@@ -601,7 +601,7 @@ The VPN service shall provide a method to force revocation, temporary or permane
#### 5.2.9.1 Requirement
DNS leaks occur if the client does not or only partially tunnels DNS traffic through the VPN connection. This could either happen due to misconfiguration, system overwrites, or by design for example in case only partial traffic is tunnelled, so called split tunnelling.
DNS leaks occur, even if confidentially of all traffic, including DNS queries, shall be preserved, if the client does not or only partially tunnels DNS traffic through the VPN connection. This could either happen due to misconfiguration, system overwrites, or by design for example in case only partial traffic is tunnelled, so called split tunnelling.
Further, the user might want to set special DNS configuration either configured by the enterprise or custom configured in a consumer context. The VPN provider then must honour this DNS configuration.