Project

General

Profile

Actions

Bug #16937

open

Unbound aborts, and DNS stops resolving after restarted while using "Respond to incoming SSL/TLS queries from local clients" option

Added by P Davis 22 days ago. Updated 21 days ago.

Status:
Incomplete
Priority:
Normal
Assignee:
-
Category:
DNS Resolver
Target version:
-
Start date:
Due date:
% Done:

0%

Estimated time:
Release Notes:
Default
Affected Plus Version:
26.03.1
Affected Architecture:
All

Description

Please refer to following forum post: https://forum.netgate.com/topic/200922/unbound-dns-resolver-periodically-non-responsive

When Unbound is restarted (by pfBlockerNG for example), and this option is selected, Unbound starts to produce the following error and DNS stops resolving:

unbound 1669 [1669:4] error: Error in SSL_CTX use_PrivateKey_file crypto error:8000000D:system library::Permission denied

I have unchecked the option for now. See attached screenshots/log entries


Files

Actions #1

Updated by Georgiy Tyutyunnik 21 days ago

can't reproduce with stock config on 26.03.1, unbound config verified to match the forum thread

can you add the full config sections for the DNSBL, unbound and the server certificate, if possible?
please also add the output of the command
ls -lah /var/unbound/

Actions #2

Updated by Marcos M 21 days ago

  • Status changed from New to Incomplete
  • Priority changed from Very High to Normal
Actions

Also available in: Atom PDF