Implementation of the PKCS#11 (Cryptoki) specification v3.0 and partially v3.1
Репозитории
BaseOS
Полное описание
Opencryptoki implements the PKCS#11 specification v3.0 and partially v3.1
for a set of cryptographic hardware, such as IBM 4767, 4768, 4769 and 4770
crypto cards, and the Trusted Platform Module (TPM) chip. Opencryptoki also
brings a software token implementation that can be used without any cryptographic
hardware.
This package contains the Slot Daemon (pkcsslotd) and general utilities.
* Wed Aug 13 2025 Than Ngo <than@redhat.com> - 3.25.0-5
- Resolves: RHEL-109017, pkcsslotd fails to start in FIPS mode
* Tue Jul 29 2025 Than Ngo <than@redhat.com> - 3.25.0-4
- Resolves: RHEL-105910, require openssl >= 3.5.1
* Mon Jul 21 2025 Than Ngo <than@redhat.com> - 3.25.0-3
- Fix incorrect effective group id of pkcsslotd daemon
- Fix covscan findings
Resolves: RHEL-104598
* Wed Jul 09 2025 Than Ngo <than@redhat.com> - 3.25.0-2
- Related: RHEL-73343, Fix detection of EC curve not supported by OpenSSL-3.5.x
- Related: RHEL-77146, Fix the image mode issue again as bootc expects to use /run/lock
* Thu Jul 03 2025 Than Ngo <than@redhat.com> - 3.25.0-1
- Resolves: RHEL-85376, ep11 token: PKCS #11 3.0 - support SHA3
- Resolves: RHEL-90589, CCA token: basic support of AES-GCM
- Resolves: RHEL-72964, cca token support cipher keys
- Resolves: RHEL-72968, Support for CKM_RSA_AES_KEY_WRAP for cca, ica and soft tokens
- Resolves: RHEL-73343, Upgrade openCryptoki to latest version
- Resolves: RHEL-75144, p11kmip: a tool to import/export PKCS #11 keys from to a KMIP server
- Resolves: RHEL-75761, ep11 token: import and export of secure key objects
- Resolves: RHEL-85374, cca token: Support ECDH to derive AES keys
* Wed Apr 09 2025 Than Ngo <than@redhat.com> - 3.24.0-8
- Related: RHEL-77146, opencryptoki doesn't work in image mode
* Tue Mar 18 2025 Than Ngo <than@redhat.com> - 3.24.0-7
- Resolves: RHEL-80632, tokens are deleted on reboot
- Related: RHEL-77146, opencryptoki doesn't work in image mode
* Tue Feb 04 2025 Than Ngo <than@redhat.com> - 3.24.0-6
- Use tmpfiles to change file ownership for image mode
Related: RHEL-77146
* Sun Feb 02 2025 Than Ngo <than@redhat.com> - 3.24.0-5
- Use systemd-sysusers
- Modifie the unit file to change file ownership
- opencryptoki doesn't work in image mode
Resolves: RHEL-77146
* Tue Nov 26 2024 MSVSphere Packaging Team <packager@msvsphere-os.ru> - 3.24.0-4
- Rebuilt for MSVSphere 10