Hm... I think my question was not clear, therefore I'll try to repeat it with a
better description.
Therefore I simply take an example from Pi-hole directly: "Pi-hole as
All-Around DNS Solution" (https://docs.pi-hole.net/guides/unbound/)
This means that basically this procedure should work with
We're planning to set it up this way. Going to be switching from our old
cobbled together LDAP / etc solution to FreeIPA "Soon" (tm).
Have tested things. You'll have to make some changes from defaults.
First, for any replica that is going to be serving DNS publicly (in our
case, only a few will,