-
Wed Sep 06 2023 Robert Relyea <rrelyea@redhat.com> - 2023.2.60_v7.0.306-72
- hand merge the two 'GlobalSign ECC Root CA R4' certs together and the two 'AC RAIZ FNMT-RCM' certs together to keep p11kit from getting confused.
-
Tue Aug 01 2023 Robert Relyea <rrelyea@redhat.com> - 2023.2.60_v7.0.306-71
- Update to CKBI 2.60_v7.0.306 from NSS 3.91
- Removing:
- # Certificate "Camerfirma Global Chambersign Root"
- # Certificate "Staat der Nederlanden EV Root CA"
- # Certificate "OpenTrust Root CA G1"
- # Certificate "Swedish Government Root Authority v1"
- # Certificate "DigiNotar Root CA G2"
- # Certificate "Federal Common Policy CA"
- # Certificate "TC TrustCenter Universal CA III"
- # Certificate "CCA India 2007"
- # Certificate "ipsCA Global CA Root"
- # Certificate "ipsCA Main CA Root"
- # Certificate "Macao Post eSignTrust Root Certification Authority"
- # Certificate "InfoNotary CSP Root"
- # Certificate "DigiNotar Root CA"
- # Certificate "Root CA"
- # Certificate "GPKIRootCA"
- # Certificate "D-TRUST Qualified Root CA 1 2007:PN"
- # Certificate "TC TrustCenter Universal CA I"
- # Certificate "TC TrustCenter Universal CA II"
- # Certificate "TC TrustCenter Class 2 CA II"
- # Certificate "TC TrustCenter Class 4 CA II"
- # Certificate "TÜRKTRUST Elektronik Sertifika Hizmet Sağlayıcısı"
- # Certificate "CertRSA01"
- # Certificate "KISA RootCA 3"
- # Certificate "A-CERT ADVANCED"
- # Certificate "A-Trust-Qual-01"
- # Certificate "A-Trust-nQual-01"
- # Certificate "Serasa Certificate Authority II"
- # Certificate "TDC Internet"
- # Certificate "America Online Root Certification Authority 2"
- # Certificate "RSA Security Inc"
- # Certificate "Public Notary Root"
- # Certificate "Autoridade Certificadora Raiz Brasileira"
- # Certificate "Post.Trust Root CA"
- # Certificate "Entrust.net Secure Server Certification Authority"
- # Certificate "ePKI EV SSL Certification Authority - G1"
- Adding:
- # Certificate "DigiCert TLS ECC P384 Root G5"
- # Certificate "DigiCert TLS RSA4096 Root G5"
- # Certificate "DigiCert SMIME ECC P384 Root G5"
- # Certificate "DigiCert SMIME RSA4096 Root G5"
- # Certificate "Certainly Root R1"
- # Certificate "Certainly Root E1"
- # Certificate "E-Tugra Global Root CA RSA v3"
- # Certificate "E-Tugra Global Root CA ECC v3"
- # Certificate "DIGITALSIGN GLOBAL ROOT RSA CA"
- # Certificate "DIGITALSIGN GLOBAL ROOT ECDSA CA"
- # Certificate "BJCA Global Root CA1"
- # Certificate "BJCA Global Root CA2"
- # Certificate "Symantec Enterprise Mobile Root for Microsoft"
- # Certificate "A-Trust-Root-05"
- # Certificate "ADOCA02"
- # Certificate "StartCom Certification Authority G2"
- # Certificate "ATHEX Root CA"
- # Certificate "EBG Elektronik Sertifika Hizmet Sağlayıcısı"
- # Certificate "GeoTrust Primary Certification Authority"
- # Certificate "thawte Primary Root CA"
- # Certificate "VeriSign Class 3 Public Primary Certification Authority - G5"
- # Certificate "America Online Root Certification Authority 1"
- # Certificate "Juur-SK"
- # Certificate "ComSign CA"
- # Certificate "ComSign Secured CA"
- # Certificate "ComSign Advanced Security CA"
- # Certificate "Global Chambersign Root"
- # Certificate "Sonera Class2 CA"
- # Certificate "VeriSign Class 3 Public Primary Certification Authority - G3"
- # Certificate "VeriSign, Inc."
- # Certificate "GTE CyberTrust Global Root"
- # Certificate "Equifax Secure Global eBusiness CA-1"
- # Certificate "Equifax"
- # Certificate "Class 1 Primary CA"
- # Certificate "Swiss Government Root CA III"
- # Certificate "Application CA G4 Root"
- # Certificate "SSC GDL CA Root A"
- # Certificate "GlobalSign Code Signing Root E45"
- # Certificate "GlobalSign Code Signing Root R45"
- # Certificate "Entrust Code Signing Root Certification Authority - CSBR1"
-
Thu Jul 28 2022 Bob Relyea <rrelyea@redhat.com> - 2022.2.54-74
- Update to CKBI 2.54 from NSS 3.79
- Removing:
- # Certificate "TrustCor ECA-1"
- # Certificate "TrustCor RootCert CA-2"
- # Certificate "TrustCor RootCert CA-1"
- # Certificate "Network Solutions Certificate Authority"
- # Certificate "COMODO Certification Authority"
- # Certificate "Autoridad de Certificacion Raiz del Estado Venezolano"
- # Certificate "Microsec e-Szigno Root CA 2009"
- # Certificate "TWCA Root Certification Authority"
- # Certificate "Izenpe.com"
- # Certificate "state-institutions"
- # Certificate "GlobalSign"
- # Certificate "Common Policy"
- # Certificate "A-Trust-nQual-03"
- # Certificate "A-Trust-Qual-02"
- # Certificate "Autoridad de Certificacion Firmaprofesional CIF A62634068"
- # Certificate "Government Root Certification Authority"
- # Certificate "AC Raíz Certicámara S.A."
-
Wed Jul 27 2022 Bob Relyea <rrelyea@redhat.com> - 2022.2.54-73
- Update to CKBI 2.54 from NSS 3.79
-
Fri Jul 15 2022 Bob Relyea <rrelyea@redhat.com> - 2022.2.54-72
- Update to CKBI 2.54 from NSS 3.79
- Adding:
- # Certificate "CAEDICOM Root"
- # Certificate "I.CA Root CA/RSA"
- # Certificate "MULTICERT Root Certification Authority 01"
- # Certificate "Certification Authority of WoSign G2"
- # Certificate "CA WoSign ECC Root"
- # Certificate "CCA India 2015 SPL"
- # Certificate "Swedish Government Root Authority v3"
- # Certificate "Swedish Government Root Authority v2"
- # Certificate "Tunisian Root Certificate Authority - TunRootCA2"
- # Certificate "OpenTrust Root CA G1"
- # Certificate "OpenTrust Root CA G2"
- # Certificate "OpenTrust Root CA G3"
- # Certificate "Certplus Root CA G1"
- # Certificate "Certplus Root CA G2"
- # Certificate "Government Root Certification Authority"
- # Certificate "A-Trust-Qual-02"
- # Certificate "Thailand National Root Certification Authority - G1"
- # Certificate "TrustCor ECA-1"
- # Certificate "TrustCor RootCert CA-2"
- # Certificate "TrustCor RootCert CA-1"
- # Certificate "Certification Authority of WoSign"
- # Certificate "CA 沃通根证书"
- # Certificate "SSC GDL CA Root B"
- # Certificate "SAPO Class 2 Root CA"
- # Certificate "SAPO Class 3 Root CA"
- # Certificate "SAPO Class 4 Root CA"
- # Certificate "CA Disig Root R1"
- # Certificate "Autoridad Certificadora Raíz Nacional de Uruguay"
- # Certificate "ApplicationCA2 Root"
- # Certificate "GlobalSign"
- # Certificate "Symantec Class 3 Public Primary Certification Authority - G6"
- # Certificate "Symantec Class 3 Public Primary Certification Authority - G4"
- # Certificate "Halcom Root CA"
- # Certificate "Swisscom Root EV CA 2"
- # Certificate "CFCA GT CA"
- # Certificate "Digidentity L3 Root CA - G2"
- # Certificate "SITHS Root CA v1"
- # Certificate "Macao Post eSignTrust Root Certification Authority (G02)"
- # Certificate "Autoridade Certificadora Raiz Brasileira v2"
- # Certificate "Swisscom Root CA 2"
- # Certificate "IGC/A AC racine Etat francais"
- # Certificate "PersonalID Trustworthy RootCA 2011"
- # Certificate "Swedish Government Root Authority v1"
- # Certificate "Swiss Government Root CA II"
- # Certificate "Swiss Government Root CA I"
- # Certificate "Network Solutions Certificate Authority"
- # Certificate "COMODO Certification Authority"
- # Certificate "LuxTrust Global Root"
- # Certificate "AC1 RAIZ MTIN"
- # Certificate "Microsoft Root Certificate Authority 2011"
- # Certificate "CCA India 2011"
- # Certificate "ANCERT Certificados Notariales V2"
- # Certificate "ANCERT Certificados CGN V2"
- # Certificate "EE Certification Centre Root CA"
- # Certificate "DigiNotar Root CA G2"
- # Certificate "Federal Common Policy CA"
- # Certificate "Autoridad de Certificacion Raiz del Estado Venezolano"
- # Certificate "Autoridad de Certificacion Raiz del Estado Venezolano"
- # Certificate "China Internet Network Information Center EV Certificates Root"
- # Certificate "Verizon Global Root CA"
- # Certificate "SwissSign Silver Root CA - G3"
- # Certificate "SwissSign Platinum Root CA - G3"
- # Certificate "SwissSign Gold Root CA - G3"
- # Certificate "Microsec e-Szigno Root CA 2009"
- # Certificate "SITHS CA v3"
- # Certificate "Certinomis - Autorité Racine"
- # Certificate "ANF Server CA"
- # Certificate "Thawte Premium Server CA"
- # Certificate "Thawte Server CA"
- # Certificate "TC TrustCenter Universal CA III"
- # Certificate "KEYNECTIS ROOT CA"
- # Certificate "I.CA - Standard Certification Authority, 09/2009"
- # Certificate "I.CA - Qualified Certification Authority, 09/2009"
- # Certificate "VI Registru Centras RCSC (RootCA)"
- # Certificate "CCA India 2007"
- # Certificate "Autoridade Certificadora Raiz Brasileira v1"
- # Certificate "ipsCA Global CA Root"
- # Certificate "ipsCA Main CA Root"
- # Certificate "Actalis Authentication CA G1"
- # Certificate "A-Trust-Qual-03"
- # Certificate "AddTrust External CA Root"
- # Certificate "ECRaizEstado"
- # Certificate "Configuration"
- # Certificate "FNMT-RCM"
- # Certificate "StartCom Certification Authority"
- # Certificate "TWCA Root Certification Authority"
- # Certificate "VeriSign Class 3 Public Primary Certification Authority - G4"
- # Certificate "thawte Primary Root CA - G2"
- # Certificate "GeoTrust Primary Certification Authority - G2"
- # Certificate "VeriSign Universal Root Certification Authority"
- # Certificate "thawte Primary Root CA - G3"
- # Certificate "GeoTrust Primary Certification Authority - G3"
- # Certificate "E-ME SSI (RCA)"
- # Certificate "ACEDICOM Root"
- # Certificate "Autoridad Certificadora Raiz de la Secretaria de Economia"
- # Certificate "Correo Uruguayo - Root CA"
- # Certificate "CNNIC ROOT"
- # Certificate "Common Policy"
- # Certificate "Macao Post eSignTrust Root Certification Authority"
- # Certificate "Staat der Nederlanden Root CA - G2"
- # Certificate "NetLock Platina (Class Platinum) Főtanúsítvány"
- # Certificate "AC Raíz Certicámara S.A."
- # Certificate "Cisco Root CA 2048"
- # Certificate "CA Disig"
- # Certificate "InfoNotary CSP Root"
- # Certificate "UCA Global Root"
- # Certificate "UCA Root"
- # Certificate "DigiNotar Root CA"
- # Certificate "Starfield Services Root Certificate Authority"
- # Certificate "I.CA - Qualified root certificate"
- # Certificate "I.CA - Standard root certificate"
- # Certificate "e-Guven Kok Elektronik Sertifika Hizmet Saglayicisi"
- # Certificate "Japanese Government"
- # Certificate "AdminCA-CD-T01"
- # Certificate "Admin-Root-CA"
- # Certificate "Izenpe.com"
- # Certificate "TÜBİTAK UEKAE Kök Sertifika Hizmet Sağlayıcısı - Sürüm 3"
- # Certificate "Halcom CA FO"
- # Certificate "Halcom CA PO 2"
- # Certificate "Root CA"
- # Certificate "GPKIRootCA"
- # Certificate "ACNLB"
- # Certificate "state-institutions"
- # Certificate "state-institutions"
- # Certificate "SECOM Trust Systems CO.,LTD."
- # Certificate "D-TRUST Qualified Root CA 1 2007:PN"
- # Certificate "D-TRUST Root Class 2 CA 2007"
- # Certificate "D-TRUST Root Class 3 CA 2007"
- # Certificate "SSC Root CA A"
- # Certificate "SSC Root CA B"
- # Certificate "SSC Root CA C"
- # Certificate "Autoridad de Certificacion de la Abogacia"
- # Certificate "Root CA Generalitat Valenciana"
- # Certificate "VAS Latvijas Pasts SSI(RCA)"
- # Certificate "ANCERT Certificados CGN"
- # Certificate "ANCERT Certificados Notariales"
- # Certificate "ANCERT Corporaciones de Derecho Publico"
- # Certificate "GLOBALTRUST"
- # Certificate "Certipost E-Trust TOP Root CA"
- # Certificate "Certipost E-Trust Primary Qualified CA"
- # Certificate "Certipost E-Trust Primary Normalised CA"
- # Certificate "Cybertrust Global Root"
- # Certificate "GlobalSign"
- # Certificate "IGC/A"
- # Certificate "S-TRUST Authentication and Encryption Root CA 2005:PN"
- # Certificate "TC TrustCenter Universal CA I"
- # Certificate "TC TrustCenter Universal CA II"
- # Certificate "TC TrustCenter Class 2 CA II"
- # Certificate "TC TrustCenter Class 4 CA II"
- # Certificate "Swisscom Root CA 1"
- # Certificate "Microsec e-Szigno Root CA"
- # Certificate "LGPKI"
- # Certificate "AC RAIZ DNIE"
- # Certificate "Common Policy"
- # Certificate "TÜRKTRUST Elektronik Sertifika Hizmet Sağlayıcısı"
- # Certificate "A-Trust-nQual-03"
- # Certificate "A-Trust-nQual-03"
- # Certificate "CertRSA01"
- # Certificate "KISA RootCA 1"
- # Certificate "KISA RootCA 3"
- # Certificate "NetLock Minositett Kozjegyzoi (Class QA) Tanusitvanykiado"
- # Certificate "A-CERT ADVANCED"
- # Certificate "A-Trust-Qual-01"
- # Certificate "A-Trust-nQual-01"
- # Certificate "A-Trust-Qual-02"
- # Certificate "Staat der Nederlanden Root CA"
- # Certificate "Serasa Certificate Authority II"
- # Certificate "TDC Internet"
- # Certificate "America Online Root Certification Authority 2"
- # Certificate "Autoridad de Certificacion Firmaprofesional CIF A62634068"
- # Certificate "Government Root Certification Authority"
- # Certificate "RSA Security Inc"
- # Certificate "Public Notary Root"
- # Certificate "GeoTrust Global CA"
- # Certificate "GeoTrust Global CA 2"
- # Certificate "GeoTrust Universal CA"
- # Certificate "GeoTrust Universal CA 2"
- # Certificate "QuoVadis Root Certification Authority"
- # Certificate "Autoridade Certificadora Raiz Brasileira"
- # Certificate "Post.Trust Root CA"
- # Certificate "Microsoft Root Authority"
- # Certificate "Microsoft Root Certificate Authority"
- # Certificate "Microsoft Root Certificate Authority 2010"
- # Certificate "Entrust.net Secure Server Certification Authority"
- # Certificate "UTN-USERFirst-Object"
- # Certificate "BYTE Root Certification Authority 001"
- # Certificate "CISRCA1"
- # Certificate "ePKI Root Certification Authority - G2"
- # Certificate "ePKI EV SSL Certification Authority - G1"
- # Certificate "AC Raíz Certicámara S.A."
- # Certificate "SSL.com EV Root Certification Authority RSA"
- # Certificate "LuxTrust Global Root 2"
- # Certificate "ACA ROOT"
- # Certificate "Security Communication ECC RootCA1"
- # Certificate "Security Communication RootCA3"
- # Certificate "CHAMBERS OF COMMERCE ROOT - 2016"
- # Certificate "Network Solutions RSA Certificate Authority"
- # Certificate "Network Solutions ECC Certificate Authority"
- # Certificate "Australian Defence Public Root CA"
- # Certificate "SI-TRUST Root"
- # Certificate "Halcom Root Certificate Authority"
- # Certificate "Application CA G3 Root"
- # Certificate "GLOBALTRUST 2015"
- # Certificate "Microsoft ECC Product Root Certificate Authority 2018"
- # Certificate "emSign Root CA - G2"
- # Certificate "emSign Root CA - C2"
- # Certificate "Microsoft ECC TS Root Certificate Authority 2018"
- # Certificate "DigiCert CS ECC P384 Root G5"
- # Certificate "DigiCert CS RSA4096 Root G5"
- # Certificate "DigiCert RSA4096 Root G5"
- # Certificate "DigiCert ECC P384 Root G5"
- # Certificate "HARICA Code Signing RSA Root CA 2021"
- # Certificate "HARICA Code Signing ECC Root CA 2021"
- # Certificate "Microsoft Identity Verification Root Certificate Authority 2020"
-
Mon Jul 11 2022 Bob Relyea <rrelyea@redhat.com> - 2022.2.54-71
- Update to CKBI 2.54 from NSS 3.79
- Removing:
- # Certificate "GlobalSign Root CA - R2"
- # Certificate "Cybertrust Global Root"
- # Certificate "Explicitly Distrusted DigiNotar PKIoverheid G2"
- Adding:
- # Certificate "TunTrust Root CA"
- # Certificate "HARICA TLS RSA Root CA 2021"
- # Certificate "HARICA TLS ECC Root CA 2021"
- # Certificate "HARICA Client RSA Root CA 2021"
- # Certificate "HARICA Client ECC Root CA 2021"
- # Certificate "Autoridad de Certificacion Firmaprofesional CIF A62634068"
- # Certificate "vTrus ECC Root CA"
- # Certificate "vTrus Root CA"
- # Certificate "ISRG Root X2"
- # Certificate "HiPKI Root CA - G1"
- # Certificate "Telia Root CA v2"
- # Certificate "D-TRUST BR Root CA 1 2020"
- # Certificate "D-TRUST EV Root CA 1 2020"
-
Tue Sep 14 2021 Bob Relyea <rrelyea@redhat.com> - 2021.2.50-72
- Fix expired certificate.
- Removing:
- # Certificate "DST Root CA X3"
-
Wed Jun 16 2021 Bob Relyea <rrelyea@redhat.com> - 2021.2.50-71
- Update to CKBI 2.50 from NSS 3.67
- version number update only
-
Fri Jun 11 2021 Bob Relyea <rrelyea@redhat.com> - 2021.2.48-71
- Update to CKBI 2.48 from NSS 3.66
- Removing:
- # Certificate "Verisign Class 3 Public Primary Certification Authority - G3"
- # Certificate "GeoTrust Global CA"
- # Certificate "GeoTrust Universal CA"
- # Certificate "GeoTrust Universal CA 2"
- # Certificate "QuoVadis Root CA"
- # Certificate "Sonera Class 2 Root CA"
- # Certificate "Taiwan GRCA"
- # Certificate "GeoTrust Primary Certification Authority"
- # Certificate "thawte Primary Root CA"
- # Certificate "VeriSign Class 3 Public Primary Certification Authority - G5"
- # Certificate "GeoTrust Primary Certification Authority - G3"
- # Certificate "thawte Primary Root CA - G2"
- # Certificate "thawte Primary Root CA - G3"
- # Certificate "GeoTrust Primary Certification Authority - G2"
- # Certificate "VeriSign Universal Root Certification Authority"
- # Certificate "VeriSign Class 3 Public Primary Certification Authority - G4"
- # Certificate "Trustis FPS Root CA"
- # Certificate "EE Certification Centre Root CA"
- # Certificate "LuxTrust Global Root 2"
- # Certificate "Symantec Class 1 Public Primary Certification Authority - G4"
- # Certificate "Symantec Class 2 Public Primary Certification Authority - G4"
- Adding:
- # Certificate "Microsoft ECC Root Certificate Authority 2017"
- # Certificate "Microsoft RSA Root Certificate Authority 2017"
- # Certificate "e-Szigno Root CA 2017"
- # Certificate "certSIGN Root CA G2"
- # Certificate "Trustwave Global Certification Authority"
- # Certificate "Trustwave Global ECC P256 Certification Authority"
- # Certificate "Trustwave Global ECC P384 Certification Authority"
- # Certificate "NAVER Global Root Certification Authority"
- # Certificate "AC RAIZ FNMT-RCM SERVIDORES SEGUROS"
- # Certificate "GlobalSign Secure Mail Root R45"
- # Certificate "GlobalSign Secure Mail Root E45"
- # Certificate "GlobalSign Root R46"
- # Certificate "GlobalSign Root E46"
- # Certificate "GLOBALTRUST 2020"
- # Certificate "ANF Secure Server Root CA"
- # Certificate "Certum EC-384 CA"
- # Certificate "Certum Trusted Root CA"
-
Tue Jun 09 2020 Bob Relyea <rrelyea@redhat.com> - 2020.2.41-79
- Update to CKBI 2.41 from NSS 3.53.0
- Removing:
- # Certificate "AddTrust Low-Value Services Root"
- # Certificate "AddTrust External Root"
- # Certificate "UTN USERFirst Email Root CA"
- # Certificate "Certplus Class 2 Primary CA"
- # Certificate "Deutsche Telekom Root CA 2"
- # Certificate "Staat der Nederlanden Root CA - G2"
- # Certificate "Swisscom Root CA 2"
- # Certificate "Certinomis - Root CA"
- Adding:
- # Certificate "Entrust Root Certification Authority - G4"
- fix permissions on ghosted files.