Sure, but I do want the DNS capture function since this is a semipublic guest net. And they do have valid DNS servers, everything works great when querying valid DNS names.
But we have encountered guests connecting to the guest VSC that have an internal startpage (start.company.ad) and also virus protection that has Denied the ip 123.123.123.123 due to spam etc. This adds up to the guests getting a antivirus warning when connecting to the guest net and this is really not disirable.
I'm really interested in the decision to use a perfectly valid IP external from a network block that is not owned by them as the DNS reply.