> Is this dnsmasq limitation is just due to lack of support in code/bug? 
> or it requires massive architectural changes of dnsmasq?
> If it's the first one, I can try to fix this issue.

It's the second, unfortunately. a DNS query can be answered from an
upstream source, or locally, but not by a mixture of both.


