As I said: it depends on the browser(s), most will use their own certificate storage though. Therefor the probable solution is to import the certificate into the certificate storage of all those browsers you're using to mark it as trusted.It has to be global since it is a DNS ad blocker and I get the same errors with any browser.
# trust anchor path/to/cert.crt
# trust anchor --remove path/to/cert.crt