1
23.7 Legacy Series / Unbound Failure after update to 23.7.11
« on: January 07, 2024, 11:51:49 am »
Hi All,
I seem to have an issue where I have lost all DNS capability following update to 23.7.11. I am using Unbound, DoT configured for Cloudflare (I have also since tried quad9 with no luck). Working config working for over a year now, no changes to config.
If I manually set a secondary DNS (8.8.8.8 ) in Windows, I get internet/DNS access. As soon as I delete the alternate and point it to OPNSense, no connectivity. The firewall has no connectivity/DNS either - update checks fail etc.
I have tried restarting unbound, and looked through logs but to be honest I am out of my depth. Rebooted the firewall, no change. Has anyone else had any issues, or any steps I might be able to take to better diagnose the problem?
I'm not certain, but I think it might be only ipv4 with ipv6 working (I don't use IPv6 much, so am not very familiar).
Unbound logs are showing:
2024-01-07T09:38:23 Critical unbound [2797:2] fatal error: Could not initialize thread
2024-01-07T09:38:23 Error unbound [2797:2] error: Could not set root or stub hints
2024-01-07T09:38:23 Error unbound [2797:2] error: reading root hints /root.hints 2:12: Syntax error, could not parse the RR's type
2024-01-07T08:59:48 Critical unbound [78925:1] fatal error: Could not initialize thread
2024-01-07T08:59:48 Error unbound [78925:1] error: Could not set root or stub hints
2024-01-07T08:59:48 Error unbound [78925:1] error: reading root hints /root.hints 2:12: Syntax error, could not parse the RR's type
If I run a checkconf from the shell I get:
root@router:~ # unbound-checkconf /var/unbound/unbound.conf
[1704626241] unbound-checkconf[20216:0] error: pythonmod: can't open file dnsbl_module.py for reading
[1704626241] unbound-checkconf[20216:0] fatal error: bad config for python module
Is that a clue?
Thanks.
I seem to have an issue where I have lost all DNS capability following update to 23.7.11. I am using Unbound, DoT configured for Cloudflare (I have also since tried quad9 with no luck). Working config working for over a year now, no changes to config.
If I manually set a secondary DNS (8.8.8.8 ) in Windows, I get internet/DNS access. As soon as I delete the alternate and point it to OPNSense, no connectivity. The firewall has no connectivity/DNS either - update checks fail etc.
I have tried restarting unbound, and looked through logs but to be honest I am out of my depth. Rebooted the firewall, no change. Has anyone else had any issues, or any steps I might be able to take to better diagnose the problem?
I'm not certain, but I think it might be only ipv4 with ipv6 working (I don't use IPv6 much, so am not very familiar).
Unbound logs are showing:
2024-01-07T09:38:23 Critical unbound [2797:2] fatal error: Could not initialize thread
2024-01-07T09:38:23 Error unbound [2797:2] error: Could not set root or stub hints
2024-01-07T09:38:23 Error unbound [2797:2] error: reading root hints /root.hints 2:12: Syntax error, could not parse the RR's type
2024-01-07T08:59:48 Critical unbound [78925:1] fatal error: Could not initialize thread
2024-01-07T08:59:48 Error unbound [78925:1] error: Could not set root or stub hints
2024-01-07T08:59:48 Error unbound [78925:1] error: reading root hints /root.hints 2:12: Syntax error, could not parse the RR's type
If I run a checkconf from the shell I get:
root@router:~ # unbound-checkconf /var/unbound/unbound.conf
[1704626241] unbound-checkconf[20216:0] error: pythonmod: can't open file dnsbl_module.py for reading
[1704626241] unbound-checkconf[20216:0] fatal error: bad config for python module
Is that a clue?
Thanks.