Tested on OS ubuntu ram 1Gb, (include servis squid, apache2, & mrtg squid)
Install Paket Yang dibutuhkan
dan sesuaikan config /etc/unbound/unbound.conf, dan servis dns lainnya (bind/dnsmasq dll) harus di stop agar tidak bentrok)
root@ubuntu:~# nslookup 192.168.100.2
root@ubuntu:~# nslookup warnet-sudiro.net
root@ubuntu:~#unbound-control stats
Install Paket Yang dibutuhkan
apt-get install build-essential libssl-devSetelah selesai install paket selanjutnya
Selanjutnya buat user dan grup untuk Unboundapt-get install unboundcd /etc/unboundunbound-control-setup
groupadd unbound
useradd -d /var/unbound -m -g unbound -s /bin/false unbound
dan sesuaikan config /etc/unbound/unbound.conf, dan servis dns lainnya (bind/dnsmasq dll) harus di stop agar tidak bentrok)
vi /etc/init.d/unbound
root@ubuntu:~# /etc/init.d/unbound restartserver:verbosity:1statistics-interval:120num-threads:1interface:0.0.0.0outgoing-range:512num-queries-per-thread:1024msg-cache-size:16mrrset-cache-size:32mmsg-cache-slabs:4rrset-cache-slabs:4cache-max-ttl:86400infra-host-ttl:60infra-lame-ttl:120infra-cache-numhosts:10000infra-cache-lame-size:10kdo-ip4:yesdo-ip6:nodo-udp: yesdo-tcp: yesdo-daemonize: yes#access-control:0.0.0.0/0allowaccess-control:192.168.0.0/16allowaccess-control:172.16.0.0/12allowaccess-control:10.0.0.0/8allowaccess-control:127.0.0.0/8allowaccess-control:0.0.0.0/0refusechroot: “/etc/unbound”username: “unbound”directory: “/etc/unbound”#logfile: “/etc/unbound/unbound.log”#use-syslog: yeslogfile: “”use-syslog: nopidfile: “/etc/unbound/unbound.pid”root-hints: “/etc/unbound/named.cache”identity: “DNS”version: “1.4″hide-identity: yeshide-version: yesharden-glue: yesdo-not-query-address:127.0.0.1/8do-not-query-localhost: yesmodule-config: “iterator”#zone localhostlocal-zone: “localhost.”staticlocal-data: “localhost.10800IN NS localhost.”local-data: “localhost.10800IN SOA localhost. nobody.invalid.13600120060480010800″local-data: “localhost.10800IN A127.0.0.1″local-zone: “127.in-addr.arpa.”staticlocal-data: “127.in-addr.arpa.10800IN NS localhost.”local-data: “127.in-addr.arpa.10800IN SOA localhost. nobody.invalid.23600120060480010800″local-data: “1.0.0.127.in-addr.arpa.10800IN PTR localhost.”#zone warnet-sudiro.netlocal-zone: “warnet-sudiro.net.”staticlocal-data: “warnet-sudiro.net.86400IN NS ns1.warnet-sudiro.net.”local-data: “warnet-sudiro.net.86400IN SOA warnet-sudiro.net. hostmaster.warnet-sudiro.net.33600120060480086400″local-data: “warnet-sudiro.net.86400IN A192.168.100.2″local-data: “www.warnet-sudiro.net.86400IN A192.168.100.2″local-data: “ns1.warnet-sudiro.net.86400IN A192.168.100.2″local-data: “mail.warnet-sudiro.net.86400IN A192.168.100.5″local-data: “warnet-sudiro.net.86400IN MX10mail.warnet-sudiro.net.”local-data: “warnet-sudiro.net.86400IN TXT v=spf1a mx ~all”local-zone: “100.168.192.in-addr.arpa.”staticlocal-data: “100.168.192.in-addr.arpa.10800IN NS warnet-sudiro.net.”local-data: “100.168.192.in-addr.arpa.10800IN SOA warnet-sudiro.net. hostmaster.warnet-sudiro.net.436001200604800864000″local-data: “2.100.168.192.in-addr.arpa.10800IN PTR warnet-sudiro.net.”forward-zone:name: “.”forward-addr:202.134.1.10forward-addr:222.124.204.34forward-addr:202.134.0.155remote-control:control-enable: yescontrol-interface:127.0.0.1control-port:953server-key-file: “/etc/unbound/unbound_server.key”server-cert-file: “/etc/unbound/unbound_server.pem”control-key-file: “/etc/unbound/unbound_control.key”control-cert-file: “/etc/unbound/unbound_control.pem”
root@ubuntu:~# nslookup 192.168.100.2
Server:127.0.0.1Address:127.0.0.1#532.00.168.192.in-addr.arpa name = warnet-sudiro.net.
root@ubuntu:~# nslookup warnet-sudiro.net
Server:127.0.0.1Address:127.0.0.1#53Name: warnet-sudiro.netAddress:192.168.100.2
root@ubuntu:~#unbound-control stats
thread0.num.queries=38thread0.num.cachehits=7thread0.num.cachemiss=31thread0.num.recursivereplies=31thread0.requestlist.avg=0.129032thread0.requestlist.max=1thread0.requestlist.overwritten=0thread0.requestlist.exceeded=0thread0.requestlist.current.all=0thread0.requestlist.current.user=0thread0.recursion.time.avg=0.088811thread0.recursion.time.median=0.0185685thread1.num.queries=10thread1.num.cachehits=1thread1.num.cachemiss=9thread1.num.recursivereplies=9thread1.requestlist.avg=0thread1.requestlist.max=0thread1.requestlist.overwritten=0thread1.requestlist.exceeded=0thread1.requestlist.current.all=0thread1.requestlist.current.user=0thread1.recursion.time.avg=0.049576thread1.recursion.time.median=0.016384total.num.queries=48total.num.cachehits=8total.num.cachemiss=40total.num.recursivereplies=40total.requestlist.avg=0.1total.requestlist.max=1total.requestlist.overwritten=0total.requestlist.exceeded=0total.requestlist.current.all=0total.requestlist.current.user=0total.recursion.time.avg=0.079984total.recursion.time.median=0.0174763time.now=1281681396.583885time.up=7299.491047time.elapsed=4177.655650
Source : ForumMikrotik.Com