# server: # By default Unbound does not allow Private IPs to be reverse Queried (AS112 Zones) # Allow them for TLS Mutual Authentication Reverse Queries # IPv4 Private Addresses local-zone: "10.in-addr.arpa." nodefault local-zone: "16.172.in-addr.arpa." nodefault local-zone: "17.172.in-addr.arpa." nodefault local-zone: "18.172.in-addr.arpa." nodefault local-zone: "19.172.in-addr.arpa." nodefault local-zone: "20.172.in-addr.arpa." nodefault local-zone: "21.172.in-addr.arpa." nodefault local-zone: "22.172.in-addr.arpa." nodefault local-zone: "23.172.in-addr.arpa." nodefault local-zone: "24.172.in-addr.arpa." nodefault local-zone: "25.172.in-addr.arpa." nodefault local-zone: "26.172.in-addr.arpa." nodefault local-zone: "27.172.in-addr.arpa." nodefault local-zone: "28.172.in-addr.arpa." nodefault local-zone: "29.172.in-addr.arpa." nodefault local-zone: "30.172.in-addr.arpa." nodefault local-zone: "31.172.in-addr.arpa." nodefault local-zone: "168.192.in-addr.arpa." nodefault # IPv6 Local Addresses local-zone: "d.f.ip6.arpa." nodefault local-zone: "8.e.f.ip6.arpa." nodefault local-zone: "9.e.f.ip6.arpa." nodefault local-zone: "a.e.f.ip6.arpa." nodefault local-zone: "b.e.f.ip6.arpa." nodefault # IPv6 Example Prefix local-zone: "8.b.d.0.1.0.0.2.ip6.arpa." nodefault cache-max-negative-ttl: 5 prefetch: yes serve-original-ttl: yes ############ END OF LOCAL-ZONE CONFIG ############ ############ END OF SERVER CONFIG ############ forward-zone: # Primary & Secondary DNS Servers name: "." forward-addr: 192.168.50.12 root@SweLite-214:~#