# Documentation for Unbound

**URL:** https://discourse.pi-hole.net/t/documentation-for-unbound/64177
**Category:** meta
**Created:** [July 29, 2023, 6:49pm UTC](https://discourse.pi-hole.net/t/documentation-for-unbound/64177 "2023-07-29T18:49:45Z")
**Posts on this page:** 1
**Page:** 1

<div class="post-metadata">

### Author: ![klauspforte](https://discourse-cdn.pi-hole.net/user_avatar/discourse.pi-hole.net/klauspforte/32/37180_2.png) [@klauspforte](https://discourse.pi-hole.net/u/klauspforte)
#### Post date: [July 29, 2023, 6:49pm UTC](https://discourse.pi-hole.net/t/documentation-for-unbound/64177/1 "2023-07-29T18:49:46Z")

</div>

Hello all,  
I found today your page ([unbound - Pi-hole documentation](https://docs.pi-hole.net/guides/dns/unbound/)) for Unbound together with Pi-Hole and I propose some improvements.

1. content of `/etc/unbound/unbound.conf.d/pi-hole.conf`:  
do not use the following parameter "so-rcvbuf" together with activated AppArmor (see below: 2c) to avoid errors/warnings:  
Ensure kernel buffer is large enough to not lose messages in traffic spikes  
so-rcvbuf: 1m

2. Logging ([unbound - Pi-hole documentation](https://docs.pi-hole.net/guides/dns/unbound/#add-logging-to-unbound)):

a. You must also "include" or uncomment the "/etc/apparmor.d/local/usr.sbin.unbound" into "/etc/apparmor.d/usr.sbin.unbound" before restart AppArmor.

b. Please amend (apparmor instead of unbound):  
sudo apparmor\_parser -r /etc/apparmor.d/usr.sbin.unbound  
sudo service unbound restart

c. Before(!) you can restart apparmor it must run really correctly. This is not the case at many systems (like mine, before...). It would be good to mention that it should be checked if in the /boot/cmdline.txt the following parameters are (additionally) set:  
apparmor=1 lsm=landlock,lockdown,yama,integrity,apparmor,bpf

I hope you find my proposals useful,  
Klaus
