Unbound listening on all interfaces
Bug #1761785 reported by
Mohammed Naser
This bug affects 4 people
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
OpenStack-Ansible |
Fix Released
|
Low
|
Unassigned |
Bug Description
By default, unbound is listening on all interfaces which means on a metal deployment with containers along side it, it will try to listen on the interface which is managed by dnsmasq-lxc and fail
Changed in openstack-ansible: | |
status: | New → Confirmed |
importance: | Undecided → Low |
To post a comment you must log in.
It also makes deployments in Ubuntu 18.04 containers fail, because systemd-resolved is already listening on 127.0.0.53:53:
RUNNING HANDLER [unbound : Restart unbound] ******* ******* ******* ******* ******* ******* ******* ******* ******* ******* ******* ******* ******* ******* ******* ******* ******* ******* ******* ******* ******* ******* ******* ******* ******* ******* ******* ******* ******* ******* ******* ******* ******* ******* ******* ******* ******* ******* ******* ** dc1r02n01_ unbound_ container- fbb6fb41] : FAILED! => {"changed": false, "msg": "Unable to restart service unbound: Job for unbound.service failed because the control process exited with error code.\nSee \"systemctl status unbound.service\" and \"journalctl -xe\" for details.\n"} dc1r02n02_ unbound_ container- dcf7247c] : FAILED! => {"changed": false, "msg": "Unable to restart service unbound: Job for unbound.service failed because the control process exited with error code.\nSee \"systemctl status unbound.service\" and \"journalctl -xe\" for details.\n"} dc1r02n03_ unbound_ container- b04165bc] : FAILED! => {"changed": false, "msg": "Unable to restart service unbound: Job for unbound.service failed because the control process exited with error code.\nSee \"systemctl status unbound.service\" and \"journalctl -xe\" for details.\n"}
fatal: [controller-
fatal: [controller-
fatal: [controller-
root@controller -dc1r02n01- unbound- container- fbb6fb41: ~# journalctl -eu unbound.service dc1r02n01- unbound- container- fbb6fb41 systemd[1]: Starting Unbound DNS server... dc1r02n01- unbound- container- fbb6fb41 package- helper[ 1047]: /var/lib/ unbound/ root.key has content dc1r02n01- unbound- container- fbb6fb41 package- helper[ 1047]: success: the anchor is ok dc1r02n01- unbound- container- fbb6fb41 unbound[1051]: [1543334803] unbound[1051:0] error: can't bind socket: Address already in use fo dc1r02n01- unbound- container- fbb6fb41 unbound[1051]: [1543334803] unbound[1051:0] fatal error: could not open ports dc1r02n01- unbound- container- fbb6fb41 systemd[1]: unbound.service: Main process exited, code=exited, status=1 dc1r02n01- unbound- container- fbb6fb41 systemd[1]: unbound.service: Failed with result 'exit-code'. dc1r02n01- unbound- container- fbb6fb41 systemd[1]: Failed to start Unbound DNS server. dc1r02n01- unbound- container- fbb6fb41 systemd[1]: unbound.service: Service hold-off time over, scheduling restart. dc1r02n01- unbound- container- fbb6fb41 systemd[1]: unbound.service: Scheduled restart job, restart counter is at 5. dc1r02n01- unbound- container- fbb6fb41 systemd[1]: Stopped Unbound DNS server. dc1r02n01- unbound- container- fbb6fb41 systemd[1]: unbound.service: Start request repeated too quickly. dc1r02n01- unbound- container- fbb6fb41 systemd[1]: unbound.service: Failed with result 'exit-code'. dc1r02n01- unbound- container- fbb6fb41 systemd[1]: Failed to start Unbound DNS...
Nov 27 16:06:42 controller-
Nov 27 16:06:43 controller-
Nov 27 16:06:43 controller-
Nov 27 16:06:43 controller-
r 0.0.0.0
Nov 27 16:06:43 controller-
Nov 27 16:06:43 controller-
/FAILURE
Nov 27 16:06:43 controller-
Nov 27 16:06:43 controller-
Nov 27 16:06:43 controller-
Nov 27 16:06:43 controller-
Nov 27 16:06:43 controller-
Nov 27 16:06:43 controller-
Nov 27 16:06:43 controller-
Nov 27 16:06:43 controller-