Unbound ignores first-view setting?

Mogens Jensen mogens-jensen at protonmail.com
Wed Aug 28 05:39:08 UTC 2019


I'm trying to configure views on Unbound 1.9.1 OpenBSD 6.5.

This is the minimal initial configuration file:


        access-control: allow
        access-control-view: firstview

        local-zone: "local." static
        local-data: "cups.local. IN A"

        name: "firstview"
        local-zone: "local." static
        local-data: "gateway.local. IN A"
        view-first: yes

        name: "."

The problem is that Unbound will not use the global local-zone tree after no match is found in a view, even though view-first is set to yes.

This is output from a client in when running Unbound with the above configuration file:

client:~$ host -t cups.local
Host cups.local not found: 3(NXDOMAIN)
client:~$ host -t gateway.local
gateway.local has address

If I remove "access-control-view: firstview" and try again from the same client:

client:~$ host -t cups.local
cups.local has address
client:~$ host -t gateway.local
Host gateway.local not found: 3(NXDOMAIN)

What could I be doing wrong?


Best regards,
Mogens Jensen
