openCryptoki-3.8.2-lp150.4.3.1<>,P\ '/=„=;0IiG r1&ffILO&%m7n@ 1\C_<[y!3(]z:s~[򊂦GIIM^//! 4x7谆N;t Ƒv9dN-N;IF53Ѽru]'W:ˇEL aI6ka~[ogN-2RӗtE=N|\U>F$r4 ldXMmC. gQ>Fo?od ! nhltx  gn&& & & & & H&&&l&,d  !~ (!8!-9"-:%_-=a~>a?a@aFaGa&HbH&Ib&XcYc\cL&]c&^ebg_chdhehfhlhuh&viT wmD&xm&ynt+zo o0o4o:o|CopenCryptoki3.8.2lp150.4.3.1An Implementation of PKCS#11 (Cryptoki) v2.11 for IBM Cryptographic HardwareThe PKCS#11 version 2.11 API implemented for the IBM cryptographic cards. This package includes support for the IBM 4758 cryptographic coprocessor (with the PKCS#11 firmware loaded) and the IBM eServer Cryptographic Accelerator (FC 4960 on pSeries).\ 'lamb19openSUSE Leap 15.0openSUSECPL-1.0http://bugs.opensuse.orgProductivity/Securityhttps://sourceforge.net/projects/opencryptoki/linuxx86_64 test -n "$FIRST_ARG" || FIRST_ARG="$1" # disable migration if initial install under systemd [ -d /var/lib/systemd/migrated ] || mkdir -p /var/lib/systemd/migrated || : if [ "$FIRST_ARG" -eq 1 ]; then for service in pkcsslotd.service ; do sysv_service="${service%.*}" touch "/var/lib/systemd/migrated/$sysv_service" || : done else for service in pkcsslotd.service ; do # The tag file might have been left by a preceding # update (see 1059627) rm -f "/run/rpm-openCryptoki-update-$service-new-in-upgrade" if [ ! -e "/usr/lib/systemd/system/$service" ]; then touch "/run/rpm-openCryptoki-update-$service-new-in-upgrade" fi done for service in pkcsslotd.service ; do sysv_service="${service%.*}" if [ -e /var/lib/systemd/migrated/$sysv_service ]; then continue fi if [ ! -x /usr/sbin/systemd-sysv-convert ]; then continue fi /usr/sbin/systemd-sysv-convert --save $sysv_service || : done fi # autobuild:/work/cd/lib/misc/group # openCryptoki pkcs11:x:64: /usr/sbin/groupadd -g 64 -r pkcs11 2>/dev/null || true /usr/sbin/usermod -a -G pkcs11 root# Symlink from /var/lib/opencryptoki to /etc/pkcs11 if [ ! -L /etc/pkcs11 ] ; then if [ -e /etc/pkcs11/pk_config_data ] ; then mv /etc/pkcs11/* /var/lib/opencryptoki cd /etc && rm -rf pkcs11 && \ ln -sf /var/lib/opencryptoki pkcs11 fi fi /sbin/ldconfig [ -z "${TRANSACTIONAL_UPDATE}" -a -x /usr/bin/systemd-tmpfiles ] && /usr/bin/systemd-tmpfiles --create /usr/lib/tmpfiles.d/opencryptoki.conf || : test -n "$FIRST_ARG" || FIRST_ARG="$1" [ -d /var/lib/systemd/migrated ] || mkdir -p /var/lib/systemd/migrated || : if [ "$YAST_IS_RUNNING" != "instsys" -a -x /usr/bin/systemctl ]; then /usr/bin/systemctl daemon-reload || : fi if [ "$FIRST_ARG" -eq 1 ]; then if [ -x /usr/bin/systemctl ]; then /usr/bin/systemctl preset pkcsslotd.service || : fi elif [ "$FIRST_ARG" -gt 1 ]; then for service in pkcsslotd.service ; do if [ ! -e "/run/rpm-openCryptoki-update-$service-new-in-upgrade" ]; then continue fi rm -f "/run/rpm-openCryptoki-update-$service-new-in-upgrade" if [ ! -x /usr/bin/systemctl ]; then continue fi /usr/bin/systemctl preset "$service" || : done for service in pkcsslotd.service ; do sysv_service=${service%.*} if [ -e /var/lib/systemd/migrated/$sysv_service ]; then continue fi if [ ! -x /usr/sbin/systemd-sysv-convert ]; then continue fi /usr/sbin/systemd-sysv-convert --apply $sysv_service || : touch /var/lib/systemd/migrated/$sysv_service || : done fi test -n "$FIRST_ARG" || FIRST_ARG="$1" if [ "$FIRST_ARG" -eq 0 -a -x /usr/bin/systemctl ]; then # Package removal, not upgrade /usr/bin/systemctl --no-reload disable pkcsslotd.service || : ( test "$YAST_IS_RUNNING" = instsys && exit 0 test -f /etc/sysconfig/services -a \ -z "$DISABLE_STOP_ON_REMOVAL" && . /etc/sysconfig/services test "$DISABLE_STOP_ON_REMOVAL" = yes -o \ "$DISABLE_STOP_ON_REMOVAL" = 1 && exit 0 /usr/bin/systemctl stop pkcsslotd.service ) || : fiif [ -L /etc/pkcs11 ] ; then rm /etc/pkcs11 fi test -n "$FIRST_ARG" || FIRST_ARG="$1" if [ "$FIRST_ARG" -ge 1 ]; then # Package upgrade, not uninstall if [ -x /usr/bin/systemctl ]; then /usr/bin/systemctl daemon-reload || : ( test "$YAST_IS_RUNNING" = instsys && exit 0 test -f /etc/sysconfig/services -a \ -z "$DISABLE_RESTART_ON_UPDATE" && . /etc/sysconfig/services test "$DISABLE_RESTART_ON_UPDATE" = yes -o \ "$DISABLE_RESTART_ON_UPDATE" = 1 && exit 0 /usr/bin/systemctl try-restart pkcsslotd.service ) || : fi else # package uninstall for service in pkcsslotd.service ; do sysv_service="${service%.*}" rm -f "/var/lib/systemd/migrated/$sysv_service" || : done if [ -x /usr/bin/systemctl ]; then /usr/bin/systemctl daemon-reload || : fi fiU`<#Et+g fVA큤AAA큤AAAAAAAA\ $\ $\ $\ $\ $\ $\ %\ %\ %\ %\ %\ &ZZ\ #ZZZZZ\ ZZ\ $\ $\ $\ $\ $\ $\ $\ #\ #\ #\ #\ #\ #\ #\ $bc94de049c7cbf4ca56992dbed8e18f1178404afcfd7e0bb5bd496827d4eaa19eeb703d64d788c0b59436f118bdce9daaf271e5d6fd1494061c36b8d80d61c621ac21b1f9c54e56e701a57e25084fbbdfcff2d264bbb8b04f459e3159e6387cfe7ed8d9055e81be8ce3d4b28ce6124dfdfdd851d267fc4c32e53eb04a3f8586d4d8832dd69b59c5a65355db58fd2214a43e64577280a43105a30ed35535982dc75a1faf7632727d7e0117a7671843bc5539a5d46da0287bef3acf2e863ffc8924c46e179ec218e1a9c2e8a41b34b49d2e963563246650b49da482117a9d61361029ef5db4494260773e0c79258a72ce924616c594fcf8f5041b49627eba9bb099631c9b59e8e32a6c472980ede85dbeafa9e3fc0a85b5767f8bba03a5753ce29302d4d0705ee4d21eeddecd0976ed9fa2968fb5c8ac8926053fcebd89d2148b3f45fb846c91c67aaca4ec8b16895cc4e866bdab6aeec4590fab7dff38bf2476956c19832040e616229fccab7722cc257701f49491bfdbcc148fe7a337c78a3beb523efde58ab48bf9296de1d6e653df25e5ece6c46cefc5e784bee35229293cbabdea5371cc35022291b43ea4e71a443537dec87b190405e7824070c0840c294f3cb7694973d4b85d06a7a44c091cdba51838a866118db7d0eab04ca55b70d486d8001cee4d5deabe400d23363f7e1aa5b958cb355fc6ffe87107ab5e51242a2e125a5ec3c472619b1da4fe053ac5165685cc63ded7a81bb16696bf7b07fe6c8cb1d7d3dda05f44d0effbaa1a6d2c9da5242fb4a707ea0caf6f6625bb66f3dea0a61f98e2ecc480610676b4084abda955b6c3da6b9d12f92ee43c3b1759e1adad1232eb84ba568de3d6dccc80d81b993ac422c20e14079213ff43e35d1a4126d9b33675411c185fa9d7a8b23395776a9e41239ad4912fe525337bfa6ebba236b34923cf60fdc211f5dd004564c74aa0b324979cb2cb8035b3a7ca44e03e04386514bbdbdfcddd09d602bd186392db9c114b16d09d3a1135faf5d35953c196f21566da412970654620212d58f398b0110349a389a44538c3ef04bb081c9e484dc3b7e7eb2fe825ed4e4157062d8d812f84df0d614d3d7d1a50787975a4f95cf6dservicerootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootpkcs11pkcs11pkcs11pkcs11pkcs11pkcs11pkcs11pkcs11openCryptoki-3.8.2-lp150.4.3.1.src.rpmconfig(openCryptoki)openCryptokiopenCryptoki(x86-64)   @@@@@@@@@@@@@@@    /bin/sed/bin/sh/bin/sh/bin/sh/bin/sh/usr/bin/id/usr/sbin/groupadd/usr/sbin/usermodconfig(openCryptoki)libc.so.6()(64bit)libc.so.6(GLIBC_2.14)(64bit)libc.so.6(GLIBC_2.15)(64bit)libc.so.6(GLIBC_2.2.5)(64bit)libc.so.6(GLIBC_2.3.4)(64bit)libc.so.6(GLIBC_2.4)(64bit)libc.so.6(GLIBC_2.7)(64bit)libcrypto.so.1.1()(64bit)libcrypto.so.1.1(OPENSSL_1_1_0)(64bit)libdl.so.2()(64bit)libdl.so.2(GLIBC_2.2.5)(64bit)liblber-2.4.so.2()(64bit)libldap_r-2.4.so.2()(64bit)libpthread.so.0()(64bit)libpthread.so.0(GLIBC_2.2.5)(64bit)rpmlib(CompressedFileNames)rpmlib(FileDigests)rpmlib(PayloadFilesHavePrefix)rpmlib(PayloadIsXz)systemdsystemdsystemdsystemd3.8.2-lp150.4.3.13.0.4-14.6.0-14.0-15.2-14.14.1[HZZw@ZY.@YX@X@X@X~@X2@W@WE@W@WW^@WEW@V<@VqU@U@U#U#U#Tp@T T TT@TT@TT@S@S @S[S[S[SSR@R@R@P+N&@N&@L@mpost@suse.commpost@suse.commpost@suse.commpost@suse.commpost@suse.commpost@suse.commpost@suse.commpost@suse.commpost@suse.commpost@suse.comjjolly@suse.commpost@suse.commpost@suse.commpost@suse.commpost@suse.commpost@suse.commpost@suse.commpost@suse.comjjolly@suse.comjjolly@suse.comjjolly@suse.comjjolly@suse.comcrrodriguez@opensuse.orgcrrodriguez@opensuse.orgcrrodriguez@opensuse.orgp.drouand@gmail.comjjolly@suse.comjjolly@suse.comjjolly@suse.comjjolly@suse.comjjolly@suse.comsfalken@opensuse.orgjjolly@suse.comjjolly@suse.comjjolly@suse.comjjolly@suse.comjjolly@suse.comro@suse.dejjolly@suse.comro@suse.dedvaleev@suse.commeissner@suse.comcoolo@suse.comcoolo@suse.commeissner@suse.de- Added ocki-3.8.2-pkcsslotd-adapt-pid-file-creation-on-demonize-for-sy.patch pkcsslotd: adapt pid file creation on demonize for systemd (bsc#1096378) - Updated ocki-3.5-icsf-coverity-memoryleakfix.patch to fix newer version of the code.- Added ocki-3.8.2-Fix-Hardware-Feature-Object-validation-and-tests.patch (bsc#1086678)- Re-enabled ARM architectures now that gcc6 is in SLE15. (bsc#1084617)- Upgraded to version 3.8.2 (fate#323295, bsc#1066412) * v3.8.2 Update man pages. Improve ock_tests for parallel execution. Fix FindObjectsInit for hidden HW-feature. Fix to allow vendor defined hardware features. Fix unresolved symbols. Fix tracing. Code/project cleanup. * v3.8.1 Fix TPM data-structure reset function. Fix error message when dlsym fails. Update configure.ac Update travis. * v3.8.0 Multi token instance feature. Added possibility to run opencryptoki with transactional memory or locks (--enable-locks on configure step). Updated documentation. Fix segfault on ec_test. Bunch of small fixes.- Removed ARM architectures from the build list until gcc6 becomes available for SLES. (bsc#1039510).- Updated to version 3.7.0 (Fate#321451) (bsc#1036640) - Update example spec file - Performance improvement. Moving from mutexes to transactional memory. - Add ECDSA SHA2 support for EP11 and CCA. - Fix declaration of inline functions. - Fix wrong testcase and ber en/decoding for integers. - Check for 'flex' and 'YACC' on configure. - EP11 config file rework. - Add enable-debug on travis build. - Add testcase for C_GetOperationState/C_SetOperationState. - Upgrade License to CPL-1.0 - Ica token: fix openssh/ibmpkcs11 engine/libica crash. - Fix segfault and logic in hardware feature test. - Fix spelling of documentation and manuals. - Fix the retrieval of p from a generated rsa key. - Coverity scan fixes - incompatible pointer type and unused variables.- Added libica-tools to the BuildRequires due to repackaging of libica.- Modified the spec file - Changed libca3-devel BuildRequires to just libica-devel - Check for systemd in the 32bit postun scriptlet.- Upgraded to version 3.6.2 (fate#321451) - Support OpenSSL-1.1. - Add Travis CI support. - Update autotools scripts and documentation. - Fix SegFault when a invalid session handle is passed in SC_EncryptUpdate and SC_DecryptUpdate. - Updated spec file to use libica3-devel instead of libica2-devel.- Upgraded to version 3.6.1 (fate#321451) - opencryptoki 3.6.1 - Fix SOFT token implementation of digest functions. - Replace deprecated OpenSSL interfaces. - opencryptoki 3.6 - Replace deprecated libica interfaces. - Performance improvement for ICA. - Improvement in documentation on system resources. - Improvement in testcases. - Added support for rc=8, reasoncode=2028 in icsf token. - Fix for session handle not set in session issue. - Multiple fixes for lock and log directories. - Downgraded a syslog error to warning. - Multiple fixes based on coverity scan results. - Added pkcs11 mapping for icsf reason code 72 for return code 8. - opencryptoki 3.5.1 - Fix Illegal Intruction on pkcscca tool. - Removed the following obsolete patches: - ocki-3.5-sanity-checking.patch - ocki-3.5-icsf-reasoncode72-support.patch - ocki-3.5-downgrade-syslogerror.patch - ocki-3.5-icsf-sessionhandle-missing-fix.patch - ocki-3.5-icsf-reasoncode-2028-added.patch - ocki-3.5-added-NULLreturn-check.patch - ocki-3.5-create-missing-tpm-token-lock-directory.patch - ocki-3.5-fix-pkcscca-calls.patch- Removed reference to pkcs1_startup from pkcsslotd (bsc#1007081)- Added ocki-3.5-fix-pkcscca-calls.patch (bsc#996867).- Added %doc FAQ to the spec file (bsc#991168).- Added ocki-3.5-create-missing-tpm-token-lock-directory.patch (bsc#989602).- Added the following patches (bsc#986854) - ocki-3.5-icsf-reasoncode72-support.patch - ocki-3.5-icsf-coverity-memoryleakfix.patch - ocki-3.5-downgrade-syslogerror.patch - ocki-3.5-icsf-sessionhandle-missing-fix.patch - ocki-3.5-icsf-reasoncode-2028-added.patch - ocki-3.5-added-NULLreturn-check.patch- Added ocki-3.5-sanity-checking.patch (bsc#983496). - Added %dir entry for %{_localstatedir}/log/opencryptoki/ (bsc#983990)- Upgraded to openCryptoki 3.5 (bsc#978005). - Full Coverity scan fixes. - Fixes for compiler warnings. - Added support for C_GetObjectSize in icsf token. - Various bug fixes and memory leak fixes. - Removed global read permissions from token files - Added missing PKCS#11v2.2 constants. - Fix for symbol resolution issue seen in Fedora 22 and 23 for ep11 and cca tokens. - Improvements in socket read operation when a token comes up. - Replaced 32 bit CCA API declarations with latest header from version 5.0 libsculcca rpm.- Upgraded to openCryptoki v3.4.1 (Fate#319576, 319585, 319592, 319938). - Changed BuildRequires for libica_2_3_0-devel to libica2-devel. - Changed BuildRequires for openssl-devel to specify >= 1.0 Contrary to what the README says, version 0.9.7 isn't sufficient. - Removed the redundant DESTDIR= parameter from the %make_install - Removed the following obsolete patches opencryptoki-run-lock.patch (/var/lock and run/lock are actually the same place) Also reverted the changed to openCryptoki-tmp.conf to match. ocki-3.1_10_0001-ica-sha-update-empty-msg.patch ocki-3.1-fix-implicit-decl.patch ocki-3.1-fix-init_d-path.patch ocki-3.1-fix-libica-link.patch ocki-3.2_01_fix-return-type-error.patch ocki-3.2_02_ep11-token-incorrectly-copied-the-public-key-object-.patch ocki-3.2_03_ICSF-Token-C_SignUpdate-was-sometimes-segfaulting-an.patch ocki-3.2_04_CKA_EC_POINT-is-not-required-in-the-ECDSA-private-ke.patch ocki-3.2_05_icsf_ldap_handles.patch ocki-3.2_06_icsf_sign_verify.patch - renamed: ocki-3.1-remove-make-install-chgrp-chmod.patch to ocki-3.1-remove-make-install-chgrp.patch- Get a new ldap handle for each session opened in the icsf token, once the user has authenticated. (bsc#953347,LTC#130078) - ocki-3.2_05_icsf_ldap_handles.patch - ocki-3.2_06_icsf_sign_verify.patch- Added /var/lib/opencryptoki/lite/TOK_OBJ token directory (bsc#943070) - Added ocki-3.2_02_ep11-token-incorrectly-copied-the-public-key-object-.patch - Fixed two public key object inclusion in EP11 token (bsc#946808) - Added ocki-3.2_03_ICSF-Token-C_SignUpdate-was-sometimes-segfaulting-an.patch - Fixed GPF when calling C_SignUpdate using ICFS toekn (bsc#946172) - Added ocki-3.2_04_CKA_EC_POINT-is-not-required-in-the-ECDSA-private-ke.patch - Fixed failure to import ECDSA because of lack of attribute (bsc#948114)- Fixed BuildRequires: libica2-devel - Added ocki-3.2_01_fix-return-type-error.patch - Changing doc/README.ep11_stdll to unix-style EOL - Added BuildRequires: dos2unix - Removed globbing in %files and specified libraries to include (bsc#942162)- Updated to openCryptoki v3.2 (FATE#318240) - Removed unnecessary patches: - ocki-3.1_01_ep11_makefile.patch - ocki-3.1_02_ep11_m_init.patch - ocki-3.1_03_ock_obj_mgr.patch - ocki-3.1_04_ep11_opaque2blob_error_handl.patch - ocki-3.1_05_ep11_readme_update.patch - ocki-3.1_06_0001-print_mechanism-ignored-bad-returncodes-from-the-cal.patch - ocki-3.1_06_0002-Fix-failure-when-confname-is-not-given-use-default-e.patch - ocki-3.1_06_0003-Configure-was-checking-for-the-ep11-lib-and-the-m_in.patch - ocki-3.1_06_0004-The-asm-zcrypt.h-header-file-uses-some-std-int-types.patch - ocki-3.1_06_0005-Small-reworks.patch - ocki-3.1_06_0006-The-31-bit-build-on-s390-showed-an-build-error-at-in.patch - ocki-3.1_06_0007-ep11-is-not-building-because-not-setting-with_zcrypt.patch - ocki-3.1_07_0001-Man-page-corrections.patch - ocki-3.1_08_0001-Add-a-pkcscca-tool-to-help-migrate-cca-private-token.patch - ocki-3.1_08_0002-Add-documentation-pkcscca-manpage-and-README.cca_std.patch - ocki-3.1_09_0001-Fix-EOL-encoding-in-README.patch- Also create parent directory /run/lock/opencryptoki in tmpfiles snippet if it does not exists.- spec: do not use -D__USE_BSD, a glibc-internal macro which no longer has any meaning.- spec: use %{_unitdir} %{_tmpfilesdir) - spec: call tmpfiles_create macro, if defined in %post - opencryptoki-run-lock.patch, openCryptoki-tmp.conf: use /run/lock instead of /var/lock.- Update to version 3.2 +New pkcscca tool. Currently it assists in migrating cca private token objects from opencryptoki version 2 to the clear key encryption method used in opencryptoki version 3. Includes a manpage for pkcscca tool. Changes to README.cca_stdll to assist in using the CCA token and migrating the private token objects. + Support for CKM_RSA_PKCS_OAEP and CKM_RSA_PKCS_PSS algorithms. + Various bugfixes. + New testcases for various crypto algorithms. - Only depend on insserv if builded with sysvinit support - Remove obsolete patches; merged on upstream release + ocki-3.1_01_ep11_makefile.patch + ocki-3.1_02_ep11_m_init.patch + ocki-3.1_03_ock_obj_mgr.patch + ocki-3.1_04_ep11_opaque2blob_error_handl.patch + ocki-3.1_05_ep11_readme_update.patch + ocki-3.1_06_0001-print_mechanism-ignored-bad-returncodes-from-the-cal.patch + ocki-3.1_06_0002-Fix-failure-when-confname-is-not-given-use-default-e.patch + ocki-3.1_06_0003-Configure-was-checking-for-the-ep11-lib-and-the-m_in.patch + ocki-3.1_06_0004-The-asm-zcrypt.h-header-file-uses-some-std-int-types.patch + ocki-3.1_06_0005-Small-reworks.patch + ocki-3.1_06_0006-The-31-bit-build-on-s390-showed-an-build-error-at-in.patch + ocki-3.1_06_0007-ep11-is-not-building-because-not-setting-with_zcrypt.patch + ocki-3.1_07_0001-Man-page-corrections.patch + ocki-3.1_08_0001-Add-a-pkcscca-tool-to-help-migrate-cca-private-token.patch + ocki-3.1_08_0002-Add-documentation-pkcscca-manpage-and-README.cca_std.patch + ocki-3.1_09_0001-Fix-EOL-encoding-in-README.patch + ocki-3.1_10_0001-ica-sha-update-empty-msg.patch - Project is now hosted on sourceforge; fix the Url - Remove cvs related stuff; tarball is produced by upstream - Use %configure macro instead of manually defined options - Build with parallel support; use %{?_smp_mflags} macro- Fixed ica token's SHA update function when passing zero message size (bnc#892644) - Added patch ocki-3.1_10_0001-ica-sha-update-empty-msg.patch- Fixed README.ep11_stdll to have Unix-style EOL characters. - Added patch ocki-3.1_09_0001-Fix-EOL-encoding-in-README.patch- Added all files from %src/doc as rpm %doc (bnc#894780)- Added pkcscca utility and documentation to convert private token objects from v2 to v3. (bnc#893757) - Added patches: - ocki-3.1_08_0001-Add-a-pkcscca-tool-to-help-migrate-cca-private-token.patch - ocki-3.1_08_0002-Add-documentation-pkcscca-manpage-and-README.cca_std.patch- Fixed pkcsslotd and opencryptoki.conf man pages (bnc#889183) - Added patch ocki-3.1_07_0001-Man-page-corrections.patch- Specfile Cleanup, Added directory macros in appropriate places- Several package changes as per bnc#880217 - Added openCryptoki-tmp.conf for lock directory management - Added 'lite' token support - Changed from init.d daemon to systemd service - Updated macros in %pre %post %preun and %postun sections - Added missing icsf and ep11tok directories to %files section ocki-3.1_01_ep11_makefile.patch ocki-3.1_02_ep11_m_init.patch - Patches added: ocki-3.1-fix-libica-link.patch ocki-3.1_03_ock_obj_mgr.patch ocki-3.1_04_ep11_opaque2blob_error_handl.patch ocki-3.1_05_ep11_readme_update.patch ocki-3.1_06_0001-print_mechanism-ignored-bad-returncodes-from-the-cal.patch ocki-3.1_06_0002-Fix-failure-when-confname-is-not-given-use-default-e.patch ocki-3.1_06_0003-Configure-was-checking-for-the-ep11-lib-and-the-m_in.patch ocki-3.1_06_0004-The-asm-zcrypt.h-header-file-uses-some-std-int-types.patch ocki-3.1_06_0005-Small-reworks.patch ocki-3.1_06_0006-The-31-bit-build-on-s390-showed-an-build-error-at-in.patch ocki-3.1_06_0007-ep11-is-not-building-because-not-setting-with_zcrypt.patch- Moved libpkcs11_icsf 32-bit out of s390-specific files- Made ep11tok.conf and pkcsep11_migrate specific to s390/s390x - Added libpkcs11_ep11.so and libpkcs11_icsf.so to 32-bit s390/s390x- EP11 token available in the opencryptoki V3.1 package (bnc#879303) - Specfile changed to include ep11tok.conf - Specfile changed to include pkcsep11_migrate and pkcsicsf tools - Specfile changed to BuildRequires openldap2-devel - ocki-3.1_06_0001-print_mechanism-ignored-bad-returncodes-from-the-cal.patch - print_mechanism() ignored bad returncodes from the called function token_specific_get_mechanism_list() - ocki-3.1_06_0002-Fix-failure-when-confname-is-not-given-use-default-e.patch - Fix failure when confname is not given, use default ep11tok.conf instead - ocki-3.1_06_0003-Configure-was-checking-for-the-ep11-lib-and-the-m_in.patch - Removed check for ep11 lib at configure - ocki-3.1_06_0004-The-asm-zcrypt.h-header-file-uses-some-std-int-types.patch - Move stdint.h before zcrypt.h to resolve dependencies - ocki-3.1_06_0005-Small-reworks.patch - testcase fixes and file permission changes - ocki-3.1_06_0006-The-31-bit-build-on-s390-showed-an-build-error-at-in.patch - Fix for s390 31-bit build error - ocki-3.1_06_0007-ep11-is-not-building-because-not-setting-with_zcrypt.patch - zcrypt library included in build by default- Patches applied (bnc#865549) - Fixed Makefile to complement common code dependencies - switched to official m_init() function based on library change - checking the global token object count - catch the return code from object_mgr_find_in_map1 - some README updates about usage and restrictions- fix build on x86 (add CCA and TPM to filelist) - fix libica detection on s390/s390x to get ICA module built- Updated to openCryptoki v3.1: See ChangeLog for complete details (FATE#315426) - opencryptoki-3.1 - New ep11 token to support IBM Crypto Express adpaters (starting with Crypto Express 4S adapters) configured with Enterprise PKCS#11(EP11) firmware. (FATE#315330) - opencryptoki-3.0 - New opencryptoki.conf file to replace pk_config_data and pkcs11_starup. The opencryptoki.conf contains slot entry information for tokens. - Removed pkcs_slot and pkcs11_startup shell scripts. - ICA token supports CKM_DES_OFB64, CKM_DES_CFB8, CKM_DES_CFB6 mechanisms using 3DES keys. (FATE#315323) - ICA token supports CKM_DES3_MAC and CKM_DES3_MAC_GENERAL mechanisms. (FATE#315323) - ICA token supports CKM_AES_OFB, CKM_AES_CFB8, CKM_AES_CFB64, CKM_AES_CFB128, CKM_AES_MAC, and CKM_AES_MAC_GENERAL mechanisms. (FATE#315323) - opencryptoki-2.4.1 (21 Feb 2012) - SHA256 support added for CCA token (FATE#315289) - Using insserv macros in %post, %preun and %postun sections - Cleaned up spec file - removed patches: - ocki-2.2.6-PIN-backspace.patch - added patches: - ocki-3.1-fix-implicit-decl.patch - ocki-3.1-remove-make-install-chgrp-chmod.patch - ocki-3.1-fix-init_d-path.patch- add aarch64 to 64bit archs- enable ppc64le- remove -o from groupadd - fixed sed script to not a grouplist with leading ,- don't package man pages twice- add libtool as buildrequire to avoid implicit dependency- enable TPM support (bnc#641919)/bin/sh/bin/sh/bin/sh/bin/shlamb19 1545210919  !"#$%&3.8.2-lp150.4.3.13.8.2-lp150.4.3.13.8.2-lp150.4.3.1 opencryptokiopencryptoki.confpkcsslotd.serviceopencryptoki.confopencryptokistdllpkcsccapkcsconfpkcsicsfpkcsslotdrcpkcsslotdopenCryptokiFAQREADME.cca_stdllREADME.ep11_stdllREADME.icsf_stdllREADME.pkcscca_migrateREADME.token_dataREADME.tpm_stdllcoding_style.mdopenCryptoki-TFAQ.htmlopencryptoki-howto.mdsystem_resourcespkcscca.1.gzpkcsconf.1.gzpkcsep11_migrate.1.gzpkcsicsf.1.gzopencryptoki.conf.5.gzopencryptoki.7.gzpkcsslotd.8.gzopencryptokiccatokTOK_OBJicsfswtokTOK_OBJtpmopencryptoki/etc//etc/opencryptoki//usr/lib/systemd/system//usr/lib/tmpfiles.d//usr/lib64//usr/lib64/opencryptoki//usr/sbin//usr/share/doc/packages//usr/share/doc/packages/openCryptoki//usr/share/man/man1//usr/share/man/man5//usr/share/man/man7//usr/share/man/man8//var/lib//var/lib/opencryptoki//var/lib/opencryptoki/ccatok//var/lib/opencryptoki/swtok//var/log/-fmessage-length=0 -grecord-gcc-switches -O2 -Wall -D_FORTIFY_SOURCE=2 -fstack-protector-strong -funwind-tables -fasynchronous-unwind-tables -fstack-clash-protection -gobs://build.opensuse.org/openSUSE:Maintenance:9353/openSUSE_Leap_15.0_Update/2847de4514b1b54314ae5064fbecb904-openCryptoki.openSUSE_Leap_15.0_Updatedrpmxz5x86_64-suse-linux  directoryASCII textELF 64-bit LSB shared object, x86-64, version 1 (SYSV), dynamically linked, interpreter /lib64/ld-linux-x86-64.so.2, for GNU/Linux 3.2.0, BuildID[sha1]=c61c7904ea362bd057143bf0268dc3e1f9ebde4c, strippedELF 64-bit LSB shared object, x86-64, version 1 (SYSV), dynamically linked, interpreter /lib64/ld-linux-x86-64.so.2, for GNU/Linux 3.2.0, BuildID[sha1]=a2dcc18397cd4e57fdbe3f0a2edfbbeb67c8f415, strippedELF 64-bit LSB shared object, x86-64, version 1 (SYSV), dynamically linked, interpreter /lib64/ld-linux-x86-64.so.2, for GNU/Linux 3.2.0, BuildID[sha1]=a31dd27a2fb1f3dd8532259003d88a4f5089ba79, strippedELF 64-bit LSB shared object, x86-64, version 1 (SYSV), dynamically linked, interpreter /lib64/ld-linux-x86-64.so.2, for GNU/Linux 3.2.0, BuildID[sha1]=cc7fc43ce512690fdeed122ee8081e577b416168, strippedAlgol 68 source, ASCII textHTML document, UTF-8 Unicode textUTF-8 Unicode texttroff or preprocessor input, ASCII text (gzip compressed data, max compression, from Unix)  RRRR RR R RRRR RRR R RR RRR RRR RRR R RRRRR RRR R RRR R RRR 2ȳ/E(:&putf-8b673be69429e85ac5cbce0565b56b23b21a77bc9251a6be2ea05db9f0fdfca9d?7zXZ !t/,]"k%.srͿFUBUK9G=S/CO)X?!h#Tlʓ$ypyIpvo)- &~]Ձ >a- dDq̬f4_LZ\2?nV*7brPPfM3@S8dj]ݱs#+.M[>U _޽c8w۾SyyXF^,#\Kѓ\b#V*v&$R;Ӟ:< q[%W~[ii$D1Z$-A6ޕ rZ3!`{}Md߁ T=C*;&H(AgY+σ6 Oghxs9t).[Եp4 @1f$;i^!Ԗ{v~[1jgخv< ŏ{ r!nʽB;.t^ϝYfIݯ-НdUSG& q,*VfTχf]ug]pup>P H]¥QG9pHj/-={\N]]2.[iI$P{.gk0bs%3wcZHFS%d=MxZ Xn~L`kpb3<[y) N "u .x O"è1h̤:KG}-[+qГJW?SPus u}R߅U"q#*Յ{{0Չ߽[XP]+KI20 z WWq  X;_313NUmiGi5EB| L=s첑zz-Wo9g;Jɓ7&u4?є\2Ž)s.Ir徧!-C~SC*#7m)dT&>nS "MiX3X@B94:$7ЀL1uYk]^D}/4jC֘Z#r WI 0M᝭5hMtyc?T'* k:\@6T}Κ[{Vl/Η'؛JJ8 1#j9ێ<̭ܶ\FU/A`R>\yzq“MlQO2L"n^ lzfm[IQYMWkK %`12@%f/z0e8,=e"*,sI=iWzPcvF;<8Cl$2n}`{?Z^HmeP8&j,,*q Y_%-(EvY3P"-SjjaMW2|ЙRUh:)8{U0jp->cd I~sⴗ IgM^Kܒ2 "!ֽսM,n21T޽l.նݸ-T϶tat=Vk'dfB.kIBXCIQ6&g-Ǖw D#+UYq~@L+Րl6^( jj݃MO 꽶^#_Xu0r/~=ldni]_"{;Jgهg$K wRNX ^8&|9#Ѫ(S;x0\r:nwn{2%@LED8?7%4 9KY8Xƭ19 S:1)"9R )]skJD5G!6($E;W?GfhH2B>$cOoXҫʍ\wЁum5)pߑnJj1x| m+R VJ23c). \ʏ ]j&~lYd!Y&|+ V΄|StR,㗧"8֬BD& !~"~!WqK^M5ʃse^(uXV˽>b"n|൅>ؒrh}"h;hA]djhsvt2xW9.޴U")o0"WMI5O*'f"\U4.x8y7qܜwUUwG$ϟJ מdXۂ~=[>0P_"y VIwHfx[B i#bAwrJNMw:VDTW {L-h h)~!\Lf/ov'F-A$~QJvrL+,@>j<1 n9~ r&j!S"UImUg5QLsȇB[e\Xeqf4˚YKĤ]' OnJO1Q.Co +zkaz;aj?Isg5w5:,8W,_u 6)T;_Ґ~3!7XPqlkggLeerK=4,I:gJ'% BYBSns|$N s?,kNrr% q*È*\<2@-߆e Ӓـx$J#d;tqȰRq H&UJEHx\"@!nJiכ!#Y]# C֥ڨjTz3ўA&2+AuDFW{K`d甩+2%<ɫӠ(`٢0 l%b"lnEbsGAc'JLUVk-˔@gƏҙ*0Vf0&38>ZaM]Ϙ"qtfNœ'e&kLs],HU.t &@"N;Lb?YB6*BVff7XrY fXB;f-jK 38KЩ;kU͝4D:':UėjPK$/$a(/D`F)њLz:s_Tt>W'ʝBݷ-xk#Tz’loSSm:Ÿfo99v;d: 2yaeM"w ؎ ):: jc-A6r[ZedW~dEm3\3R𔂯 0o8l?ݒڷ_[?<%S5I T\4p!c+RQh+ӽSV(T kO|ZusH"dG8 G=4+s7顉2O@_A,GH=MEUQ`(P3Bc,”) VD^dI:|6fՓ!}@ڱ<Jió N$`5F 0L=olO($X\Shk.cloZ#LCrVher?.Y YZ