I think you should define if you are using the dns provided by the vpn provider or an external one, through local dns or unbound dns or other
If you want to use it, I think you have to add the DNS ip provided by the dns provider to the wireguard/instances mask.