Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Unbound resolver error: Can't assign requested address for 127.0.0.1

    Scheduled Pinned Locked Moved DHCP and DNS
    dnsdns resolverunboundconfigurationconfig
    40 Posts 5 Posters 8.3k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • RonpfSR
      RonpfS
      last edited by

      In a shell or Diagnostics Command prompt, do a

      ls -al /var/unbound /var/db/pfblockerng
      
      T 1 Reply Last reply Reply Quote 0
      • T
        themadsalvi @RonpfS
        last edited by themadsalvi

        @RonpfS @Gertjan
        I have placed the output below

        34befb63-1f5e-4954-9ce1-484201b12029-image.png
        afa1750a-be0a-4525-83fb-10a5ea7153e1-image.png

        Why are the last 4 so old?

        RonpfSR 1 Reply Last reply Reply Quote 0
        • RonpfSR
          RonpfS @themadsalvi
          last edited by RonpfS

          @themadsalvi The 2012 timestamp looks suspicious compared to mine :

          -rw-r-----   1 unbound  unbound       2459 Dec  8 19:42 unbound_control.key
          -rw-r-----   1 unbound  unbound       1330 Dec  8 19:42 unbound_control.pem
          -rw-r-----   1 unbound  unbound       2459 Dec  8 19:42 unbound_server.key
          -rw-r-----   1 unbound  unbound       1318 Dec  8 19:42 unbound_server.pem
          
          

          maybe it time to delete them, restart unbound or reboot pfsense.

          T 1 Reply Last reply Reply Quote 0
          • T
            themadsalvi @RonpfS
            last edited by themadsalvi

            @RonpfS

            what is the syntax for deleting the files in the shell?
            rm -f /var/unbound/unbound_server.key?

            is that the correct syntax?

            Edit:
            It looks like it was able to recreate the files
            da3920eb-4780-4450-ab68-f3024e7e5c1d-image.png

            RonpfSR 1 Reply Last reply Reply Quote 0
            • RonpfSR
              RonpfS @themadsalvi
              last edited by RonpfS

              @themadsalvi

              Rename them in case :

              mv  /var/unbound/unbound_control.key /var/unbound/backup_unbound_control.key
              mv  /var/unbound/unbound_control.pem /var/unbound/backup_unbound_control.pem
              mv  /var/unbound/unbound_server.key /var/unbound/backup_unbound_server.key
              mv  /var/unbound/unbound_server.pem /var/unbound/backup_unbound_server.pem
              

              restart unbound, it should start, if not ... then move them back.
              to remove them it's :

              rm /var/unbound/unbound_server.pem
              

              Also it's better to access the webgui with the pfsense IP address instead of using it's domain name when stopping and restarting DNS resolver.

              T 1 Reply Last reply Reply Quote 0
              • T
                themadsalvi @RonpfS
                last edited by themadsalvi

                @RonpfS
                unbound restarted ok, without any errors, but the DNSBL was still unable to reload without the error.
                pfblockerng4.txt

                I use the IP of Pfsense whenever I log into the web GUI, not sure why it uses the domain name when logging into shell

                1 Reply Last reply Reply Quote 0
                • GrimsonG
                  Grimson Banned
                  last edited by

                  What other packages are you using? Bind will conflict with unbound and if you use Service Watchdog make sure it does not monitor unbound.

                  1 Reply Last reply Reply Quote 0
                  • RonpfSR
                    RonpfS
                    last edited by

                    This post is deleted!
                    1 Reply Last reply Reply Quote 0
                    • RonpfSR
                      RonpfS
                      last edited by RonpfS

                      Well ... I have no more clue why it doesn't reload unbound.
                      Maybe disable all feeds excepts Ads ?

                      What does ls -al /var/unbound look like now ?

                      T 1 Reply Last reply Reply Quote 0
                      • T
                        themadsalvi @RonpfS
                        last edited by themadsalvi

                        @RonpfS I placed the result of the rebuilt key and pem files, as well as how /var/unbound looks in my last post(out on lunch and on mobile, sorry)

                        @Grimson the one thing I find odd is it just started this over the weekend, after a power outage. It has been fine for the last 6 months, without any issue. I do not have bind,and have made sure that unbound is not being monitored by service watchdog. I have the regularly installed packages like pfblockerng-devel, snort, etc.

                        Screenshot_20190326-123300__01.jpg
                        Screenshot_20190326-123308__01.jpg

                        GrimsonG 1 Reply Last reply Reply Quote 0
                        • GrimsonG
                          Grimson Banned @themadsalvi
                          last edited by

                          @themadsalvi said in Unbound resolver error: Can't assign requested address for 127.0.0.1:

                          @Grimson the one thing I find odd is it just started this over the weekend, after a power outage.

                          So did you run fsck on the filesystem? https://docs.netgate.com/pfsense/en/latest/hardware/troubleshooting-disk-check-errors-fsck.html#manually-run-fsck

                          I have the regularly installed packages like pfblockerng-devel, snort, etc.

                          There are no regularly installed packages, a regular install comes without additional packages. So always mention the packages you are using when asking for help.

                          If following the above to check the filesystem doesn't work grab a config backup and do a fresh install to make sure the installation is in a good state.

                          T 1 Reply Last reply Reply Quote 0
                          • T
                            themadsalvi @Grimson
                            last edited by

                            @Grimson iplaced some screenshots from my mobile in my previouspost. Fsck says that /dev/zroot/ROOT cannot be opened since there is no file or directory present

                            GrimsonG 1 Reply Last reply Reply Quote 0
                            • GrimsonG
                              Grimson Banned @themadsalvi
                              last edited by

                              @themadsalvi said in Unbound resolver error: Can't assign requested address for 127.0.0.1:

                              @Grimson iplaced some screenshots from my mobile in my previouspost. Fsck says that /dev/zroot/ROOT cannot be opened since there is no file or directory present

                              https://www.freebsd.org/doc/handbook/zfs-zpool.html#zfs-zpool-status
                              https://www.freebsd.org/doc/handbook/zfs-zpool.html#zfs-zpool-scrub

                              T 1 Reply Last reply Reply Quote 0
                              • T
                                themadsalvi @Grimson
                                last edited by

                                @Grimson
                                0dc2224a-ee6b-455c-abea-fef25d114303-image.png

                                It looks like it found no errors in the pool. I even ran the scrub with no errors found.

                                1 Reply Last reply Reply Quote 0
                                • GrimsonG
                                  Grimson Banned
                                  last edited by

                                  To be honest, from what I can see your installation is a mess. For example you have both snort and suricata installed. Best suggestion is for you to document what you are currently using (and what not). Then start with a fresh clean install, don't restore the config do the setup bit by bit yourself and watch where it breaks.

                                  T 1 Reply Last reply Reply Quote 0
                                  • T
                                    themadsalvi @Grimson
                                    last edited by

                                    @Grimson I will have to do that when I get home. I guess I have been lucky in that it has worked flawlessly for the last 6 months(SInce I installed it). It was bound to break eventually. Strangely, I can still surf the internet fine(I am writing from the network that has Pfsense firewall), and use streaming services like netflix.

                                    1 Reply Last reply Reply Quote 0
                                    • RonpfSR
                                      RonpfS
                                      last edited by

                                      You can always try to remove pfblocker lists by unticking pfBlockerNG & Keep Settings :

                                      Note: To clear all downloaded lists, uncheck these two checkboxes and 'Save'. Re-check both boxes and run a 'Force Update|Reload'

                                      T 1 Reply Last reply Reply Quote 0
                                      • T
                                        themadsalvi @RonpfS
                                        last edited by

                                        @RonpfS Uninstall, and then installed. This happened

                                        640c1eeb-d451-4313-9a1f-21bb52598302-image.png

                                        RonpfSR 1 Reply Last reply Reply Quote 0
                                        • GertjanG
                                          Gertjan
                                          last edited by

                                          Saw this :

                                          [ Windows_hosts_block ]		 Downloading update [ 03/26/19 12:04:08 ] .. 404 Not Found
                                          

                                          Possible to remove that feed ?
                                          (or am I to late already ?)

                                          No "help me" PM's please. Use the forum, the community will thank you.
                                          Edit : and where are the logs ??

                                          RonpfSR T 2 Replies Last reply Reply Quote 0
                                          • RonpfSR
                                            RonpfS @themadsalvi
                                            last edited by

                                            @themadsalvi So that is the output of a Force Update after Disabling pfblockerng and Save settings,
                                            Now when you tick both setttings, do a Force Update, then a Force Reload all.

                                            1 Reply Last reply Reply Quote 0
                                            • First post
                                              Last post
                                            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.