Jump to content

Error when saving DNS Resolver configuration

gibbsy81

Hi All,

I am currently running Pfsense with the DNS Resolver feature.
I have noticed that Unbound has crashed and will not restart when trying to apply any configuration changes i receive the following error.

The following input errors were detected:

The generated config file cannot be parsed by unbound. Please correct the following errors:
/var/unbound/test/unbound_server.pem: No such file or directory
[1580637057] unbound-checkconf[94278:0] fatal error: server-cert-file: "/var/unbound/test/unbound_server.pem" does not exist

I have tried so far.

Restarting Pfsense
Copying /var/unbound/unbound_server.pem to /var/unbound/test/
Updating Pfsense to the build 2.4.5-RC build.

Updating to the 2.4.5-RC build did fix the issue for a little while however not for long.

Please let me know if you need any further info.
Thanks in advance.

Link to comment
Share on other sites

Link to post
Share on other sites

How about downgrading to older, but more stable build with default settings? No personal experience...

Link to comment
Share on other sites

Link to post
Share on other sites

Did you read the error? You are missing a certificate file, either for DoT or DoH (because can't think of any other reason why Unbound would use PKI).

HAL9000: AMD Ryzen 9 3900x | Noctua NH-D15 chromax.black | 32 GB Corsair Vengeance LPX DDR4 3200 MHz | Asus X570 Prime Pro | ASUS TUF 3080 Ti | 1 TB Samsung 970 Evo Plus + 1 TB Crucial MX500 + 6 TB WD RED | Corsair HX1000 | be quiet Pure Base 500DX | LG 34UM95 34" 3440x1440

Hydrogen server: Intel i3-10100 | Cryorig M9i | 64 GB Crucial Ballistix 3200MHz DDR4 | Gigabyte B560M-DS3H | 33 TB of storage | Fractal Design Define R5 | unRAID 6.9.2

Carbon server: Fujitsu PRIMERGY RX100 S7p | Xeon E3-1230 v2 | 16 GB DDR3 ECC | 60 GB Corsair SSD & 250 GB Samsung 850 Pro | Intel i340-T4 | ESXi 6.5.1

Big Mac cluster: 2x Raspberry Pi 2 Model B | 1x Raspberry Pi 3 Model B | 2x Raspberry Pi 3 Model B+

Link to comment
Share on other sites

Link to post
Share on other sites

I assume you were running the test build before as well?  As normally unbound configuration is contained in /var/unbound/ not /var/unbound/test/.

 

Last I checked it was well documented that unbound has open issues on the test builds of 2.4.5, its why I had no intention of upgrading until the stable version.

Router:  Intel N100 (pfSense) WiFi6: Zyxel NWA210AX (1.7Gbit peak at 160Mhz)
WiFi5: Ubiquiti NanoHD OpenWRT (~500Mbit at 80Mhz) Switches: Netgear MS510TXUP, MS510TXPP, GS110EMX
ISPs: Zen Full Fibre 900 (~930Mbit down, 115Mbit up) + Three 5G (~800Mbit down, 115Mbit up)
Upgrading Laptop/Desktop CNVIo WiFi 5 cards to PCIe WiFi6e/7

Link to comment
Share on other sites

Link to post
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now

×