David Anderson
61c3b98a24
Revert "types/key: add MachinePrivate and MachinePublic."
...
Broke the tailscale control plane due to surprise different serialization.
This reverts commit 4fdb88efe1 .
2021-09-03 11:34:34 -07:00
David Anderson and Dave Anderson
4fdb88efe1
types/key: add MachinePrivate and MachinePublic.
...
Plumb throughout the codebase as a replacement for the mixed use of
tailcfg.MachineKey and wgkey.Private/Public.
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-09-03 10:07:15 -07:00
David Anderson
4ce091cbd8
version: use go from the current toolchain to compile in tests.
...
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-09-02 20:11:20 -07:00
David Anderson and Dave Anderson
159d88aae7
go.mod: tidy.
...
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-09-02 14:26:27 -07:00
David Anderson
b96159e820
go.mod: update github.com/ulikunitz/xz for https://github.com/advisories/GHSA-25xm-hr59-7c27
...
Our code is not vulnerable to the issue in question: it only happens in the decompression
path for untrusted inputs, and we only use xz as part of mkpkg, which is write-only
and operates on trusted build system outputs to construct deb and rpm packages.
Still, it's nice to keep the dependabot dashboard clean.
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-09-02 14:02:57 -07:00
David Anderson and Dave Anderson
daf54d1253
control/controlclient: remove TS_DEBUG_USE_DISCO=only.
...
It was useful early in development when disco clients were the
exception and tailscale logs were noisier than today, but now
non-disco is the exception.
Updates #2752
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-09-01 18:11:32 -07:00
David Anderson and Dave Anderson
39748e9562
net/dns/resolver: authoritatively return NXDOMAIN for reverse zones we own.
...
Fixes #2774
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-09-01 18:11:32 -07:00
David Anderson and Dave Anderson
954064bdfe
wgengine/wgcfg/nmcfg: don't configure peers who can't DERP or disco.
...
Fixes #2770
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-09-01 18:11:32 -07:00
David Anderson and Dave Anderson
f90ac11bd8
wgengine: remove unnecessary magicConnStarted channel.
...
Having removed magicconn.Start, there's no need to synchronize startup
of other things to it any more.
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-09-01 18:11:32 -07:00
David Anderson and Dave Anderson
bb10443edf
wgengine/wgcfg: use just the hexlified node key as the WireGuard endpoint.
...
The node key is all magicsock needs to find the endpoint that WireGuard
needs.
Updates #2752
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-09-01 15:13:21 -07:00
David Anderson and Dave Anderson
d00341360f
wgengine/magicsock: remove unused debug knob.
...
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-09-01 15:13:21 -07:00
David Anderson and Dave Anderson
dfd978f0f2
wgengine/magicsock: use NodeKey, not DiscoKey, as the trigger for lazy reconfig.
...
Updates #2752
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-09-01 15:13:21 -07:00
David Anderson and Dave Anderson
4c27e2fa22
wgengine/magicsock: remove Start method from Conn.
...
Over time, other magicsock refactors have made Start effectively a
no-op, except that some other functions choose to panic if called
before Start.
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-09-01 15:13:21 -07:00
David Anderson and Dave Anderson
1a899344bd
wgengine/magicsock: don't store tailcfg.Nodes alongside endpoints.
...
Updates #2752
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-09-01 15:13:21 -07:00
David Anderson and Dave Anderson
b2181608b5
wgengine/magicsock: eagerly create endpoints in SetNetworkMap.
...
Updates #2752
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-09-01 15:13:21 -07:00
David Anderson
44d71d1e42
wgengine/magicsock: fix race in test shutdown, again.
...
We were returning an error almost, but not quite like errConnClosed in
a single codepath, which could still trip the panic on reconfig in the
test logic.
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-08-30 21:26:38 -07:00
David Anderson
f09ede9243
wgengine/magicsock: don't configure eager WireGuard handshaking in tests.
...
Our prod code doesn't eagerly handshake, because our disco layer enables
on-demand handshaking. Configuring both peers to eagerly handshake leads
to WireGuard handshake races that make TestTwoDevicePing flaky.
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-08-30 17:28:12 -07:00
David Anderson and Dave Anderson
86d1c4eceb
wgengine/magicsock: ignore close races even harder.
...
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-08-30 17:09:45 -07:00
David Anderson and Dave Anderson
8bacfe6a37
wgengine/magicsock: remove unused sendLogLimit limiter.
...
Magicsock these days gets its logs limited by the global log limiter.
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-08-30 17:09:45 -07:00
David Anderson and Dave Anderson
e151b74f93
wgengine/magicsock: remove opts.SimulatedNetwork.
...
It only existed to override one test-only behavior with a
different test-only behavior, in both cases working around
an annoying feature of our CI environments. Instead, handle
that weirdness entirely in the test code, with a tweaked
TestOnlyPacketListener that gets injected.
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-08-30 17:09:45 -07:00
David Anderson and Dave Anderson
58c1f7d51a
wgengine/magicsock: rename opts.PacketListener to TestOnlyPacketListener.
...
The docstring said it was meant for use in tests, but it's specifically a
special codepath that is _only_ used in tests, so make the claim stronger.
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-08-30 17:09:45 -07:00
David Anderson and Dave Anderson
8049063d35
wgengine/magicsock: rename discoEndpoint to just endpoint.
...
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-08-30 17:09:45 -07:00
David Anderson and Dave Anderson
f2d949e2db
wgengine/magicsock: fold findEndpoint into its only remaining caller.
...
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-08-30 17:09:45 -07:00
David Anderson and Dave Anderson
fe2f89deab
wgengine/magicsock: fix rare shutdown race in test.
...
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-08-30 14:33:07 -07:00
David Anderson and Dave Anderson
97693f2e42
wgengine/magicsock: delete legacy AddrSet endpoints.
...
Instead of using the legacy codepath, teach discoEndpoint to handle
peers that have a home DERP, but no disco key. We can still communicate
with them, but only over DERP.
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-08-30 14:33:07 -07:00
David Anderson and Dave Anderson
61c62f48d9
wgengine/bench: disable unused benchmark that relies on legacy magicsock.
...
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-08-30 14:33:07 -07:00
David Anderson and Dave Anderson
54bc3b7d97
util/deephash: remove soon to be deleted field from wgcfg.
...
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-08-30 14:33:07 -07:00
David Anderson and Dave Anderson
923c98cd8f
types/wgkey: add TODO for a future API change.
...
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-08-30 14:33:07 -07:00
David Anderson
b49d9bc74d
net/portmapper: fix "running a test" condition.
...
Fixes #2686 .
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-08-25 20:16:35 -07:00
David Anderson
bf8556ab86
portlist: fix build tag to build only on macOS, not macOS+iOS.
2021-08-18 16:18:02 -07:00
David Anderson
d2d55bd63c
cmd/microproxy: delete.
...
Thank goodness.
Fixes #2635
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-08-12 14:17:42 -07:00
David Anderson and Dave Anderson
d98829583a
derp: use a dedicated queue for disco traffic.
...
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-07-12 14:23:27 -07:00
David Anderson
67158549ab
derp: actually export the new drop counter.
...
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-07-12 13:32:04 -07:00
David Anderson and Dave Anderson
36492ace9d
derp: add counters to track the type of dropped packets.
...
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-07-12 13:15:59 -07:00
David Anderson
c69d30cdd7
VERSION.txt: this is v1.11.0.
...
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-06-24 15:45:08 -07:00
David Anderson
084d48d22d
net/dns: always proxy through quad-100 on windows 8.1.
...
Windows 8.1 incorrectly handles search paths on an interface with no
associated resolver, so we have to provide a full primary DNS config
rather than use Windows 8.1's nascent-but-present NRPT functionality.
Fixes #2237 .
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-06-23 17:50:19 -07:00
David Anderson and Dave Anderson
0022c3d2e2
tsweb: replace NewMux with a more flexible DebugHandler.
...
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-06-16 19:00:47 -07:00
David Anderson
48c25fa36f
tsweb: fold StdHandlerOpts and StdHandler200s with StdHandler.
...
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-06-15 21:55:33 -07:00
David Anderson
72343fbbec
tsweb: register expvars once at startup.
...
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-06-15 21:27:54 -07:00
David Anderson
9337826011
net/dns: fix inverted test for NetworkManager version.
...
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-06-15 20:53:03 -07:00
David Anderson and Dave Anderson
320cc8fa21
net/dns: verify that systemd-resolved is actually in charge.
...
It's possible to install a configuration that passes our current checks
for systemd-resolved, without actually pointing to systemd-resolved. In
that case, we end up programming DNS in resolved, but that config never
applies to any name resolution requests on the system.
This is quite a far-out edge case, but there's a simple additional check
we can do: if the header comment names systemd-resolved, there should be
a single nameserver in resolv.conf pointing to 127.0.0.53. If not, the
configuration should be treated as an unmanaged resolv.conf.
Fixes #2136 .
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-06-15 19:52:02 -07:00
David Anderson
e7164425b3
net/dns: don't use NetworkManager for DNS on very old NetworkManagers.
...
Fixes #1945 .
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-06-15 15:34:35 -07:00
David Anderson
ac07ff43bf
cmd/tailscaled: start after NetworkManager and systemd-resolved.
...
The dependency is a "soft" ordering dependency only, meaning that
tailscaled will start after those services if those services were
going to be run anyway, but doesn't force either of them to run.
That's why it's safe to specify this dependency unconditionally,
even for systems that don't run those services.
Updates #2127 .
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-06-15 14:25:44 -07:00
Dave Anderson and GitHub
144c68b80b
net/dns: avoid using NetworkManager as much as possible. ( #1945 )
...
Addresses #1699 as best as possible.
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-06-10 10:46:08 -04:00
David Anderson and Dave Anderson
8236464252
packages/deb: add package to extract metadata from .deb files.
...
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-06-07 16:22:23 -07:00
David Anderson and Dave Anderson
1c6946f971
cmd/mkpkg: allow zero files in a package.
...
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-06-07 16:22:23 -07:00
David Anderson and Dave Anderson
7fab244614
net/dns/resolver: don't spam logs on EHOSTUNREACH.
...
Fixes #1719 .
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-06-07 10:45:29 -07:00
David Anderson
aa6abc98f3
build_dist.sh: fix after the change to version stamping.
...
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-06-03 13:14:32 -07:00
David Anderson
5088af68cf
version: remove all the redo stuff, only support embedding via go ldflags.
...
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-06-02 14:17:46 -07:00
David Anderson
33bc06795b
go.mod: update for corp resync.
2021-05-31 21:47:37 -07:00
David Anderson and Dave Anderson
c54cc24e87
util/dnsname: make ToFQDN take exactly 0 or 1 allocs for everything.
...
name old time/op new time/op delta
ToFQDN/www.tailscale.com.-32 9.55ns ± 2% 12.13ns ± 3% +27.03% (p=0.000 n=10+10)
ToFQDN/www.tailscale.com-32 86.3ns ± 1% 40.7ns ± 1% -52.86% (p=0.000 n=10+9)
ToFQDN/.www.tailscale.com-32 86.5ns ± 1% 40.4ns ± 1% -53.29% (p=0.000 n=10+9)
ToFQDN/_ssh._tcp.www.tailscale.com.-32 12.8ns ± 2% 14.7ns ± 2% +14.24% (p=0.000 n=9+10)
ToFQDN/_ssh._tcp.www.tailscale.com-32 104ns ± 1% 45ns ± 0% -57.16% (p=0.000 n=10+9)
name old alloc/op new alloc/op delta
ToFQDN/www.tailscale.com.-32 0.00B 0.00B ~ (all equal)
ToFQDN/www.tailscale.com-32 72.0B ± 0% 24.0B ± 0% -66.67% (p=0.000 n=10+10)
ToFQDN/.www.tailscale.com-32 72.0B ± 0% 24.0B ± 0% -66.67% (p=0.000 n=10+10)
ToFQDN/_ssh._tcp.www.tailscale.com.-32 0.00B 0.00B ~ (all equal)
ToFQDN/_ssh._tcp.www.tailscale.com-32 112B ± 0% 32B ± 0% -71.43% (p=0.000 n=10+10)
name old allocs/op new allocs/op delta
ToFQDN/www.tailscale.com.-32 0.00 0.00 ~ (all equal)
ToFQDN/www.tailscale.com-32 2.00 ± 0% 1.00 ± 0% -50.00% (p=0.000 n=10+10)
ToFQDN/.www.tailscale.com-32 2.00 ± 0% 1.00 ± 0% -50.00% (p=0.000 n=10+10)
ToFQDN/_ssh._tcp.www.tailscale.com.-32 0.00 0.00 ~ (all equal)
ToFQDN/_ssh._tcp.www.tailscale.com-32 2.00 ± 0% 1.00 ± 0% -50.00% (p=0.000 n=10+10)
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-05-31 21:13:50 -07:00
David Anderson and Dave Anderson
d7f6ef3a79
util/dnsname: add a benchmark for ToFQDN.
...
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-05-31 21:13:50 -07:00
David Anderson and Dave Anderson
caaefa00a0
util/dnsname: don't validate the contents of DNS labels.
...
DNS names consist of labels, but outside of length limits, DNS
itself permits any content within the labels. Some records require
labels to conform to hostname limitations (which is what we implemented
before), but not all.
Fixes #2024 .
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-05-31 21:13:50 -07:00
David Anderson
df350e2069
ipn/ipnlocal: initialize DNS config maps unconditionally.
...
Fixes #1963 .
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-05-20 20:22:39 -07:00
David Anderson and Dave Anderson
e2dcf63420
net/dns: replace AuthoritativeSuffixes with nil Route entries.
...
This leads to a cleaner separation of intent vs. implementation
(Routes is now the only place specifying who handles DNS requests),
and allows for cleaner expression of a configuration that creates
MagicDNS records without serving them to the OS.
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-05-18 14:15:17 -07:00
David Anderson and Dave Anderson
6690f86ef4
net/dns: always offer MagicDNS records at 100.100.100.100.
...
Fixes #1886 .
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-05-18 14:15:17 -07:00
David Anderson
85df1b0fa7
go.mod: bump wireguard-go.
...
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-05-17 16:30:24 -07:00
David Anderson
4f92f405ee
scripts: fix up installer script comments.
...
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-05-14 14:13:31 -07:00
David Anderson
0e9ea9f779
scripts: detect curl vs. wget and use the right one.
...
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-05-14 14:12:31 -07:00
David Anderson
783f125003
scripts: use codenames for ubuntu, since that's what our repo uses.
...
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-05-14 14:12:28 -07:00
David Anderson
a3b15bdf7e
.github: remove verbose issue templates, add triage label.
...
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-05-06 19:14:19 -07:00
David Anderson and Dave Anderson
5bd38b10b4
net/dns: log the correct error when NM Reapply fails.
...
Found while debugging #1870 .
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-05-06 16:02:09 -07:00
David Anderson and Dave Anderson
7d16c8228b
net/dns: set IPv4 auto mode in NM, so it lets us set DNS.
...
Part of #1870 .
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-05-06 16:02:09 -07:00
David Anderson and Dave Anderson
77e2375501
net/dns: don't try to configure LLMNR or mdns in NetworkManager.
...
Fixes #1870 .
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-05-06 16:02:09 -07:00
David Anderson
bf5fc8edda
go.mod: update wireguard-go.
...
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-04-29 16:36:55 -07:00
David Anderson and Dave Anderson
1d7e7b49eb
ipn/ipnlocal: be authoritative for the entire MagicDNS record tree.
...
With this change, shared node names resolve correctly on split DNS-supporting
operating systems.
Fixes tailscale/corp#1706
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-04-29 16:06:01 -07:00
David Anderson
bf9ef1ca27
net/dns: stop NetworkManager breaking v6 connectivity when setting DNS.
...
Tentative fix for #1699
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-04-29 12:25:47 -07:00
David Anderson
72b6d98298
net/interfaces: return all Tailscale addresses from Tailscale().
...
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-04-29 12:25:47 -07:00
David Anderson
306a094d4b
ipn/ipnlocal: remove IPv6 records from MagicDNS.
...
Fixes #1813 .
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-04-28 01:01:56 -07:00
David Anderson
44c2b7dc79
net/dns: on windows, skip site-local v6 resolvers.
...
Further refinement for tailscale/corp#1662 .
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-04-27 18:24:54 -07:00
David Anderson and Dave Anderson
97d2fa2f56
net/dns: work around WSL DNS implementation flaws.
...
Fixes tailscale/corp#1662
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-04-26 16:54:50 -07:00
David Anderson
f6b7d08aea
net/dns: work around new NetworkManager in other selection paths.
...
Further bits of #1788
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-04-23 22:09:00 -07:00
David Anderson
25ce9885a2
net/dns: don't use NM+resolved for NM >=1.26.6.
...
NetworkManager fixed the bug that forced us to use NetworkManager
if it's programming systemd-resolved, and in the same release also
made NetworkManager ignore DNS settings provided for unmanaged
interfaces... Which breaks what we used to do. So, with versions
1.26.6 and above, we MUST NOT use NetworkManager to indirectly
program systemd-resolved, but thankfully we can talk to resolved
directly and get the right outcome.
Fixes #1788
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-04-23 21:13:19 -07:00
David Anderson
31f81b782e
util/cmpver: move into OSS from corp repo.
...
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-04-23 20:55:45 -07:00
David Anderson and Dave Anderson
30f5d706a1
net/dns/resolver: remove unnecessary/racy WaitGroup.
...
Fixes #1663
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-04-22 19:17:37 -07:00
David Anderson and Dave Anderson
30629c430a
cmd/tailscale/cli: don't force an interactive login on --reset.
...
Fixes #1778
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-04-22 15:53:50 -07:00
David Anderson
36d030cc36
ipn/ipnlocal: use fallback default DNS whenever exit nodes are on.
...
Fixes #1625
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-04-22 15:24:18 -07:00
David Anderson
67ba6aa9fd
cmd/tailscale/cli: fix typo in ExitNodeID mapping.
...
Prevented turning off exit nodes.
Fixes #1777
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-04-22 14:55:29 -07:00
David Anderson
6fd9e28bd0
ipn/ipnlocal: add arpa suffixes to MagicDNS for reverse lookups.
...
This used to not be necessary, because MagicDNS always did full proxying.
But with split DNS, we need to know which names to route to our resolver,
otherwise reverse lookups break.
This captures the entire CGNAT range, as well as our Tailscale ULA.
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-04-20 18:05:17 -07:00
David Anderson
89c81c26c5
net/dns: fix resolved match domains when no nameservers are provided.
...
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-04-20 17:10:39 -07:00
David Anderson
4be26b269f
net/dns: correctly capture all traffic in non-split configs.
...
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-04-20 16:57:46 -07:00
David Anderson
ca283ac899
net/dns: remove config in openresolv when given an empty DNS config.
...
Part of #1720 .
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-04-20 16:19:34 -07:00
David Anderson
48d4f14652
ipn/ipnlocal: only set authoritative domains when using MagicDNS.
...
Otherwise, the existence of authoritative domains forces full
DNS proxying even when no other DNS config is present.
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-04-20 15:52:19 -07:00
David Anderson
53213114ec
net/dns: make debian_resolvconf correctly clear DNS configs.
...
More of #1720 .
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-04-20 15:51:14 -07:00
David Anderson
3b1ab78954
net/dns: restore resolv.conf when given an empty config in directManager.
...
Fixes #1720 .
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-04-20 15:14:40 -07:00
David Anderson
158328ba24
net/dns: remove ForceSplitDNSForTesting.
...
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-04-20 12:50:08 -07:00
David Anderson and Dave Anderson
1e5c608fae
ipn/ipnlocal: plumb fallback DNS in as a workaround for split DNS issues.
...
Cause of #1743 .
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-04-20 12:49:48 -07:00
David Anderson and Dave Anderson
28ba20d733
tailcfg: add FallbackResolvers to DNSConfig.
...
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-04-20 12:49:48 -07:00
David Anderson
7055f870f8
control/controlclient: only use a single DNS label as the hostname.
...
Fixes #971
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-04-15 17:08:58 -07:00
David Anderson
bb0710d51d
net/dns: add debugging traces to DNS manager selection on linux.
...
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-04-14 15:52:41 -07:00
David Anderson
4b70c7b717
net/dns: fix inverted test for NetworkManager.
...
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-04-14 15:52:22 -07:00
David Anderson
4849a4d3c8
net/dns: error out on linux if /etc/resolv.conf can't be read.
...
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-04-14 15:35:32 -07:00
David Anderson
1f9b73a531
net/dns: fix freebsd DNS manager selection.
...
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-04-14 15:34:59 -07:00
David Anderson
84bd50329a
net/dns: fix staticheck.
...
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-04-13 17:28:37 -07:00
David Anderson
d6bb11b5bf
net/dns: implement correct manager detection on linux.
...
Part of #953 .
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-04-13 17:19:00 -07:00
David Anderson
9ef932517b
net/dns: fix NM's GetBaseConfig when no configs exist.
...
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-04-13 17:19:00 -07:00
David Anderson
fe3b1ab747
net/dns: refactor dbus connection setup in resolved manager.
...
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-04-13 17:19:00 -07:00
David Anderson
854d5d36a1
net/dns: return error from NewOSManager, use it to initialize NM.
...
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-04-12 15:51:37 -07:00
David Anderson and Dave Anderson
9aa33b43e6
net/dns: support split and unsplit DNS in NetworkManager.
...
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-04-12 14:34:08 -07:00
David Anderson
87eb8384f5
net/dns: fix up NetworkManager configurator a bit.
...
Clear LLMNR and mdns flags, update reasoning for our settings,
and set our override priority harder than before when we want
to be primary resolver.
Signed-off-by: David Anderson <danderson@tailscale.com >
2021-04-11 23:19:50 -07:00