dnscache (djbdns) не торт ?
На одной консоли очищаем кеш и запускаем tcpdump
/etc/init.d/svscan restart ; tcpdump -vvv -w ~/tcpdump.log port domain
* Stopping service scan ... [ ok ]
* Stopping service scan services ... [ ok ]
* Stopping service scan logging ... [ ok ]
* Starting service scan ... [ ok ]
tcpdump: listening on venet0, link-type LINUX_SLL (Linux cooked), capture size 65535 bytes
На второй консоли:
$ dig @127.0.0.1 +time=20 www.mastersite.org.ua
; <<>> DiG 9.8.1 <<>> @127.0.0.1 +time=20 www.mastersite.org.ua
; (1 server found)
;; global options: +cmd
;; connection timed out; no servers could be reached
После чего на первой:
194 packets captured
194 packets received by filter
0 packets dropped by kernel
За 100 запросов dnscache не может отрезолвить домен. Unbound'у надо на это около 20-ти запросов.