Quote from: geo on May 04, 2021, 04:43:20 AM
Advantage of this setup is I can see which requests are coming from which device ip's on the local network. Disadvantage of this setup is for now I've lost the DoH/DoT/DoQ that is configured out of the box on AdGuard Home and not replicated on Unbound by default.
https://sahlitech.com/opnsense-setup-unbound-dns/
This Unbound DNS guide is pretty good and was recently modified to include 'tls-cert-bundle' that properly checks for valid certificates. The problem I have is Unbound can be kind of buggy and unreliable. I have resorted to enabling a PiHole as a DNS backup, with Cloudflared DoH. If you start having issues with Unbound, you might want to bypass it.
"