mirror of
https://github.com/ookangzheng/blahdns.git
synced 2025-12-15 13:45:37 +07:00
61 lines
1.3 KiB
Plaintext
Executable File
61 lines
1.3 KiB
Plaintext
Executable File
|
|
# Unbound configuration file for Debian.
|
|
#
|
|
# See the unbound.conf(5) man page.
|
|
#
|
|
# See /usr/share/doc/unbound/examples/unbound.conf for a commented
|
|
# reference config file.
|
|
#
|
|
# The following line includes additional configuration files from the
|
|
# /etc/unbound/unbound.conf.d directory.
|
|
|
|
include: "/etc/unbound/unbound.conf.d/*.conf"
|
|
|
|
server:
|
|
directory: "/etc/unbound"
|
|
username: unbound
|
|
chroot: "/etc/unbound"
|
|
pidfile: "/etc/unbound/unbound.pid"
|
|
interface: 0.0.0.0@55
|
|
interface: ::0@55
|
|
access-control: 0.0.0.0/0 allow
|
|
access-control: ::/64 allow
|
|
logfile: "unbound.log"
|
|
statistics-interval: 0
|
|
|
|
do-ip4: yes
|
|
do-ip6: yes
|
|
do-udp: yes
|
|
do-tcp: yes
|
|
do-daemonize: yes
|
|
|
|
prefetch: yes
|
|
qname-minimisation: yes
|
|
rrset-roundrobin: yes
|
|
use-caps-for-id: yes
|
|
verbosity: 0
|
|
|
|
#auto-trust-anchor-file: "root.key"
|
|
|
|
hide-identity: yes
|
|
hide-version: yes
|
|
|
|
minimal-responses: yes
|
|
|
|
harden-short-bufsize: yes
|
|
harden-large-queries: yes
|
|
harden-glue: yes
|
|
harden-dnssec-stripped: yes
|
|
harden-below-nxdomain: yes
|
|
harden-referral-path: no
|
|
|
|
do-not-query-localhost: no
|
|
|
|
root-hints: "root.hints"
|
|
|
|
# forward-zone:
|
|
# name: "."
|
|
# forward-addr: 185.228.168.9@853
|
|
# forward-ssl-upstream: yes
|
|
# forward-first: yes
|