[El-errata] ELBA-2017-3301 Oracle Linux 7 pki-core bug fix and enhancement update
Errata Announcements for Oracle Linux
el-errata at oss.oracle.com
Thu Nov 30 21:06:30 PST 2017
Oracle Linux Bug Fix Advisory ELBA-2017-3301
http://linux.oracle.com/errata/ELBA-2017-3301.html
The following updated rpms for Oracle Linux 7 have been uploaded to the
Unbreakable Linux Network:
x86_64:
pki-base-10.4.1-17.el7_4.noarch.rpm
pki-base-java-10.4.1-17.el7_4.noarch.rpm
pki-ca-10.4.1-17.el7_4.noarch.rpm
pki-javadoc-10.4.1-17.el7_4.noarch.rpm
pki-kra-10.4.1-17.el7_4.noarch.rpm
pki-server-10.4.1-17.el7_4.noarch.rpm
pki-symkey-10.4.1-17.el7_4.x86_64.rpm
pki-tools-10.4.1-17.el7_4.x86_64.rpm
SRPMS:
http://oss.oracle.com/ol7/SRPMS-updates/pki-core-10.4.1-17.el7_4.src.rpm
Description of changes:
[10.4.1-17]
-
###########################################################################
- ## RHCS 9.2
-
###########################################################################
- #Bugzilla Bug #1507160 - TPS new configuration to allow the protocol of
[10.4.1-16]
-
###########################################################################
- ## RHCS 9.2
-
###########################################################################
- #Bugzilla Bug #1439228 - externalRegRecover does not support multiple
- #Bugzilla Bug #1507160 - TPS new configuration to allow the protocol of
- #Bugzilla Bug #1471996 - Certificate Revocation Reasons not being
updated
-
###########################################################################
- ## RHEL 7.4
-
###########################################################################
- Bugzilla Bug #1500499 - Certificate Revocation Reasons not being updated
in some cases [rhel-7.4.z] (cfu)
- Bugzilla Bug #1502527 - CA cert without Subject Key Identifier causes
issuance failure [rhel-7.4.z] (ftweedal)
- Bugzilla Bug #1492560 - ipa-replica-install --setup-kra broken on DL0
[rhel-7.4.z] (ftweedal)
NOTE: Check-ins for #1492560 all reference the dogtagpki Pagure Issue
associated with Bugzilla Bug #1402280 - CA Cloning: Failed to
update number range in few cases (which is not yet fully resolved)
[10.4.1-15]
- Bugzilla Bug #1492560 - ipa-replica-install --setup-kra broken on DL0
[rhel-7.4.z] (ftweedal)
[10.4.1-14]
- Require "jss >= 4.4.0-8" as a build and runtime requirement
- ##########################################################################
- RHEL 7.4:
- ##########################################################################
- Resolves: rhbz #1486870,1485833,1487509,1490241,1491332
- Bugzilla Bug #1486870 - Lightweight CA key replication fails (regressions)
[RHEL 7.4.z] (ftweedal)
- Bugzilla Bug #1485833 - Missing CN in user signing cert would cause error
in cmc user-signed [rhel-7.4.z] (cfu)
- Bugzilla Bug #1487509 - pki-server-upgrade fails when upgrading from
RHEL 7.1 [rhel-7.4.z] (ftweedal)
- Bugzilla Bug #1490241 - PKCS12: upgrade to at least AES and SHA2 (FIPS)
[rhel-7.4.z] (ftweedal)
- Bugzilla Bug #1491332 - TPS UI: need to display tokenType and tokenOrigin
for token certificates on TPS UI Server [rhel-7.4.z] (edewata)
- dogtagpki Pagure Issue #2764 - py3: pki.key.archive_encrypted_data:
TypeError: ... is not JSON serializable (ftweedal)
- ##########################################################################
- RHCS 9.2:
- ##########################################################################
- Resolves: rhbz #1486870,1485833,1487509,1490241,1491332,1482729,1462271
- Bugzilla Bug #1462271 - TPS incorrectly assigns "tokenOrigin" and
"tokenType" certificate attribute for recovered certificates. (cfu)
- Bugzilla Bug #1482729 - TPS UI: need to display tokenType and tokenOrigin
for token certificates on TPS UI (edewata)
More information about the El-errata
mailing list