OPNsense Forum

English Forums => 23.7 Legacy Series => Topic started by: IsaacFL on January 05, 2024, 06:46:09 pm

Title: Unbound Whitelist not working
Post by: IsaacFL on January 05, 2024, 06:46:09 pm
I have decided to try the block list functionality of unbound after previously using pihole.

Using the OISD - Domain Blocklist Big.  I know from using pihole that for this list i need to whitelist the trace.svc.ui.com.

I add trace.svc.ui.com to whitelist, but when i go to Interfaces: Diagnostics: DNS Lookup i get:
trace.svc.ui.com. 3600 IN A 0.0.0.0

I also see via dig on other machine that it is indeed being blocked.

So whitelist under unbound does not work?
Title: Re: Unbound Whitelist not working
Post by: JasMan on May 04, 2024, 05:47:38 pm
Same issue.

It seems that whitelisting of a wildcard domain from the OISD list doesn't work.

I added different domains from the OISD list (https://big.oisd.nl/domainswild) to the whitelist as example. When I try to resolve them I'm still getting 0.0.0.0 for A records, and an empty response for CNAMEs from the server.

The Unbound Report shows the A query as blocked, but the button at the end of the line says "Block Domain" instead of "Whitelist Domain".
Whitelisted CNAME queries are not shown in the report.

Bug? Expected behaviour?