Menu

Show posts

This section allows you to view all posts made by this member. Note that you can only see posts made in areas you currently have access to.

Show posts Menu

Messages - Claypenguin

#1
21.7 Legacy Series / Unbound fails to start after reboot
December 06, 2021, 12:47:38 PM
Hello all,

I reboot my opnsense box regularly with cron and every time I do that unbound fails to come up or rather it starts and then stops again (the logs don't really show any errors). When I start it again in the GUI it works without any problems.

Any ideas what might be causing this?

Regards
#2
I've noticed the Windows thing  :D

So regarding the automatic rule, what exactly does it do then?

Edit:

For anyone interested, I've looked at little bit more into this and apparently the automatic rules are only for icmp6-types unreach, toobig, neighbrsol and neighbradv. I've manually added the rules to my firewall that are recommended as per RFC4890 https://tools.ietf.org/html/rfc4890#section-4.3.1
#3
Hello all,

I have a question about the automatically generated ipv6-icmp floating rule. In my understanding this rule should allow all ipv6-icmp traffic on all interfaces, because it's an ipv6 requirement, right? But unless I'm adding another rule on WAN-in that allows ipv6-icmp traffic, ipv6-icmp to my devices is being filtered.

Am I missing something here?

Cheers

https://imgur.com/QlqJihR