Index | index by Group | index by Distribution | index by Vendor | index by creation date | index by Name | Mirrors | Help | Search |
Name: opencryptoki-ep11tok | Distribution: CentOS |
Version: 3.21.0 | Vendor: CentOS |
Release: 8.el9 | Build date: Fri Jul 14 15:32:24 2023 |
Group: Unspecified | Build host: s390-04.stream.rdu2.redhat.com |
Size: 896452 | Source RPM: opencryptoki-3.21.0-8.el9.src.rpm |
Packager: builder@centos.org | |
Url: https://github.com/opencryptoki/opencryptoki | |
Summary: CCA cryptographic devices (secure-key) support for opencryptoki |
Opencryptoki implements the PKCS#11 specification v2.20 for a set of cryptographic hardware, such as IBM 4764 and 4765 crypto cards, and the Trusted Platform Module (TPM) chip. Opencryptoki also brings a software token implementation that can be used without any cryptographic hardware. This package brings the necessary libraries and files to support EP11 tokens in the opencryptoki stack. The EP11 token is a token that uses the IBM Crypto Express adapters (starting with Crypto Express 4S adapters) configured with Enterprise PKCS#11 (EP11) firmware.
CPL
* Fri Jul 14 2023 Than Ngo <than@redhat.com> - 3.21.0-8 - Resolves: #2222592, p11sak tool: slot option does not accept argument 0 for slot index 0 - Resolves: #2222596, p11sak fails as soon as there reside non-key objects * Tue Jun 13 2023 Than Ngo <than@redhat.com> - 3.21.0-5 - add requirement on selinux-policy >= 38.1.14-1 for pkcsslotd policy sandboxing Related: #2160061 * Fri May 26 2023 Than Ngo <than@redhat.com> - 3.21.0-4 - add verify attributes for opencryptoki.conf to ignore the verification Related: #2160061 * Mon May 22 2023 Than Ngo <than@redhat.com> - 3.21.0-3 - Resolves: #2110497, concurrent MK rotation for cca token - Resolves: #2110498, concurrent MK rotation for ep11 token - Resolves: #2110499, ep11 token: PKCS #11 3.0 - support AES_XTS - Resolves: #2111010, cca token: protected key support - Resolves: #2160061, rebase to 3.21.0 - Resolves: #2160105, pkcsslotd hardening - Resolves: #2160107, p11sak support Dilithium and Kyber keys - Resolves: #2160109, ica and soft tokens: PKCS #11 3.0 - support AES_XTS * Mon Jan 30 2023 Than Ngo <than@redhat.com> - 3.19.0-2 - Resolves: #2044182, Support of ep11 token for new IBM Z Hardware (IBM z16) * Tue Oct 11 2022 Than Ngo <than@redhat.com> - 3.19.0-1 - Resolves: #2126294, opencryptoki fails after generating > 500 RSA keys - Resolves: #2110314, rebase to 3.19.0 - Resolves: #2110989, openCryptoki key generation with expected MKVP only on CCA and EP11 tokens - Resolves: #2110476, openCryptoki ep11 token: master key consistency - Resolves: #2018458, openCryptoki ep11 token: vendor specific key derivation * Fri Jul 29 2022 Than Ngo <than@redhat.com> - 3.18.0-4 - Related: #2044179, do not touch opencryptoki.conf if it is in place already and even if it is unchanged * Tue Jun 07 2022 Than Ngo <than@redhat.com> - 3.18.0-3 - Related: #2044179, fix json output * Mon May 09 2022 Than Ngo <than@redhat.com> - 3.18.0-2 - Related: #2044179, add missing strength.conf * Mon May 09 2022 Than Ngo <than@redhat.com> - 3.18.0-1 - Resolves: #2044179, rebase to 3.18.0 - Resolves: #2068091, pkcsconf -t failed with Segmentation fault in FIPS mode - Resolves: #2066763, Dilithium support not available - Resolves: #2064697, OpenSSL 3.0 Compatibility for IBM Security Libraries and Tools - Resolves: #2044181, support crypto profiles - Resolves: #2044180, add crypto counters * Tue May 03 2022 Than Ngo <than@redhat.com> - 3.17.0-6 - Resolves: #2066763, Dilithium support not available * Mon Mar 14 2022 Than Ngo <than@redhat.com> - 3.17.0-5 - Resolves: #2064697, ICA/EP11: Support libica version 4 * Mon Jan 17 2022 Than Ngo <than@redhat.com> - 3.17.0-4 - Resolves: #2040678, API: Unlock GlobMutex if user and group check fails * Sat Dec 04 2021 Than Ngo <than@redhat.com> - 3.17.0-3 - Related: #2015888, added missing patch pkcsslotd-pidfile * Wed Nov 24 2021 Than Ngo <than@redhat.com> - 3.17.0-2 - Related: #2015888, add missing p11sak_defined_attrs.conf * Wed Nov 03 2021 Than Ngo <than@redhat.com> - 3.17.0-1 - Resolves: #2015888, rebase to 3.17.0 - Resolves: #2017720, openCryptoki key management tool * Thu Aug 26 2021 Than Ngo <than@redhat.com> - 3.16.0-12 - Related: #1989138, Support for OpenSSL 3.0 * Mon Aug 23 2021 Than Ngo <than@redhat.com> - 3.16.0-11 - Resolves: #1989138, Support for OpenSSL 3.0 * Thu Aug 19 2021 Than Ngo <than@redhat.com> - 3.16.0-10 - Resolves: #1987186, pkcstok_migrate leaves options with multiple strings in opencryptoki.conf options without double-quotes * Mon Aug 09 2021 Mohan Boddu <mboddu@redhat.com> - 3.16.0-9 - Rebuilt for IMA sigs, glibc 2.34, aarch64 flags Related: rhbz#1991688 * Wed Jul 28 2021 Florian Weimer <fweimer@redhat.com> - 3.16.0-8 - Rebuild to pick up OpenSSL 3.0 Beta ABI (#1984097) * Fri Jul 16 2021 Than Ngo <than@redhat.com> - 3.16.0-7 - Resolves: #1974365, Fix detection if pkcsslotd is still running
/etc/opencryptoki/ep11cpfilter.conf /etc/opencryptoki/ep11tok.conf /usr/lib/.build-id /usr/lib/.build-id/9d/34b44839678778a7853e44a352da50058e67a3 /usr/lib/.build-id/c7 /usr/lib/.build-id/c7/7ea41d04eea356740ebd563a85dfa3be6dcb51 /usr/lib/.build-id/fd /usr/lib/.build-id/fd/ebf11777049d73dd0b72f9caec9c7363a54ce5 /usr/lib64/opencryptoki/stdll/PKCS11_EP11.so /usr/lib64/opencryptoki/stdll/libpkcs11_ep11.la /usr/lib64/opencryptoki/stdll/libpkcs11_ep11.so /usr/lib64/opencryptoki/stdll/libpkcs11_ep11.so.0 /usr/lib64/opencryptoki/stdll/libpkcs11_ep11.so.0.0.0 /usr/sbin/pkcsep11_migrate /usr/sbin/pkcsep11_session /usr/share/doc/opencryptoki-ep11tok /usr/share/doc/opencryptoki-ep11tok/README.ep11_stdll /usr/share/man/man1/pkcsep11_migrate.1.gz /usr/share/man/man1/pkcsep11_session.1.gz /var/lib/opencryptoki/ep11tok /var/lib/opencryptoki/ep11tok/TOK_OBJ
Generated by rpm2html 1.8.1
Fabrice Bellet, Wed Sep 25 08:15:35 2024