Bug #10507

Unable to use forwarders

Added by Jocelyn Viau 9 months ago. Updated about 1 month ago.

Target version:
Start date:
Due date:
% Done:


Estimated time:
Affected Version:
Affected Architecture:


When setting the forwarders in the settings tabs, the forwarders are added under the general "options" section.
However, when we create a View, a root zone with root hints is always added. The result is that any non-local zone query will use recursion instead of sending the query to the forwarders.

If we set Recursion=No in the View, any non-local query gets denied, which is normal. If we set Recursion=Yes, then the recursion is done by BIND and not forwarded to the forwarders. At this point there are NO zones defined in the Zones tab.

Shouldn't the 'zone "." { }' statement be added only if recursion is yes AND there are no forwarders configured under the Settings tab?

This is the named.conf file:

#Bind pfsense configuration
#Do not edit this file!!!

 key "rndc-key" {
        algorithm hmac-sha256;
        secret "...";

 controls {
        inet port 953
                allow {; } keys { "rndc-key"; };

options {
        directory "/etc/namedb";
        pid-file "/var/run/named/pid";
        statistics-file "/var/log/named.stats";
        max-cache-size 256M;
        listen-on port 53 { any; };
        forwarders {;; };


logging {
        channel custom {
                syslog daemon;
                print-time no;
                print-severity yes;
                print-category yes;
                severity debug 1;
        category default { custom; };

view "default" {
        recursion yes;
        match-clients { any; };
        allow-recursion { any; };

        zone "." {
                type hint;
                file "/etc/namedb/named.root";



#2 Updated by Jim Pingle 7 months ago

  • Status changed from New to Pull Request Review

#3 Updated by Renato Botelho 6 months ago

  • Status changed from Pull Request Review to Feedback
  • Assignee set to Renato Botelho
  • % Done changed from 0 to 100
  • Affected Version deleted (2.4.5)

PR has been merged. Thanks!

#4 Updated by Danilo Zrenjanin about 1 month ago

  • Status changed from Feedback to Resolved

Tested on the latest snapshot.

It doesn't add 'zone "." { }' anymore, if recursion is set to Yes and there are forwarders defined.

Ticket resolved.

Also available in: Atom PDF