DNS SAD DNS and NLnet Labs DNS software Photo by arash payam / UnsplashUpdate 18 November 2021: we are aware of the follow-up paper published by the researchers. The text below remains accurate for Unbound users. Please note that NLnet Labs 18 Nov 2020 • 5 min read
DNS DNS-over-HTTPS in Unbound A major step forward in end user privacy. NLnet Labs 9 Oct 2020 • 6 min read
DNS Some Country for Old Men An Unbound Story of Serving Expired Records. NLnet Labs 9 Sep 2020 • 4 min read
DNS Response Policy Zones in Unbound We are incredibly happy to introduce Unbound 1.10. This release features RPZ, a mechanism that makes it possible to define your local policies in a standardized way, and load your policies from external sources. NLnet Labs 20 Feb 2020 • 9 min read
Dev Prototyping Unbound extensions in minutes with Python and Docker How, theoretically, could one lower the barrier to trying out the connection testing feature of the Internet.nl application. NLnet Labs 8 Mar 2019 • 6 min read
DNS Aggressive use of the DNSSEC-Validated cache in Unbound One of the new features in Unbound 1.7.0 is the aggressive use of the DNSSEC-Validated cache, resulting in decreased load on name servers. NLnet Labs 5 Apr 2018 • 5 min read
DNS The peculiar case of NSEC processing using expanded wildcard records Unbound, Google public DNS, PowerDNS and Dnsmasq contained a flaw that made it possible to downgrade secure connections. NLnet Labs 30 Jan 2018 • 10 min read
DNS Privacy: Using DNS-over-TLS with the new Quad9 DNS Service Install and configure Stubby to communicate securely with the Quad9 DNS service using DNS-over-TLS. NLnet Labs 20 Nov 2017 • 3 min read
DNS Client based filtering in Unbound Using ‘tags’ introduced in Unbound 1.5.10 and ‘views’ in Unbound 1.6.0 to let DNS answers depend on the address of the client. NLnet Labs 22 Dec 2016 • 3 min read