Unbound

Follow

Comments

34 comments

  • Avatar
    Support Team

    @Alex

    Correct.

    We have not tried PiHole + Unbound on Firewalla, I think it's better to leave it to the community to support it.

    PiHole should already have good docs on how to work with unbound. There may already have docker containers out there supporting it.

     

    0
    Comment actions Permalink
  • Avatar
    Alex M

    @Support Team: thanks for the swift response, I was rather thinking / hoping for a setup like this:

    clients -> firewalla -> pi-hole -> unbound

    where pi-hole uses unbound as DNS resolver (and indeed not the other way round).

    I used to run this setup before, with pi-hole and unbound on separate raspberry pi devices, but would much rather have it all integrated on my FWP now, if possible at all, to ensure all FW functionality can be used.

    Guess that only leaves the possibility not to use the Unbound that is now 'embedded' in Firewalla and use a container that contains both Pi-Hole and Unbound?
    If so, could you please provide some support on how to do this? (another FW user started this topic: https://help.firewalla.com/hc/en-us/community/posts/1500001172701-Pihole-and-Unbound )

    0
    Comment actions Permalink
  • Avatar
    Support Team

    @Alex

    It can't. The idea of unbound is not having any upstream DNS resolver between unbound and authoritative nameservers.

    0
    Comment actions Permalink
  • Avatar
    Support Team

    Then why not just use DoH feature in Firewalla app? It's the same as unbound + DoH forwarding.

    Either query DNS from different authoritative servers (unbound with no forwarding): DNS requests are not encrypted, but no single DNS server has full access of DNS requests.

    Or query DNS from DoH servers (DoH): DNS requests are encrypted, but quad9/cloudflare can have full history of your DNS requests.

    None of them is perfect.

    -2
    Comment actions Permalink

Please sign in to leave a comment.