Index | index by Group | index by Distribution | index by Vendor | index by creation date | index by Name | Mirrors | Help | Search |
Name: opencryptoki | Distribution: CentOS |
Version: 3.24.0 | Vendor: CentOS |
Release: 4.el9 | Build date: Wed Mar 19 18:13:16 2025 |
Group: Unspecified | Build host: ppc64le-02.stream.rdu2.redhat.com |
Size: 960317 | Source RPM: opencryptoki-3.24.0-4.el9.src.rpm |
Packager: builder@centos.org | |
Url: https://github.com/opencryptoki/opencryptoki | |
Summary: Implementation of the PKCS#11 (Cryptoki) specification v3.0 |
Opencryptoki implements the PKCS#11 specification v2.20 for a set of cryptographic hardware, such as IBM 4764 and 4765 crypto cards, and the Trusted Platform Module (TPM) chip. Opencryptoki also brings a software token implementation that can be used without any cryptographic hardware. This package contains the Slot Daemon (pkcsslotd) and general utilities.
CPL-1.0
* Wed Mar 19 2025 Than Ngo <than@redhat.com> - 3.24.0-4 - Resolves: RHEL-77147, opencryptoki doesn't work in image mode * Tue Nov 26 2024 Than Ngo <than@redhat.com> - 3.24.0-3 - Disable ccatok on aarch64 Related: RHEL-50064 * Thu Nov 07 2024 Than Ngo <than@redhat.com> - 3.24.0-2 - Fix resource leak Related: RHEL-50064 * Tue Oct 22 2024 Than Ngo <than@redhat.com> - 3.24.0-1 - Resolves: RHEL-50064, update to 3.24.0 - Resolves: RHEL-50063, opencryptoki CCA Token support for x86_64 and ppc64le - Resolves: RHEL-50058, openCryptoki CCA token support of Dilithium - Resolves: RHEL-50056, openCryptoki cca token SHA3 support - Resolves: RHEL-50057, openCryptoki cca token RSA OAEP v2.1 support * Wed May 22 2024 Than Ngo <than@redhat.com> - 3.23.0-1 - Resolves: RHEL-23671, ep11 token: support protected keys for extractable keys - Resolves: RHEL-23672, ep11 token support for FIPS 2021-session bound EP11 keys - Resolves: RHEL-23673, update to 3.23.0 * Fri Feb 16 2024 Than Ngo <than@redhat.com> - 3.22.0-3 - Fix implicit rejection with RSA keys with empty CKA_PRIVATE_EXPONENT Related: RHEL-22792 * Thu Feb 08 2024 Than Ngo <than@redhat.com> - 3.22.0-2 - timing side-channel in handling of RSA PKCS#1 v1.5 padded ciphertexts (Marvin) Resolves: RHEL-22792 * Tue Nov 21 2023 Than Ngo <than@redhat.com> - 3.22.0-1 - Resolves: RHEL-11412, rebase to 3.22.0 - Resolves: RHEL-10569, openCryptoki for PKCS #11 3.0 * Fri Jul 14 2023 Than Ngo <than@redhat.com> - 3.21.0-8 - Resolves: #2222592, p11sak tool: slot option does not accept argument 0 for slot index 0 - Resolves: #2222596, p11sak fails as soon as there reside non-key objects * Tue Jun 13 2023 Than Ngo <than@redhat.com> - 3.21.0-5 - add requirement on selinux-policy >= 38.1.14-1 for pkcsslotd policy sandboxing Related: #2160061 * Fri May 26 2023 Than Ngo <than@redhat.com> - 3.21.0-4 - add verify attributes for opencryptoki.conf to ignore the verification Related: #2160061 * Mon May 22 2023 Than Ngo <than@redhat.com> - 3.21.0-3 - Resolves: #2110497, concurrent MK rotation for cca token - Resolves: #2110498, concurrent MK rotation for ep11 token - Resolves: #2110499, ep11 token: PKCS #11 3.0 - support AES_XTS - Resolves: #2111010, cca token: protected key support - Resolves: #2160061, rebase to 3.21.0 - Resolves: #2160105, pkcsslotd hardening - Resolves: #2160107, p11sak support Dilithium and Kyber keys - Resolves: #2160109, ica and soft tokens: PKCS #11 3.0 - support AES_XTS
/etc/opencryptoki /etc/opencryptoki/opencryptoki.conf /etc/opencryptoki/p11sak_defined_attrs.conf /etc/opencryptoki/strength.conf /run/lock/opencryptoki /run/lock/opencryptoki/* /run/opencryptoki /usr/lib/.build-id /usr/lib/.build-id/1a /usr/lib/.build-id/1a/be4656e730e0499141ac9926f86706d160f726 /usr/lib/.build-id/7f /usr/lib/.build-id/7f/4f5343bf6f57dbaa05192b54e2416c64679794 /usr/lib/.build-id/91 /usr/lib/.build-id/91/cf3e8fd314a05a15b25866427dd9ec1c53c243 /usr/lib/.build-id/9d /usr/lib/.build-id/9d/435b34d9b48a56675d560ca2139e8ef262ba1e /usr/lib/.build-id/b9 /usr/lib/.build-id/b9/08b9b04c4d07bc3876ea6304d8b04f78cdf0d3 /usr/lib/.build-id/cb /usr/lib/.build-id/cb/262760e396c61f05cb45bbaae984ff96b2dc77 /usr/lib/.build-id/e6 /usr/lib/.build-id/e6/88d704919af8c7ebc891e651d11e81a1f3ea1f /usr/lib/systemd/system/pkcsslotd.service /usr/lib/tmpfiles.d/opencryptoki.conf /usr/lib64/opencryptoki/methods /usr/lib64/pkcs11/methods /usr/sbin/p11sak /usr/sbin/pkcsconf /usr/sbin/pkcshsm_mk_change /usr/sbin/pkcsslotd /usr/sbin/pkcsstats /usr/sbin/pkcstok_admin /usr/sbin/pkcstok_migrate /usr/share/doc/opencryptoki /usr/share/doc/opencryptoki/ChangeLog /usr/share/doc/opencryptoki/FAQ /usr/share/doc/opencryptoki/README.md /usr/share/doc/opencryptoki/README.token_data /usr/share/doc/opencryptoki/opencryptoki-howto.md /usr/share/doc/opencryptoki/policy-example.conf /usr/share/doc/opencryptoki/strength-example.conf /usr/share/man/man1/p11sak.1.gz /usr/share/man/man1/pkcsconf.1.gz /usr/share/man/man1/pkcshsm_mk_change.1.gz /usr/share/man/man1/pkcsstats.1.gz /usr/share/man/man1/pkcstok_admin.1.gz /usr/share/man/man1/pkcstok_migrate.1.gz /usr/share/man/man5/opencryptoki.conf.5.gz /usr/share/man/man5/p11sak_defined_attrs.conf.5.gz /usr/share/man/man5/policy.conf.5.gz /usr/share/man/man5/strength.conf.5.gz /usr/share/man/man7/opencryptoki.7.gz /usr/share/man/man8/pkcsslotd.8.gz /var/lib/opencryptoki /var/lib/opencryptoki/HSM_MK_CHANGE
Generated by rpm2html 1.8.1
Fabrice Bellet, Tue Apr 1 03:24:08 2025