So I am currently having a discussion with an enterprise customer about moving to local breakouts for all internet traffic and one of the topics that popped up is DNS. They currently do it for traffic that is explicitly proxied (the Zscaler node resolves DNS) but would ideally like to send all traffic via the Zscaler service.
We arrived on the topic of DNS Server locations and the main stumbling point was that the geolocation/localization information provided by DNS would only work completely if we had a DNS server at every location that had a local breakout to the internet.
Their current DNS setup is basically hub and spoke with DNS servers sitting at centralized locations and branches eventually resolving via one of these. deployment of dns servers at each location would be a lot of additional effort.
So i was looking to see how others have approached this.