- 
    Wed Nov 09 2016 Kai Engert <kaie@redhat.com> - 3.21.3-2
    - Mozilla #1314604 / Red Hat CVE-2016-8635 
- 
    Wed Oct 26 2016 Daiki Ueno <dueno@redhat.com> - 3.21.3-1
    - Rebase to NSS 3.21.3
- Resolves: Bug 1347908 
- 
    Sat Apr 09 2016 Kai Engert <kaie@redhat.com> - 3.21.0-6
    - Fix SSL_DH_MIN_P_BITS in more places. 
- 
    Sat Apr 09 2016 Kai Engert <kaie@redhat.com> - 3.21.0-5
    - Keep SSL_DH_MIN_P_BITS at 768 as in the previously released build. 
- 
    Thu Mar 31 2016 Kai Engert <kaie@redhat.com> - 3.21.0-4
    - Run SSL tests 
- 
    Tue Mar 29 2016 Elio Maldonado <emaldona@redhat.com> - 3.21.0-3
    - Add compatility patches to prevent regressions 
- 
    Thu Mar 24 2016 Elio Maldonado <emaldona@redhat.com> - 3.21.0-2
    - Ensure all ssl.sh tests are executed 
- 
    Wed Mar 16 2016 Elio Maldonado <emaldona@redhat.com> - 3.21.0-1
    - Rebase to nss 3.21
- Resolves: Bug 1297944 - Rebase RHEL 5.11.z to NSS 3.21 in preparation for Firefox 45 
- 
    Fri Mar 04 2016 Kai Engert <kaie@redhat.com> - 3.19.1-4
    - Actually apply the fix for CVE-2016-1950 from NSS 3.19.2.3 ... 
- 
    Thu Feb 25 2016 Kai Engert <kaie@redhat.com> - 3.19.1-3
    - Include the fix for CVE-2016-1950 from NSS 3.19.2.3 
- 
    Tue Oct 20 2015 Elio Maldonado <emaldona@redhat.com> - 3.19.1-2
    - Resolves: Bug 1269354 - CVE-2015-7182 CVE-2015-7181 
- 
    Thu Jul 30 2015 Elio Maldonado <emaldona@redhat.com> - 3.19.1-1
    - Rebase nss to 3.19.1
- Pick up upstream fix for client auth. regression caused by 3.19.1
- Revert upstream change to minimum key sizes
- Remove patches that rendered obsolote by the rebase
- Update existing patches on account of the rebase 
- 
    Wed Jul 29 2015 Elio Maldonado <emaldona@redhat.com> - 3.18.0-7
    - Pick up upstream patch from nss-3.19.1
- Resolves: Bug 1236954 - CVE-2015-2730 NSS: ECDSA signature validation fails to handle some signatures correctly (MFSA 2015-64)
- Resolves: Bug 1236967 - CVE-2015-2721 NSS: incorrectly permited skipping of ServerKeyExchange (MFSA 2015-71) 
- 
    Wed Apr 29 2015 Kai Engert <kaie@redhat.com> - 3.18.0-6
    - On RHEL 6.x keep the TLS version defaults unchanged.
- Update to CKBI 2.4 from NSS 3.18.1 (the only change in NSS 3.18.1) 
- 
    Sun Apr 19 2015 Elio Maldonado <emaldona@redhat.com> - 3.18.0-5
    - Copy PayPalICA.cert and PayPalRootCA.cert to nss/tests/libpkix/certs
- Resolves: Bug 1200905 - Rebase nss to 3.18 for Firefox 38 ESR [RHEL-5.11] 
- 
    Sun Apr 19 2015 Elio Maldonado <emaldona@redhat.com> - 3.18.0-4
    - Update and reeneable nss-646045.patch on account of the rebase
- Enable additional ssl test cycles and document why some aren't enabled
- Resolves: Bug 1200905 - Rebase nss to 3.18 for Firefox 38 ESR [RHEL-5.11] 
- 
    Tue Apr 14 2015 Elio Maldonado <emaldona@redhat.com> - 3.18.0-3
    - Fix shell syntax error on nss/tests/all.sh
- Resolves: Bug 1200905 - Rebase nss to 3.18 for Firefox 38 ESR [RHEL-5.11] 
- 
    Sat Apr 11 2015 Elio Maldonado <emaldona@redhat.com> - 3.18.0-2
    - Replace expired PayPal test certificate that breaks the build
- Resolves: Bug 1200905 - Rebase nss to 3.18 for Firefox 38 ESR [RHEL-5.11] 
- 
    Sat Mar 28 2015 Elio Maldonado <emaldona@redhat.com> - 3.18.0-1
    - Resolves: Bug 1200905 - Rebase nss to 3.18 for Firefox 38 ESR [RHEL-5.11] 
- 
    Fri Nov 14 2014 Elio Maldonado <emaldona@redhat.com> - 3.16.1-5
    - Resolves: Bug 1158159 - Upgrade to NSS 3.16.2.3 for Firefox 31.3 
- 
    Fri Sep 26 2014 Kai Engert <kaie@redhat.com> - 3.16.1-4
    - Adjust softokn patch to be compatible with legacy softokn API.
- Resolves: Bug 1145430 - CVE-2014-1568 
- 
    Thu Sep 25 2014 Elio Maldonado <emaldona@redhat.com> - 3.16.1-3
    - Add patches published with NSS 3.16.2.1
- Resolves: Bug 1145430 - CVE-2014-1568 
- 
    Tue Jul 01 2014 Elio Maldonado <emaldona@redhat.com> - 3.16.1-2
    - Backport nss-3.12.6 upstream fix required by Firefox 31 ESR
- Resolves: Bug 1110860 
- 
    Wed Jun 25 2014 Elio Maldonado <emaldona@redhat.com> - 3.16.1-1
    - Rebase to nss-3.16.1 for FF31
- Resolves: Bug 1110860 - Rebase nss in RHEL 5.11 to NSS 3.16.1, required for FF 31 
- 
    Wed Apr 30 2014 Elio Maldonado <emaldona@redhat.com> - 3.15.3-6
    - Remove unused and obsolete patches
- Related: Bug 1032468 
- 
    Fri Mar 28 2014 Elio Maldonado <emaldona@redhat.com> - 3.15.3-5
    - Improve shell code for error detection on %check section
- Resolves: Bug 1035281 - Suboptimal shell code in nss.spec 
- 
    Sat Dec 14 2013 Elio Maldonado <emaldona@redhat.com> - 3.15.3-4
    - Revoke trust in one mis-issued anssi certificate
- Resolves: Bug 1042684 - nss: Mis-issued ANSSI/DCSSI certificate (MFSA 2013-117) 
- 
    Tue Dec 10 2013 Elio Maldonado <emaldona@redhat.com> - 3.15.3-3
    - Pick up corrections made in the rhel-10.Z branch, remove an unused patch
- Resolves: rhbz#1032468 - CVE-2013-5605 CVE-2013-5606 CVE-2013-1741 nss: various flaws [rhel-5.11] 
- 
    Sat Nov 23 2013 Elio Maldonado <emaldona@redhat.com> - 3.15.3-2
    - Remove unused patch and retag for update to nss-3.15.3
- Resolves: rhbz#1032468 - CVE-2013-5605 CVE-2013-5606 CVE-2013-1741 nss: various flaws [rhel-5.11] 
- 
    Sat Nov 23 2013 Elio Maldonado <emaldona@redhat.com> - 3.15.3-1
    - Update to nss-3.15.3
- Resolves: rhbz#1032468 - CVE-2013-5605 CVE-2013-5606 CVE-2013-1741 nss: various flaws [rhel-5.11] 
- 
    Sat Nov 23 2013 Elio Maldonado <emaldona@redhat.com> - 3.15.1-2
    - Remove unused patches
- Resolves: rhbz#1002642 - Rebase RHEL 5 to NSS 3.15.1 (for FF 24.x) 
- 
    Wed Nov 20 2013 Elio Maldonado <emaldona@redhat.com> - 3.15.1-1
    - Rebase to nss-3.15.1
- Resolves: rhbz#1002642 - Rebase RHEL 5 to NSS 3.15.1 (for FF 24.x)
- Resolves: rhbz#1015864 - [Regression] NSS no longer trusts MD5 certificates
- Split %check section tests in two: freebl/softoken and rest of nss tests
- Adjust various patches and spec file steps on account of the rebase
- Add various patches and remove obsoleted ones on account of the rebase
- Renumber patches so freeb/softoken ones match the corresponding ones in rhel-6 nss-softokn 
- 
    Fri Aug 02 2013 Elio Maldonado <emaldona@redhat.com> - 3.14.3-18
    - Make the freebl sources identical to the corresponding ones for rhel-6.5
- Related: rhbz#987131 
- 
    Mon Jul 29 2013 Elio Maldonado <emaldona@redhat.com> - 3.14.3-16
    - Adjust the patches to complete the syncup with upstrean nss
- Use NSS_DISABLE_HW_GCM on the patch as we do on the spec file
- Ensure softoken/freebl code is the same on nss side as on the softoken side
- Related: rhbz#987131 
- 
    Mon Jul 29 2013 Elio Maldonado <emaldona@redhat.com> - 3.14.3-16
    - Add disable_hw_gcm.patch and in the spec file export NSS_DISABLE_HW_GCM=1
- Disable HW GCM on RHEL-5 as the older kernel lacks support for it
- Related: rhbz#987131 
- 
    Fri Jul 26 2013 Elio Maldonado <emaldona@redhat.com> - 3.14.3-15
    - Related: rhbz#987131 - Display cpuifo as part of the tests 
- 
    Thu Jul 25 2013 Elio Maldonado <emaldona@redhat.com> - 3.14.3-14
    - Resolves: rhbz#987131 - Pick up various upstream GCM code fixes applied since nss-3.14.3 was released 
- 
    Sat Jul 20 2013 Elio Maldonado <emaldona@redhat.com> - 3.14.3-13
    - Roll back to 79c87e69caa7454cbcf5f8161a628c538ff3cab3
- Peviously added patch hasn't solved the sporadic core dumps
- Related: rhbz#983766 - nssutil_ReadSecmodDB leaks memory 
- 
    Sat Jul 20 2013 Elio Maldonado <emaldona@redhat.com> - 3.14.3-12
    - Resolves: rhbz#983766 - nssutil_ReadSecmodDB leaks memory
- Add patch to get rid of sporadic blapitest core dumps 
- 
    Fri Jun 21 2013 Elio Maldonado <emaldona@redhat.com> - 3.14.3-11
    - Restore 'export NO_FORK_CHECK=1' required for binary compatibility on RHEL-5
- Remove an unused patch
- Resolves: rhbz#918948 - [RFE][RHEL5] Rebase to nss-3.14.3 
- 
    Wed Jun 19 2013 Elio Maldonado <emaldona@redhat.com> - 3.14.3-10
    - Resolves: rhbz#807419 - nss-tools certutil -H does not list all options 
- 
    Fri May 24 2013 Elio Maldonado <emaldona@redhat.com> - 3.14.3-9
    - Apply upstream fixes for ecc enabling and aes gcm
- Rename two macros EC_MIN_KEY_BITS and EC_MAX_KEY_BITS per upstream
- Apply several upstream AES GCM fixes
- Resolves: rhbz#960241 - Enable ECC in nss and freebl
- Resolves: rhbz#918948 - [RFE][RHEL5] 
- 
    Wed May 22 2013 Elio Maldonado <emaldona@redhat.com> - 3.14.3-8
    - Enable ECC support limited to suite b
- Export NSS_ENABLE_ECC=1 in the %check section to properly test ecc
- Resolves: rhbz#960241 - Enable ECC in nss and freebl 
- 
    Wed May 15 2013 Elio Maldonado <emaldona@redhat.com> - 3.14.3-7
    - Define -DNO_FORK_CHECK when compiling softoken for ABI compatibility
- Resolves: rhbz#918948 - [RFE][RHEL5] Rebase to nss-3.14.3 to fix the lucky-13 issue 
- 
    Fri May 10 2013 Elio Maldonado <emaldona@redhat.com> - 3.14.3-6
    - Remove obsolete nss-nochktest.patch
- Related: rhbz#960241 - Enable ECC in nss and freebl 
- 
    Tue May 07 2013 Elio Maldonado <emaldona@redhat.com> - 3.14.3-5
    - Enable ECC by using the unstripped sources
- Resolves: rhbz#960241 - Enable ECC in nss and freebl 
- 
    Wed Apr 24 2013 Elio Maldonado <emaldona@redhat.com> - 3.14.3-4
    - Fix rpmdiff test reported failures and remove other unwanted changes
- Resolves: rhbz#918948 - [RFE][RHEL5] Rebase to nss-3.14.3 to fix the lucky-13 issue 
- 
    Tue Apr 23 2013 Elio Maldonado - 3.14.3-3
    - Update to NSS_3_14_3_RTM
- Rework the rebase to preserve needed idiosynchracies
- Ensure we install frebl/softoken from the extra build tree
- Don't include freebl static library or its private headers
- Add patch to deal with system sqlite not being recent enough
- Don't install nss-sysinit nor sharedb
- Resolves: rhbz#918948 - [RFE][RHEL5] Rebase to nss-3.14.3 to fix the lucky-13 issue 
- 
    Tue Apr 02 2013 Elio Maldonado - 3.14.3-2
    - Restore the freebl-softoken source tar ball updated to 3.14.3
- Renumbering of some sources for clarity
- Resolves: rhbz#918948 - [RFE][RHEL5] Rebase to nss-3.14.3 to fix the lucky-13 issue 
- 
    Sun Mar 31 2013 Elio Maldonado <emaldona@redhat.com> - 3.14.3-1
    - Update to NSS_3_14_3_RTM
- Resolves: rhbz#918948 - [RFE][RHEL5] Rebase to nss-3.14.3 to fix the lucky-13 issue 
- 
    Fri Jan 11 2013 Elio Maldonado <emaldona@redhat.com> - 3.13.6-2
    - Resolves: rhbz#891150 - Dis-trust TURKTRUST mis-issued *.google.com certificate 
- 
    Wed Jan 09 2013 Elio Maldonado <emaldona@redhat.com> - 3.13.6-1
    - Update to NSS_3_13_6_RTM
- Resolves: rhbz#883788 - [RFE] [RHEL5] Rebase to NSS >= 3.13.6 
- 
    Sat Aug 18 2012 Elio Maldonado <emaldona@redhat.com> - 3.13.5-8
    - Resolves: rhbz#820684
- Fix last entry in attrFlagsArray to be {NAME_SIZE(unextractable), PK11_ATTR_UNEXTRACTABLE}
- 
    Wed Jul 25 2012 Robert Relyea <rrelyea@redhat.com> - 3.13.5-7
    - Resolves: rhbz#820684
- Enable certutil handle user supplied flags for PKCS #11 attributes.
- This will enable certutil to generate keys in fussy hardware tokens. 
- 
    Wed Jul 25 2012 Kai Engert <kaie@redhat.com> - 3.13.5-6
    - fix an error in the patch meta-information area (no code change) 
- 
    Sun Jul 15 2012 Elio Maldonado <emaldona@redhat.com> - 3.13.5-5
    - Related: rhbz#830304 - Fix ia64 / i386 multilib nss install failure
- Remove no longer needed %pre and %preun scriplets meant for nss updates from RHEL-5.0 
- 
    Thu Jul 12 2012 Elio Maldonado <emaldona@redhat.com> - 3.13.5-4
    - Related: rhbz#830304 - Fix the changes to the %post line
- Having multiple commands requires that /sbin/lconfig be the beginning of the scriptlet 
- 
    Thu Jul 12 2012 Elio Maldonado <emaldona@redhat.com> - 3.13.5-3
    - Resolves: rhbz#830304 - Fix multilib and scriptlet problems
- Fix %post and %postun lines per packaging guildelines
- Add %{?_isa} to tools Requires: per packaging guidelines
- Fix explicit-lib-dependency zlib error reported by rpmlint
- 
    Fri Jun 22 2012 Elio Maldonado <emaldona@redhat.com> - 3.13.5-2
    - Resolves: rhbz#830304 - Remove unwanted change to nss.pc.in 
- 
    Wed Jun 20 2012 Elio Maldonado <emaldona@redhat.com> - 3.13.5-1
    - Update to NSS_3_13_5_RTM
- Resolves: rhbz#830304 - Update RHEL 5.x to NSS 3.13.5 and NSPR 4.9.1 for Mozilla 10.0.6 
- 
    Wed Feb 29 2012 Elio Maldonado <emaldona@redhat.com> - 3.13.1-4
    - Resolves: rhbz#797939 - Protect NSS_Shutdown from clients that fail to initialize nss 
- 
    Fri Feb 10 2012 Elio Maldonado <emaldona@redhat.com> - 3.13.1-3
    - Resolves: Bug 788039 - retagging to prevent update problems 
- 
    Thu Feb 09 2012 Elio Maldonado <emaldona@redhat.com> 3.13.1-1
    - Resolves: Bug 788039 - rebase nss to make firefox 10 LTS rebase possible
- Update to 4.8.9 
- 
    Wed Jan 18 2012 Elio Maldonado Batiz <emaldona@redhat.com> - 3.12.10-9
    - Resolves: Bug 713373 - File descriptor leak after service httpd reload
- Don't initialize nss if already initialized or if there are no dbs 
- 
    Sat Jan 14 2012 Elio Maldonado Batiz <emaldona@redhat.com> - 3.12.10-8
    - Retagging for a Y-stream version higher than the RHEL-5-7-Z branch 
- 
    Thu Jan 12 2012 Elio Maldonado Batiz <emaldona@redhat.com> - 3.12.10-7
    - Retagging to keep the n-v-r as high as that for the RHEL-5-7-Z branch 
- 
    Wed Nov 09 2011 Elio Maldonado <emaldona@redhat.com> - 3.12.10-6
    - Update builtins certs to those from NSSCKBI_1_88_RTM 
- 
    Sun Oct 02 2011 Elio Maldonado <emaldona@redhat.com> - 3.12.10-5
    - Plug file descriptor leaks on httpd reloads 
- 
    Sat Sep 03 2011 Elio Maldonado <emaldona@redhat.com> - 3.12.10-4
    - Update builtins certs to those from NSSCKBI_1_87_RTM 
- 
    Thu Sep 01 2011 Elio Maldonado <emaldona@redhat.com> - 3.12.10-3
    - Update builtins certs to those from NSSCKBI_1_86_RTM 
- 
    Wed Aug 31 2011 Elio Maldonado <emaldona@redhat.com> - 3.12.10-2
    - Update builtins certs to NSSCKBI_1_85_RTM 
- 
    Fri Jul 15 2011 Elio Maldonado <emaldona@redhat.com> - 3.12.10-1
    - Update to 3.12.10 
- 
    Sat Jun 04 2011 Elio Maldonado <emaldona@redhat.com> - 3.12.8-4
    - Fix libcrmf hard-coded maximum size for wrapped private keys 
- 
    Fri Mar 25 2011 Elio Maldonado <emaldona@redhat.com> - 3.12.8-3
    - Update builtin certs to NSS_3.12.9_WITH_CKBI_1_82_RTM via a patch 
- 
    Thu Mar 24 2011 Elio Maldonado <emaldona@redhat.com> - 3.12.8-2
    - Update builtin certs to those from NSS_3.12.9_WITH_CKBI_1_82_RTM 
- 
    Sat Oct 02 2010 Elio Maldonado <emaldona@redhat.com> - 3.12.8-1
    - Update to 3.12.8 
- 
    Sat Aug 28 2010 Kai Engert <kengert@redhat.com> - 3.12.7-2
    - fix dependencies, undo previous change 
- 
    Fri Aug 27 2010 Elio Maldonado <emaldona@redhat.com> - 3.12.7-1
    - Update to 3.12.7 
- 
    Fri Apr 30 2010 Elio Maldonado <emaldona@redhat.com> - 3.12.6-2
    - Enable client applications to build with -Wstrict-prototypes 
- 
    Fri Mar 05 2010 Elio Maldonado <emaldona@redhat.com> - 3.12.6-1
    - Update to 3.12.6 
- 
    Wed Feb 24 2010 Elio Maldonado <emaldona@redhat.com> - 3.12.5.99-1
    - Update to NSS_3_12_6_RC1 
- 
    Tue Dec 08 2009 Elio Maldonado<emaldona@redhat.com> - 3.12.3.99.3-1.el5_3.3
    - CVE-2009-3555 MITM attacks via session renegotiation (bug 54357) 
- 
    Sat Jun 13 2009 Kai Engert <kengert@redhat.com> - 3.12.3.99.3-1.el5_3.2
    - adjust ssl cipher count constant (bug 505650)
- create z-stream version 
- 
    Fri Jun 05 2009 Kai Engert <kengert@redhat.com> - 3.12.3.99.3-1
    - updated to NSS_3_12_4_FIPS1_WITH_CKBI_1_75 
- 
    Thu May 21 2009 Kai Engert <kengert@redhat.com> - 3.12.3-5
    - updated patch to seckey 
- 
    Fri May 15 2009 Kai Engert <kengert@redhat.com> - 3.12.3-4
    - add a patch to seckey 
- 
    Thu May 14 2009 Kai Engert <kengert@redhat.com> - 3.12.3-3
    - remove references to SEED 
- 
    Thu Apr 16 2009 Kai Engert <kengert@redhat.com> - 3.12.3-2
    - update to NSS 3.12.3 
- 
    Sat Jan 24 2009 Kai Engert <kengert@redhat.com> - 3.12.2.0-4
    - exclude binary db files from change detection 
- 
    Sat Jan 24 2009 Kai Engert <kengert@redhat.com> - 3.12.2.0-3
    - Update to NSS_3_12_2_WITH_CKBI_1_73_RTM
- Add dependency to pkgconfig to devel package (bug456849) 
- 
    Thu Dec 11 2008 Kai Engert <kengert@redhat.com> - 3.12.2.0-2
    - Update to NSS_3_12_2_RC1
- Use system zlib 
- 
    Fri Nov 07 2008 Kai Engert <kengert@redhat.com> - 3.12.1.1-3
    - Update to NSS_3_12_1_WITH_CKBI_1_72_RTM 
- 
    Sat Sep 06 2008 Kai Engert <kengert@redhat.com> - 3.12.1.1-1
    - Update to NSS_3_12_1_RC2 
- 
    Fri Sep 05 2008 Kai Engert <kengert@redhat.com> - 3.12.1.0-1
    - Update to NSS_3_12_1_RC1 
- 
    Sat Jun 14 2008 Kai Engert <kengert@redhat.com> - 3.12.0.3-1
    - Update to NSS_3_12_RC4
- Enable loading of external ECC modules
- Include upstream fix for a deadlock in the certutil tool, bug 447431 
- 
    Wed Apr 02 2008 Kai Engert <kengert@redhat.com> - 3.11.99.5-2
    - Include additional tools, rhbz#435928 
- 
    Tue Mar 18 2008 Kai Engert <kengert@redhat.com> - 3.11.99.5-1
    - Update to NSS_3_12_BETA3 
- 
    Sat Feb 23 2008 Kai Engert <kengert@redhat.com> - 3.11.99.4-1
    - NSS 3.12 Beta 2 
- 
    Sat Jan 26 2008 Kai Engert <kengert@redhat.com> - 3.11.99.3-1
    - NSS 3.12 Beta 1 
- 
    Fri Jan 18 2008 Kai Engert <kengert@redhat.com> - 3.11.99.2b-1
    - Upgrade to NSS 3.12 Alpha 2b 
- 
    Sat Aug 04 2007 Kai Engert <kengert@redhat.com> - 3.11.7-1.3
    - No longer use immutable file system attributes, rhbz#237350 
- 
    Thu Jul 12 2007 Kai Engert <kengert@redhat.com> - 3.11.7-1.2
    - Ensure the fix for rhbz#212077 really gets built. 
- 
    Thu Jun 28 2007 Kai Engert <kengert@redhat.com> - 3.11.7-1.1
    - Fix rhbz#212077, use a workaround to avoid Mozilla.org bug 51429
- Remove link time dependency on libsoftokn3
- Update to 3.11.7, but freebl/softokn remain at 3.11.5 
- 
    Thu Apr 19 2007 Kai Engert <kengert@redhat.com> - 3.11.5-4
    - Apply upstream patch for mozilla.org bug 51429 in order to
  fix an issue with smartcard login (rhbz#212077). 
- 
    Tue Mar 06 2007 Kai Engert <kengert@redhat.com> - 3.11.5-3
    - Prevent .chk files from being modified by prelink and rpm building
  by generating chk files at install time and setting immutable
  filesystem attribute (230546, 231367). 
- 
    Thu Jan 25 2007 Kai Engert <kengert@redhat.com> - 3.11.5-1
    - Update to 3.11.5 
- 
    Fri Jan 12 2007 Bob Relyea <rrelyea@redhat.com> - 3.11.4-5
    - handle the case where a smartcard is reset between the time the nss
  prompts for the password and the user enters it. 
- 
    Wed Jan 10 2007 Bob Relyea <rrelyea@redhat.com> - 3.11.4-4
    - cleanout dead code 
- 
    Thu Dec 21 2006 Bob Relyea <rrelyea@redhat.com> - 3.11.4-3
    - disable ECC 
- 
    Fri Dec 01 2006 Kai Engert <kengert@redhat.com> - 3.11.4-2
    - rebuild 
- 
    Wed Nov 29 2006 Kai Engert <kengert@redhat.com> - 3.11.4-1
    - Update to 3.11.4 
- 
    Fri Sep 15 2006 Kai Engert <kengert@redhat.com> - 3.11.3-2
    - Revert the attempt to require latest NSPR, as it is not yet available
  in the build infrastructure. 
- 
    Fri Sep 15 2006 Kai Engert <kengert@redhat.com> - 3.11.3-1
    - Update to 3.11.3 
- 
    Fri Aug 04 2006 Kai Engert <kengert@redhat.com> - 3.11.2-2
    - Add /etc/pki/nssdb 
- 
    Thu Jul 13 2006 Jesse Keating <jkeating@redhat.com> - 3.11.2-1.1
    - rebuild 
- 
    Sat Jul 01 2006 Kai Engert <kengert@redhat.com> - 3.11.2-1
    - Update to 3.11.2
- Enable executable bit on shared libs, also fixes debug info. 
- 
    Thu Jun 15 2006 Kai Engert <kengert@redhat.com> - 3.11.1-2
    - Enable Elliptic Curve Cryptography (ECC) 
- 
    Sat May 27 2006 Kai Engert <kengert@redhat.com> - 3.11.1-1
    - Update to 3.11.1
- Include upstream patch to limit curves 
- 
    Thu Feb 16 2006 Kai Engert <kengert@redhat.com> - 3.11-4
    - add --noexecstack when compiling assembler on x86_64 
- 
    Sat Feb 11 2006 Jesse Keating <jkeating@redhat.com> - 3.11-3.2
    - bump again for double-long bug on ppc(64) 
- 
    Wed Feb 08 2006 Jesse Keating <jkeating@redhat.com> - 3.11-3.1
    - rebuilt for new gcc4.1 snapshot and glibc changes 
- 
    Fri Jan 20 2006 Ray Strode <rstrode@redhat.com> 3.11-3
    - rebuild 
- 
    Sat Dec 17 2005 Christopher Aillon <caillon@redhat.com> 3.11-2
    - Update file list for the devel packages 
- 
    Fri Dec 16 2005 Christopher Aillon <caillon@redhat.com> 3.11-1
    - Update to 3.11 
- 
    Fri Dec 16 2005 Christopher Aillon <caillon@redhat.com> 3.11-0.cvs.2
    - Add patch to allow building on ppc*
- Update the pkgconfig file to Require nspr 
- 
    Fri Dec 16 2005 Christopher Aillon <caillon@redhat.com> 3.11-0.cvs
    - Initial import into Fedora Core, based on a CVS snapshot of
  the NSS_3_11_RTM tag
- Fix up the pkcs11-devel subpackage to contain the proper headers
- Build with RPM_OPT_FLAGS
- No need to have rpath of /usr/lib in the pc file 
- 
    Fri Dec 16 2005 Kai Engert <kengert@redhat.com>
    - Adressed review comments by Wan-Teh Chang, Bob Relyea,
  Christopher Aillon. 
- 
    Sun Jul 10 2005 Rob Crittenden <rcritten@redhat.com> 3.10-1
    - Initial build