Adblock on multiple vlan setup

Redirect All Outbound DNS Traffic to Internal IP and onward.

Don't forget to make an exception rule for the DNS IP itself in the fw, or you'll and up in a loop ,)
Or let tour own DNS make DNS request on another port, like DoH.