Then, clear all the DNS caches. If I now query, the Windows DNS server will query the delegated zone's DNS server (because of the delegation), and get the CNAME result, but that upstream server doesn't recursively resolve the A record.

ip addr show ip route show cat /etc/resolv.conf I think your dhcp server has either not send the correct dns servers or routers to external networks. Did you try pinging a external server? ping -c 4 (This is a DNS Server from google).