Unbound DNS fails for specific address.

Started by mjclopes, May 18, 2019, 06:15:44 PM

Previous topic - Next topic
I'm using Unbound DNS and I can't resolve um specific address; the address is m1.mordomo.gov.pt
The first DNS server in System: Settings: General is 1.1.1.1
If I configure my PC to use 1.1.1.1 as a DNS server, I can resolve the address successful.
Additionally, if I change OPNsense to use Dnsmasq DNS it works correctly.

Resolving with OPNsense
>nslookup m1.mordomo.gov.pt
Server:  [OPNsense]
Address:  192.168.10.1

Name:    m1.mordomo.gov.pt
Served by:
- ns2.ama.pt

          mordomo.gov.pt
- ns.ama.pt

          mordomo.gov.pt

Resolving with 1.1.1.1
>nslookup m1.mordomo.gov.pt
Server:  one.one.one.one
Address:  1.1.1.1

Non-authoritative answer:
Name:    m1.mordomo.gov.pt
Address:  127.0.0.1

127.0.0.1... Is this a quiz? ;)

My guess would be that the name servers ns.ama.pt / ns2.ama.pt simply don't respond to queries coming from certain IP addresses. That would be your own public IPv4 address when using unbound vs. one of Cloudflare's addresses when using 1.1.1.1 (with or without dnsmasq as a forwarder).

Cheers

Maurice
OPNsense virtual machine images
OPNsense aarch64 firmware repository

Commercial support & engineering available. PM for details (en / de).