Modify MBEDTLS_SSL_UNEXPECTED_CID_{FAIL|IGNORE} to ignore by default
diff --git a/include/mbedtls/ssl.h b/include/mbedtls/ssl.h
index d29c7bd..9424cb6 100644
--- a/include/mbedtls/ssl.h
+++ b/include/mbedtls/ssl.h
@@ -2157,8 +2157,8 @@
                                    const int *ciphersuites );
 
 #if defined(MBEDTLS_SSL_CID)
-#define MBEDTLS_SSL_UNEXPECTED_CID_FAIL   0
-#define MBEDTLS_SSL_UNEXPECTED_CID_IGNORE 1
+#define MBEDTLS_SSL_UNEXPECTED_CID_IGNORE 0
+#define MBEDTLS_SSL_UNEXPECTED_CID_FAIL   1
 /**
  * \brief               Specify the length of CIDs for incoming encrypted DTLS
  *                      records and specify the behaviour on unexpected CIDs.