On Thu, Dec 11, 2025 at 7:19 PM Daniel Melameth <[email protected]> wrote:
> When unbound complained the first time and told me it "cannot increase > max open fds from 4152 to 4164," I updated login.conf with > openfiles=4164, but now it just complains it wants more. > > What's the best way to handle this so unbound gets what it wants, is > properly tuned, and does not overwhelm the system? Obviously I can > simply crank this up, but I'd like to do the right thing here. > I raised this to 8192 and the warnings stopped. I share your concern that simply raising it may not be optimal but I did it anyway, my reasoning being that if the connection is going to fail anyway it doesn't matter to me very much whether it was because unbound couldn't get a port to send a query, or because the router couldn't allocate a port for NAT. -ken

