krb5 commit: Don't use PA_PSEUDO in pkinit client code

Greg Hudson ghudson at MIT.EDU
Mon Oct 22 01:56:49 EDT 2012


https://github.com/krb5/krb5/commit/c3b0bfb9277b2e5de6b5246290b2cbe89989c115
commit c3b0bfb9277b2e5de6b5246290b2cbe89989c115
Author: Greg Hudson <ghudson at mit.edu>
Date:   Mon Oct 22 01:56:33 2012 -0400

    Don't use PA_PSEUDO in pkinit client code
    
    PA_PSEUDO only has meaning for kdcpreauth modules.  Don't use it in
    the flags method of the pkinit clpreauth module.

 src/plugins/preauth/pkinit/pkinit_clnt.c |    2 +-
 1 files changed, 1 insertions(+), 1 deletions(-)

diff --git a/src/plugins/preauth/pkinit/pkinit_clnt.c b/src/plugins/preauth/pkinit/pkinit_clnt.c
index f84012c..7a069c1 100644
--- a/src/plugins/preauth/pkinit/pkinit_clnt.c
+++ b/src/plugins/preauth/pkinit/pkinit_clnt.c
@@ -1230,7 +1230,7 @@ static int
 pkinit_client_get_flags(krb5_context kcontext, krb5_preauthtype patype)
 {
     if (patype == KRB5_PADATA_PKINIT_KX)
-        return PA_INFO|PA_PSEUDO;
+        return PA_INFO;
     return PA_REAL;
 }
 


More information about the cvs-krb5 mailing list