Than Ngo
1a052543f3
- Resolves: RHEL-75138, ep11 token BLS support
...
- Resolves: RHEL-85380, ep11 token: ML-KEM and ML-DSA support
- Resolves: RHEL-85383, cca token: ML-KEM and ML-DSA support
- Resolves: RHEL-100058, openCryptoki 3.26.0
2025-12-17 10:39:28 +01:00
Than Ngo
63c37e6c96
Resolves: RHEL-109017, add missing Url for the test
2025-08-13 16:43:58 +02:00
Than Ngo
b97c949478
Resolves: RHEL-109017, pkcsslotd fails to start in FIPS mode
2025-08-13 16:05:42 +02:00
Than Ngo
b62c0ec36c
Resolves: RHEL-105910, require openssl >= 3.5.1
2025-07-29 14:09:19 +02:00
Than Ngo
10e6af2f76
- Fix incorrect effective group id of pkcsslotd daemon
...
- Fix covscan findings
Resolves: RHEL-104598
2025-07-21 18:18:25 +02:00
Than Ngo
641485b6db
- Related: RHEL-73343, Fix detection of EC curve not supported by OpenSSL-3.5.x
...
- Related: RHEL-77146, Fix the image mode issue again as bootc expects to use /run/lock
2025-07-09 17:25:54 +02:00
Than Ngo
9ab1d9be54
- Resolves: RHEL-85376, ep11 token: PKCS #11 3.0 - support SHA3
...
- Resolves: RHEL-90589, CCA token: basic support of AES-GCM
- Resolves: RHEL-72964, cca token support cipher keys
- Resolves: RHEL-72968, Support for CKM_RSA_AES_KEY_WRAP for cca, ica and soft tokens
- Resolves: RHEL-73343, Upgrade openCryptoki to latest version
- Resolves: RHEL-75144, p11kmip: a tool to import/export PKCS #11 keys from to a KMIP server
- Resolves: RHEL-75761, ep11 token: import and export of secure key objects
- Resolves: RHEL-85374, cca token: Support ECDH to derive AES keys
2025-07-03 17:47:47 +02:00
Than Ngo
c21a52dbf6
Related: RHEL-77146, opencryptoki doesn't work in image mode
2025-04-10 12:19:53 +02:00
Than Ngo
48eb3dabf7
Related: RHEL-77146, opencryptoki doesn't work in image mode
2025-04-10 12:16:52 +02:00
Karel Srot
a66483fe3c
Update test repo location in CI plan
2025-04-09 10:54:52 +02:00
Than Ngo
4be31fffd4
- Resolves: RHEL-80632, tokens are deleted on reboot
...
- Related: RHEL-77146, opencryptoki doesn't work in image mode
2025-03-18 14:59:58 +01:00
Than Ngo
0326a7fd21
- Use tmpfiles to change file ownership for image mode
...
Related: RHEL-77146
2025-02-05 08:59:34 +01:00
Than Ngo
f542873317
- Use systemd-sysusers
...
- Modifie the unit file to change file ownership
- opencryptoki doesn't work in image mode
Resolves: RHEL-77146
2025-02-04 14:46:16 +01:00
Than Ngo
5d7d5b6ecf
- Disable ccatok on aarch64 and i686
...
Related: RHEL-58996
2024-11-26 17:25:28 +01:00
Than Ngo
c3a25e7904
- Fix resource leak
...
Related: RHEL-58996
2024-11-07 13:00:34 +01:00
Troy Dawson
a718c72fd8
Bump release for October 2024 mass rebuild:
...
Resolves: RHEL-64018
2024-10-29 08:52:38 -07:00
Than Ngo
00d5074a2c
Related: RHEL-58996, fix gating issue
2024-10-21 20:11:24 +02:00
Than Ngo
d536f5aa50
- Resolves: RHEL-58996, update to 3.24.0
...
- Resolves: RHEL-39004, provide opencryptoki CCA Token also on x86_64 and ppc64le
- Resolves: RHEL-43675, openCryptoki cca token RSA OAEP v2.1 support
- Resolves: RHEL-43674, openCryptoki CCA token support of Dilithium
- Resolves: RHEL-43676, openCryptoki cca token SHA3 support
- Resolves: RHEL-24036, support protected keys for extractable keys
2024-10-16 21:31:55 +02:00
Troy Dawson
9d052daee9
Bump release for June 2024 mass rebuild
2024-06-24 09:05:44 -07:00
Than Ngo
2686b4a4a4
Resolves: RHEL-42492, SAST
2024-06-18 13:24:52 +02:00
Than Ngo
d1348bb71c
Related: RHEL-24038, backport - ep11 token: support protected keys for extractable keys
2024-05-22 09:40:25 +02:00
Than Ngo
7eff1ca8de
- enabled gating tests
...
- rebuilt
Resolves: RHEL-24037, RHEL-24038
2024-04-16 13:25:57 +02:00
Than Ngo
14c339d15b
- update to 3.23.0
...
* EP11: Add support for FIPS-session mode
* Updates to harden against RSA timing attacks
* Bug fixes
2024-02-07 11:41:50 +01:00
Dan Horák
dfefb523ca
- fix all errors and warnings (rhbz#2261419)
2024-01-30 16:32:01 +01:00
Fedora Release Engineering
8f1b442c95
Rebuilt for https://fedoraproject.org/wiki/Fedora_40_Mass_Rebuild
2024-01-25 11:13:25 +00:00
Fedora Release Engineering
88cccd47bb
Rebuilt for https://fedoraproject.org/wiki/Fedora_40_Mass_Rebuild
2024-01-21 11:09:23 +00:00
Than Ngo
4f20e1212b
update to 3.22.0
2023-09-21 17:42:27 +02:00
Fedora Release Engineering
0eba1a05ea
Rebuilt for https://fedoraproject.org/wiki/Fedora_39_Mass_Rebuild
...
Signed-off-by: Fedora Release Engineering <releng@fedoraproject.org>
2023-07-20 18:01:09 +00:00
Than Ngo
7ae4b00524
- p11sak tool: slot option does not accept argument 0 for slot index 0
...
- p11sak fails as soon as there reside non-key objects
2023-07-17 15:51:40 +02:00
Holger Dengler
0f8dad3102
- fix short description of ep11tok package ( fixes #2196750 )
2023-06-19 12:16:29 +02:00
Than Ngo
a222ec300d
- add verify attributes for opencryptoki.conf to ignore the
...
verification
2023-05-25 14:10:14 +02:00
Than Ngo
e6fc48bed6
- drop p11_kit_support
...
- fix handling of user name
- fix user confirmation prompt behavior when stdin is closed
2023-05-22 20:57:47 +02:00
Than Ngo
a36c8e96e9
add missing /var/lib/opencryptoki/HSM_MK_CHANGE
2023-05-16 13:24:22 +02:00
Than Ngo
fbb90ce0e4
update to 3.21.0
2023-05-15 20:13:20 +02:00
Than Ngo
f405c3b8fc
update to 3.21.0
2023-05-15 17:22:05 +02:00
Than Ngo
e211a280d5
migrated to SPDX license
2023-02-14 19:59:38 +01:00
Than Ngo
4d69833004
drop unnecessary opencryptoki-3.11.0-group.patch, problem with root run all the pkcs11 commands
...
without the need to be a member of the pkcs11 group was fixed long ago
2023-02-13 18:36:55 +01:00
Than Ngo
bca00e7abd
update to 3.20.0
2023-02-13 14:24:17 +01:00
Than Ngo
c8a0d12ced
add missing opencryptoki-3.19.0-fix-memory-leak.patch
2023-02-08 11:57:27 +01:00
Than Ngo
aa8a7709a0
Add support of ep11 token for new IBM Z Hardware (IBM z16)
2023-02-08 11:45:10 +01:00
Dan Horák
550ad4e7a8
add missing BR
2023-01-20 14:07:51 +00:00
Fedora Release Engineering
e435fa6c8a
Rebuilt for https://fedoraproject.org/wiki/Fedora_38_Mass_Rebuild
...
Signed-off-by: Fedora Release Engineering <releng@fedoraproject.org>
2023-01-19 22:47:03 +00:00
Than Ngo
c1bf4511d4
add missing config files ccatok.conf
2022-10-11 18:05:26 +02:00
Than Ngo
ff9dd41b50
update to 3.19.0
2022-10-11 17:49:32 +02:00
Dan Horák
9e7f39d2d6
remove unused BR: systemd-devel
2022-09-19 09:20:06 +02:00
Florian Weimer
e82e62e75d
Add missing build dependency on systemd-rpm-macros
2022-09-14 13:28:57 +02:00
Than Ngo
190ffcb6e9
fix json output
...
do not touch opencryptoki.conf if it is in place already and even if it is unchanged
2022-08-01 18:18:30 +02:00
Fedora Release Engineering
a7176edf2b
Rebuilt for https://fedoraproject.org/wiki/Fedora_37_Mass_Rebuild
...
Signed-off-by: Fedora Release Engineering <releng@fedoraproject.org>
2022-07-22 02:02:49 +00:00
Than Ngo
121df6d7c9
add missing strength.conf
2022-05-09 22:28:17 +02:00
Than Ngo
0aad2e617a
rebase 3.18.0
2022-05-02 14:16:00 +02:00