Index index by Group index by Distribution index by Vendor index by creation date index by Name Mirrors Help Search

opencryptoki-3.25.0-4.el9_7.2 RPM for x86_64

From AlmaLinux 9.7 BaseOS for x86_64

Name: opencryptoki Distribution: AlmaLinux
Version: 3.25.0 Vendor: AlmaLinux
Release: 4.el9_7.2 Build date: Tue Mar 24 21:46:02 2026
Group: Unspecified Build host: x64-builder02.almalinux.org
Size: 966457 Source RPM: opencryptoki-3.25.0-4.el9_7.2.src.rpm
Packager: AlmaLinux Packaging Team <packager@almalinux.org>
Url: https://github.com/opencryptoki/opencryptoki
Summary: Implementation of the PKCS#11 (Cryptoki) specification v3.0 and partially v3.1
Opencryptoki implements the PKCS#11 specification  v3.0 and partially v3.1
for a set of cryptographic hardware, such as IBM 4767, 4768, 4769 and 4770
crypto cards, and the Trusted Platform Module (TPM) chip. Opencryptoki also
brings a software token implementation that can be used without any cryptographic
hardware.
This package contains the Slot Daemon (pkcsslotd) and general utilities.

Provides

Requires

License

CPL-1.0

Changelog

* Tue Mar 03 2026 Than Ngo <than@redhat.com> - 3.25.0-4.2
  - Resolves: RHEL-144820, Privilege Escalation or Data Exposure via Symlink Following
* Tue Feb 03 2026 Than Ngo <than@redhat.com> - 3.25.0-4.1
  - Fix unwrapping of attribute bound EC keys
  - Fix private secure key blob import
    Resolves: RHEL-131644
* Wed Aug 13 2025 Than Ngo <than@redhat.com> - 3.25.0-4
  - Fix pkcsslotd fails to start in FIPS
  - Drop tier1 test as it mostly provides duplicate results
  - Enable ci test for FIPS mode
    Resolves: RHEL-109050
* Mon Jul 21 2025 Than Ngo <than@redhat.com> - 3.25.0-3
  - Fix incorrect effective group id of pkcsslotd daemon
  - Fix covscan findings
    Resolves: RHEL-104602
* Mon Jul 14 2025 Than Ngo <than@redhat.com> - 3.25.0-2
  - Related: RHEL-73344, Fix detection of EC curve not supported by OpenSSL-3.5.x
  - Related: RHEL-77147, Fix the image mode issue again as bootc expects to use /run/lock
* Fri Jul 04 2025 Than Ngo <than@redhat.com> - 3.25.0-1
  - Resolves: RHEL-73344, upgrade openCryptoki
  - Resolves: RHEL-90590, basic support of AES-GCM
  - Resolves: RHEL-72965, cca token support cipher keys
  - Resolves: RHEL-72969, support for CKM_RSA_AES_KEY_WRAP for cca, ica and soft tokens
  - Resolves: RHEL-75141, add a tool to import/export PKCS #11 keys from to a KMIP server
  - Resolves: RHEL-75762, ep11 token: import and export of secure key objects
  - Resolves: RHEL-85375, cca token: Support ECDH to derive AES keys
  - Resolves: RHEL-85377, ep11 token: PKCS #11 3.0 - support SHA3
* Wed Apr 09 2025 Than Ngo <than@redhat.com> - 3.24.0-5
  - Related: RHEL-77147, opencryptoki doesn't work in image mode
* Wed Mar 19 2025 Than Ngo <than@redhat.com> - 3.24.0-4
  - Resolves: RHEL-77147, opencryptoki doesn't work in image mode
* Tue Nov 26 2024 Than Ngo <than@redhat.com> - 3.24.0-3
  - Disable ccatok on aarch64
    Related: RHEL-50064
* Thu Nov 07 2024 Than Ngo <than@redhat.com> - 3.24.0-2
  - Fix resource leak
    Related: RHEL-50064
* Tue Oct 22 2024 Than Ngo <than@redhat.com> - 3.24.0-1
  - Resolves: RHEL-50064, update to 3.24.0
  - Resolves: RHEL-50063, opencryptoki CCA Token support for x86_64 and ppc64le
  - Resolves: RHEL-50058, openCryptoki CCA token support of Dilithium
  - Resolves: RHEL-50056, openCryptoki cca token SHA3 support
  - Resolves: RHEL-50057, openCryptoki cca token RSA OAEP v2.1 support
* Wed May 22 2024 Than Ngo <than@redhat.com> - 3.23.0-1
  - Resolves: RHEL-23671, ep11 token: support protected keys for extractable keys
  - Resolves: RHEL-23672, ep11 token support for FIPS 2021-session bound EP11 keys
  - Resolves: RHEL-23673, update to 3.23.0

Files

/etc/opencryptoki
/etc/opencryptoki/opencryptoki.conf
/etc/opencryptoki/p11kmip.conf
/etc/opencryptoki/p11sak_defined_attrs.conf
/etc/opencryptoki/strength.conf
/run/lock/opencryptoki
/run/lock/opencryptoki/ccatok
/run/lock/opencryptoki/icsf
/run/lock/opencryptoki/swtok
/run/opencryptoki
/usr/lib/.build-id
/usr/lib/.build-id/39
/usr/lib/.build-id/39/b1d25571c0bf0d3d91631a1a0dd8349c61784e
/usr/lib/.build-id/42
/usr/lib/.build-id/42/a774d01b75b3542c7f098f29d06afe45479d86
/usr/lib/.build-id/6b
/usr/lib/.build-id/6b/73fb3423ff15690d72d6cb409058e8095b2fb2
/usr/lib/.build-id/6f
/usr/lib/.build-id/6f/67a44bcf171543ccfe9f3d35aacee702d3f58c
/usr/lib/.build-id/7c
/usr/lib/.build-id/7c/56f2d3a229813d34d564cba8182bd7332a1131
/usr/lib/.build-id/c6
/usr/lib/.build-id/c6/0d4feddd1f54c9aed8744b6dc5734aa4c03a80
/usr/lib/.build-id/c9
/usr/lib/.build-id/c9/27191d8793002d1624e9d7dd29e11646dbc9a8
/usr/lib/.build-id/ec
/usr/lib/.build-id/ec/6ba8fd207f092085d65ae370425db5017e4aa2
/usr/lib/systemd/system/pkcsslotd.service
/usr/lib/tmpfiles.d/opencryptoki.conf
/usr/lib64/opencryptoki/methods
/usr/lib64/pkcs11/methods
/usr/sbin/p11kmip
/usr/sbin/p11sak
/usr/sbin/pkcsconf
/usr/sbin/pkcshsm_mk_change
/usr/sbin/pkcsslotd
/usr/sbin/pkcsstats
/usr/sbin/pkcstok_admin
/usr/sbin/pkcstok_migrate
/usr/share/doc/opencryptoki
/usr/share/doc/opencryptoki/ChangeLog
/usr/share/doc/opencryptoki/FAQ
/usr/share/doc/opencryptoki/README.md
/usr/share/doc/opencryptoki/README.token_data
/usr/share/doc/opencryptoki/opencryptoki-howto.md
/usr/share/doc/opencryptoki/policy-example.conf
/usr/share/doc/opencryptoki/strength-example.conf
/usr/share/man/man1/p11kmip.1.gz
/usr/share/man/man1/p11sak.1.gz
/usr/share/man/man1/pkcsconf.1.gz
/usr/share/man/man1/pkcshsm_mk_change.1.gz
/usr/share/man/man1/pkcsstats.1.gz
/usr/share/man/man1/pkcstok_admin.1.gz
/usr/share/man/man1/pkcstok_migrate.1.gz
/usr/share/man/man5/opencryptoki.conf.5.gz
/usr/share/man/man5/p11kmip.conf.5.gz
/usr/share/man/man5/p11sak_defined_attrs.conf.5.gz
/usr/share/man/man5/policy.conf.5.gz
/usr/share/man/man5/strength.conf.5.gz
/usr/share/man/man7/opencryptoki.7.gz
/usr/share/man/man8/pkcsslotd.8.gz
/var/lib/opencryptoki
/var/lib/opencryptoki/HSM_MK_CHANGE


Generated by rpm2html 1.8.1

Fabrice Bellet, Thu Apr 23 03:00:54 2026