Flipchan flipchan at riseup.net
Sun Jul 28 21:37:10 UTC 2019

Hey everyone,
im struggeling to get unbound to forward to my local nsd and to external hosts , it works when i have only one forward zone for my internal .testing records but when i put a forward-zone: name: "." , it ignores my other forward-zone

I got the base conf from here:

https://jonwillia.ms/2018/09/23/anycast-dns-openbsd (github.com/bongozone/kibble)

I am running in it On openbsd 6.5 with unbound 1.9.1

Does anyone know how this could be done ? I have nsd running the zone records for .testing and it works when i only have the .testing forward-zone in the unbound.conf , does anyone know what im doing wrong ? 

ns0# cat /var/unbound/etc/unbound.conf

# $OpenBSD: unbound.conf,v 1.7 2016/03/30 01:41:25 sthen Exp $

    #interface: ::1
    do-ip6: no

    access-control: refuse
    access-control: allow
    access-control: allow

    access-control: ::0/0 refuse
    access-control: ::1 allow

    hide-identity: yes
    hide-version: yes

    control-enable: yes
    control-use-cert: no
    control-interface: /var/run/unbound.sock

# Use an upstream forwarder (recursive resolver) for specific zones.

    name: "testing."
        forward-addr: at 5353 # to nsd daemon

    name: "."                # use for ALL queries
    forward-addr: 2001:470:20::2
    forward-first: yes

Sincerely flipchan
