Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Unbound resolver error: Can't assign requested address for 127.0.0.1

    Scheduled Pinned Locked Moved DHCP and DNS
    dnsdns resolverunboundconfigurationconfig
    40 Posts 5 Posters 8.3k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • RonpfSR
      RonpfS @themadsalvi
      last edited by RonpfS

      @themadsalvi

      Rename them in case :

      mv  /var/unbound/unbound_control.key /var/unbound/backup_unbound_control.key
      mv  /var/unbound/unbound_control.pem /var/unbound/backup_unbound_control.pem
      mv  /var/unbound/unbound_server.key /var/unbound/backup_unbound_server.key
      mv  /var/unbound/unbound_server.pem /var/unbound/backup_unbound_server.pem
      

      restart unbound, it should start, if not ... then move them back.
      to remove them it's :

      rm /var/unbound/unbound_server.pem
      

      Also it's better to access the webgui with the pfsense IP address instead of using it's domain name when stopping and restarting DNS resolver.

      T 1 Reply Last reply Reply Quote 0
      • T
        themadsalvi @RonpfS
        last edited by themadsalvi

        @RonpfS
        unbound restarted ok, without any errors, but the DNSBL was still unable to reload without the error.
        pfblockerng4.txt

        I use the IP of Pfsense whenever I log into the web GUI, not sure why it uses the domain name when logging into shell

        1 Reply Last reply Reply Quote 0
        • GrimsonG
          Grimson Banned
          last edited by

          What other packages are you using? Bind will conflict with unbound and if you use Service Watchdog make sure it does not monitor unbound.

          1 Reply Last reply Reply Quote 0
          • RonpfSR
            RonpfS
            last edited by

            This post is deleted!
            1 Reply Last reply Reply Quote 0
            • RonpfSR
              RonpfS
              last edited by RonpfS

              Well ... I have no more clue why it doesn't reload unbound.
              Maybe disable all feeds excepts Ads ?

              What does ls -al /var/unbound look like now ?

              T 1 Reply Last reply Reply Quote 0
              • T
                themadsalvi @RonpfS
                last edited by themadsalvi

                @RonpfS I placed the result of the rebuilt key and pem files, as well as how /var/unbound looks in my last post(out on lunch and on mobile, sorry)

                @Grimson the one thing I find odd is it just started this over the weekend, after a power outage. It has been fine for the last 6 months, without any issue. I do not have bind,and have made sure that unbound is not being monitored by service watchdog. I have the regularly installed packages like pfblockerng-devel, snort, etc.

                Screenshot_20190326-123300__01.jpg
                Screenshot_20190326-123308__01.jpg

                GrimsonG 1 Reply Last reply Reply Quote 0
                • GrimsonG
                  Grimson Banned @themadsalvi
                  last edited by

                  @themadsalvi said in Unbound resolver error: Can't assign requested address for 127.0.0.1:

                  @Grimson the one thing I find odd is it just started this over the weekend, after a power outage.

                  So did you run fsck on the filesystem? https://docs.netgate.com/pfsense/en/latest/hardware/troubleshooting-disk-check-errors-fsck.html#manually-run-fsck

                  I have the regularly installed packages like pfblockerng-devel, snort, etc.

                  There are no regularly installed packages, a regular install comes without additional packages. So always mention the packages you are using when asking for help.

                  If following the above to check the filesystem doesn't work grab a config backup and do a fresh install to make sure the installation is in a good state.

                  T 1 Reply Last reply Reply Quote 0
                  • T
                    themadsalvi @Grimson
                    last edited by

                    @Grimson iplaced some screenshots from my mobile in my previouspost. Fsck says that /dev/zroot/ROOT cannot be opened since there is no file or directory present

                    GrimsonG 1 Reply Last reply Reply Quote 0
                    • GrimsonG
                      Grimson Banned @themadsalvi
                      last edited by

                      @themadsalvi said in Unbound resolver error: Can't assign requested address for 127.0.0.1:

                      @Grimson iplaced some screenshots from my mobile in my previouspost. Fsck says that /dev/zroot/ROOT cannot be opened since there is no file or directory present

                      https://www.freebsd.org/doc/handbook/zfs-zpool.html#zfs-zpool-status
                      https://www.freebsd.org/doc/handbook/zfs-zpool.html#zfs-zpool-scrub

                      T 1 Reply Last reply Reply Quote 0
                      • T
                        themadsalvi @Grimson
                        last edited by

                        @Grimson
                        0dc2224a-ee6b-455c-abea-fef25d114303-image.png

                        It looks like it found no errors in the pool. I even ran the scrub with no errors found.

                        1 Reply Last reply Reply Quote 0
                        • GrimsonG
                          Grimson Banned
                          last edited by

                          To be honest, from what I can see your installation is a mess. For example you have both snort and suricata installed. Best suggestion is for you to document what you are currently using (and what not). Then start with a fresh clean install, don't restore the config do the setup bit by bit yourself and watch where it breaks.

                          T 1 Reply Last reply Reply Quote 0
                          • T
                            themadsalvi @Grimson
                            last edited by

                            @Grimson I will have to do that when I get home. I guess I have been lucky in that it has worked flawlessly for the last 6 months(SInce I installed it). It was bound to break eventually. Strangely, I can still surf the internet fine(I am writing from the network that has Pfsense firewall), and use streaming services like netflix.

                            1 Reply Last reply Reply Quote 0
                            • RonpfSR
                              RonpfS
                              last edited by

                              You can always try to remove pfblocker lists by unticking pfBlockerNG & Keep Settings :

                              Note: To clear all downloaded lists, uncheck these two checkboxes and 'Save'. Re-check both boxes and run a 'Force Update|Reload'

                              T 1 Reply Last reply Reply Quote 0
                              • T
                                themadsalvi @RonpfS
                                last edited by

                                @RonpfS Uninstall, and then installed. This happened

                                640c1eeb-d451-4313-9a1f-21bb52598302-image.png

                                RonpfSR 1 Reply Last reply Reply Quote 0
                                • GertjanG
                                  Gertjan
                                  last edited by

                                  Saw this :

                                  [ Windows_hosts_block ]		 Downloading update [ 03/26/19 12:04:08 ] .. 404 Not Found
                                  

                                  Possible to remove that feed ?
                                  (or am I to late already ?)

                                  No "help me" PM's please. Use the forum, the community will thank you.
                                  Edit : and where are the logs ??

                                  RonpfSR T 2 Replies Last reply Reply Quote 0
                                  • RonpfSR
                                    RonpfS @themadsalvi
                                    last edited by

                                    @themadsalvi So that is the output of a Force Update after Disabling pfblockerng and Save settings,
                                    Now when you tick both setttings, do a Force Update, then a Force Reload all.

                                    1 Reply Last reply Reply Quote 0
                                    • RonpfSR
                                      RonpfS @Gertjan
                                      last edited by

                                      @Gertjan said in Unbound resolver error: Can't assign requested address for 127.0.0.1:

                                      Possible to remove that feed ?

                                      Well the feed would be empty and would not prevent rebuilding the pfb_dnsbl.conf

                                      1 Reply Last reply Reply Quote 0
                                      • T
                                        themadsalvi @Gertjan
                                        last edited by

                                        @Gertjan I have started from zero on the pfblocker to try and rule that out.

                                        @RonpfS That is the output of fully removing and re-installing pfblocker, with the keep settings unticked.

                                        RonpfSR T 2 Replies Last reply Reply Quote 0
                                        • RonpfSR
                                          RonpfS @themadsalvi
                                          last edited by

                                          @themadsalvi said in Unbound resolver error: Can't assign requested address for 127.0.0.1:

                                          @RonpfS That is the output of fully removing and re-installing pfblocker, with the keep settings unticked.

                                          Well let us know what happens when you add a DNSBL table.

                                          T 1 Reply Last reply Reply Quote 0
                                          • T
                                            themadsalvi @themadsalvi
                                            last edited by

                                            @RonpfS If I do a force update and force reload with a list or two it does the following:

                                            UPDATE PROCESS START [ 03/26/19 14:48:53 ]

                                            ===[ DNSBL Process ]================================================

                                            [ 1 ] Downloading update .. 200 OK
                                            No Domains Found

                                            [ shalla ] Downloading update [ 03/26/19 14:49:03 ] .. 200 OK.

                                            Orig. Unique # Dups # White # Alexa Final

                                            19567 19567 0 0 0 19567

                                            DNSBL: Flush DNSBL_IP

                                            Assembling database... completed
                                            Validating database... Skipped
                                            Reloading Unbound... Failed to Reload... Restoring previous database.... Not completed.

                                            *** DNSBL update [ 0 ] [ 19567 ] ... OUT OF SYNC ! ***

                                            ===[ Continent Process ]============================================

                                            ===[ Aliastables / Rules ]==========================================

                                            No changes to Firewall rules, skipping Filter Reload
                                            No Changes to Aliases, Skipping pfctl Update

                                            ===[ FINAL Processing ]=====================================

                                            [ Original IP count ] [ 0 ]

                                            ===[ DNSBL Domain/IP Counts ] ===================================

                                            19567 /var/db/pfblockerng/dnsbl/shalla.txt

                                            IPv4 alias tables IP count

                                            1

                                            IPv6 alias tables IP count

                                            0

                                            Alias table IP Counts

                                               1 /var/db/aliastables/pfB_DNSBLIP.txt
                                            

                                            pfSense Table Stats

                                            table-entries hard limit 400000
                                            Table Usage Count 109283

                                            UPDATE PROCESS ENDED [ 03/26/19 14:49:07 ]

                                            1 Reply Last reply Reply Quote 0
                                            • First post
                                              Last post
                                            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.