Then you just need to use your VPN endpoint for DNS.
I do something similar but with Wireguard and Pi-hole.