Lines Matching +full:no +full:- +full:ref +full:- +full:current +full:- +full:limit
37 .. program:: unbound-control
39 unbound-control(8)
43 --------
45 **unbound-control** [``-hq``] [``-c cfgfile``] [``-s server``] command
48 -----------
50 ``unbound-control`` performs remote administration on the
57 .. option:: -h
61 .. option:: -c <cfgfile>
67 .. option:: -s <server[@port]>
72 .. option:: -q
77 --------
82 @@UAHL@unbound-control.commands@start@@
87 It is started with the config file specified using :option:`-c` or the
91 @@UAHL@unbound-control.commands@stop@@
96 @@UAHL@unbound-control.commands@reload@@
101 @@UAHL@unbound-control.commands@reload_keep_cache@@
108 @@UAHL@unbound-control.commands@fast_reload@@ [``+dpv``]
124 This is because Unbound temporarily needs to store both current
130 :ref:`forwards<unbound.conf.forward>`,
131 :ref:`stubs<unbound.conf.stub>`,
132 :ref:`views<unbound.conf.view>`,
133 :ref:`authority zones<unbound.conf.auth>`,
134 :ref:`RPZ zones<unbound.conf.rpz>` and
135 :ref:`local zones<unbound.conf.local-zone>`.
138 :ref:`access-control<unbound.conf.access-control>` and similar options,
139 :ref:`interface-action<unbound.conf.interface-action>` and similar
141 :ref:`tcp-connection-limit<unbound.conf.tcp-connection-limit>`.
143 :ref:`define-tag<unbound.conf.define-tag>`
146 :ref:`insecure-lan-zones<unbound.conf.insecure-lan-zones>`,
147 :ref:`domain-insecure<unbound.conf.domain-insecure>`,
148 :ref:`trust-anchor-file<unbound.conf.trust-anchor-file>`,
149 :ref:`trust-anchor<unbound.conf.trust-anchor>`,
150 :ref:`trusted-keys-file<unbound.conf.trusted-keys-file>`,
151 :ref:`auto-trust-anchor-file<unbound.conf.auto-trust-anchor-file>`,
152 :ref:`edns-client-string<unbound.conf.edns-client-string>`,
154 :ref:`log-identity<unbound.conf.log-identity>`,
155 :ref:`infra-cache-numhosts<unbound.conf.infra-cache-numhosts>`,
156 :ref:`msg-cache-size<unbound.conf.msg-cache-size>`,
157 :ref:`rrset-cache-size<unbound.conf.rrset-cache-size>`,
158 :ref:`key-cache-size<unbound.conf.key-cache-size>`,
159 :ref:`ratelimit-size<unbound.conf.ratelimit-size>`,
160 :ref:`neg-cache-size<unbound.conf.neg-cache-size>`,
161 :ref:`num-queries-per-thread<unbound.conf.num-queries-per-thread>`,
162 :ref:`jostle-timeout<unbound.conf.jostle-timeout>`,
163 :ref:`use-caps-for-id<unbound.conf.use-caps-for-id>`,
164 :ref:`unwanted-reply-threshold<unbound.conf.unwanted-reply-threshold>`,
165 :ref:`tls-use-sni<unbound.conf.tls-use-sni>`,
166 :ref:`outgoing-tcp-mss<unbound.conf.outgoing-tcp-mss>`,
167 :ref:`ip-dscp<unbound.conf.ip-dscp>`,
168 :ref:`max-reuse-tcp-queries<unbound.conf.max-reuse-tcp-queries>`,
169 :ref:`tcp-reuse-timeout<unbound.conf.tcp-reuse-timeout>`,
170 :ref:`tcp-auth-query-timeout<unbound.conf.tcp-auth-query-timeout>`,
171 :ref:`delay-close<unbound.conf.delay-close>`.
172 :ref:`iter-scrub-promiscuous<unbound.conf.iter-scrub-promiscuous>`.
175 :ref:`interface<unbound.conf.interface>` and
176 :ref:`outgoing-interface<unbound.conf.outgoing-interface>` changes,
178 :ref:`remote control<unbound.conf.remote>`,
179 :ref:`outgoing-port-permit<unbound.conf.outgoing-port-permit>`,
180 :ref:`outgoing-port-avoid<unbound.conf.outgoing-port-avoid>`,
181 :ref:`msg-buffer-size<unbound.conf.msg-buffer-size>`,
182 any **\*-slabs** options and
183 :ref:`statistics-interval<unbound.conf.statistics-interval>` changes.
185 For :ref:`dnstap<unbound.conf.dnstap>` these options can be changed:
186 … :ref:`dnstap-log-resolver-query-messages<unbound.conf.dnstap.dnstap-log-resolver-query-messages>`,
187 …:ref:`dnstap-log-resolver-response-messages<unbound.conf.dnstap.dnstap-log-resolver-response-messa…
188 :ref:`dnstap-log-client-query-messages<unbound.conf.dnstap.dnstap-log-client-query-messages>`,
189 …:ref:`dnstap-log-client-response-messages<unbound.conf.dnstap.dnstap-log-client-response-messages>…
190 …:ref:`dnstap-log-forwarder-query-messages<unbound.conf.dnstap.dnstap-log-forwarder-query-messages>…
191 …:ref:`dnstap-log-forwarder-response-messages<unbound.conf.dnstap.dnstap-log-forwarder-response-mes…
194 :ref:`dnstap-enable<unbound.conf.dnstap.dnstap-enable>`,
195 :ref:`dnstap-bidirectional<unbound.conf.dnstap.dnstap-bidirectional>`,
196 :ref:`dnstap-socket-path<unbound.conf.dnstap.dnstap-socket-path>`,
197 :ref:`dnstap-ip<unbound.conf.dnstap.dnstap-ip>`,
198 :ref:`dnstap-tls<unbound.conf.dnstap.dnstap-tls>`,
199 :ref:`dnstap-tls-server-name<unbound.conf.dnstap.dnstap-tls-server-name>`,
200 :ref:`dnstap-tls-cert-bundle<unbound.conf.dnstap.dnstap-tls-cert-bundle>`,
201 :ref:`dnstap-tls-client-key-file<unbound.conf.dnstap.dnstap-tls-client-key-file>` and
202 :ref:`dnstap-tls-client-cert-file<unbound.conf.dnstap.dnstap-tls-client-cert-file>`.
205 :ref:`dnstap-send-identity<unbound.conf.dnstap.dnstap-send-identity>`,
206 :ref:`dnstap-send-version<unbound.conf.dnstap.dnstap-send-version>`,
207 :ref:`dnstap-identity<unbound.conf.dnstap.dnstap-identity>`, and
208 :ref:`dnstap-version<unbound.conf.dnstap.dnstap-version>` can be loaded
235 :ref:`val-bogus-ttl<unbound.conf.val-bogus-ttl>`,
236 :ref:`val-override-date<unbound.conf.val-override-date>`,
237 :ref:`val-sig-skew-min<unbound.conf.val-sig-skew-min>`,
238 :ref:`val-sig-skew-max<unbound.conf.val-sig-skew-max>`,
239 :ref:`val-max-restart<unbound.conf.val-max-restart>`,
240 :ref:`val-nsec3-keysize-iterations<unbound.conf.val-nsec3-keysize-iterations>`,
241 :ref:`target-fetch-policy<unbound.conf.target-fetch-policy>`,
242 :ref:`outbound-msg-retry<unbound.conf.outbound-msg-retry>`,
243 :ref:`max-sent-count<unbound.conf.max-sent-count>`,
244 :ref:`max-query-restarts<unbound.conf.max-query-restarts>`,
245 :ref:`do-not-query-address<unbound.conf.do-not-query-address>`,
246 :ref:`do-not-query-localhost<unbound.conf.do-not-query-localhost>`,
247 :ref:`private-address<unbound.conf.private-address>`,
248 :ref:`private-domain<unbound.conf.private-domain>`,
249 :ref:`caps-exempt<unbound.conf.caps-exempt>`,
250 :ref:`nat64-prefix<unbound.conf.nat64.nat64-prefix>`,
251 :ref:`do-nat64<unbound.conf.nat64.do-nat64>`,
252 :ref:`infra-host-ttl<unbound.conf.infra-host-ttl>`,
253 :ref:`infra-keep-probing<unbound.conf.infra-keep-probing>`,
254 :ref:`ratelimit<unbound.conf.ratelimit>`,
255 :ref:`ip-ratelimit<unbound.conf.ip-ratelimit>`,
256 :ref:`ip-ratelimit-cookie<unbound.conf.ip-ratelimit-cookie>`,
257 :ref:`wait-limit-netblock<unbound.conf.wait-limit-netblock>`,
258 :ref:`wait-limit-cookie-netblock<unbound.conf.wait-limit-cookie-netblock>`,
259 :ref:`ratelimit-below-domain<unbound.conf.ratelimit-below-domain>`,
260 :ref:`ratelimit-for-domain<unbound.conf.ratelimit-for-domain>`.
265 :ref:`flush_requestlist<unbound-control.commands.flush_requestlist>`.
272 :ref:`define-tag<unbound.conf.define-tag>` option,
288 @@UAHL@unbound-control.commands@verbosity@@ *number*
296 @@UAHL@unbound-control.commands@log_reopen@@
304 @@UAHL@unbound-control.commands@stats@@
307 **statistics-cumulative:** config statement.
311 @@UAHL@unbound-control.commands@stats_noreset@@
317 @@UAHL@unbound-control.commands@status@@
323 @@UAHL@unbound-control.commands@local_zone@@ *name type*
325 Like local-zone config statement.
329 @@UAHL@unbound-control.commands@local_zone_remove@@ *name*
335 @@UAHL@unbound-control.commands@local_data@@ *RR data...*
337 Like **local-data:** keyword, except for when no covering zone exists.
342 @@UAHL@unbound-control.commands@local_data_remove@@ *name*
344 If the name already has no items, nothing happens.
350 @@UAHL@unbound-control.commands@local_zones@@
351 Add local zones read from stdin of unbound-control.
356 @@UAHL@unbound-control.commands@local_zones_remove@@
357 Remove local zones read from stdin of unbound-control.
362 @@UAHL@unbound-control.commands@local_datas@@
363 Add local data RRs read from stdin of unbound-control.
368 @@UAHL@unbound-control.commands@local_datas_remove@@
369 Remove local data RRs read from stdin of unbound-control.
374 @@UAHL@unbound-control.commands@dump_cache@@
377 Not supported in remote Unbounds in multi-process operation.
380 @@UAHL@unbound-control.commands@load_cache@@
387 Not supported in remote Unbounds in multi-process operation.
390 @@UAHL@unbound-control.commands@cache_lookup@@ [``+t``] *names*
402 @@UAHL@unbound-control.commands@lookup@@ *name*
407 @@UAHL@unbound-control.commands@flush@@ [``+c``] *name*
418 @@UAHL@unbound-control.commands@flush_type@@ [``+c``] *name type*
425 @@UAHL@unbound-control.commands@flush_zone@@ [``+c``] name
431 with serve-expired enabled, it'll serve that information but schedule a
438 @@UAHL@unbound-control.commands@flush_bogus@@ [``+c``]
445 @@UAHL@unbound-control.commands@flush_negative@@ [``+c``]
449 the dnssec key cache, and iterator last-resort lookup failures from the
456 @@UAHL@unbound-control.commands@flush_stats@@
460 @@UAHL@unbound-control.commands@flush_requestlist@@
464 No reply is sent for those queries, probably making those users request
470 @@UAHL@unbound-control.commands@dump_requestlist@@
474 For internal requests, no time is printed.
480 @@UAHL@unbound-control.commands@flush_infra@@ *all|IP*
487 @@UAHL@unbound-control.commands@dump_infra@@
491 @@UAHL@unbound-control.commands@set_option@@ *opt: val*
501 The values that work are: statistics-interval, statistics-cumulative,
502 do-not-query-localhost, harden-short-bufsize, harden-large-queries,
503 harden-glue, harden-dnssec-stripped, harden-below-nxdomain,
504 harden-referral-path, prefetch, prefetch-key, log-queries, hide-identity,
505 hide-version, identity, version, val-log-level, val-log-squelch,
506 ignore-cd-flag, add-holddown, del-holddown, keep-missing, tcp-upstream,
507 ssl-upstream, max-udp-size, ratelimit, ip-ratelimit, cache-max-ttl,
508 cache-min-ttl, cache-max-negative-ttl.
511 @@UAHL@unbound-control.commands@get_option@@ *opt*
527 @@UAHL@unbound-control.commands@list_stubs@@
533 @@UAHL@unbound-control.commands@list_forwards@@
538 @@UAHL@unbound-control.commands@list_insecure@@
539 List the zones with domain-insecure.
542 @@UAHL@unbound-control.commands@list_local_zones@@
547 @@UAHL@unbound-control.commands@list_local_data@@
552 @@UAHL@unbound-control.commands@insecure_add@@ *zone*
553 Add a domain-insecure for the given zone, like the statement in
560 @@UAHL@unbound-control.commands@insecure_remove@@ *zone*
561 Removes domain-insecure for the given zone.
564 @@UAHL@unbound-control.commands@forward_add@@ [``+it``] *zone addr ...*
566 With ``+i`` option also adds a domain-insecure for the zone (so it can
569 The addr can be IP4, IP6 or nameserver names, like forward-zone config in
572 :ref:`forward-tls-upstream: yes<unbound.conf.forward.forward-tls-upstream>`.
575 @@UAHL@unbound-control.commands@forward_remove@@ [``+i``] *zone*
577 The ``+i`` also removes a domain-insecure for the zone.
580 @@UAHL@unbound-control.commands@stub_add@@ [``+ipt``] *zone addr ...*
582 With ``+i`` option also adds a domain-insecure for the zone.
585 The addr can be IP4, IP6 or nameserver names, like the **stub-zone:**
588 :ref:`stub-tls-upstream: yes<unbound.conf.stub.stub-tls-upstream>`.
591 @@UAHL@unbound-control.commands@stub_remove@@ [``+i``] *zone*
593 The ``+i`` also removes a domain-insecure for the zone.
596 @@UAHL@unbound-control.commands@forward@@ [*off* | *addr ...* ]
599 to the internet root nameservers itself, or show the current config.
602 Without arguments the current list of addresses used to forward all queries
604 On startup this is from the forward-zone ``"."`` configuration.
606 It prints off when no forwarding is used.
610 This can be used to avoid to avoid buggy or non-DNSSEC supporting
626 @@UAHL@unbound-control.commands@ratelimit_list@@ [``+a``]
628 Printed one per line with current estimated qps and qps limit from config.
635 @@UAHL@unbound-control.commands@ip_ratelimit_list@@ [``+a``]
637 Printed one per line with current estimated qps and qps limit from config.
643 @@UAHL@unbound-control.commands@list_auth_zones@@
646 current serial number.
650 @@UAHL@unbound-control.commands@auth_zone_reload@@ *zone*
652 The zonefile is read in overwriting the current contents of the zone in
656 **for-upstream: yes** and that can be cleared with **flush_zone** *zone*.
659 @@UAHL@unbound-control.commands@auth_zone_transfer@@ *zone*
666 @@UAHL@unbound-control.commands@rpz_enable@@ *zone*
670 @@UAHL@unbound-control.commands@rpz_disable@@ *zone*
674 @@UAHL@unbound-control.commands@view_list_local_zones@@ *view*
678 @@UAHL@unbound-control.commands@view_local_zone@@ *view name type*
682 @@UAHL@unbound-control.commands@view_local_zone_remove@@ *view name*
686 @@UAHL@unbound-control.commands@view_list_local_data@@ *view*
690 @@UAHL@unbound-control.commands@view_local_data@@ *view RR data...*
694 @@UAHL@unbound-control.commands@view_local_data_remove@@ *view name*
698 @@UAHL@unbound-control.commands@view_local_datas_remove@@ *view*
703 @@UAHL@unbound-control.commands@view_local_datas@@ *view*
708 @@UAHL@unbound-control.commands@add_cookie_secret@@ *secret*
716 The state of the current cookie secrets can be printed with the
717 :ref:`print_cookie_secrets<unbound-control.commands.print_cookie_secrets>`
720 When there are no cookie secrets configured yet, the *secret* is added as
730 :ref:`activate_cookie_secret<unbound-control.commands.activate_cookie_secret>`
734 :ref:`drop_cookie_secret<unbound-control.commands.drop_cookie_secret>`
739 :ref:`cookie-secret-file<unbound.conf.cookie-secret-file>`
744 @@UAHL@unbound-control.commands@drop_cookie_secret@@
748 @@UAHL@unbound-control.commands@activate_cookie_secret@@
749 Make the current **staging** cookie secret **active**, and the current
753 @@UAHL@unbound-control.commands@print_cookie_secrets@@
754 Show the current configured cookie secrets with their status.
757 ---------
759 The ``unbound-control`` program exits with status code 1 on error, 0 on
763 ------
765 The setup requires a self-signed certificate and private keys for both the
767 The script ``unbound-control-setup`` generates these in the default run
768 directory, or with ``-d`` in another directory.
770 who can use ``unbound-control``, by default owner and group but not all users.
775 .. code-block:: bash
777 sudo -u unbound unbound-control-setup
783 :ref:`control-enable<unbound.conf.remote.control-enable>` in
787 ------------------
789 The :ref:`stats<unbound-control.commands.stats>` and
790 :ref:`stats_noreset<unbound-control.commands.stats_noreset>` commands show a
794 @@UAHL@unbound-control.stats@threadX.num.queries@@
798 @@UAHL@unbound-control.stats@threadX.num.queries_ip_ratelimited@@
802 @@UAHL@unbound-control.stats@threadX.num.queries_cookie_valid@@
806 @@UAHL@unbound-control.stats@threadX.num.queries_cookie_client@@
810 @@UAHL@unbound-control.stats@threadX.num.queries_cookie_invalid@@
814 @@UAHL@unbound-control.stats@threadX.num.queries_discard_timeout@@
815 number of queries removed due to discard-timeout by thread
818 @@UAHL@unbound-control.stats@threadX.num.queries_wait_limit@@
819 number of queries removed due to wait-limit by thread
822 @@UAHL@unbound-control.stats@threadX.num.cachehits@@
826 @@UAHL@unbound-control.stats@threadX.num.cachemiss@@
830 @@UAHL@unbound-control.stats@threadX.num.dnscrypt.crypted@@
835 @@UAHL@unbound-control.stats@threadX.num.dnscrypt.cert@@
839 @@UAHL@unbound-control.stats@threadX.num.dnscrypt.cleartext@@
844 @@UAHL@unbound-control.stats@threadX.num.dnscrypt.malformed@@
848 @@UAHL@unbound-control.stats@threadX.num.dns_error_reports@@
852 @@UAHL@unbound-control.stats@threadX.num.prefetch@@
861 @@UAHL@unbound-control.stats@threadX.num.expired@@
865 @@UAHL@unbound-control.stats@threadX.num.queries_timed_out@@
870 @@UAHL@unbound-control.stats@threadX.query.queue_time_us.max@@
873 :ref:`sock-queue-timeout<unbound.conf.sock-queue-timeout>` is enabled.
876 @@UAHL@unbound-control.stats@threadX.num.recursivereplies@@
878 Could be smaller than threadX.num.cachemiss if due to timeouts no replies
882 @@UAHL@unbound-control.stats@threadX.requestlist.avg@@
887 @@UAHL@unbound-control.stats@threadX.requestlist.max@@
891 @@UAHL@unbound-control.stats@threadX.requestlist.overwritten@@
898 @@UAHL@unbound-control.stats@threadX.requestlist.exceeded@@
904 @@UAHL@unbound-control.stats@threadX.requestlist.current.all@@
905 Current size of the request list, includes internally generated queries
909 @@UAHL@unbound-control.stats@threadX.requestlist.current.user@@
910 Current size of the request list, only the requests from client queries.
913 @@UAHL@unbound-control.stats@threadX.recursion.time.avg@@
918 @@UAHL@unbound-control.stats@threadX.recursion.time.median@@
928 @@UAHL@unbound-control.stats@threadX.tcpusage@@
931 This helps you spot if the incoming-num-tcp buffers are full.
934 @@UAHL@unbound-control.stats@total.num.queries@@
938 @@UAHL@unbound-control.stats@total.num.queries_ip_ratelimited@@
942 @@UAHL@unbound-control.stats@total.num.queries_cookie_valid@@
946 @@UAHL@unbound-control.stats@total.num.queries_cookie_client@@
950 @@UAHL@unbound-control.stats@total.num.queries_cookie_invalid@@
954 @@UAHL@unbound-control.stats@total.num.queries_discard_timeout@@
958 @@UAHL@unbound-control.stats@total.num.queries_wait_limit@@
962 @@UAHL@unbound-control.stats@total.num.cachehits@@
966 @@UAHL@unbound-control.stats@total.num.cachemiss@@
970 @@UAHL@unbound-control.stats@total.num.dnscrypt.crypted@@
974 @@UAHL@unbound-control.stats@total.num.dnscrypt.cert@@
978 @@UAHL@unbound-control.stats@total.num.dnscrypt.cleartext@@
982 @@UAHL@unbound-control.stats@total.num.dnscrypt.malformed@@
986 @@UAHL@unbound-control.stats@total.num.dns_error_reports@@
990 @@UAHL@unbound-control.stats@total.num.prefetch@@
994 @@UAHL@unbound-control.stats@total.num.expired@@
998 @@UAHL@unbound-control.stats@total.num.queries_timed_out@@
1002 @@UAHL@unbound-control.stats@total.query.queue_time_us.max@@
1006 @@UAHL@unbound-control.stats@total.num.recursivereplies@@
1010 @@UAHL@unbound-control.stats@total.requestlist.avg@@
1014 @@UAHL@unbound-control.stats@total.requestlist.max@@
1018 @@UAHL@unbound-control.stats@total.requestlist.overwritten@@
1022 @@UAHL@unbound-control.stats@total.requestlist.exceeded@@
1026 @@UAHL@unbound-control.stats@total.requestlist.current.all@@
1030 @@UAHL@unbound-control.stats@total.recursion.time.median@@
1034 @@UAHL@unbound-control.stats@total.tcpusage@@
1038 @@UAHL@unbound-control.stats@time.now@@
1039 current time in seconds since 1970.
1042 @@UAHL@unbound-control.stats@time.up@@
1046 @@UAHL@unbound-control.stats@time.elapsed@@
1050 -------------------
1053 @@UAHL@unbound-control.stats@mem.cache.rrset@@
1057 @@UAHL@unbound-control.stats@mem.cache.message@@
1061 @@UAHL@unbound-control.stats@mem.cache.dnscrypt_shared_secret@@
1065 @@UAHL@unbound-control.stats@mem.cache.dnscrypt_nonce@@
1069 @@UAHL@unbound-control.stats@mem.mod.iterator@@
1073 @@UAHL@unbound-control.stats@mem.mod.validator@@
1078 @@UAHL@unbound-control.stats@mem.streamwait@@
1083 @@UAHL@unbound-control.stats@mem.http.query_buffer@@
1088 @@UAHL@unbound-control.stats@mem.http.response_buffer@@
1093 @@UAHL@unbound-control.stats@mem.quic@@
1098 @@UAHL@unbound-control.stats@histogram@@.<sec>.<usec>.to.<sec>.<usec>
1106 @@UAHL@unbound-control.stats@num.query.type.A@@
1112 @@UAHL@unbound-control.stats@num.query.type.other@@
1113 Number of queries with query types 256-65535.
1116 @@UAHL@unbound-control.stats@num.query.class.IN@@
1121 num.query.class.other is printed for classes 256-65535.
1124 @@UAHL@unbound-control.stats@num.query.opcode.QUERY@@
1129 @@UAHL@unbound-control.stats@num.query.tcp@@
1133 @@UAHL@unbound-control.stats@num.query.tcpout@@
1138 @@UAHL@unbound-control.stats@num.query.udpout@@
1143 @@UAHL@unbound-control.stats@num.query.tls@@
1148 @@UAHL@unbound-control.stats@num.query.tls.resume@@
1153 @@UAHL@unbound-control.stats@num.query.https@@
1159 @@UAHL@unbound-control.stats@num.query.quic@@
1165 @@UAHL@unbound-control.stats@num.query.ipv6@@
1169 @@UAHL@unbound-control.stats@num.query.flags.RD@@
1176 @@UAHL@unbound-control.stats@num.query.edns.present@@
1180 @@UAHL@unbound-control.stats@num.query.edns.DO@@
1186 @@UAHL@unbound-control.stats@num.query.ratelimited@@
1191 @@UAHL@unbound-control.stats@num.query.dnscrypt.shared_secret.cachemiss@@
1197 @@UAHL@unbound-control.stats@num.query.dnscrypt.replay@@
1202 @@UAHL@unbound-control.stats@num.answer.rcode.NXDOMAIN@@
1208 @@UAHL@unbound-control.stats@num.answer.rcode.nodata@@
1210 This means the actual return code was NOERROR, but additionally, no data
1213 Common for AAAA lookups when an A record exists, and no AAAA.
1216 @@UAHL@unbound-control.stats@num.answer.secure@@
1224 @@UAHL@unbound-control.stats@num.answer.bogus@@
1230 @@UAHL@unbound-control.stats@num.rrset.bogus@@
1235 @@UAHL@unbound-control.stats@num.valops@@
1243 @@UAHL@unbound-control.stats@unwanted.queries@@
1248 @@UAHL@unbound-control.stats@unwanted.replies@@
1257 @@UAHL@unbound-control.stats@msg.cache.count@@
1261 @@UAHL@unbound-control.stats@rrset.cache.count@@
1267 @@UAHL@unbound-control.stats@infra.cache.count@@
1272 @@UAHL@unbound-control.stats@key.cache.count@@
1278 @@UAHL@unbound-control.stats@msg.cache.max_collisions@@
1286 @@UAHL@unbound-control.stats@rrset.cache.max_collisions@@
1294 @@UAHL@unbound-control.stats@dnscrypt_shared_secret.cache.count@@
1303 @@UAHL@unbound-control.stats@dnscrypt_nonce.cache.count@@
1312 @@UAHL@unbound-control.stats@num.query.authzone.up@@
1313 The number of queries answered from auth-zone data, upstream queries.
1318 @@UAHL@unbound-control.stats@num.query.authzone.down@@
1319 The number of queries for downstream answered from auth-zone data.
1324 @@UAHL@unbound-control.stats@num.query.aggressive.NOERROR@@
1330 @@UAHL@unbound-control.stats@num.query.aggressive.NXDOMAIN@@
1337 @@UAHL@unbound-control.stats@num.query.subnet@@
1342 @@UAHL@unbound-control.stats@num.query.subnet_cache@@
1349 @@UAHL@unbound-control.stats@num.query.cachedb@@
1354 @@UAHL@unbound-control.stats@num.rpz.action@@.<rpz_action>
1357 Possible actions are: nxdomain, nodata, passthru, drop, tcp-only,
1358 local-data, disabled, and cname-override.
1361 -----
1368 :file:`unbound_control.key`) and self-signed certificates
1372 --------