| Index | index by Group | index by Distribution | index by Vendor | index by creation date | index by Name | Mirrors | Help | Search |
| Name: opencryptoki | Distribution: AlmaLinux |
| Version: 3.25.0 | Vendor: AlmaLinux |
| Release: 5.el10_1.2 | Build date: Tue Mar 17 19:22:47 2026 |
| Group: Unspecified | Build host: arm64-builder01.almalinux.org |
| Size: 1108145 | Source RPM: opencryptoki-3.25.0-5.el10_1.2.src.rpm |
| Packager: AlmaLinux Packaging Team <packager@almalinux.org> | |
| Url: https://github.com/opencryptoki/opencryptoki | |
| Summary: Implementation of the PKCS#11 (Cryptoki) specification v3.0 and partially v3.1 | |
Opencryptoki implements the PKCS#11 specification v3.0 and partially v3.1 for a set of cryptographic hardware, such as IBM 4767, 4768, 4769 and 4770 crypto cards, and the Trusted Platform Module (TPM) chip. Opencryptoki also brings a software token implementation that can be used without any cryptographic hardware. This package contains the Slot Daemon (pkcsslotd) and general utilities.
CPL-1.0
* Mon Mar 02 2026 Than Ngo <than@redhat.com> - 3.25.0-5.2
- Resolves: RHEL-144815, Privilege Escalation or Data Exposure via Symlink Following
* Mon Feb 02 2026 Than Ngo <than@redhat.com> - 3.25.0-5.1
- Fix unwrapping of attribute bound EC keys
- Fix private secure key blob import
Resolves: RHEL-131645
* Wed Aug 13 2025 Than Ngo <than@redhat.com> - 3.25.0-5
- Resolves: RHEL-109017, pkcsslotd fails to start in FIPS mode
* Tue Jul 29 2025 Than Ngo <than@redhat.com> - 3.25.0-4
- Resolves: RHEL-105910, require openssl >= 3.5.1
* Mon Jul 21 2025 Than Ngo <than@redhat.com> - 3.25.0-3
- Fix incorrect effective group id of pkcsslotd daemon
- Fix covscan findings
Resolves: RHEL-104598
* Wed Jul 09 2025 Than Ngo <than@redhat.com> - 3.25.0-2
- Related: RHEL-73343, Fix detection of EC curve not supported by OpenSSL-3.5.x
- Related: RHEL-77146, Fix the image mode issue again as bootc expects to use /run/lock
* Thu Jul 03 2025 Than Ngo <than@redhat.com> - 3.25.0-1
- Resolves: RHEL-85376, ep11 token: PKCS #11 3.0 - support SHA3
- Resolves: RHEL-90589, CCA token: basic support of AES-GCM
- Resolves: RHEL-72964, cca token support cipher keys
- Resolves: RHEL-72968, Support for CKM_RSA_AES_KEY_WRAP for cca, ica and soft tokens
- Resolves: RHEL-73343, Upgrade openCryptoki to latest version
- Resolves: RHEL-75144, p11kmip: a tool to import/export PKCS #11 keys from to a KMIP server
- Resolves: RHEL-75761, ep11 token: import and export of secure key objects
- Resolves: RHEL-85374, cca token: Support ECDH to derive AES keys
* Wed Apr 09 2025 Than Ngo <than@redhat.com> - 3.24.0-8
- Related: RHEL-77146, opencryptoki doesn't work in image mode
* Tue Mar 18 2025 Than Ngo <than@redhat.com> - 3.24.0-7
- Resolves: RHEL-80632, tokens are deleted on reboot
- Related: RHEL-77146, opencryptoki doesn't work in image mode
* Tue Feb 04 2025 Than Ngo <than@redhat.com> - 3.24.0-6
- Use tmpfiles to change file ownership for image mode
Related: RHEL-77146
* Sun Feb 02 2025 Than Ngo <than@redhat.com> - 3.24.0-5
- Use systemd-sysusers
- Modifie the unit file to change file ownership
- opencryptoki doesn't work in image mode
Resolves: RHEL-77146
* Tue Nov 26 2024 Than Ngo <than@redhat.com> - 3.24.0-4
- Disable ccatok on aarch64 and i686
Related: RHEL-58996
* Thu Nov 07 2024 Than Ngo <than@redhat.com> - 3.24.0-3
- Fix resource leak
Related: RHEL-58996
* Tue Oct 29 2024 Troy Dawson <tdawson@redhat.com> - 3.24.0-2
- Bump release for October 2024 mass rebuild:
Resolves: RHEL-64018
* Wed Oct 16 2024 Than Ngo <than@redhat.com> - 3.24.0-1
- Resolves: RHEL-58996, update to 3.24.0
- Resolves: RHEL-39004, provide opencryptoki CCA Token also on x86_64 and ppc64le
- Resolves: RHEL-43675, openCryptoki cca token RSA OAEP v2.1 support
- Resolves: RHEL-43674, openCryptoki CCA token support of Dilithium
- Resolves: RHEL-43676, openCryptoki cca token SHA3 support
- Resolves: RHEL-24036, support protected keys for extractable keys
* Mon Jun 24 2024 Troy Dawson <tdawson@redhat.com> - 3.23.0-5
- Bump release for June 2024 mass rebuild
* Tue Jun 18 2024 Than Ngo <than@redhat.com> - 3.23.0-4
- Resolves: RHEL-42492, SAST
* Wed May 22 2024 Than Ngo <than@redhat.com> - 3.23.0-3
- Related: RHEL-24038, backport - ep11 token: support protected keys for extractable keys
* Tue Apr 16 2024 Than Ngo <than@redhat.com> - 3.23.0-2
- enable gating tests
Resolves: RHEL-24037, RHEL-24038
/etc/opencryptoki /etc/opencryptoki/opencryptoki.conf /etc/opencryptoki/p11kmip.conf /etc/opencryptoki/p11sak_defined_attrs.conf /etc/opencryptoki/strength.conf /run/lock/opencryptoki /run/lock/opencryptoki/icsf /run/lock/opencryptoki/swtok /run/opencryptoki /usr/lib/.build-id /usr/lib/.build-id/31 /usr/lib/.build-id/31/ee9dede371a6406422a1470963de30587f2e66 /usr/lib/.build-id/5b /usr/lib/.build-id/5b/c9dfb7e386c2c54a3e20e46e44e8de94bd4d67 /usr/lib/.build-id/5e /usr/lib/.build-id/5e/f44cdf6f65b3b589c904433ca4fa169ab4006e /usr/lib/.build-id/92 /usr/lib/.build-id/92/1f9768beaf893dc112f73d6cf9c81cb775e0f4 /usr/lib/.build-id/9c /usr/lib/.build-id/9c/08ce347e47832c136cd43fb2a6d160c403498a /usr/lib/.build-id/a5 /usr/lib/.build-id/a5/ab08285c03de93d55fae7abe26a3c63adedf8f /usr/lib/.build-id/e1 /usr/lib/.build-id/e1/c89e3be6f6464556b6bf82292a5fe73f778aec /usr/lib/.build-id/fb /usr/lib/.build-id/fb/d7197fd1f72877eaa68418a71e31b2e65c2894 /usr/lib/systemd/system/pkcsslotd.service /usr/lib/tmpfiles.d/opencryptoki.conf /usr/lib64/opencryptoki/methods /usr/lib64/pkcs11/methods /usr/sbin/p11kmip /usr/sbin/p11sak /usr/sbin/pkcsconf /usr/sbin/pkcshsm_mk_change /usr/sbin/pkcsslotd /usr/sbin/pkcsstats /usr/sbin/pkcstok_admin /usr/sbin/pkcstok_migrate /usr/share/doc/opencryptoki /usr/share/doc/opencryptoki/ChangeLog /usr/share/doc/opencryptoki/FAQ /usr/share/doc/opencryptoki/README.md /usr/share/doc/opencryptoki/README.token_data /usr/share/doc/opencryptoki/opencryptoki-howto.md /usr/share/doc/opencryptoki/policy-example.conf /usr/share/doc/opencryptoki/strength-example.conf /usr/share/man/man1/p11kmip.1.gz /usr/share/man/man1/p11sak.1.gz /usr/share/man/man1/pkcsconf.1.gz /usr/share/man/man1/pkcshsm_mk_change.1.gz /usr/share/man/man1/pkcsstats.1.gz /usr/share/man/man1/pkcstok_admin.1.gz /usr/share/man/man1/pkcstok_migrate.1.gz /usr/share/man/man5/opencryptoki.conf.5.gz /usr/share/man/man5/p11kmip.conf.5.gz /usr/share/man/man5/p11sak_defined_attrs.conf.5.gz /usr/share/man/man5/policy.conf.5.gz /usr/share/man/man5/strength.conf.5.gz /usr/share/man/man7/opencryptoki.7.gz /usr/share/man/man8/pkcsslotd.8.gz /var/lib/opencryptoki /var/lib/opencryptoki/HSM_MK_CHANGE
Generated by rpm2html 1.8.1
Fabrice Bellet, Sat Apr 18 05:00:57 2026