[El-errata] ELBA-2017-3301 Oracle Linux 7 pki-core bug fix and enhancement update

Errata Announcements for Oracle Linux el-errata at oss.oracle.com
Thu Nov 30 21:06:30 PST 2017


Oracle Linux Bug Fix Advisory ELBA-2017-3301

http://linux.oracle.com/errata/ELBA-2017-3301.html

The following updated rpms for Oracle Linux 7 have been uploaded to the 
Unbreakable Linux Network:

x86_64:
pki-base-10.4.1-17.el7_4.noarch.rpm
pki-base-java-10.4.1-17.el7_4.noarch.rpm
pki-ca-10.4.1-17.el7_4.noarch.rpm
pki-javadoc-10.4.1-17.el7_4.noarch.rpm
pki-kra-10.4.1-17.el7_4.noarch.rpm
pki-server-10.4.1-17.el7_4.noarch.rpm
pki-symkey-10.4.1-17.el7_4.x86_64.rpm
pki-tools-10.4.1-17.el7_4.x86_64.rpm


SRPMS:
http://oss.oracle.com/ol7/SRPMS-updates/pki-core-10.4.1-17.el7_4.src.rpm



Description of changes:

[10.4.1-17]
- 
###########################################################################
- ## RHCS 9.2
- 
###########################################################################
- #Bugzilla Bug #1507160 - TPS new configuration to allow the protocol of

[10.4.1-16]
- 
###########################################################################
- ## RHCS 9.2
- 
###########################################################################
- #Bugzilla Bug #1439228 - externalRegRecover does not support multiple
   - #Bugzilla Bug #1507160 - TPS new configuration to allow the protocol of
   - #Bugzilla Bug #1471996 - Certificate Revocation Reasons not being 
updated
   - 
###########################################################################
- ## RHEL 7.4
- 
###########################################################################
- Bugzilla Bug #1500499 - Certificate Revocation Reasons not being updated
   in some cases [rhel-7.4.z] (cfu)
- Bugzilla Bug #1502527 - CA cert without Subject Key Identifier causes
   issuance failure [rhel-7.4.z] (ftweedal)
- Bugzilla Bug #1492560 - ipa-replica-install --setup-kra broken on DL0
   [rhel-7.4.z] (ftweedal)
   NOTE: Check-ins for #1492560 all reference the dogtagpki Pagure Issue
         associated with Bugzilla Bug #1402280 - CA Cloning: Failed to
         update number range in few cases (which is not yet fully resolved)

[10.4.1-15]
- Bugzilla Bug #1492560 - ipa-replica-install --setup-kra broken on DL0
   [rhel-7.4.z] (ftweedal)

[10.4.1-14]
- Require "jss >= 4.4.0-8" as a build and runtime requirement
- ##########################################################################
- RHEL 7.4:
- ##########################################################################
- Resolves: rhbz #1486870,1485833,1487509,1490241,1491332
- Bugzilla Bug #1486870 - Lightweight CA key replication fails (regressions)
   [RHEL 7.4.z] (ftweedal)
- Bugzilla Bug #1485833 - Missing CN in user signing cert would cause error
   in cmc user-signed [rhel-7.4.z] (cfu)
- Bugzilla Bug #1487509 - pki-server-upgrade fails when upgrading from
   RHEL 7.1 [rhel-7.4.z] (ftweedal)
- Bugzilla Bug #1490241 - PKCS12: upgrade to at least AES and SHA2 (FIPS)
   [rhel-7.4.z] (ftweedal)
- Bugzilla Bug #1491332 - TPS UI: need to display tokenType and tokenOrigin
   for token certificates on TPS UI Server [rhel-7.4.z] (edewata)
- dogtagpki Pagure Issue #2764 - py3: pki.key.archive_encrypted_data:
   TypeError: ... is not JSON serializable (ftweedal)
- ##########################################################################
- RHCS 9.2:
- ##########################################################################
- Resolves: rhbz #1486870,1485833,1487509,1490241,1491332,1482729,1462271
- Bugzilla Bug #1462271 - TPS incorrectly assigns "tokenOrigin" and
   "tokenType" certificate attribute for recovered certificates. (cfu)
- Bugzilla Bug #1482729 - TPS UI: need to display tokenType and tokenOrigin
   for token certificates on TPS UI (edewata)





More information about the El-errata mailing list