Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    How to restart unbound on renew of certificate?

    Scheduled Pinned Locked Moved ACME
    11 Posts 4 Posters 1.5k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • J
      JobH
      last edited by

      Hello.

      pfsense 2.4.5-RELEASE (amd64)

      I have enabled DNS resolver (unbound) and it uses my acme/letsencrypt wildcard-certificate to Respond to incoming SSL/TLS queries from local clients.

      I assume that when the certificate is renewed, the unbound service needs to be restarted, just like the webgui and haproxy?

      The examples shown for webgui and haproxy work fine, but I cannot find how to restart unbound. Could you please show me what to enter in the Actions list to accomplish this?

      With kind regards,

      JobH

      1 Reply Last reply Reply Quote 0
      • kiokomanK
        kiokoman LAYER 8
        last edited by kiokoman

        /usr/local/sbin/pfSsh.php playback svc restart unbound -> shell
        or just
        unbound and -> Restart Local Service from the drop down menu
        or
        /usr/local/etc/rc.d/unbound restart -> shell

        ̿' ̿'\̵͇̿̿\з=(◕_◕)=ε/̵͇̿̿/'̿'̿ ̿
        Please do not use chat/PM to ask for help
        we must focus on silencing this @guest character. we must make up lies and alter the copyrights !
        Don't forget to Upvote with the 👍 button for any post you find to be helpful.

        1 Reply Last reply Reply Quote 1
        • J
          JobH
          last edited by

          Thank you for the prompt response.

          I added the second part: unbound and Restart Local Service.

          Have to wait a week before being able to test the renewal process. I'll report back if everything worked ok.

          1 Reply Last reply Reply Quote 0
          • noplanN
            noplan
            last edited by

            @kiokoman said in How to restart unbound on renew of certificate?:

            /usr/local/etc/rc.d/unbound restart -> shell

            and does it worked for you ?

            1 Reply Last reply Reply Quote 0
            • GertjanG
              Gertjan
              last edited by Gertjan

              Noop ^^

              Executing :

              /usr/local/etc/rc.d/unbound restart
              

              tells you why.

              /usr/local/etc/rc.d/unbound onerestart
              

              Is worse. Will use a 'unknown' config file (not /var/unbound/unbound.conf)
              So, no good neither.

              This :

              2e9e006d-f2f9-4a28-94f0-ea2453be56aa-image.png

              seems to work - the unbound pid changed.

              No "help me" PM's please. Use the forum, the community will thank you.
              Edit : and where are the logs ??

              J 1 Reply Last reply Reply Quote 1
              • noplanN
                noplan
                last edited by

                damnnnnnn !
                not cool.

                1 Reply Last reply Reply Quote 0
                • kiokomanK
                  kiokoman LAYER 8
                  last edited by kiokoman

                  i didn't check, i don't use unbound.. it seems like it's not working from shell
                  have you tried the other 2 methods?

                  ̿' ̿'\̵͇̿̿\з=(◕_◕)=ε/̵͇̿̿/'̿'̿ ̿
                  Please do not use chat/PM to ask for help
                  we must focus on silencing this @guest character. we must make up lies and alter the copyrights !
                  Don't forget to Upvote with the 👍 button for any post you find to be helpful.

                  1 Reply Last reply Reply Quote 0
                  • noplanN
                    noplan
                    last edited by

                    not yet
                    vid call is still goin on would be uncool to cut connection ;)

                    1 Reply Last reply Reply Quote 0
                    • GertjanG
                      Gertjan
                      last edited by

                      Restarting unbound doesn't shut down my Netflix, neither Facetime or any other connection.

                      No "help me" PM's please. Use the forum, the community will thank you.
                      Edit : and where are the logs ??

                      1 Reply Last reply Reply Quote 0
                      • noplanN
                        noplan
                        last edited by

                        yep true !

                        1 Reply Last reply Reply Quote 0
                        • J
                          JobH @Gertjan
                          last edited by

                          @Gertjan I confirmed that the last solution works for me too (unbound, Restart Local Service).

                          1 Reply Last reply Reply Quote 0
                          • First post
                            Last post
                          Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.