Skip to content

Commit

Permalink
Update unbound.conf
Browse files Browse the repository at this point in the history
Improve cache hits. Thanks @Juched
ASUS Guest #1 SSID VLAN template/fix for DNS Thanks @Juched
  • Loading branch information
MartineauUK authored Feb 2, 2021
1 parent b3a0dae commit 6c77db0
Showing 1 changed file with 4 additions and 1 deletion.
5 changes: 4 additions & 1 deletion unbound.conf
Original file line number Diff line number Diff line change
@@ -1,4 +1,6 @@
# Version=v1.11 Martineau update (Date Loaded
# v1.12 Martineau - Add 'interface xxx.xxx.101.1@53/xxx.xxx.102.1@53' templates for Aimesh Guest SSID VLANs when dnsmasq disabled @juched
# Change 'serve-expired-ttl: 3600' to 86400 @juched
# v1.11 Martineau - Add 'private-address: ::/0' Enhance 'do-ip6: no' i.e. explicitly drop ALL IPv6 responses
# - Add IPv6 Private Address 'fd00::/8' and 'fe80::/10'
# - Add If 'do-ip6: yes' set 'edns-buffer-size: 1232' @Linux_Chemist
Expand Down Expand Up @@ -29,6 +31,7 @@ server:
port: 53535 # v1.08 If 53, requires 'port=0' in '/etc/dnsmasq.conf' to 'disable' dnsmasq to answer queries direct from LAN clients
interface: 127.0.0.1@53535 # v1.01 As per @dave14305 minimal config; Will be overwritten by $(nvram get lan_ipaddr_rt) if dnsmasq 'disabled'
#interface: 127.0.0.1@53 # v1.10 Required by router if dnsmasq 'disabled'
#interface: xxx.xxx.10x.1@53 # v1.12 AiMesh Guest SSID VLAN TAG (dnsmasq disabled) @juched
#access-control: 0.0.0.0/0 allow # v1.10 Will be overwritten by LAN subnet "${lan_ip_addr_rt}/24" if 'dnsmasq disabled' aka bypassed
#@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@

Expand Down Expand Up @@ -105,7 +108,7 @@ prefetch: yes
prefetch-key: yes
minimal-responses: yes
serve-expired: yes
serve-expired-ttl: 3600
serve-expired-ttl: 86400 # v1.12 as per @juched
incoming-num-tcp: 600
outgoing-num-tcp: 100
ip-ratelimit: 0 # v1.04 as per @L&LD as it impacts ipleak.net?
Expand Down

0 comments on commit 6c77db0

Please sign in to comment.