Blame SOURCES/cyrus-sasl-2.1.26-revert-gssapi-flags.patch

6611fc
--- cyrus-sasl2.orig/plugins/gssapi.c
6611fc
+++ cyrus-sasl2/plugins/gssapi.c
6611fc
@@ -1583,10 +1583,10 @@ static int gssapi_client_mech_step(void
6611fc
 	}
6611fc
 
6611fc
 	/* Setup req_flags properly */
6611fc
-	req_flags = GSS_C_INTEG_FLAG;
6611fc
+	req_flags = GSS_C_MUTUAL_FLAG | GSS_C_SEQUENCE_FLAG;
6611fc
 	if (params->props.max_ssf > params->external_ssf) {
6611fc
 	    /* We are requesting a security layer */
6611fc
-	    req_flags |= GSS_C_MUTUAL_FLAG | GSS_C_SEQUENCE_FLAG;
6611fc
+	    req_flags |= GSS_C_INTEG_FLAG;
6611fc
 	    /* Any SSF bigger than 1 is confidentiality. */
6611fc
 	    /* Let's check if the client of the API requires confidentiality,
6611fc
 	       and it wasn't already provided by an external layer */
6611fc