| Name: | opencryptoki-ccatok |
| Version: | 3.26.0 |
| Release: | 3.el10_2.1 |
| Architecture: | x86_64 |
| Group: | Unspecified |
| Size: | 976318 |
| License: | CPL-1.0 |
| RPM: |
opencryptoki-ccatok-3.26.0-3.el10_2.1.x86_64.rpm
|
| Source RPM: |
opencryptoki-3.26.0-3.el10_2.1.src.rpm
|
| Build Date: | Tue Jun 23 2026 |
| Build Host: | build-ol10-x86_64.oracle.com |
| Vendor: | Oracle America |
| URL: | https://github.com/opencryptoki/opencryptoki |
| Summary: | CCA cryptographic devices (secure-key) support for opencryptoki |
| Description: | Opencryptoki implements the PKCS#11 specification v3.0 and partially v3.1
for a set of cryptographic hardware, such as IBM 4767, 4768, 4769 and 4770
crypto cards, and the Trusted Platform Module (TPM) chip. Opencryptoki also
brings a software token implementation that can be used without any cryptographic
hardware.
This package brings the necessary libraries and files to support CCA
devices in the opencryptoki stack. CCA is an interface to IBM
cryptographic hardware such as IBM 4767, 4768, 4769 and 4770 that uses the
"co-processor" or "secure-key" path. |
-
Tue May 26 2026 Than Ngo <than@redhat.com> - 3.26.0-3.1
- Resolves: RHEL-171556, Fix possible out-of-bounds access in BER decode functions
-
Mon Apr 27 2026 Than Ngo <than@redhat.com> - 3.26.0-3
- Resolves: RHEL-169565, Fix syslog message printing about different CPs
-
Fri Feb 13 2026 Than Ngo <than@redhat.com> - 3.26.0-2
- Resolves: RHEL-144816, CVE-2026-23893
-
Wed Dec 17 2025 Than Ngo <than@redhat.com> - 3.26.0-1
- Resolves: RHEL-75138, ep11 token BLS support
- Resolves: RHEL-85380, ep11 token: ML-KEM and ML-DSA support
- Resolves: RHEL-85383, cca token: ML-KEM and ML-DSA support
- Resolves: RHEL-100058, openCryptoki 3.26.0
-
Wed Aug 13 2025 Than Ngo <than@redhat.com> - 3.25.0-5
- Resolves: RHEL-109017, pkcsslotd fails to start in FIPS mode
-
Tue Jul 29 2025 Than Ngo <than@redhat.com> - 3.25.0-4
- Resolves: RHEL-105910, require openssl >= 3.5.1
-
Mon Jul 21 2025 Than Ngo <than@redhat.com> - 3.25.0-3
- Fix incorrect effective group id of pkcsslotd daemon
- Fix covscan findings
Resolves: RHEL-104598
-
Wed Jul 09 2025 Than Ngo <than@redhat.com> - 3.25.0-2
- Related: RHEL-73343, Fix detection of EC curve not supported by OpenSSL-3.5.x
- Related: RHEL-77146, Fix the image mode issue again as bootc expects to use /run/lock
-
Thu Jul 03 2025 Than Ngo <than@redhat.com> - 3.25.0-1
- Resolves: RHEL-85376, ep11 token: PKCS #11 3.0 - support SHA3
- Resolves: RHEL-90589, CCA token: basic support of AES-GCM
- Resolves: RHEL-72964, cca token support cipher keys
- Resolves: RHEL-72968, Support for CKM_RSA_AES_KEY_WRAP for cca, ica and soft tokens
- Resolves: RHEL-73343, Upgrade openCryptoki to latest version
- Resolves: RHEL-75144, p11kmip: a tool to import/export PKCS #11 keys from to a KMIP server
- Resolves: RHEL-75761, ep11 token: import and export of secure key objects
- Resolves: RHEL-85374, cca token: Support ECDH to derive AES keys
-
Wed Apr 09 2025 Than Ngo <than@redhat.com> - 3.24.0-8
- Related: RHEL-77146, opencryptoki doesn't work in image mode