| Index | index by Group | index by Distribution | index by Vendor | index by creation date | index by Name | Mirrors | Help | Search |
| Name: opencryptoki | Distribution: AlmaLinux |
| Version: 3.27.0 | Vendor: AlmaLinux |
| Release: 1.el10.alma.1 | Build date: Tue Aug 11 11:48:21 2026 |
| Group: Unspecified | Build host: x64-builder01.almalinux.org |
| Size: 973731 | Source RPM: opencryptoki-3.27.0-1.el10.alma.1.src.rpm |
| Packager: AlmaLinux Packaging Team <packager@almalinux.org> | |
| Url: https://github.com/opencryptoki/opencryptoki | |
| Summary: Implementation of the PKCS#11 (Cryptoki) specification v3.0 and partially v3.1 | |
Opencryptoki implements the PKCS#11 specification v3.0 and partially v3.1, v3.2 for a set of cryptographic hardware, such as IBM 4767, 4768, 4769 and 4770 crypto cards, and the Trusted Platform Module (TPM) chip. Opencryptoki also brings a software token implementation that can be used without any cryptographic hardware. This package contains the Slot Daemon (pkcsslotd) and general utilities.
CPL-1.0
* Tue Aug 11 2026 Eduard Abdullin <eabdullin@almalinux.org> - 3.27.0-1.alma.1
- Fix build on i686: size_t vs CK_ULONG pointer incompatibility
* Tue Jul 21 2026 Than Ngo <than@redhat.com> - 3.27.0-1
- Resolves: RHEL-171557, Fix CVE-2026-40253
- Resolves: RHEL-169193, Fix syslog warning even for identically configured control points
- Resolves: RHEL-157535, openCryptoki soft token: support PKCS #11 V3.2 ML-DSA and ML-KEM
- Resolves: RHEL-157678, openCryptoki CCA token: support PKCS #11 V3.2 ML-DSA
- Resolves: RHEL-157805, openCryptoki EP11 token: support PKCS #11 V3.2 ML-DSA and ML-KEM
- Resolves: RHEL-136094, Update to 3.27.0
* Fri Feb 13 2026 Than Ngo <than@redhat.com> - 3.26.0-2
- Resolves: RHEL-144816, CVE-2026-23893
* Wed Dec 17 2025 Than Ngo <than@redhat.com> - 3.26.0-1
- Resolves: RHEL-75138, ep11 token BLS support
- Resolves: RHEL-85380, ep11 token: ML-KEM and ML-DSA support
- Resolves: RHEL-85383, cca token: ML-KEM and ML-DSA support
- Resolves: RHEL-100058, openCryptoki 3.26.0
* Wed Aug 13 2025 Than Ngo <than@redhat.com> - 3.25.0-5
- Resolves: RHEL-109017, pkcsslotd fails to start in FIPS mode
* Tue Jul 29 2025 Than Ngo <than@redhat.com> - 3.25.0-4
- Resolves: RHEL-105910, require openssl >= 3.5.1
* Mon Jul 21 2025 Than Ngo <than@redhat.com> - 3.25.0-3
- Fix incorrect effective group id of pkcsslotd daemon
- Fix covscan findings
Resolves: RHEL-104598
* Wed Jul 09 2025 Than Ngo <than@redhat.com> - 3.25.0-2
- Related: RHEL-73343, Fix detection of EC curve not supported by OpenSSL-3.5.x
- Related: RHEL-77146, Fix the image mode issue again as bootc expects to use /run/lock
* Thu Jul 03 2025 Than Ngo <than@redhat.com> - 3.25.0-1
- Resolves: RHEL-85376, ep11 token: PKCS #11 3.0 - support SHA3
- Resolves: RHEL-90589, CCA token: basic support of AES-GCM
- Resolves: RHEL-72964, cca token support cipher keys
- Resolves: RHEL-72968, Support for CKM_RSA_AES_KEY_WRAP for cca, ica and soft tokens
- Resolves: RHEL-73343, Upgrade openCryptoki to latest version
- Resolves: RHEL-75144, p11kmip: a tool to import/export PKCS #11 keys from to a KMIP server
- Resolves: RHEL-75761, ep11 token: import and export of secure key objects
- Resolves: RHEL-85374, cca token: Support ECDH to derive AES keys
* Wed Apr 09 2025 Than Ngo <than@redhat.com> - 3.24.0-8
- Related: RHEL-77146, opencryptoki doesn't work in image mode
* Tue Mar 18 2025 Than Ngo <than@redhat.com> - 3.24.0-7
- Resolves: RHEL-80632, tokens are deleted on reboot
- Related: RHEL-77146, opencryptoki doesn't work in image mode
* Tue Feb 04 2025 Than Ngo <than@redhat.com> - 3.24.0-6
- Use tmpfiles to change file ownership for image mode
Related: RHEL-77146
* Sun Feb 02 2025 Than Ngo <than@redhat.com> - 3.24.0-5
- Use systemd-sysusers
- Modifie the unit file to change file ownership
- opencryptoki doesn't work in image mode
Resolves: RHEL-77146
* Tue Nov 26 2024 Than Ngo <than@redhat.com> - 3.24.0-4
- Disable ccatok on aarch64 and i686
Related: RHEL-58996
* Thu Nov 07 2024 Than Ngo <than@redhat.com> - 3.24.0-3
- Fix resource leak
Related: RHEL-58996
* Tue Oct 29 2024 Troy Dawson <tdawson@redhat.com> - 3.24.0-2
- Bump release for October 2024 mass rebuild:
Resolves: RHEL-64018
* Wed Oct 16 2024 Than Ngo <than@redhat.com> - 3.24.0-1
- Resolves: RHEL-58996, update to 3.24.0
- Resolves: RHEL-39004, provide opencryptoki CCA Token also on x86_64 and ppc64le
- Resolves: RHEL-43675, openCryptoki cca token RSA OAEP v2.1 support
- Resolves: RHEL-43674, openCryptoki CCA token support of Dilithium
- Resolves: RHEL-43676, openCryptoki cca token SHA3 support
- Resolves: RHEL-24036, support protected keys for extractable keys
/etc/opencryptoki /etc/opencryptoki/opencryptoki.conf /etc/opencryptoki/p11kmip.conf /etc/opencryptoki/p11sak_defined_attrs.conf /etc/opencryptoki/strength.conf /run/lock/opencryptoki /run/lock/opencryptoki/ccatok /run/lock/opencryptoki/icsf /run/lock/opencryptoki/swtok /run/opencryptoki /usr/lib/.build-id /usr/lib/.build-id/02 /usr/lib/.build-id/02/dea0c29f51373ae038c2781ddec0d4662bd705 /usr/lib/.build-id/0a /usr/lib/.build-id/0a/8f6fb80789a5577f9e7d58e87c73e8a4441f8e /usr/lib/.build-id/63 /usr/lib/.build-id/63/9c968f407c89ed883b07821da85dc3e3915a24 /usr/lib/.build-id/82 /usr/lib/.build-id/82/96762f332713e18e29893a995cc194987719d2 /usr/lib/.build-id/a0 /usr/lib/.build-id/a0/9353786a4c0c54e653af97a6d506883bd4e806 /usr/lib/.build-id/e0 /usr/lib/.build-id/e0/4b99aeb8723f4e33c2c183612082381241c9b2 /usr/lib/.build-id/f1 /usr/lib/.build-id/f1/1d1aed417741337275b218d7559fcd34da5a14 /usr/lib/.build-id/ff /usr/lib/.build-id/ff/9b5bd5f479ade926492b319d0a5710efd1517c /usr/lib/systemd/system/pkcsslotd.service /usr/lib/tmpfiles.d/opencryptoki.conf /usr/lib64/opencryptoki/methods /usr/lib64/pkcs11/methods /usr/sbin/p11kmip /usr/sbin/p11sak /usr/sbin/pkcsconf /usr/sbin/pkcshsm_mk_change /usr/sbin/pkcsslotd /usr/sbin/pkcsstats /usr/sbin/pkcstok_admin /usr/sbin/pkcstok_migrate /usr/share/doc/opencryptoki /usr/share/doc/opencryptoki/ChangeLog /usr/share/doc/opencryptoki/FAQ /usr/share/doc/opencryptoki/README.md /usr/share/doc/opencryptoki/README.token_data /usr/share/doc/opencryptoki/opencryptoki-howto.md /usr/share/doc/opencryptoki/policy-example.conf /usr/share/doc/opencryptoki/strength-example.conf /usr/share/man/man1/p11kmip.1.gz /usr/share/man/man1/p11sak.1.gz /usr/share/man/man1/pkcsconf.1.gz /usr/share/man/man1/pkcshsm_mk_change.1.gz /usr/share/man/man1/pkcsstats.1.gz /usr/share/man/man1/pkcstok_admin.1.gz /usr/share/man/man1/pkcstok_migrate.1.gz /usr/share/man/man5/opencryptoki.conf.5.gz /usr/share/man/man5/p11kmip.conf.5.gz /usr/share/man/man5/p11sak_defined_attrs.conf.5.gz /usr/share/man/man5/policy.conf.5.gz /usr/share/man/man5/strength.conf.5.gz /usr/share/man/man7/opencryptoki.7.gz /usr/share/man/man8/pkcsslotd.8.gz /var/lib/opencryptoki /var/lib/opencryptoki/HSM_MK_CHANGE
Generated by rpm2html 1.8.1
Fabrice Bellet, Thu Sep 3 08:48:51 2026