diff options
-rw-r--r-- | src/include/kdb_ext.h | 2 | ||||
-rw-r--r-- | src/kdc/kdc_util.c | 4 |
2 files changed, 3 insertions, 3 deletions
diff --git a/src/include/kdb_ext.h b/src/include/kdb_ext.h index 0a2cc9c01..0b4c4a97f 100644 --- a/src/include/kdb_ext.h +++ b/src/include/kdb_ext.h @@ -40,7 +40,7 @@ /* Private flag used to indicate principal is local TGS */ #define KRB5_KDB_TICKET_GRANTING_SERVICE 0x01000000 /* Private flag used to indicate xrealm relationship is non-transitive */ -#define KRB5_KDB_xrealm_NON_TRANSITIVE 0x02000000 +#define KRB5_KDB_XREALM_NON_TRANSITIVE 0x02000000 /* Entry get flags */ /* Name canonicalization requested */ diff --git a/src/kdc/kdc_util.c b/src/kdc/kdc_util.c index 0caf8a592..aa8d40d94 100644 --- a/src/kdc/kdc_util.c +++ b/src/kdc/kdc_util.c @@ -2197,12 +2197,12 @@ validate_transit_path(krb5_context context, krb5_db_entry *krbtgt) { /* Incoming */ - if (isflagset(server->attributes, KRB5_KDB_xrealm_NON_TRANSITIVE)) { + if (isflagset(server->attributes, KRB5_KDB_XREALM_NON_TRANSITIVE)) { return KRB5KDC_ERR_PATH_NOT_ACCEPTED; } /* Outgoing */ - if (isflagset(krbtgt->attributes, KRB5_KDB_xrealm_NON_TRANSITIVE) && + if (isflagset(krbtgt->attributes, KRB5_KDB_XREALM_NON_TRANSITIVE) && (!krb5_principal_compare(context, server->princ, krbtgt->princ) || !krb5_realm_compare(context, client, krbtgt->princ))) { return KRB5KDC_ERR_PATH_NOT_ACCEPTED; |