[Opencryptoki-tech] [opencryptoki-scm]opencryptoki annotated tag, v3.6, created. v3.6

2016-10-21 Thread Eduardo Barretto
tagging 13360dfedf295054f9bf013a68bc222a04ba1cda (commit) replaces v3.5 tagged by Eduardo Barretto on Fri Oct 21 15:37:14 2016 -0200 - Log - Version 3.6 Eduardo Barretto (3): PKCSCCA: Fix symbol name to get the corre

[Opencryptoki-tech] [opencryptoki-scm]opencryptoki annotated tag, v3.6.1, created. v3.6.1

2016-12-30 Thread Eduardo Barretto
tagging fdf66b0e5332b331ba174aa0866893b170398bc3 (commit) replaces v3.6 tagged by Eduardo Barretto on Fri Dec 30 15:50:49 2016 -0200 - Log - Version 3.6.1 Eduardo Barretto (9): Common: Substitute old DES API to newe

Re: [Opencryptoki-tech] ibmca and openssl 1.1

2017-01-17 Thread Eduardo Barretto
On 13-01-2017 10:46, Dan Horák wrote: > Hi, > > my attempt to build ibmca 1.3.0 (the openssl engine) under Fedora > Rawhide which uses openssl 1.1 failed. I assume ibmca hasn't been > ported yet. > > it starts to fail with > ... > libtool: compile: gcc -DPACKAGE_NAME=\"openssl-ibmca\" > -DPACKA

[Opencryptoki-tech] [opencryptoki-scm]opencryptoki annotated tag, v3.6.2, created. v3.6.2

2017-02-17 Thread Eduardo Barretto
tagging 1cc428a1c91100b65185deb6135d0458ea2218e1 (commit) replaces v3.6.1 tagged by Eduardo Barretto on Fri Feb 17 10:41:56 2017 -0200 - Log - Version 3.6.2 Derek D. Miller (1): Fixed a segfault when an invalid session

Re: [Opencryptoki-tech] [PATCH] Fixes on testcases found during test on ep11 token.

2017-02-17 Thread Eduardo Barretto
On 13-01-2017 12:34, Harald Freudenberger wrote: > Wrong file attributes fixed on all the *.c files which had > the executable bit switched on. > tok_des.c does not use DES any more, instead an AES key > is now used. tok_rsa.c checks the lower and upper key size > requirements for the token when tr

Re: [Opencryptoki-tech] ibmca and openssl 1.1

2017-02-17 Thread Eduardo Barretto
On 17-01-2017 12:38, Eduardo Barretto wrote: > On 13-01-2017 10:46, Dan Horák wrote: >> Hi, >> >> my attempt to build ibmca 1.3.0 (the openssl engine) under Fedora >> Rawhide which uses openssl 1.1 failed. I assume ibmca hasn't been >> ported yet. >>

Re: [Opencryptoki-tech] [PATCH] Ica token: fix openssh/ibmpkcs11 engine/libica crash

2017-03-10 Thread Eduardo Barretto
On 08-03-2017 11:40, Harald Freudenberger wrote: > The sha digest within the ica token used the context buffer > from opencryptoki the wrong way. So together with C_GetOperationState() > and C_SetOperationState() calls it could happen that a memory > area which was already freed is used again and/o

Re: [Opencryptoki-tech] [PATCH] Add new testcase for C_GetOperationState/C_SetOperationState.

2017-03-15 Thread Eduardo Barretto
On 14-03-2017 13:04, Harald Freudenberger wrote: > Signed-off-by: Harald Freudenberger > --- > testcases/pkcs11/Makefile.am| 3 +- > testcases/pkcs11/sess_opstate.c | 266 > > 2 files changed, 268 insertions(+), 1 deletion(-) > create mode 100644 t

Re: [Opencryptoki-tech] [PATCH] Add new testcase for C_GetOperationState/C_SetOperationState.

2017-03-28 Thread Eduardo Barretto
On 15-03-2017 13:30, Eduardo Barretto wrote: > On 14-03-2017 13:04, Harald Freudenberger wrote: >> Signed-off-by: Harald Freudenberger >> --- >> testcases/pkcs11/Makefile.am| 3 +- >> testcases/pkcs11/sess_opstate.c | 266 >> +++

Re: [Opencryptoki-tech] [PATCH] ep11 token: ep11tok config file parsing rework

2017-03-28 Thread Eduardo Barretto
On 21-03-2017 08:15, Harald Freudenberger wrote: > Rework of the ep11 token config file parsing: > - Remove BLACKLIST parsing code (was never supported by > ep11 library anyway) > - Improve WHITELIST parsing of the adapter/domain pair. > Now the numbers can be given in decimal, octal or hex. >

Re: [Opencryptoki-tech] [PATCH] ep11 token, cca token: Add ECDSA SHA2 support

2017-04-10 Thread Eduardo Barretto
On 03-04-2017 16:31, Harald Freudenberger wrote: > From: Ingo Franzki > > Slightly adapted version of Ingo's patch: > Patch hunks needed relocation because of previous commits > in some files. Removed some trailing whitespaces. > Tested, works. > > Signed-off-by: Ingo Franzki i> Signed-off-by:

Re: [Opencryptoki-tech] [PATCH] ep11 token: fix wrong declared inline function

2017-04-10 Thread Eduardo Barretto
On 03-04-2017 15:48, Paulo Ricardo Paz Vital wrote: > Reviewed-by: Paulo Vital > Patch accepted and merged. Thanks Paulo and Harald, Eduardo > On 04/03/2017 03:42 PM, Harald Freudenberger wrote: >> When a debug build is done the hexdump function may produce >> an build error as this function is i

Re: [Opencryptoki-tech] [PATCH] testcases: fix wrong testcase and ber en/decoding for integers

2017-04-10 Thread Eduardo Barretto
On 03-04-2017 15:39, Harald Freudenberger wrote: > The ber encoding/decoding did not correctly append (on encode) > and remove (on decode) leading 0x00 to indicate unsigned values. > This has been fixed. The tok_rsa testcase even tolerated wrong > byte sizes of the modulus part of an RSA key (cause

[Opencryptoki-tech] [opencryptoki-scm]opencryptoki annotated tag, v3.7.0, created. v3.7.0

2017-04-27 Thread Eduardo Barretto
tagging 90a9103d36939b670b0349172519d70d6595f671 (commit) replaces v3.6.2 tagged by Eduardo Barretto on Thu Apr 27 10:15:11 2017 -0300 - Log - Version 3.7.0 Eduardo Barretto (13): Fix the retrieval of p from a generat

[Opencryptoki-tech] [opencryptoki-scm]opencryptoki annotated tag, v3.7.0, deleted. v3.6.2-31-g90a9103

2017-04-28 Thread Eduardo Barretto
This is an automated email from the git hooks/post-receive script. It was generated because a ref change was pushed to the repository containing the project "opencryptoki". The annotated tag, v3.7.0 has been deleted was 4868cab11fcf5511b078bfd46872bad41729fa1a

[Opencryptoki-tech] [opencryptoki-scm]opencryptoki annotated tag, v3.7.0, created. v3.7.0

2017-04-28 Thread Eduardo Barretto
tagging c9955a631f0e379b21cd898cc70658457b4472d3 (commit) replaces v3.6.2 tagged by Eduardo Barretto on Fri Apr 28 15:43:13 2017 -0300 - Log - Version 3.7.0 Eduardo Barretto (14): Fix the retrieval of p from a generat

Re: [Opencryptoki-tech] [PATCH] Cleanup and unify traces in new_host.c

2017-05-16 Thread Eduardo Barretto
On 12-05-2017 13:24, Harald Freudenberger wrote: > Our tester complained about the mixture of traces in new_host.c > Rc values and mechanism values where sometimes in hex with and > without leading 0x, sometimes in decimal. > So now all rc values are printed as "... rc = 0x%08lx ..." > all handles

[Opencryptoki-tech] OpenCryptoki 3.8.1 released!

2017-10-30 Thread Eduardo Barretto
Hello all, As we found a problem while building the project for the TPM token, we are releasing today a new version (3.8.1) of OpenCryptoki! This release includes: - Fix TPM data-structure reset function. - Fix error message when dlsym fails. - Update configure.ac For more information, please ch

[Opencryptoki-tech] OpenCryptoki 3.8.2 released!

2017-11-23 Thread Eduardo Barretto
Hello all, Today we are releasing a new minor version (3.8.2) of OpenCryptoki! This release includes: - Update man pages. - Improve ock_tests for parallel execution. - Fix FindObjectsInit for hidden HW-feature. - Fix to allow vendor defined hardware features. - Fix unresolved symbols for rpmbuild

[Opencryptoki-tech] New release of opencryptoki, openssl-ibmca and openssl-ibmpkcs11!

2018-02-22 Thread Eduardo Barretto
Hello all, Today we are making three new releases: 1. OpenCryptoki - 3.9.0 - Improve build flags - EP11 EC Key Import - Support CK_FALSE and CK_TRUE that was introduced in PKCS #11 v2.20 - EP11 Enhancements - Update broken links in documentation - Increase RSA max key length - Fix token reinitia

[Opencryptoki-tech] New release of opencryptoki and openssl-ibmca!

2018-06-08 Thread Eduardo Barretto
Hello all, Today we are releasing new versions of opencryptoki (3.10.0) and openssl-ibmca (2.0.0): 1. Opencryptoki 3.10.0 - Add support to ECC on ICA token and to common code. - Add SHA224 support to SOFT token. - Improve pkcsslotd logging. - Fix sha512_hmac_sign and rsa_x509_verify for ICA

[Opencryptoki-tech] New release of opencryptoki and openssl-ibmca!

2018-06-08 Thread Eduardo Barretto
Hello all, Today we are releasing new versions of opencryptoki (3.10.0) and openssl-ibmca (2.0.0): 1. Opencryptoki 3.10.0 - Add support to ECC on ICA token and to common code. - Add SHA224 support to SOFT token. - Improve pkcsslotd logging. - Fix sha512_hmac_sign and rsa_x509_verify for ICA to