| Index | index by Group | index by Distribution | index by Vendor | index by creation date | index by Name | Mirrors | Help | Search |
| Name: opencryptoki | Distribution: AlmaLinux |
| Version: 3.25.0 | Vendor: AlmaLinux |
| Release: 5.el10_1.1 | Build date: Wed Feb 25 10:04:14 2026 |
| Group: Unspecified | Build host: arm64-builder01.almalinux.org |
| Size: 1108169 | Source RPM: opencryptoki-3.25.0-5.el10_1.1.src.rpm |
| Packager: AlmaLinux Packaging Team <packager@almalinux.org> | |
| Url: https://github.com/opencryptoki/opencryptoki | |
| Summary: Implementation of the PKCS#11 (Cryptoki) specification v3.0 and partially v3.1 | |
Opencryptoki implements the PKCS#11 specification v3.0 and partially v3.1 for a set of cryptographic hardware, such as IBM 4767, 4768, 4769 and 4770 crypto cards, and the Trusted Platform Module (TPM) chip. Opencryptoki also brings a software token implementation that can be used without any cryptographic hardware. This package contains the Slot Daemon (pkcsslotd) and general utilities.
CPL-1.0
* Mon Feb 02 2026 Than Ngo <than@redhat.com> - 3.25.0-5.1
- Fix unwrapping of attribute bound EC keys
- Fix private secure key blob import
Resolves: RHEL-131645
* Wed Aug 13 2025 Than Ngo <than@redhat.com> - 3.25.0-5
- Resolves: RHEL-109017, pkcsslotd fails to start in FIPS mode
* Tue Jul 29 2025 Than Ngo <than@redhat.com> - 3.25.0-4
- Resolves: RHEL-105910, require openssl >= 3.5.1
* Mon Jul 21 2025 Than Ngo <than@redhat.com> - 3.25.0-3
- Fix incorrect effective group id of pkcsslotd daemon
- Fix covscan findings
Resolves: RHEL-104598
* Wed Jul 09 2025 Than Ngo <than@redhat.com> - 3.25.0-2
- Related: RHEL-73343, Fix detection of EC curve not supported by OpenSSL-3.5.x
- Related: RHEL-77146, Fix the image mode issue again as bootc expects to use /run/lock
* Thu Jul 03 2025 Than Ngo <than@redhat.com> - 3.25.0-1
- Resolves: RHEL-85376, ep11 token: PKCS #11 3.0 - support SHA3
- Resolves: RHEL-90589, CCA token: basic support of AES-GCM
- Resolves: RHEL-72964, cca token support cipher keys
- Resolves: RHEL-72968, Support for CKM_RSA_AES_KEY_WRAP for cca, ica and soft tokens
- Resolves: RHEL-73343, Upgrade openCryptoki to latest version
- Resolves: RHEL-75144, p11kmip: a tool to import/export PKCS #11 keys from to a KMIP server
- Resolves: RHEL-75761, ep11 token: import and export of secure key objects
- Resolves: RHEL-85374, cca token: Support ECDH to derive AES keys
* Wed Apr 09 2025 Than Ngo <than@redhat.com> - 3.24.0-8
- Related: RHEL-77146, opencryptoki doesn't work in image mode
* Tue Mar 18 2025 Than Ngo <than@redhat.com> - 3.24.0-7
- Resolves: RHEL-80632, tokens are deleted on reboot
- Related: RHEL-77146, opencryptoki doesn't work in image mode
* Tue Feb 04 2025 Than Ngo <than@redhat.com> - 3.24.0-6
- Use tmpfiles to change file ownership for image mode
Related: RHEL-77146
* Sun Feb 02 2025 Than Ngo <than@redhat.com> - 3.24.0-5
- Use systemd-sysusers
- Modifie the unit file to change file ownership
- opencryptoki doesn't work in image mode
Resolves: RHEL-77146
* Tue Nov 26 2024 Than Ngo <than@redhat.com> - 3.24.0-4
- Disable ccatok on aarch64 and i686
Related: RHEL-58996
* Thu Nov 07 2024 Than Ngo <than@redhat.com> - 3.24.0-3
- Fix resource leak
Related: RHEL-58996
* Tue Oct 29 2024 Troy Dawson <tdawson@redhat.com> - 3.24.0-2
- Bump release for October 2024 mass rebuild:
Resolves: RHEL-64018
* Wed Oct 16 2024 Than Ngo <than@redhat.com> - 3.24.0-1
- Resolves: RHEL-58996, update to 3.24.0
- Resolves: RHEL-39004, provide opencryptoki CCA Token also on x86_64 and ppc64le
- Resolves: RHEL-43675, openCryptoki cca token RSA OAEP v2.1 support
- Resolves: RHEL-43674, openCryptoki CCA token support of Dilithium
- Resolves: RHEL-43676, openCryptoki cca token SHA3 support
- Resolves: RHEL-24036, support protected keys for extractable keys
* Mon Jun 24 2024 Troy Dawson <tdawson@redhat.com> - 3.23.0-5
- Bump release for June 2024 mass rebuild
* Tue Jun 18 2024 Than Ngo <than@redhat.com> - 3.23.0-4
- Resolves: RHEL-42492, SAST
* Wed May 22 2024 Than Ngo <than@redhat.com> - 3.23.0-3
- Related: RHEL-24038, backport - ep11 token: support protected keys for extractable keys
* Tue Apr 16 2024 Than Ngo <than@redhat.com> - 3.23.0-2
- enable gating tests
Resolves: RHEL-24037, RHEL-24038
* Wed Feb 07 2024 Than Ngo <than@redhat.com> - 3.23.0-1
- 3.23.0
* EP11: Add support for FIPS-session mode
* Updates to harden against RSA timing attacks
* Bug fixes
/etc/opencryptoki /etc/opencryptoki/opencryptoki.conf /etc/opencryptoki/p11kmip.conf /etc/opencryptoki/p11sak_defined_attrs.conf /etc/opencryptoki/strength.conf /run/lock/opencryptoki /run/lock/opencryptoki/icsf /run/lock/opencryptoki/swtok /run/opencryptoki /usr/lib/.build-id /usr/lib/.build-id/07 /usr/lib/.build-id/07/c3943f278537bf6c26ea1a47e486e152b1d6c3 /usr/lib/.build-id/48 /usr/lib/.build-id/48/33d9138e3f244e91aceeff301d4d14e7e33582 /usr/lib/.build-id/78 /usr/lib/.build-id/78/913e88c139ab5582596e0e688929864d5cda1a /usr/lib/.build-id/94 /usr/lib/.build-id/94/b63d38404549815c26f8819c8f246e3adedf8f /usr/lib/.build-id/c0 /usr/lib/.build-id/c0/8509b92b12d0ab90eb3298f26a49b9f3e8111f /usr/lib/.build-id/c3 /usr/lib/.build-id/c3/f166f130ff892892693dd9fd88fbc6ad517167 /usr/lib/.build-id/d0 /usr/lib/.build-id/d0/219608700199eb25bf44cfc09e3fcbc50b5bb1 /usr/lib/.build-id/fc /usr/lib/.build-id/fc/ba3743d9ee2d47c965adaf74aeb39a83e97c3b /usr/lib/systemd/system/pkcsslotd.service /usr/lib/tmpfiles.d/opencryptoki.conf /usr/lib64/opencryptoki/methods /usr/lib64/pkcs11/methods /usr/sbin/p11kmip /usr/sbin/p11sak /usr/sbin/pkcsconf /usr/sbin/pkcshsm_mk_change /usr/sbin/pkcsslotd /usr/sbin/pkcsstats /usr/sbin/pkcstok_admin /usr/sbin/pkcstok_migrate /usr/share/doc/opencryptoki /usr/share/doc/opencryptoki/ChangeLog /usr/share/doc/opencryptoki/FAQ /usr/share/doc/opencryptoki/README.md /usr/share/doc/opencryptoki/README.token_data /usr/share/doc/opencryptoki/opencryptoki-howto.md /usr/share/doc/opencryptoki/policy-example.conf /usr/share/doc/opencryptoki/strength-example.conf /usr/share/man/man1/p11kmip.1.gz /usr/share/man/man1/p11sak.1.gz /usr/share/man/man1/pkcsconf.1.gz /usr/share/man/man1/pkcshsm_mk_change.1.gz /usr/share/man/man1/pkcsstats.1.gz /usr/share/man/man1/pkcstok_admin.1.gz /usr/share/man/man1/pkcstok_migrate.1.gz /usr/share/man/man5/opencryptoki.conf.5.gz /usr/share/man/man5/p11kmip.conf.5.gz /usr/share/man/man5/p11sak_defined_attrs.conf.5.gz /usr/share/man/man5/policy.conf.5.gz /usr/share/man/man5/strength.conf.5.gz /usr/share/man/man7/opencryptoki.7.gz /usr/share/man/man8/pkcsslotd.8.gz /var/lib/opencryptoki /var/lib/opencryptoki/HSM_MK_CHANGE
Generated by rpm2html 1.8.1
Fabrice Bellet, Thu Apr 23 02:20:01 2026