From owner-freebsd-questions@freebsd.org Tue Aug 8 16:46:04 2017 Return-Path: Delivered-To: freebsd-questions@mailman.ysv.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) by mailman.ysv.freebsd.org (Postfix) with ESMTP id F1D98DC2688 for ; Tue, 8 Aug 2017 16:46:04 +0000 (UTC) (envelope-from byrnejb@harte-lyne.ca) Received: from inet08.hamilton.harte-lyne.ca (inet08.hamilton.harte-lyne.ca [216.185.71.28]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (Client CN "inet08.hamilton.harte-lyne.ca", Issuer "CA_HLL_ISSUER_2016" (not verified)) by mx1.freebsd.org (Postfix) with ESMTPS id B702D694B2 for ; Tue, 8 Aug 2017 16:46:04 +0000 (UTC) (envelope-from byrnejb@harte-lyne.ca) Received: from localhost (localhost [127.0.0.1]) by inet08.hamilton.harte-lyne.ca (Postfix) with ESMTP id 073D5621BC for ; Tue, 8 Aug 2017 12:45:57 -0400 (EDT) X-Virus-Scanned: amavisd-new at harte-lyne.ca Received: from inet08.hamilton.harte-lyne.ca ([127.0.0.1]) by localhost (inet08.hamilton.harte-lyne.ca [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id p4Lje0A394qm for ; Tue, 8 Aug 2017 12:45:55 -0400 (EDT) Received: from inet07.hamilton.harte-lyne.ca (inet07.hamilton.harte-lyne.ca [216.185.71.27]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (Client CN "imap.hamilton.harte-lyne.ca", Issuer "CA HLL ISSUER 01" (not verified)) by inet08.hamilton.harte-lyne.ca (Postfix) with ESMTPS for ; Tue, 8 Aug 2017 12:45:55 -0400 (EDT) Received: from inet08.hamilton.harte-lyne.ca (inet08.hamilton.harte-lyne.ca [216.185.71.28]) (using TLSv1.2 with cipher DHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (Client CN "inet08.hamilton.harte-lyne.ca", Issuer "CA_HLL_ISSUER_2016" (verified OK)) by inet07.hamilton.harte-lyne.ca (Postfix) with ESMTPS id C601F8A46F for ; Tue, 8 Aug 2017 12:45:54 -0400 (EDT) Received: from localhost (localhost [127.0.0.1]) by inet08.hamilton.harte-lyne.ca (Postfix) with ESMTP id 82B18621BC for ; Tue, 8 Aug 2017 12:45:54 -0400 (EDT) X-Virus-Scanned: amavisd-new at harte-lyne.ca Received: from inet08.hamilton.harte-lyne.ca ([127.0.0.1]) by localhost (inet08.hamilton.harte-lyne.ca [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 3uwX6gDHuqZ0 for ; Tue, 8 Aug 2017 12:45:52 -0400 (EDT) Received: from webmail.harte-lyne.ca (inet04.hamilton.harte-lyne.ca [216.185.71.24]) (using TLSv1 with cipher ECDHE-RSA-AES256-SHA (256/256 bits)) (Client did not present a certificate) by inet08.hamilton.harte-lyne.ca (Postfix) with ESMTPSA id C0E08620AB for ; Tue, 8 Aug 2017 12:45:52 -0400 (EDT) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=harte-lyne.ca; s=dkim_hll; t=1502210752; bh=lR7t/Fv+oQhtdSeAGI1rJSftnmSXXsFyLOpjyGNejDY=; h=Date:Subject:From:To:Reply-To; b=xQmnuNyVFLhjFRbDs8u3+8+V0C7/xR/75Tq1hT8ZGh6/kVQeUQrAZjr8LM8URt7Mn Z+AKoD9yZWKvj47ZiBwXW3ycJdcfa6BjHAAp0/ddkW5nX4d+UkUFOMeEsZQi4e4mDE jVU8N5LAl9pV5nW9iQPFZvS5dRmIZqUmckT/5M0ZPeYFxic/LDsMwBbG6ZjQs4+rzN ovjuEidPC6BtY8e46b+nI6eP666ZafrVywfaVXwcPW1nzLKslxph3PPmrpJ6DtR0VG Kxm4yoDWfWI7WbRh8loVKTuib4SKNAwH+QObalYdudtowKqVjo+oIRvaSinskr28iH gHtwBsBP+0K9A== Received: from 216.185.71.44 (SquirrelMail authenticated user byrnejb_hll) by webmail.harte-lyne.ca with HTTP; Tue, 8 Aug 2017 12:45:52 -0400 Message-ID: <0f0b1cc202aa81fd46899dbd2aa44758.squirrel@webmail.harte-lyne.ca> Date: Tue, 8 Aug 2017 12:45:52 -0400 Subject: FreeBSD-11 local_unbound stops resolving From: "James B. Byrne" To: freebsd-questions@harte-lyne.ca Reply-To: byrnejb@harte-lyne.ca User-Agent: SquirrelMail/1.4.22-5.el6 MIME-Version: 1.0 Content-Type: text/plain;charset=iso-8859-1 Content-Transfer-Encoding: 8bit X-Priority: 3 (Normal) Importance: Normal X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.23 Precedence: list List-Id: User questions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Tue, 08 Aug 2017 16:46:05 -0000 I have a reoccurring issue with my recently installed FreeBSD workstation. The local_unbound dns service ceases to provide dns entries to the local resolver after some period of time; measured in many hours or days. I have checked the pf firewall logs and that is not blocking any traffic relating to DNS that I can detect. If I re-run local-unbound-setup then local_unbound again resolves. If I restart the local_unbound service then dns resolution again works. I cannot see anything in /var/log/messages that indicate that the unbound service has a problem and the service is indeed running when I encounter the issue. We have many other FreeBSD-11 hosts running local unbound and I have not noticed this issue anywhere else. This is the resolv.conf file # cat /etc/resolv.conf search harte-lyne.ca hamilton.harte-lyne.ca brockley-2016.harte-lyne.ca nameserver 127.0.0.1 nameserver 216.185.71.33 nameserver 216.185.71.34 options edns0 # cat /var/unbound/forward.conf # This file was generated by local-unbound-setup. # Modifications will be overwritten. forward-zone: name: . forward-addr: 216.185.71.33 forward-addr: 216.185.71.34 -- *** e-Mail is NOT a SECURE channel *** Do NOT transmit sensitive data via e-Mail Do NOT open attachments nor follow links sent by e-Mail James B. Byrne mailto:ByrneJB@Harte-Lyne.ca Harte & Lyne Limited http://www.harte-lyne.ca 9 Brockley Drive vox: +1 905 561 1241 Hamilton, Ontario fax: +1 905 561 0757 Canada L8E 3C3