Script 'mail_helper' called by obssrc Hello community, here is the log from the commit of package openCryptoki for openSUSE:Factory checked in at 2023-02-16 16:57:19 ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Comparing /work/SRC/openSUSE:Factory/openCryptoki (Old) and /work/SRC/openSUSE:Factory/.openCryptoki.new.22824 (New) ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
Package is "openCryptoki" Thu Feb 16 16:57:19 2023 rev:67 rq:1066182 version:3.20.0 Changes: -------- --- /work/SRC/openSUSE:Factory/openCryptoki/openCryptoki.changes 2023-02-07 18:50:59.951748933 +0100 +++ /work/SRC/openSUSE:Factory/.openCryptoki.new.22824/openCryptoki.changes 2023-02-16 16:57:24.956345402 +0100 @@ -1,0 +2,43 @@ +Thu Feb 16 13:22:45 UTC 2023 - Nikolay Gueorguiev <nikolay.gueorgu...@suse.com> + +- Updated package to openCryptoki 3.20 (jsc#PED-2870) +- Removed the following obsolite patches: + * ocki-3.19.0-0001-EP11-Unify-key-pair-generation-functions.patch + * ocki-3.19.0-0002-EP11-Do-not-report-DSA-DH-parameter-generation-as-be.patch + * ocki-3.19.0-0003-EP11-Do-not-pass-empty-CKA_PUBLIC_KEY_INFO-to-EP11-h.patch + * ocki-3.19.0-0004-Mechtable-CKM_IBM_DILITHIUM-can-also-be-used-for-key.patch + * ocki-3.19.0-0005-EP11-Remove-DSA-DH-parameter-generation-mechanisms-f.patch + * ocki-3.19.0-0006-EP11-Pass-back-chain-code-for-CKM_IBM_BTC_DERIVE.patch + * ocki-3.19.0-0007-EP11-Supply-CKA_PUBLIC_KEY_INFO-with-CKM_IBM_BTC_DER.patch + * ocki-3.19.0-0008-EP11-Supply-CKA_PUBLIC_KEY_INFO-when-importing-priva.patch + * ocki-3.19.0-0009-EP11-Fix-memory-leak-introduced-with-recent-commit.patch + * ocki-3.19.0-0010-p11sak-Fix-segfault-when-dilithium-version-is-not-sp.patch + * ocki-3.19.0-0011-EP11-remove-dead-code-and-unused-variables.patch + * ocki-3.19.0-0012-EP11-Update-EP11-host-library-header-files.patch + * ocki-3.19.0-0013-EP11-Support-EP11-host-library-version-4.patch + * ocki-3.19.0-0014-EP11-Add-new-control-points.patch + * ocki-3.19.0-0015-EP11-Default-unknown-CPs-to-ON.patch + * ocki-3.19.0-0016-COMMON-Add-defines-for-Dilithium-round-2-and-3-varia.patch + * ocki-3.19.0-0017-COMMON-Add-defines-for-Kyber.patch + * ocki-3.19.0-0018-COMMON-Add-post-quantum-algorithm-OIDs.patch + * ocki-3.19.0-0019-COMMON-Dilithium-key-BER-encoding-decoding-allow-dif.patch + * ocki-3.19.0-0020-COMMON-EP11-Add-CKA_VALUE-holding-SPKI-PKCS-8-of-key.patch + * ocki-3.19.0-0021-COMMON-EP11-Allow-to-select-Dilithium-variant-via-mo.patch + * ocki-3.19.0-0022-EP11-Query-supported-PQC-variants-and-restrict-usage.patch + * ocki-3.19.0-0023-POLICY-Dilithium-strength-and-signature-size-depends.patch + * ocki-3.19.0-0024-TESTCASES-Test-Dilithium-variants.patch + * ocki-3.19.0-0025-COMMON-EP11-Add-Kyber-key-type-and-mechanism.patch + * ocki-3.19.0-0026-EP11-Add-support-for-generating-and-importing-Kyber-.patch + * ocki-3.19.0-0027-EP11-Add-support-for-encrypt-decrypt-and-KEM-operati.patch + * ocki-3.19.0-0028-POLICY-STATISTICS-Check-for-Kyber-KEM-KDFs-and-count.patch + * ocki-3.19.0-0029-TESTCASES-Add-tests-for-CKM_IBM_KYBER.patch + * ocki-3.19.0-0030-p11sak-Support-additional-Dilithium-variants.patch + * ocki-3.19.0-0031-p11sak-Add-support-for-IBM-Kyber-key-type.patch + * ocki-3.19.0-0032-testcase-Enhance-p11sak-testcase-to-generate-IBM-Kyb.patch + * ocki-3.19.0-0033-EP11-Supply-CKA_PUBLIC_KEY_INFO-with-CKM_IBM_BTC_DER.patch + * ocki-3.19.0-0034-EP11-Fix-setting-unknown-CPs-to-ON.patch + * ocki-3.19.0-0035-Fix-compile-error-error-initializer-element-is-not-c.patch +- Reworked ocki-3.19-remove-make-install-chgrp.patch to fit the current version of + the package and renamed it to ocki-3.20-remove-make-install-chgrp.patch. + +------------------------------------------------------------------- @@ -6 +49,2 @@ -- Changed spec file to use %autosetup instead of %setup. +-- Changed spec file to use %autosetup instead of %setup. + Old: ---- ocki-3.19-remove-make-install-chgrp.patch ocki-3.19.0-0001-EP11-Unify-key-pair-generation-functions.patch ocki-3.19.0-0002-EP11-Do-not-report-DSA-DH-parameter-generation-as-be.patch ocki-3.19.0-0003-EP11-Do-not-pass-empty-CKA_PUBLIC_KEY_INFO-to-EP11-h.patch ocki-3.19.0-0004-Mechtable-CKM_IBM_DILITHIUM-can-also-be-used-for-key.patch ocki-3.19.0-0005-EP11-Remove-DSA-DH-parameter-generation-mechanisms-f.patch ocki-3.19.0-0006-EP11-Pass-back-chain-code-for-CKM_IBM_BTC_DERIVE.patch ocki-3.19.0-0007-EP11-Supply-CKA_PUBLIC_KEY_INFO-with-CKM_IBM_BTC_DER.patch ocki-3.19.0-0008-EP11-Supply-CKA_PUBLIC_KEY_INFO-when-importing-priva.patch ocki-3.19.0-0009-EP11-Fix-memory-leak-introduced-with-recent-commit.patch ocki-3.19.0-0010-p11sak-Fix-segfault-when-dilithium-version-is-not-sp.patch ocki-3.19.0-0011-EP11-remove-dead-code-and-unused-variables.patch ocki-3.19.0-0012-EP11-Update-EP11-host-library-header-files.patch ocki-3.19.0-0013-EP11-Support-EP11-host-library-version-4.patch ocki-3.19.0-0014-EP11-Add-new-control-points.patch ocki-3.19.0-0015-EP11-Default-unknown-CPs-to-ON.patch ocki-3.19.0-0016-COMMON-Add-defines-for-Dilithium-round-2-and-3-varia.patch ocki-3.19.0-0017-COMMON-Add-defines-for-Kyber.patch ocki-3.19.0-0018-COMMON-Add-post-quantum-algorithm-OIDs.patch ocki-3.19.0-0019-COMMON-Dilithium-key-BER-encoding-decoding-allow-dif.patch ocki-3.19.0-0020-COMMON-EP11-Add-CKA_VALUE-holding-SPKI-PKCS-8-of-key.patch ocki-3.19.0-0021-COMMON-EP11-Allow-to-select-Dilithium-variant-via-mo.patch ocki-3.19.0-0022-EP11-Query-supported-PQC-variants-and-restrict-usage.patch ocki-3.19.0-0023-POLICY-Dilithium-strength-and-signature-size-depends.patch ocki-3.19.0-0024-TESTCASES-Test-Dilithium-variants.patch ocki-3.19.0-0025-COMMON-EP11-Add-Kyber-key-type-and-mechanism.patch ocki-3.19.0-0026-EP11-Add-support-for-generating-and-importing-Kyber-.patch ocki-3.19.0-0027-EP11-Add-support-for-encrypt-decrypt-and-KEM-operati.patch ocki-3.19.0-0028-POLICY-STATISTICS-Check-for-Kyber-KEM-KDFs-and-count.patch ocki-3.19.0-0029-TESTCASES-Add-tests-for-CKM_IBM_KYBER.patch ocki-3.19.0-0030-p11sak-Support-additional-Dilithium-variants.patch ocki-3.19.0-0031-p11sak-Add-support-for-IBM-Kyber-key-type.patch ocki-3.19.0-0032-testcase-Enhance-p11sak-testcase-to-generate-IBM-Kyb.patch ocki-3.19.0-0033-EP11-Supply-CKA_PUBLIC_KEY_INFO-with-CKM_IBM_BTC_DER.patch ocki-3.19.0-0034-EP11-Fix-setting-unknown-CPs-to-ON.patch ocki-3.19.0-0035-Fix-compile-error-error-initializer-element-is-not-c.patch openCryptoki-3.19.0.tar.gz New: ---- ocki-3.20-remove-make-install-chgrp.patch openCryptoki-3.20.0.tar.gz ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Other differences: ------------------ ++++++ openCryptoki.spec ++++++ --- /var/tmp/diff_new_pack.oBnc98/_old 2023-02-16 16:57:25.760348899 +0100 +++ /var/tmp/diff_new_pack.oBnc98/_new 2023-02-16 16:57:25.768348934 +0100 @@ -1,7 +1,7 @@ # # spec file for package openCryptoki # -# Copyright (c) 2018-2023 SUSE LLC +# Copyright (c) 2023 SUSE LLC # # All modifications and additions to the file contributed by third parties # remain the property of their copyright owners, unless otherwise agreed @@ -26,55 +26,21 @@ %define oc_cvs_tag opencryptoki Name: openCryptoki -Version: 3.19.0 +Version: 3.20.0 Release: 0 Summary: An Implementation of PKCS#11 (Cryptoki) v2.11 for IBM Cryptographic Hardware License: CPL-1.0 Group: Productivity/Security URL: https://github.com/opencryptoki/opencryptoki -Source: https://github.com/opencryptoki/%{oc_cvs_tag}/archive/v%{version}.tar.gz#/%{name}-%{version}.tar.gz +# Source: https://github.com/opencryptoki/%{oc_cvs_tag}/archive/v%{version}.tar.gz#/%{name}-%{version}.tar.gz +Source: https://github.com/opencryptoki/%{oc_cvs_tag}/archive/refs/tags/v%{version}.tar.gz#/%{name}-%{version}.tar.gz Source1: openCryptoki.pkcsslotd Source2: openCryptoki-TFAQ.html Source3: openCryptoki-rpmlintrc # Patch 1 is needed because group pkcs11 doesn't exist in the build environment # and because we don't want(?) various file and directory permissions to be 0700. -Patch001: ocki-3.19-remove-make-install-chgrp.patch +Patch001: ocki-3.20-remove-make-install-chgrp.patch # -Patch002: ocki-3.19.0-0001-EP11-Unify-key-pair-generation-functions.patch -Patch003: ocki-3.19.0-0002-EP11-Do-not-report-DSA-DH-parameter-generation-as-be.patch -Patch004: ocki-3.19.0-0003-EP11-Do-not-pass-empty-CKA_PUBLIC_KEY_INFO-to-EP11-h.patch -Patch005: ocki-3.19.0-0004-Mechtable-CKM_IBM_DILITHIUM-can-also-be-used-for-key.patch -Patch006: ocki-3.19.0-0005-EP11-Remove-DSA-DH-parameter-generation-mechanisms-f.patch -Patch007: ocki-3.19.0-0006-EP11-Pass-back-chain-code-for-CKM_IBM_BTC_DERIVE.patch -Patch008: ocki-3.19.0-0007-EP11-Supply-CKA_PUBLIC_KEY_INFO-with-CKM_IBM_BTC_DER.patch -Patch009: ocki-3.19.0-0008-EP11-Supply-CKA_PUBLIC_KEY_INFO-when-importing-priva.patch -Patch010: ocki-3.19.0-0009-EP11-Fix-memory-leak-introduced-with-recent-commit.patch -Patch011: ocki-3.19.0-0010-p11sak-Fix-segfault-when-dilithium-version-is-not-sp.patch -Patch012: ocki-3.19.0-0011-EP11-remove-dead-code-and-unused-variables.patch -Patch013: ocki-3.19.0-0012-EP11-Update-EP11-host-library-header-files.patch -Patch014: ocki-3.19.0-0013-EP11-Support-EP11-host-library-version-4.patch -Patch015: ocki-3.19.0-0014-EP11-Add-new-control-points.patch -Patch016: ocki-3.19.0-0015-EP11-Default-unknown-CPs-to-ON.patch -Patch017: ocki-3.19.0-0016-COMMON-Add-defines-for-Dilithium-round-2-and-3-varia.patch -Patch018: ocki-3.19.0-0017-COMMON-Add-defines-for-Kyber.patch -Patch019: ocki-3.19.0-0018-COMMON-Add-post-quantum-algorithm-OIDs.patch -Patch020: ocki-3.19.0-0019-COMMON-Dilithium-key-BER-encoding-decoding-allow-dif.patch -Patch021: ocki-3.19.0-0020-COMMON-EP11-Add-CKA_VALUE-holding-SPKI-PKCS-8-of-key.patch -Patch022: ocki-3.19.0-0021-COMMON-EP11-Allow-to-select-Dilithium-variant-via-mo.patch -Patch023: ocki-3.19.0-0022-EP11-Query-supported-PQC-variants-and-restrict-usage.patch -Patch024: ocki-3.19.0-0023-POLICY-Dilithium-strength-and-signature-size-depends.patch -Patch025: ocki-3.19.0-0024-TESTCASES-Test-Dilithium-variants.patch -Patch026: ocki-3.19.0-0025-COMMON-EP11-Add-Kyber-key-type-and-mechanism.patch -Patch027: ocki-3.19.0-0026-EP11-Add-support-for-generating-and-importing-Kyber-.patch -Patch028: ocki-3.19.0-0027-EP11-Add-support-for-encrypt-decrypt-and-KEM-operati.patch -Patch029: ocki-3.19.0-0028-POLICY-STATISTICS-Check-for-Kyber-KEM-KDFs-and-count.patch -Patch030: ocki-3.19.0-0029-TESTCASES-Add-tests-for-CKM_IBM_KYBER.patch -Patch031: ocki-3.19.0-0030-p11sak-Support-additional-Dilithium-variants.patch -Patch032: ocki-3.19.0-0031-p11sak-Add-support-for-IBM-Kyber-key-type.patch -Patch033: ocki-3.19.0-0032-testcase-Enhance-p11sak-testcase-to-generate-IBM-Kyb.patch -Patch034: ocki-3.19.0-0033-EP11-Supply-CKA_PUBLIC_KEY_INFO-with-CKM_IBM_BTC_DER.patch -Patch035: ocki-3.19.0-0034-EP11-Fix-setting-unknown-CPs-to-ON.patch -Patch036: ocki-3.19.0-0035-Fix-compile-error-error-initializer-element-is-not-c.patch # BuildRequires: bison BuildRequires: dos2unix @@ -163,6 +129,7 @@ %endif %prep +# setup -q -n %{oc_cvs_tag}-%{version} %autosetup -p 1 -n %{oc_cvs_tag}-%{version} cp %{SOURCE2} . ++++++ ocki-3.19-remove-make-install-chgrp.patch -> ocki-3.20-remove-make-install-chgrp.patch ++++++ --- /work/SRC/openSUSE:Factory/openCryptoki/ocki-3.19-remove-make-install-chgrp.patch 2022-10-06 07:42:49.892771117 +0200 +++ /work/SRC/openSUSE:Factory/.openCryptoki.new.22824/ocki-3.20-remove-make-install-chgrp.patch 2023-02-16 16:57:24.876345055 +0100 @@ -1,6 +1,14 @@ ---- opencryptoki-3.19.0/Makefile.am 2022-09-30 03:45:52.000000000 -0400 -+++ opencryptoki-3.19.0/Makefile.am 2022-09-30 15:28:53.032877773 -0400 -@@ -61,12 +61,9 @@ +--- opencryptoki-3.20.0/Makefile.am 2023-02-13 03:22:42.000000000 -0500 ++++ opencryptoki-3.20.0/Makefile.am 2023-02-13 10:40:14.561790695 -0500 +@@ -39,7 +39,6 @@ + include doc/doc.mk + + install-data-hook: +- getent group pkcs11 > /dev/null || $(GROUPADD) -r pkcs11 + if ENABLE_LIBRARY + $(MKDIR_P) $(DESTDIR)$(libdir)/opencryptoki/stdll + $(MKDIR_P) $(DESTDIR)$(libdir)/pkcs11 +@@ -60,12 +59,9 @@ cd $(DESTDIR)$(libdir)/opencryptoki/stdll && \ ln -fs libpkcs11_cca.so PKCS11_CCA.so $(MKDIR_P) $(DESTDIR)$(localstatedir)/lib/opencryptoki/ccatok/TOK_OBJ @@ -13,7 +21,7 @@ $(CHMOD) 0770 $(DESTDIR)$(lockdir)/ccatok test -f $(DESTDIR)$(sysconfdir)/opencryptoki || $(MKDIR_P) $(DESTDIR)$(sysconfdir)/opencryptoki || true test -f $(DESTDIR)$(sysconfdir)/opencryptoki/ccatok.conf || $(INSTALL) -m 644 $(srcdir)/usr/lib/cca_stdll/ccatok.conf $(DESTDIR)$(sysconfdir)/opencryptoki/ccatok.conf || true -@@ -75,12 +72,9 @@ +@@ -74,12 +70,9 @@ cd $(DESTDIR)$(libdir)/opencryptoki/stdll && \ ln -fs libpkcs11_ep11.so PKCS11_EP11.so $(MKDIR_P) $(DESTDIR)$(localstatedir)/lib/opencryptoki/ep11tok/TOK_OBJ @@ -26,7 +34,7 @@ $(CHMOD) 0770 $(DESTDIR)$(lockdir)/ep11tok test -f $(DESTDIR)$(sysconfdir)/opencryptoki || $(MKDIR_P) $(DESTDIR)$(sysconfdir)/opencryptoki || true test -f $(DESTDIR)$(sysconfdir)/opencryptoki/ep11tok.conf || $(INSTALL) -m 644 $(srcdir)/usr/lib/ep11_stdll/ep11tok.conf $(DESTDIR)$(sysconfdir)/opencryptoki/ep11tok.conf || true -@@ -88,30 +82,24 @@ +@@ -87,30 +80,24 @@ endif if ENABLE_P11SAK test -f $(DESTDIR)$(sysconfdir)/opencryptoki || $(MKDIR_P) $(DESTDIR)$(sysconfdir)/opencryptoki || true @@ -58,7 +66,7 @@ $(CHMOD) 0770 $(DESTDIR)$(lockdir)/swtok endif if ENABLE_TPMTOK -@@ -119,10 +107,8 @@ +@@ -118,10 +105,8 @@ cd $(DESTDIR)$(libdir)/opencryptoki/stdll && \ ln -fs libpkcs11_tpm.so PKCS11_TPM.so $(MKDIR_P) $(DESTDIR)$(localstatedir)/lib/opencryptoki/tpm @@ -69,7 +77,7 @@ $(CHMOD) 0770 $(DESTDIR)$(lockdir)/tpm endif if ENABLE_ICSFTOK -@@ -130,16 +116,14 @@ +@@ -129,16 +114,14 @@ cd $(DESTDIR)$(libdir)/opencryptoki/stdll && \ ln -fs libpkcs11_icsf.so PKCS11_ICSF.so $(MKDIR_P) $(DESTDIR)$(localstatedir)/lib/opencryptoki/icsf @@ -84,10 +92,10 @@ test -f $(DESTDIR)$(sysconfdir)/opencryptoki/opencryptoki.conf || $(INSTALL) -m 644 $(srcdir)/usr/sbin/pkcsslotd/opencryptoki.conf $(DESTDIR)$(sysconfdir)/opencryptoki/opencryptoki.conf || true - test -f $(DESTDIR)$(sysconfdir)/opencryptoki/strength.conf || $(INSTALL) -m 640 -o root -g pkcs11 -T $(srcdir)/doc/strength-example.conf $(DESTDIR)$(sysconfdir)/opencryptoki/strength.conf || true + test -f $(DESTDIR)$(sysconfdir)/opencryptoki/strength.conf || $(INSTALL) -m 640 -o root -T $(srcdir)/doc/strength-example.conf $(DESTDIR)$(sysconfdir)/opencryptoki/strength.conf || true - if ENABLE_SYSTEMD - mkdir -p $(DESTDIR)/usr/lib/tmpfiles.d - cp $(srcdir)/misc/tmpfiles.conf $(DESTDIR)/usr/lib/tmpfiles.d/opencryptoki.conf -@@ -156,7 +140,6 @@ + endif + $(MKDIR_P) $(DESTDIR)/etc/ld.so.conf.d + echo "$(libdir)/opencryptoki" >\ +@@ -149,7 +132,6 @@ @echo "Remember you must run ldconfig before using the above settings" @echo "--------------------------------------------------------------" $(MKDIR_P) $(DESTDIR)$(lockdir) $(DESTDIR)$(logdir) ++++++ openCryptoki-3.19.0.tar.gz -> openCryptoki-3.20.0.tar.gz ++++++ ++++ 31532 lines of diff (skipped)