ansible-infra/roles/unbound
bitwhisker 866005c055
Some checks failed
/ Ansible Lint (push) Failing after 2m30s
/ Ansible Lint (pull_request) Failing after 2m27s
/ build (pull_request) Failing after 2m39s
rt1(z9 host) unbound(role) kea_dhcp(role): create unbound and kea_dhcp role for rt1
- create unbound role
- create kea_dhcp role
- configure unbound and keadhcp on rt1(z9 host)
2026-05-24 04:19:16 +02:00
..
defaults rt1(z9 host) unbound(role) kea_dhcp(role): create unbound and kea_dhcp role for rt1 2026-05-24 04:19:16 +02:00
files rt1(z9 host) unbound(role) kea_dhcp(role): create unbound and kea_dhcp role for rt1 2026-05-24 04:19:16 +02:00
handlers rt1(z9 host) unbound(role) kea_dhcp(role): create unbound and kea_dhcp role for rt1 2026-05-24 04:19:16 +02:00
tasks rt1(z9 host) unbound(role) kea_dhcp(role): create unbound and kea_dhcp role for rt1 2026-05-24 04:19:16 +02:00
templates rt1(z9 host) unbound(role) kea_dhcp(role): create unbound and kea_dhcp role for rt1 2026-05-24 04:19:16 +02:00
README.md rt1(z9 host) unbound(role) kea_dhcp(role): create unbound and kea_dhcp role for rt1 2026-05-24 04:19:16 +02:00

Unbound DNS resolver

Role fora a validating, recursive, caching DNS resolver based on Unbound. It is designed to be fast and lean and incorporates modern features based on open standards.

Role Customization

The following variables can be used to customize this role:

Variable Type Default Description
unbound_install_prometheus_exporter Boolean true Whether Unbound Exporter should also be installed to expose resolver statistics in prometheus format.
unbound_bind_interfaces List of Strings [0.0.0.0, ::] List of interface names or IP addresses on which unbound will listen for dns queries
unbound_enable_unbound_control Boolean true Whether the remote control feature of unbound should be configured.
unbound_enable_dnssec Boolean true Whether dnssec validation should be enabled
unbound_access_control List of Strings [] Required List of unbound access control values
unbound_disable_systemd_networkd Boolean true If true, systemd-networkd is disabled and the local system is pointed towards the configured dns resolver.