materials describe WARP+ Unlimited as a paid monthly offering without a data cap. Through these developments, 1.1.1.1 evolved from a single public DNS endpoint into a broader consumer connectivity brand covering recursive resolution, encrypted DNS, and an encrypted network tunnel. It continues to operate as a Cloudflare product and is commonly categorized alongside other public recursive resolvers such as Google Public DNS and Quad9.
- 2019WARP added to the 1.1.1.1 application
The application gained WARP, an encrypted VPN-like tunnel built around Cloudflare's BoringTun implementation of WireGuard.
- 2018Public DNS service announced
Cloudflare announced 1.1.1.1 as a free public recursive DNS service developed with APNIC.
- 2018Mobile applications released
Cloudflare launched Android and iOS applications that simplified resolver setup and enabled encrypted DNS options.
- 2010APNIC receives the 1.0.0.0/8 address block
The address space later associated with the service was allocated to APNIC. This history became relevant to the distinction between publicly allocated address space and private network addressing.
Products and positioning
A globally accessible, privacy-oriented public DNS and consumer network-security service. Its positioning combines simple memorable addressing, fast recursive resolution, encrypted DNS, and an optional Cloudflare-operated device tunnel.
1.1.1.1 Public DNS ResolverPublic recursive DNS2018
The core service provides public recursive DNS resolution through Cloudflare-operated anycast endpoints, principally identified by 1.1.1.1 and 1.0.0.1. Users can configure the addresses manually in a device or router, while applications can automate the setup. The resolver is intended for general Internet use and is available without charge. Cloudflare also provides access through IPv6 endpoints and supports use by Tor clients through an onion address.
1.1.1.1 AppConsumer network application2018
The 1.1.1.1 application family brings resolver configuration and network protection to mobile and desktop operating systems. It can configure the system to use Cloudflare's DNS service and protect DNS queries with DNS over HTTPS or DNS over TLS. Later versions incorporated WARP, making the application a gateway to both encrypted DNS and Cloudflare's broader device traffic tunnel.
Cloudflare WARPEncrypted network tunnel2019
WARP is an encrypted, VPN-like mode integrated into the 1.1.1.1 application. It tunnels traffic from a device to a nearby Cloudflare data center and is designed to protect traffic from local network observers while potentially improving routes to some destinations. It uses BoringTun, Cloudflare's Rust-based user-space implementation of WireGuard. WARP is primarily a connection-security product and should not be treated as a conventional multi-hop anonymity network.
WARP+Premium network service
WARP+ is an enhanced WARP tier that uses Cloudflare's private backbone and Argo-related routing capabilities to seek less congested network paths. Historically, additional usage could be obtained through referrals. The reference material describes the current form as WARP+ Unlimited, a paid monthly subscription without a data limit as of November 2025.
Flagship businesses
- 1.1.1.1 Public DNS Resolver
- 1.1.1.1 mobile and desktop applications
- Cloudflare WARP
- WARP+
Brand decisions
- 2019Add WARP as a device traffic tunnelProduct launch
Cloudflare expanded beyond DNS protection to address broader security and routing concerns affecting traffic on local networks and Internet access connections.
What changed. It added WARP to the 1.1.1.1 application, using an encrypted tunnel based on BoringTun and WireGuard technology.
Aftermath. The brand developed into a broader consumer connectivity platform combining DNS resolution, encrypted DNS and VPN-like traffic protection.
- 2018Launch a public recursive DNS resolverProduct launch
Cloudflare and APNIC sought to provide a freely accessible alternative to ISP-operated and other public DNS resolvers, with an emphasis on speed and privacy.
What changed. They introduced the 1.1.1.1 service using Cloudflare's anycast network and memorable public IP addresses.
Aftermath. The service became a major consumer-facing public DNS brand and later served as the foundation for Cloudflare's 1.1.1.1 applications and WARP product.
- Google Public DNS
- Quad9
- 2018Extend the service into client applicationsProduct launch
Manual DNS configuration limited accessibility for many consumers, while unencrypted DNS queries could expose browsing-related metadata to network intermediaries.
What changed. Cloudflare released Android and iOS applications and added DNS over HTTPS and DNS over TLS capabilities.
Aftermath. 1.1.1.1 became a device-level consumer application rather than only a resolver address entered in network settings.
- Move WARP+ toward a paid unlimited subscriptionOther
WARP+ was previously associated with limited data access and a referral mechanism for obtaining additional usage.
What changed. The referral program was discontinued, and the reference material describes WARP+ Unlimited as a paid monthly subscription with no data limit as of November 2025.
Aftermath. The premium tier shifted toward a conventional recurring subscription model.
Recent events
- 2019Cloudflare adds WARP to the 1.1.1.1 application
WARP introduced an encrypted device-to-Cloudflare tunnel based on Cloudflare's BoringTun implementation of WireGuard.
Product launchProduct generation - 2018Cloudflare and APNIC announce the 1.1.1.1 public DNS service
Cloudflare introduced a free public recursive DNS resolver using 1.1.1.1 and related endpoints, developed in partnership with APNIC.
Product launch - 20181.1.1.1 applications launch for Android and iOS
Cloudflare released mobile applications that simplified configuration of the service and added encrypted DNS options, including DNS over HTTPS and DNS over TLS.
Product launch - Cloudflare develops WARP+ as a higher-performance tier
WARP+ was developed to route traffic over less congested pathways using Cloudflare's private backbone and Argo-related capabilities. The offering has moved from historical referral-based data access toward a paid unlimited subscription model.
Product generationPricing
Sources
Cite this profile: Cite the canonical profile. /brand-wiki/1111 · Editorial policy · How profiles are compiled