socks_sspi: remove the enforced mode clearing

Reported-by: Joshua Rogers
Closes #19040
This commit is contained in:
Daniel Stenberg 2025-10-13 09:24:57 +02:00
parent 67c4256f7e
commit e003c0b259
No known key found for this signature in database
GPG key ID: 5CC908FDB71E12C2

View file

@ -325,8 +325,7 @@ CURLcode Curl_SOCKS5_gssapi_negotiate(struct Curl_cfilter *cf,
infof(data, "SOCKS5 server supports GSS-API %s data protection.",
(gss_enc == 0) ? "no" :
((gss_enc == 1) ? "integrity":"confidentiality") );
/* force to no data protection, avoid encryption/decryption for now */
gss_enc = 0;
/*
* Sending the encryption type in clear seems wrong. It should be
* protected with gss_seal()/gss_wrap(). See RFC1961 extract below