dave14305
Part of the Furniture
Unbound is probably only setting the source IP on the outbound packet, but your default route is still out the WAN interface. That’s why the extra scripts exist to mark DNS packets with fwmark values that are also interpreted by ip rules based on the same fwmark to route out the VPN.OMG. Looks like you're right on that... DANG!