I use NextDNS for all this. Means I do not have to manage the dns and it's setting myself.
So I point all Dhcp to NextDNS and also perform dstnat on any port 53 traffik that is not going to NextDNS so that goes to NextDNS.
Work very well for my setup at least.