LinuxQuestions.org

LinuxQuestions.org (/questions/)
-   Linux - Networking (https://www.linuxquestions.org/questions/linux-networking-3/)
-   -   configuring Unbound for DoT (https://www.linuxquestions.org/questions/linux-networking-3/configuring-unbound-for-dot-4175734971/)

mw.decavia 03-16-2024 09:50 AM

configuring Unbound for DoT
 
Greetings,

I have just installed Unbound 1.19 onto slackware15, from the slackbuild. It is working correctly as a local caching resolver on loopback, (it appears) it says it's default is using standard dns on udp:53 with dnssec for forwarding requests to upstream servers.

The Unbound docs say it can support DoT:853 and DoH:443 for forwarding to upstream - How do I configure unbound.conf to do those?

I want Unbound to locally accept requests on udp:53

nini09 03-20-2024 02:44 PM

You can refer the document, https://unbound.docs.nlnetlabs.nl/en...ver-https.html.

mw.decavia 03-20-2024 10:37 PM

Quote:

Originally Posted by nini09 (Post 6490863)

Thank you.

After I could not find the exact .pem files it mentioned on my slackware systems, I went web searching for them and randomly found this other page
https://www.ctrl.blog/entry/unbound-tls-forwarding.html
which is more specific to the DoT that I would prefer anyways. The certificate files appear to be already included in slackware15.

So now I have a well functioning Unbound with encrypted upstream.


All times are GMT -5. The time now is 02:00 PM.