summaryrefslogtreecommitdiffstats
path: root/src/resolve/resolved-dns-dnssec.h
diff options
context:
space:
mode:
authorLennart Poettering <lennart@poettering.net>2015-12-22 18:22:19 +0100
committerLennart Poettering <lennart@poettering.net>2015-12-26 19:09:10 +0100
commited29bfdce6ef8b1c6e14bb4e77e19e7048f35dd4 (patch)
treee7dce3d68d1b5478ccabffe7b8991cdeda571443 /src/resolve/resolved-dns-dnssec.h
parentresolved: don't insist on finding DNSKEYs for RRsets of zones with DNSSEC off (diff)
downloadsystemd-ed29bfdce6ef8b1c6e14bb4e77e19e7048f35dd4.tar.xz
systemd-ed29bfdce6ef8b1c6e14bb4e77e19e7048f35dd4.zip
resolved: if we accepted unauthenticated NSEC/NSEC3 RRs, use them for proofs
But keep track that the proof is not authenticated.
Diffstat (limited to 'src/resolve/resolved-dns-dnssec.h')
-rw-r--r--src/resolve/resolved-dns-dnssec.h2
1 files changed, 1 insertions, 1 deletions
diff --git a/src/resolve/resolved-dns-dnssec.h b/src/resolve/resolved-dns-dnssec.h
index d17d5142f5..9ad20c8c69 100644
--- a/src/resolve/resolved-dns-dnssec.h
+++ b/src/resolve/resolved-dns-dnssec.h
@@ -89,7 +89,7 @@ typedef enum DnssecNsecResult {
DNSSEC_NSEC_OPTOUT,
} DnssecNsecResult;
-int dnssec_test_nsec(DnsAnswer *answer, DnsResourceKey *key, DnssecNsecResult *result);
+int dnssec_test_nsec(DnsAnswer *answer, DnsResourceKey *key, DnssecNsecResult *result, bool *authenticated);
const char* dnssec_mode_to_string(DnssecMode m) _const_;
DnssecMode dnssec_mode_from_string(const char *s) _pure_;