If you’re using pfSense anyway, pfBlockerNG provides the same AD related DNS sinkhole functionality of pi-hole without the need for a whole separate machine/VM to manage.
This is definitely something I want to follow too!
That’s the danger of trusting a for profit company, rather than the open source community.
Get a better cooler?