Skip to content

WireGuard + Unbound: DNS for WireGuard peers stops working after reboot #2342

@TheHellSite

Description

@TheHellSite

Important notices
Before you add a new report, we ask you kindly to acknowledge the following:
[+] I have read the contributing guide lines at https://github.com/opnsense/plugins/blob/master/CONTRIBUTING.md
[+] I have searched the existing issues and I'm convinced that mine is new.
[+] The title contains the plugin to which this issue belongs

Describe the bug
When the bug occurs all WireGuard peers connected to my OPNsense can no longer resolve DNS requests.
Please note that WireGuard peers can still access websites if I call them with their IP.
Restarting Unbound immediately solves the issue.
My LAN / VLAN clients are not affected by this.

To Reproduce

  1. Enable Unbound.
  2. Setup WireGuard Road Warrior with "AllowedIPs = 0.0.0.0/0" in remote peer config.
  3. Restart OPNsense or Reload WAN or Change name of any interface
  4. See error

Expected behavior
A clear and concise description of what you expected to happen.

Screenshots
Unbound config.
grafik

Relevant log files
None available as I don't know which would be relevant.

Environment
OPNsense 21.1.4-amd64
FreeBSD 12.1-RELEASE-p15-HBSD
OpenSSL 1.1.1k 25 Mar 2021

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions