From d6fbf12ace75b38da57031c6eb7d5777a5acd4b21d40371137e6e621cdc3ee3d Mon Sep 17 00:00:00 2001 From: Mark Post Date: Tue, 12 Nov 2019 05:07:33 +0000 Subject: [PATCH] Accepting request 747465 from home:markkp:branches:security - Upgraded to version 3.12.0 (jsc#SLE-7647, jsc#SLE-7894, jsc#SLE-7915, jsc#SLE-7918) * Update token pin and data store encryption for soft,ica,cca and ep11 * EP11: Allow importing of compressed EC public keys * EP11: Add support for the CMAC mechanisms * EP11: Add support for the IBM-SHA3 mechanisms * SOFT: Add AES-CMAC and 3DES-CMAC support to the soft token * ICA: Add AES-CMAC and 3DES-CMAC support to the ICA token * EP11: Add config option USE_PRANDOM * CCA: Use Random Number Generate Long for token_specific_rng() * Common rng function: Prefer /dev/prandom over /dev/urandom * ICA: add SHA*_RSA_PKCS_PSS mechanisms * Bug fixes - Removed obsolete ocki-3.11.1-EP11-Support-tolerated-new-crypto-cards.patch - Added ocki-3.11.1-EP11-Support-tolerated-new-crypto-cards.patch (bsc#1152015) Add support for new IBM crypto card. OBS-URL: https://build.opensuse.org/request/show/747465 OBS-URL: https://build.opensuse.org/package/show/security/openCryptoki?expand=0&rev=91 --- openCryptoki-3.11.1.tar.gz | 3 --- openCryptoki-3.12.0.tar.gz | 3 +++ openCryptoki.changes | 24 ++++++++++++++++++++++++ openCryptoki.spec | 3 +-- 4 files changed, 28 insertions(+), 5 deletions(-) delete mode 100644 openCryptoki-3.11.1.tar.gz create mode 100644 openCryptoki-3.12.0.tar.gz diff --git a/openCryptoki-3.11.1.tar.gz b/openCryptoki-3.11.1.tar.gz deleted file mode 100644 index 6791fbd..0000000 --- a/openCryptoki-3.11.1.tar.gz +++ /dev/null @@ -1,3 +0,0 @@ -version https://git-lfs.github.com/spec/v1 -oid sha256:9e79c732eb4ba938a96f73c1dadc4ee9b97eb57cfb6f5218bf66b1238059c2eb -size 938221 diff --git a/openCryptoki-3.12.0.tar.gz b/openCryptoki-3.12.0.tar.gz new file mode 100644 index 0000000..810eacc --- /dev/null +++ b/openCryptoki-3.12.0.tar.gz @@ -0,0 +1,3 @@ +version https://git-lfs.github.com/spec/v1 +oid sha256:a05edbe316f88bdf692b855c4306fbbfe3ff5c0a81b0df578f2703db1cba2bd9 +size 973852 diff --git a/openCryptoki.changes b/openCryptoki.changes index 1cd281c..d8ba2d7 100644 --- a/openCryptoki.changes +++ b/openCryptoki.changes @@ -1,3 +1,27 @@ +------------------------------------------------------------------- +Tue Nov 12 04:26:21 UTC 2019 - Mark Post + +- Upgraded to version 3.12.0 (jsc#SLE-7647, jsc#SLE-7894, jsc#SLE-7915, jsc#SLE-7918) + * Update token pin and data store encryption for soft,ica,cca and ep11 + * EP11: Allow importing of compressed EC public keys + * EP11: Add support for the CMAC mechanisms + * EP11: Add support for the IBM-SHA3 mechanisms + * SOFT: Add AES-CMAC and 3DES-CMAC support to the soft token + * ICA: Add AES-CMAC and 3DES-CMAC support to the ICA token + * EP11: Add config option USE_PRANDOM + * CCA: Use Random Number Generate Long for token_specific_rng() + * Common rng function: Prefer /dev/prandom over /dev/urandom + * ICA: add SHA*_RSA_PKCS_PSS mechanisms + * Bug fixes +- Removed obsolete ocki-3.11.1-EP11-Support-tolerated-new-crypto-cards.patch + +------------------------------------------------------------------- +Thu Oct 10 14:56:01 UTC 2019 - Mark Post + +- Added ocki-3.11.1-EP11-Support-tolerated-new-crypto-cards.patch + (bsc#1152015) + Add support for new IBM crypto card. + ------------------------------------------------------------------- Tue Sep 3 23:02:38 UTC 2019 - Mark Post diff --git a/openCryptoki.spec b/openCryptoki.spec index 7aba9ec..306e50e 100644 --- a/openCryptoki.spec +++ b/openCryptoki.spec @@ -15,7 +15,6 @@ # Please submit bugfixes or comments via https://bugs.opensuse.org/ # - %define openCryptoki_32bit_arch %{ix86} s390 ppc %{arm} # support in the workings for: ppc64 # no support in sight for: ia64 @@ -26,7 +25,7 @@ %define oc_cvs_tag opencryptoki Name: openCryptoki -Version: 3.11.1 +Version: 3.12.0 Release: 0 Summary: An Implementation of PKCS#11 (Cryptoki) v2.11 for IBM Cryptographic Hardware License: CPL-1.0