DNS Resolver - Insufficient sanity checking for DNS Query Forwarding
When you don't specify any DNS servers, you can still tick the "DNS Query Forwarding" and save the configuration, resulting in broken DNS not resolving anything at all.
$ grep forward /var/unbound/unbound.conf forward-zone: forward-addr: 127.0.0.1
Updated by Chris Buechler almost 7 years ago
- Status changed from New to Confirmed
- Priority changed from Normal to Low
- Target version changed from 2.2.3 to 2.3
- Affected Version changed from 2.2 to All
same is true of dnsmasq. It's not as simple as just checking for user-defined DNS servers, as those with dynamic WANs often don't specify any.