I think that this should be done on the network level by providing a DNS Server via DHCP or include filtering in your router if you are afraid of users changing the DNS Server (but maybe it’s better to lock the network settings in this case).
But I see that not every User has the possibility or ability to do it this way. therefor having the option to do it in the OS is feasible for these users.
It would be nice to see web filtering as part of it. A DNS like 1.1.1.3 can easily be bypassed.
I think that this should be done on the network level by providing a DNS Server via DHCP or include filtering in your router if you are afraid of users changing the DNS Server (but maybe it’s better to lock the network settings in this case).
But I see that not every User has the possibility or ability to do it this way. therefor having the option to do it in the OS is feasible for these users.