hdb: Add flag to indicate a fetch for the client of an armor ticket
authorJoseph Sutton <josephsutton@catalyst.net.nz>
Tue, 16 May 2023 05:05:49 +0000 (17:05 +1200)
committerJoseph Sutton <josephsutton@catalyst.net.nz>
Tue, 16 May 2023 05:06:41 +0000 (17:06 +1200)
Signed-off-by: Joseph Sutton <josephsutton@catalyst.net.nz>
lib/hdb/hdb.h

index 2a3d1c4bb8c6db33e8fa69cd99d40d5d2121ac5c..87377513d549cbe0be66b405ea4964cb44be14b2 100644 (file)
@@ -77,6 +77,7 @@ enum hdb_lockop{ HDB_RLOCK, HDB_WLOCK };
 #define HDB_F_DELAY_NEW_KEYS   0x08000 /* apply [hdb] new_service_key_delay */
 #define HDB_F_SYNTHETIC_OK     0x10000 /* synthetic principal for PKINIT or GSS preauth OK */
 #define HDB_F_GET_FAST_COOKIE  0x20000 /* fetch the FX-COOKIE key (not a normal principal) */
+#define HDB_F_ARMOR_PRINCIPAL  0x40000 /* fetch is for the client of an armor ticket */
 
 /* hdb_capability_flags */
 #define HDB_CAP_F_HANDLE_ENTERPRISE_PRINCIPAL 1