New user, attempting configuration

Attempting to configure unbound Version 1.6.8 as provided with Suse Leap 15.4.

I presume the documentation on the official site refers to version 1.17.xxxx as attempting to add "log-tag-queryreply" and "log-servfail" produce "unknown keyword" running unbound-checkout.

I also presume 1.17 is a much later version than is 1.6.

In any event, being unfamiliar with DNS server config in general, I am finding it difficult to dig out what I need in order to create a "do not forward" zone (?) for specific domains. There are few enough I can state them explicitly.

More precisely, I wish to configure a DNS sever in the manner desired and hopefully honored by spamhaus.org when queried by Spamassassin.

Already configured to the point it can accept requests from SA and apparently retrieve a response from spamhause. I can also offer that I may need to re-register with spamhaus as the current static IP of the requesting site may not be the same as what was registered.

Regardless, I would think it reasonable to assure my setup is correct prior to re-registering.

Thanks in advance.

I guess list traffic is low? Regardless, I have unbound working and wish now to log to a named log.

These settings in /etc/unbound/unbound.conf seem to have no effect, logging continues to /var/log/messages, ever after restart or stop and start of unbound.