2 # Unbound configuration file for IPFire
4 # The full documentation is available at:
5 # https://nlnetlabs.nl/documentation/unbound/unbound.conf/
9 # Common Server Options
11 directory: "/etc/unbound"
16 include: "/etc/unbound/tuning.conf"
23 statistics-interval: 86400
24 extended-statistics: yes
30 # Randomise any cached responses
38 auto-trust-anchor-file: "/var/lib/unbound/root.key"
43 harden-large-queries: yes
44 harden-referral-path: yes
48 tls-cert-bundle: /etc/ssl/certs/ca-bundle.crt
50 # EDNS Buffer Size (#12240)
51 edns-buffer-size: 1232
53 # Harden against DNS cache poisoning
54 unwanted-reply-threshold: 1000000
56 # Listen on all interfaces
57 interface-automatic: yes
60 # Allow access from everywhere
61 access-control: 0.0.0.0/0 allow
63 # Bootstrap root servers
64 root-hints: "/etc/unbound/root.hints"
67 include: "/etc/unbound/dhcp-leases.conf"
70 include: "/etc/unbound/hosts.conf"
72 # Include any forward zones
73 include: "/etc/unbound/forward.conf"
78 control-interface: 127.0.0.1
80 # Import any local configurations
81 include: "/etc/unbound/local.d/*.conf"