Format: 1.8 Date: Fri, 07 Jul 2023 12:15:35 +0200 Source: opencryptoki Binary: libopencryptoki-dev libopencryptoki0 opencryptoki Built-For-Profiles: noudeb Architecture: armhf Version: 3.21.0+dfsg-0ubuntu1 Distribution: mantic-proposed Urgency: medium Maintainer: Launchpad Build Daemon Changed-By: Frank Heimes Description: libopencryptoki-dev - PKCS#11 implementation (development) libopencryptoki0 - PKCS#11 implementation (library) opencryptoki - PKCS#11 implementation (daemon) Launchpad-Bugs-Fixed: 2022088 2025917 2025922 2025923 2025926 2026732 Changes: opencryptoki (3.21.0+dfsg-0ubuntu1) mantic; urgency=medium . * New upstream release (LP: #2026732), incl. support for: - concurrent MK rotation for ep11 token (LP: #2025917) - concurrent MK rotation for cca token (LP: #2025926) - cca token: protected key support (LP: #2025923) - pkcsslotd hardening (LP: #2025922) Required modifications: - add libcap-dev to Build-Depends - adjust and refresh d/p/01-disable-testcases.patch due to changed context - adjust and refresh d/p/04-pkcsslotd-cmdline-args.patch due to changed context and fuzz - adjust, expand and refresh d/p/lp-1982842-move-pkcs11-group-assigment-from-makefile-to-postinst.patch due to changed context and changes around pkcsslotd, which req. folders added to d/opencryptoki.dirs and modifications in d/opencryptoki.postinst and d/opencryptoki.postrm to work properly. Fix selected issues on top of v3.21 and add: - d/p/lp-2026732-common-Correctly-set-default-attributes-for-certific.patch - d/p/lp-2026732-p11sak-Fix-user-confirmation-prompt-behavior-when-st.patch - d/p/lp-2026732-pkcsstats-Fix-handling-of-user-name.patch - d/p/lp-2026732-p11sak-fix-length-handling-when-importing-and-export.patch - d/p/lp-2026732-p11sak-Fix-listing-of-key-objects-when-other-object-.patch - d/p/lp-2026732-p11sak-Fix-parsing-of-slot-number-0.patch * According to LP: #2022088 comment #4, revert d/rules, d/triggers d/libopencryptoki0.{install,links} back, but do not instead add d/p/lp-2022088-fix-p11sak-failure-to-find-libopencryptoki.so.patch to fix 'failure that p11sak is not able to find libopencryptoki', since the p11sak code was refactored and changed significantly in v3.21. To fix this now expand d/p/03-dlopen-soname.patch with hunks for usr/sbin/p11sak/p11sak.h, usr/sbin/pkcshsm_mk_change/pkcshsm_mk_change.c, usr/sbin/pkcsstats/pkcsstats.c, testcases/common/common.c and testcases/policy/policytest.c * d/libopencryptoki0.links{.s390x} Merge files, since the content of the s390x version of this file applies to all platforms. * d/*: changes due to wrap-and-sort run Checksums-Sha1: 89714b1d9f5ba2e89b1143a84119ddd96bd2e64a 22836 libopencryptoki-dev_3.21.0+dfsg-0ubuntu1_armhf.deb 4fcc5818c29f01b92b37da58892ddb156bf27f21 3047642 libopencryptoki0-dbgsym_3.21.0+dfsg-0ubuntu1_armhf.ddeb d7342bbe03d511a54ec197a78de1367902b7166c 678978 libopencryptoki0_3.21.0+dfsg-0ubuntu1_armhf.deb b49529bb2872006748e04f299e4cbcc961142135 1236010 opencryptoki-dbgsym_3.21.0+dfsg-0ubuntu1_armhf.ddeb d55f4dd4426169d7deaa486328174a87c1cada51 7432 opencryptoki_3.21.0+dfsg-0ubuntu1_armhf.buildinfo a39cc40632ab4bd938f84358cdf961b7b0d8a1ea 404960 opencryptoki_3.21.0+dfsg-0ubuntu1_armhf.deb Checksums-Sha256: 11e13509129fefac93ce40468d9ed57c9b894f5f27621d8e38dd654accbf0ef2 22836 libopencryptoki-dev_3.21.0+dfsg-0ubuntu1_armhf.deb 3d580f2551066276ce57288b4632df3e061ca3471a6b58412fd075f3e95127b3 3047642 libopencryptoki0-dbgsym_3.21.0+dfsg-0ubuntu1_armhf.ddeb 62f62c2eccfbeafe3de7eee3483e853f7888ea132eefac4eeba0999b60235418 678978 libopencryptoki0_3.21.0+dfsg-0ubuntu1_armhf.deb 2c125fce0a430b931ade58d25c08a0cbbc68c6e90959d3f5f4e04b870cd5343d 1236010 opencryptoki-dbgsym_3.21.0+dfsg-0ubuntu1_armhf.ddeb 59a8d7bd36eb8576fb9bd2d22da86e7f43adfad832ba8e30d93722218104746c 7432 opencryptoki_3.21.0+dfsg-0ubuntu1_armhf.buildinfo fb790c98a2de19bda43a9caf2e0960dac9f6e1818e1da6260bd0eb5fce477533 404960 opencryptoki_3.21.0+dfsg-0ubuntu1_armhf.deb Files: 87251fa8166e1516824351a5396e22b0 22836 libdevel optional libopencryptoki-dev_3.21.0+dfsg-0ubuntu1_armhf.deb 1b4a7eb621df6c8b663bf8b43b6dad44 3047642 debug optional libopencryptoki0-dbgsym_3.21.0+dfsg-0ubuntu1_armhf.ddeb 592e5b2f87b4a01eb890563d2271f924 678978 libs optional libopencryptoki0_3.21.0+dfsg-0ubuntu1_armhf.deb 68be9130a731ba9b7dd77a334d8a7198 1236010 debug optional opencryptoki-dbgsym_3.21.0+dfsg-0ubuntu1_armhf.ddeb 37aef950dc5fe3259ece4b37b7954754 7432 admin optional opencryptoki_3.21.0+dfsg-0ubuntu1_armhf.buildinfo 26951177efb84ebf24d64689d0cea7da 404960 admin optional opencryptoki_3.21.0+dfsg-0ubuntu1_armhf.deb Original-Maintainer: Paulo Vital