gss_krb5_cts_crypt
err = gss_krb5_cts_crypt(cts_tfm, buf, offset + cbcbytes,
return gss_krb5_cts_crypt(cts_tfm, buf, cbcbytes, desc.iv, NULL, 0);