opencryptoki 3.21.0+dfsg-0ubuntu1 source package in Ubuntu

Changelog

opencryptoki (3.21.0+dfsg-0ubuntu1) mantic; urgency=medium

  * New upstream release (LP: #2026732), incl. support for:
    - concurrent MK rotation for ep11 token (LP: #2025917)
    - concurrent MK rotation for cca token (LP: #2025926)
    - cca token: protected key support (LP: #2025923)
    - pkcsslotd hardening (LP: #2025922)
    Required modifications:
    - add libcap-dev to Build-Depends
    - adjust and refresh d/p/01-disable-testcases.patch due to changed context
    - adjust and refresh d/p/04-pkcsslotd-cmdline-args.patch due to changed
      context and fuzz
    - adjust, expand and refresh
      d/p/lp-1982842-move-pkcs11-group-assigment-from-makefile-to-postinst.patch
      due to changed context and changes around pkcsslotd, which req. folders
      added to d/opencryptoki.dirs and modifications in d/opencryptoki.postinst
      and d/opencryptoki.postrm to work properly.
    Fix selected issues on top of v3.21 and add:
    - d/p/lp-2026732-common-Correctly-set-default-attributes-for-certific.patch
    - d/p/lp-2026732-p11sak-Fix-user-confirmation-prompt-behavior-when-st.patch
    - d/p/lp-2026732-pkcsstats-Fix-handling-of-user-name.patch
    - d/p/lp-2026732-p11sak-fix-length-handling-when-importing-and-export.patch
    - d/p/lp-2026732-p11sak-Fix-listing-of-key-objects-when-other-object-.patch
    - d/p/lp-2026732-p11sak-Fix-parsing-of-slot-number-0.patch
  * According to LP: #2022088 comment #4, revert d/rules, d/triggers
    d/libopencryptoki0.{install,links} back, but do not instead add
    d/p/lp-2022088-fix-p11sak-failure-to-find-libopencryptoki.so.patch
    to fix 'failure that p11sak is not able to find libopencryptoki',
    since the p11sak code was refactored and changed significantly in v3.21.
    To fix this now expand d/p/03-dlopen-soname.patch with hunks for
    usr/sbin/p11sak/p11sak.h, usr/sbin/pkcshsm_mk_change/pkcshsm_mk_change.c,
    usr/sbin/pkcsstats/pkcsstats.c, testcases/common/common.c and
    testcases/policy/policytest.c
  * d/libopencryptoki0.links{.s390x} Merge files, since the content of the
    s390x version of this file applies to all platforms.
  * d/*: changes due to wrap-and-sort run

 -- Frank Heimes <email address hidden>  Fri, 07 Jul 2023 12:15:35 +0200

Upload details

Uploaded by:
Frank Heimes
Uploaded to:
Mantic
Original maintainer:
Ubuntu Developers
Architectures:
any
Section:
utils
Urgency:
Medium Urgency

See full publishing history Publishing

Series Pocket Published Component Section
Mantic release universe utils

Downloads

File Size SHA-256 Checksum
opencryptoki_3.21.0+dfsg.orig.tar.xz 1.1 MiB 50ce50ce26d731cde80bcaea100e60426ff6cbae644fd1b0e7dee570cd7d80ea
opencryptoki_3.21.0+dfsg-0ubuntu1.debian.tar.xz 22.4 KiB 67daa8d1a4230bb8f0ec1650edf5a1d4eabb75323d4592f1254d72917ee5cee3
opencryptoki_3.21.0+dfsg-0ubuntu1.dsc 1.8 KiB eb31cc4cc23d524de5ad4df77cc77e0a6c3bc83894a99002d65d8ee9b688f75c

View changes file

Binary packages built by this source

libopencryptoki-dev: PKCS#11 implementation (development)

 openCryptoki is a PKCS#11 Cryptographic Token Interface Standard
 implementation. It includes drivers and libraries to enable IBM cryptographic
 hardware such as Trusted Computing Platform (TPM) cryptographic devices as well
 as a software token for testing.
 .
 This package contains the development files.

libopencryptoki0: PKCS#11 implementation (library)

 openCryptoki is a PKCS#11 Cryptographic Token Interface Standard
 implementation. It includes drivers and libraries to enable IBM cryptographic
 hardware such as Trusted Computing Platform (TPM) cryptographic devices as well
 as a software token for testing.
 .
 This package contains the library.

libopencryptoki0-dbgsym: debug symbols for libopencryptoki0
opencryptoki: PKCS#11 implementation (daemon)

 openCryptoki is a PKCS#11 Cryptographic Token Interface Standard
 implementation. It includes drivers and libraries to enable IBM cryptographic
 hardware such as Trusted Computing Platform (TPM) cryptographic devices as well
 as a software token for testing.
 .
 This package contains the daemon.

opencryptoki-dbgsym: debug symbols for opencryptoki