Local DNS issue.

abhishekgirme

Member
Aug 24, 2021
39
1
8
41
We had setup unbound couple of months back and it was working.

https://pmg.proxmox.com/wiki/index.php/DNS_server_on_Proxmox_Mail_Gateway

Since yesterday, it stopped working. No changes were made to PMG which may have an impact. Service is running and active.

unbound.service - Unbound DNS server
Loaded: loaded (/lib/systemd/system/unbound.service; enabled; vendor preset: enabled)
Active: active (running) since Mon 2023-01-16 12:07:17 IST; 1 day 6h ago
Docs: man:unbound(8)


> server 127.0.0.1
Default server: 127.0.0.1
Address: 127.0.0.1#53
> mail.XXXXX.com
Server: 127.0.0.1
Address: 127.0.0.1#53

** server can't find mail.XXXXX.com: SERVFAIL
 
* restart unbound
* check the journal for any messages from unbound
* can the system reach the public internet on port 53 (udp and tcp) ? - i.e. maybe there was a change in the firewall rules?
 
Did reboot entire system post update yesterday.

Jan 09 23:27:55 unbound[843]: [843:0] info: generate keytag query _ta-4f66. NULL IN

Yes, system can reach internet / DNS.
 
* what's the output of `dig google.com @127.0.0.1`?

if this works as expected - maybe the issue is with the DNS-records of mail.XXXXX.com ...
 
Depends where the issue is acutally rooted - but as written in:
https://pmg.proxmox.com/wiki/index.php/DNS_server_on_Proxmox_Mail_Gateway
Code:
      # depending on your internal DNS-servers capabilities these options might be necessary
      # harden-dnssec-stripped: no 
      # module-config: "iterator"

you can try to disable dnssec completely with the parameters - for more details check the unbound documentation (e.g. `man unbound.conf`)

I hope this helps!
 

About

The Proxmox community has been around for many years and offers help and support for Proxmox VE, Proxmox Backup Server, and Proxmox Mail Gateway.
We think our community is one of the best thanks to people like you!

Get your subscription!

The Proxmox team works very hard to make sure you are running the best software and getting stable updates and security enhancements, as well as quick enterprise support. Tens of thousands of happy customers have a Proxmox subscription. Get yours easily in our online shop.

Buy now!