Using ``dig @1.2.3.4 domain.tld`` is not sent to 1.2.3.4, but answered by the Unify Gateway.
This prevents using custom DNS servers.

Note the similar TTL numbers for the requests to different DNS servers in the example output.

Solution
--------
Disabling content filtering stops that behavior.

Using DoH (DNS over HTTPS) also gives correct results.