From: Sam Hartman Date: Sat, 27 Oct 2001 04:22:08 +0000 (+0000) Subject: * Use right key usage for seal without encryption. X-Git-Tag: krb5-1.3-alpha1~990 X-Git-Url: http://git.tremily.us/?a=commitdiff_plain;h=19e02f6fbe7212a05652594a3d4680f875863c94;p=krb5.git * Use right key usage for seal without encryption. Now tested and working against win2k ldap server; wrap and unwrap of encrypted and unencrypted data tested. So far no test of getmic or verify_mic. git-svn-id: svn://anonsvn.mit.edu/krb5/trunk@13870 dc483132-0cff-0310-8789-dd5450dbe970 --- diff --git a/src/lib/gssapi/krb5/ChangeLog b/src/lib/gssapi/krb5/ChangeLog index 2bc1ca9a6..61f853aad 100644 --- a/src/lib/gssapi/krb5/ChangeLog +++ b/src/lib/gssapi/krb5/ChangeLog @@ -1,3 +1,7 @@ +2001-10-27 Sam Hartman + + * k5seal.c (make_seal_token_v1): Use usage 15 only for mic tokens, not for seal tokens without encryption + 2001-10-26 Ezra Peisach * k5seal.c (make_seal_token_v1): Correct errors in code pertaining diff --git a/src/lib/gssapi/krb5/k5seal.c b/src/lib/gssapi/krb5/k5seal.c index 7ba53db27..e9d2985d1 100644 --- a/src/lib/gssapi/krb5/k5seal.c +++ b/src/lib/gssapi/krb5/k5seal.c @@ -150,7 +150,7 @@ make_seal_token_v1 (krb5_context context, break; case SGN_ALG_HMAC_MD5: md5cksum.checksum_type = CKSUMTYPE_HMAC_MD5_ARCFOUR; - if (!encrypt) + if (toktype != KG_TOK_SEAL_MSG) sign_usage = 15; break; default: