diff options
author | Jason A. Donenfeld <Jason@zx2c4.com> | 2019-05-13 14:47:47 +0200 |
---|---|---|
committer | Jason A. Donenfeld <Jason@zx2c4.com> | 2019-05-13 14:47:47 +0200 |
commit | 47e4e7b72f9aa6c53c2f8921acadd122fa61b56c (patch) | |
tree | f17b08d18276b5051cb2c8d13796a1698be1b2e8 /service/firewall/rules.go | |
parent | version: bump (diff) | |
download | wireguard-windows-47e4e7b72f9aa6c53c2f8921acadd122fa61b56c.tar.xz wireguard-windows-47e4e7b72f9aa6c53c2f8921acadd122fa61b56c.zip |
firewall: fix logic error
Signed-off-by: Jason A. Donenfeld <Jason@zx2c4.com>
Diffstat (limited to '')
-rw-r--r-- | service/firewall/rules.go | 2 |
1 files changed, 1 insertions, 1 deletions
diff --git a/service/firewall/rules.go b/service/firewall/rules.go index bab3ed2b..364c7d1d 100644 --- a/service/firewall/rules.go +++ b/service/firewall/rules.go @@ -990,7 +990,7 @@ func blockAll(session uintptr, baseObjects *baseObjects, weight uint8) error { // Block all DNS traffic except towards specified DNS servers. func blockDns(except []net.IP, session uintptr, baseObjects *baseObjects, weightAllow uint8, weightDeny uint8) error { - if weightDeny <= weightAllow { + if weightDeny >= weightAllow { return errors.New("The allow weight must be greater than the deny weight") } |