From nobody Sat May 13 11:21:42 2023 X-Original-To: questions@mlmmj.nyi.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mlmmj.nyi.freebsd.org (Postfix) with ESMTP id 4QJNWM2nRfz4BGcr for ; Sat, 13 May 2023 11:21:51 +0000 (UTC) (envelope-from lumiwa@dismail.de) Received: from mx2.dismail.de (mx2.dismail.de [159.69.191.136]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA512) (Client did not present a certificate) by mx1.freebsd.org (Postfix) with ESMTPS id 4QJNWL28Jjz3sw3 for ; Sat, 13 May 2023 11:21:50 +0000 (UTC) (envelope-from lumiwa@dismail.de) Authentication-Results: mx1.freebsd.org; dkim=pass header.d=dismail.de header.s=20190914 header.b=vOL9+2Gp; spf=pass (mx1.freebsd.org: domain of lumiwa@dismail.de designates 159.69.191.136 as permitted sender) smtp.mailfrom=lumiwa@dismail.de; dmarc=pass (policy=reject) header.from=dismail.de Received: from mx2.dismail.de (localhost [127.0.0.1]) by mx2.dismail.de (OpenSMTPD) with ESMTP id ba33deb1 for ; Sat, 13 May 2023 13:21:47 +0200 (CEST) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed; d=dismail.de; h=date:from :to:subject:message-id:in-reply-to:references:mime-version :content-type:content-transfer-encoding; s=20190914; bh=FPYR74Ls wi/nRORZG10GFsFwSq+BV48MKgfgTdcgEmg=; b=vOL9+2Gp0UaZ5xLWYHOiNDBI FsM48DzBlTKoiJRsYhiL5NFBgn5/ijkRAZTtUkIeKzlVLDZgshRNzcNercuEAzhk Nq7yhyHh40QrFWl4dZvTcBBCT06dR+CGhCFRDnW5JLuQssq1Vc6affQ4LQ8sZfMz Yz+hs7rYg12dTFXXN1Ybb1OaM9fBiWSfl0wyvKQWzbvmtsbK4xjwJT5fWrvGk37i qZh3bcWjkErebXDNjEyUQmhxrGWr6Mw8k5Ujke+qRkmxN6QE+AK6+ncx9cuqwp7Q e3jRhjn1CTeF5KxhRs2VRfGZz0FVUrIk3iOiyG1SQSSWbRB+9/moXok5EdIslA== Received: from smtp2.dismail.de ( [10.240.26.12]) by mx2.dismail.de (OpenSMTPD) with ESMTP id ad25e113 for ; Sat, 13 May 2023 13:21:47 +0200 (CEST) Received: from smtp2.dismail.de (localhost [127.0.0.1]) by smtp2.dismail.de (OpenSMTPD) with ESMTP id 6840692b for ; Sat, 13 May 2023 13:21:47 +0200 (CEST) Received: by dismail.de (OpenSMTPD) with ESMTPSA id ffe8bf0e (TLSv1.3:TLS_AES_256_GCM_SHA384:256:NO) for ; Sat, 13 May 2023 13:21:44 +0200 (CEST) Date: Sat, 13 May 2023 07:21:42 -0400 From: LuMiWa To: questions@freebsd.org Subject: Re: unbound Message-ID: <20230513072142.765e3d4c@dismail.de> In-Reply-To: <20230513204631.4262b899@ws1.wobblyboot.net> References: <20230513053351.6e101f66@dismail.de> <20230513204631.4262b899@ws1.wobblyboot.net> X-Mailer: Claws Mail 3.19.0 (GTK+ 2.24.33; amd64-portbld-freebsd13.1) List-Id: User questions List-Archive: https://lists.freebsd.org/archives/freebsd-questions List-Help: List-Post: List-Subscribe: List-Unsubscribe: Sender: owner-freebsd-questions@freebsd.org X-BeenThere: freebsd-questions@freebsd.org MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: quoted-printable X-Spamd-Result: default: False [-5.70 / 15.00]; DWL_DNSWL_LOW(-1.00)[dismail.de:dkim]; NEURAL_HAM_MEDIUM(-1.00)[-1.000]; NEURAL_HAM_LONG(-1.00)[-1.000]; NEURAL_HAM_SHORT(-1.00)[-1.000]; DMARC_POLICY_ALLOW(-0.50)[dismail.de,reject]; RCVD_DKIM_ARC_DNSWL_MED(-0.50)[]; RCVD_IN_DNSWL_MED(-0.20)[159.69.191.136:from]; R_SPF_ALLOW(-0.20)[+ip4:159.69.191.136]; R_DKIM_ALLOW(-0.20)[dismail.de:s=20190914]; MIME_GOOD(-0.10)[text/plain]; FROM_EQ_ENVFROM(0.00)[]; MLMMJ_DEST(0.00)[questions@freebsd.org]; RCVD_TLS_LAST(0.00)[]; MIME_TRACE(0.00)[0:+]; DKIM_TRACE(0.00)[dismail.de:+]; RCVD_VIA_SMTP_AUTH(0.00)[]; RCPT_COUNT_ONE(0.00)[1]; RCVD_COUNT_FIVE(0.00)[5]; ARC_NA(0.00)[]; ASN(0.00)[asn:24940, ipnet:159.69.0.0/16, country:DE]; FROM_HAS_DN(0.00)[]; PREVIOUSLY_DELIVERED(0.00)[questions@freebsd.org]; TO_MATCH_ENVRCPT_ALL(0.00)[]; TO_DN_NONE(0.00)[]; MID_RHS_MATCH_FROM(0.00)[] X-Rspamd-Queue-Id: 4QJNWL28Jjz3sw3 X-Spamd-Bar: ----- X-ThisMailContainsUnwantedMimeParts: N On Sat, 13 May 2023 20:46:31 +1000 matti k wrote: > On Sat, 13 May 2023 05:33:51 -0400 > LuMiWa wrote: >=20 > > Hi! > >=20 > > I am using unbound from ports on FreeBSD 13.2 Release for DNS over > > TLS. In unbound.conf I have: > > forward-zone: > > name: "." > > forward-tls-upstream: yes > > forward-addr: 9.9.9.9@853#dns.quad9.net > > forward-addr: 149.112.112.112@853#dns.quad9.net > >=20 > > It worked years without problem but this weeks stopped. I remowed > > forward-tls... and port 853 and it works again but it is not the > > same. > >=20 > > Thank you. > >=20 >=20 > I have=20 >=20 > $ cat /var/unbound/forward.conf > # Generated by resolvconf >=20 > forward-zone: > name: "." > forward-tls-upstream: yes # Use DNS-over-TLS > forward-first: no # do NOT send direct >=20 > forward-addr: 1.1.1.1@853#one.one.one.one > forward-addr: 1.0.0.1@853#one.one.one.one >=20 > usually I will=20 >=20 > # service local_unbound restart > (after a reboot) >=20 > https://1.1.1.1/help seems to confirm it is correct >=20 > I have no idea if I am doing it right ! >=20 > yep help needed >=20 >=20 ans is it working? --=20 =E2=80=9CIt is the time you have wasted for your rose that makes your rose = so important.=E2=80=9D =E2=80=95 Antoine de Saint-Exup=C3=A9ry, The Little Prince=20