-
Fri Apr 28 2017 Kai Engert <kaie@redhat.com> - 2017.2.14-70.1
- Update to CKBI 2.14 from NSS 3.28.5 with legacy modifications.
-
Tue Jan 17 2017 Kai Engert <kaie@redhat.com> - 2017.2.11-70.1
- Update to CKBI 2.11 from NSS 3.28.1 with legacy modifications.
- Use comments in extracted bundle files.
- Change packaging script to support empty legacy bundles.
-
Tue May 10 2016 Kai Engert <kaie@redhat.com> - 2016.2.6-73
- Use sln, not ln, to avoid the dependency on coreutils (rhbz#1328586)
-
Mon Apr 25 2016 Kai Engert <kaie@redhat.com> - 2015.2.6-72
- Fixed a typo in a manual page (rhbz#1303960)
-
Wed Jan 27 2016 Kai Engert <kaie@redhat.com> - 2015.2.6-71
- Update to CKBI 2.6 from NSS 3.21 with legacy modifications.
-
Thu Apr 23 2015 Kai Engert <kaie@redhat.com> - 2015.2.4-71
- Update to CKBI 2.4 from NSS 3.18.1 with legacy modifications.
-
Tue Apr 14 2015 Kai Engert <kaie@redhat.com> - 2015.2.3-72
- Fix a typo in the ca-legacy manual page (rhbz#1208850)
-
Tue Mar 31 2015 Kai Engert <kaie@redhat.com> - 2015.2.3-71
- Update to CKBI 2.3 from NSS 3.18 with legacy modifications.
- Add an alternative version of the "Thawte Premium Server CA" root,
which carries a SHA1-RSA signature, to allow OpenJDK to verify applets
which contain that version of the root certificate.
This change doesn't add trust for another key, because both versions
of the certificate use the same public key (rhbz#1170982).
- Add a patch to the source RPM that documents the changes from the
upstream version.
- Introduce the ca-legacy utility, a manual page, and the ca-legacy.conf
configuration file.
- The new scriptlets require the coreutils package.
- Remove the obsolete blacklist.txt file.
-
Wed Sep 17 2014 Stef Walter <stefw@redhat.com> - 2014.1.98-72
- The BasicConstraints fix for Entrust Root is no longer necessary.
In addition it was invalid for p11-kit 0.20.x. rhbz#1130485
-
Wed Sep 03 2014 Kai Engert <kaie@redhat.com> - 2014.1.98-71
- Update to CKBI 1.98 from NSS 3.16.1
- building on RHEL 7 no longer requires java-openjdk
- added more detailed instructions for release numbers on RHEL branches,
to avoid problems when rebasing on both z- and y-stream branches.