Index index by Group index by Distribution index by Vendor index by creation date index by Name Mirrors Help Search

opencryptoki-3.24.0-5.el9 RPM for x86_64

From CentOS Stream 9 BaseOS for x86_64

Name: opencryptoki Distribution: CentOS
Version: 3.24.0 Vendor: CentOS
Release: 5.el9 Build date: Mon Apr 14 11:22:26 2025
Group: Unspecified Build host: x86-04.stream.rdu2.redhat.com
Size: 716157 Source RPM: opencryptoki-3.24.0-5.el9.src.rpm
Packager: builder@centos.org
Url: https://github.com/opencryptoki/opencryptoki
Summary: Implementation of the PKCS#11 (Cryptoki) specification v3.0
Opencryptoki implements the PKCS#11 specification v2.20 for a set of
cryptographic hardware, such as IBM 4764 and 4765 crypto cards, and the
Trusted Platform Module (TPM) chip. Opencryptoki also brings a software
token implementation that can be used without any cryptographic
hardware.
This package contains the Slot Daemon (pkcsslotd) and general utilities.

Provides

Requires

License

CPL-1.0

Changelog

* Wed Apr 09 2025 Than Ngo <than@redhat.com> - 3.24.0-5
  - Related: RHEL-77147, opencryptoki doesn't work in image mode
* Wed Mar 19 2025 Than Ngo <than@redhat.com> - 3.24.0-4
  - Resolves: RHEL-77147, opencryptoki doesn't work in image mode
* Tue Nov 26 2024 Than Ngo <than@redhat.com> - 3.24.0-3
  - Disable ccatok on aarch64
    Related: RHEL-50064
* Thu Nov 07 2024 Than Ngo <than@redhat.com> - 3.24.0-2
  - Fix resource leak
    Related: RHEL-50064
* Tue Oct 22 2024 Than Ngo <than@redhat.com> - 3.24.0-1
  - Resolves: RHEL-50064, update to 3.24.0
  - Resolves: RHEL-50063, opencryptoki CCA Token support for x86_64 and ppc64le
  - Resolves: RHEL-50058, openCryptoki CCA token support of Dilithium
  - Resolves: RHEL-50056, openCryptoki cca token SHA3 support
  - Resolves: RHEL-50057, openCryptoki cca token RSA OAEP v2.1 support
* Wed May 22 2024 Than Ngo <than@redhat.com> - 3.23.0-1
  - Resolves: RHEL-23671, ep11 token: support protected keys for extractable keys
  - Resolves: RHEL-23672, ep11 token support for FIPS 2021-session bound EP11 keys
  - Resolves: RHEL-23673, update to 3.23.0
* Fri Feb 16 2024 Than Ngo <than@redhat.com> - 3.22.0-3
  - Fix implicit rejection with RSA keys with empty CKA_PRIVATE_EXPONENT
  Related: RHEL-22792
* Thu Feb 08 2024 Than Ngo <than@redhat.com> - 3.22.0-2
  - timing side-channel in handling of RSA PKCS#1 v1.5 padded ciphertexts (Marvin)
  Resolves: RHEL-22792
* Tue Nov 21 2023 Than Ngo <than@redhat.com> - 3.22.0-1
  - Resolves: RHEL-11412, rebase to 3.22.0
  - Resolves: RHEL-10569, openCryptoki for PKCS #11 3.0
* Fri Jul 14 2023 Than Ngo <than@redhat.com> - 3.21.0-8
  - Resolves: #2222592, p11sak tool: slot option does not accept argument 0 for slot index 0
  - Resolves: #2222596, p11sak fails as soon as there reside non-key objects
* Tue Jun 13 2023 Than Ngo <than@redhat.com> - 3.21.0-5
  - add requirement on selinux-policy >= 38.1.14-1 for pkcsslotd policy sandboxing
  Related: #2160061
* Fri May 26 2023 Than Ngo <than@redhat.com> - 3.21.0-4
  - add verify attributes for opencryptoki.conf to ignore the verification
  
  Related: #2160061
* Mon May 22 2023 Than Ngo <than@redhat.com> - 3.21.0-3
  - Resolves: #2110497, concurrent MK rotation for cca token
  - Resolves: #2110498, concurrent MK rotation for ep11 token
  - Resolves: #2110499, ep11 token: PKCS #11 3.0 - support AES_XTS
  - Resolves: #2111010, cca token: protected key support 
  - Resolves: #2160061, rebase to 3.21.0
  - Resolves: #2160105, pkcsslotd hardening
  - Resolves: #2160107, p11sak support Dilithium and Kyber keys
  - Resolves: #2160109, ica and soft tokens: PKCS #11 3.0 - support AES_XTS

Files

/etc/opencryptoki
/etc/opencryptoki/opencryptoki.conf
/etc/opencryptoki/p11sak_defined_attrs.conf
/etc/opencryptoki/strength.conf
/run/lock/opencryptoki
/run/lock/opencryptoki/*
/run/opencryptoki
/usr/lib/.build-id
/usr/lib/.build-id/18
/usr/lib/.build-id/18/baf55b851cef7eef98587dc1ad5909ada4cdad
/usr/lib/.build-id/36
/usr/lib/.build-id/36/3e3c0743ab7187d51c044339995614ad4ba2f9
/usr/lib/.build-id/86
/usr/lib/.build-id/86/5401f834cd7a7d38b8b03184795741d2a601b8
/usr/lib/.build-id/94
/usr/lib/.build-id/94/c18fbad802df4df3425b76d4ff56d2fa015f9f
/usr/lib/.build-id/bb
/usr/lib/.build-id/bb/0f28d0f20d51bf1154b92e76fb03ca07fa4e02
/usr/lib/.build-id/d0
/usr/lib/.build-id/d0/94b2a630919b9384e9cb073624da30eb8a27db
/usr/lib/.build-id/e8
/usr/lib/.build-id/e8/52ba78b448dfaa8501bb5a23ac306604465788
/usr/lib/systemd/system/pkcsslotd.service
/usr/lib/tmpfiles.d/opencryptoki.conf
/usr/lib64/opencryptoki/methods
/usr/lib64/pkcs11/methods
/usr/sbin/p11sak
/usr/sbin/pkcsconf
/usr/sbin/pkcshsm_mk_change
/usr/sbin/pkcsslotd
/usr/sbin/pkcsstats
/usr/sbin/pkcstok_admin
/usr/sbin/pkcstok_migrate
/usr/share/doc/opencryptoki
/usr/share/doc/opencryptoki/ChangeLog
/usr/share/doc/opencryptoki/FAQ
/usr/share/doc/opencryptoki/README.md
/usr/share/doc/opencryptoki/README.token_data
/usr/share/doc/opencryptoki/opencryptoki-howto.md
/usr/share/doc/opencryptoki/policy-example.conf
/usr/share/doc/opencryptoki/strength-example.conf
/usr/share/man/man1/p11sak.1.gz
/usr/share/man/man1/pkcsconf.1.gz
/usr/share/man/man1/pkcshsm_mk_change.1.gz
/usr/share/man/man1/pkcsstats.1.gz
/usr/share/man/man1/pkcstok_admin.1.gz
/usr/share/man/man1/pkcstok_migrate.1.gz
/usr/share/man/man5/opencryptoki.conf.5.gz
/usr/share/man/man5/p11sak_defined_attrs.conf.5.gz
/usr/share/man/man5/policy.conf.5.gz
/usr/share/man/man5/strength.conf.5.gz
/usr/share/man/man7/opencryptoki.7.gz
/usr/share/man/man8/pkcsslotd.8.gz
/var/lib/opencryptoki
/var/lib/opencryptoki/HSM_MK_CHANGE


Generated by rpm2html 1.8.1

Fabrice Bellet, Sun May 4 03:41:49 2025