From: Vladimír Čunát Date: Mon, 12 Feb 2024 10:30:50 +0000 (+0100) Subject: validator: compatibility with older libknot versions X-Git-Url: http://git.ipfire.org/cgi-bin/gitweb.cgi?a=commitdiff_plain;h=91647eeb8a3a3e8b793dab04cd5bb26f6027faba;p=thirdparty%2Fknot-resolver.git validator: compatibility with older libknot versions The value is in IANA registry, so it's very constant anyway. (cherry picked from commit 9b421cdf91f987e0254a06ff2c4e8fbf76dc2b58) --- diff --git a/lib/layer/validate.c b/lib/layer/validate.c index b645a029f..fa7d668ac 100644 --- a/lib/layer/validate.c +++ b/lib/layer/validate.c @@ -1129,7 +1129,7 @@ static int validate(kr_layer_t *ctx, knot_pkt_t *pkt) count += (knot_pkt_rr(sec, i)->type == KNOT_RRTYPE_NSEC3); if (count > 8) { VERBOSE_MSG(qry, "<= too many NSEC3 records in AUTHORITY (%d)\n", count); - kr_request_set_extended_error(req, KNOT_EDNS_EDE_NSEC3_ITERS, + kr_request_set_extended_error(req, 27/*KNOT_EDNS_EDE_NSEC3_ITERS*/, /* It's not about iteration values per se, but close enough. */ "DYRH: too many NSEC3 records"); qry->flags.DNSSEC_BOGUS = true;