It's probably a lot of automated tooling/monitoring infrastructure that's doing reverse resolution of IPs to get hostnames.
Edit: I've found that sometimes they're pretty poor at caching responses so you end up with a lot of these requests.
Edit: I've found that sometimes they're pretty poor at caching responses so you end up with a lot of these requests.
Thought I don’t expect mail servers to use quad9.
I have unbound with upstream set to 1.1.1.1 and 9.9.9.9.
For an ISP it's relatively easy to provide a DNS server which will be fast and reliable (and your ISP's DNS is close to you than some 3rd party DNS) if that's not the case they probably just don't care.