OPNsense Forum

English Forums => 26.1 Series => Topic started by: choopyat25 on February 05, 2026, 10:01:04 AM

Title: Unbound DNS issue
Post by: choopyat25 on February 05, 2026, 10:01:04 AM
Dear Team ,
Could you please advise on how to resolve this issue. After upgrading to version 26.1.xxx, this error occurs and the services fail to start.

2026-02-05T11:51:48ErrorunboundUnable to open pipe. This is likely because Unbound isn't running.
2026-02-05T11:51:15Errorunbound[70728:9] error: ssl handshake cert error: hostname mismatch
2026-02-05T11:51:15Errorunbound[70728:9] error: ssl handshake failed crypto error:0A000086:SSL routines::certificate verify failed
2026-02-05T11:51:15Errorunbound[70728:9] error: ssl handshake cert error: hostname mismatch
2026-02-05T11:51:15Errorunbound[70728:9] error: ssl handshake failed crypto error:0A000086:SSL routines::certificate verify failed
2026-02-05T11:51:05Errorunbound[83073:1] error: ssl handshake cert error: hostname mismatch
2026-02-05T11:51:05Errorunbound[83073:1] error: ssl handshake failed crypto error:0A000086:SSL routines::certificate verify failed
2026-02-05T11:51:05Errorunbound[83073:1] error: ssl handshake cert error: hostname mismatch
2026-02-05T11:51:05Errorunbound[83073:1] error: ssl handshake failed crypto error:0A000086:SSL routines::certificate verify failed
2026-02-05T11:51:05Errorunbound[83073:1] error: ssl handshake cert error: hostname mismatch
2026-02-05T11:51:05Errorunbound[83073:1] error: ssl handshake failed crypto error:0A000086:SSL routines::certificate verify failed

Thank you for your support,
Opyat'
Title: Re: Unbound DNS issue
Post by: choopyat25 on February 06, 2026, 06:31:08 AM
Dear Team ,
Could you please delete or close this question , it's my mistake.
Thank you for understanding .
Opyat'
Title: Re: Unbound DNS issue
Post by: nicholaswkc on February 06, 2026, 07:35:45 AM
What wrong? Can you explain so that others can avoid?
Title: Re: Unbound DNS issue
Post by: choopyat25 on February 06, 2026, 07:57:14 PM
Yes, of course. The problem is that when you add a new server to the DNS-over-TLS section, you need to double check all the rows.
My mistake is -
Server IP: 8.8.8.8
Server Port: 853
Verify CN: dns.google <--IT'S CORRECT NOW, but I entered the wrong name.=)

That all. =)
Have a great day!
Opyat'