I guess presuming that the back end will use TCP for DNS you could do this, but I would imagine that's not always the case?
If it doesn't, there's a lot of queries that will fail, particularly with DNSSEC included. See RFC 7766.
R's, John _______________________________________________ DNSOP mailing list DNSOP@ietf.org https://www.ietf.org/mailman/listinfo/dnsop