OPNsense
  • Home
  • Help
  • Search
  • Login
  • Register

  • OPNsense Forum »
  • Archive »
  • 23.1 Legacy Series »
  • DNS over TLS causes Unbound to quit
« previous next »
  • Print
Pages: [1]

Author Topic: DNS over TLS causes Unbound to quit  (Read 1240 times)

bagofbones

  • Newbie
  • *
  • Posts: 4
  • Karma: 0
    • View Profile
DNS over TLS causes Unbound to quit
« on: February 16, 2023, 04:54:52 pm »
Trying to setup DNS over TLS on my 23.1_6 install, and no matter what servers I add there, Unbound quits and refuses to start until I disable them. I have a feeling it might be because I'm running a multi-wan setup, but can't seem to find any error logs that point me in the right direction. Any help or guidance on where I can start looking?

Screenshot of my setup: https://imgur.com/a/x5YNN8k

Logged

Fright

  • Hero Member
  • *****
  • Posts: 1777
  • Karma: 164
    • View Profile
Re: DNS over TLS causes Unbound to quit
« Reply #1 on: February 16, 2023, 06:33:13 pm »
DoT config looks ok at first glance
may be some custom settings?
can you try
Code: [Select]
opnsense-patch -a kulikov-a 26bec82and reload unbound with DoTs?
may be this will help with startup error logging (should be in unbound log. if any)
Logged

bagofbones

  • Newbie
  • *
  • Posts: 4
  • Karma: 0
    • View Profile
Re: DNS over TLS causes Unbound to quit
« Reply #2 on: February 21, 2023, 04:06:36 am »
Well, this helped narrow it down.  The error on startup is:

unbound-checkconf error. output was: /var/unbound/etc/plex.conf:1: error: syntax error;read /var/unbound/unbound.conf failed: 1 errors in configuration file;

Now, I can't figure out what is creating that plex.conf file.  I know I used it at one time for plex.direct but when I delete it and restart the service, it just comes back. 
Logged

bagofbones

  • Newbie
  • *
  • Posts: 4
  • Karma: 0
    • View Profile
Re: DNS over TLS causes Unbound to quit
« Reply #3 on: February 21, 2023, 04:13:10 am »
And it looks like I fixed that too.  I had an old plex.conf file in /usr/local/etc/unbound.opnsense.d, deleted that, deleted the one in /var/unbound/etc, restarted unbound, and now DoT works.  Thanks for the patch!  Is there anything I need to remove?
Logged

Fright

  • Hero Member
  • *****
  • Posts: 1777
  • Karma: 164
    • View Profile
Re: DNS over TLS causes Unbound to quit
« Reply #4 on: February 21, 2023, 08:01:05 pm »
glad it works
Quote
Is there anything I need to remove?
dont think so )
/usr/local/etc/unbound.opnsense.d is the place where the start script looks for config inclusions
patch is not merged. so it will be overwritten on update (so while it is better to remember what custom settings were made. this will help to find possible sources of problems faster  ;))
« Last Edit: February 21, 2023, 08:08:59 pm by Fright »
Logged

  • Print
Pages: [1]
« previous next »
  • OPNsense Forum »
  • Archive »
  • 23.1 Legacy Series »
  • DNS over TLS causes Unbound to quit
 

OPNsense is an OSS project © Deciso B.V. 2015 - 2024 All rights reserved
  • SMF 2.0.19 | SMF © 2021, Simple Machines
    Privacy Policy
    | XHTML | RSS | WAP2