Name: | pki-ca |
Version: | 10.5.1 |
Release: | 9.el7 |
Architecture: | noarch |
Group: | System Environment/Daemons |
Size: | 2359944 |
License: | GPLv2 |
RPM: |
pki-ca-10.5.1-9.el7.noarch.rpm
|
Source RPM: |
pki-core-10.5.1-9.el7.src.rpm
|
Build Date: | Thu Apr 12 2018 |
Build Host: | x86-ol7-builder-03.us.oracle.com |
Vendor: | Oracle America |
URL: | http://pki.fedoraproject.org/ |
Summary: | Certificate System - Certificate Authority |
Description: | The Certificate Authority (CA) is a required PKI subsystem which issues,
renews, revokes, and publishes certificates as well as compiling and
publishing Certificate Revocation Lists (CRLs).
The Certificate Authority can be configured as a self-signing Certificate
Authority, where it is the root CA, or it can act as a subordinate CA,
where it obtains its own signing certificate from a public CA.
This package is one of the top-level java-based Tomcat PKI subsystems
provided by the PKI Core used by the Certificate System.
==================================
|| ABOUT "CERTIFICATE SYSTEM" ||
==================================
Certificate System (CS) is an enterprise software system designed
to manage enterprise Public Key Infrastructure (PKI) deployments.
PKI Core contains ALL top-level java-based Tomcat PKI components:
* pki-symkey
* pki-base
* pki-base-python2 (alias for pki-base)
* pki-base-python3
* pki-base-java
* pki-tools
* pki-server
* pki-ca
* pki-kra
* pki-ocsp
* pki-tks
* pki-tps
* pki-javadoc
which comprise the following corresponding PKI subsystems:
* Certificate Authority (CA)
* Key Recovery Authority (KRA)
* Online Certificate Status Protocol (OCSP) Manager
* Token Key Service (TKS)
* Token Processing Service (TPS)
Python clients need only install the pki-base package. This
package contains the python REST client packages and the client
upgrade framework.
Java clients should install the pki-base-java package. This package
contains the legacy and REST Java client packages. These clients
should also consider installing the pki-tools package, which contain
native and Java-based PKI tools and utilities.
Certificate Server instances require the fundamental classes and
modules in pki-base and pki-base-java, as well as the utilities in
pki-tools. The main server classes are in pki-server, with subsystem
specific Java classes and resources in pki-ca, pki-kra, pki-ocsp etc.
Finally, if Certificate System is being deployed as an individual or
set of standalone rather than embedded server(s)/service(s), it is
strongly recommended (though not explicitly required) to include at
least one PKI Theme package:
* dogtag-pki-theme (Dogtag Certificate System deployments)
* dogtag-pki-server-theme
* redhat-pki-server-theme (Red Hat Certificate System deployments)
* redhat-pki-server-theme
* customized pki theme (Customized Certificate System deployments)
* <customized>-pki-server-theme
NOTE: As a convenience for standalone deployments, top-level meta
packages may be provided which bind a particular theme to
these certificate server packages. |
-
Mon Feb 19 2018 Dogtag Team <pki-devel@redhat.com> 10.5.1-9
- ##########################################################################
- # RHEL 7.5:
- ##########################################################################
- # Bugzilla Bug #1473452 - Rebase pki-core to latest upstream 10.5.x release
- Bugzilla Bug #1445532 - CC: Audit Events: Update the default audit event
set (RHEL) (edewata)
- Bugzilla Bug #1532867 - Inconsistent key ID encoding (edewata)
- Bugzilla Bug #1540687 - CC: External OCSP Installation failure with HSM
and FIPS (edewata)
- ##########################################################################
- # RHCS 9.3:
- ##########################################################################
- # Bugzilla Bug #1471303 - Rebase redhat-pki, redhat-pki-theme, pki-core,
- # Bugzilla Bug #1404075 - CC: Audit Events: Update the default audit event
-
Mon Feb 12 2018 Dogtag Team <pki-devel@redhat.com> 10.5.1-8
- ##########################################################################
- # RHEL 7.5:
- ##########################################################################
- # Bugzilla Bug #1473452 - Rebase pki-core to latest upstream 10.5.x release
- Bugzilla Bug #1542210 - pki console configurations that involves ldap
passwords leave the plain text password in debug logs (jmagne)
- Bugzilla Bug #1543242 - Regression in lightweight CA key replication
(ftweedal)
- ##########################################################################
- # RHCS 9.3:
- ##########################################################################
- # Bugzilla Bug #1471303 - Rebase redhat-pki, redhat-pki-theme, pki-core,
-
Mon Feb 05 2018 Dogtag Team <pki-devel@redhat.com> 10.5.1-7
- ##########################################################################
- # RHEL 7.5:
- ##########################################################################
- # Bugzilla Bug #1473452 - Rebase pki-core to latest upstream 10.5.x release
- Bugzilla Bug #1445532 - CC: Audit Events: Update the default audit event
set (RHEL) (edewata)
- Bugzilla Bug #1522938 - CC: Missing faillure resumption detection and
audit event logging at startup (jmagne)
- Bugzilla Bug #1523410 - Unable to have non "pkiuser" owned CA instance
(alee)
- Bugzilla Bug #1525306 - CC: missing CMC request and response record
(cfu)
- Bugzilla Bug #1532933 - Installing subsystems with external CMC
certificates in HSM environment shows import error (edewata)
- Bugzilla Bug #1535797 - ExternalCA: Failures when installed with hsm
(edewata)
- Bugzilla Bug #1539125 - restrict default cipher suite to those ciphers
permitted in fips mode (mharmsen)
- Bugzilla Bug #1539198 - Inconsistent CERT_REQUEST_PROCESSED
outcomes. (edewata)
- Bugzilla Bug #1540440 - CMC: Audit Events needed for failures in
SharedToken scenario's (cfu)
- Bugzilla Bug #1541526 - CMC: Revocation works with an unknown
revRequest.issuer (cfu)
- Bugzilla Bug #1541853 - ProfileService: config values with
backslashes have backslashes removed (ftweedal)
- ##########################################################################
- # RHCS 9.3:
- ##########################################################################
- # Bugzilla Bug #1471303 - Rebase redhat-pki, redhat-pki-theme, pki-core,
- # Bugzilla Bug #1404075 - CC: Audit Events: Update the default audit
- # Bugzilla Bug #1501436 - TPS CS.cfg should be reflected with the
-
Tue Jan 23 2018 Dogtag Team <pki-devel@redhat.com> 10.5.1-6
- Updated jss, nuxwdog, and openssl dependencies
- ##########################################################################
- # RHEL 7.5:
- ##########################################################################
- Bugzilla Bug #1473452 - Rebase pki-core to latest upstream 10.5.x release
(RHEL)
- Bugzilla Bug #1402280 - CA Cloning: Failed to update number range in
few cases (ftweedal)
- Bugzilla Bug #1428021 - CC: shared token storage and retrieval
mechanism (cfu)
- Bugzilla Bug #1447145 - CMC: cmc.popLinkWitnessRequired=false
would cause error (cfu)
- Bugzilla Bug #1498957 - pkidestroy does not work with nuxwdog
(alee)
- Bugzilla Bug #1520277 - PR_FILE_NOT_FOUND_ERROR during
pkispawn (alee)
- Bugzilla Bug #1520526 - p12 admin certificate is missing when
certificate is signed Externally (edewata)
- Bugzilla Bug #1523410 - Unable to have non "pkiuser" owned CA
instance (alee)
- Bugzilla Bug #1523443 - HAProxy rejects OCSP responses due to
missing nextupdate field (ftweedal)
- Bugzilla Bug #1526881 - Not able to setup CA with ECC (mharmsen)
- Bugzilla Bug #1532759 - pkispawn seems to be leaving our passwords
in several different files after installation completes (alee)
- ##########################################################################
- # RHCS 9.3:
- ##########################################################################
- # Bugzilla Bug #1471303 - Rebase redhat-pki, redhat-pki-theme, pki-core,
-
Mon Dec 11 2017 Dogtag Team <pki-devel@redhat.com> 10.5.1-5
- ##########################################################################
- # RHEL 7.5:
- ##########################################################################
- Bugzilla Bug #1473452 - Rebase pki-core to latest upstream 10.5.x release
(RHEL)
- Bugzilla Bug #1466066 - CC: Secure removal of secret data storage
(jmagne)
- Bugzilla Bug #1518096 - ExternalCA: Failures in ExternalCA when tried to
setup with CMC signed certificates (cfu)
- ##########################################################################
- # RHCS 9.3:
- ##########################################################################
- # Bugzilla Bug #1471303 - Rebase redhat-pki, redhat-pki-theme, pki-core, and
-
Mon Nov 27 2017 Dogtag Team <pki-devel@redhat.com> 10.5.1-4
- ##########################################################################
- # RHEL 7.5:
- ##########################################################################
- Bugzilla Bug #1473452 - Rebase pki-core to latest upstream 10.5.x release
(RHEL)
- ##########################################################################
- # RHCS 9.3:
- ##########################################################################
- #Bugzilla Bug #1471303 - Rebase redhat-pki, redhat-pki-theme, pki-core, and
-
Tue Nov 14 2017 Troy Dawson <tdawson@redhat.com> - 10.5.1-3
- dogtagpki Pagure Issue #2853 - Cleanup spec file conditionals
-
Wed Nov 08 2017 Dogtag Team <pki-devel@redhat.com> 10.5.1-2
- Patch applying check-ins since 10.5.1-1
-
Thu Nov 02 2017 Dogtag Team <pki-devel@redhat.com> 10.5.1-1
- ##########################################################################
- # RHEL 7.5:
- ##########################################################################
- Bugzilla Bug #1473452 - Rebase pki-core to latest upstream 10.5.x release
(RHEL)
- ##########################################################################
- # RHCS 9.3:
- ##########################################################################
- #Bugzilla Bug #1471303 - Rebase redhat-pki, redhat-pki-theme, pki-core, and
-
Thu Oct 19 2017 Dogtag Team <pki-devel@redhat.com> 10.5.0-1
- ##########################################################################
- # RHEL 7.5:
- ##########################################################################
- Bugzilla Bug #1473452 - Rebase pki-core to latest upstream 10.5.x release
(RHEL)
- ##########################################################################
- # RHCS 9.3:
- ##########################################################################
- #Bugzilla Bug #1471303 - Rebase redhat-pki, redhat-pki-theme, pki-core, and