

This is the correct answer. The only thing I would add is some devices don’t allow changing the DNS IPs and are hard coded to 8.8.8.8 so Google blocking sites via DNS is still an issue. Of course you could intercept these requests, but with DNS over HTTPS becoming more popular, i would imagine that device manufactures will also start to do certificate pinning as well to prevent people from using their own DNS server.
The Simpsons go to New York City.
“They stick all the jerks in Tower One”