What's new

Unbound Unbound blocking certain address

  • SNBForums Code of Conduct

    SNBForums is a community for everyone, no matter what their level of experience.

    Please be tolerant and patient of others, especially newcomers. We are all here to share and learn!

    The rules are simple: Be patient, be nice, be helpful or be gone!

TruongTieuPham

New Around Here
Recently, I've been unable to connect online in Nintendo multiplayer games.

Upon investigation, it appears that Unbound is blocking or unable to resolve lp1.t.npln.srv.nintendo.net, which is the online server. This is indicated by SERVFAILs in the Unbound log for that address.

I suspected that the Unbound Ad blocker might be the issue, so I uninstalled it. However, I still couldn't connect.

Next, I uninstalled and reinstalled Unbound Manager, without installing any additional functions yet. Unfortunately, the result remained the same, I can only connect to the server when I stop Unbound.

Wonder if there is a way to fix this problem.
 
The IP Address 'lp1.t.npln.srv.nintendo.net' does not resolve at all.

This is not a unbound issue .... the IP address does not resolve anywhere.
[Tried 1.1.1.1, 8.8.8.8, 9.9.9.9, 208.67.222.222 etc etc .... none can resolve this IP address]

nintendo.net does not resolve at all.

Please check the source of this IP address !!!???
 
I can't find out the IP of that address too.

But I don't think the address can't be connect.

Here is the result from nslookup, the first one is when Unbound is off, second is when Unbound is on

1714310288675.png


And here is Unbound log when the I tried to connect online in my game.

1714310541077.png


Here is when using dig

Code:
A:Option ==> dig lp1.t.npln.srv.nintendo.net


; <<>> DiG 9.18.19 <<>> txt lp1.t.npln.srv.nintendo.net
;; global options: +cmd
;; Got answer:
;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 21189
;; flags: qr rd ra; QUERY: 1, ANSWER: 0, AUTHORITY: 1, ADDITIONAL: 1

;; OPT PSEUDOSECTION:
; EDNS: version: 0, flags:; udp: 512
;; QUESTION SECTION:
;lp1.t.npln.srv.nintendo.net.   IN      TXT

;; AUTHORITY SECTION:
lp1.t.npln.srv.nintendo.net. 300 IN     SOA     ns-cloud-b1.googledomains.com. cloud-dns-hostmaster.google.com. 186 21600 3600 259200 300

;; Query time: 41 msec
;; SERVER: 8.8.8.8#53(8.8.8.8) (UDP)
;; WHEN: Sun Apr 28 20:23:28 ICT 2024
;; MSG SIZE  rcvd: 149


; <<>> DiG 9.18.19 <<>> lp1.t.npln.srv.nintendo.net @127.0.0.1 -p 53535
;; global options: +cmd
;; Got answer:
;; ->>HEADER<<- opcode: QUERY, status: SERVFAIL, id: 41648
;; flags: qr rd ra; QUERY: 1, ANSWER: 0, AUTHORITY: 0, ADDITIONAL: 1

;; OPT PSEUDOSECTION:
; EDNS: version: 0, flags:; udp: 1472
;; QUESTION SECTION:
;lp1.t.npln.srv.nintendo.net.   IN      A

;; Query time: 294 msec
;; SERVER: 127.0.0.1#53535(127.0.0.1) (UDP)
;; WHEN: Sun Apr 28 20:23:29 ICT 2024
;; MSG SIZE  rcvd: 56
 

Attachments

  • 1714310723998.png
    1714310723998.png
    132 KB · Views: 5
I think you are mis-reading the response from your router.

The 1st nslookup is *not* returning a value !!!???

When you run a nslookup command you should get a response that is the IP address(es) matching the 'Name' queried.
[See line starting Address 1: ---> shows IPV4 address]

1714311215354.png


Your nslookup command is simply returning the queried name .... no IP Address is being resolved.

This is the same response that 'unbound' is returning ... there is no IP Addresss matching that name, hence the 'can't find' message.
 
Thank you for your explains.

I'm honestly don't know how that address works.

After checking the log only thing I know is the SERVFAIL message appeared when I failed to connect to the internet in game. And can only connect when I turned off Unbound.
 
The difference is that Unbound is returning an NXDOMAIN error, whereas other DNS servers are returning a SOA record. Neither of them are retuning an IP address but I don't think it's meant to. I don't know what the Nintendo device is using the SOA record for.
 
After reading the following ---> What is a DNS SOA record ?
[P.S. cloudflare 'What is DNS' is a useful simple resource to understand DNS quickly :) ]

It would appear that the SOA record is being used to lookup the Primary nameserver for the zone. [ns-cloud-b1.googledomains.com]

This nameserver does not respond to port 53 calls, so I am guessing the nintendo device is using 'some other port number' to secure DNS use.
Unbound is 'getting in the way' of whatever the nintendo device does !!!!!

No simple solution !!!

:)
 

Similar threads

Sign Up For SNBForums Daily Digest

Get an update of what's new every day delivered to your mailbox. Sign up here!
Top