2 # Unbound configuration file for IPFire
4 # The full documentation is available at:
5 # https://nlnetlabs.nl/documentation/unbound/unbound.conf/
9 # Common Server Options
11 directory: "/etc/unbound"
16 include: "/etc/unbound/tuning.conf"
23 statistics-interval: 86400
24 extended-statistics: yes
35 auto-trust-anchor-file: "/var/lib/unbound/root.key"
40 harden-large-queries: yes
41 harden-referral-path: yes
44 tls-cert-bundle: /etc/ssl/certs/ca-bundle.crt
46 # Harden against DNS cache poisoning
47 unwanted-reply-threshold: 1000000
49 # Listen on all interfaces
50 interface-automatic: yes
53 # Allow access from everywhere
54 access-control: 0.0.0.0/0 allow
57 infra-keep-probing: yes
59 # Bootstrap root servers
60 root-hints: "/etc/unbound/root.hints"
63 include: "/etc/unbound/dhcp-leases.conf"
66 include: "/etc/unbound/hosts.conf"
68 # Include any forward zones
69 include: "/etc/unbound/forward.conf"
74 control-interface: 127.0.0.1
76 # Import any local configurations
77 include: "/etc/unbound/local.d/*.conf"