5c54de
# This spec file has been automatically updated
1ef5fa
Version:	0.24.1
1ef5fa
Release: 2%{?dist}
5c54de
Name:           p11-kit
5c54de
Summary:        Library for loading and sharing PKCS#11 modules
5c54de
5c54de
License:        BSD
5c54de
URL:            http://p11-glue.freedesktop.org/p11-kit.html
5c54de
Source0:        https://github.com/p11-glue/p11-kit/releases/download/%{version}/p11-kit-%{version}.tar.xz
5c54de
Source1:        https://github.com/p11-glue/p11-kit/releases/download/%{version}/p11-kit-%{version}.tar.xz.sig
5c54de
Source2:        gpgkey-462225C3B46F34879FC8496CD605848ED7E69871.gpg
5c54de
Source3:        trust-extract-compat
5c54de
Source4:        p11-kit-client.service
5c54de
5c54de
BuildRequires:  gcc
5c54de
BuildRequires:  libtasn1-devel >= 2.3
5c54de
BuildRequires:  libffi-devel
5c54de
BuildRequires:  gettext
5c54de
BuildRequires:  gtk-doc
5c54de
BuildRequires:  meson
5c54de
BuildRequires:  systemd-devel
5c54de
BuildRequires:  bash-completion
5c54de
# Work around for https://bugzilla.redhat.com/show_bug.cgi?id=1497147
5c54de
# Remove this once it is fixed
5c54de
BuildRequires:  pkgconfig(glib-2.0)
5c54de
BuildRequires:  gnupg2
5c54de
BuildRequires:  /usr/bin/xsltproc
5c54de
5c54de
%description
5c54de
p11-kit provides a way to load and enumerate PKCS#11 modules, as well
5c54de
as a standard configuration setup for installing PKCS#11 modules in
5c54de
such a way that they're discoverable.
5c54de
5c54de
5c54de
%package devel
5c54de
Summary:        Development files for %{name}
5c54de
Requires:       %{name}%{?_isa} = %{version}-%{release}
5c54de
5c54de
%description devel
5c54de
The %{name}-devel package contains libraries and header files for
5c54de
developing applications that use %{name}.
5c54de
5c54de
5c54de
%package trust
5c54de
Summary:            System trust module from %{name}
5c54de
Requires:           %{name}%{?_isa} = %{version}-%{release}
5c54de
Requires(post):     %{_sbindir}/update-alternatives
5c54de
Requires(postun):   %{_sbindir}/update-alternatives
5c54de
Conflicts:          nss < 3.14.3-9
5c54de
5c54de
%description trust
5c54de
The %{name}-trust package contains a system trust PKCS#11 module which
1ef5fa
contains certificate anchors and blocklists.
5c54de
5c54de
5c54de
%package server
5c54de
Summary:        Server and client commands for %{name}
5c54de
Requires:       %{name}%{?_isa} = %{version}-%{release}
5c54de
5c54de
%description server
5c54de
The %{name}-server package contains command line tools that enable to
5c54de
export PKCS#11 modules through a Unix domain socket.  Note that this
5c54de
feature is still experimental.
5c54de
5c54de
5c54de
# solution taken from icedtea-web.spec
5c54de
%define multilib_arches ppc64 sparc64 x86_64 ppc64le
5c54de
%ifarch %{multilib_arches}
5c54de
%define alt_ckbi  libnssckbi.so.%{_arch}
5c54de
%else
5c54de
%define alt_ckbi  libnssckbi.so
5c54de
%endif
5c54de
5c54de
5c54de
%prep
5c54de
gpgv2 --keyring %{SOURCE2} %{SOURCE1} %{SOURCE0}
5c54de
5c54de
%autosetup -p1
5c54de
5c54de
%build
5c54de
# These paths are the source paths that  come from the plan here:
5c54de
# https://fedoraproject.org/wiki/Features/SharedSystemCertificates:SubTasks
5c54de
%meson -Dgtk_doc=true -Dman=true -Dtrust_paths=%{_sysconfdir}/pki/ca-trust/source:%{_datadir}/pki/ca-trust-source
5c54de
%meson_build
5c54de
5c54de
%install
5c54de
%meson_install
5c54de
mkdir -p $RPM_BUILD_ROOT%{_sysconfdir}/pkcs11/modules
5c54de
install -p -m 755 %{SOURCE3} $RPM_BUILD_ROOT%{_libexecdir}/p11-kit/
5c54de
# Install the example conf with %%doc instead
5c54de
mkdir -p $RPM_BUILD_ROOT%{_docdir}/%{name}
5c54de
mv $RPM_BUILD_ROOT%{_sysconfdir}/pkcs11/pkcs11.conf.example $RPM_BUILD_ROOT%{_docdir}/%{name}/pkcs11.conf.example
5c54de
mkdir -p $RPM_BUILD_ROOT%{_userunitdir}
5c54de
install -p -m 644 %{SOURCE4} $RPM_BUILD_ROOT%{_userunitdir}
5c54de
%find_lang %{name}
5c54de
5c54de
%check
5c54de
%meson_test
5c54de
5c54de
5c54de
%post trust
5c54de
%{_sbindir}/update-alternatives --install %{_libdir}/libnssckbi.so \
5c54de
        %{alt_ckbi} %{_libdir}/pkcs11/p11-kit-trust.so 30
5c54de
5c54de
%postun trust
5c54de
if [ $1 -eq 0 ] ; then
5c54de
        # package removal
5c54de
        %{_sbindir}/update-alternatives --remove %{alt_ckbi} %{_libdir}/pkcs11/p11-kit-trust.so
5c54de
fi
5c54de
5c54de
5c54de
%files -f %{name}.lang
5c54de
%{!?_licensedir:%global license %%doc}
5c54de
%license COPYING
5c54de
%doc AUTHORS NEWS README
5c54de
%{_docdir}/%{name}/pkcs11.conf.example
5c54de
%dir %{_sysconfdir}/pkcs11
5c54de
%dir %{_sysconfdir}/pkcs11/modules
5c54de
%dir %{_datadir}/p11-kit
5c54de
%dir %{_datadir}/p11-kit/modules
5c54de
%dir %{_libexecdir}/p11-kit
5c54de
%{_bindir}/p11-kit
5c54de
%{_libdir}/libp11-kit.so.*
5c54de
%{_libdir}/p11-kit-proxy.so
5c54de
%{_libexecdir}/p11-kit/p11-kit-remote
5c54de
%{_mandir}/man1/trust.1.gz
5c54de
%{_mandir}/man8/p11-kit.8.gz
5c54de
%{_mandir}/man5/pkcs11.conf.5.gz
5c54de
%{_datadir}/bash-completion/completions/p11-kit
5c54de
5c54de
%files devel
5c54de
%{_includedir}/p11-kit-1/
5c54de
%{_libdir}/libp11-kit.so
5c54de
%{_libdir}/pkgconfig/p11-kit-1.pc
5c54de
%doc %{_datadir}/gtk-doc/
5c54de
5c54de
%files trust
5c54de
%{_bindir}/trust
5c54de
%dir %{_libdir}/pkcs11
5c54de
%ghost %{_libdir}/libnssckbi.so
5c54de
%{_libdir}/pkcs11/p11-kit-trust.so
5c54de
%{_datadir}/p11-kit/modules/p11-kit-trust.module
5c54de
%{_libexecdir}/p11-kit/trust-extract-compat
5c54de
%{_datadir}/bash-completion/completions/trust
5c54de
5c54de
%files server
5c54de
%{_libdir}/pkcs11/p11-kit-client.so
5c54de
%{_userunitdir}/p11-kit-client.service
5c54de
%{_libexecdir}/p11-kit/p11-kit-server
5c54de
%{_userunitdir}/p11-kit-server.service
5c54de
%{_userunitdir}/p11-kit-server.socket
5c54de
5c54de
5c54de
%changelog
1ef5fa
* Tue Feb  1 2022 Daiki Ueno <dueno@redhat.com> - 0.24.1-2
1ef5fa
- Replace "black list" with "blocklist" in -trust subpackage description (#2026457)
1ef5fa
1ef5fa
* Mon Jan 17 2022 Packit Service <user-cont-team+packit-service@redhat.com> - 0.24.1-1
1ef5fa
- Release 0.24.1 (Daiki Ueno)
1ef5fa
- common: Support copying attribute array recursively (Daiki Ueno)
1ef5fa
- common: Add assert_ptr_cmp (Daiki Ueno)
1ef5fa
- gtkdoc: remove dependencies on custom target files (Eli Schwartz)
1ef5fa
- doc: Replace occurrence of black list with blocklist (Daiki Ueno)
1ef5fa
- build: Suppress cppcheck false-positive on array bounds (Daiki Ueno)
1ef5fa
- ci: Use Docker image from the same repository (Daiki Ueno)
1ef5fa
- ci: Integrate Docker image building to GitHub workflow (Daiki Ueno)
1ef5fa
- rpc: Fallback to version 0 if server does not support negotiation (Daiki Ueno)
1ef5fa
- build: Port e850e03be65ed573d0b69ee0408e776c08fad8a3 to meson (Daiki Ueno)
1ef5fa
- Link libp11-kit so that it cannot unload (Emmanuel Dreyfus)
1ef5fa
- trust: Use dngettext for plurals (Daiki Ueno)
1ef5fa
- rpc: Support protocol version negotiation (Daiki Ueno)
1ef5fa
- rpc: Separate authentication step from transaction (Daiki Ueno)
1ef5fa
- Meson: p11_system_config_modules instead of p11_package_config_modules (Issam E. Maghni)
1ef5fa
- shell: test -a|o is not POSIX (Issam E. Maghni)
1ef5fa
- Meson: Add libtasn1 to trust programs (Issam E. Maghni)
1ef5fa
- meson: optionalise glib's development files for gtk_doc (Đoàn Trần Công Danh)
1ef5fa
5c54de
* Wed Aug 18 2021 DJ Delorie <dj@redhat.com> - 0.24.0-4
5c54de
- Rebuilt for libffi 3.4.2 SONAME transition.
5c54de
  Related: rhbz#1891914
5c54de
5c54de
* Mon Aug 09 2021 Mohan Boddu <mboddu@redhat.com> - 0.24.0-3
5c54de
- Rebuilt for IMA sigs, glibc 2.34, aarch64 flags
5c54de
  Related: rhbz#1991688
5c54de
5c54de
* Tue Jul 13 2021 Daiki Ueno <dueno@redhat.com> - 0.24.0-2
5c54de
- Rebuild with newer GCC to fix annocheck failures
5c54de
5c54de
* Thu Jun 03 2021 Packit Service <user-cont-team+packit-service@redhat.com> - 0.24.0-1
5c54de
- common: Only check strndup behavior when replacement is used (Daiki Ueno)
5c54de
- Release 0.24.0 (Daiki Ueno)
5c54de
- Release 0.23.22 (Daiki Ueno)
5c54de
- rpc: Tighten attribute array check with manual enumeration (Daiki Ueno)
5c54de
- Check for SUN_LEN and provide fallback (Claes Nästén)
5c54de
- Do not define _XOPEN_SOURCE in compat.c on Solaris (Claes Nästén)
5c54de
- make autogen.sh a bit more portable (Claes Nästén)
5c54de
- rpc-server: Disable parsing CKF_ARRAY_ATTRIBUTE (Daiki Ueno)
5c54de
- Update README.md (Daiki Ueno)
5c54de
- README.md: Suggest using only meson sub-commands instead of ninja (Daiki Ueno)
5c54de
- p11-kit: Add missing <limits.h> include for SIZE_MAX (Daiki Ueno)
5c54de
- packit: drop synced_files (Tomas Tomecek)
5c54de
- packit: fedora renamed master branch to rawhide (Tomas Tomecek)
5c54de
- Fix minor typo (Yuri Chornoivan)
5c54de
- po: Add trust/trust.c to POTFILES.in (Daiki Ueno)
5c54de
- po: Update POTFILES.in (Daiki Ueno)
5c54de
- trust: Make more strings translatable (Daiki Ueno)
5c54de
- p11-kit: Make more strings translatable (Daiki Ueno)
5c54de
- common: Enable message translation in p11_tool_main (Daiki Ueno)
5c54de
- meson: Make sure to set PROJECT_NAME and ENABLE_NLS for 'nls' option (Daiki Ueno)
5c54de
- build: Add fuzz/meson.build in the distribution (Daiki Ueno)
5c54de
- fuzz: Move the directory out of build/ (Daiki Ueno)
5c54de
- Release all library/mock resources before exit (David Cook)
5c54de
- Add separate oss-fuzz Makefile target (David Cook)
5c54de
- Add build targets for future additional fuzzers (David Cook)
5c54de
- Build fuzzer target from meson/ninja (David Cook)
5c54de
- Explicit dependency for virtual-fixed-generated.h (David Cook)
5c54de
- Build fuzzer target from automake (David Cook)
5c54de
- rpc_fuzzer: Clean up buffer before exit (David Cook)
5c54de
- New set of fuzzer seeds (David Cook)
5c54de
- github: Remove unnecessary SRCDIR envvar (Daiki Ueno)
5c54de
- github: Use runuser instead of su for building and testing (Daiki Ueno)
5c54de
- github: Use composite action to simplify the main recipe (Daiki Ueno)
5c54de
- github: Use pre-built container image for building (Daiki Ueno)
5c54de
- README.md: Add GitHub workflow status (Daiki Ueno)
5c54de
- travis: Remove configurations other than FreeBSD (Daiki Ueno)
5c54de
- autotools: Fix for VPATH build (Daiki Ueno)
5c54de
- github actions: Initial CI setup (Anderson Toshiyuki Sasaki)
5c54de
- modules: p11_kit_initialize_module: Remove redundant module unref (Daiki Ueno)
5c54de
- server: Account for NUL byte at the end of Unix domain socket path (Daiki Ueno)
5c54de
- compat: Expose FreeBSD specific issetugid, getresuid, and getresgid (Daiki Ueno)
5c54de
- compat: Remove <unistd.h> inclusion from compat.h (Daiki Ueno)
5c54de
- compat: Avoid unused variables warning in fdwalk emulation (Daiki Ueno)
5c54de
- compat: Pacify ASan complaints on intentionally leaked buffer (Daiki Ueno)
5c54de
- meson: Link trust/client modules explicitly to -ldl (Daiki Ueno)
5c54de
- p11-kit/lists.c: Add stdint.h to fix compilation (Daniel Engberg)
5c54de
- Follow-up to arithmetic overflow fix (David Cook)
5c54de
- Check for arithmetic overflows before allocating (David Cook)
5c54de
- Check attribute length against buffer size (David Cook)
5c54de
- Fix bounds check in p11_rpc_buffer_get_byte_array (David Cook)
5c54de
- Fix buffer overflow in log_token_info (David Cook)
5c54de
- common: Don't assume __STDC_VERSION__ is always defined (Daiki Ueno)
5c54de
- compat: getauxval: correct compiler macro for FreeBSD (Daiki Ueno)
5c54de
- compat: fdwalk: add guard for Linux specific local variables (Daiki Ueno)
5c54de
- meson: Add missing libtasn1 dependency (Daiki Ueno)
5c54de
- travis: Add freebsd build (Daiki Ueno)
5c54de
- anchor: Prefer persistent format when storing anchor (Daiki Ueno)
5c54de
- travis: Run "make check" along with "make distcheck" for coverage (Daiki Ueno)
5c54de
- travis: Use python3 as the default Python interpreter (Daiki Ueno)
5c54de
- travis: Route to Ubuntu 20.04 base image (Daiki Ueno)
5c54de
- meson: Set -fstack-protector for MinGW64 cross build (Daiki Ueno)
5c54de
- meson: expand ternary operator in function call for compatibility (Daiki Ueno)
5c54de
- meson: Use custom_target for generating external XML entities (Daiki Ueno)
5c54de
- meson: Allow building manpages without gtk-doc (Jan Alexander Steffens (heftig))
5c54de
- Rename is_path_component to is_path_separator (Alexander Sosedkin)
5c54de
- Use is_path_component in one more place (Alexander Sosedkin)
5c54de
- Remove more duplicate separators in p11_path_build (Alexander Sosedkin)
5c54de
- common: Fix infloop in p11_path_build (Daiki Ueno)
5c54de
- Use inclusive language on certificate distrust (Daiki Ueno)
5c54de
- proxy: C_CloseAllSessions: Make sure that calloc args are non-zero (Daiki Ueno)
5c54de
- build: Use calloc in a consistent manner (Daiki Ueno)
5c54de
- meson: Allow override of default bashcompdir. Fixes meson regression (issue #322).  Pass -Dbashcompdir=/xxx to meson. (John Hein)
5c54de
- common: Check for a NULL locale before freeing it (Tavian Barnes)
5c54de
- p11_test_copy_setgid: Skip setgid tests on nosuid filesystems (Anders Kaseorg)
5c54de
- unix-peer: replace incorrect include1 (Rosen Penev)
5c54de
- test-compat: Skip getprogname test if BUILDDIR contains a symlink (Daiki Ueno)
5c54de
- add trust-extract-compat into EXTRA-DIST (Xℹ Ruoyao)
5c54de
- meson: install trust-extract-compat (Xℹ Ruoyao)
5c54de
- rename trust-extract-compat.in to trust-extract-compat (Xℹ Ruoyao)
5c54de
5c54de
* Fri Apr 16 2021 Mohan Boddu <mboddu@redhat.com> - 0.23.22-4
5c54de
- Rebuilt for RHEL 9 BETA on Apr 15th 2021. Related: rhbz#1947937
5c54de
5c54de
* Tue Jan 26 2021 Daiki Ueno <dueno@redhat.com> - 0.23.22-3
5c54de
- Suppress intentional memleak in getprogname emulation (#1905581)
5c54de
5c54de
* Tue Jan 26 2021 Fedora Release Engineering <releng@fedoraproject.org> - 0.23.22-2
5c54de
- Rebuilt for https://fedoraproject.org/wiki/Fedora_34_Mass_Rebuild
5c54de
5c54de
* Fri Dec 11 2020 Packit Service <user-cont-team+packit-service@redhat.com> - 0.23.22-1
5c54de
- Release 0.23.22 (Daiki Ueno)
5c54de
- Follow-up to arithmetic overflow fix (David Cook)
5c54de
- Check for arithmetic overflows before allocating (David Cook)
5c54de
- Check attribute length against buffer size (David Cook)
5c54de
- Fix bounds check in p11_rpc_buffer_get_byte_array (David Cook)
5c54de
- Fix buffer overflow in log_token_info (David Cook)
5c54de
- common: Don't assume __STDC_VERSION__ is always defined (Daiki Ueno)
5c54de
- compat: getauxval: correct compiler macro for FreeBSD (Daiki Ueno)
5c54de
- compat: fdwalk: add guard for Linux specific local variables (Daiki Ueno)
5c54de
- meson: Add missing libtasn1 dependency (Daiki Ueno)
5c54de
- travis: Add freebsd build (Daiki Ueno)
5c54de
- anchor: Prefer persistent format when storing anchor (Daiki Ueno)
5c54de
- travis: Run "make check" along with "make distcheck" for coverage (Daiki Ueno)
5c54de
- travis: Use python3 as the default Python interpreter (Daiki Ueno)
5c54de
- travis: Route to Ubuntu 20.04 base image (Daiki Ueno)
5c54de
- meson: Set -fstack-protector for MinGW64 cross build (Daiki Ueno)
5c54de
- meson: expand ternary operator in function call for compatibility (Daiki Ueno)
5c54de
- meson: Use custom_target for generating external XML entities (Daiki Ueno)
5c54de
- meson: Allow building manpages without gtk-doc (Jan Alexander Steffens (heftig))
5c54de
- Rename is_path_component to is_path_separator (Alexander Sosedkin)
5c54de
- Use is_path_component in one more place (Alexander Sosedkin)
5c54de
- Remove more duplicate separators in p11_path_build (Alexander Sosedkin)
5c54de
- common: Fix infloop in p11_path_build (Daiki Ueno)
5c54de
- proxy: C_CloseAllSessions: Make sure that calloc args are non-zero (Daiki Ueno)
5c54de
- build: Use calloc in a consistent manner (Daiki Ueno)
5c54de
- meson: Allow override of default bashcompdir. Fixes meson regression (issue #322).  Pass -Dbashcompdir=/xxx to meson. (John Hein)
5c54de
- common: Check for a NULL locale before freeing it (Tavian Barnes)
5c54de
- p11_test_copy_setgid: Skip setgid tests on nosuid filesystems (Anders Kaseorg)
5c54de
- unix-peer: replace incorrect include1 (Rosen Penev)
5c54de
- test-compat: Skip getprogname test if BUILDDIR contains a symlink (Daiki Ueno)
5c54de
- add trust-extract-compat into EXTRA-DIST (Xℹ Ruoyao)
5c54de
- meson: install trust-extract-compat (Xℹ Ruoyao)
5c54de
- rename trust-extract-compat.in to trust-extract-compat (Xℹ Ruoyao)
5c54de
5c54de
* Thu Nov 12 2020 Alexander Sosedkin <asosedkin@redhat.com> - 0.23.21-3
5c54de
- Add an explicit build dependency on xsltproc
5c54de
5c54de
* Tue Aug 18 2020 Packit Service <user-cont-team+packit-service@redhat.com> - 0.23.21-2
5c54de
- new upstream release: 0.23.21
5c54de
5c54de
* Tue Jul 28 2020 Fedora Release Engineering <releng@fedoraproject.org> - 0.23.20-2
5c54de
- Rebuilt for https://fedoraproject.org/wiki/Fedora_33_Mass_Rebuild
5c54de
5c54de
* Wed Jan 29 2020 Daiki Ueno <dueno@redhat.com> - 0.23.20-1
5c54de
- Update to upstream 0.23.20 release
5c54de
5c54de
* Wed Jan 22 2020 Daiki Ueno <dueno@redhat.com> - 0.23.19-1
5c54de
- Update to upstream 0.23.19 release
5c54de
- Check archive signature in %%prep
5c54de
- Switch to using Meson as the build system
5c54de
5c54de
* Mon Sep 30 2019 Daiki Ueno <dueno@redhat.com> - 0.23.18.1-1
5c54de
- Update to upstream 0.23.18.1 release
5c54de
5c54de
* Thu Jul 25 2019 Fedora Release Engineering <releng@fedoraproject.org> - 0.23.16.1-2
5c54de
- Rebuilt for https://fedoraproject.org/wiki/Fedora_31_Mass_Rebuild
5c54de
5c54de
* Thu May 23 2019 Daiki Ueno <dueno@redhat.com> - 0.23.16.1-1
5c54de
- Update to upstream 0.23.16.1 release
5c54de
5c54de
* Thu May 23 2019 Daiki Ueno <dueno@redhat.com> - 0.23.16-1
5c54de
- Update to upstream 0.23.16 release
5c54de
5c54de
* Mon Feb 18 2019 Daiki Ueno <dueno@redhat.com> - 0.23.15-3
5c54de
- trust: Ignore unreadable content in anchors
5c54de
5c54de
* Fri Feb 01 2019 Fedora Release Engineering <releng@fedoraproject.org> - 0.23.15-2
5c54de
- Rebuilt for https://fedoraproject.org/wiki/Fedora_30_Mass_Rebuild
5c54de
5c54de
* Mon Jan 21 2019 Daiki Ueno <dueno@redhat.com> - 0.23.15-1
5c54de
- Update to upstream 0.23.15 release
5c54de
5c54de
* Fri Jan 11 2019 Nils Philippsen <nils@tiptoe.de> - 0.23.14-3
5c54de
- use spaces instead of tabs consistently
5c54de
- prefer fixed closures to libffi closures (#1656245, patch by Daiki Ueno)
5c54de
5c54de
* Mon Oct 29 2018 James Antill <james.antill@redhat.com> - 0.23.14-2
5c54de
- Remove ldconfig scriptlet, now done via. transfiletrigger in glibc.
5c54de
5c54de
* Fri Sep 07 2018 Daiki Ueno <dueno@redhat.com> - 0.23.14-1
5c54de
- Update to upstream 0.23.14 release
5c54de
5c54de
* Wed Aug 15 2018 Daiki Ueno <dueno@redhat.com> - 0.23.13-3
5c54de
- Forcibly link with libpthread to avoid regressions (rhbz#1615038)
5c54de
5c54de
* Wed Aug 15 2018 Daiki Ueno <dueno@redhat.com> - 0.23.13-2
5c54de
- Fix invalid memory access on proxy cleanup
5c54de
5c54de
* Fri Aug 10 2018 Daiki Ueno <dueno@redhat.com> - 0.23.13-1
5c54de
- Update to upstream 0.23.13 release
5c54de
5c54de
* Fri Jul 13 2018 Fedora Release Engineering <releng@fedoraproject.org> - 0.23.12-2
5c54de
- Rebuilt for https://fedoraproject.org/wiki/Fedora_29_Mass_Rebuild
5c54de
5c54de
* Wed May 30 2018 Daiki Ueno <dueno@redhat.com> - 0.23.12-1
5c54de
- Update to upstream 0.23.11 release
5c54de
5c54de
* Wed Feb 28 2018 Daiki Ueno <dueno@redhat.com> - 0.23.10-1
5c54de
- Update to upstream 0.23.10 release
5c54de
5c54de
* Thu Feb 08 2018 Fedora Release Engineering <releng@fedoraproject.org> - 0.23.9-3
5c54de
- Rebuilt for https://fedoraproject.org/wiki/Fedora_28_Mass_Rebuild
5c54de
5c54de
* Thu Oct 05 2017 Daiki Ueno <dueno@redhat.com> - 0.23.9-2
5c54de
- server: Make it possible to eval envvar settings
5c54de
5c54de
* Wed Oct 04 2017 Daiki Ueno <dueno@redhat.com> - 0.23.9-1
5c54de
- Update to upstream 0.23.9
5c54de
5c54de
* Fri Aug 25 2017 Kai Engert <kaie@redhat.com> - 0.23.8-2
5c54de
- Fix a regression caused by a recent nss.rpm change, add a %%ghost file
5c54de
  for %%{_libdir}/libnssckbi.so that p11-kit-trust scripts install.
5c54de
5c54de
* Tue Aug 15 2017 Daiki Ueno <dueno@redhat.com> - 0.23.8-1
5c54de
- Update to 0.23.8 release
5c54de
5c54de
* Thu Aug 03 2017 Fedora Release Engineering <releng@fedoraproject.org> - 0.23.7-3
5c54de
- Rebuilt for https://fedoraproject.org/wiki/Fedora_27_Binutils_Mass_Rebuild
5c54de
5c54de
* Thu Jul 27 2017 Fedora Release Engineering <releng@fedoraproject.org> - 0.23.7-2
5c54de
- Rebuilt for https://fedoraproject.org/wiki/Fedora_27_Mass_Rebuild
5c54de
5c54de
* Fri Jun  2 2017 Daiki Ueno <dueno@redhat.com> - 0.23.7-1
5c54de
- Update to 0.23.7 release
5c54de
5c54de
* Thu May 18 2017 Daiki Ueno <dueno@redhat.com> - 0.23.5-3
5c54de
- Update p11-kit-modifiable.patch to simplify the logic
5c54de
5c54de
* Thu May 18 2017 Daiki Ueno <dueno@redhat.com> - 0.23.5-2
5c54de
- Make "trust anchor --remove" work again
5c54de
5c54de
* Thu Mar  2 2017 Daiki Ueno <dueno@redhat.com> - 0.23.5-1
5c54de
- Update to 0.23.5 release
5c54de
- Rename -tools subpackage to -server and remove systemd unit files
5c54de
5c54de
* Fri Feb 24 2017 Daiki Ueno <dueno@redhat.com> - 0.23.4-3
5c54de
- Move p11-kit command back to main package
5c54de
5c54de
* Fri Feb 24 2017 Daiki Ueno <dueno@redhat.com> - 0.23.4-2
5c54de
- Split out command line tools to -tools subpackage, to avoid a
5c54de
  multilib issue with the main package.  Suggested by Yanko Kaneti.
5c54de
5c54de
* Wed Feb 22 2017 Daiki Ueno <dueno@redhat.com> - 0.23.4-1
5c54de
- Update to 0.23.4 release
5c54de
5c54de
* Sat Feb 11 2017 Fedora Release Engineering <releng@fedoraproject.org> - 0.23.3-3
5c54de
- Rebuilt for https://fedoraproject.org/wiki/Fedora_26_Mass_Rebuild
5c54de
5c54de
* Fri Jan  6 2017 Daiki Ueno <dueno@redhat.com> - 0.23.3-2
5c54de
- Use internal hash implementation instead of NSS (#1390598)
5c54de
5c54de
* Tue Dec 20 2016 Daiki Ueno <dueno@redhat.com> - 0.23.3-1
5c54de
- Update to 0.23.3 release
5c54de
- Adjust executables location from %%libdir to %%libexecdir
5c54de
5c54de
* Thu Feb 04 2016 Fedora Release Engineering <releng@fedoraproject.org> - 0.23.2-2
5c54de
- Rebuilt for https://fedoraproject.org/wiki/Fedora_24_Mass_Rebuild
5c54de
5c54de
* Tue Jan 12 2016 Martin Preisler <mpreisle@redhat.com> - 0.23.2-1
5c54de
- Update to stable 0.23.2 release
5c54de
5c54de
* Tue Jun 30 2015 Martin Preisler <mpreisle@redhat.com> - 0.23.1-4
5c54de
- In proxy module don't call C_Finalize on a forked process [#1217915]
5c54de
- Do not deinitialize libffi's wrapper functions [#1217915]
5c54de
5c54de
* Thu Jun 18 2015 Fedora Release Engineering <rel-eng@lists.fedoraproject.org> - 0.23.1-3
5c54de
- Rebuilt for https://fedoraproject.org/wiki/Fedora_23_Mass_Rebuild
5c54de
5c54de
* Sat Feb 21 2015 Till Maas <opensource@till.name> - 0.23.1-2
5c54de
- Rebuilt for Fedora 23 Change
5c54de
  https://fedoraproject.org/wiki/Changes/Harden_all_packages_with_position-independent_code
5c54de
5c54de
* Fri Feb 20 2015 Stef Walter <stefw@redhat.com> - 0.23.1-1
5c54de
- Update to 0.23.1 release
5c54de
5c54de
* Thu Oct 09 2014 Stef Walter <stefw@redhat.com> - 0.22.1-1
5c54de
- Update to 0.22.1 release
5c54de
- Use SubjectKeyIdentifier as a CKA_ID if possible rhbz#1148895
5c54de
5c54de
* Sat Oct 04 2014 Stef Walter <stefw@redhat.com> 0.22.0-1
5c54de
- Update to 0.22.0 release
5c54de
5c54de
* Wed Sep 17 2014 Stef Walter <stefw@redhat.com> 0.21.3-1
5c54de
- Update to 0.21.3 release
5c54de
- Includes definitions for trust extensions rhbz#1136817
5c54de
5c54de
* Fri Sep 05 2014 Stef Walter <stefw@redhat.com> 0.21.2-1
5c54de
- Update to 0.21.2 release
5c54de
- Fix problems with erroneous messages printed rhbz#1133857
5c54de
5c54de
* Sun Aug 17 2014 Fedora Release Engineering <rel-eng@lists.fedoraproject.org> - 0.21.1-2
5c54de
- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_22_Mass_Rebuild
5c54de
5c54de
* Thu Aug 07 2014 Stef Walter <stefw@redhat.com> - 0.21.1-1
5c54de
- Update to 0.21.1 release
5c54de
5c54de
* Wed Jul 30 2014 Tom Callaway <spot@fedoraproject.org> - 0.20.3-3
5c54de
- fix license handling
5c54de
5c54de
* Fri Jul 04 2014 Stef Walter <stefw@redhat.com> - 0.20.3-2
5c54de
- Update to stable 0.20.3 release
5c54de
5c54de
* Fri Jun 06 2014 Fedora Release Engineering <rel-eng@lists.fedoraproject.org> - 0.20.2-3
5c54de
- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild
5c54de
5c54de
* Sat Jan 25 2014 Ville Skyttä <ville.skytta@iki.fi> - 0.20.2-2
5c54de
- Own the %%{_libdir}/pkcs11 dir in -trust.
5c54de
5c54de
* Tue Jan 14 2014 Stef Walter <stefw@redhat.com> - 0.20.2-1
5c54de
- Update to upstream stable 0.20.2 release
5c54de
- Fix regression involving blacklisted anchors [#1041328]
5c54de
- Support ppc64le in build [#1052707]
5c54de
5c54de
* Mon Sep 09 2013 Stef Walter <stefw@redhat.com> - 0.20.1-1
5c54de
- Update to upstream stable 0.20.1 release
5c54de
- Extract compat trust data after we've changes
5c54de
- Skip compat extraction if running as non-root
5c54de
- Better failure messages when removing anchors
5c54de
5c54de
* Thu Aug 29 2013 Stef Walter <stefw@redhat.com> - 0.19.4-1
5c54de
- Update to new upstream 0.19.4 release
5c54de
5c54de
* Sat Aug 03 2013 Fedora Release Engineering <rel-eng@lists.fedoraproject.org> - 0.19.3-2
5c54de
- Rebuilt for https://fedoraproject.org/wiki/Fedora_20_Mass_Rebuild
5c54de
5c54de
* Wed Jul 24 2013 Stef Walter <stefw@redhat.com> - 0.19.3-1
5c54de
- Update to new upstream 0.19.3 release (#967822)
5c54de
5c54de
* Wed Jun 05 2013 Stef Walter <stefw@redhat.com> - 0.18.3-1
5c54de
- Update to new upstream stable release
5c54de
- Fix intermittent firefox cert validation issues (#960230)
5c54de
- Include the manual pages in the package
5c54de
5c54de
* Tue May 14 2013 Stef Walter <stefw@redhat.com> - 0.18.2-1
5c54de
- Update to new upstream stable release
5c54de
- Reduce the libtasn1 dependency minimum version
5c54de
5c54de
* Thu May 02 2013 Stef Walter <stefw@redhat.com> - 0.18.1-1
5c54de
- Update to new upstream stable release
5c54de
- 'p11-kit extract-trust' lives in libdir
5c54de
5c54de
* Thu Apr 04 2013 Stef Walter <stefw@redhat.com> - 0.18.0-1
5c54de
- Update to new upstream stable release
5c54de
- Various logging tweaks (#928914, #928750)
5c54de
- Make the 'p11-kit extract-trust' explicitly reject
5c54de
  additional arguments
5c54de
5c54de
* Thu Mar 28 2013 Stef Walter <stefw@redhat.com> - 0.17.5-1
5c54de
- Make 'p11-kit extract-trust' call update-ca-trust
5c54de
- Work around 32-bit oveflow of certificate dates
5c54de
- Build fixes
5c54de
5c54de
* Tue Mar 26 2013 Stef Walter <stefw@redhat.com> - 0.17.4-2
5c54de
- Pull in patch from upstream to fix build on ppc (#927394)
5c54de
5c54de
* Wed Mar 20 2013 Stef Walter <stefw@redhat.com> - 0.17.4-1
5c54de
- Update to upstream version 0.17.4
5c54de
5c54de
* Mon Mar 18 2013 Stef Walter <stefw@redhat.com> - 0.17.3-1
5c54de
- Update to upstream version 0.17.3
5c54de
- Put the trust input paths in the right order
5c54de
5c54de
* Tue Mar 12 2013 Stef Walter <stefw@redhat.com> - 0.16.4-1
5c54de
- Update to upstream version 0.16.4
5c54de
5c54de
* Fri Mar 08 2013 Stef Walter <stefw@redhat.com> - 0.16.3-1
5c54de
- Update to upstream version 0.16.3
5c54de
- Split out system trust module into its own package.
5c54de
- p11-kit-trust provides an alternative to an nss module
5c54de
5c54de
* Tue Mar 05 2013 Stef Walter <stefw@redhat.com> - 0.16.1-1
5c54de
- Update to upstream version 0.16.1
5c54de
- Setup source directories as appropriate for Shared System Certificates feature
5c54de
5c54de
* Tue Mar 05 2013 Stef Walter <stefw@redhat.com> - 0.16.0-1
5c54de
- Update to upstream version 0.16.0
5c54de
5c54de
* Thu Feb 14 2013 Fedora Release Engineering <rel-eng@lists.fedoraproject.org> - 0.14-2
5c54de
- Rebuilt for https://fedoraproject.org/wiki/Fedora_19_Mass_Rebuild
5c54de
5c54de
* Mon Sep 17 2012 Kalev Lember <kalevlember@gmail.com> - 0.14-1
5c54de
- Update to 0.14
5c54de
5c54de
* Fri Jul 20 2012 Fedora Release Engineering <rel-eng@lists.fedoraproject.org> - 0.13-2
5c54de
- Rebuilt for https://fedoraproject.org/wiki/Fedora_18_Mass_Rebuild
5c54de
5c54de
* Mon Jul 16 2012 Kalev Lember <kalevlember@gmail.com> - 0.13-1
5c54de
- Update to 0.13
5c54de
5c54de
* Tue Mar 27 2012 Kalev Lember <kalevlember@gmail.com> - 0.12-1
5c54de
- Update to 0.12
5c54de
- Run self tests in %%check
5c54de
5c54de
* Sat Feb 11 2012 Kalev Lember <kalevlember@gmail.com> - 0.11-1
5c54de
- Update to 0.11
5c54de
5c54de
* Fri Jan 13 2012 Fedora Release Engineering <rel-eng@lists.fedoraproject.org> - 0.9-2
5c54de
- Rebuilt for https://fedoraproject.org/wiki/Fedora_17_Mass_Rebuild
5c54de
5c54de
* Tue Dec 20 2011 Matthias Clasen <mclasen@redhat.com> - 0.9-1
5c54de
- Update to 0.9
5c54de
5c54de
* Wed Oct 26 2011 Kalev Lember <kalevlember@gmail.com> - 0.8-1
5c54de
- Update to 0.8
5c54de
5c54de
* Mon Sep 19 2011 Matthias Clasen <mclasen@redhat.com> - 0.6-1
5c54de
- Update to 0.6
5c54de
5c54de
* Sun Sep 04 2011 Kalev Lember <kalevlember@gmail.com> - 0.5-1
5c54de
- Update to 0.5
5c54de
5c54de
* Sun Aug 21 2011 Kalev Lember <kalevlember@gmail.com> - 0.4-1
5c54de
- Update to 0.4
5c54de
- Install the example config file to documentation directory
5c54de
5c54de
* Wed Aug 17 2011 Kalev Lember <kalevlember@gmail.com> - 0.3-2
5c54de
- Tighten -devel subpackage deps (#725905)
5c54de
5c54de
* Fri Jul 29 2011 Kalev Lember <kalevlember@gmail.com> - 0.3-1
5c54de
- Update to 0.3
5c54de
- Upstream rewrote the ASL 2.0 bits, which makes the whole package
5c54de
  BSD-licensed
5c54de
5c54de
* Tue Jul 12 2011 Kalev Lember <kalevlember@gmail.com> - 0.2-1
5c54de
- Initial RPM release