]> git.ipfire.org Git - thirdparty/openvpn.git/commitdiff
dns: minimalist fix for dnssec setting
authorSelva Nair <selva.nair@gmail.com>
Thu, 30 Apr 2026 12:40:14 +0000 (14:40 +0200)
committerGert Doering <gert@greenie.muc.de>
Thu, 30 Apr 2026 13:08:24 +0000 (15:08 +0200)
Github: fixes OpenVPN/openvpn#1024

Change-Id: I0cb093e0116e92d874162d51be777aa43674c115
Signed-off-by: Selva Nair <selva.nair@gmail.com>
Acked-by: Frank Lichtenheld <frank@lichtenheld.com>
Gerrit URL: https://gerrit.openvpn.net/c/openvpn/+/1644
Message-Id: <20260430124020.23066-1-gert@greenie.muc.de>
URL: https://www.mail-archive.com/openvpn-devel@lists.sourceforge.net/msg36797.html
Signed-off-by: Gert Doering <gert@greenie.muc.de>
src/openvpn/dns.c

index ce23f1fa91fe5482515b2a0c60b887694b198509..954ed529be8a306e475a3063b2349dfc779dc3bf 100644 (file)
@@ -442,7 +442,7 @@ run_up_down_service(bool add, const struct options *o, const struct tuntap *tt)
         .header = { (add ? msg_add_nrpt_cfg : msg_del_nrpt_cfg), sizeof(nrpt_dns_cfg_message_t),
                     0 },
         .iface = { .index = tt->adapter_index, .name = "" },
-        .flags = server->dnssec == DNS_SECURITY_NO ? 0 : nrpt_dnssec,
+        .flags = server->dnssec == DNS_SECURITY_YES ? nrpt_dnssec : 0,
     };
     strncpynt(nrpt.iface.name, tt->actual_name, sizeof(nrpt.iface.name));