Your message dated Tue, 08 Dec 2015 12:51:07 +0000
with message-id <e1a6hjx-0002kf...@franck.debian.org>
and subject line Bug#807380: fixed in simple-tpm-pk11 0.04-1
has caused the Debian Bug report #807380,
regarding Regression for 'PKCS11Provider libsimple-tpm-pk11.so' - ignoring 
uninitialised token in slot 0
to be marked as done.

This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.

(NB: If you are a system administrator and have no idea what this
message is talking about, this may indicate a serious mail system
misconfiguration somewhere. Please contact ow...@bugs.debian.org
immediately.)


-- 
807380: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=807380
Debian Bug Tracking System
Contact ow...@bugs.debian.org with problems
--- Begin Message ---
Package: openssh-client
Version: 1:7.1p1-1
Severity: important

Hi,

I'm using the following SSH config to use my X220's TPM through
simple-tpm-pk11:

> Host test
>       PKCS11Provider libsimple-tpm-pk11.so

Working authentication:
> OpenSSH_6.9p1 Debian-3, OpenSSL 1.0.2e 3 Dec 2015
> …
> debug1: manufacturerID <simple-tpm-pk11 manufacturer> cryptokiVersion 0.1 
> libraryDescription <simple-tpm-pk11 library> libraryVersion 0.1
> debug1: label <Simple-TPM-PK11 token> manufacturerID <manuf id> model <model> 
> serial <serial> flags 0x0
> debug1: have 1 keys
> …

Failing authentication:
> OpenSSH_7.1p1 Debian-1, OpenSSL 1.0.2e 3 Dec 2015
> …
> debug1: manufacturerID <simple-tpm-pk11 manufacturer> cryptokiVersion 0.1 
> libraryDescription <simple-tpm-pk11 library> libraryVersion 0.1
> debug2: pkcs11_add_provider: ignoring uninitialised token in slot 0
> no keys
> …

I haven't found a configuration stanza in ssh_config(5) that could solve that,
I'm therefore bound to assume it's a regression in how openssh-client and
libsimple-tpm-pk11.so interact.

Cheers, OdyX

-- System Information:
Debian Release: stretch/sid
  APT prefers testing-proposed-updates
  APT policy: (500, 'testing-proposed-updates'), (500, 'proposed-updates'), 
(500, 'buildd-unstable'), (500, 'unstable'), (500, 'testing'), (500, 'stable'), 
(1, 'experimental')
Architecture: amd64 (x86_64)
Foreign Architectures: i386

Kernel: Linux 4.2.0-1-amd64 (SMP w/4 CPU cores)
Locale: LANG=fr_CH.UTF-8, LC_CTYPE=fr_CH.UTF-8 (charmap=UTF-8)
Shell: /bin/sh linked to /bin/dash
Init: systemd (via /run/systemd/system)

Versions of packages openssh-client depends on:
ii  adduser           3.113+nmu3
ii  dpkg              1.18.3
ii  libc6             2.21-3
ii  libedit2          3.1-20150325-1+b1
ii  libgssapi-krb5-2  1.13.2+dfsg-4
ii  libselinux1       2.4-3
ii  libssl1.0.2       1.0.2e-1
ii  passwd            1:4.2-3.1
ii  zlib1g            1:1.2.8.dfsg-2+b1

Versions of packages openssh-client recommends:
ii  xauth  1:1.0.9-1

Versions of packages openssh-client suggests:
pn  keychain                   <none>
ii  ksshaskpass [ssh-askpass]  4:5.4.3-1
pn  libpam-ssh                 <none>
pn  monkeysphere               <none>
ii  ssh-askpass                1:1.2.4.1-9

-- no debconf information

--- End Message ---
--- Begin Message ---
Source: simple-tpm-pk11
Source-Version: 0.04-1

We believe that the bug you reported is fixed in the latest version of
simple-tpm-pk11, which is due to be installed in the Debian FTP archive.

A summary of the changes between this version and the previous one is
attached.

Thank you for reporting the bug, which will now be closed.  If you
have further comments please address them to 807...@bugs.debian.org,
and the maintainer will reopen the bug report if appropriate.

Debian distribution maintenance software
pp.
Didier Raboud <o...@debian.org> (supplier of updated simple-tpm-pk11 package)

(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing ftpmas...@ftp-master.debian.org)


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

Format: 1.8
Date: Tue, 08 Dec 2015 13:22:44 +0100
Source: simple-tpm-pk11
Binary: simple-tpm-pk11
Architecture: source
Version: 0.04-1
Distribution: unstable
Urgency: medium
Maintainer: Michael Stapelberg <stapelb...@debian.org>
Changed-By: Didier Raboud <o...@debian.org>
Description:
 simple-tpm-pk11 - simple library for using the TPM chip to secure SSH keys
Closes: 807380
Changes:
 simple-tpm-pk11 (0.04-1) unstable; urgency=medium
 .
   * Non-maintainer upload, with maintainer agreement
 .
   * New upstream version
     - Set slot and token flags to make pkcs11-tool -T happy (Closes: #807380)
   * Update debian/watch
Checksums-Sha1:
 1b610485b7962b82df87ae0d7b1d9abf47f6a43a 1808 simple-tpm-pk11_0.04-1.dsc
 4d34e19e7ab6fc712421cb325544611987a04220 26377 simple-tpm-pk11_0.04.orig.tar.gz
 9c7289a9e54c22c60545e37c28308958739b3754 2484 
simple-tpm-pk11_0.04-1.debian.tar.xz
Checksums-Sha256:
 3ce1907b2dc00e5e20b539600c633f3fba0580274222fdf71485579de32bf050 1808 
simple-tpm-pk11_0.04-1.dsc
 54f67e08cd0847c1716dd86ceb2748982d226f047de059073c2ffa4cad27c56a 26377 
simple-tpm-pk11_0.04.orig.tar.gz
 8a83fa4ec94d40095166b66daf273545ffa4e2a2332b478d02e888b809a6a73b 2484 
simple-tpm-pk11_0.04-1.debian.tar.xz
Files:
 0c77315a73645ecefbe34fcc5cec3393 1808 net extra simple-tpm-pk11_0.04-1.dsc
 243519404556b049fd0e3b02c1faac75 26377 net extra 
simple-tpm-pk11_0.04.orig.tar.gz
 1a2a87b818e4dfe8591a7e4394a416b1 2484 net extra 
simple-tpm-pk11_0.04-1.debian.tar.xz

-----BEGIN PGP SIGNATURE-----
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=WwgD
-----END PGP SIGNATURE-----

--- End Message ---

Reply via email to