Import upstream v0.16.24, stripped

Upstream commit: af37a234981722493b74623a983581691d2b70b6
Enterprise-only files removed or emptied: 63
Enterprise-only snippets removed: 118 in 50 files
Dangling module declarations removed: 5
Edits turning enterprise off: 25
Third-party code: 14 files, 0 not in THIRD-PARTY.md
Renamed identifiers: 62 in 18 files
Verification: clean

The same Enterprise footprint as v0.16.23. The build check fails only on
tests/src/directory/issuer.rs, unchanged since v0.16.23: it calls a helper
from upstream's Enterprise-only OIDC test, and tests issuer-based directory
routing, an Enterprise feature. main has never carried it.
This commit is contained in:
2026-09-28 06:29:38 -07:00
parent 3a272096c0
commit f59b084ce5
98 changed files with 2851 additions and 1068 deletions
+28 -1
View File
@@ -350,12 +350,39 @@ impl NextHop<'_> {
}
}
fn dnssec_status(&self) -> DnssecStatus {
pub fn dnssec_status(&self) -> DnssecStatus {
match self {
NextHop::MX { dnssec_status, .. } => *dnssec_status,
NextHop::Relay(_) => DnssecStatus::Indeterminate,
}
}
fn with_dnssec_status(&self, dnssec_status: DnssecStatus) -> Self {
match self {
NextHop::MX {
is_implicit,
host,
config,
..
} => NextHop::MX {
is_implicit: *is_implicit,
host,
config,
dnssec_status,
},
NextHop::Relay(relay) => NextHop::Relay(relay),
}
}
pub fn dane_status(&self, addresses: DnssecStatus) -> (DnssecStatus, &'static str) {
match self.dnssec_status() {
DnssecStatus::Secure => match addresses {
status @ (DnssecStatus::Insecure | DnssecStatus::Bogus) => (status, "A/AAAA"),
_ => (DnssecStatus::Secure, "MX"),
},
status => (status, "MX"),
}
}
}
impl DeliveryResult {