{"repo":"madnuttah/unbound-docker","free":true,"listed":false,"github":"https://github.com/madnuttah/unbound-docker","clone":"git clone https://github.com/madnuttah/unbound-docker.git","description":"🛡️ This distroless Unbound Docker image is based on Alpine Linux with focus on security, privacy, performance and a small image size. And with Pi-hole in mind.","language":"Dockerfile","stars":366,"topics":["alpine-linux","docker","unbound","dnssec","dns","dns-over-https","dns-over-tls","multiarch","dns-privacy","dnscrypt"],"license":"MIT","category":"deployment-docker-iac","readme_excerpt":"Alpine Linux Based DNSSEC Validating Recursive Unbound DNS Resolver Docker Image Build status (click to expand) This repository provides a lightweight Alpine Linux based Docker image running Unbound, an open source high performance DNS resolver developed by the people at NLnet Labs. The image is a secure single layer distroless scratch build that follows best practice principles and is suitable for professional and personal use alike. Features (click to expand) Feature Supported Explanation ---------------------------------------- --------- ----------- Unprivileged user yes Runs Unbound without root to reduce attack surface. Unprivileged port (privileged possible) yes Allows binding to high ports by default or low ports when needed. Custom UID and GID build and environment variables yes Lets you match container permissions to host requirements. Optional full rootless mode yes Enables running the container without any root privileges. CD built single layer distroless scratch image running Alpine Linux yes Produces a minimal and secure runtime with no package manager or shell. Per hardware architecture optimized and CD built OpenSSL&OpenSSL+QUIC yes Ensures optimal crypto performance and QUIC support per architecture. Libevent yes Provides efficient event handling for high performance DNS resolution. Recursive DNS as default yes Configured to perform full recursion without relying on upstream resolvers. DNSSEC yes Validates DNS responses cryptographically for authenticity. DNSC","default_branch":null,"files":null,"tree":[],"storefront":"/r/madnuttah","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/madnuttah/unbound-docker/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}