<!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.0 Transitional//EN" "http://www.w3.org/TR/REC-html40/loose.dtd">
<html lang="en" style='--code-editor-font: var(--default-mono-font, "GitLab Mono"), JetBrains Mono, Menlo, DejaVu Sans Mono, Liberation Mono, Consolas, Ubuntu Mono, Courier New, andale mono, lucida console, monospace;'>
<head>
<meta content="text/html; charset=utf-8" http-equiv="Content-Type">
<title>
GitLab
</title>
<style data-premailer="ignore" type="text/css">
a { color: #1068bf; }
</style>
<style>img {
max-width: 100%; height: auto;
}
body {
font-size: .875rem;
}
body {
-webkit-text-shadow: hsla(0,0%,100%,.01) 0 0 1px;
}
body {
font-family: "GitLab Sans",-apple-system,BlinkMacSystemFont,"Segoe UI",Roboto,"Noto Sans",Ubuntu,Cantarell,"Helvetica Neue",sans-serif,"Apple Color Emoji","Segoe UI Emoji","Segoe UI Symbol","Noto Color Emoji"; font-size: inherit;
}
</style>
</head>
<body style='font-size: inherit; -webkit-text-shadow: hsla(0,0%,100%,.01) 0 0 1px; font-family: "GitLab Sans",-apple-system,BlinkMacSystemFont,"Segoe UI",Roboto,"Noto Sans",Ubuntu,Cantarell,"Helvetica Neue",sans-serif,"Apple Color Emoji","Segoe UI Emoji","Segoe UI Symbol","Noto Color Emoji";'>
<div class="content">
<h3 style="margin-top: 20px; margin-bottom: 10px;">
Timo Aaltonen pushed to branch master at <a href="https://salsa.debian.org/freeipa-team/dogtag-pki">FreeIPA packaging / dogtag-pki</a>
</h3>
<h4 style="margin-top: 10px; margin-bottom: 10px;">
Commits:
</h4>
<ul>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/71a38380113ebf978fa9b596fa83491f89fda03a">71a38380</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-04-20T21:45:33-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update CA test with existing DS
The test for installing CA with existing DS has been modified
to match the DS setup process in the regular CA installation.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/1672ee866ff58862bac625275865fb34247e49d6">1672ee86</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-04-20T21:45:39-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up AAclAuthz
The methods in AAclAuthz has been updated to throw EACLsException.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/3b009c07f16bb45cdc91e2353fad0d5361147d32">3b009c07</a></strong>
<div>
<span> by Chris Kelley </span> <i> at 2023-04-21T14:38:19+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix pylint failures in upstream CI.
The new version of pylint (pylint-2.17.2-1.fc38) in F38 causes failures
due to containing a configuration setting that will become invalid in
pylint 3. The pylintrc file is future-proofed to work with pylint 3.
overgeneral-exceptions now causes test failure rather than a warning, it
has been disabled for now as there are many failures and it could take
some time to go through them all individually and catch less general
exceptions.</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/0f209a91be87bf92b7e540988dda68018e3dddca">0f209a91</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-04-21T11:37:55-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Use lazy loading in DirAclAuthz
Previously the DirAclAuthz would load the ACLs from LDAP into
memory (i.e. AAclAuthz.mACLs) when the server is started. To
speed up the startup time, the DirAclAuthz has been modified
to load the ACLs only when they are actually used.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/dc2d609581936eeadead8070f305b6655ce2c2c4">dc2d6095</a></strong>
<div>
<span> by Chris Kelley </span> <i> at 2023-04-21T18:50:08+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Use try-with-resources in client and logging classes</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/97e9c161f962d42f0218d4f331a65ba356ce06b0">97e9c161</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-04-21T18:24:32-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add --verbose/debug options for pki-server ca-config commands
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/1f0944650ccdc6c0cf36cf52d999be44fada0b26">1f094465</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-04-21T18:24:50-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Maven JAR file names
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b7a4a0bfa6a3c1dd36267135115906c9ef41df32">b7a4a0bf</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-04-21T18:24:50-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update version number to 11.5.0-alpha1
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/48664c86acc9ade367d6202092c22b36983ac746">48664c86</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-04-24T09:34:06-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add pki_ds_url param
A new pki_ds_url param has been added for pkispawn to
reduce the number of installation params.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/194b350f86eda571dfd7b486fada271655464d50">194b350f</a></strong>
<div>
<span> by Chris Kelley </span> <i> at 2023-04-25T15:51:09+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Use try-with-resources in more places in HttpClient</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a6d06a11f69e34e86c5605d9172913c642b41e85">a6d06a11</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-04-26T13:56:57-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix invalid paths in pki-acme-run
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d79c55451409ca5a2dd479b7715f05019052b38e">d79c5545</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-04-26T13:56:57-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update up log messages in ProxyRealm
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/eb24c6c9298eb7959b18a45668008f494fc9a444">eb24c6c9</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-04-26T13:57:00-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update log messages in SecurityDomainProcessor
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b5bf2d24280cb5614565df2dc671c87c5e6527e6">b5bf2d24</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-04-26T17:33:59-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update log messages in Python clients
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c6d70df42a898f2680afefa005982636cf92a04d">c6d70df4</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-04-26T19:25:33-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add ServerConfig.get_service()
The ServerConfig.get_service() has been added to get the
Service element in server.xml.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/74c182392844cf054d0512fdaa04c733e0b5bdfd">74c18239</a></strong>
<div>
<span> by Chris Kelley </span> <i> at 2023-04-27T09:47:22+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Refactor HttpClient to not create unnecessary sockets and streams
The current implementation creates a set of null streams and sockets,
then decides part way through the send process whether to use an SSL
socket or not, creating streams from the appropriate socket accordingly.
This is incompatible with using try-with-resources as you cannot
reassign to a controlled resource. Also, it is wasteful and confusing
that the unnecessary objects exist (but understandable as the code
predates the existence of try-with-resources).
Separate SSL/non-SSL send methods are created, which only create the
necessary streams and sockets for that operation. New helper methods are
introduced to send/handle the request/response.</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f4a4809d64b2ec7515ecf3af3aa440f18a6fcdb6">f4a4809d</a></strong>
<div>
<span> by Chris Kelley </span> <i> at 2023-04-27T14:44:41+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Make use of xmvn-resolve conditional on it being installed
Drops the distro-specific code and relies only on whether xmvn is
present. The spec is updated to explicitly BuildRequires: xmvn-tools so
xmvn-resolve is there at build time for JAR resolution.
Resolves: #2188716
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a7646975a2cd23d66a7b865de6df653da2500258">a7646975</a></strong>
<div>
<span> by Chris Kelley </span> <i> at 2023-04-27T14:44:41+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Small cleanup in AtoB.java to re-trigger the CI.
Put array designators on the type.</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f94028e97d5f8ca56a0bb0a35601f803871eb767">f94028e9</a></strong>
<div>
<span> by Chris Kelley </span> <i> at 2023-04-27T14:44:41+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Only BuildRequires xmvn-tools on distros that have it
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/31106fe9bde924318cc1ad76eb11aae47e3e5912">31106fe9</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-04-27T10:14:17-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add new servlets for CA
Some new servlets have been added to provide a separate class
for each servlet in CA's web.xml.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/5507312aec349dbbb3fefc47460bbe58b908a7f0">5507312a</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-04-27T14:16:16-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add CAPolicyConfig
The CAPolicyConfig has been added to encapsulate ca.Policy.*
parameters.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f554bc072721a7a4c656c7173183286a27d31f4a">f554bc07</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-04-27T14:25:07-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add KRAPolicyConfig
The KRAPolicyConfig has been added to encapsulate kra.Policy.*
parameters.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ab810db7b61aaf94f011ccd4bb7c1fe1424c4ea7">ab810db7</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-04-27T17:07:12-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Refactor UGSubsystem.removeUserCert()
The UGSubsystem.removeUserCert() has been refactored to accept
a user ID and a cert ID.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/1af40b4cce4083bdaa27e27b4ff4e3030c5fb201">1af40b4c</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-04-27T18:03:01-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update log messages in UGSubsystem.buildUser()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e759b639d65da57ca7e63a00ff9d3f21c618d17b">e759b639</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-04-27T18:03:01-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove trailing spaces in pki-server <subsystem>-user-show output
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/8b0d3f6cc73c0bab7028fb0cedc3c3ac048ede39">8b0d3f6c</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-04-28T09:52:53-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update CAPortsServlet to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/9d0ff5b2ea1eb0ed1e7725349d4d7934690f3782">9d0ff5b2</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-04-28T09:52:53-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update ProfileListAgentServlet to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f1e84a87d3f7ecb83e46864e364d6c032aeb933d">f1e84a87</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-04-28T09:52:53-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update ProfileListServlet to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/0c0d56960cac341ade4a66517bad3c500662709b">0c0d5696</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-04-28T09:52:53-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update DoRevokeAgent to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6432544996aba030370eaa02efde351d6ae9ea2a">64325449</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-04-28T09:52:53-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update MasterCAGetInfo to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d6391723941190496fc8a82841d8075c096df9d0">d6391723</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-04-28T09:52:53-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update CAOCSPServlet to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/91382a7ae8f88dc413ee6091bfdb03d33eea9c2d">91382a7a</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-04-28T09:52:53-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update GetInfo to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c99a9da6c4e7cb068ad4a84ddf960445ef2d23d4">c99a9da6</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-04-28T09:52:53-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update DoRevoke to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a082444897e3fe8b15962642d77a9dd6060b838d">a0824448</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-04-28T09:52:53-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update CAGetCookie to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/2c85e7255da6c199e63a20e61dcb376b4e2d8256">2c85e725</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-04-28T09:52:53-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update CATokenAuthenticate to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/8e1eb857a9c1b45480d55d2fa5c3b71f9351f055">8e1eb857</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-04-28T09:52:53-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update CATokenAuthenticateAdmin to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/80dcde9db6106d2f43a93722ebbeb477dff29e4f">80dcde9d</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-04-28T09:52:53-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update ProfileSubmitProxyServlet to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/3c002226e6bc39ad25927df3ada6a0aa5c9c0f5e">3c002226</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-04-28T09:52:53-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update BulkIssuanceProxyServlet to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/89a69c5fd2c327c11d1fb7567440ac11c25c9687">89a69c5f</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-04-28T09:52:53-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update DoRevokeProxyServlet to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/66aa6cafbcfb2b3709eba2b15521722771b06910">66aa6caf</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-04-28T11:09:48-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add pki-server <subsystem>-user-cert-del
The pki-server <subsystem>-user-cert-del command has been added
to remove a cert from the user record such that the cert cannot
be used for authentication.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/154b694bf104c51eee8260ec66a5e22f0734f929">154b694b</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-04-28T11:09:48-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add test for CA admin user
A new test has been added to validate removing and restoring the
admin cert.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6eaaaeb0e218a877c90d9fdaac535a923dc1e657">6eaaaeb0</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-04-28T14:45:06-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move Auditor.getGroups() into CMSEngine
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/5ef226d01b5cfd43de06adb3054af97146ac2b79">5ef226d0</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-04-28T14:46:56-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove unused Auditor.engine
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/34d0508a958cc04d94c14f752d4c9200a5196ca4">34d0508a</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-04-28T14:56:35-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Replace PKISocketFactory.engine with auditor
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e132e91d019478231767805bb88161e9f7c86d1f">e132e91d</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-04-28T21:40:16-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add new servlets for CA
Some new servlets have been added to provide a separate class
for each servlet in CA's web.xml.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e8a3e7337982b87d8c56e25e3a399f01798c7bba">e8a3e733</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-01T15:07:07-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Replace BASE64_REPO secret with COPR_REPO variable
The BASE64_REPO secret has been replaced with COPR_REPO variable
since it's easier to configure.
https://github.com/dogtagpki/pki/wiki/Configuring-Test-Repository
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/1bf4b1dd4b6f498c0b3bf03bcfb7aad0685211b7">1bf4b1dd</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-01T20:12:55-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Refactor CertResource
The agent resources in CertResource have been moved into
AgentCertResource.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/39fe85f45b781c6bd9c58a46e010cb3852113c87">39fe85f4</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-01T20:13:09-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Refactor CertRequestResource
The agent resources in CertRequestResource have been moved into
AgentCertRequestResource.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/8176b0ec8e3dffe146f80f75c62f836d04c25625">8176b0ec</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-02T09:11:44-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add pki-server <subsystem>-user-role-find
The pki-server <subsystem>-user-role-find command has been added
to list the roles (which for now are identical to groups) that
the user belongs to.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/8d00486ff1c632ea3f653acb06bf39bf6ee42552">8d00486f</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-02T09:11:44-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add pki-server <subsystem>-user-role-add
The pki-server <subsystem>-user-role-add command has been added
to add a role for a user.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/1d9d4bf5b60e00b5b52e81bcdc907fc5585f123d">1d9d4bf5</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-02T09:11:44-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add pki-server <subsystem>-user-role-del
The pki-server <subsystem>-user-role-del command has been added
to remove a role from a user.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/76cded38261192d9144313ee7c2e2ed32c0f883c">76cded38</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-02T09:11:44-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update test for CA admin user
The test for CA admin user has been modified to validate
removing and restoring the admin role.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/3344ed2e8aea92be5240e492d1e67dd8eb6dd800">3344ed2e</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-02T11:08:11-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update CRSEnrollment.init() to use CAConfig
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f6eb6647e02a162a56d261d73c9c601ea8389d0f">f6eb6647</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-02T13:56:44-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Job classes to use Job.engine
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/2cd97474fa627df8b3dfe2325e438240395cf694">2cd97474</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-02T17:02:28-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update ServerKeygenUserKeyDefault to use CAEngineConfig
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d88d65d2f4a777fc3555f44bab074306a3bc7728">d88d65d2</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-03T08:43:25-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update InfoClient
The InfoClient has been updated to use JAX-RS client API instead
of the obsolete RESTEasy client API.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/773d53b1dce5e05fc69410b2c2797163c2ad35fb">773d53b1</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-03T08:43:25-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update LoginClient
The LoginClient has been updated to use JAX-RS client API instead
of the obsolete RESTEasy client API.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/fda6e4758029c60003b2c237ad86361beef769af">fda6e475</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-03T08:43:25-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update JobClient
The JobClient has been updated to use JAX-RS client API instead
of the obsolete RESTEasy client API.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/34cacefc60eb513c1ff4f002b35aa265cd65be7d">34cacefc</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-03T08:43:25-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update CASystemCertClient
The CASystemCertClient has been updated to use JAX-RS client API
instead of the obsolete RESTEasy client API.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/844818d4316622c50abb610ab91defeb4807528b">844818d4</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-03T08:43:25-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update KRASystemCertClient
The KRASystemCertClient has been updated to use JAX-RS client API
instead of the obsolete RESTEasy client API.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/afd6365124091621d57a71287ad3a8cdd17299b1">afd63651</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-03T09:01:00-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add server-webapp module
The PKIApplication class and the services in it are supposed to
be deployed under /pki webapp only, but currently these classes
are included in pki-server.jar so they are also distributed in
all other webapps although they are not actually used there.
In Servlet 3.0 framework all application classes in the webapp
will be initialized automatically, so the current packaging
could become a problem.
To avoid the problem the files for /pki webapp need to be moved
into a new server-webapp module, and the PKIApplication with the
services in it need to be moved into pki-server-webapp.jar which
will only be deployed under /pki webapp.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e9f5e072e30c55c673e4f62f0ae8d268206f2a6b">e9f5e072</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-03T13:52:10-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add EngineConfig.getUseOAEPKeyWrap()
The EngineConfig.getUseOAEPKeyWrap() has been added to read
the keyWrap.useOAEP param from CS.cfg. All code that reads this
param has been modified to use this method.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/955856b3a73d9be9b1a4f89ef4cfd2ebd9dcd112">955856b3</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-03T13:52:10-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix OAEP config in CRSEnrollment
Previously the CRSEnrollment was trying to get the
keyWrap.useOAEP param from the authority config, but it's
actually reading a non-existent ca.keyWrap.useOAEP param.
To fix the problem the code has been modified to call the
EngineConfig.getUseOAEPKeyWrap().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/fed16ed3ea3db874620b642f1aa3eb94fe687e4a">fed16ed3</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-03T21:57:57-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add RevocationCheckingConfig
The RevocationCheckingConfig has been added to encapsulate
auths.revocationChecking.* params.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/827fb864102fdf0785fb17c77c15e6b9080be7d5">827fb864</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-04T12:12:30-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Rename ServerXml to ServerConfig
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/679c07f504471a3965e8b0f4da1278fc6d408cd1">679c07f5</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-04T13:08:33-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up log messages in OCSPAdminServlet.getSigningAlgConfig()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/7d6ab78f2f5c338d726f1cc002d6164c470477f7">7d6ab78f</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-04T17:02:28-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add PKISubsystem.get_subsystem_index()
The PKISubsystem.get_subsystem_index() has been added to get
the subsystem index in CS.cfg. The code that configures the
LDAPProfileSubsystem has been updated to use this method.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b87ef09a4a6c0cf7cb571536ff02413b424d2436">b87ef09a</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-05T12:17:09-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Refactor AAclAuthz.addACLs()
The code that adds an already parsed ACL object in
AAclAuthz.addACLs() has been moved into a separate method.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c9f4820dcb8cdc394fdfca57c7d76b1812b02171">c9f4820d</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-05T12:45:03-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove duplicate algorithm in OCSPAdminServlet.getSigningAlgConfig()
Previously the OCSPAdminServlet.getSigningAlgConfig() returned
a list that contained a duplicate of the first element:
<alg1><alg1>:<alg2>:<alg3>:...
The code has been modified to remove the duplicate.
Resolves: https://bugzilla.redhat.com/show_bug.cgi?id=2193458
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/af7281adaf0721734aa678108d4ed4144901d06e">af7281ad</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-05T14:43:09-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add SelfTestPluginConfig
The SelfTestPluginConfig has been added to encapsulate
selftests.plugin.<plugin ID>.* params in CS.cfg.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/778df559f9066259f6e1fcdce49ba209b1b358c2">778df559</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-05T17:52:57-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix NPE in CMSEngine.shutdownJobsScheduler()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b960017aa10d3bf8e91fad70f885b1240cb8e92a">b960017a</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-05T21:17:27-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Replace CertUtils.toLowerCaseSubsystemType() with String.toLowerCase()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/1cb42cbce8cab262249258b624bf729a9d79a489">1cb42cbc</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-05T21:17:27-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move CertUtils.printRequestContent() into Request
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d75ed4889e2028b5f1702e54ada90c68ae5bbac0">d75ed488</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-08T07:30:26-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move ClientCertValidateCLI.getCertificateUsage() into CertUtil
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/4aef1162344e61aa7756ac3dc25eba4abfd5cd56">4aef1162</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-08T07:30:26-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Refactor ClientCertValidateCLI.verifySystemCertByNickname()
The code that retrieves certificate usages in
ClientCertValidateCLI.verifySystemCertByNickname() has been
moved into CertUtil.getCertificateUsages().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/2f5c67ce61f0c6d76f77d0910ade2d54127744c5">2f5c67ce</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-08T07:39:43-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move ClientCertValidateCLI.verifySystemCertByNickname() to CertUtil
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b4a37a88c0eb73ea83f8e3c421ee3f43f70eb763">b4a37a88</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-08T09:33:27-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix NPE in CMSEngine.shutdownAuthzSubsystem()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/3c4b8d52689cb00262643097332bd82be20ff2fa">3c4b8d52</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-08T09:34:11-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Replace CertUtils.getCertificateUsage() with CertUtil.toCertificateUsage()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/62c685d157e6debee253b04a13b6616c8a0cdb32">62c685d1</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-08T09:35:30-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Replace CertUtils.verifySystemCertByNickname() with CertUtil.verifyCertificateUsage()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/01b8b34907264c5f5b2e4a6735bb5570b7eea16f">01b8b349</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-08T11:43:52-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix Javadoc warnings
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/1aae652811b38bb48c1ea284b18cd81d63e2f62a">1aae6528</a></strong>
<div>
<span> by Chris Kelley </span> <i> at 2023-05-09T09:48:17+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update jaxb jar location in classpath
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e0500c58aaed5ce972aebe557fc297a88b67c18c">e0500c58</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-09T08:32:05-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move CertUtils.verifySystemCertValidityByNickname() to CertUtil
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/206bf4dd14d9f46acfab160cc300ec20459a47ce">206bf4dd</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-09T13:41:45-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove AIA extension from root CA signing cert
The bootstrap caCert.profile has been modified such that root
CA signing certs will no longer have an AIA extension. The
regular CA signing cert profiles have not been modified so
sub CA signing certs will continue to have an AIA extension.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/9202baa8b0d247a16487035b944f683070e42ad0">9202baa8</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-09T13:41:45-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update root CA and sub CA tests
Some CI tests have been updated to validate the AIA
extension removal from root CA signing certs.
The test-ca-signing-cert-ext.sh has been modified to verify
that there's no AIA extensions in root CA signing cert.
The test-subca-signing-cert-ext.sh has been modified to check
for an AIA extension in sub CA signing cert pointing to the
root CA's OCSP responder.
A new test-ms-subca-signing-cert-ext.sh has been added as a
copy of the original test-subca-signing-cert-ext.sh to check
for MS sub CA extensions.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/357191ddac6f317687d8dd59f280e58b6cc8e786">357191dd</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-10T23:13:16-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Refactor SubsystemCertValidateCLI.validate_certificate()
The code that calls pki client-cert-validate in
SubsystemCertValidateCLI.validate_certificate() has been
moved into PKISubsystem.validate_system_cert(), replacing
the code that calls pki-server subsystem-cert-validate.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/cb98cede0b1c844af8a098b4cc0718c1b8d9197b">cb98cede</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2023-05-11T17:38:15+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Bug2190283-AddCRLServlet-SEVERE-NOT-SUPPORTED-messages
This patch fixes the following issue:
It appears that the following parameter in ca's CS.cfg is set to true
by default:
ca.publish.rule.instance.ocsprule-ccrsa-1-rhcs10-example-com-32443.enable
which triggers the CA to attempt publishing of its CRLs directly
from CA->OCSP and causing the following SEVERE error messages:
SEVERE: CRL issuing point CN=CA Signing Certificate, nott found.
The CA->OCSP direct push of CRLs appears to not be working.
CA->ldap publishing (and ocsp pulling from ldap) is working and
should be used instead.
In addition, this patch also fixes it so that the following will no
longer appear (it has no reason to. See bug description for explanation):
[CRLIssuingPoint-MasterCRL] WARNING: LdapSimpleMap: crl issuer dn:...
org.mozilla.jss.netscape.security.x509.X509CRLImpl cannot be cast to java.security.cert.X509Certificate
fixes https://bugzilla.redhat.com/show_bug.cgi?id=2190283
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/09de883c27fde3a3c3adeda7fac08ca43281a640">09de883c</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2023-05-11T17:52:56+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Disable OCSP direct pushing during upgrade
The direct publishing to OCSP is not working properly and a previous
commit has change the default value for the `ca.publish.rule.instance.ocsprule-<instance-<port>.enable` attribute to false. This commit add the upgrade script to set false for the existing instances during the upgrade.
There are no problems with existing instances because the communication
with OCSP was not properly working and other mechanism were in place.
Close the issue: RHCS-4085
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/2fd33235d46f0bfba3939f444010c77f6251d6d1">2fd33235</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-11T11:48:10-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update ListRequests to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/7eaab345f013b525f7e452cb681b3e48b68a58c4">7eaab345</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-11T11:48:10-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update UpdateDirectory to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f9a50d85610a7741b0a99d88fa48daf5b91971f8">f9a50d85</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-11T11:48:10-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update SearchCert to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ae9aefb5c8520a89361df2132a324db72c7133e5">ae9aefb5</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-11T11:48:10-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update CADisplayBySerialAgent to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/bab868d43e3cff739247b55b3f189b3369b8954d">bab868d4</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-11T11:48:10-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update CADisplayBySerial to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a45a9b181a5efdeeb27d4d02f93bc13a166e4520">a45a9b18</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-11T11:48:10-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update SearchRevokeCert to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6c7cee8518919a7959c80cbcee930364b9322e4c">6c7cee85</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-11T11:48:10-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update QueryBySerial to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/5dbbded7f1f6dc9437c4577971c78f092bd567ee">5dbbded7</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-11T11:48:10-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update CADynamicVariablesAgent to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/226ea4de708d482ba2c17dc023d1f760ef6bc55d">226ea4de</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-11T11:48:10-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update CADynamicVariablesAdmin to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e4089839a3d9e34e358e9158c6bc9aea22790be3">e4089839</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-11T11:48:10-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update CADynamicVariables to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/8d5fe0874338f784cbef956c93e4e2c2e117d267">8d5fe087</a></strong>
<div>
<span> by Chris Kelley </span> <i> at 2023-05-11T19:09:46+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove old beaker tests</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/40323ba0e32094a97afcab90c2fc420f21fe56c1">40323ba0</a></strong>
<div>
<span> by Chris Kelley </span> <i> at 2023-05-11T19:09:46+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix JUnit tests before attempting to migrate to JUnit5
Most of the failing tests were due to a SecureRandom object not
instantiating correctly due to the Mozilla-JSS security provider not
being set up for the test. Only one test actually needs the SecureRandom
so it is removed from the test base class and passed null into the
method that requires it.
One DBRegistryTest fails because it can't find a logging bundle during
the test. The log message generated only happens during the failure
condition the test is checking for, so for now catch that exception (the
test will need refactoring anyway).</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ac4b19a8458c3732227991ad6496040fa21d7821">ac4b19a8</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-11T16:02:35-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add setters/getters for ProfileConfig
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/04fe036f4aed1f8bfcd49b0e0a256355def372ac">04fe036f</a></strong>
<div>
<span> by Chris Kelley </span> <i> at 2023-05-15T09:19:01+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Change JUnit dependency from JUnit4 to JUnit5
We should see no difference from this change, as JUnit5 currently has
JUnit4 as a dependency so nothing should change except we pull more
dependencies.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/fc020eeeb6f6f752dffa4d3959f75514fc3f504a">fc020eee</a></strong>
<div>
<span> by Chris Kelley </span> <i> at 2023-05-15T10:02:41+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Revert "Disable OCSP direct pushing during upgrade"
This reverts commit 09de883c27fde3a3c3adeda7fac08ca43281a640.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/9f55ab687f8e3e05f67db52419836ac34979644c">9f55ab68</a></strong>
<div>
<span> by Chris Kelley </span> <i> at 2023-05-15T10:02:50+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Revert "Bug2190283-AddCRLServlet-SEVERE-NOT-SUPPORTED-messages"
This reverts commit cb98cede0b1c844af8a098b4cc0718c1b8d9197b.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/7e34517b8eba8e4b14ca35975a2e4fbc133063e4">7e34517b</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-15T09:04:44-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Replace pki-server subsystem-cert-validate with pki-server cert-validate
The pki-server subsystem-cert-validate has been deprecated and
replaced with pki-server cert-validate since the new command is
shorter and only takes one parameter so it is easier to use and
more useful, and produces simpler output as well.
Eventually all pki-server subsystem-cert-* commands will be
replaced with pki-server cert-* commands.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d3e84c1149979de94df7817b4c6134ed17e97bc0">d3e84c11</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-15T15:05:00-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove redundant PrettyPrintFormat
The PrettyPrintFormat has been replaced with an identical
class in JSS.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/7ea8d1d43a7b777bf3d5ef2236e529b2cff5d3f3">7ea8d1d4</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-15T15:14:39-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix build warnings
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b2109b96370283cb89fbb56f0044010884fc1813">b2109b96</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-15T15:14:39-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix Javadoc warnings
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d0ce67d19dae0403208ab0cdda58053cc0660c21">d0ce67d1</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-15T15:23:47-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move CertDateCompare to pki-java
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/757aeb509935012af18bd441ed2b66df7a5e23d1">757aeb50</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-15T16:17:47-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Consolidate header/footer constants
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e01eb1c7a808610bb9ae9051876655f468eae4a0">e01eb1c7</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-15T19:32:22-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add CryptoUtil methods
New generateRSAKeyPair() and generateECCKeyPair() methods that
accept Boolean params have been added into CryptoUtil to match
PK11KeyPairGenerator.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/fa5be426e7d827fea6d687c0a3f4dd8ca3cbbcec">fa5be426</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-15T20:11:53-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add NSSDatabase methods
New createRSAKeyPair() and createECKeyPair() methods that accept
Boolean params have been added into NSSDatabase to match
CryptoUtil.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/4b19b4205f611f331c03c794e48d16c52780ef96">4b19b420</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-16T09:55:39-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add SAN option for pki nss-cert commands
The pki nss-cert-request and pki nss-cert-issue commands have
been modified to provide an option to specify a SAN extension
when generating a CSR and issuing a certificate which will make
it easier to test SAN extensions.
The NSSExtensionGenerator has been modified to support `critical`
option and specific DNS names for SAN extension.
The CI test has been updated to validate the new option.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/5a12470e38b28076b87ec9bacfc3f01a4f9e4290">5a12470e</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-16T16:46:09-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove redundant CertPrettyPrint
The CertPrettyPrint has been replaced with an identical class
in JSS.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/56614af5036dd46817c5c9f321a841c5409b8bf3">56614af5</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-16T16:52:20-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove redundant CrlPrettyPrint
The CrlPrettyPrint has been replaced with an identical class
in JSS.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/90fb14ab48d20168dfea3e9fc8d9d0bfaf8f74c7">90fb14ab</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-16T16:55:11-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove redundant ExtPrettyPrint
The ExtPrettyPrint has been replaced with an identical class
in JSS.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/8cd5c59c75400d5f48bdad59eb083e1f5801b8ec">8cd5c59c</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-16T17:02:52-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move ReqCertEmailResolver to pki-ca
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e72016b9037053d8a5752a3ca76b50143de0362e">e72016b9</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-16T17:04:30-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move IEmailResolver to pki-ca
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/dbe05c2ab8e943e2df643687736e7df53c4f5e72">dbe05c2a</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-16T17:08:52-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Convert IEmailResolver into EmailResolver
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/5b3dddb0d42b7c97a202f441ea80abf3a55f4bc9">5b3dddb0</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-16T17:14:11-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Merge IEmailResolverKeys into EmailResolverKeys
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e304ae9768128b93c12fe71c60d80011195b8408">e304ae97</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-16T17:17:46-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Merge IEmailTemplate into EmailTemplate
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a166129d5299afb90e413b8fefc7e32bcd4f4916">a166129d</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-16T17:26:03-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Merge IEmailFormProcessor into EmailFormProcessor
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/16c34dffafa0e8f65956bc7a079b0ae9a22cb124">16c34dff</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-16T18:31:14-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add new servlets for CA
Some new servlets have been added to provide a separate class
for each servlet in CA's web.xml.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/7abfc0bdc0a786201521994f9b2c24f739f6ae6e">7abfc0bd</a></strong>
<div>
<span> by Chris Kelley </span> <i> at 2023-05-17T09:44:42+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Refactor com.netscape.test.TestRunner to use the JUnit 5 runner
The test launcher does automatic test discovery so we can drop the
fragile bash script that does it in cmake, which simplifies things.
This converts 103 of the 166 tests, which were the "easy" ones. The
remaining tests all extend CMSBaseTestCase which is a subclass of
JUnit's TestCase, so they will need to be reimplemented separately.</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e88329d042f1c7751b2f0e928fabead5849a69b6">e88329d0</a></strong>
<div>
<span> by Chris Kelley </span> <i> at 2023-05-17T09:44:42+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Replace subclasses of TestCase with JUnit 5 style tests</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/9d222ab1063c3e522a9566678c4dadbd7986eed3">9d222ab1</a></strong>
<div>
<span> by Chris Kelley </span> <i> at 2023-05-17T09:44:42+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove references to unused JUnit4 libraries</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/9ea45acb5efef7ca93575dc2c6160babbed6cf66">9ea45acb</a></strong>
<div>
<span> by Chris Kelley </span> <i> at 2023-05-17T09:44:42+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix remaining broken tests</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/2177cabe4fccccfea5efbf21cf00319ddfa84826">2177cabe</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-17T09:12:49-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add key attribute options for pki nss-key-create
The pki nss-key-create has been modified to provide temporary,
sensitive, and extractable options similar to the options in
PKCS10Client and CRMFPopClient.
The temporary option does not take any argument since a key
can only be either permanent or temporary.
The sensitive and extractable options take a boolean argument
since the value can be true, false, or unspecified (default).
RSA and EC keys support all three options, but AES keys only
support temporary and sensitive options.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c2003aa547c636122e6e51430ba6aefe8ec2c3e9">c2003aa5</a></strong>
<div>
<span> by Chris Kelley </span> <i> at 2023-05-17T15:30:09+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix bug in AgentCertService.revokeCert
The current implementation always gets the CertRecord from the
RevocationProcessor instead of the provided clientRecord as the id
comparison was done between two different types, hence is always false.
The fix compares the id's as BigInteger types, and checks the
clientRecord for null first as it is dereferenced later without a null
check and is instantiated null.</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d1aa86d1b93a8c67c70b2130fa4e95fe63e62ff2">d1aa86d1</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-17T10:44:35-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update CMC servlets to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/3753ef34d04306f0cbdd3b08a160cc6f632061c2">3753ef34</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-17T10:46:54-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move CertUtils.unwrapPKCS10() to CertUtil
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/5f824d5bb98ac405167492aa00effd54b039a8ba">5f824d5b</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-17T10:46:55-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move CertUtils.decodePKCS10() to CertUtil
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/839b121d0bb02d25f8b142f8c90c7a375b2051e3">839b121d</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-17T10:46:58-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move CertUtils.parseCRMF() into CertUtil
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/47196d7b32bf04e71ec79164301a5cf707cd6862">47196d7b</a></strong>
<div>
<span> by Chris Kelley </span> <i> at 2023-05-17T19:00:29+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Extract the waiting for build step into a new workflow
This simplifies the top-level test files slightly. Also, I added a check
to pull the images at the end of the wait. This way, the job fails if
the build job is not finished. Currently the wait job always succeeds,
then all subsequent jobs fail as a result. We can use this fail
condition to trigger a retry.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/36ca7a5c408898969848710dca63f5db43aeb05a">36ca7a5c</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-17T17:50:04-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fixed constant in WBaseManualCertRequestPage
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/fe3660c4c3bbd530f96cd39aa2af1050b52072fa">fe3660c4</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-17T17:50:04-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Replace ArgBlock.unwrap() with CertUtil.unwrapPKCS10()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/bc6039bc10b082f7f770684fca9c6865ab3ae5e0">bc6039bc</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-17T17:50:04-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Replace ArgBlock.decodePKCS10() with CertUtil.decodePKCS10()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/087e7f808e0e6c0690c6d06fae75976195f43a9a">087e7f80</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-17T17:50:04-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add support for query params in PKIClient
The get() and post() methods in PKIClient have been modified
to support optional query params.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ccb837a2014fb76eec1a4be69fb898097465a9f3">ccb837a2</a></strong>
<div>
<span> by Chris Kelley </span> <i> at 2023-05-22T09:36:14+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Introduce a retry to wait-for-build.yml
If the waiting-for-build-job fails, run a second job. This should allow
multiple CI suites to run simultaneously again. Additional runs can be
added if needed. This is a bit of a dirty hack, but GitHub actions
doesn't allow loop control flow and there is no way to extend the
timeout of the build job.</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/1a044324e9bb28478934be38e66119ef5ebbe6fc">1a044324</a></strong>
<div>
<span> by Chris Kelley </span> <i> at 2023-05-22T11:31:46+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Conditionally set empty subject name
The empty name is currently required for ACME, but we require it to not
be empty on some older branches.
The proposed solution is to allow a new property "defaultSubjectName",
which can be used to modify the behaviour on a per-profile basis.</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/2ca128c022ae612c1567bf186843d19e7465b7f4">2ca128c0</a></strong>
<div>
<span> by Chris Kelley </span> <i> at 2023-05-22T16:12:50+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix bug in TPSConnectorClient.getConnector()
Previously, if connectors.getTotal() < 1 then we threw
ResourceNotFoundException. Then we proceed to try access the next
element in the connectors.getEntries() iterator.
The issue here is that DataCollection offers no guarantee that the total
field is equivalent to connectors.getEntries().size(), it is left to
calling code to update the total. This causes NoSuchElementException to
be thrown on TPS startup. The connector not being present is actually
expected by the calling code, so that is fine, but it is ugly that there
is a stack trace associated with expected behaviour.
We now check connectors.getEntries().isEmpty() instead, throwing the
correct ResourceNotFoundException, which is properly handled by the
calling code.</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/dadae5aabecc42e2aafaae547942b86f42cf9961">dadae5aa</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-22T10:28:42-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update pki nss-cert-request to support empty subject
The pki nss-cert-request has been updated to no longer require
a --subject param such that it can generate a CSR without a
subject name.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/bd2e05d8756e61a1ffd4fbee3787486513b0866d">bd2e05d8</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-22T10:28:42-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update CI to validate CSR and cert without subject
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/1ed50963f2b02076b2d88380578f4911771f3fd0">1ed50963</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-22T17:34:11-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update dependencies
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/813e2a12f9910929efc0debb446c14ce72a70a59">813e2a12</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-23T22:21:53-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove redundant code in JssSubsystem
The mNicknameMapCertsTable and mNicknameMapUserCertsTable cannot
be null so the null checks for these fields have been removed.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/43ab6ca04aef525ef7b58329e2ba7f3a38c74ad4">43ab6ca0</a></strong>
<div>
<span> by Chris Kelley </span> <i> at 2023-05-24T14:35:41+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Code clean up in UserSubjectNameDefault
* Make logger final
* Remove unnecessary else clauses
* Remove unnecessary Boolean literal
* Invert some negation logic for readability
* Introduce CMS_INVALID_PROPERTY constant
* Rename req_sbj to match the JLS naming conventions
* Remove logging for exception that is simple re-thrown.
* Remove unnecessary null checks for logging
* Use built in formatting/specifiers for logs</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/781af82e7a267ce937a6da61ff118679e91b2e20">781af82e</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-24T12:16:53-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update log messages in SelfTestService
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/158dc5d2782d1fc252a1252dcba0ca0f5c8a43be">158dc5d2</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-24T12:16:53-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove unused code in SelfTestCLI
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/03ece67303b4fc43c46b746928d0774024210948">03ece673</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-24T14:50:30-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove redundant Response._fCert
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/56253e63d33a4cc6c3cdc9ec4ed5d1860f3127a5">56253e63</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-24T14:50:30-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Refactor PKIProcessor.fillCertInfoArray()
The PKIProcessor.fillCertInfoArray() has been modified to take
a byte array instead of base64-encoded value.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/48dd30c4aa63840e135efda1169afb8201d1323e">48dd30c4</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-24T14:50:30-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Refactor CertUtil.parseCSR()
The CertUtil.parseCSR() has been modified to use unwrapPKCS10().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6d47b67fba7f2ca613db71d58e83939a94f4da3f">6d47b67f</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-24T14:55:36-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Refactor CertUtil.parseCRMF()
The CertUtil.parseCRMF() has been modified to remove the unused
locale param.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/5c8c2e644691f6294da51eabfa9b54293653d164">5c8c2e64</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-25T09:34:11-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Drop legacy CSR header/footer
The code that generates a CSR has been modified to use the header
and footer described in RFC 7468.
The code that parses a CSR has been modified to use
CertUtil.parseCSR() or unwrapPKCS10() such that it can handle
both RFC 7468 and legacy headers/footers.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6b036fbfdae2622478a11076c775bb41b20af1c8">6b036fbf</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-25T10:55:30-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update SelfTestClient
The SelfTestClient has been updated to use JAX-RS client API
instead of the obsolete RESTEasy client API.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/cd0cb8a4a2dafbff11d09919deb4972b17bda0a8">cd0cb8a4</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-25T11:12:32-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update build scripts
The build scripts have been modified to include the theme files
only when building the theme package.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/62f53debe1bb3569fdfcbc92b73c546daf67bdc4">62f53deb</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-25T13:50:11-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix IPA build job
The build job for IPA tests has been updated to create pki-deps
and pki-build-deps images to avoid creating an empty cache. It
also has been updated to create just the required packages for
IPA tests without re-running the unit tests.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/564489d7c85fc91130a5bb0ce8ec34be98374b90">564489d7</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-25T17:53:11-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Replace sslget examples with curl
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/872b424a452388ecfcc05a3bbd2d75ad980fa45a">872b424a</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-25T17:53:16-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update log messages in CRLIssuingPoint
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a65061c2909bc128a5d7db078535d94bdd3e6931">a65061c2</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-26T12:15:57-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Consolidate PKIClient.get()/post()
The get() and post() methods in PKIClient class that return a
Response object have been replaced with the methods that take
a response type.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/23dbdfbda1f0248579e52e0594eece7e476ff6e2">23dbdfbd</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-26T13:09:09-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add Client.getTargetPath()
The code that constructs the path for WebTarget has been
consolidated into Client.getTargetPath().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/40c7158f18ef11af943984dde27aa83376afca75">40c7158f</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-26T14:11:37-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add PKIClient.target()
The code that constructs a WebTarget with query params has been
consolidated into PKIClient.target().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d014cad02bfb47646847b834e7ee1b482d6cce0c">d014cad0</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-26T14:12:52-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add PKIClient.get() with GenericType
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/4b45eb700eb128c8d23cb8e8e88dd7bcdad339b4">4b45eb70</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-26T14:14:26-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add PKIClient.post() with Entity
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/660966c6347906b9cd69dcfa91048cb147d4fe1e">660966c6</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-26T14:15:09-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add PKIClient.put()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e8886f54bc6f7bbab53bb833700adf1787a848c2">e8886f54</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-26T14:15:52-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add PKIClient.patch()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/bccc786ebbcb0e8222a4b71b4e52f8ba236c06d0">bccc786e</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-26T14:16:33-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add PKIClient.delete()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/9319ecc8de94e133fe186074d36038d0a42d9174">9319ecc8</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-26T16:45:37-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Refactor SecurityDomainSessionTable.addEntry()
The SecurityDomainSessionTable.addEntry() has been modified
to throw an exception to help troubleshooting.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/255f44fdb6cbf443d18d4312735ffa17af6cb8d1">255f44fd</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-26T16:46:32-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Refactor SecurityDomainSessionTable.removeEntry()
The SecurityDomainSessionTable.removeEntry() has been modified
to throw an exception to help troubleshooting.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b64344664fbbb3d2b7882606c8ec1aa02e32ade8">b6434466</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2023-05-29T11:18:44+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Bug2190283-part2_LdapSimpleMap_Invalid_cast_warning
This patch was part of the patch that was taken out earlier.
It fixes a frivilous WARNING message:
[CRLIssuingPoint-MasterCRL] WARNING: LdapSimpleMap: crl issuer dn:...
org.mozilla.jss.netscape.security.x509.X509CRLImpl cannot be cast to java.security.cert.X509Certificate
It did not attribute to the CI break so I'm putting it back.
fixes (part2) https://bugzilla.redhat.com/show_bug.cgi?id=2190283
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/62299b54b6f2294d94aa0438a6f5628be7d0e909">62299b54</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-30T14:57:17-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Deprecate sslget
The sslget command is no longer used by the code so it has
been deprecated and might be removed in the future to reduce
maintenance. This command can be replaced with pki CLI or curl.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/382e54a2ee5343200a5e2567c86a4bfde464a22e">382e54a2</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-30T18:12:04-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix pki tps-connector-show
The pki tps-connector-show command has been modified to store
the connector data in JSON format in the output file.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f4f466104a37b7e2a61acc193f0134af4c573f8f">f4f46610</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-30T18:13:43-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add PKIClient.entity()
The PKIClient.entity() has been added to create an Entity object
with the correct message format.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/2ebdde7ed4c4ba60cc51f8d57049ffd2e406d681">2ebdde7e</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-30T18:13:50-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update log messages in ConnectorService
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/879f499e6a2657a229cd1540f68ca27bdae54bf2">879f499e</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-31T08:44:50-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update GroupClient to use JAX-RS client API
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ce4c7ffb02e9a1f97069afe0a36975ad1f9f1fbd">ce4c7ffb</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-31T08:44:50-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update ActivityClient to use JAX-RS client API
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ef952f663bf985b5f74d1d69dc6e661c3b12379f">ef952f66</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-31T08:44:50-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update SecurityDomainClient to use JAX-RS client API
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f5bfe674a9439d78b4ecc7c9c4c2daf6eef2236c">f5bfe674</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-31T08:44:50-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update FeatureClient to use JAX-RS client API
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/05c85e896023881d0ca8843493aa2b7b5df3fdea">05c85e89</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-31T08:44:50-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update KRAConnectorClient to use JAX-RS client API
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a0615882645894516025bc9df57faad7dbf8679c">a0615882</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-31T08:44:50-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update AuthenticatorClient to use JAX-RS client API
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c74a6163715cdda928c9725374c14a3cf83c9e19">c74a6163</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-31T08:44:50-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update CAInfoClient to use JAX-RS client API
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/71996b87de6c29c1b3f56df91d87e76a8b4dd5b0">71996b87</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-31T08:44:50-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update KRAInfoClient to use JAX-RS client API
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/4354a9101bd973274128aa0fd634faef494e0959">4354a910</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-31T08:44:50-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update ConfigClient to use JAX-RS client API
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f77a82645740c00a4e5ebbd885624ae5757ec2b0">f77a8264</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-31T08:44:50-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update TPSCertClient to use JAX-RS client API
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/774973f84c076aa808ea277d8dfe25d3ba0ba196">774973f8</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-05-31T08:44:50-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update ConnectorClient to use JAX-RS client API
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/82c8fc7b0cf09f4b8809d07682d4d9aaed3fd12c">82c8fc7b</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-06-01T21:20:28-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Create separate build for ACME tests
The build job in ACME tests workflow has been modified to create
just the packages required for ACME tests (without re-running the
unit tests since they are already run by the main build job),
then publish the ACME image.
This way the main build job no longer needs to build the ACME
image so other tests can start earlier, thus reducing the overall
execution time.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/4328e5857df8ec4b8f438d24709f7fbabf129bc1">4328e585</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-06-01T23:07:33-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix ProfileMappingService.createProfileMappingData()
The ProfileMappingService.createProfileMappingData() has been
updated to set the ProfileMappingData.profileMappingID properly.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/fa3c52f916e4c59b69319142e910229215e7b669">fa3c52f9</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-06-01T23:07:33-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix TKSEngineConfig.getTPSConnectorIDs()
The TKSEngineConfig.getTPSConnectorIDs() has been modified to
remove blank entries from the list.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/8b15e37f435e475ab2842feaf56520f05a1a96e4">8b15e37f</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-06-01T23:07:33-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add Client.target()
The Client.target() has been added to simplify calling
PKIClient.target().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/79029deb1a7f570ab84bfcbeccff718362847d70">79029deb</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-06-01T23:07:33-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add Client.delete() that takes query params
A new Client.delete() has been added to call HTTP DELETE
operation with query params.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d5072e66b86d68371eac1fa692647c4117994bbc">d5072e66</a></strong>
<div>
<span> by Chris Kelley </span> <i> at 2023-06-05T10:44:56+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Code clean up in Job
* Make logger final
* Reduce visibility of public constructor
* Use built in logger formatting
* Remove unnecessary override of run()
* Remove unnecessary Boolean literal
* Combine identical catch clauses
* Rearrange logic in build methods for readability
A separate change will replace the synchronized HashTable instances</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c725d16b9636d18c9ba8211ec3c46c41869e1469">c725d16b</a></strong>
<div>
<span> by Chris Kelley </span> <i> at 2023-06-05T12:16:58+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Upstream some spec file changes to reduce diff
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/602a238c65da2941425189e109e679214611d24e">602a238c</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-06-06T11:31:35-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update CMCRequest to support hex revRequest.serial
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/acba513b4505f84b2294922889a4337dcbbc7415">acba513b</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-06-07T08:52:19-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update test for CA with CMC shared token
The test for CA with CMC shared token has been updated to perform
a certificate revocation then validate the audit events.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/5a69e677dc2e5039b9174fdad888332a18613716">5a69e677</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-06-07T12:55:36-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix stdout/stderr encoding in NSSDatabase.get_trust()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e83ebf6695e0e927eab92470254c29bc5426fd81">e83ebf66</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-06-07T12:56:00-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix regex in in NSSDatabase.get_trust()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/cbeea95dd187eb522d3146d68621b4966e674c5d">cbeea95d</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-06-07T12:56:21-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up test for CA with CMC shared token
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e916d58d130a86fc31dac3f064632c65c0378b91">e916d58d</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-06-07T18:04:13-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update pki ca-cert-request-submit
The pki ca-cert-request-submit has been updated to get the
subject DN from the PKCS #10 request by default.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/207efa5da6df7b0e0cc450598bfc326d50fd78cd">207efa5d</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-06-07T21:54:24-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove unused Velocity templates
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/2b84210e7b51f31bbcb359a3335a46971d2773f6">2b84210e</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-06-08T09:34:15-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update admin cert profile in tests
Previously the subject DN for admin certs in tests were
changed into uid=<username> since it's required by the
caUserCert profile.
The tests have been updated to use the AdminCert profile
which allows any subject DN, so the subject DN no longer
needs to be replaced.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c399a63e75c921dbf774fd75d5154746ac08830f">c399a63e</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-06-08T18:44:02-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix missing ROLE_ASSUME events
The ACLInterceptor has been updated to generate a ROLE_ASSUME
event after a successful authorization to a protected resource.
This will fix missing ROLE_ASSUME events for REST API which is
used by PKI CLI and TPS UI.
Resolves: https://bugzilla.redhat.com/show_bug.cgi?id=1549887
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/56f2dcef0d18553621590961df5c58dcc6b00e66">56f2dcef</a></strong>
<div>
<span> by Chris Kelley </span> <i> at 2023-06-09T12:16:20+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Use the system Python 3 for scripts
Now Python 3 is the default everywhere we can ask for the system Python
for rather forcing the shell to use what is specified in the PATH</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/0a002576d74916e1bc6a62386d9afe958a439fb8">0a002576</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-06-09T10:00:54-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update AuthorityClient to use JAX-RS client API
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/98871b0c2679e850c4db8ae7a4b1ea2033352d3a">98871b0c</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-06-09T10:00:54-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update TokenClient to use JAX-RS client API
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e3be8e3e5854d34aeea44cce17bb60d2a7fe61f8">e3be8e3e</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-06-09T10:00:54-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update TPS ProfileClient to use JAX-RS client API
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f09acc90d5821a56f2c8800c9dfc5318ca3755c3">f09acc90</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-06-09T10:00:54-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update TPS ProfileMappingClient to use JAX-RS client API
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b84a455ab6af3bc951b4e795283be52ce008fae5">b84a455a</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-06-09T10:00:54-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update TPSConnectorClient to use JAX-RS client API
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d9519799a00efd56a0e02c02a21cb804ee8246ba">d9519799</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-06-09T10:00:54-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update CA ProfileClient to use JAX-RS client API
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/5dca1b2c0e349f68dc2ec3cb61890b90dce10757">5dca1b2c</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-06-09T10:00:54-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update AuditClient to use JAX-RS client API
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/135645e4e04cbb94c69b9577a56cc34af330e619">135645e4</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-06-09T11:34:01-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update ServerConfig.create_listener()
The ServerConfig.create_listener() has been modified to support
adding the new listener at a specific index. If the index is not
specified, the new listener will be added at the end.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c69cda034c4251f585fa19e8d189ef24eb341e72">c69cda03</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-06-09T14:52:02-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update pkidaemon
The pkidaemon has been modified to support both the default
"pki-tomcatd" and the "tomcat" instance types which determine
the directory structure of the instance.
https://github.com/dogtagpki/pki/wiki/PKI-Server-Directory-Structure
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/0d324ac88a5341d7e5d6f0f30471aefce40c3945">0d324ac8</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-06-09T14:52:31-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update PKIInstance.execute()
The PKIInstance.execute() has been modified to include the
instance type if it's not the default one when calling server
startup scripts.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/4298a668fa980e0c90f20ff00d9df5ef0e967df0">4298a668</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-06-09T17:13:48-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix NPE in CMSEngine.shutdown()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/5fa7ede536b77f0d9139926ab935995921eee215">5fa7ede5</a></strong>
<div>
<span> by Chris Kelley </span> <i> at 2023-06-12T10:04:44+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Code cleanup in CertRecord</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/9614f953a7276fa15954854c22b0b51d5bdfa720">9614f953</a></strong>
<div>
<span> by Chris Kelley </span> <i> at 2023-06-12T11:50:37+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Code clean up in CertRecordProcessor
* Make logger final
* Remove unnecessary Boolean literals
* Invert negated if statements for readability
* Use built in logger formatting
* Rename onlySomeReasons to not hide the field
* Replace synchronized HashTable and Vector instances (Vector/HashTable
are technically still used as they are
the implementations of List/Map passed in by at least some of the
calling code)</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/7e7df9de3ad2cf73197e931862ed7a1283e5dc5c">7e7df9de</a></strong>
<div>
<span> by Chris Kelley </span> <i> at 2023-06-12T20:44:05+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up servlet methods in CMSAdminServlet
* Remove un-throwable ServletException/EBaseException from declarations
- leave empty methods for now, they need to be abstracted in the base
class or moved out into an interface.
* Most methods don't require the request, so remove it from those.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/1975a742039f16553f68f0ff15e3e6db19ddd71b">1975a742</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-06-12T15:25:07-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update UserClient to use JAX-RS client API
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/cf9a9b83d238970c01a78032bb362a2c57e16354">cf9a9b83</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-06-12T18:50:36-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add CAAgentCertRequestClient
The code that calls AgentCertRequestResource has been moved
into CAAgentCertRequestClient to simplify the transition to
JAX-RS client API.
The original methods in CACertClient have been modified to
forward the call to CAAgentCertRequestClient.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/44bda4cd56dc3aa3adfd21f43822998e9cea734f">44bda4cd</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-06-12T18:50:36-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add CAAgentCertClient
The code that calls AgentCertResource has been moved into
CAAgentCertClient to simplify the transition to JAX-RS client
API.
The original methods in CACertClient have been modified to
forward the call to CAAgentCertClient.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/433f604f13f7d78fc5abd09e194f1907e7775885">433f604f</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-06-12T19:09:50-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add CACertRequestClient
The code that calls CertequestResource has been moved into
CACertRequestClient to simplify the transition to JAX-RS client
API.
The original methods in CACertClient have been modified to
forward the call to CACertRequestClient.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/4e810f8318448b2bb78fac3b309f31177cf2b21b">4e810f83</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-06-12T19:09:50-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove unused KeyClient.kraInfoClient
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/7947a4a6411dc95ba1eeb71e218226c0b5b34bb2">7947a4a6</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-06-12T19:09:50-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add KeyRequestClient
The code that calls on KeyRequestResource has been moved into
KeyRequestClient to simplify the transition to JAX-RS client API.
The original methods in KeyClient have been modified to forward
the call to KeyRequestClient.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d9ce0629f71a4cc12ce760597a380209c543effb">d9ce0629</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-06-13T09:10:53-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update CAAgentCertRequestClient to use JAX-RS client API
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6da29a50247fe76b0c65f922afc0e4f2e92f7e05">6da29a50</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-06-13T09:10:53-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update CAAgentCertClient to use JAX-RS client API
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/cbf98a783da430e678b1ffdec5527dfb5fec04f6">cbf98a78</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-06-13T09:10:53-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update CACertRequestClient to use JAX-RS client API
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/803f648fb63834257b500dd03ce7c5350ff0557a">803f648f</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-06-13T09:10:53-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update CACertClient to use JAX-RS client API
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/96d41fcd5337fcde2db05722ec1d8633a3d6b448">96d41fcd</a></strong>
<div>
<span> by Chris Kelley </span> <i> at 2023-06-13T15:17:21+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove getNickName() from KeyRecoveryAuthority
This method simply calls getNickname(), which is actually implementing a
method from IAuthority, which is highly confusing. The method doesn't
look to actually be used anywhere so I removed it and added the
@Override annotation to the remaining method.</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6aecffbd482d18dbfa36cbcd09c0770d60431f01">6aecffbd</a></strong>
<div>
<span> by Chris Kelley </span> <i> at 2023-06-13T21:31:16+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Code cleanup in PKILogger
* Rename enum to not name clash java.util.logging.Level
* Remove unnecessary semicolon and fully qualified names
* Replace statically created HashMap with Map.of() generated EnumMap and
lower its visibility
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/40b589cdb8da91f8ad9973bb66ab90c7a22fcec6">40b589cd</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-06-13T16:53:18-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update log messages in KRAService
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/02ba2dee58f0671372449c2adbc5da515927a4e2">02ba2dee</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-06-13T16:54:06-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update log messages in KeyRequestService
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d769d7a2fdc822561e6e0ebac750c8aa2ec0e2be">d769d7a2</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-06-13T16:54:06-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update log messages in SymKeyGenService
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/188050e83b92b0988f874d8dd5a58217943f9674">188050e8</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-06-13T19:02:05-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add RESTMessage.toString()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/660986fa335ff463aa690bcb8c02234e1683688f">660986fa</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-06-14T09:23:21-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update KeyRequestClient to use JAX-RS client API
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a04234522cc3c34ec79243248262ff5c7488b684">a0423452</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-06-14T09:23:21-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update KeyClient to use JAX-RS client API
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/949b71817a02b17fa68de4472e4079af50c287a1">949b7181</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-06-14T09:23:48-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update GrantRecovery to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/744487e4fc514af0c7e36277dc856ebd1dac8419">744487e4</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-06-14T09:23:48-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update GrantAsyncRecovery to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/19ce3b901e73bea73d95b76e9100f4318cb36958">19ce3b90</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-06-14T09:23:48-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update DisplayTransport to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/236de44ecc4bd33e24158b26741a38480f149973">236de44e</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-06-14T09:23:48-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update GetTransportCert to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/08149eeb6c91ca9cf1ea8f73690ab95092fcc9e8">08149eeb</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-06-14T09:23:48-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update RecoverBySerial to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/3a1b43a7f38610b9461ac90ee63d40fd52c59d01">3a1b43a7</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-06-14T09:23:48-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update TokenKeyRecoveryServlet to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/57a542986b404a7d6baa502842dc64e2c8ef2b45">57a54298</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-06-14T09:23:48-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update GenerateKeyPairServlet to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f91fc5c1ba8ff549f54c631db1c0e83ac5f01cb6">f91fc5c1</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-06-14T09:23:48-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update GetApprovalStatus to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/df2380f4cee3f6e073c019cb9072cdcf79169d23">df2380f4</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-06-14T09:23:48-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update KeyProcessReq to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/78639ce433d7bb768100f46b3a7b4fd5b5f60f14">78639ce4</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-06-14T09:23:48-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update ExamineRecovery to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/7481db431f701d255aa23e6adba65f7fa9d8deaa">7481db43</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-06-14T18:26:48-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove unused PKIClient.createProxy()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6254aacf4cf500cbbf096053b9b62124f5f14e97">6254aacf</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-06-14T19:49:22-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add SCEPConfig
The SCEPConfig class has been added to encapsulate ca.scep.*
params.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d314aaed8628e8d2be3a154e9c504adc7c24ef7c">d314aaed</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-06-15T18:05:32-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove redundant CMake variables
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/5d04775f28f608dfef3540c9fea827904ecb3813">5d04775f</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-06-16T15:36:00-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Revert RESTMessage.toString()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/aef379e44fbd5eff17d0204c5ab2136d735d16cc">aef379e4</a></strong>
<div>
<span> by Chris Kelley </span> <i> at 2023-06-20T15:18:55+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Introduce Packit config and upstream some spec updates
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/56efe4af357ed646425742ef46b5733ce4b405a8">56efe4af</a></strong>
<div>
<span> by Chris Kelley </span> <i> at 2023-06-20T15:19:04+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Upstream some spec file changes from Fedora
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/3947a6511dd9684aaaac1afd9ab001bc94418294">3947a651</a></strong>
<div>
<span> by Chris Kelley </span> <i> at 2023-06-20T15:22:14+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add packit job for scratch builds for PRs
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f34cf875ad6f0d79836e5ca8d936f4daf1856ec8">f34cf875</a></strong>
<div>
<span> by Chris Kelley </span> <i> at 2023-06-20T15:27:52-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Revert "Upstream some spec file changes from Fedora"
This reverts commit 56efe4af357ed646425742ef46b5733ce4b405a8.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/7a8bf4268c5a9499f1dd7cab3f281677df68f839">7a8bf426</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-06-20T21:42:15-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add COPR_REPO default value
The CI has been modified to define a default value for
COPR_REPO since PRs do not have access to the value.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/228aa4c648757887576463a28a53b0ffba9a3b4e">228aa4c6</a></strong>
<div>
<span> by Chris Kelley </span> <i> at 2023-06-21T10:10:33+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix typo in .packit.yaml</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/8ee2f064abdd167880254afbd2dbdd08ea03b546">8ee2f064</a></strong>
<div>
<span> by Chris Kelley </span> <i> at 2023-06-21T11:03:52+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Disable cf-protection test
It is causing rpminspect failures and it is not clear why. We only
have a few executables like this and they are adjunct tools that
do not form part of the main application, so ignoring it
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/0f69e19592f615adbf86e3fc9296ac05a14e9aaf">0f69e195</a></strong>
<div>
<span> by Chris Kelley </span> <i> at 2023-06-21T14:05:47+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update README.md
Drop QE tests from status badges (as we don't run those tests)</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e7ad62ebfe4be3cab39a2e40014ed6735f0e4562">e7ad62eb</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-06-21T10:01:11-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add dependency on resteasy-servlet-initializer
The pki.spec, pom.xml, and CMake files have been modified
to include resteasy-servlet-initializer to enable automatic
initialization of JAX-RS applications in all webapps.
https://docs.jboss.org/resteasy/docs/3.0.24.Final/userguide/html_single/#d4e143
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ed6b8c699f1a0923ced3266dba7fe0f0abf18415">ed6b8c69</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-06-21T10:01:11-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Auto-initialize JAX-RS applications
The web.xml files in most webapps (except ACME and EST) have
been modified to drop the RESTEasy servlet declaration and
let the JAX-RS applications be initialized automatically by
resteasy-servlet-initializer.
https://docs.jboss.org/resteasy/docs/3.0.24.Final/userguide/html_single/#d4e143
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/456e81ab685df6853f73834922415bc32e371ef2">456e81ab</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-06-21T11:41:17-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Drop DRMTool
The DRMTool command, its config file, and its manual page are
actually just links to their counterparts in KRATool. Some of
those links are actually broken, but rpminspect is only
generating warnings instead of failing. Since the tool has
long been deprecated the tool and the links can be dropped.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/59609079a51b597a75896aac4e60243ce343c75a">59609079</a></strong>
<div>
<span> by Chris Kelley </span> <i> at 2023-06-22T09:34:49+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Allow packit to access @pki/master for dependency resolution
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/725ab5931d7a01c0395383c3b23c1569f2b8d097">725ab593</a></strong>
<div>
<span> by Chris Kelley </span> <i> at 2023-06-22T09:47:20+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Conditionalise use of resteasy-servlet-initializer
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/8a8f320903bf8cdeb6375ef34a20ae77feeb1179">8a8f3209</a></strong>
<div>
<span> by Chris Kelley </span> <i> at 2023-06-22T10:36:16+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Revert "Conditionalise use of resteasy-servlet-initializer"
This reverts commit 725ab5931d7a01c0395383c3b23c1569f2b8d097.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/76d83323e2c3fa6c8bd9c232d3caaf7c08332e53">76d83323</a></strong>
<div>
<span> by Chris Kelley </span> <i> at 2023-06-22T12:37:37+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Code cleanup in UsrGrpAdminServlet
* Make logger final and log errors instead of stack traces
* Reorder modifiers to match the JLS
* Move array designators to the type
* Remove unnecessary Boolean literals and control flow jumps
* Remove commented out code
* Use pattern-matching instanceof
* Simplify logic by flattening/inverting negated ifs/unnecessary elses
* Remove declarations for exceptions that cannot be thrown</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/5ce3e63d20370a93a0496ceded887c7e971debce">5ce3e63d</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-06-22T20:17:47-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix PKIServer.deploy_webapp()
The PKIServer.deploy_webapp() has been updated to check the
wait time if the is_available() returns a False or throws
a retryable exception.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/9bafa9eb84097b4bb0d0feebeeb41485ecb7ab86">9bafa9eb</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-06-22T20:17:53-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix PKIServer.undeploy_webapp()
The PKIServer.undeploy_webapp() has been updated to check the
wait time if the is_available() returns a True or throws a
retryable exception.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/994d932100c7d335752fe817a7d8757f62439b08">994d9321</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-06-23T10:15:07-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Auto-initialize ACME application
The ACME webapp has been modified to automatically initialize
the ACME application without an explicit dependency on RESTEasy.
Since a JAX-RS application cannot have an empty path, the ACME
application needs to be relocated to /rest and the endpoints need
to be mapped to the new location as well.
https://docs.jboss.org/resteasy/docs/3.0.24.Final/userguide/html_single/#d4e143
https://stackoverflow.com/questions/10874188/jax-rs-application-on-the-root-context-how-can-it-be-done
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/21b290e761f68c5a6cb5c257066fddb4334cc6f8">21b290e7</a></strong>
<div>
<span> by Chris Kelley </span> <i> at 2023-06-23T19:20:40+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix additional packit repos
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/06a3059cdb763127285156552f51ef49c0cbc0df">06a3059c</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-06-23T14:52:45-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Drop pki-servlet-engine dependency
The pki-servlet-engine is no longer needed since now Tomcat
is available on all platforms.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/8c2094e9d0f32152637d52a06f37043c6fd0b123">8c2094e9</a></strong>
<div>
<span> by Chris Kelley </span> <i> at 2023-06-23T21:20:50+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove unnecessary else clause from nsNKeyOutput
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/fce534bd8130d2d567f6c00487dda0907a33976a">fce534bd</a></strong>
<div>
<span> by Chris Kelley </span> <i> at 2023-06-23T22:56:08+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Use try-with-resources in DefStore
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/879fd4f6f85e3d7424f8de74bfff3e26cc1fa567">879fd4f6</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-06-23T17:15:29-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move Web UI main page into ROOT webapp
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/3bd832efa819f61aaaf766504bc77336e2ea5bb9">3bd832ef</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-06-23T17:15:29-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move patternfly-4.35.2.css into ROOT webapp
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/be07a728ad3691214dde98a41964ed93be9ba656">be07a728</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-06-23T17:15:29-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move jquery-3.5.1.js into ROOT webapp
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/4a9ad57a7454e3aab19af526771a007e8c839259">4a9ad57a</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-06-23T20:17:56-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update build.sh output
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6e1f5c148e852f3fa66d9f7e051c6a4f41d84269">6e1f5c14</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-06-23T21:17:38-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move HttpInput to pki-server
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/29124d8a4e138c96416da88535f853f7a8ff0903">29124d8a</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-06-23T21:52:23-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Tomcat dependency
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b189005d8ba9b6e5e8555e9778a569093594ea44">b189005d</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-06-26T12:58:47-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Auto-initialize EST application
The EST webapp has been modified to automatically initialize
the EST application without an explicit dependency on RESTEasy.
Since a JAX-RS application cannot have an empty path, the EST
application needs to be relocated to /rest and the endpoints need
to be mapped to the new location as well.
https://docs.jboss.org/resteasy/docs/3.0.24.Final/userguide/html_single/#d4e143
https://stackoverflow.com/questions/10874188/jax-rs-application-on-the-root-context-how-can-it-be-done
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/bb5ddfca46de1a5e4550e655a25b3968829a6320">bb5ddfca</a></strong>
<div>
<span> by Chris Kelley </span> <i> at 2023-06-27T14:24:39+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add packit copr_build job on commit
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/65d1a36e6dcddf8ab2bf24ad072bbd26753c4a4e">65d1a36e</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-06-27T09:40:35-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Merge libtps.so into tpsclient
The libtps.so is used exclusively by tpsclient so it's no
longer necessary to keep it as a shared library.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/5c385bccb647e12ac2f6a82fc25af45cbe81cfb2">5c385bcc</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2023-06-27T18:08:59+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Migrate EST tests to ansible
Tests based on GitHub workflow cannot easily be executed locally
before the code is pushed making more difficult to identify problems
during the development.
Additionally, there are several limitation on how workflows can be
combined.
Moving to ansible should solve the limitation and allow the
execution of test on developer machine.
This is the first step aims at converting a single workflow to ansible.
The preliminary steps of building the docker images and deploy onto the
runner are still based on github actions.
If/when all workflows will use ansible the overall CI activities could
be reorganised to optimise the execution in the available runners.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6ac0877d108b34e1adafc1036433f2782bbc7909">6ac0877d</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-06-27T19:14:47-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up JAR paths in CMake files
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e8582686b21d2baeae0eb0dac3a546ff3be900b9">e8582686</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-06-28T09:14:11-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update POM files
The POM files have been modified to use the latest dependencies.
The dependencies have been moved into the modules that actually
need them. The maven-surefire-plugin has been added to run JUnit
5 tests properly. A new POM file has also been added for EST.
The RPM spec and Azure pipelines have been updated to use the
same dependencies as in the POM files.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a7ad636d5f2f3cf1f782326d95a84edeb8a613e1">a7ad636d</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-06-28T09:58:28-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Replace tomcatjss.jar
All references to tomcatjss.jar have been replaced with
tomcatjss-core.jar and tomcatjss-tomcat-9.0.jar since they
are the actual Maven build artifacts.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/02b6fde35abee34bf8c1c2f77553304522b29f55">02b6fde3</a></strong>
<div>
<span> by Adam Williamson </span> <i> at 2023-07-05T10:48:40+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Handle removal of ConfigParser.readfp() in Python 3.12
Per https://docs.python.org/3.12/whatsnew/3.12.html#removed ,
configparser.ConfigParser.readfp() is removed in Python 3.12.
Assuming we still want to keep Python 2 compatibility, since
there are still a bunch of uses of six in the codebase, I've
changed this to do it the same way as it's done in freeipa
ipaserver/install/certs.py, using readfp on Python 2 and
read_file on Python 3.
Signed-off-by: Adam Williamson <awilliam@redhat.com>
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/bf3722d35e44eda25d92b358592cbb8a2415364d">bf3722d3</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-05T14:37:35-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Split pki-tomcat.jar
Previously CMake stored both generic Tomcat and Tomcat 9.0-specific
classes into a single JAR file. To simplify the transition to Maven
the CMake scripts have been updated to store those classes into
separate JAR files. PKI server code has also been updated to use
both JAR files.
Currently PKI code has direct dependencies on Tomcat 9.0 classes.
To simplify the transition to newer Tomcat versions the code needs
to be refactored to use generic Tomcat classes at compile time,
then use version-specific classes at runtime. This can be done
separately in the future.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a91d351ffb69812de847e384a6f0d91e2a114611">a91d351f</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-06T12:09:46-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix pki-tomcat.jar and pki-tomcat-9.0.jar
The CMake scripts for pki-tomcat.jar and pki-tomcat-9.0.jar have
been updated to use separate build folders. The Azure pipelines
have been updated to verify the content of the JAR files.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/04bd9a2f2b2e74227f83afb48dd1c73cb0f4d2c2">04bd9a2f</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-06T19:32:29-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Replace WITHOUT_TEST with RUN_TESTS
The WITHOUT_TEST variable in build.sh has been replaced with
RUN_TESTS for clarity.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c60babb42b6b0250e5039a089b0c82ac4f539d55">c60babb4</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-07T11:26:52-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up CMake files
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a002a735392c217ceca53e3beda85a28d556dac6">a002a735</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-07T15:36:36-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move default pki_instance_name into default.cfg
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/7c7fdd0be50314de54c8ae0b46e4d6ca6f90bd76">7c7fdd0b</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-10T08:50:13-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Build RPM with Maven
The RPM spec file has been modified to build Java binaries and
run unit tests with Maven, then build PKI console, Javadoc, and
native binaries with CMake. In the future it might be possible
to build everything with Maven.
The build.sh has been modified to provide an option to skip
building Java binaries. The CMake scripts have been modified to
provide separate build targets for Java binaries, PKI console,
Javadoc, and native binaries. The javac(), jar(), javadoc(),
link(), and add_junit_test() macros have been modified to no
longer be included in the default build target to provide more
controls over the build process.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c2eebd8357b336f7598be1406c5124a895a114cd">c2eebd83</a></strong>
<div>
<span> by Chris Kelley </span> <i> at 2023-07-10T15:37:42+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add get_current_version to Packit jobs
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/69caf95e43442ed2ec79ee3b9663e072b3c5764b">69caf95e</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-10T09:57:45-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move default pki_http_port and pki_https_port into default.cfg
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6067d5b0eceff4cfd88c85060e43a98dfcec5355">6067d5b0</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-10T19:47:10-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Relocate console resources
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ec21f96f3dee519f5d42650d6f7b2a4b3a3ad4c6">ec21f96f</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-10T19:47:10-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up Azure pipelines
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/2b87359f9fd89fe0bd2326ccde900cd330e78ea2">2b87359f</a></strong>
<div>
<span> by Chris Kelley </span> <i> at 2023-07-11T15:43:17+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Simplify Packit copr_build config
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/28fa604ba8f6b67dba9d7267f595e1652f6f2cab">28fa604b</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-11T10:13:09-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Build PKI console with Maven
A new Maven module has been added for PKI console. The build
scripts have been modified to build PKI console with Maven.
The pki-console-theme.jar will continue to be built with CMake.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6b318a9ca75869a9e9b7e9aa676dd10bd79615b3">6b318a9c</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-11T21:06:55-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove non-customizable pki_subsystem_profiles_path param
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6a1df9f1248bfc322b3b2277440a43668282ff0e">6a1df9f1</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-11T21:07:39-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove non-customizable pki_subsystem_emails_path param
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/5f9641cb475838e1569ed03309a809808fab9595">5f9641cb</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-11T21:07:39-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove non-customizable pki_source_subsystemcert_profile param
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/51375925c6a3182f9d295f43d04e4e1573033ea1">51375925</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-11T21:07:39-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove non-customizable pki_source_servercert_profile param
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/84977d00cd8a726424bcee68f37a93f498f179ab">84977d00</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-11T21:07:39-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove non-customizable pki_source_caocspcert_profile param
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/86dd0ddc8c40cd62123b8cc4fe99b4bed6aa0c2d">86dd0ddc</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-11T21:07:39-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove non-customizable pki_source_cacert_profile param
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b603f6085a3ac5ed7447f27dbcce18e7ece12306">b603f608</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-11T21:07:39-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove non-customizable pki_source_caauditsigningcert_profile param
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/3131003f19c66c3a3f79afb8fe58c604e9897aaf">3131003f</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-11T21:07:39-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove non-customizable pki_source_admincert_profile param
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/52c54166ea1868728283b3e5f1238e9a49fd8637">52c54166</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-11T21:07:39-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove non-customizable pki_source_proxy_conf param
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b2005cc79efeb3f678d6f138ced2864950bfb41b">b2005cc7</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-11T21:07:39-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove non-customizable pki_source_profiles param
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/8fd8268221a9ff300209ad655d6a4adf62e2b206">8fd82682</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-11T21:07:39-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove non-customizable pki_source_flatfile_txt param
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/400850a50161967c601795bdf7116b8b9cb4c8e5">400850a5</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-11T21:07:39-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove non-customizable pki_source_emails param
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/3c3f7902b7f45663d6890d31df65907431911ca0">3c3f7902</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-11T21:07:39-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add index param for ServerConfig.add_connector()
The ServerConfig.add_connector() has been updated to take an
optional param which specifies the index of the new connector.
If not specified, the new connector will be added after the
last connector.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/5afb3c09203179fe688a6562b82f1bad45a57cd8">5afb3c09</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-12T10:34:42-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix NPE in UsrGrpAdminServlet
In commit 11d268faa93dd3604292fa46e6895c4d6f197af9 the
UsrGrpAdminServlet's constructor was modified to get the CMSEngine
object from the servletContext before the field was initialized
which triggered a NullPointerException. To fix the problem the code
in the constructor has been moved into init() so that it will run
after the servletContext initialization.
https://issues.redhat.com/browse/RHEL-626
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/22d7001294eacaf870f345c9a20400622f87e0de">22d70012</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-13T17:04:16-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove non-configurable pki_subsystem_registry_link param
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/3c46c7933b3c90479c13105fe74f0eebca03b4a4">3c46c793</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-13T17:05:30-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove non-configurable pki_subsystem_logs_link param
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c85d21a1c281fc054603bc1b8dccff39b8458d22">c85d21a1</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-13T17:07:56-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove non-configurable pki_subsystem_conf_link param
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/4117c002f4be47c91101c2c8025636abc4da07d0">4117c002</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-13T17:12:23-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove non-configurable pki_subsystem_database_link param
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f51abf9f51c20901e6a395c3261156030bf238b6">f51abf9f</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-13T17:20:02-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove non-configurable pki_subsystem_configuration_path param
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/0efe4d168d5a3708ee7a4dae46dc2c687551f149">0efe4d16</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-13T17:24:45-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove non-configurable pki_subsystem_log_path param
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/cbed291a714579b99ad42bf32cbdb7fe0d573167">cbed291a</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-13T17:35:19-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove non-configurable pki_subsystem_path param
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/0f01dd29f88fcac22f0371f7a11edf3a2071079c">0f01dd29</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-13T17:38:48-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove unused pki_source_registry param
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/03f923f4c403d88c4728c50dfbd6ff8dd79f5848">03f923f4</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-13T17:43:28-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove non-configurable pki_source_cs_cfg param
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/2e3350330bbc74b685282b9a3adb716bba264b4e">2e335033</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-13T17:44:55-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove unused pki_tomcat_common_webapps_path param
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e448cfb912783ef9c7b3427b694f7765f710f23a">e448cfb9</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-13T17:45:40-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove unused pki_tomcat_webapps_path params
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/3ab23a6be2d98a1c3eb2b459cfdf85fc2d43ae31">3ab23a6b</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-13T17:48:29-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove non-configurable pki_source_tomcat_conf param
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/4d6db9db743cdbb98e79b6ccc3cf8d2bed133e81">4d6db9db</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-13T17:49:25-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove unused pki_source_context_xml param
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/897a81a46d66cb9b2ec7413ee0db659eb406d666">897a81a4</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-13T17:53:41-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove non-configurable pki_source_server_path param
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c54635b94f5224beb626ed73b0d841de3074fbcf">c54635b9</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-13T17:55:18-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove unused pki_source_setup_path param
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/3b86c6c9de62518565c566f90772cfbe8661809d">3b86c6c9</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-13T18:02:12-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove non-configurable pki_source_conf_path param
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/19592e22549f66527d3e64986faf7e94089793f4">19592e22</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-13T18:11:04-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove non-configurable pki_configuration_path param
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/1ad34c8fcf3ed0a715f6474a2faf21ee482eb034">1ad34c8f</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-13T18:11:45-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove non-configurable pki_log_path param
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/003f92dbfe597783b53d6c0532badfb039e9d270">003f92db</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-13T18:13:55-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove non-configurable pki_path param
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/3a611ff26cbd13d0a4eb93fb3e34ad3338694a8e">3a611ff2</a></strong>
<div>
<span> by Rob Crittenden </span> <i> at 2023-07-14T15:56:33+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Create temporary files to be shared between uses in /tmp
Some commands need to be executed as the pki user and not
root to retain filesystem permissions. There are a few
places where passwords are written to files as root to be
passed into commands executed by pkiuser.
If a private temporary directory is set before pkispawn
is called then this method for sharing passwords between
users will not work because the file will be unreadable.
So force these calls to use /tmp directly instead of the
private temporary directory.
Fixes: https://github.com/dogtagpki/pki/issues/4475
Signed-off-by: Rob Crittenden <rcritten@redhat.com>
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/70a4265fc27cff8ce48fe02fd74c0cedddb3fb96">70a4265f</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-14T11:41:50-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update fapolicy rules
Previously the fapolicy rules only granted the permissions
to a subfolder in Tomcat work directory corresponding to the
default engine and host defined in server.xml, so if the
admin changes the engine or the host the fapolicy rules will
need to be changed as well.
To reduce maintenance, the fapolicy rules have been updated
to grant the permissions to the entire Tomcat work directory
such that the engine or the host can be changed without
having to change the fapolicy rules.
Updating fapolicy rules has to be done during RPM upgrade
since it requires root permissions. The regular PKI server
upgrade scripts run as pkiuser so it can't be used here.
The template for the fapolicy rules has been moved into a
file such that it can be used both during installation and
upgrade.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/318c5c32732d86e53a2534bb02791ba3fdc16b9f">318c5c32</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-14T16:41:18-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove redundant creation of work subfolders
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f94fd53c9ea2024b843e60ca24165066d0c1d17c">f94fd53c</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-14T18:44:44-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove non-configurable pki_cgroup_cpu_systemd_service param
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/7ea1c2438cfabc01d12e9622480f55cdd340e78f">7ea1c243</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-14T21:28:40-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove non-configurable pki_cgroup_cpu_systemd_service_path param
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/8807628783bd7d34b4bde252ed5a9cd88b49f4a6">88076287</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-14T21:28:47-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove non-configurable pki_cgroup_systemd_service param
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6a019ac526267184a7550cc6be80e0cfeb9c30e2">6a019ac5</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-14T21:28:47-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove non-configurable pki_cgroup_systemd_service_path param
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/717e672f0b4fd6652e998d436bce98f317693c65">717e672f</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-14T21:28:47-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove non-configurable pki_systemd_service_link param
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e80b58948369ceeb3f4db6c961717ebcdb9c6c55">e80b5894</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-14T21:28:47-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove non-configurable pki_systemd_target_wants param
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d267b1da95131842924db4cf51d9b872c7827d59">d267b1da</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-14T21:28:47-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove unused pki_systemd_target param
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ca63fc4ee6af7d6a97c232f42ab9f250a2f43a53">ca63fc4e</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-14T21:29:13-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove non-configurable pki_systemd_service param
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f6be32b16950f16adc1cbe21952940866ba9a88f">f6be32b1</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-14T21:29:14-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove non-configurable pki_subsystem_registry_path param
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6d8519f9d74b7cc44d72f555c132aa5b53b46c77">6d8519f9</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-14T21:29:14-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove non-configurable pki_instance_registry_path param
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/810064a72fb5fbacdf300b91bc5921f2b3b2eb6a">810064a7</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-14T21:29:14-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove unused pki_registry_path param
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/aca460d7e8322ad5c621fa67bfacf51b5f780b06">aca460d7</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-14T21:29:14-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove non-configurable pki_instance_log_path param
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f10a99ec9f9a4a0fab9111997441b89ad9bb14bf">f10a99ec</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-14T21:29:14-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove non-configurable pki_source_subsystem_path param
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/dbaa523f304a56be10bf099e449ca63fef3776e5">dbaa523f</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-17T11:57:35-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add PKIDeployer.create_selinux_contexts()
The code that creates SELinux contexts in selinux_setup.py
has been moved into PKIDeployer.create_selinux_contexts().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/000fc755a3ae9607054ea7d357cf6dd0ee365d70">000fc755</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-17T11:57:35-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add PKIDeployer.remove_selinux_contexts()
The code that removes SELinux contexts in selinux_setup.py
has been moved into PKIDeployer.remove_selinux_contexts().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/3953c9a2f09bb548d778763717b891c3eddce95b">3953c9a2</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-17T17:02:22-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add PKIServer.add_subsystem()
The PKIServer.add_subsystem() has been added to add a subsystem
object into an instance object.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f3ee5245443eae7d165744c7fa8322a5d298a6e5">f3ee5245</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-17T18:14:06-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add PKIServer.remove_subsystem()
The PKIServer.remove_subsystem() has been added to remove a
subsystem object from an instance object.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/eebce746cda3560abd0881b8fe6d67a22274d4de">eebce746</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-17T18:14:06-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove PKIDeployer.pki_instance_subsystems()
The PKIDeployer.pki_instance_subsystems() has been replaced
with PKIServer.get_subsystems().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/21587064f07c3d08f41da6e5a7aa357e90438637">21587064</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-17T20:25:37-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove PKIDeployer.tomcat_instance_subsystems()
The PKIDeployer.tomcat_instance_subsystems() has been replaced
with PKIServer.get_subsystems().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d8f067a1a27264626d929a5238b22e356a256e9a">d8f067a1</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-18T09:37:34-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Hard-code version number in pom.xml
Some build systems require hard-coding the version number in
pom.xml, so the revision property has been replaced with the
actual version number. Updating the version number can be
done with the following commands:
$ mvn versions:set -DnewVersion=<version>
$ mvn versions:commit
The .gitignore has been updated to ignore the backup files
created by this command.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/91b928c2af51d3744f1a2220e69d77cfd96021aa">91b928c2</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-18T10:22:05-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update pkidestroy to use PKIServerFactory
The code that creates the PKIInstance object in pkidestroy has
been modified to use PKIServerFactory instead.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/fc19765268eaa0da139fce27282a55a8bc204efc">fc197652</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-18T10:22:06-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update pkispawn to use PKIServerFactory
The code that creates the PKIInstance object in pkispawn has
been modified to use PKIServerFactory instead.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/5da3c59ad1bb71dd096e12f7667680afc38f79c9">5da3c59a</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-18T11:53:25-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Merge IPasswdUserDBAuthentication into PasswdUserDBAuthentication
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/372fd6effb91b958c8a525eeac369d783d56d78b">372fd6ef</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-18T12:39:18-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update minConns for PasswdUserDBAuthentication
The PasswdUserDBAuthentication has been updated such that it
creates a DS connection only if needed. The LdapAnonConnFactory
has been updated to allow no minimum connections.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/eb581e13b95bb9e803051e5d8741853ca3929b37">eb581e13</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-18T12:45:30-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Replace pki_instance_path param with PKIServer.base_dir
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/13d662c3ff86bbcb3354972e6ed84f6ab0668328">13d662c3</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-18T12:46:58-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove unused IAuthInfo
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/86d6c7554f8dd95dec5c26faaae2e9283347fe69">86d6c755</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-18T15:43:45-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Replace pki_server_database_path with PKIServer.nssdb_dir
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d9a29dfd681f9e8e41e1644313a3f3c890ae7c15">d9a29dfd</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-18T18:35:31-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Replace pki_instance_configuration_path with PKIServer.conf_dir
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/3659baf3028d5d56a34d259d746dad945516550d">3659baf3</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-18T20:52:33-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Merge webapp_deployment.py into subsystem_layout.py
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/693aa62b9ba858d8b95448c149606fed80b38993">693aa62b</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-18T21:04:47-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove redundant code in subsystem_layout.py
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e31e3b9b340fc01216838d42860574b0f61842be">e31e3b9b</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-18T22:44:51-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up keygen.py
The code that generates system cert requests have been moved
into PKIDeployer.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/af39a9191c790034949d491832f1fbb40d5a6ef1">af39a919</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2023-07-19T11:27:42-07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Adding useful OCSP debug messages
This patch fixed and added some useful information in the OCSP area. During investigation setup procedure for ticket RHCS-4264, some debug messages can be confusing. In addition, more information should be shared for administrators to understand why things are not working as expected.
It is also useful for RHCS-4261
for RHCS-4264 and RHCS-4261
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/49455c3f5df6f137e561ea003e8df8600b53b477">49455c3f</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-19T13:51:47-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Refactor set_signing_algs_for_pss()
The code that updates RSA-PSS algorithms has been simplified
and moved into PKIDeployer.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/49beb451935c2ffad90e239d3d997b74d4bb854e">49beb451</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-19T14:36:50-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up log messages in LDAPDatabase
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/41529eeabb7b8c26381de1d987bb4a2ed4a09e6c">41529eea</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-19T14:36:50-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up log messages in KRARemoteRequestHandler
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/2a407d094c9bf8025e7a48822f75f65fd21c6475">2a407d09</a></strong>
<div>
<span> by Chris Kelley </span> <i> at 2023-07-20T06:35:33+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add Implementation-Version to Manifests via pom.xml
The /getStatus endpoints in the web UI were returning a null
version since the build was switched to Maven.
It is probably now possible to remove the individual manifest files
but I have left them as they are for now so we can still build with
cmake if we wish.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/521863c29931676c77cb0067722d9ca22ddc220a">521863c2</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-20T10:11:50-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add pki_http_enable param
A new pki_http_enable parameter has been added for pkispawn
to enable/disable the plain HTTP connector in server.xml.
Currently the plain HTTP connector is enabled by default,
but in the future it might be disabled by default such that
the server will only use the secure HTTP connector.
The security domain CLIs have been modified such that they
work without the plain HTTP connector.
The TPS test with separate instances has been modified to
verify that the system works without plain HTTP connectors.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c0ae6da3440f25829ae8adf9827ec16010b63339">c0ae6da3</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-20T10:45:38-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add PKIDeployer.init_client_nssdb()
The code that initializes the client NSS database has been
moved into PKIDeployer.init_client_nssdb().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/006fe051154f60cba11ce85f599375595daf1f26">006fe051</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-20T10:47:10-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add PKIDeployer.init_system_cert_params()
The code that initializes the system cert params has been moved
into PKIDeployer.init_system_cert_params().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/9ba83f0d19a6733e4fbfab422a7a6b127bff0201">9ba83f0d</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-20T13:40:09-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add PKIDeployer.init_server_nssdb()
The code that initializes the server NSS database has been
moved into PKIDeployer.init_server_nssdb().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d5a8cda95e0f466ef37a771236099f8165b7e3dc">d5a8cda9</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-20T14:38:53-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add PKIDeployer.init_subsystem()
The code that initializes the subsystem has been moved into
PKIDeployer.init_subsystem().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/71ccdc3701c9aeca7787649ab41d8b52647214b3">71ccdc37</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-20T16:02:55-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Rename KRAConnectorServlet to CAConnectorServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/9d3739e252fd8d55a9bb1615151521b1504864d5">9d3739e2</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-20T16:02:55-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add KRAGetConfigEntries
The KRAGetConfigEntries has been added to provide a separate class
for each servlet in web.xml.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/0e38c984b2a267717cb79b8cab847977d02e8c8d">0e38c984</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-20T16:02:55-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add KRAPortsServlet
The KRAPortsServlet has been added to provide a separate class
for each servlet in web.xml.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/9dfa145931145e90e6b8bb9da40ef77b69b26f1b">9dfa1459</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-20T16:02:55-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add KRARegisterUser
The KRARegisterUser has been added to provide a separate class
for each servlet in web.xml.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b9bf2ddec66d26f1cfbc1b81c2260128445ea5a6">b9bf2dde</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-20T16:02:55-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add KRADynamicVariables
The KRADynamicVariables has been added to provide a separate class
for each servlet in web.xml.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/bf7146ea0423224dfd64024582eb5f722a3a151b">bf7146ea</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-20T16:02:55-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add KRAConnectorServlet
The KRAConnectorServlet has been added to provide a separate class
for each servlet in web.xml.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/cd0bb5e987572bd8c3a6bbbc2096253c50b30fb1">cd0bb5e9</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-20T16:02:55-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add KRAAuthAdminServlet
The KRAAuthAdminServlet has been added to provide a separate class
for each servlet in web.xml.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a9ab3c1d68bbb76000e529b5c7ee25fcea7eae04">a9ab3c1d</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-20T16:02:55-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add KRAACLAdminServlet
The KRAACLAdminServlet has been added to provide a separate class
for each servlet in web.xml.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a6e77afd5803e3989d01cf650c05971ba9a1623d">a6e77afd</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-20T16:02:55-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add KRAUsrGrpAdminServlet
The KRAUsrGrpAdminServlet has been added to provide a separate
class for each servlet in web.xml.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b12c1f36c376ffaad9cd9ff5a1b27cd74410bbfb">b12c1f36</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-21T09:42:34-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update DisplayBySerialForRecovery to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/7584d62b1d7662bbe5f0410fd8e04344268702e9">7584d62b</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-21T09:42:34-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update KRAGetConfigEntries to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b67c2c9321156da206a66d46a1cafa4495f2913f">b67c2c93</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-21T09:42:34-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update KRAPortsServlet to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/8811053483d648e6398ecbca2a4e1894d6241058">88110534</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-21T09:42:34-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update KRARegisterUser to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/5a0764779a533c2019a6df687f4b2fa339426c85">5a076477</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-21T09:42:34-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update KRADynamicVariables to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/721a39b39639a09355976d6b0dc1b1718db290f4">721a39b3</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-21T09:42:34-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update KRAConnectorServlet to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ea7edfd54738104b5358c364f84144e902a0a220">ea7edfd5</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-21T09:42:34-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update GetPk12 to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/380b2908312803fc30e7e86086f47e6e1ec361da">380b2908</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-21T09:42:34-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update GetAsyncPk12 to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/cf1ea8234dd37054e6fe8881c422c1bb5a3473ae">cf1ea823</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-21T09:42:34-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update KeyQueryReq to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/1f3cbf76cfb5ea7e89fcc5807d49afca7227e80e">1f3cbf76</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-21T09:42:34-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update KRAPolicyAdminServlet to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b11325d98aefaf6721fdf19ddea7327caf7f2a75">b11325d9</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-21T09:42:34-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update KRAAuthAdminServlet to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/14dcbbbd2d7912b0cd836c8abe21170c308f4c05">14dcbbbd</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-21T09:42:34-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update KRAACLAdminServlet to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/8df1c5cf2974c289c1611ebd66e916b237166f79">8df1c5cf</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-21T09:42:34-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update KRAUsrGrpAdminServlet to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/0aab23e758e928a03bba397f597539ffdfa4cb76">0aab23e7</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-21T09:42:34-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update KRACMSAdminServlet to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/86613f190ebb7a218b8bf5a8f4dbf3e52688ec92">86613f19</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-21T09:42:34-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update KRAAdminServlet to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/178fd4507d2910f409d1aa287ed45c57d84fda51">178fd450</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-21T11:14:09-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add KRALogAdminServlet
The KRALogAdminServlet has been added to provide a separate
class for each servlet in web.xml.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/2677883dedceb8ce0f21fe282ab76592b9eb7783">2677883d</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-21T12:41:38-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add KRAMainPageServlet
The KRAMainPageServlet has been added to provide a separate
class for each servlet in web.xml.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/da958a3edd0801fce23542c5a402f753e166abc8">da958a3e</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-21T12:49:30-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add KRADownloadPKCS12
The KRADownloadPKCS12 has been added to provide a separate
class for each servlet in web.xml.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c21953d5321e87b42c99d5aa204e2a6017976321">c21953d5</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-21T12:52:58-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add KRAGetStatus
The KRAGetStatus has been added to provide a separate
class for each servlet in web.xml.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/9c12e59a15d3899800133ad482c0912f8dc60568">9c12e59a</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-21T13:00:24-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add KRAUpdateDomainXML
The KRAUpdateDomainXML has been added to provide a separate
class for each servlet in web.xml.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/88c2008bdb02c70b255536a80c79beff96598253">88c2008b</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-21T13:00:24-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add KRAAdminUpdateDomainXML
The KRAAdminUpdateDomainXML has been added to provide a separate
class for each servlet in web.xml.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/3e987bc00277f744edd10287eeb544f8febd4d3d">3e987bc0</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-21T17:34:57-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update PKI_VERSION in tomcat.conf
The PKI_VERSION in tomcat.conf has been modified to use quotes
like other properties in the file so they all can be processed
more consistently.
The PropertyFile and PKIUpgradeTracker classes have been
modified to support optional quotes.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/10acba46e927f6f2a4019e0746946dbc323ff51e">10acba46</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-24T09:18:25-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update KRALogAdminServlet to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/27a14b08ef8e40fedb72f33217fd3ebde2112b18">27a14b08</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-24T09:18:25-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update SrchKey to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/344498961e3e7590faa5cebe4371b6f88207f964">34449896</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-24T09:18:25-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update SrchKeyForRecovery to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/607c133eda997a160cb1d589ee48cba853cb1aee">607c133e</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-24T09:18:25-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update DisplayBySerial to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/132a2290e0fc960d95872939f1d58d8d780418a7">132a2290</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-24T09:18:25-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update KRAMainPageServlet to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b3ce20a0e4722fe479cb858225c954508d7b378b">b3ce20a0</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-24T09:18:25-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update KRAUpdateNumberRange to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/fb51fdd1c8dbbf12ad21ca89b85a371f40cddc18">fb51fdd1</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-24T09:18:25-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update KRADownloadPKCS12 to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/2111a8c9ab58359d4ed9450e469a450f5deee475">2111a8c9</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-24T09:18:25-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update KRAGetStatus to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ca35c41e8b20a0e94b46cbcaa6d31601dac93f92">ca35c41e</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-24T09:18:25-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update KRAUpdateDomainXML to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/8fe8c279d44ee99de2ad41c8e182ccd7344d665e">8fe8c279</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-24T09:18:25-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update KRAAdminUpdateDomainXML to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b69ed5403921941282e18bbb4210148d5438f20b">b69ed540</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-24T10:44:19-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Rename ListRequests to CAListRequests
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/01c27e169a0fdc72d672e133ab606c2f901e1851">01c27e16</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-24T10:55:25-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add KRAHeaderServlet
The KRAHeaderServlet has been added to provide a separate
class for each servlet in web.xml.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b9f06cca1ede85fa5404c88625a441581372d481">b9f06cca</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-24T10:55:50-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add KRAIndexServlet
The KRAIndexServlet has been added to provide a separate
class for each servlet in web.xml.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f1621e1d6d44318e1e9f36d5b72ed421d745b281">f1621e1d</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-24T10:56:03-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add KRASearchKeyForRecovery
The KRASearchKeyForRecovery has been added to provide a separate
class for each servlet in web.xml.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/2d9b33b0dbb985bc5345ec3fe679f7268be38d47">2d9b33b0</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-24T10:56:24-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add KRASearchKey
The KRASearchKey has been added to provide a separate
class for each servlet in web.xml.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a67ed2e7d61a1306efc1a230329f6a2b1329ea72">a67ed2e7</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-24T10:57:01-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add KRAListRequests
The KRAListRequests has been added to provide a separate
class for each servlet in web.xml.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/52016991af5c076a2c768f974ed13b22b4a88270">52016991</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-24T10:57:17-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add KRAGrantRecovery
The KRAGrantRecovery has been added to provide a separate
class for each servlet in web.xml.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d53eb51564b0d2997241eb555dfb70ffe59187f7">d53eb515</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-24T10:57:31-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add KRAJobsAdminServlet
The KRAJobsAdminServlet has been added to provide a separate
class for each servlet in web.xml.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/767e2fdf7e4243c74388c06f15615129277c194a">767e2fdf</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-24T10:57:43-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add KRAGetCookie
The KRAGetCookie has been added to provide a separate
class for each servlet in web.xml.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/fbf99e3be62c2e1b9a28d5746c84988c01492d54">fbf99e3b</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-24T10:57:54-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add KRATokenAuthenticate
The KRATokenAuthenticate has been added to provide a separate
class for each servlet in web.xml.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/0e7dcda386326afbf1790e75ce42d7b00b5460b9">0e7dcda3</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-24T10:58:06-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add KRATokenAuthenticateAdmin
The KRATokenAuthenticateAdmin has been added to provide a separate
class for each servlet in web.xml.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ac3bf722e7e3e732dbd62a14ad2568af8e7a6e71">ac3bf722</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-24T14:31:48-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update KRAHeaderServlet to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/dfff35d13bba847074c248996245dbbe6447daa1">dfff35d1</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-24T14:31:48-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update KRASearchKeyForRecovery to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/37bb447c4cd40cb3808639b9f8971e9646917b65">37bb447c</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-24T14:31:48-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update KRASearchKey to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/49fae307bc41e88b1293e72fcc000cc714d6f91b">49fae307</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-24T14:31:48-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update KRAListRequests to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/49ae2ccc856ef0e98097f31e14af715c9ab882ba">49ae2ccc</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-24T14:31:48-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update KRAIndexServlet to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e8756b0d243aaaf0ec329b15761e04c942fa723c">e8756b0d</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-24T14:31:48-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update KRAGrantRecovery to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/653b920f078600567e38087ef6fd88efc4595202">653b920f</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-24T14:31:48-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update KRAJobsAdminServlet to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/2c57f225975143cfb56c0d2cf964072dcfcb8b64">2c57f225</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-24T14:31:48-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update KRAGetCookie to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c321e7d8ed4789f0ee9250b8e262c987b6070e4c">c321e7d8</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-24T14:31:48-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update KRATokenAuthenticate to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f3e67fa166f9908b3cb87c41c80d7d4136c2d457">f3e67fa1</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-24T14:31:48-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update KRATokenAuthenticateAdmin to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/64bf820f6b091dd67fc9454eb0efc9de93b66280">64bf820f</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-24T14:57:34-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add PKIDeployer.import_ds_ca_cert()
The code that imports DS CA cert has been moved into
PKIDeployer.import_ds_ca_cert().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/0b18e5312895eba060892df4df71615f2fd75851">0b18e531</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-24T15:00:07-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add PKIDeployer.install_cert_chain()
The code that installs the cert chain has been moved into
PKIDeployer.install_cert_chain().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/3fbda3300f1723d0c9240b99addf8516e74c37dd">3fbda330</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-24T16:01:28-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add PKIDeployer.import_clone_pkcs12()
The code that imports PKCS #12 file for cloning has been moved
into PKIDeployer.install_clone_pkcs12().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ea952bd97044ee67abec28289a9de18dbe508160">ea952bd9</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-24T16:01:38-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add PKIDeployer.import_server_pkcs12()
The code that imports PKCS #12 file for installation with existing
certs has been moved into PKIDeployer.import_server_pkcs12().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/fbce9339b2ed87cda0c494344d3cf623f7eb0863">fbce9339</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-24T16:17:20-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Replace FlatFileAuth.getPropertyS() with ConfigStore.getString()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/915cf6ae3925f3097551eb7e866b5d4d115e4c16">915cf6ae</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-24T16:17:20-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Replace FlatFileAuth.getPropertyB() with ConfigStore.getBoolean()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/cc328d1cfd017e5f614b804dfbe933091f7b541b">cc328d1c</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-24T19:58:38-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix CASigningUnit.init() and OCSPSigningUnit.init()
The CASigningUnit.init() and OCSPSigningUnit.init() have
been updated to no longer implicitly add new newNickname
config params during startup. Config changes should only
be done explicitly by the admin.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/5a9056f5833fd9345f9e949ea001ab26bba1bba1">5a9056f5</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-24T22:17:43-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix preop.module.token normalization
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/9d6793e9a5dc4318f3b4faf48723389c9b506180">9d6793e9</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-25T16:53:08-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Drop subsystem.select param
The subsystem.select param in CS.cfg was used to record
whether the subsystem was installed as a new subsystem or
a clone of an existing subsystem, but it does not actually
control any functionality.
Ideally a clone should be indistinguishable from a normal
subsystem, so the param has been removed to minimize the
differences in the CS.cfg.
The pki-server status CLI has been modified to no longer
use the param. An upgrade script has also been added to
remove the param from existing instances.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c3572ac427176dc3d2e99b69763d12f4b49412a9">c3572ac4</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-25T16:53:08-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update CA clone test
The CA clone test has been updated to compare the CS.cfg files
in the primary, secondary, and tertiary subsystems. They should
be mostly identical except for some params that do change when
cloned.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f216487adc723f645a749c33bc05d6a86512ab6b">f216487a</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-25T20:47:41-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up dbs.enableRandomSerialNumbers initialization
The dbs.enableRandomSerialNumbers has been modified to have
a default value of 'false', then change to 'true' if the
pki_random_serial_numbers_enable is set to True.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/7b971c692e3fb57bd92e74e762881eaecdadc484">7b971c69</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-25T20:48:04-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix <subsystem>.<tag>.tokenname normalization
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/003bba7631526bf5ed9c8a623bcbfdd9a4fb7927">003bba76</a></strong>
<div>
<span> by Chris Kelley </span> <i> at 2023-07-26T13:56:28+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>spec: set ExclusiveArch on any OS with java_arches
Fedora builds are not the only ones which no longer build Java for ix86;
Fedora ELN and RHEL 10 are following that as well. This will avoid
builds landing on Java-less architecture builders and thereby failing.
Original patch by Yaakov Selkowitz <yselkowi@redhat.com>
https://github.com/dogtagpki/ldap-sdk/pull/53
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/eb0aa891de02d10274bf21e0ff2cb81717944e72">eb0aa891</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-26T12:35:04-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix missing CSR files in CMC tests
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d95b99f10201237cd643af1d85e206ea775bf36e">d95b99f1</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-26T12:35:04-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up log messages in PKIDeployer
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/8f896afd964fce640bc169ae88c5a7bba218661a">8f896afd</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-26T18:19:06-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Relocate system certs validation
Previously the system certs validation was only executed
in certain installation scenarios. The validation has been
moved such that it will be executed in all installation
scenarios.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/4b39aa99a4cae18663be28494042a456c8ab4a97">4b39aa99</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-26T18:22:11-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove PKIDeployer.validate_system_cert()
The PKIDeployer.validate_system_cert() has been replaced with
direct calls to PKISubsystem.validate_system_cert().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d937dc10745698162f0f3fdf0e43bdb06f6dc8dc">d937dc10</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-26T20:37:30-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Merge PKIDeployer.configure_system_cert() into update_system_cert()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b093635c8a5028d3344e82bf638dd32b75942975">b093635c</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-27T10:04:23-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up CLI log messages
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/cb798fce97996192312c782bb0f94545b0b11a5c">cb798fce</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-07-28T08:47:17-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add support for cloning with CSR files
Previously during cloning pkispawn would retrieve database params
and system cert params (i.e. <subsystem>.<tag>.*) from the master.
However, the clone actually already has most of these params (from
pkispawn config file and PKCS #12 file) except for the CSRs (i.e.
<subsystem>.<tag>.certreq).
The code in PKIDeployer.setup_database() that retrieves the params
from the master has been modified to retrieve only the database
params and the CSRs (unless the clone already has the them). In
the future it might be possible to not retrieve anything from the
master at all.
The configuration.py has been modified such that the code that
imports the certs and CSRs from files (if provided) will run in
all cases including cloning instead of just in specific cases.
The installation doc has been updated to show the optional steps
for installing CA clone with CSR files.
The test for CA clone has been updated to create the secondary
subsystem without CSR files like before, then create the
tertiary subsystem with CSR files.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/01cbe5dd00c35f08f863ec85499a4de637f126cf">01cbe5dd</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2023-08-01T17:12:35+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Enable healthcheck for IPA clone
The healthchecks were disabled for the issue https://pagure.io/freeipa/issue/9099.
This has been fixed in https://github.com/dogtagpki/pki/pull/3901
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/9e15dade0e47b541297b210836a27512f7bc4566">9e15dade</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-08-01T10:20:08-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up tests for CA with ECC and RSA/PSS
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/09c3c0b9ba64108a747db998b6cd833b6a467195">09c3c0b9</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-08-01T12:46:40-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update test for CA clone with HSM
The test for CA clone with HSM has been updated to compare the
CS.cfg in the primary, secondary, and tertiary instances. The
test will create the secondary subsystem without CSR files like
before, then create the tertiary subsystem with CSR files.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/12d3d64ee1f7931aefbace6ba2fab824b4f05f19">12d3d64e</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-08-01T16:55:03-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add test for CA with RSA algorithm
A new test has been added to install CA with a non-default RSA
algorithm verify that the system certs and admin cert use the
same algorithm. The test will also issue an SSL server cert
and verify that the cert uses the same algorithm.
The tests for CA with ECC and RSA/PSS algorithms have also
been updated to perform the same validation.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6222811256c585970caed9caf2e36757e0de0958">62228112</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-08-01T23:12:19-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add PKIDeployer.import_master_config()
The code in PKIDeployer.setup_database() that imports the config
params from master has been moved into import_master_config().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/16a231feddb6c719d5cd2eb4a5e02053e0ce5d1c">16a231fe</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-08-01T23:13:36-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up PKIDeployer.import_master_config()
The code in PKIDeployer.import_master_config() that checks the
pki_clone param has been moved out of the method.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a972f5249c2940feec3759d88d3c88a1483b8627">a972f524</a></strong>
<div>
<span> by Chris Kelley </span> <i> at 2023-08-02T07:34:57+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Replace deprecated ssl.PROTOCOL_TLS in pki/client.py
Resolves #4512
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/8a8f1538fa476192874dc0186a1619aaa3758ad8">8a8f1538</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-08-02T13:44:22-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update tests for CA with non-default algorithms
The tests for CA with non-default algorithms (i.e. RSA, RSA/PSS,
ECC) have been modified to check the default signing algorithm
params in CS.cfg.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c6978c0595d2f82e62d3e2c77b379ad147eaaf4e">c6978c05</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2023-08-03T10:27:43+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Health check verify all clones
`pki-healthcheck` stop its activity in case a clone is not working and
report the error. If multiple clones are configured the check should go
ahead to verify the other clones.
With this fix all clones are verified during the health check.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/79e13b50ff5ce4ef3583aabc0565cd4b51d2c50e">79e13b50</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-08-03T14:01:18-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add PKIDeployer.request_ranges()
The code that requests serial number ranges from the cloning
master in PKIDeployer.import_master_config() has been moved
to request_ranges().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/dbab6aca454aa504e8eba3e32d605e9344208c60">dbab6aca</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-08-03T19:25:46-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Refactor PKIDeployer.import_master_config()
The PKIDeployer.import_master_config() has been modified such
that it will be executed during cloning, but it will only
retrieve and validate database config params from the master
if they are needed to set up DS replication.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/68bcb5eb848a9b4d9d459f8dfc1c75b58d22ee09">68bcb5eb</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-08-04T09:39:38-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add test for cert enrollment with caDirUserCert profile
A new test has been added to validate cert enrollment
with caDirUserCert profile using XML and JSON.
https://github.com/dogtagpki/pki/wiki/Certificate-Enrollment-with-Directory-Authenticated-Profile
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/3d9fc76f3671f4835860938bbb4d28ccff688396">3d9fc76f</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-08-04T13:12:40-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Drop Tomcat JSS dependency
Tomcat JSS 8.5 has been merged into JSS 5.5 so all references
to Tomcat JSS have been updated accordingly. An upgrade script
has been added to update existing instances.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/198ca5d95aac44244d45d2533152f1b2b651a325">198ca5d9</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-08-04T16:35:30-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add test for CA clone with shared DS
A new test has been added to install multiple CA instances
sharing the same DS instance. This configuration can be used
to create CA replicas connected to a single load balancer
which will to distribute the load to multiple DS replicas.
A new GH workflow has been added for CA clone tests since
a workflow can only call up to 20 reusable workflows:
https://docs.github.com/en/actions/using-workflows/reusing-workflows
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/22a1b3dbbbf4003d50476a1bbf0629a5beae4405">22a1b3db</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2023-08-07T11:08:00-07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Bug2228209-pkidbuser-wrong-o-in-pkispawn
Ths patch addresses the issue where by default non-CA instances are
created with hardcoded ending "-CA":
pki_share_dbuser_dn=uid=pkidbuser,ou=people,o=%(pki_instance_name)s-CA
and
pki_ds_base_dn=o=%(pki_instance_name)s-<subsystem type>
where subsystem type is TKS, OCSP, TKS, or KRA,
which effictive makes the 'o' component of pki_share_dbuser_dn
not matching with that of the pki_ds_base_dn.
fixes https://bugzilla.redhat.com/show_bug.cgi?id=2228209
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a69b35d82c30e443fddf2b4eb15420b6ebcf74ee">a69b35d8</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-08-07T21:42:16-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update NSSExtensionGenerator.createSANExtension()
The NSSExtensionGenerator.createSANExtension() has been
updated to exclude reserved keywords from the result.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/66cc88f54d559a64e8ced45d97c5453208b825f9">66cc88f5</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-08-08T08:40:41-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix incorrect default signing algorithm
The PKIDeployer.update_system_cert() was incorrectly setting
the default signing algorithm param in CS.cfg for all certs
using the key algorithm param in pkispawn which could cause
a problem if the key algorithm and signing algorithm are not
the same.
The code has been modified to set the param properly using
the signing algorithm param in pkispawn for CA/OCSP/audit
signing certs only. This param is not used by other certs so
it does not need to be set for those certs.
The pki-server ca-config-show CLI has been updated to return
a non-zero code if the param being requested doesn't exist.
The tests have been updated to use different key and signing
algorithms.
https://github.com/dogtagpki/pki/issues/4518
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d8ace16f2890c153c3e8b9e50f4fb9af62df55cf">d8ace16f</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-08-08T17:28:37-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Restore default value for pki_share_db
In commit 22a1b3dbbbf4003d50476a1bbf0629a5beae4405 the default
values for pki_share_db for non-CA subsystems were changed to
False since subsystems on separate instances will not share the
same database user, but apparently it causes a problem during
TPS installation with a shared instance.
To avoid changing the behavior, the default values have been
restored to True. This param can still be overridden in
pkispawn config as needed.
Resolves: https://bugzilla.redhat.com/show_bug.cgi?id=2228209
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6cc9e0eedab1e8f92de6b77ed6a24c21f4380958">6cc9e0ee</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-08-09T19:23:36-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up PKIDeployer.setup_system_cert()
The PKIDeployer.setup_system_cert() has been modified to use
pki_issuing_ca param directly.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/64888002e274a361ced7422f56ddf982657732be">64888002</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-08-09T19:25:35-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up PKIDeployer.setup_admin_cert()
The PKIDeployer.setup_admin_cert() has been modified to use
pki_issuing_ca param directly.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/cd2f1a62204a8ea6c4c9035c3ff5f74aa9f0a90c">cd2f1a62</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-08-09T19:58:08-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up PKIDeployer.finalize_kra()
The PKIDeployer.finalize_kra() has been modified to use
pki_issuing_ca param directly.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b0286f62ed739d87b72d807aa589c4c7a5eebd38">b0286f62</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-08-09T19:58:09-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up PKIDeployer.finalize_ocsp()
The PKIDeployer.finalize_ocsp() has been modified to use
pki_issuing_ca param directly.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/480c835ad04cffc827ef976314773981008c92b6">480c835a</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-08-09T20:08:42-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove unused preop issuing CA params
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/1c07ef8d5cb2f1aaa80426510b6bff3353a506e3">1c07ef8d</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-08-10T09:10:45-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add test for subordinate CA clone
A new test has been added to test installing a subordinate CA
(using external CA method) then clone it into another instance.
The test will also compare the CS.cfg, the users, and the certs
in these instances to ensure that they are (mostly) identical.
The hierarchy.select param is incorrectly set as Root instead
of Subordinate in the clone. This will be addressed separately
later.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/3723b0c4b622f93ea12c28976e651fa80f67558d">3723b0c4</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-08-10T09:24:51-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add test for CA clone with replicated DS
A new test has been added to test installing CA with DS,
cloning the DS, then cloning the CA using the existing
DS clone.
This process allows DS cloning to happen separately from
CA cloning which could prevent pkispawn from timing out
due to long DS cloning process with large database.
https://github.com/dogtagpki/pki/wiki/Installing-CA-Clone-with-Replicated-DS
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e620ae7db92a0bdbd61280ebec1a55d4f8c7a308">e620ae7d</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-08-10T10:41:20-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Consolidate SystemCertData.token initialization
The code that initializes SystemCertData.token has been
consolidated into PKIDeployer.create_system_cert_info().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/12fbe56b6a9816bd764f00b9d1754b75290d630a">12fbe56b</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-08-10T16:59:36-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update pki pkcs7-export
The pki pkcs7-export has been modified to support redirecting
the output to the standard output and to provide an option to
specify the output format.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/5dbd1a21c24e283f5971ac67c5d053d8752036f2">5dbd1a21</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-08-10T19:51:30-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add NSSDatabase.export_pkcs7()
The NSSDatabase.export_pkcs7() has been added to export a cert
chain from NSS database into PKCS #7 data.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/31fbd14c91026452dd03745f859e3870e3dd469e">31fbd14c</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-08-10T20:21:44-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move CertUtil to org.dogtagpki.util.cert
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/aef96c7e9ca45db3e2621e483137bb0968937bc1">aef96c7e</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-08-10T22:05:56-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Convert IDBObj implementations into DBRecord subclasses
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b36c32e0afe023238cda7af196f07b5c45bcba64">b36c32e0</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-08-11T10:34:22-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add pki nss-cert-find --cert option
The pki nss-cert-find has been updated to provide an option to
search for a cert in NSS database based on an existing cert file.
This can be used to check whether the cert has been imported into
the NSS database and to get the nickname and trust flags assigned
to the cert.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e738cf74543c4343f7e7799172d9497ef36521f3">e738cf74</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-08-11T10:59:17-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add PKIDeployer.retrieve_cert_chain()
The code that retrieves the cert chain from a remote CA has
been consolidated into PKIDeployer.retrieve_cert_chain().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/9c46b74b84d0f818e4c08883da2ba2c521ef1212">9c46b74b</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-08-11T11:46:38-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up cert chain retrieval
The code that retrieves the cert chain for various installation
scenarios has been reorganized which removes the dependency on
hierarcy.select param.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/fad366b64bc8358f961b031c55396faf7412275d">fad366b6</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-08-11T19:34:09-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update PKIDeployer to validate pki_cert_chain_path
PKIDeployer.install_cert_chain() and import_cert_chain() have
been modified to validate that the specified cert chain exists.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/9f648a7d27550ecbbdec816d78330f2bb05b90a1">9f648a7d</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-08-14T09:26:37-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove hierarchy.select param
The hierarchy.select param stores a static information about
the CA hierarchy (root vs. subordinate) which was set during
installation but there is no process to update it in case
the CA is converted from root to subordinate or vice versa.
Also, the param is incorrectly set to root when cloning a
subordinate CA.
Because of these issues the param is unreliable, so it has
been removed from new and existing instances. The pki-server
status CLI has also been updated to no longer show the CA
hierarchy.
If necessary, the CA hierarchy can be determined by checking
the CA signing cert. If it is self-signed that means it is a
root CA.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e61817a7aa2b70917d878ead2d16d8a4d6ef9081">e61817a7</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-08-14T13:39:43-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add test for subordinate CA clone with HSM
A new test has been added to install a subordinate CA with HSM,
clone the HSM, then create a clone of the subordinate CA with
the cloned HSM.
There is a known issue: the OCSP signing cert and subsystem
cert are missing from the internal token on the clone, but it
does not actually cause a problem since the certs do exist on
the HSM.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e29314ec419e673128be63bea23cda2b20da8f66">e29314ec</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-08-14T15:39:30-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix servlet name for GetApprovalStatus
In commit f91fc5c1ba8ff549f54c631db1c0e83ac5f01cb6 the
GetApprovalStatus was updated to use @WebServlet but the
servlet name was not set correctly and conflicted with
GenerateKeyPairServlet which was causing a problem for
TPS token enrollment with server-side key generation, but
for some reason the CI did not fail until recently.
Now the servlet name has been fixed so the problem should
no longer happen.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/098441ce3c94adfb9bf88b8eb5a6973b085a9611">098441ce</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-08-14T19:58:38-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update log messages in TPSProcessor
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f54fc99a66c7d4b6f0cd796f6eace3a5e39f24b8">f54fc99a</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-08-15T08:53:30-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move pki nss-cert-find --cert option to pki nss-cert-show
The pki nss-cert-find --cert option has been moved into pki
nss-cert-show (and renamed to --cert-file) since it can only
find a single cert instead of a collection. If the cert is not
found the command will return a non-zero code, so it will be
easier to use for automation.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/28e945b11dcc14f453fa2906c2c3271082540641">28e945b1</a></strong>
<div>
<span> by Chris Kelley </span> <i> at 2023-08-16T13:02:42+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>For unknown certificates OCSP should have unknown CertStatus
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/40ed6ae9ae82a6b7a5976ac3a7c58d0259d49ef7">40ed6ae9</a></strong>
<div>
<span> by Chris Kelley </span> <i> at 2023-08-16T13:02:42+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>For unknown certificates OCSP should have unknown CertStatus (part 2)
The CA's internal OCSP fails to handle certs issued by an unknown CA.
There is code in the CA's validation to handle that scenario but that
validation is never triggered as the request handling code that wraps it
considers not knowing the origin CA to be an error condition.
The code is changed to allow the validating CA to proceed even if the
origin CA is unknown, reporting Unknown for the CertStatus, while
delegating to the origin CA if it is found.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f846500567ce187f0c1ce32a9f5ff46edf4327a7">f8465005</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2023-08-16T13:02:42+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Internal OCSP CA identification using request hash
In case of multiple CAs the correct one was selected using the first
certificate. This could provide inconsistent. Now the selection is based
on the request issuer name.
Additionally, the output has been made consistent with the external OCSP
for all the possibilities of subject and issuers.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/180037b961c0f734cb6ad31a5916e1a1053a07d1">180037b9</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2023-08-16T13:02:42+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Bug2221818-ocsp-unknownCA-addendum
a couple things:
- respond with Unknown when CA can't find cert in its db
- added safety net Exception to return Unknown
- minor debug message when CA signs an object that's not a cert
fixes https://bugzilla.redhat.com/show_bug.cgi?id=2221818
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a96c950c462f910acb3207ad82e30cd00ae13881">a96c950c</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2023-08-16T13:02:42+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Bug2221818-ocsp-unknownCA-addendum2
minor adjustment for Exception and debug messages.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c39ba6a9b3544f14b103d969c9c0a19135137c30">c39ba6a9</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2023-08-16T13:02:42+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix OCSP verification of requests hashes
OCSP requests have the certificate serial number, the hash of CA DN and
the hash of the CA public key. According to the specification, in order
to recognise a request both hashes have to match but the current implementation
was verifying only the public key hash.
This commit add a check on the other hash of the request.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/21167811dd67c5dbb4e57b294e4236438599c50d">21167811</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2023-08-16T13:02:42+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>FIx OCSP DefStore for unknown CA error
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/0c307dbd6b32d3d8b76ae0d23c8f6aedf2c353a7">0c307dbd</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2023-08-16T13:02:42+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix OCSP ldap responder output with correct logic
The OCSP responder was failing if CA or CRL were not found. This has been
modified so the responder will provide an `unknown` result in these
cases.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/39415a3a9103e7a667f421693fb228f7321f6004">39415a3a</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2023-08-16T13:02:42+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Improve exception handling for OCSP validation
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/4d93c7201f50ca42bf4c713bd1c452035fa07500">4d93c720</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-08-16T13:14:52-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add log messages in FileConfigStorage
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6c45bb0d47c0026bc4ff7531a008d031bdf63e8a">6c45bb0d</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-08-16T20:29:10-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Simplify PKIDeployer.finalize_kra()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/4d7590a236784e32497ccde3cee5c995198a02ac">4d7590a2</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-08-16T20:29:14-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Simplify PKIDeployer.finalize_ocsp()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/fd108d20e28061412af31c38a1b5901aceb24d5d">fd108d20</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-08-16T21:07:38-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove unused preop.clone.pkcs7
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/23739304e6aeeb607378e0173163fd10b8efc906">23739304</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-08-16T21:47:23-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add pki.nssdb.internal_token()
The internal_token() has been added to replace normalize_token()
in boolean expressions since it's more intuitive to use.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/05935e0d7d91f70e1a4a699bc443bc9944a5fb60">05935e0d</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-08-17T00:02:19-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update cert and CSR path validation
The code that imports certs and CSRs in PKIDeployer has been
updated to no longer ignore invalid paths.
https://github.com/freeipa/freeipa/pull/6951
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/59cf404cf9866ea5fa84c7354c5e79840b100ae0">59cf404c</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2023-08-17T19:01:31+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Modify init order for OCSP subsystem
The init order for OCSP is modified to allow CRL retrieval before
creating connection with DS or other services. Secure`connections will be
verified against the CRL.
Solve RHCS-4262
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/9c488a5e3d36234859b923e9884506e2ec6f18c9">9c488a5e</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2023-08-17T19:01:31+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add callback for CRL validation at application level
Add new field in CMS for a callback validation of certificate
instantiated by PKISocketFactory.
This is useful for OCSP where the OCSP protocol cannot be enabled and
the verification is done on CRLs.
Solve RHCS-4262
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/68121d1bdf5b86e0cc2bfd9ed7ee18bfc83ee8cc">68121d1b</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2023-08-17T19:01:31+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Make crl check for connection optional
Add a new parameter to enable the crl check for OCSP connection when
acting as client. The new parameter is
`ocsp.store.ldapStore.checkSubsystemConnection` and its default value is
`false`. When set to `true` connection certificate are verified using
the crl stored in the LDAP.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/7f1e896b95552d20d0294dc44ef2c94e15d17773">7f1e896b</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2023-08-17T19:01:31+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add crl check for OCSP acting as server
When OCSP is acting as server certificate can be verified using CRL
internally stored.
To verify the certificates the `LDAPStore` has to be enabled with the
variable `ocsp.store.ldapStore.checkSubsystemConnection` and the
variable `auths.revocationChecking.enabled` both set to true.
Solve RHCS-4262
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/fb555d886795429202295f655a08ad7201c101c7">fb555d88</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2023-08-17T19:01:31+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move callback reference from CMS to CMSEngine
Socket callback moved to CMSEngine to avoid dependencies on global
variables.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/0177b64021dcba46c3f61ab73e6947f10e881e4d">0177b640</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2023-08-17T19:01:31+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>OCSP default CRL check and CA cert validation
The parameter `ocsp.store.ldapStore.checkSubsystemConnection` default
value has been modified to `true` so when LDAPStore is used certificates
are verified against the CRL.
Additionally, during the certificate verification the certificate signer
is verified with the CA certificate providing the CRL to be sure it is
the real issuer.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/14c0e9ca982d6e192bdf6ac8c8d3e59384c35f16">14c0e9ca</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2023-08-17T19:01:31+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Rename checkSubsystemConnection to validateConnCertWithCRL
The option `ocsp.store.ldapStore.validateConnCertWithCRL` enables the
revocation verification of peer certificates using the CRL stored in the LDAP
shared with the CA.
When it is set to `true` (default value), the peer certificate of all the outcome connections from the OCSP subsystem are verified with the CRL.
If the option `auths.revocationChecking.enabled` is also set to `true` the peer certificate ot all the income connections to the OCSP subsystem are verified with the CRL.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/31e4d5f76792c9b5fd67b9b4e0c0ffdbd396152d">31e4d5f7</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2023-08-17T19:01:31+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Use AKI/SKI to match peer certificate with CA CRL
Identification of CRL issuing point done by matching Authority Key
Identifier with Subject Key Identifier instead of DN matching.
This should make more reliable the check because not affected of
encoding or format changes in the DN.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/435336c1e05ef103c0d03894c732e9508d2238f1">435336c1</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2023-08-17T19:01:31+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add comment for the option ocsp.store.ldapStore.validateConnCertWithCRL
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/2f13276c50332c1d6e4e3e13d491ccde7d0e2b15">2f13276c</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2023-08-17T19:01:31+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Modify local variable names
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/fc2f203ce122dd1637f61423d375d5708dfaa31e">fc2f203c</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2023-08-17T19:01:31+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update log message for revoked certificate
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/eca19577f36eb1f52e74d275fea4d4cd516bef05">eca19577</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2023-08-17T19:01:31+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Modify the callback location
Due to refactoring the engine object is not accessible using static
reference from outside the declaring package. Therefore the callback
reference have been stored globally in the `CMSEngine` class
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/3973db715f2db5e9afb4a57e8927ca1dbe66c084">3973db71</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2023-08-17T19:01:31+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Improve OCSP exception handling
Add stack trace for error logs when they are generated from internal
error
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/05ff27e325d046ab2aba085134e26ccb85a4df2e">05ff27e3</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2023-08-17T19:01:31+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move the callback to PKISocketFactory and fix startup
Moving the callback to `PKISocketFactory` there is no need to have store
it in a static variable. However, only OCSPEngine instances have a valid
value so no other instances are used.
The startup order has been fixed.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/87c2c07c5025c1532a12c5ec6a7e661e1efc3984">87c2c07c</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-08-17T12:44:35-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add PKIDeployer.instance
The PKIDeployer.instance attribute has been added to store the
instance used for deployment.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/65745d5f2d10294e7c62d86d3ad0c5173c1465af">65745d5f</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-08-17T12:44:35-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update PKIDeployer.create_server_xml() to use self.instance
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a387de345d34c41c4c87e816387740127a502af3">a387de34</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-08-17T12:44:35-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update PKIDeployer.update_external_certs_conf() to use self.instance
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d865f1f50f9e17f9a528447bcd093adf98c9861a">d865f1f5</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-08-17T12:44:35-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update PKIDeployer.init_server_nssdb() to use self.instance
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/9e4c51455fe507b1817b8e90cc5475ad6a7e49b5">9e4c5145</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-08-17T14:02:53-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update code for importing existing certs to use PKIDeployer.instance
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/0fab585bab22cfdf3d349b683959e8bb08e26b79">0fab585b</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-08-17T14:02:53-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update code for verifying subsystems to use PKIDeployer.instance
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/4e3941b7ae2c0f7b4675901d67eb9e56c3241617">4e3941b7</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-08-17T14:02:53-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update code for generating cert requests to use PKIDeployer.instance
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/afd345e25a420e100cb3887fb6504c1733c762b8">afd345e2</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-08-17T15:15:17-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update code for setting up security domain to use PKIDeployer.instance
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/9b28f0ff5ff85919f4ac648c0d3e90b6aaaeafb5">9b28f0ff</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-08-17T15:34:48-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add PKIDeployer.update_sslserver_cert_nickname()
The code that updates the SSL server cert nickname has been
moved into PKIDeployer.update_sslserver_cert_nickname().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/8629df53c4281aaf3dacf69123251e2a710e4b1b">8629df53</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-08-17T21:13:53-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update code for setting up SELinux to use PKIDeployer.instance
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/bd968c5bb708ed74081986db1639553dc0fdd408">bd968c5b</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-08-17T21:20:29-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update code for setting up system certs to use PKIDeployer.instance
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/7c2386dd2a5342fb9e772618361339c6b56edf8b">7c2386dd</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-08-17T21:20:29-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update code for setting up users to use PKIDeployer.instance
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/30e274da55e11f1c718ff6e245cbe64c8f99ca79">30e274da</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-08-17T21:22:42-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update code for setting up connectors to use PKIDeployer.instance
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/3f07e890493c3abd4d7cf2d9fffff1a398f2a934">3f07e890</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-08-17T21:43:18-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update code for setting up shared secret to use PKIDeployer.instance
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/7495553e7f114a5b7c68d5b91787069499b3cdd9">7495553e</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-08-17T21:43:40-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update code for finalizing installation to use PKIDeployer.instance
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/0272d81212a80441c0a5d14a7ca8923ca9b11946">0272d812</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-08-21T13:39:38-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add pki-server ca-crl-show
The pki-server ca-crl-show command has been added to make it
easier to inspect CRL configuration.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/09ebf933168740670188dcd66af4799e7a311fcc">09ebf933</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-08-21T13:39:38-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add pki-server ca-crl-ip-find/show
The pki-server ca-crl-ip-find/show commands have been added to
make it easier to inspect CRL issuing point configuration.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6fdb0aaac1d43963d5648b3efff6d63d1542f6fb">6fdb0aaa</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-08-21T14:21:54-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add pki nss-cert-show --output-format option
The pki nss-cert-show has been modified to provide an option
to return the cert info in JSON format to make it easier to
parse using other tools/languages.
The NSSCertInfo has been added to define the mapping between
POJO and JSON.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/953b7ef6bebd871cffd2b4ac2ae425afc61b8bc7">953b7ef6</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-08-21T17:56:09-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add wrapper methods for ca.crl.pageSize
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/1dd7e4f9b308c4c4f91070d585e23dab02ea01c4">1dd7e4f9</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-08-21T17:56:11-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add wrapper methods for ca.crl.<name>.startingCrlNumber
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d60e607dc86cff88ea01b486c6e3d3188b725a29">d60e607d</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-08-21T17:56:12-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add wrapper methods for ca.ocspUseCache
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/8cbdd7553de5fbf94697c512c4310548804984f2">8cbdd755</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-08-21T17:56:14-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add wrapper methods for ca.ocspUseCacheIssuingPointId
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/cb56b7273944088f681cb797eb4a84b62afb6f55">cb56b727</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-08-21T17:56:16-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add wrapper methods for ca.ocspUseCacheCheckDeltaCache
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ace7dd99e15aabbbf9342bb83492c656164e0f10">ace7dd99</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-08-21T17:56:19-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add wrapper methods for ca.ocspUseCacheIncludeExpiredCerts
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b1f85dbe95ddda443df4e329f29a680ea284fa0a">b1f85dbe</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-08-23T12:40:31-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add pki-server ca-crl-ip-mod
The pki-server ca-crl-ip-mod has been added to allow updating
multiple CRL issuing point params at once.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/72c635b44aba6c804659469281676d81baa6d8fb">72c635b4</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-08-23T16:10:25-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update ProfileInput.init() to use ProfileInputConfig
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/24ca4126601700fb4a0e9e9eea639ff229d66609">24ca4126</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-08-23T16:12:51-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update ProfileOutput.init() to use ProfileOutputConfig
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a9a9d99549fe0cb30b8119086e04bd919a3c890b">a9a9d995</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-08-23T16:18:07-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Rename ProfilePoliciesConfig to ProfilePolicySetsConfig
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e7bdaaa70b29f3ce228ebc35c6d1bcebb2ea6055">e7bdaaa7</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-08-23T16:33:36-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add ProfilePolicySetConfig to wrap profile policy set config
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/5f746101890888814e1de74bc794de23a2f2d1b7">5f746101</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-08-23T16:48:13-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add ProfilePolicyConfig to wrap profile policy config
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/950b0b7a8dcd91135f5dfdd5c877280edf798d6f">950b0b7a</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2023-08-24T16:46:30+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add additional tests for OCSP
Added tests for non existing certificate and non managed CA.
Additionally, fixed a condition which was not working properly.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a426aa5182244362d0f9774e22afd15e48125a48">a426aa51</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2023-08-24T16:46:30+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add CI test for OCSP self crl check
When LDAP store is used the OCSP can be configured to check certificate
using the stored CRL. This is implemented in PR #4545.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/872a9254f5fdcc3b2d000ba7d4cd973b8f69c052">872a9254</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2023-08-24T17:06:26+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove unused certificate from ansible CI
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c5dd663125894124b4b53d4c987becc534afebf7">c5dd6631</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-08-24T12:04:28-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add pki-server <subsystem>-user-mod --password
The pki-server <subsystem>-user-mod has been updated to provide
a way to change the user password. This could be used to restore
access to PKI server in case the current password is lost or the
user cert has expired.
The UGSubsystem.modifyUser() has been modified to remove the
userPassword attribute from the user record if the password is
blank.
The test for admin user has been updated to validate password
change and password removal.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6a20aa46232ea26b10f28693b1f537b66f0f5816">6a20aa46</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-08-24T12:16:07-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Convert IPolicyProcessor into PolicyProcessor class
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/2a32c7af4874d1f6afb9ecfaadcd5df98abbf8d0">2a32c7af</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2023-08-29T09:56:28+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Bug2229930-crlCertValid-leaf-only
This patch addresses the issue where OCSPEngine:crlCertValid attempts to
verify up the chain and failed because when using CRL to validate certs,
the CAs up the chain are issued by different CAs.
OCSPEngine:crlCertValid should be limited to leaf certs validation only.
fixes https://bugzilla.redhat.com/show_bug.cgi?id=2229930
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/45b59b557948b0c76148d9bfb4b433528902dbc6">45b59b55</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2023-08-29T15:01:36+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Read IPs from SSLEngine session
When SSLEngine is used IPs cannot be retrieved from the socket or stream
proxies so they are stored into the SSLEngine session.
This is an extension to the standard because the SSLEngine should be
unaware of the underlying communication but it is needed for the audit.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/933d47f0f19e9a7465fad863b57a7da67567a346">933d47f0</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-05T21:11:36-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add LdapConnFactory.auditor
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c4452c0cd67a011eadc6b59a98898b2b0eb77b63">c4452c0c</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-05T21:36:02-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add LdapConnFactory.socketListener
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/8e1f3a04ed7761e6892202ee4e89b23403cebeb1">8e1f3a04</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-05T21:37:14-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add LdapConnFactory.approvalCallback
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/8daaea91ad79b3cd59768925e63bd577b6c299d2">8daaea91</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-05T21:37:15-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Refactor CAProfileImportCLI to use LdapBoundConnFactory
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/0ac7a5c17127d5a6a1b935887d1e286d7e5309da">0ac7a5c1</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-05T21:37:15-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Refactor LDAPConfigStorage to use LdapBoundConnFactory
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a375c3e42bd9baeda2b46a051a0810985be8ea30">a375c3e4</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-06T16:16:26-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Refactor RequestRepository.listRequestsByFilter()
Previously the RequestRepository.listRequestsByFilter() would
create a DBSession object, perform a search operation, close the
session, then return the DBSearchResults in a RequestList object
to the caller.
The problem is the DBSearchResults can only be used by the caller
as long as the database connection is still open, which is not
guaranteed once the session is closed.
To avoid potential issues, all variants of the method have been
updated to store the search results into a Collection while the
session is still active.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ce120d4d9325d830e08e7ee00225be1caf2d5e69">ce120d4d</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-06T16:22:19-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Replace BASE64_OS with BASE_IMAGE
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a1e6a3fb1e0237db325e2bd284ae6c9766f5a813">a1e6a3fb</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2023-09-07T19:47:44+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix unspecified revoke requests
This blocks IPA tests
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/10cf7682a1772a2f9133f1224d877b84404c7c76">10cf7682</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-07T14:01:04-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove unused RequestListByStatus
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c66309e81ff27c651b5eae119993e0bd898409e0">c66309e8</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-07T14:02:01-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove unused RequestQueue.listRequests()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/93a07c91439d783bcd454e0f1c480c075135646f">93a07c91</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-07T14:02:02-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Refactor RequestQueue.findRequestBySourceId()
The RequestQueue.findRequestBySourceId() has been updated to
call RequestRepository.listRequestsByFilter() and return a
Collection<RequestRecord>.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/5d3e4f7cceaca881bb31b4d219a18e66cb1d58ca">5d3e4f7c</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-07T14:02:03-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Refactor RequestQueue.listRequestsByStatus()
The RequestQueue.listRequestsByStatus() has been updated to
call RequestRepository.listRequestsByFilter() and return a
Collection<RequestRecord>.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/aa7255c0b8fff17ecce63625f2ec76d6472066b5">aa7255c0</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-07T14:02:04-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove unused SearchEnumeration
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/9025ebad2aad5835fcdaab7ab0ffeea6510d93d3">9025ebad</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-07T14:02:05-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove unused RequestList
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e9720b2f5db1b633ccdeee1f4101d6173af6ae14">e9720b2f</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-08T12:19:23-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add PublishingPublisherPluginsConfig
The PublishingPublisherPluginsConfig has been added to encapsulate
ca.publish.publisher.impl.* params.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6e9cd6d6bfe05f3d348ea6f8f2da0573fe549711">6e9cd6d6</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-08T12:19:25-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add PublishingPublisherInstancesConfig
The PublishingPublisherInstancesConfig has been added to
encapsulate ca.publish.publisher.instance.* params.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/2ceb635cb763062dc21a4103afeb16b7ea42d804">2ceb635c</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-08T12:24:03-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update log messages in OCSPPublisher
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/62442ccd5fa827ba4103b4208a2c40f83609a18b">62442ccd</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-08T13:11:08-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update log messages in AddCRLServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/650d76daf4eff6f680f360bf4c60a2bfe806e640">650d76da</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-08T13:11:08-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update log messages in OCSPServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/eb7fc671d595e618b6ce59d62e87a817538c83a0">eb7fc671</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-08T13:11:08-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update log messages in PKIRealm and ProxyRealm
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/4e3b4fd4e619ea5e6d1258a2f5c20785454d7a3f">4e3b4fd4</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-08T15:57:45-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix exception handling in LdapCrlPublisher
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/92bcc03013a5ee446151489a9cfb770d668881e8">92bcc030</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-08T15:57:49-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix exception handling in DefStore
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d7162de23b1bcd604bda3f32b360858fabc11af4">d7162de2</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-08T18:20:28-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add OCSPACLAdminServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/2e6d1e5f3002dcafb77ff7726b958a852a47b555">2e6d1e5f</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-08T18:20:30-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add OCSPJobsAdminServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/05b80a01331c79358d313f42f4cc0c86418d8082">05b80a01</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-08T18:20:32-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add OCSPUsrGrpAdminServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/5857e9ff572f347d3950a567b08b43e901a47140">5857e9ff</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-08T18:20:33-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add OCSPLogAdminServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a319b65ec1294bce9f4b11958fdc0c6b04d28f88">a319b65e</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-08T18:20:35-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add OCSPAuthAdminServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/4360f2286656252c2519c6a47afd5127def34c47">4360f228</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-08T18:20:36-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add OCSPGetOCSPInfo
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/1a5df787626c069959428405943aef87e7110204">1a5df787</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-08T18:30:28-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add OCSPPortsServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/3fb5c2bb3db6b680b0081de977954f39e1967747">3fb5c2bb</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-08T18:41:13-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add OCSPGetConfigEntries
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/5f146d2258389076e8fc3a9280c49e41c715ceaa">5f146d22</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-08T19:08:14-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add OCSPOCSPServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/8ecbb98952193a0f5be30943874fcc3d8fcf054e">8ecbb989</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-11T10:04:15-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update OCSPACLAdminServlet to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/5f35fa044e3b53629d8f3c875f97b0eb20a00ece">5f35fa04</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-11T10:04:15-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update OCSPJobsAdminServlet to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c22a08f6a367374468ea4067391a0e30fe744bee">c22a08f6</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-11T10:04:15-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update OCSPUsrGrpAdminServlet to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d0786439bf7f3b6d2a4d0ef17241b6ed1e3b469a">d0786439</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-11T10:04:15-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update OCSPCMSAdminServlet to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/43d226e36c2498377167a69e4d81614872074172">43d226e3</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-11T10:04:15-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update OCSPLogAdminServlet to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b6825a27a94f75f29de2fff135e4c64b9b465ac8">b6825a27</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-11T10:04:15-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update OCSPAuthAdminServlet to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f80954d854327c7c8fc764989d6a60b52f2286ab">f80954d8</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-11T10:04:15-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update OCSPAdminServlet to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f2289b39db46c1dc29af59322322d382477465bc">f2289b39</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-11T10:04:15-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update OCSPGetOCSPInfo to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/80354bed52c249582dadbc6e87f568c04a9ab7d6">80354bed</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-11T10:04:15-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update ListCAServlet to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/85bae2bf81d13814d87dc41c6c37352c9e0b0150">85bae2bf</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-11T10:04:15-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update AddCRLServlet to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/24aa627818328f97ee2b74db06ce9ee58bc682d6">24aa6278</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-11T10:04:15-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update OCSPPortsServlet to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/91b0bbebf33a20b488bb31973aedf53eadf0444e">91b0bbeb</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-11T10:04:15-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update CheckCertServlet to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/68c3a50cca3c404d188f55d01a8e254008d8079b">68c3a50c</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-11T10:04:15-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update OCSPGetConfigEntries to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/07ba4702485997bf6fac56b8d364100f283eb122">07ba4702</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-11T10:04:15-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update AddCAServlet to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/31bb97060cf8b17c83682dcc874e67c0c6c37cba">31bb9706</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-11T10:04:15-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update RemoveCAServlet to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/753a2e4d4b0ab28c4698cb36697279f13cc70437">753a2e4d</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-11T10:04:15-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update OCSPOCSPServlet to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/4dc13f3d2ea006b4bc08c115cc791df0964fedb6">4dc13f3d</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-11T14:38:33-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove unnecessary blank line in CRL
The OCSPPublisher has been modified to remove the extra blank
line in the PEM CRL.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/200a2cbd9d3f890bfb709798831f61bad73bc586">200a2cbd</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-12T09:19:02-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update test for IPA clone
The test for IPA clone has been modified to change the renewal
master and CRL master and also check both IPA and PKI configs
in primary and secondary servers.
There are some known issues:
https://pagure.io/freeipa/issue/9432
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/eb492a9e14a9db05f2fd6712069f022bb7a4c532">eb492a9e</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-12T15:06:40-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add OCSPReadCheckCertPage
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/4be35241e8b86be65314ccedb44089f883dd240f">4be35241</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-12T15:06:40-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add OCSPIndexServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/073454904b410682fdf4276aa82a3f7c6c7db864">07345490</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-12T15:06:40-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add OCSPReadAddCRLPage
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/44086d8f550844ed8636ded9597817cce4474ed4">44086d8f</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-12T15:06:40-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add OCSPReadAddCAPage
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/15a468f928209fb4377cf39e96e00183693d668c">15a468f9</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-12T15:06:40-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add OCSPHeaderServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/73ef40523f37a0f6449603ac673f5412ebaa9ff8">73ef4052</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-12T15:06:40-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add OCSPMainPageServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/cb8521fa9ebf90495377a69a001d2cc476abd70d">cb8521fa</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-12T15:06:40-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add OCSPDownloadPKCS12
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/50a842af421f1704f09ec46924c74b424bfbe125">50a842af</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-12T15:06:40-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add OCSPGetStatus
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/9905c162ac162378c5ad3713d828b151588d6de6">9905c162</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-12T15:06:40-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add OCSPUpdateDomainXML
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/5eb41b8cf1da8dd4f09be11a2f4bf29b4c16cb98">5eb41b8c</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-12T15:06:40-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add OCSPAdminUpdateDomainXML
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/8a1a0a9d8b5cc6a125a829a3b9931be2d79320f0">8a1a0a9d</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-12T15:06:40-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add OCSPGetCookie
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/841d9aaf8e06f823477e809c1887a253731ad169">841d9aaf</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-12T15:06:40-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add OCSPTokenAuthenticate
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/06c0ba034850b3266818629988f34920786bde76">06c0ba03</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-12T15:06:40-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add OCSPTokenAuthenticateAdmin
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c1b0e41d72df2eae9477721cd51c7a3e5b94bc92">c1b0e41d</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-13T10:47:55-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update OCSPReadCheckCertPage to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/46cb9b9376495840e7408672017241cd96b40fb7">46cb9b93</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-13T10:47:55-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update OCSPIndexServlet to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d73c664dc3d5a9aa935a6883b18b3698e46bb2ca">d73c664d</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-13T10:47:55-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update OCSPReadAddCRLPage to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/aad83e005ba071558d3a481d34345b08c00c5908">aad83e00</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-13T10:47:55-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update OCSPReadAddCAPage to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/72fc0afbfded97162d4f14ef35bf6e56bc4d3c67">72fc0afb</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-13T10:47:55-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update OCSPHeaderServlet to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e3d55b194b57581b58b2fe845687615cf3f1404e">e3d55b19</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-13T10:47:55-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update OCSPMainPageServlet to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/32319d9354712aa1542e19098393c6c59766efe4">32319d93</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-13T10:47:55-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update OCSPDownloadPKCS12 to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/fcd6536b9c1a6a9f06abca343cebbfa48b752de7">fcd6536b</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-13T10:47:55-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update OCSPGetStatus to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a61c0a327fd1de6984410d1dc338d2f4cbc14277">a61c0a32</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-13T10:47:55-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update OCSPUpdateDomainXML to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b68db1cd469f2d10577e97a7d485afe3825dc6d5">b68db1cd</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-13T10:47:55-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update OCSPAdminUpdateDomainXML to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/7c298e46dded5c96f84c5c62c8d8995b70777bc1">7c298e46</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-13T10:47:55-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update OCSPGetCookie to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/49e53dda95f74ffb867bdc3a940bec13a939e0dc">49e53dda</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-13T10:47:55-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update OCSPTokenAuthenticate to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b68e5d3f860329117d76eb49fa16a0200a3ef612">b68e5d3f</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-13T10:47:55-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update OCSPTokenAuthenticateAdmin to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/85e69410b34361194079e8dfda1fb27d16e9779c">85e69410</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-14T09:21:37-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add TKSUsrGrpAdminServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/087356dbbb332c770b51bf19a0e23ad84ba46d13">087356db</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-14T09:21:39-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add TKSLogAdminServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b169bf7d8198f11439b6e1b1ef66e826f3a5acdd">b169bf7d</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-14T09:21:40-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add TKSAuthAdminServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/2536c72bfb5029211e8b66b412d31fe8d0fa9b34">2536c72b</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-14T10:19:59-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add TKSJobsAdminServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b2c2a7fe9d4acd8e929a7de0f2f5b0773e309827">b2c2a7fe</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-14T10:20:01-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add TKSACLAdminServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/4abe79a8c537d540f3b11cbeeefd9d1210d79e50">4abe79a8</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-14T10:20:02-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add TKSRegisterUser
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/757f2691e2867d8dda37eca664b3bc0f80c65486">757f2691</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-14T10:20:05-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add TKSEncryptData
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/501c150cb7b49dee0809f5a17ec9e1823ec00cf8">501c150c</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-14T10:20:06-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add TKSCreateKeySetData
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/660ecbef49b32315af385dc85f20b25f47ebd7ca">660ecbef</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-14T10:20:08-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add TKSSessionKey
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/49572cd32290ba2f9aefaab7d2265be0b99c38d7">49572cd3</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-14T10:20:10-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add TKSRandomData
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/67e7d4141e2e1bbace1b33dbab676a24c0a94417">67e7d414</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-14T10:20:11-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add TKSPortsServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/4f6c4fa10098b9172d9c87d14670cc615b920806">4f6c4fa1</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-14T10:20:13-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add TKSMainPageServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/5bf094003ef895c92fe8d88ef649297a17d48609">5bf09400</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-14T10:20:15-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add TKSDownloadPKCS12
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/35beb87be2a283c403582c2c66d6c85a26d25e2e">35beb87b</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-14T10:20:17-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add TPSGetConfigEntries
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/02148f2dc2dbf30c1688003bf6aaddf7aa33cd5f">02148f2d</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-14T10:20:19-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add TKSGetStatus
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ed8e7f5942deae173748ce4f21f53e50395cc4d2">ed8e7f59</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-14T13:24:47-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix race condition during ACME authz polling
Previously after creating an ACME order the client would call
ACMEAuthorizationService to poll the status of the authorization.
Initially the authorization did not have any challenges, so this
service would create the challenges for it. In subsequent calls
this service would just return the status of the authorization.
When the client completes a challenge, the ACMEChallengeProcessor
will update the authorization by removing the old challenges and
adding the new ones. Since these operations are not atomic there
is a risk that after the old challenges are removed the client
will call the ACMEAuthorizationService and create new challenges
which will never be completed by the client.
To avoid the problem, the code that creates the challenges has
been moved from ACMEAuthorizationService into ACMENewOrderService
so the challenges can only be created just once when the order is
initially created.
The LDAPDatabase.addAuthorization() has also been updated to add
the challenges after adding the authorization.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/2262588a6f54a2d8fcaca9fd9d39127fcaa881f2">2262588a</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-14T14:47:32-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix exception in ACMEFinalizeOrderService
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/2457fc36bfa4c7fa1cb7eb2d930ed1e98ac9b197">2457fc36</a></strong>
<div>
<span> by Fraser Tweedale </span> <i> at 2023-09-14T14:47:32-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix race condition during ACME order finalization
Previously when the authorization for an order completed the
ACMEChallengeProcessor would update the authorization status
and the order status after that, then the client would call
the ACMEFinalizeOrderService to finalize the order.
However, since these updates are not atomic there is a risk
that the client will detect the new authorization status then
immediately call the ACMEFinalizeOrderService before the order
status can be updated by ACMEChallengeProcessor. Since both
both ACMEFinalizeOrderService and ACMEChallengeProcessor will
read and write the same order at the same time, there could be
a race condition and the finalization could fail.
To avoid the problem the ACMEChallengeProcessor has been
modified to update the order status first before updating the
authorization status.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/be0e52b08976f44c112c51e0f79e3fc93fb970f1">be0e52b0</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-14T18:04:45-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update TKSUsrGrpAdminServlet to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/cc787bedebcc84da22a0fda1aac10eb17d20b786">cc787bed</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-14T18:04:45-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update TKSLogAdminServlet to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/50c9fd523ed9f1a28d61ff651b902099d62ae293">50c9fd52</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-14T18:04:45-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update TKSAuthAdminServlet to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e5962208e9056d1916e68e09fcdad3c8d4ea22fe">e5962208</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-14T18:04:45-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update TKSJobsAdminServlet to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/371d09e1c9b0a7b32f63232fbe206a1e703ef20a">371d09e1</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-14T18:04:45-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update TKSACLAdminServlet to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d6e7367c5735b292d8344abfa8deac63d066324d">d6e7367c</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-14T18:04:45-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update TKSCMSAdminServlet to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/56ae271000faec0274afd7c836091140a6de9275">56ae2710</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-14T18:04:45-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update TKSRegisterUser to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a62de55569cf697e7c4f0fe4918d83b6fa7d4a5a">a62de555</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-14T18:04:45-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update ImportTransportCert to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/7eaa34029e41d995db5c1b7ddf56a10903114a58">7eaa3402</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-14T18:04:45-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update TKSEncryptData to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/7511c187bfcd90fcee825c77e10900ad63e8bce4">7511c187</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-14T18:04:45-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update TKSCreateKeySetData to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/36136501a37ba5d742a8990d97ae4d1f44098405">36136501</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-14T18:04:45-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update TKSSessionKey to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/8517c8deede2ca9042a90b852b5bf722e712c331">8517c8de</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-14T18:04:45-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update TKSRandomData to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/86d9ccb251d79085ec42be423a98b8f10ad5b909">86d9ccb2</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-14T18:04:45-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update TKSPortsServlet to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/fc620ff8b4242198f7a06db135d28cc3c034732e">fc620ff8</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-14T18:04:45-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update TKSMainPageServlet to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/171523dfdfc0fcdf584b28d54c314a89145938fb">171523df</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-14T18:04:45-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update TKSDownloadPKCS12 to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a3088c2dd33f474586b047d420707bebf4fe3be5">a3088c2d</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-14T18:04:45-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update TPSGetConfigEntries to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/3ed5165c0a3d8d465b68f8e73700d09f791300d6">3ed5165c</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-14T18:04:45-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update TKSGetStatus to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/18139f7fde52fd151f2d87837b766285beac7769">18139f7f</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-15T14:21:29-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Rename TPSGetConfigEntries to TKSGetConfigEntries
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a60e3acd797ed92bf0a887b1ef3cc59c2052bc62">a60e3acd</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-15T14:21:29-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add TPSUsrGrpAdminServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ace0d35ac029b372c6b5c37628dfac4fbda2f8e5">ace0d35a</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-15T14:21:29-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add TPSLogAdminServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/221bf0ae07eecbd83f671c6616c7a3bbfb97b5e1">221bf0ae</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-15T14:21:29-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add TPSGetStatus
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ed5f3cf77284e8f93d20eab37890879f90c68a57">ed5f3cf7</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-15T14:21:29-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add TPSGetConfigEntries
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/50868c1a4e33461486cd3913ada3764301cb120e">50868c1a</a></strong>
<div>
<span> by Chris Kelley </span> <i> at 2023-09-15T14:21:29-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update to use SPDX licence
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/3297b61e565dd6d79f7860128c4e26762bf881fb">3297b61e</a></strong>
<div>
<span> by Jerry James </span> <i> at 2023-09-15T14:21:29-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Unbundle the FontAwesome font
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/85d4639fe2131bded4955256d68c71d8798c9ecf">85d4639f</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-15T14:21:29-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove unnecessary BuildArch
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f86cc9d2b2bb25278669064cf5f9e81b2a977b5d">f86cc9d2</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-15T14:21:29-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Improve test reliability
Some tests have been updated to improve the reliability by
extending the cert validity, forcing CRL updates, and using
longer sleep times between operations.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6c01ba6e8936134b6f9a607a084f1eebad5adbf8">6c01ba6e</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-15T19:21:19-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Merge common fields/methods in LdapConnFactory subclasses
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c64d2fd104174c5e86b096fa3d21324c2cbc32b8">c64d2fd1</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-18T09:23:46-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add links to Maven-built JAR files
Maven installs the JAR files in /usr/share/java/<name> instead
of /usr/share/java/pki, so for backward compatibility the RPM
spec file has been modified to create links to the JAR files,
then include both of them in the RPM packages.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/09bada584cf5db701e03eaf35aa2acccc2c3db2f">09bada58</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-18T09:49:28-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update TPSUsrGrpAdminServlet to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/503836e9ac784723b3c612dca03953d0c2c0594c">503836e9</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-18T09:49:28-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update TPSLogAdminServlet to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/25d8ec570582d7d3f49a4967fe732ad80ac529e5">25d8ec57</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-18T09:49:28-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update TPSGetStatus to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d6da2dc14942aab5ee3eae6bd0f483fccf99a25f">d6da2dc1</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-18T09:49:28-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update TPSGetConfigEntries to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/8ef4e86aadf9e283c9d73c7aa496968665c2e837">8ef4e86a</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-18T09:49:28-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update TPSPhoneHome to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/783c341445ee9ca8ee806aed7427689d3a5ba594">783c3414</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-18T09:49:28-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update TPSServlet to use @WebServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d53cc2ca3d05b263dc09bbdd4cbd6bfe50b62952">d53cc2ca</a></strong>
<div>
<span> by parrjd </span> <i> at 2023-09-18T16:12:01+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update 01-FixSSKDirUserCertProfileAuth.py
Only update profile if exists. Currently if the file does not exist CA fails to start</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/8a509f1bce8bd09ee2d5f0eddb46ed7e800bde42">8a509f1b</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-18T10:59:49-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove CMSEngine dependency in LdapConnFactory
The LdapConnFactory has been modified to no longer dependent
on CMSEngine. Instead, the CMSEngine will provide methods to
create an LDAP connection factory that is already configured
with the engine's auditor, socket listener, and cert approval
callback.
All code that were calling LdapConnFactory.setCMSEngine() has
been modified to call the new methods, except for DBSubsystem
and UGSubsystem since they are also used by CLIs which do not
have a CMSEngine instance.
These changes will eventually allow LdapConnFactory to be used
outside of PKI server environment.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/08ad5809f97fc3693608bdf517067351b73ebb50">08ad5809</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-18T14:51:32-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add PublishingQueueConfig
The PublishingQueueConfig has been added to encapsulate
ca.publish.queue.* params.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/bf1d20f83068eea0b04c1ac887b1bb582c8221f3">bf1d20f8</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-18T15:09:13-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add LDAPPublishingConfig
The LDAPPublishingConfig has been modified to encapsulate
ca.publish.ldappublish.* params.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c5e851bfe3952141ca899ed19d8437aa19b4c498">c5e851bf</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-18T20:05:29-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add PolicyDefaultConfig
The PolicyDefaultConfig has been added to encapsulate policy
default config params.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/2f2ddf4401fe6397c81db419ee478ba091b3bfde">2f2ddf44</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-18T20:05:48-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add PolicyConstraintConfig
The PolicyConstraintConfig has been added to encapsulate policy
constraint config params.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e558db64f8f6dc0aead2c4ce87d5c06938a6127f">e558db64</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-18T20:05:49-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Merge common fields/methods in PolicyConstraint subclasses
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/db68cf6f7b496637fb130e71498e785d863d3c87">db68cf6f</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-18T20:05:49-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Convert LdapConnModule.mConfig into LDAPPublishingConfig
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/5fae57e150acb92b84b96638ea9dd3ebcc00a016">5fae57e1</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-18T20:05:49-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Convert PolicyDefault.mConfig into PolicyDefaultConfig
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/3128a44164e5989767dd5fb6aa0f26212a7ac8ee">3128a441</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-18T20:05:49-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Convert PolicyConstraint.mConfig into PolicyConstraintConfig
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6a88ec2a96e00402990e896326392873207f27ab">6a88ec2a</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-19T14:53:27-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix missing links for pki-console.jar and pki-console-theme.jar
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c8fd8aac2b3d12bbf27c01aad3728c03b3d8f47e">c8fd8aac</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-20T09:07:49-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update cms.password.skipLdapConnTest default value
Previously each PKI subsystem would check the DS connection on
startup and fail to start if the DS is not available. To improve
PKI service reliability the subsystem needs to start regardless
of DS availability (since the subsystem can reconnect to the DS
later when needed), so the cms.password.skipLdapConnTest param
has been modified to be true by default such that it no longer
checks the DS connection on startup.
The DS connection test has been updated to remove the command
that configures the param since it's no longer needed.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6f50d7a68a34fcd3949e83b4ac607d8a65b37fb8">6f50d7a6</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2023-09-21T16:36:59+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Restart the instance when new subsystems are deployed
If a new subsystem is deployed in a existing instance this not restarted
during the installation but the new web-app is just enabled.
When the subsystem are configured to work with an HSM this could
generate problems because certificates added during the installation
with external tools are recognised. The instance restart will clean the
internal cache and reference to the HSM and all certificates are
identified.
Fix the issue #4335
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/004e90af76826c61a954780b402548fa133c9ee7">004e90af</a></strong>
<div>
<span> by Chris Kelley </span> <i> at 2023-09-21T19:28:58+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix cmake compilation warnings.
Move cmake_minimum_required before project to silence warning
Replace deprecated FindPythonInterp in find_package</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d3ab85b7144b8daf47c880cd45b63ff38eac2a89">d3ab85b7</a></strong>
<div>
<span> by Chris Kelley </span> <i> at 2023-09-21T21:38:21+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add Buildrequires for fontawesome
This resolves a disparity in installed files between rpmbuild and cmake
now that fontawesome is not bundled anymore. The symlink generation to
the external font files is moved to cmake from the spec file to make it
platform agnostic.</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/02a77e48c4b9d3161767f2473a3f8e7087cbfce1">02a77e48</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2023-09-22T09:38:33+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add dependency to java-devel for pki-server package
The CLI `pki-server ca-audit-event-find` fails because it requires the `jar` command
provided by the java devel package which is not in the dependency list.
A direct dependency added.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/627da0544f2e91e54126f900a5b96d8c1ab63233">627da054</a></strong>
<div>
<span> by jmagne </span> <i> at 2023-09-26T14:10:00-07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Aes v11.4 (#4555) (#4574)
* Junk change to pki.spec.
* Fix: Bug Bug 2142908 - add AES support for TMS Shared Secret on latest HSM / FIPS environment,
original bug:
Fix: Bug 2025110 - Get TMS working on latest HSM / FIPS environment (#3949)
This bug has 2 goals. The first is to get the shared secret key importation from the tks to tps working. Also
this goal invloves making the shared secret key AES instead of soon to be purged DES3.
The second goad was to get full server side keygen enrollment working under this strict environment.
This goal won't be in the commit due to the fact that this requires some work on the coolkey token applet, which is to com.
For my testing I used full PSS and OAEP support. PSS is invoked by setting the "usePSS=true" setting in the pkispawn config file.
Also for both tks and tps,after creating, we must set the keyWrap.useOAEP=true setting in the CS.cfg of both tks and tps.
Add some review comment changes.
Port to 11.4 branch.
* Fix Bug 2180922 - add AES support for TMS server-side keygen on latest HSM / FIPS environment [RHCS 10.4]. (#4451)
This fix allows the latest HSM / FIPS environment to successfully complete a token enrollment including server side
keygen functionality.
This is accomplished with TMS code and applet code that allows SCP03 tokens alone the ability to inject a private key onto the tok
using the AEK_KEYWRAP_KWP algorithm. This fix includes a new applet that must be used for scp03 tokens.
base/tps/shared/applets/1.5.64260792.ijc
The CS.cfg must be configured to use this applet as follows:
op.enroll.userKey.update.applet.requiredVersion.prot.3=1.5.64260792 for enrollment and,
op.format.userKey.update.applet.requiredVersion.prot.3=1.5.64260792 for format.
Note any other profiles including external registration must be configured to use this applet if put into play.
Note: The following must be configured in the TPS's server.xml to extend the timeout from the client
as per this example:
connectionTimeout="-1" for each connector SSL or non SSL. This is required since the KWP implementation
takes a bit longer to unwrap the keys(s) onto the token than previously.
Tested with a full FIPS / latest HSM box using PSS and OAEP for all subsystems. OAEP should be required
with PSS optional.
Tested with the g&d 7.0 smart cafe SCP03 using a max of 3072 bit keys due to the limitations of the token itself.
---------
Co-authored-by: Jack Magne <jmagne@localhost.localdomain></pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/3634545ccedcca3dc1af47470cd318d87947ec58">3634545c</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2023-09-28T10:27:40+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Make profile REST API provide same information then XML API
Current profile REST API misses the information: visible, enable and
enableBy. These are needed by IPA to improve the UI.
Additionally, a filter for visible and enable has been added.
Resolve RHCS-4375
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/060bf0ea42ba42ffb9b85ad5836c3d9192327710">060bf0ea</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2023-09-28T10:27:40+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add profile filter to the CLI
The command ca-profile-find has 3 additional filters:
- "--visible" shows only visible profiles (this is the default
behaviour for non admin users);
- "--enable" shows only the enabled profiles;
- "--enableBy <username>" shows the profiles enabled by the provided
user.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/fa9b9522deb5db6a56c2871f631b99b3d4f22d6d">fa9b9522</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-28T19:02:31-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up log messages in UniqueSubjectNameConstraint
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f93d360a0e1ff96b523eca6a764862d721b01812">f93d360a</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2023-09-29T09:58:53+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove not used DB session from certificate queries
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ee9cf97302ea6d286af3fb1694e24a42579a6925">ee9cf973</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-09-29T09:30:11-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add test for caServerCert profile
A new CI job has been added to test cert enrollments using a
customized caServerCert profile. The first enrollment should
successfully issue an SSL server cert with user-provided SAN
extension. The second enrollment should fail to issue another
SSL server cert with the same subject name.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/56bf3ea0da04683e27a6b64d13077b7176fbf607">56bf3ea0</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-10-02T20:08:13-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move CAEngine.loader to AuthorityMonitor
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/4d16350698051b3e16ec93d746de5daeb909c1fc">4d163506</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-10-02T20:13:40-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move CAEngine.foundHostCA to AuthorityMonitor
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c029f9424cc95c409a1bd555200dd9ec2a0a07d7">c029f942</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-10-02T20:14:06-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move CAEngine.deletedNsUniqueIds to AuthorityMonitor
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f4749d279fa215b62f532c81b8cff0ec03518252">f4749d27</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-10-02T20:14:07-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move CAEngine.nsUniqueIds to AuthorityMonitor
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/fbc1951919daec9941d77d8fbc2c356a040023ee">fbc19519</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-10-02T20:14:27-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move CAEngine.entryUSNs to AuthorityMonitor
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/244745e702bdae306b52db55d7e2212e7bae01db">244745e7</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-10-02T20:14:43-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move CAEngine.keyRetrievers to AuthorityMonitor
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f3683cf6b2f28f02c173e94ec86452825bd24bc5">f3683cf6</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-10-02T20:14:58-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move CAEngine.authorities to AuthorityMonitor
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/4b48613e094898343f66862ad045c4798f6da8c4">4b48613e</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-10-02T20:14:59-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move CAEngine.trackUpdate() to AuthorityMonitor
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/cf1eed9018e72c2e18309dbb7105327ed196720e">cf1eed90</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-10-02T20:14:59-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move CAEngine.addCA() to AuthorityMonitor
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/82f0ed0fdeeccda5810a7bd472e61a792405bbb1">82f0ed0f</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-10-02T20:14:59-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move CAEngine.removeCA() to AuthorityMonitor
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c034463e2c8f9f004083d8d5474896d07975b17b">c034463e</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2023-10-04T12:06:30+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>pki-server system certificate from nssdb
System certificates are stored in CS.cfg and nssdb. This is redundant,
all operations should use the same source for the certificate which is
the nssdb.
This modify the following command in order to get the certificate from
nssdb:
[root@pki /] # pki-server cert-export --cert-file <filename>
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f54a9660c84579c9fcce93829941adf5ca7297cb">f54a9660</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2023-10-04T12:06:30+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>cert-export read from config file or config folder
The command pki-server cert-export will read the certificate and the
relative request from the "<instance>/config/certs" folder if not found
in other places
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/46229ab208f2d13043f136101662604f6697041e">46229ab2</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2023-10-04T18:18:56+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix the configuration path for certs folder
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a74f773e0e7cf14156cc950439383ee288c723a4">a74f773e</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2023-10-04T18:23:10+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Disable healthcheck CS.cfg certs match
Cert and csr will be removed from CS.cfg and stored in DB or separate
file so this check is not anymore valid. It is temporary disabled to
verify if can be removed or it should be replaced with other
checks.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b14b11cd0b4a88fdc534c26e20f8cda8644bcd85">b14b11cd</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-10-04T12:13:58-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add missing ServiceUnavailableException constructor
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/5b9607fc0ff3efcc4f619c26a51ef592b4f159cc">5b9607fc</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-10-04T21:10:40-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add AuthorityRecord
The AuthorityRecord has been added to encapsulate authority
records stored in LDAP.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/cfac4037560722f4d59da86dfa8e915745b74b9c">cfac4037</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-10-04T21:10:40-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add CAEngine.getAuthorityRecord()
The code that loads the authority record from an LDAP
entry in CAEngine.readAuthority() has been moved into
getAuthorityRecord().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/2d10490a9e5ea70cdd89811df74c82df5db589af">2d10490a</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-10-04T21:10:40-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add CAEngine.createCA()
The code that creates the CertificateAuthority object in
CAEngine.readAuthority() has been moved into createCA().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/726afdb69d93d85c5f666790738e6049006b5382">726afdb6</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-10-04T21:11:03-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Replace CAEngine.ensureAuthorityDNAvailable() with getCA()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/3e62f42cbc6e92cf86748adee3e75292f3fdcf77">3e62f42c</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-10-04T21:11:03-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix Javadoc warnings in LDAPConfigStorage
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/10200496ea15187db6a4abee3db2b9499be86382">10200496</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-10-04T21:14:03-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move CAEngine.readAuthority() to AuthorityMonitor
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/5a2feb7f2ce026f2c1d5729abbece039f3ebf5a9">5a2feb7f</a></strong>
<div>
<span> by Birger J. Nordølum </span> <i> at 2023-10-06T16:40:54-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>chore: make test badges linkable to actual tests
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/4718f9f0132a0509bfb9de9d57458360376bb80b">4718f9f0</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-10-09T09:20:40-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Refactor CAEngine.addAuthorityEntry()
The code that creates the authority LDAP entry has been merged
into CAEngine.addAuthorityEntry(). This method has also been
renamed to addAuthorityRecord().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/1955db5155d5a82315853b8e4b8bf6ccfacc07df">1955db51</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2023-10-09T19:12:58+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Create subsystem without certificate in CS.cfg
Certificate are stored in nssdb of the instance so the copy in the file
is redundant and will be removed.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/dc5e987f76bc4ece9fa73ca76f2fed8fe5622e21">dc5e987f</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2023-10-09T19:12:58+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Lightweight CA read issuer certificate from nssdb
When working with HSM the Lightweight CA access the root CA certificate
from the CS.cfg. This has been modified reading the certificate from
NSSDB to allow the removal of such field from the configuration.
NOTE: Currently, Lightweight CA does not work with HSM so this change
cannot be really tested until the Github issue #2412 is fixed.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6a3206e2fe069bc2cba95dd57657d6088c459cc1">6a3206e2</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2023-10-09T19:12:58+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Get cert from nssdb for all subsystems
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/369c19ff2fef1bbd94b86a1016bd66995837aee7">369c19ff</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2023-10-09T19:12:58+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Improve message error for subsystem certificate not found
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/8f7b2c92742a498d74c7ee3a9bc4c706ab6bcb0b">8f7b2c92</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-10-10T13:32:25-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix malformed signed audit params in CS.cfg
The CS.cfg files for all subsystems have been updated to fix
the malformed signed audit params. An upgrade script has been
added to fix the params in existing instances.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e865fe77263df1dac373f05414265b1572dc35c0">e865fe77</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-10-10T13:32:25-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add test for KRA clone with HSM
A new CI test has been added to verify installing KRA with HSM,
cloning the first instance, then cloning the second instance.
The test will also verify the system certs and the CS.cfg in
all instances.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/64548e534504aadbc882faef4a677a82e163360c">64548e53</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-10-10T13:32:25-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add test for KRA clone with shared DS
A new CI test has been added to verify installing KRA with a DS
instance, then cloning the KRA using the same DS instance. The
test will also check the system certs and the CS.cfg in both
instances.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/2402ae9955dbe39af48a4fcf9190fa4bf1dbdaad">2402ae99</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-10-11T15:46:12-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update dependency on Tomcat
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/8769b3a2a8efaa9f6c3e696a470e47155440337d">8769b3a2</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-10-12T10:03:29-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add test for IPA with sub CA
A new CI test has been added to verify installing IPA with
a subordinate CA where the signing cert is issued by an
external root CA.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/af75c5f94d2b25e78877e0064ca70eb0207372f5">af75c5f9</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-10-16T09:24:23-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove redundant 2nd attempt to wait for build
The 2nd attempt to wait for build was originally added to
improve the CI reliability in case the 1st attempt failed, but
apparently the CI would not automatically resume even if the
2nd attempt was successful, and it's also generating warnings
about skipped checks, so it has been removed.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d6f162f6d3b25abb5fc050c84abbf08350b4f68c">d6f162f6</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2023-10-17T17:29:08+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove CSR from CS.cfg and store them in certs folder
CSR are created and stored in `<instance_config>/certs` folder as `<certs_id>.csr` files.
Fix #2111
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/7e0386bc402ba2aabdf2b9534f4d644e387c1b0e">7e0386bc</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2023-10-17T17:29:08+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add CSR job in IPA cline test
Add a check of CSR between CA master and clone.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/61c3c27e9667dca597826e7db825b3824d8117d9">61c3c27e</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2023-10-17T17:29:08+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Concert CSR file name to cert_id
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/634cc0464ee97f441eeef190c6c56607ee11f45c">634cc046</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-10-18T12:48:16-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move subordinate CA tests into separate workflow
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/3fd3031a1ba41234e06347e319a068b5fc0f7bd2">3fd3031a</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-10-18T20:27:18-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Replace BASE64_DATABASE with DB_IMAGE
The BASE64_DATABASE secret has been replaced with DB_IMAGE
variable since it's easier to configure.
https://github.com/dogtagpki/pki/wiki/Configuring-Test-Database
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/aaead49fac1864d6c8545dca03630da89b3ec9d6">aaead49f</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2023-10-19T09:26:38+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove cert healthcheck
Since certs will not be stored in CS.cfg in the future this test is
useless so it is removed.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/9b961df2603d013b8b02aa0f0ba47bd6ff450c65">9b961df2</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-10-19T11:04:46-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove unused init-workflow.sh
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f8aecf21ac13430d62aaac29191f809e2ab57c22">f8aecf21</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-10-19T12:45:25-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add cert validity options/params for CLI and ACME
The pki nss-cert-issue command and the NSSIssuer in ACME have
been modified to provide options/params to specify the cert
validity in different units (e.g. minutes) which could be
useful for testing and end-users as well.
The old option/param is limited to months only so it has been
deprecated.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/80017fcd6600f4991dc65449ed88cb49b25f0101">80017fcd</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-10-20T21:28:00-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update CA and IPA clone tests to check CRL params
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/1e50c67f1ab44951b99136537c0695020d44034e">1e50c67f</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-10-23T20:28:31-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update RPM spec file
The RPM spec file has been updated to install/distribute
Maven artifacts in the proper locations/packages.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/56addd2bbff807d409b9aeee4faeae68374cb948">56addd2b</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-10-24T21:04:38-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up ca.crl.MasterCRL.enable configuration
The code that configures ca.crl.MasterCRL.enable has been
moved into PKIDeployer.finalize_ca().
The IPA clone test has been modified to validate the param.
A temporarily fix was added due to pending changes in IPA:
https://github.com/freeipa/freeipa/pull/6971
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/aa8e2379701ba072e0808eeb54a80f6b08e0bc19">aa8e2379</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-10-25T12:57:07-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Javadoc for LDAPConfig
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b68c119b482cf17582d9557892576bf84e365c36">b68c119b</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-10-25T14:13:27-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove runtime dependencies on Maven plugins
The maven-compiler-plugin, maven-jar-plugin, and
maven-surefire-plugin have been moved to the modules
that actually use them, so they will no longer be
listed as runtime dependencies of the RPM packages.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/8d382d75ab4739d6df0e2f9dff23e0ea04971efa">8d382d75</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-10-26T18:51:28-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix dependencies in top-level subpackage
The top-level (i.e. meta) subpackage has been modified
to require all other subpackages enabled in the build.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/402300f88a15f8f293f6a9f1a5c2fee1e5d7eb6a">402300f8</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-10-30T13:34:30-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add test for CA system certs renewal
A new test has been added to validate the renewal procedure
for system certs in CA (except the CA signing cert itself)
and the admin cert as well.
The test will call pki-server cert-create sslserver --temp
command which will create a temporary SSL server cert using
the existing CSR.
The code that exports the CSR from CS.cfg into a file in
PKISubsystem.setup_temp_renewal() has been removed since the
CSR is now stored in <instance>/conf/certs/<cert ID>.csr so
it can be used directly.
The test will also call pki-server cert-import command which
will import the new cert into NSS database.
The PKIInstance.cert_import() has been modified to no longer
call cert_update_config() since the cert will no longer be
stored in CS.cfg.
https://github.com/dogtagpki/pki/wiki/Renewing-System-Certificates
https://github.com/dogtagpki/pki/wiki/Renewing-Admin-Certificate
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/cd80dfe49a225ca3d3ee623958b7625157fc2176">cd80dfe4</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-10-30T16:09:37-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Rename PKIWebListener to CMSWebListener
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/9d9fd539e8b6e6bd003df24fa41aa7499356126d">9d9fd539</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-11-02T09:34:27-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add pki nss-cert-del
The pki nss-cert-del has been added to remove a cert (and
optionally its key as well) from NSS database which can be
used to replace certutil -D and certutil -F commands.
The NSSDatabase.remove_cert() and CI tests have been updated
to use the new command.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/80ade82d957b9ac08ae04543adbc950451ae10a2">80ade82d</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-11-02T11:23:07-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Refactor pkispawn scriptlets
The loop that calls pkispawn scriptlets has been unrolled and
moved into PKIDeployer.spawn() to allow further refactoring.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/781d1c861c1e9260c8d229d8d1256bfcc155398a">781d1c86</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-11-02T11:27:30-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Refactor pkidestroy scriptlets
The loop that calls pkidestroy scriptlets has been unrolled and
moved into PKIDeployer.destroy() to allow further refactoring.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b2b2a543708a5677bb3ba82d25c90a5317bb49cb">b2b2a543</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-11-02T12:28:32-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Merge PKIInstance.nssdb_import_cert() into cert_import()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e2dca04ecda14a71f465bd54ce7aec685f54a4f7">e2dca04e</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-11-02T13:25:52-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Convert PKISubsystem.setup_temp_renewal() into get_cert_ski()
The PKISubsystem.setup_temp_renewal() has been simplified and
converted into get_cert_ski() which takes a base64-encoded cert
and returns its SKI.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/1d9d890c7fbd76ee4f419992a41e5f69c3c2d0a5">1d9d890c</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-11-02T16:50:31-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update PKIServer.open_nssdb()
The PKIServer.open_nssdb() has been modified to ensure that the
NSSDatabase object being created has the password.conf, the user,
and the group of PKI server such that it can be used to access
HSM and create files with the proper ownership.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/67a3ee29f7568f9117ccedfbcddc505d96643ef9">67a3ee29</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-11-02T19:06:52-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Deprecate pki client-cert-del
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d699d0aacb662dc8746d7730665c0341a963f316">d699d0aa</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-11-02T21:46:56-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update profile import
The code that imports the profiles into database during
installation has been moved such that it only runs if
database setup is enabled.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6d5d0bf14adb26ca56657d52fa43494f589c2aa1">6d5d0bf1</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-11-03T10:18:45-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix system certs renewal with HSM
The PKISubsystem.temp_cert_create() has been updated to use
the full name of the CA signing cert such that it can find
the cert and the key properly in HSM.
A new test has been added to verify CA system certs renewal
with HSM.
Resolves: https://github.com/dogtagpki/pki/issues/4355
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d03eb6937839389bd14d65d9f6ec02a1d52232b6">d03eb693</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-11-03T16:12:34-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up PKIDeployer.get_domain_info()
The PKIDeployer.get_domain_info() has been modified to return
the domain info instead of storing it directly in PKIDeployer.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a18977750bc8bf453db404449ecda09df1935659">a1897775</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-11-03T16:13:03-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up PKIDeployer.get_install_token()
The PKIDeployer.get_install_token() has been modified to return
the install token instead of storing it directly in PKIDeployer.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/71949288ab761a2cdae85b3d7aab3547b2b99934">71949288</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-11-03T16:25:36-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up log messages in SecurityDomainService
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f069528f19e7597dd4bf864032219248eac51624">f069528f</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-11-03T16:47:10-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove redundant service.securityDomainPort
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ad78ff89d7e5705be67f0b3780e21a8bc5aff87f">ad78ff89</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-11-03T16:47:43-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove redundant securitydomain.httpseeport
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/aa8e6906b16b3bc450962f639de3cd5c1e810518">aa8e6906</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-11-03T16:49:05-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove redundant securitydomain.httpsagentport
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/bf868db15336e01513bda84eee89708311b27cc0">bf868db1</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-11-03T19:03:02-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix issues with disabled security domain
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/0dd03ce4f40f6f49c99269935d8f1b0243d63632">0dd03ce4</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-11-03T19:28:22-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Refactor PKIDeployer.setup_security_domain()
The code that configures the security domain type and name
in PKIDeployer.setup_security_domain() has been moved into
setup_security_domain_manager().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6dcca7e9279db9e5e295705168ebb8340b64d9e0">6dcca7e9</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-11-06T09:37:54-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update pki nss-cert-import
The pki nss-cert-import has been updated to use the token
name in the nickname if specified, otherwise it will use
the token name specified in the --token option.
The NSSDatabase.addCertificate() in Java (which is used
by pki nss-cert-import) has been modified to call the new
PK11Store.importCert() instead of addPEMCertificate()
which depends on certutil -A.
The NSSDatabase.add_cert() in Python has been updated to
use JSS (via pki nss-cert-import) by default. It has also
been updated to provide the input cert via standard input
instead of file to avoid permission issues.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6c624e4e8e733fc732beeca854c3c8c294a82d1b">6c624e4e</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-11-06T14:22:19-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add getter/setter for passwordFile param
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/4f01f3ad74fc02bff84cdf887905029371f88650">4f01f3ad</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-11-06T17:15:11-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update basic installation tests
The basic installation tests have been updated to verify that
the CSRs are stored under /etc/pki/<instance>/certs folder.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c0fd0a7f39dfb82f4c446a1f77619545db69a184">c0fd0a7f</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-11-07T10:43:29-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update KRA and OCSP tests
The test for basic KRA has been updated to check the security
domain and KRA connector in CA. The test for standalone KRA
has been updated to use a standalone CA so the CA should not
have a security domain and KRA connector.
Similarly, the test for basic OCSP has been updated to check
the security domain and OCSP publishing in CA. The test for
standalone OCSP has been updated to use a standalone CA as
well so the CA should not have a security domain and OCSP
publishing either.
Note: The KRA connector and the OCSP publishing can be added
later as a post-install task.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/3700a5991c59109353d6d9f41ae79686ac5921e2">3700a599</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-11-07T19:43:47-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update PKIDeployer.setup_system_cert()
The PKIDeployer.setup_system_cert() has been modified to
reuse the existing system certs if they already exist in
the NSS database.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/68bc3cbe55e0fc528ba8a97139ad747e2787c88a">68bc3cbe</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-11-08T11:36:51-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix dangling link to jaxb-api.jar
The CMake script has been updated to use more specific paths
to find the proper location of jaxb-api.jar on platforms that
do not provide xmvn-resolve.
Resolves: https://issues.redhat.com/browse/RHCS-4602
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/59fd676521a51779b218914e33c7ab6de00a0d6a">59fd6765</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-11-08T19:45:38-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up redundant code in configuration.py
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/8e01622d98a7646a23d3e750e50bccbbbb886000">8e01622d</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-11-08T19:45:38-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update PKIDeployer.import_system_cert_request()
The PKIDeployer.import_system_cert_request() has been updated
to skip importing the CSR if the source and the destination
paths are the same.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/cc3987caf3e5fe063005541486e4e32b3727358c">cc3987ca</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2023-11-09T10:21:13+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix RSA key pairs generation in FIPS environment
When FIPS is enabled and kay are not temporary then the sensitive flag
has to be true.
Flags are assigned only if not `NULL` so to enable the default values they generator is invoked with `NULL` value instead of `false` value which was assigned.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6eea556c4a4f3ef0ed11824d731fe7b02fd269df">6eea556c</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-11-09T08:07:02-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Enable RSNv3 by default
The default.cfg has been updated such that new CA and KRA
installations will have RSNv3 enabled by default. Existing
installations will not be affected.
The tests have been updated to no longer enable RSNv3
explicitly since it's redundant.
The test for CA with CMC shared token has been updated to
handle large serial numbers.
The test for CA with RSNv1 has been updated to explicitly
use the legacy ID generators.
Resolves: https://issues.redhat.com/browse/RHCS-3689
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a4eb208bef3eca09a7bae0fad967c0a799daacf4">a4eb208b</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-11-09T10:53:48-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add PKIEngine, PKIWebListener, PKIServlet
The PKIEngine has been added to store the main code of PKI web
application. PKIWebListener has been added to initialize the
PKIEngine when the web application is started. PKIServlet has
been added as the base class for servlets that use PKIEngine.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/5ca50b55271821936669a6ed089521221b6e2a1a">5ca50b55</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-11-09T10:53:48-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Refactor InfoService
The code that constructs the Info object in InfoService has
been moved into PKIEngine such that it can be reused.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/3058989a8b56ce56fe7ca4e666266abff08fc86f">3058989a</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-11-09T10:53:48-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add InfoServlet
The InfoServlet has been added as a lightweight alternative to
InfoService without dependency on RESTEasy.
All clients have been modified to call the InfoServlet instead.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/7d31c7326148c1c5e5f356047b932d0896637224">7d31c732</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-11-10T09:37:06-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix permission issue in pki-server ca-cert-request-import
In some cases pki-server ca-cert-request-import fails to import a
CSR since the Python code of the command runs as the current user
but the Java code runs as PKI user which might not have the
permission to read the input file.
To avoid the issue, the Python code has been modified to load the
CSR into memory, then pass the CSR to Java via the standard input.
The Java code has been updated not to throw an exception if the
CSR is provided via the standard input instead of a file.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6f96f6998071c6470ed95e6e06ca7b3efeaf6de9">6f96f699</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-11-10T10:04:00-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Drop critical_failure param from KRAConnector.deregister()
The KRAConnector.deregister() is always executed with
critical_failure=True, so the param can be dropped and the
the code that uses the param can be simplified, and also
the outer try-except block can be removed. This will also
fix pylint broad-exception-caught failure.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/901be4a8b63aef6bb617ee8a2017db7a958dfcd5">901be4a8</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-11-10T10:04:00-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Drop critical_failure param from TPSConnector.deregister()
The TPSConnector.deregister() is always executed with
critical_failure=True, so the param can be dropped and the
the code that uses the param can be simplified, and also
the outer try-except block can be removed.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f46d5318f28fe22f44accd30ad823ee01612856b">f46d5318</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-11-10T11:01:11-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update test for installing CA with existing NSS database
The test for installing CA with existing NSS database has been
updated to store the CSRs in /etc/pki/pki-tomcat/certs folder
directly so that it's no longer necessary to specify the CSR
paths for pkispawn.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/712dbb9b052aeccf5232d05c2fbea501fd69fed9">712dbb9b</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-11-10T13:49:29-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update ServerConfig.get_sslhost()
For consistency, the ServerConfig.get_sslhost() has been
modified to return None if the SSL host does not exist.
All callers have been modified to check the return value.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d542203f97be8031e3ced570e29a772d82989fb5">d542203f</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-11-10T13:54:12-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update ServerConfig.get_sslcert()
For consistency, the ServerConfig.get_sslcert() has been
modified to return None if the SSL cert does not exist.
All callers have been modified to check the return value.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/4093f97ce9b93e7f99e8c71ed9883fbe7e64770e">4093f97c</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-11-10T20:43:34-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update PKIDeployer.create_server_xml()
The PKIDeployer.create_server_xml() has been modified into
configure_server_xml() which will create a new server.xml or
update an existing one.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/2ff05873177e2c524a4730f4c84b85a09fedc3d3">2ff05873</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-11-10T20:47:18-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up RemoveUserDatabase
The RemoveUserDatabase has been updated to use ServerConfig
to update server.xml.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b45ed85470dad8fc37ebdad0458235b87e19c697">b45ed854</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-11-13T10:50:14-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove unnecessary workaround for certutil bug
The NSSDatabase.__add_cert() was modified recently in
6dcca7e9279db9e5e295705168ebb8340b64d9e0 to use JSS via
pki nss-cert-import instead of certutil, so the workaround
for Mozilla Bug #1782980 is no longer needed.
Resolves: https://issues.redhat.com/browse/RHCS-4601
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/317e715afb7d5438b62aca6165474e7efeaae3a9">317e715a</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-11-13T10:57:51-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move RequestQueue.findRequestsBySourceId() to RequestRepository
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6a47b03d4ad4c778be2892080d90b0352c295232">6a47b03d</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-11-13T10:57:52-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move RequestQueue.findRequestBySourceId() to RequestRepository
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f3da41f0954e1811ca5ea7b41c83a453c8cd4696">f3da41f0</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-11-13T10:59:03-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove unused RequestQueue.findRequest()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/287a30082e4569f6fd10f96d3ef0dafe9d0d6628">287a3008</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-11-13T15:31:06-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update version number to 11.5.0-alpha2
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/7b8068f9448ed88de9ee7e040fe3017f62e2de55">7b8068f9</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-11-13T17:04:12-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update PKIServer.create_server_xml()
The PKIServer.create_server_xml() has been updated to use
ServerConfig to create/update server.xml.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/195056c9607a67dbbdfd9e0b2a5d9800bda5d34c">195056c9</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-11-13T17:07:43-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove unused PKIServer.remove_lockout_realm()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/7405a0eb35b5f1dba6ca49c043f3daba6e931452">7405a0eb</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-11-13T17:08:21-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove unused PKIServer.remove_default_user_database()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/0222dc4fbff63db0a3f3b20e0e478d0c051f30c9">0222dc4f</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-11-13T17:09:43-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove unused PKIServer.add_rewrite_valve()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/fab992249f71d1e8698adc86a493210f067a9241">fab99224</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2023-11-15T11:47:55+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Implement CA Info REST v2
The code of CAInfoService.java has moved to CAEngine and used for the
current API and the new v2 API.
Introduced a base servlet for all CA APIs and the servlet for the Info
end-point.
No code changes performed.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d046a7eaaf45751f4b9fbddd14e6457d2abd4ef1">d046a7ea</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-11-15T09:19:50-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add pki-server cert-request
The pki-server cert-request has been added to simplify creating
CSRs for system certs so it's no longer necessary to specify the
NSS database path, password file, CSR path, and also to fix the
file ownership.
The cert_folder(), cert_file(), and csr_file() in PKIInstance
have been moved into PKIServer so they can be reused. The
cert_folder() has been renamed to certs_dir() for consistency.
The PKIServer.create() and instance_layout.py have been updated
to create the certs folder so it's guaranteed to exist.
The RemoveCertCSRfromConfig upgrade script has been updated to
use the new methods in PKIServer.
The tests for installing CA with existing NSS database and
existing HSM have been updated to use the new command.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/3f50096e65474fbfa0cf2f5224ec9c13b6f5718c">3f50096e</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-11-15T14:46:22-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update pki-server cert-create
The pki-server cert-create has been updated to simplify creating
a system cert. It will use the server's NSS database directly and
RSNv3 serial numbers so it can be used before the CA subsystem is
created or when the server is down. It will use the CSR in
/etc/pki/pki-tomcat/certs and store the new cert in that folder
as well.
The tests for installing CA with existing NSS database and HSM
have been updated to use this command.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/bd36dbf3eec6cda4508588acf0d670278db45658">bd36dbf3</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-11-15T14:46:49-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Replace pki_instance_name with PKIServer.name
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c5bb98428974a8af68b1e275100f325167d0a2e6">c5bb9842</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-11-15T14:46:49-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Rename PKIDeployer.subsystem_name to subsystem_type
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/20f17993072c12aa024f2a093ba0e63792c14c9e">20f17993</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-11-15T14:46:49-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Replace pki_subsystem with PKIDeployer.subsystem_type
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/da09ae205464ec2402a217494a675fe53eda92f8">da09ae20</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-11-15T14:46:49-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Replace pki_user/pki_group with PKIServer.user/group
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/169c68f359417a5a8d4abb5b5ac787c43f4dfc93">169c68f3</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-11-15T22:25:45-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update pki-ca-run
The pki-ca-run has been updated to configure CA to not create
DS connections during startup.
The CA container test has been updated to start the CA before
the DS.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/24a66c3f3ace8c38ed4c475a7ff18e4d89a288d3">24a66c3f</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-11-16T08:29:25-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update pki-server cert-import
The pki-server cert-import has been updated to provide options
to specify the nickname and token so that the cert can be
imported before creating any subsystem in the instance.
The tests for installing CA with existing NSS database and HSM
have been updated to use this command.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/4e42191d43aee9516ba2e994e2e90d3ae68873dc">4e42191d</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2023-11-16T10:26:00-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Bug 2246422 ServerSideKeygen static SKID (#4597)
This patch intends to address the bug where in the case of
ServerSide keygen, a static SKI extension was injected as
a result.
fixes https://bugzilla.redhat.com/show_bug.cgi?id=2246422
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/048becdfcf95200c6705b6cca03b529b3b497cf3">048becdf</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-11-16T13:11:59-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove unused PKISubsystem.prefix
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e94640d5ef28aa76ba9a75c756df84ae591d6b99">e94640d5</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-11-16T13:12:42-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix PKISubsystem.type initialization
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ae6e19e634e30e29133bda77ca98226a3a85e140">ae6e19e6</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-11-16T13:20:07-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update SubsystemCLI.getEngineConfig()
The SubsystemCLI.getEngineConfig() has been updated to use
the proper subsystem conf folder instead of the backward
compatibility link.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/efca54c15ee32d24ddaf3d4173e46958807e90b7">efca54c1</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-11-16T14:38:40-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Replace PKIDeployer.symlink.create() with PKIServer.symlink()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/08153dbfe0396c6fbbda3b2da5ed613b4ec463fe">08153dbf</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-11-17T10:08:47-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Restore support for cert bundle in pki_cert_chain_path
The NSSDatabase.import_cert_chain() has been modified
to support importing cert bundle by converting it into
a PKCS #7 file, then import it using the existing code.
The test for installing KRA on a separate instance has
been modified to use a root CA and a sub CA, then use
a cert bundle in the pki_cert_chain_path param.
The NSSCertImportCLI has been updated to avoid an NPE
if the nickname is not specified.
https://bugzilla.redhat.com/show_bug.cgi?id=2250162
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/936b26ea3af4e53b5b4164cd41b620441f82f1c9">936b26ea</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-11-17T10:37:32-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update instance_layout.py
The instance_layout.py has been updated to create the folders
and links earlier.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/560be6e5a4f73cbc24eb572a4c494d34f712909c">560be6e5</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-11-17T11:30:12-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update version number to 11.5.0-alpha3
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/36e4493427f0c0d0f9329c8372744050f7e9dfe5">36e44934</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-11-27T14:17:37+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update DS connection test
The steps that check DS backends and user have been moved into
DS connection test.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ace8e9b539baff5971c084dd7d764958bbb2d887">ace8e9b5</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-11-27T03:16:53-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add change log for pki-server status
[skip ci]
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/25219a6cfd5067f0404bbe29dbc7174e64cbba2c">25219a6c</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-11-27T07:01:51-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update test for installing CA with existing DS
The test for installing CA with existing DS has been modified
to create the system and admin certs, then set up DS (including
creating the subsystem and admin users with certs), then finally
install CA with subsystem and admin users already created in
the DS.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/0753e8dbd8db26b0997d35ae8e1d3b328a7183f6">0753e8db</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2023-11-27T15:03:43+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix CRMFPopClient on FIPS environment
When FIPS is enabled RSA key generation cannot have both temporary and
sensitive to false.
Since temporary is defined from a command option the sensitive is set to
null so the default for the environment will be used (true if FIPS is
enabled and false if FIPS is disabled).
Fix BZ Bug 2250716
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/0ed9b8c3ade2ca0de0d6fecf4dba2890eb1ec917">0ed9b8c3</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-11-28T08:36:43+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update PKIDeployer.configure_server_xml()
The PKIDeployer.configure_server_xml() has been updated
to check whether the AprLifecycleListener exists before
removing it.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a15ae59157c92f7b9ad70559ca0af181871e11fe">a15ae591</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-11-28T08:36:43+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update instance_layout.py
The instance_layout.py has been updated to update/overwrite
existing instance config files.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/2ac7ae171109969cec06e87e8a24e1d609473c9b">2ac7ae17</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-11-28T06:23:15-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add pki-server <subsystem>-create
The pki-server <subsystem>-create command has been added to
create a basic subsystem with the initial files/folders which
will allow the admin to run other pki-server <subsystem>-*
commands to prepare the subsystem database.
The test for installing CA with existing DS has been modified
to use pki-server <subsystem>-* to create the subsystem, set
up database connection, VLVs, database user, and admin user.
The initialization.py has been modified such that pkispawn
can finish the existing subsystem installation.
The PKISubsystem.create_conf() has been modified to create
the initial CS.cfg and registry.cfg.
The subsystem_layout.py has been modified to overwrite the
existing CS.cfg, but in the future it should preserve the
parameters already set in the existing file.
The PKIServer.load_subsystems() has been modified to create
the PKISubsystem object if the subsystem folder exists
regardless of its current content.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6adb8dd366e3ca2d4ba0405e6d586b3b2b1f5282">6adb8dd3</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2023-11-28T17:32:53-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>RHCS-4630 (part 2) Add SHA-2 support to Server-side Keygen
I'm adding support of SHA-2 to Server-Side keygen.
Since there was a recent ticket in similar area,
it could sort of be considered relating to it.
Adds SHA-2 support to https://bugzilla.redhat.com/show_bug.cgi?id=2246422
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/93c666ef50a751e410cd056ba41444ad5cb8d4f0">93c666ef</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-11-30T07:47:57+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add pki-server <subsystem>-db-index-add/rebuild
The code that adds and rebuilds DS database search indexes in
SubsystemDBInitCLI has been moved into SubsystemDBIndexAddCLI
and SubsystemDBIndexRebuildCLI, respectively, such that they
can be used more independently.
Similarly, the PKISubsystem.init_database() has been split
into add_indexes() and rebuild_indexes().
The pki-server <subsystem>-db-index-add/rebuild commands have
been added to execute these operations from command line.
The test for installing CA with existing DS has been updated
to use the new commands.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/daffa765f9e28b2dc370fb1302fa2edb1b25f466">daffa765</a></strong>
<div>
<span> by Fraser Tweedale </span> <i> at 2023-11-30T10:11:15+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>acme: return proper error on malformed account payload
ACMEAccountService currently throws an uncaught exception if decode
the account object payload fails. This results in the server
responding 500 Internal Server Error. Respond with status 400 and
a proper problem document instead.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/eb5db84499a317523f49cfc990133b770150e1fa">eb5db844</a></strong>
<div>
<span> by Fraser Tweedale </span> <i> at 2023-11-30T10:11:15+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>acme: implement POST-as-GET for accounts
Some ACME clients POST-as-GET the account resource, expecting to
receive the account object (for an existing account). In
particular, mod_md does this and certificate renewal fails when it
cannot read or verify the account information.
The ACME protocol does not explicitly require this behaviour. But
on the other hand, it is not surprising that clients assume they can
do it, and it arguably is surprising if an ACME server does not
provide it.
So let's implement it. The change itself is trivial: when payload
is empty, POST-as-GET is implied (RFC 8555 section 6.3). In this
case, return the ACMEAccount object (which we already have at hand)
unchanged.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/1c6313313631961d3d2d7f628b9526df03b58679">1c631331</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-12-01T19:24:39+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update security domain tests
Some KRA/OCSP tests have been updated to check the security
domain configuration after installation.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c0048dfd8b9fefef7d5b63a6d8043098eaf9de26">c0048dfd</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-12-04T07:05:05+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove unused PKIDeployer.verify_subsystem_does_not_exist()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f55ce44469eefafb6cee025e1afc7013f348b670">f55ce444</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-12-04T07:05:05+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove unused Namespace.collision_detection()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d2e6edfd1b8989961c09784962f3134127dc9968">d2e6edfd</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-12-04T07:52:15+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Simplify PKIDeployer.setup_security_domain()
The code in PKISubsystem.configure_security_domain() has been
merged into PKIDeployer.setup_security_domain().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/49d8fca8a5c9d3092c362562dba987eee59feb47">49d8fca8</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-12-04T07:52:17+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Simplify PKIDeployer.setup_security_domain_manager()
The code for cloning a security domain manager has been moved
under pki_security_domain_type == existing since the clone
will join the existing security domain.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/9de2d9cf46a75b8a87ff6d751e0f7c42b4728f03">9de2d9cf</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-12-04T07:52:22+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Simplify SubsystemDBReplicationCLI name
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ef66910b5bd79eb3bd2f99b3248d8195373b8498">ef66910b</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-12-04T07:52:25+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up subsystem_layout.py
The code that creates the symlinks has been moved into
PKISubsystem.create(), create_conf(), and create_logs().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d82957381497412ec8f9fad8bf491f50891540db">d8295738</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-12-04T07:52:28+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update PKISubsystem.create_conf()
The PKISubsystem.create_conf() has been modified to preserve
the params in the current CS.cfg if it exists.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f793f0a8001a09eceb72301373e89d70ddb63aa6">f793f0a8</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-12-04T07:52:31+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add PKIDeployer.create_cs_cfg()
The code that creates the CS.cfg in subsystem_layout.py has been
moved into PKIDeployer.create_cs_cfg() and also modified such
that if the file already exists it will merge the params instead
of overwriting the entire file.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b296064722a67c60c2553254255d3f8a17ee1205">b2960647</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-12-05T20:35:42+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up default security domain params
The default security domain params in CS.cfg have been moved
into PKIDeployer.setup_security_domain_manager() such that
they will be added only if security domain setup is enabled
in pkispawn.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/30ec75d92096c7b6c437b1b77f62015646427f15">30ec75d9</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-12-05T20:35:42+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update test for installing CA with existing DS
The test for installing CA with existing DS has been updated
to set up the security domain prior to running pkispawn.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/faedd9f9e8f917d70c139b8b6efb20f0eaa12b0a">faedd9f9</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-12-06T18:55:37+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add pki-server <subsystem>-db-init
The pki-server <subsystem>-db-init has been added to initialize
the subsystem database in a single step. By default this will
include configuring DS server, setting up the schema, creating
the base entry, and creating the container entries. The command
provides options to skip these steps if needed. The command also
provides an option to create a new DS backend.
The PKISubsystem.init_database() and SubsystemDBInitCLI.java have
been modified to match options in the CLI.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d88dc8606ad5d655af8e53de3251513d53b23cc8">d88dc860</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-12-07T00:43:53+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up PKIDeployer.create_cert_setup_request()
The PKIDeployer.create_cert_setup_request() has been modified
to check whether the CSR exists before loading the file.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/4154441fffc2c92c2d1eb27911da6f1262444902">4154441f</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-12-07T00:44:14+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up PKIDeployer.store_master_cert_request()
The PKIDeployer.store_master_cert_request() has been modified
to fail if the CSR cannot be stored into a file.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/053577850f21e4ba71f3c2efda85bf165dbdb4a9">05357785</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-12-07T00:44:23+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up PKIDeployer.generate_csr()
The PKIDeployer.generate_csr() has been modified to get the
CSR path using PKIServer.csr_file().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f340c069bffb3bc62370a4e176823f81ccb1dad7">f340c069</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-12-07T00:44:23+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up PKISubsystem.update_system_cert()
The PKISubsystem.update_system_cert() has been modified to get
the CSR path using PKIServer.csr_file().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/cc95f31db0b882ef92d40e46d1b4483cd477e28a">cc95f31d</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2023-12-06T10:07:19-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Bug2253044-AKI-non-SHA1-support
This patch is to address the issue where the AKI would not match the SKI
in the case when SHA-1 is not selected for calculationg SKI for root ca.
CA profiles have also been changed so that the SKI will come before AKI
so that SKI could propagate to AKI properly in the case of a root CA.
fixes https://bugzilla.redhat.com/show_bug.cgi?id=2253044
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/bfb2add9b5d0a68cf8912d1f3927374e2243f29f">bfb2add9</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-12-11T12:00:10+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update version number to 11.5.0-alpha4
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/2534b1ab6d4f965cf4ece6d2f487f9d41f21ec84">2534b1ab</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-12-11T16:30:29+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update getter methods in LDAPConfig
The getter methods in LDAPConfig have been modified to return
null if the params are not defined.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/469c06af0062cef8366535691b4d325e4305cdc3">469c06af</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-12-11T16:30:48+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add setter methods in LDAPAuthenticationConfig
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/cbcf76a6ec3bf2be5785c5953ea67a98b0ab6c30">cbcf76a6</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-12-11T17:16:34+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Rename LDAPConfigurator.initializeConsumer()
The LDAPConfigurator.initializeConsumer() has been renamed to
initializeReplicationAgreement().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d9b0fd7fa809cc8a57e2fe022fde22e9011bec5e">d9b0fd7f</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2023-12-11T17:10:01+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Implement GET verb for /ca/v2/certs/<id> REST end-point
This replicate the current behaviour imeplemented in
/ca/rest/certs/<id>.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/20cfb69eba06ed482452884cfde05bb2711e4f91">20cfb69e</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2023-12-11T17:10:01+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Implement v2 REST end-point for /ca/v2/certs
Implement the REST operations:
- GET of /ca/v2/certs
- POST to /ca/v2/certs/search.
These implement the behaviour of the current REST operations (see [1, 2]). The new version is not based on RESTeasy framework for the REST operation and the DB searches have replaced VLV with paged queries.
The only differences with the previous implementation are:
- the total value now show the number of returned item;
- the number of returned entry is limited (this is hard-coded for now).
1. https://github.com/dogtagpki/pki/wiki/CA-List-Certificates-REST-API
2. https://github.com/dogtagpki/pki/wiki/CA-Search-Certificates-REST-API
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/dd3b90963380c477079f104bc894739f572a2bd4">dd3b9096</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2023-12-11T17:10:01+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Tidy up CertServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/1ea098556dc8ec388d7efdda9af68d01c7e382e1">1ea09855</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2023-12-11T17:10:01+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix Cert REST api v2 output format
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e9861835e3a2bf3456784be2a0f8b8f6b6a69fb2">e9861835</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-12-12T12:13:01+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update test for CA cloning with replicated DS
The test for CA cloning with replicated DS has been updated to
import the primary CA's system certs and keys into the secondary
CA's NSS database prior to running pkispawn so it's no longer
necessary to specify the PKCS #12 path and password for pkispawn.
The ConfigurationFile.verify_predefined_configuration_file_data()
and initialization.py have been modified such that the PKCS #12
path and password are no longer mandatory for cloning.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/bc04a8e5ac20e71d2b7c031dc029d1261343abb8">bc04a8e5</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-12-12T12:13:01+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add pki-server <subsystem>-db-repl-agmt-init
The pki-server <subsystem>-db-repl-agmt-init has been added
to start initializing the replication agreement and wait
until it's complete.
The SubsystemDBReplicationSetupCLI has been modified to no
longer include initializing the replication agreement.
The test for CA cloning with replicated DS has been updated
to use the new command.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f1c880dd240aa8ad93fd20b91897d946e3799189">f1c880dd</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-12-12T12:50:55+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up SubsystemDBReplicationAgreementInitCLI
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/4f80ab69a9870ce64c276dc3755c64e0d2122b1a">4f80ab69</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-12-12T12:50:55+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Refactor LDAPConfigurator.createReplicationManager()
The LDAPConfigurator.createReplicationManager() has been
modified to take a bind DN instead of a bind user.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/654a46956e9533172933c8f576e3b79505ba978b">654a4695</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-12-12T12:50:55+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Split LDAPConfigurator.setupReplicationAgreement()
The LDAPConfigurator.setupReplicationAgreement() has been split
into enableReplication() and createReplicationAgreement().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/281f21c7e0d386d905f565cc1189df276f479da9">281f21c7</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-12-12T12:50:55+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Split SubsystemDBReplicationSetupCLI.setupReplicationAgreements()
The SubsystemDBReplicationSetupCLI.setupReplicationAgreements() has
been split into enableReplication() and createReplicationAgreements().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/7f227a4e5d34ca0c5dc862deb5aae75655a53360">7f227a4e</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-12-13T11:11:21+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Log running threads in subsystem
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/8adea56f483b59b4a5c43045ef611431d402ddc5">8adea56f</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-12-13T12:27:12+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update CA clone tests to check DS replication config
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e37cf9c15dd3b5186671c6395ef044d0c6bd772e">e37cf9c1</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-12-13T14:00:11+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update IPA clone test to check DS replication config
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a8bfd1d84b520fc7d471001fc1f5690cb6ad3b48">a8bfd1d8</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-12-13T18:01:44+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add pki-server <subsystem>-db-repl-agmt-add
The pki-server <subsystem>-db-repl-agmt-add has been added to
create DS replication agreements prior to running pkispawn.
The SubsystemDBReplicationSetupCLI has been modified to no
longer create the replication agreements.
The PKIDeployer.setup_database() has been modified to create
the replication agreements in both the master and the replica.
The test for CA cloning with replicated DS has been modified
to use the new command.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/335c870551f64f3df3637f84132dbdfd526dd2a9">335c8705</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-12-14T16:08:00+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add pki-server <subsystem>-db-create
The pki-server <subsystem>-db-create has been added to create
a DS backend for the subsystem.
The pki-server <subsystem>-db-init has been updated to no longer
provide a --create-backend option.
The test for CA cloning with replicated DS has been modified to
use the new command.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a9e002fd7dcc00475bb5392b8a860fc7d6a736e9">a9e002fd</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-12-14T19:01:43+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add pki-server <subsystem>-db-repl-enable
The pki-server <subsystem>-db-repl-enable has been added
to enable replication on a single DS instance. This command
replaces the SubsystemDBReplicationSetupCLI which enables
replication both on the DS master and the replica at the
same time.
The test for CA cloning with replicated DS has been updated
to use the new command.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/38cd57c203a8f5c03b60c3981554b64b21c5eb27">38cd57c2</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2023-12-14T15:33:29+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix the update to 11.5.0
Check and create the folder for every subsystem update, beside the
instance update.
During the update certs and csr are removed from CS.cfg file and stored
in `<config>/certs` folder if they are not in the internaldb.
The folder creation for the instance was done after update the subsystem generating an error and stopping the update.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/efc6fc63171bfdfc8c7eee7bdd39d2852d85fb91">efc6fc63</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-12-14T22:04:31+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove unused pki_theme_* params
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/211ebb5094fcca58eb5c42b6ac24454d5da4c997">211ebb50</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-12-14T22:04:31+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix ipa-artifacts-save.sh
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b10869eb671fbbc998e8502cebfbca31b77e24a2">b10869eb</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-12-14T22:04:31+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add PKIDeployer.setup_replication()
The code that sets up replication in PKIDeployer.setup_database()
has been moved into PKIDeployer.setup_replication().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/fd79ec58232d5eb087c37fa1255718cea1fb1cd6">fd79ec58</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-12-14T22:04:31+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update clone tests to check schema replication
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/0c7cadec1760ddf9668239b2e7e04884c50668ab">0c7cadec</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-12-15T01:07:48+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update test for CA clone with replicated DS
The test for CA clone with replicated DS has been updated
to create search and VLV indexes manually since it will call
pkispawn with pki_ds_setup=False which will skip those steps.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b0df74eebfaaa72311506d535a241695743a40c8">b0df74ee</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2023-12-15T01:59:17+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move PKIServerFactory into pki.server
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/2e5ee9c18e0713f839b03b61f03bddb1277c8f77">2e5ee9c1</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2023-12-21T18:18:43+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update wait-for-build action to the new action version
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6a72117809075aa20d77bb295567b4edf6ef2bab">6a721178</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-01-08T18:52:48+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add opsFlagMask for HSM key pair generation
Default operation flags does not work for some HSM so a new mechanism is
introduced to allow a custom flag list. The certificate generate in the
hsm can be customised in pkispawn config file with `pki_<cert>_opsFlagMask` where `<cert> is one between:
- audit_signing
- sslserver
- subsystem
- ca_signing
- ocsp_signing
- storage
- transport
- ocsp_signing
The value is a comma sepated list of flags (case insensitive) which can
be: encrypt, decrypt, sign, sign_recover, verify, verify_recover, wrap,
unwrap AND derive.
The same flags can be used with the command `pki nss-key-create` where
the new flag `--ops-flag-mask` is added. The value is the a csv as
above.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/dd2115ec8c7857948b268593d6c4f10d9adcdd26">dd2115ec</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-01-08T18:52:48+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add opsFlag for HSM key pair generation
Add the second parameter to pkispawn in other to customise the key par generation in HSM. The new config parameter is `pki_<cert>_opsFlag`. The `<cert>` is the id as defined for the parameter `pki_<cert>_opsFlagMask` and they have the same values
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/742706738d377c0930c9977f09ce0fe61c322b09">74270673</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-01-08T18:52:48+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add test for pki_*_opsFlag and pki_*_opsFlagMask
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/185a8658405d82332e7583c17442dfb6a19c371e">185a8658</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-01-08T18:52:48+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Renaming the opetion ops-flag and ops-flag-mask
The option are renamed to be more coherent with their meaning as:
- op-flags
- op-flags-mask
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/95c7a42c32e8e57067489596f7e7c70fdbac9a28">95c7a42c</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-01-09T01:36:25+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up test for CA clone with replicated DS
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e095113aa5dcdc45f0914faf3402d69f839c1d47">e095113a</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-01-09T01:36:25+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up test for CA with existing DS
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/57548bfeea4d6e8aa88180d1aa5de0e92a06ad43">57548bfe</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-01-09T01:39:32+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update wait-on-check-action in publish job
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6cbeda82a0328bacb2265b66723ee9e43762d9c4">6cbeda82</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-01-09T14:39:20+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Convert ca-cert-find server command to paged search
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/68e43fdf5e31905d9b152cea455c62bfce06bddb">68e43fdf</a></strong>
<div>
<span> by dependabot[bot] </span> <i> at 2024-01-09T15:50:52+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Bump ansible from 7.0.0 to 8.5.0 in /tests/dogtag/pytest-ansible
Bumps [ansible](https://github.com/ansible-community/ansible-build-data) from 7.0.0 to 8.5.0.
- [Changelog](https://github.com/ansible-community/ansible-build-data/blob/main/docs/release-process.md)
- [Commits](https://github.com/ansible-community/ansible-build-data/compare/7.0.0...8.5.0)
---
updated-dependencies:
- dependency-name: ansible
dependency-type: direct:production
...
Signed-off-by: dependabot[bot] <support@github.com></pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/3b625f2bd7046e5eb766f7af8a891ac5e10f92be">3b625f2b</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-01-11T06:51:31-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add test for KRA clone with replicated DS
A new test has been added to verify installing CA and KRA
subsystem with DS, cloning the CA and KRA databases in DS,
then installing CA and KRA clones using the cloned CA and
KRA databases.
This process allows DS cloning to be done separately from
CA and KRA cloning which could prevent pkispawn from timing
out if the database is large.
https://github.com/dogtagpki/pki/wiki/Installing-CA-Clone-with-Replicated-DS
https://github.com/dogtagpki/pki/wiki/Installing-KRA-Clone-with-Replicated-DS
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6a4648b79c12ae3f99d389654baaae139aee4dae">6a4648b7</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-01-12T07:13:25-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove preop.admin.group param
The preop.admin.group param defines the list of admin user's
default groups and provides an undocumented way to customize the
groups during installation, but this param can only be used under
certain installation scenarios. Instead of that, it's better to
use the CLI to change the groups after the installation is done.
The param has been removed and the list of admin user's default
groups has been moved into PKIDeployer.setup_admin_user().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/043b1d31dc9a1a638fbbc482b20e92423fee23de">043b1d31</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-01-12T20:13:47+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up PKIDeployer.init_server_nssdb()
The PKIDeployer.init_server_nssdb() has been renamed to
create_server_nssdb(). The code that calls this method has
been moved into instance_layout.py. The code that creates
the link in the subsystem folder has been moved into
subsystem_layout.py.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/28782fac6781fc61a003bb3ee1573836207b8165">28782fac</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-01-12T20:23:17+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up security_databases.py
The code that configures CS.cfg params in security_databases.py
has been moved into subsystem_layout.py.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/4973677cc5188082483022a6b0d1167eda29094f">4973677c</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-01-12T22:42:37+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove redundant PKIDeployer.update_system_cert()
The PKIDeployer.update_system_cert() has been removed since
updating the nickname and tokenname params has been done by
init_system_cert_params().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/aab150db1d1ab59a9d9fcef1648d737f6bfa2680">aab150db</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-01-12T22:56:15+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up PKISubsystem.update_system_cert()
The code that configures the nickname and tokenname params in
PKISubsystem.update_system_cert() has been removed since it has
been done by PKIDeployer.init_system_cert_params(). The method
has also been renamed to store_system_cert_request().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/0a08100e4934de2b5316e17a56cd7adf2a8aecdd">0a08100e</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-01-13T07:46:31+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up PKIDeployer.setup_system_cert()
The PKIDeployer.setup_system_cert() has been modified to process
remote cert first, then self-signed or local cert.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/49e5fe96cdafcbeb889974984aca495241d84881">49e5fe96</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-01-15T11:55:01+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add PKISubsystem.csr_file()
The code that constructs the CSR path for a system cert has
been consolidated into PKISubsystem.csr_file().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/fddf10d8d97a0483d18a1cbc196000759b2cab81">fddf10d8</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-01-15T11:55:02+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update PKIDeployer.setup_system_cert() to reuse existing request
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/749deba74575f598de71e759ded3a0e3cf95cbd1">749deba7</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-01-15T11:55:03+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update PKIDeployer.setup_system_cert() to reuse existing key
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/840e9b2493ab323fb4e118c8aae6068dcca7e18b">840e9b24</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-01-15T15:42:33+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update pki-server ca-cert-request-import
The pki-server ca-cert-request-import has been updated to
support an absolute bootstrap profile path.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e7f83ceb78ebc1bd2e122711228ea7cade73d649">e7f83ceb</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-01-15T15:42:33+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update pki-server ca-cert-import
The pki-server ca-cert-import has been updated to support
an absolute bootstrap profile path.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/80a61fe2c0d4377fa6105a2625eb3d862119f110">80a61fe2</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-01-15T11:32:42+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Using paged search for Search Certificate Web UI
Replacing the VLV search with the paged search for WEB UI search
certificate page. The new search is not sorted by serial number but
since the new pki version is moving to random serial number this sorting
is not useful in future release.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d2fbc5ef1ebecfcd242db5f04d0ee43f40022b99">d2fbc5ef</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-01-15T11:32:42+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Modify ListCert to replace VLV with paged search
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d9dae8b9f637a9b3eebe9dfe7127430b31b9fd1d">d9dae8b9</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-01-15T11:32:42+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update list cert template and tidyup ListCerts
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/095a48192016becfc9f8dace14b4fcabb64a066d">095a4819</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-01-15T20:23:28+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add default ID length for RSNv3
The Repository classes have been modified to generate 128-bit
IDs for RSNv3 if the *.id.length param is not specified.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f4a7455f14ea242c2673809cd07bd9e3af698e64">f4a7455f</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-01-16T08:38:57-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Skip importing certs and requests when pki_ds_setup=False
If pki_ds_setup is set to False pkispawn should not modify the
DS during installation, so the PKIDeployer.setup_system_cert()
has been modified to skip importing the certs and the requests
into CA database in that scenario. With this change the certs
and the requests need to be imported separately.
The CA installation test with existing DS has been modified to
import the certs and the requests into CA database before
calling pkispawn.
https://github.com/dogtagpki/pki/wiki/Installing-CA-with-Existing-DS-Database
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/4dba7bfbb2e5f8009d8ffebc9930f5e6f995638e">4dba7bfb</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-01-16T08:38:57-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update CA container test
The CA container test has been modified to export the certs and
requests provided to the container during startup such that they
can be imported into CA database after startup.
https://github.com/dogtagpki/pki/wiki/Deploying-CA-on-Podman
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/9e387742001bdfbcf551c7ab6acf05ce4e850f21">9e387742</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-01-17T17:24:43+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add test for KRA with existing DS database
A new test has been added to install CA, set up KRA certs and
database, then install KRA with the existing certs and database
instead of creating new ones in pkispawn. This test simulates
restoring KRA from a backup.
https://github.com/dogtagpki/pki/wiki/Installing-KRA-with-Existing-DS-Database
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/12838ce666cce96311f5e55b4a8dc6a04a9366d7">12838ce6</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-01-19T12:38:02+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove redundant NSSDatabase.import_cert_chain() return values
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/fe2619fbd319789e8f9bd9b662fea59af393848e">fe2619fb</a></strong>
<div>
<span> by ut004527 </span> <i> at 2024-01-19T14:57:23+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>fix incorrect words
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/23deaf5339472cfd8ebb2a9c0cbd1f0b9ba697b9">23deaf53</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-01-19T19:59:04+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix support for cert bundle
The NSSDatabase.import_cert_chain() has been modified to
import the cert bundle specified in pki_cert_chain_path as
individual CA certs instead of as a single PKCS #7 cert
chain. This allows the cert bundle to include multiple
unrelated cert chains.
The NSSDatabase.__convert_certs_into_pkcs7() is no longer
used so it has been removed.
The test for CA cloning with secure DS connection has been
updated to include both CA and DS signing certs into a cert
bundle to validate the above changes.
Resolves: https://issues.redhat.com/browse/RHCS-4746
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/2268461f344983cd40b7e39833c86d680781ed96">2268461f</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-01-24T10:37:41+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Updating version to v11.5.0-alpha5
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/cd68b1b5d7d476c316cdedd5eb99cf246dc6bc17">cd68b1b5</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-01-29T23:25:17+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add HSM support for LWCA
The CAEngine.createCA() has been modified to get the token
name from LWCA's keyNickname. If the token name exists,
it will use that token to create the private key and store
the cert. Otherwise, it will use the internal token.
The CASigningUnit.init() has been modified to get the token
name from name from LWCA's keyNickname. If the token name
exists, it will use that token to load the cert and the
private key, and for signing and verification. Otherwise, it
will use the internal token.
The LWCA test with HSM has been modified to verify that the
LWCA cert and key will be created in HSM instead of internal
token.
Resolves: https://github.com/dogtagpki/pki/issues/2412
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/45200b4a41b85313dd1db162bce22f29bafc7d4c">45200b4a</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-01-29T20:34:55+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Make CertRecordPagedList generic
The class `CertRecordPagedList` is renamed to `RecordPagedList` and made
generic to be used with all type of entries available.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b531c4f1329a078366b6cf76b031cef5c38f28de">b531c4f1</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-01-29T14:11:15-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move CertificateAuthority.deleteAuthority() to CAEngine
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/4d968c789bdb5e24fc330c169688be2c88726feb">4d968c78</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-01-29T14:11:15-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Split CertificateAuthority.deleteAuthorityNSSDB()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a1f3dfd74541d70ef661e8064a4f7c369573adb6">a1f3dfd7</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-01-29T14:11:15-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move CertificateAuthority.renewAuthority() to CAEngine
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/2e30e7652844dd9bddb7af931344d12b89866b9e">2e30e765</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-01-29T14:11:15-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move CertificateAuthority.checkForNewerCert() to CAEngine
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/80d81449784fae50649ac92de963486a5b4e52ed">80d81449</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-01-29T14:11:15-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move CertificateAuthority.addCRLIssuingPoint() to CAEngine
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/552000a3fe2de0e3cc222b5aa92c5213e20b16a0">552000a3</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-01-29T14:11:15-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move CertificateAuthority.deleteCRLIssuingPoint() to CAEngine
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b60920f4d4833fe3b956b1caf63cfd9a4b92d3e0">b60920f4</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-01-29T14:11:15-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Rename SubsystemConfig to SubsystemInfoConfig
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/662eba1db0e1345f462b2d6d1ca8eb0d998b13e3">662eba1d</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-01-29T14:11:15-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Replace SubsystemInfo with SubsystemInfoConfig
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/99d24e35d231f103eec979932d1ef732fa5037a2">99d24e35</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-01-29T14:11:15-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Replace CertUserDBAuthentication.CRED_CERT with AuthManager.CRED_SSL_CLIENT_CERT
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/7b44b25813f0b483fb4c465c5325edd2a9acc4d2">7b44b258</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-01-29T14:11:15-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Replace CertUserDBAuthentication.TOKEN_USERID with AuthToken.USER_ID
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/34b286d0a453f3c598007ae89d3a0c44fc1c9d8f">34b286d0</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-01-29T17:02:04-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Replace GetCertStatus.mCA with CAEngine.getCA()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/8258d8fb16a80aa408ebc72eba92c0ba907735ec">8258d8fb</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-01-29T17:02:05-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Replace ServiceGetCAChain.mCA with CAEngine.getCA()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/835e19c3a880dca70298e1cd88b5ee99f9b1358c">835e19c3</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-01-29T17:02:06-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Replace LocalConnector.mSource with CAEngine.getCA()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/452fd831a012d4255fb3d806b64d19eda4203a1f">452fd831</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-01-29T17:02:08-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Replace CAService.mCA with CAEngine.getCA()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/162fad67f26321b39985769cccf2d3a41e4552e5">162fad67</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-01-29T19:30:06-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move CertificateAuthority.init() to CAEngine
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b6a0a77f9fcde423431869eafe1456d000a11d6a">b6a0a77f</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-01-29T19:30:06-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move CertificateAuthority.initOCSPSigningUnit() to CAEngine
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/fe28cd6db05959a3c05c79dfb2c239e4820e6521">fe28cd6d</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-01-29T19:30:06-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move CertificateAuthority.initCRLSigningUnit() to CAEngine
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ac26bccdc313f8a33e29b0dceff98701c07c9478">ac26bccd</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-01-29T19:30:06-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move CertificateAuthority.initCertSigningUnit() to CAEngine
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/070d608344a952fe33304116fa0f6d920f3b04c7">070d6083</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-01-30T11:25:31+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Updating version to v11.5.0-alpha6
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/2236be6883b32d8c17fdfa04fd086b40281ab8d1">2236be68</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-01-30T18:24:37+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Updating version to v11.5.0-alpha7
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b928136c27be51d8d4e3170cfdb6780f4f54d6ba">b928136c</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-01-30T16:15:02-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Split CertificateAuthority.sign()
The code that checks the CA's readiness and measure timings in
CertificateAuthority.sign() has been moved into CAEngine.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/5d57aa9404cd53ae64b8ffea873f273e2faa89f5">5d57aa94</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-01-30T18:37:55-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add CertificateAuthority.fastSigning
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/17c299c5cfc2124ba804bd7f201a7fb8b174f6f7">17c299c5</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-01-30T18:43:55-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add CertificateAuthority.ocspResponderByName
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e8e1ee2e8ff1ceb439c86096af01b246cf38a567">e8e1ee2e</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-01-30T18:44:09-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Replace IOCSPService.validate() with OCSPServlet.validate()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ec8eb4aab3d194421246390c13f917af14dd29f9">ec8eb4aa</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-01-30T18:53:30-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add CAEngine.validate()
The code in CertificateAuthority.validate() that finds
the LWCA to handle the OCSP request has been moved into
CAEngine.validate().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/62df9a609f5e21af2d479403afcdf4c0891a96e9">62df9a60</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-01-30T19:06:32-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add CertificateAuthority.certRepository
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b25a6d80bd7064892c464a252081c982c3fa1e6c">b25a6d80</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-01-31T22:15:14+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add test for LWCA removal
The LWCA tests with internal NSS token and HSM have been
updated to test LWCA removal and validate that the
corresponding LDAP entry, NSS cert, and NSS key are also
removed.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/4874f8ff5b77260c0c82a974ad0d5f176c1659ca">4874f8ff</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-01-31T15:33:42-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move CertificateAuthority.revokeAuthority() to CAEngine
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/647a0863e85a6258510ebb0174274d74d35ca5ea">647a0863</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-01-31T15:33:43-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Split CertificateAuthority.generateSigningCert()
The code in CertificateAuthority.generateSigningCert() that
generates a key pair has been moved into generateKeyPair().
The code that generates a cert request has been moved into
generateCertRequest(). The code that issues the cert has
been moved into CAEngine.generateSigningCert().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/268e32c385c3a324e847688fc76650bb693deacf">268e32c3</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-01-31T15:35:39-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Replace CAAdminServlet.mCA with CAEngine.getCA()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/5c0ba66b88b45a138d7e4e6581cfccc5a4eec0a6">5c0ba66b</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-01-31T18:39:57-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Refactor CAEngine.initSubsystem()
The code in CAEngine.initSubsystem() that initializes the host
CA has been moved into initSubsystems().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/02c0413c81f3475a82a6cebd60a60e47675286a8">02c0413c</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-01-31T18:47:43-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Refactor OCSPEngine.initSubsystem()
The code in OCSPEngine.initSubsystem() that initializes the OCSP
authority has been moved into initSubsystems().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/819837e660d5ba3f9b455ac6bac00bd74017656f">819837e6</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-01-31T18:47:43-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up log messages in CASigningUnit
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f534e081dda892424d176e67ab3b46ad69436f8a">f534e081</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-01-31T18:47:43-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up CA test artifacts
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c3575dd77fce3a930e0eed23e6e5d4c114d72460">c3575dd7</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-02-01T10:22:01-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Split CertificateAuthority.processRequest()
The code in CertificateAuthority.processRequest() that
gets the cert status from database has been moved into
getCertStatusFromDB(). The code that gets the status
from CRL has been moved into getCertStatusFromCRL().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e3a4acc60c8abc3eb8d27f2024c50ff8b76278d4">e3a4acc6</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-02-01T10:32:00-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Refactor CAEngine.addCRLIssuingPoint()
The CAEngine.addCRLIssuingPoint() has been modified to use
the host CA instead of taking a CA param which was always set
to host CA anyway.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/89727ab994e829b66277120e90cafab799c82275">89727ab9</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-02-01T10:32:29-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Replace CRLIssuingPoint.getCertificateAuthority() with CAEngine.getCA()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/df80dee6dd7f226ea4813b1085f6628c04839dfd">df80dee6</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-02-01T10:32:29-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Replace CRLIssuingPoint.mCA with CAEngine.getCA()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/946446369ba286189ca43da29a4e16eedf83b5cb">94644636</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-02-02T18:41:11-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update log messages in CMSEngine
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6c3e86d64c239f8d67b24375d30f447c0652acac">6c3e86d6</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-02-08T11:57:04+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>New list requests using paged search
Add paged requests without VLV to RequestRepository and a new method to list requests in CMSRequestDAO
The new method to list the requests is based on paged searches
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/1613f7c6e9ad0f8f96ac56479266143771832479">1613f7c6</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-02-14T08:50:00-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add pki-server ca-profile-find
The pki-server ca-profile-find command has been added to list
the profile records in the profile database.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/7f48f40214d4d0d0a61f6edbb9f67dcec5e0ff23">7f48f402</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-02-14T08:50:00-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add pki-server ca-profile-mod
The pki-server ca-profile-mod command has been added to modify
a profile record in the profile database.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a064ebe7233baae4f8831d4880b5cacb485263d2">a064ebe7</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-02-14T08:50:00-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add test for KRA with ECC
A new test has been added to validate installing KRA with ECC
certs (except for storage and transport certs) then archive
ECC keys using CRMFPopClient and pki client-cert-request.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a58a63b9251a5dec76a2daf04e4fdb2dcd7ae0ec">a58a63b9</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-02-15T15:16:03-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update actions/checkout
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d45f1c2b5801d878d27146ea3f2f50a4d8b3ece6">d45f1c2b</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-02-15T15:16:03-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update actions/cache
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d39e5c7961bc05f803e939eac4086a77b94232a3">d39e5c79</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-02-15T16:37:49-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update actions/setup-java
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/700ecb107f75710186a345307c788130b47d26cf">700ecb10</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-02-15T16:38:39-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update actions/upload-artifact
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/05099526e32459e216ab23cc09737e971c9826d2">05099526</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-02-15T16:39:32-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update docker/setup-buildx-action
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/7384e4498fe25621a8e21d7c5155b5b849f88bb9">7384e449</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-02-15T16:40:21-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update docker/build-push-action
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/90a8d1adc20d49418bf9826a601da6cd1ed872f0">90a8d1ad</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-02-15T16:41:35-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update docker/login-action
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c25f71ef97e3d5ba8347b273d0e85028bc9e66e7">c25f71ef</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-02-16T09:27:13-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix test for CA with request notification
In Fedora 40 the mailx package was replaced with the s-nail
package. The test for CA with request notification has been
updated to expect different messages depending on the package
actually installed.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/768ff136e4cc022085d60070fd3d2eae1eb04aea">768ff136</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-02-16T09:29:20-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Refactor PKIServer.get_webapps()
The code in PKIServer.get_webapps() that gathers the info
of a webapp has been moved into PKIServer.get_webapp().
Some tests have been updated to use pki-server webapp-find
to list the webapps deployed in the instance.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f7e2660cb811f5c44610b94a89125c92627a4f7e">f7e2660c</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-02-16T09:29:20-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add pki-server webapp-show
The pki-server webapp-show has been added to show the info
of a deployed webapp. Some tests have been updated to use
this command.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/252456e757048949c824b5a921f43f2a9960e922">252456e7</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-02-16T09:29:20-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix pki-server subsystem-show
The PKIServer.load_subsystems() has been modified to skip
loading a subsystem if the subsystem folder doesn't exist
or is empty. This will restore pki-server subsystem-show
to work more consistently as in the previous PKI version.
Resolves: https://issues.redhat.com/browse/RHEL-21568
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/358aada349d18ca921b519400dd82d4fed479e85">358aada3</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-02-19T11:54:04+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Adding filters for v2 APIs
Since v2 rest API are implemented without JAX-RS support the
interceptors used in current implementation for the authentication have
been converted to filters maintaining very similar functionality.
The only difference is in the audit log because it will not be logged
the access method but the accessed REST URI.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/442be48bb5a8bfcc5b9564e7ac263dce4e78df70">442be48b</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-02-19T11:54:04+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Implement GET method for /ca/v2/agent/certrequests APIs
The GET method allow to list the cert requests and retrieve one for
review. The main difference with the old implementation is that the
start parameter is not anymore a request id but an index in the list of
requests.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/664dab5f17607e59c043e77ea1c6eb0f6aa506fd">664dab5f</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-02-19T11:54:04+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Implement POST method for /ca/v2/agent/certrequests APIs
The POST methods allow all the operation on the certrequest. These are
the same available in the previous implementation and support the same
parameters.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/2a24da92876de6d887656ce563b6533a2b0bc271">2a24da92</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-02-19T11:54:04+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Tidyup /ca/v2/agent/certrequests APIs implementation
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/00fdb2193327e6995b0ac75d2948968b06d358a8">00fdb219</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-02-19T22:40:07-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix BASE_IMAGE param
The Azure pipeline has been modified to support BASE_IMAGE
param so it can be used to test different platforms.
The RPM spec file has been modified to depend specifically
on maven-local-openjdk17 to ensure that the build is done
consistently using OpenJDK 17 across platforms.
https://github.com/dogtagpki/pki/wiki/Configuring-Test-OS
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/5978a49fd136463b38bcaefd45e55a3aa51abaee">5978a49f</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-02-20T14:57:40-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix REGISTRY_NAMESPACE param
The CI has been updated to install packages from the specified
REGISTRY_NAMESPACE.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/2d5051a68841ed47ffe7436a3a6afa8193728015">2d5051a6</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-02-21T17:54:49+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove AuthorityMonitor tracking update
The tracking update allows to avoid reloading an authority if no changes
have been done to the record. To verify the changes it is used the
LDAP attribute `entryUSN` which is updated by DS server on any change.
The tracker update mechanism has a race condition when an entry is
modified by the `CAEngine`. When the method `modifyAuthorityEntry()` is
invoked, this will update the tracker and no CA are reloaded by the
`AuthorityMonitor` thread because the tracker is already to the newest
value. However, in case of CA clones, when a sub CA is created in the
primary CA, the clone will get the record but there is no serial.
The CA is registered and when the related keys are retrieved the
record is update with the serial. The update is done by the
`modifyAuthorityEntry()` which will update the trackers. As a result the
`AuthorityMonitor` will not update the CA object and when used
it will miss the serial so some operations will fails.
Since, the `trackerUpdate` method has not other impact has been removed so all
trackers are managed by the `AuthorityMonitor`.
Fix #4669
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e4de367fe1924e4c3573d8ea82ead76f9c290461">e4de367f</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-02-21T13:22:54-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix CI failures
The Azure pipeline has been updated to install the latest JSS,
LDAP SDK, and IdM Console Framework from Quay since they might
not be released yet into the official Fedora repository.
The default value for REGISTRY_NAMESPACE has been changed from
the repository owner to 'dogtagpki' such that the pipeline can
run properly without having to set up a private repository in
Quay.
The RPM spec file has been modified to depend on maven-local
since maven-local-openjdk17 is not available on CentOS/RHEL.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/aa8f6e14b541e647fb9184a0997307eed85f1175">aa8f6e14</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-02-21T15:01:40-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add test for subca in ipa clone
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/9890872ee9ecf41eaeeb856b53b4cd4fb4c7d7d0">9890872e</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-02-21T15:03:00-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Updating version number to 11.5.0
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d8df8dabb724133fc2beffe6bc7f0f3c1f85fd03">d8df8dab</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-02-22T11:20:00+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Sonar action for pull requests
Fix problem with absolete action github-script.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/653c64d0ba558e96c603a8b529f7cb0f6658ec2e">653c64d0</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-02-26T18:23:02-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update version number to 11.6.0-alpha1
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/8686e904d74deccfe12926b3251c2b02943eb5bc">8686e904</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-02-28T17:40:12-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update IPA tests to display logs
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ddc355186233e25d8b5f06ba7d3f9846e5c79461">ddc35518</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-02-28T21:09:04-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update CA tests to capture pkidestroy logs
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/0f12ab6a28e55b0e2ccc03d1d7da4ef7d0f4b10a">0f12ab6a</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-03-01T10:47:19-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add tests for adding multiple LWCAs
New tests have been added to validate adding multiple LWCAs in
plain PKI environment and in IPA environment.
The CASigningUnit has been updated to no longer log an exception
if the cert or key is missing since in LWCA case the exception is
used as a mechanism to trigger the key retriever so it is actually
not a problem. Instead, the exception will only be logged by other
code where the exception indicates a real problem.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ec4e8028a9aa6baa76fedf455b1c87f56fbaf29f">ec4e8028</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-03-04T10:14:52-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update dependencies
The pom.xml files have been updated to support newer JSS,
LDAP SDK, and IDM Console Framework.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/5fcf756eb28ab0b86684bffcb18c0aaa7da885e5">5fcf756e</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-03-05T09:01:28-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix missing dnf builddep in Dockerfiles
The Dockerfiles have been modified to install dnf-plugins-core
regardless of COPR_REPO value to ensure that the dnf builddep
command will work.
Resolves: https://github.com/dogtagpki/pki/issues/4664
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a54409e8b32d881e1f056e82b6a34d7766a43c60">a54409e8</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-03-05T09:51:27-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Merge IDM Console Framework
To simplify package maintenance the IDM Console Framework has
been merged into PKI Console. Dependencies on IDM Console
Framework have been removed.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/3a564d343399df5ed57ec98b80a6074d8cdfa8df">3a564d34</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-03-06T09:46:02-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Java dependencies
The RPM spec has been updated to use Java 21 on Fedora 40 or
later and Java 17 on other platforms.
The Dockerfile has been modified to remove any Java packages
pulled by the existing PKI package to ensure that the build
will be done using the correct Java version.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a6b9d86943df64e513be59b101c8070f6142ed6f">a6b9d869</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-03-06T12:43:10-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up KRA test artifacts
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/0c447bcbe872dcb9f3ab3f8db2e3b2d62e6bd916">0c447bcb</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-03-06T17:55:48-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up keygen.py
The keygen.py has been updated not to call subsystem.save()
after deployer.generate_system_cert_requests() since the
CSRs are no longer stored in the CS.cfg.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/de44f51d03ea335aea7f66aadf95ac5cd3af21ee">de44f51d</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-03-06T18:56:22-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Refactor PKIDeployer.setup_admin_cert() (part 1)
The PKIDeployer.setup_admin_cert() has been modified to take
an optional param to specify the admin cert request.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/0b8685ea166d0e3bc914650864a16498f6c8ecd3">0b8685ea</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-03-06T18:58:56-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Refactor PKIDeployer.setup_admin_cert() (part 2)
The code in PKIDeployer.setup_admin_cert() that loads the
admin cert from a file has been modified to assume that the
file contains a valid cert.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/2fa1722ac50c4ea7a7bef53829ef341efceebd18">2fa1722a</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-03-06T19:09:44-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Refactor PKIDeployer.setup_admin_cert() (part 3)
The PKIDeployer.setup_admin_cert() has been modified to check
whether the admin cert already exists in the NSS database.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/1aa53cfd45e1067ba3e8a2bb184e6b90448c6ff3">1aa53cfd</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-03-07T08:27:34-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Refactor PKIDeployer.create_admin_csr() (part 1)
The code in PKIDeployer.create_admin_csr() that stores the
admin cert request into a file during standalone installation
has been removed since it's never executed and already done
by generate_admin_request().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/08df93678aec183a421d4aa88ccc2306eec25a88">08df9367</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-03-07T08:27:35-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Refactor PKIDeployer.create_admin_csr() (part 2)
The PKIDeployer.create_admin_csr() has been modified to use
generate_csr() to generate the CSR.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e3f557db9b13d17f9fdfb8520ea27a546911c8be">e3f557db</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-03-07T08:27:36-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove unused Certutil.generate_certificate_request()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/70ed384371836e976bbe5d580cd2d1258208d005">70ed3843</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-03-07T12:48:17-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up pkispawn man page
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/bd0441a3fba10e9dab6ec386a60a4beb5b7a84f7">bd0441a3</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-03-07T15:34:18-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up NSSDatabase.get_cert_info()
The NSSDatabase.get_cert_info() has been modified to convert
the PEM cert into Base64 instead of retrieving it again from
the NSS database in Base64 format.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/021ef09d82be975f3a09ff203b42483969dace0b">021ef09d</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-03-07T15:34:18-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update log messages in PKIDeployer.setup_admin_cert()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e2a18e39c61b000114bf269143278a60c3c2e059">e2a18e39</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-03-07T20:52:57-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove unused FindMozLDAP.cmake
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/9b0993f77eeb84df3388f7783c3c560dddeb1aed">9b0993f7</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-03-08T08:29:31-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove unused <subsystem>.admin.cert param
The <subsystem>.admin.cert param was originally used to store
the admin cert for standalone subsystems but it's no longer
used so it has been removed.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/fa8fb26fef0139c100e44ba630a1a272de73e0f4">fa8fb26f</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-03-08T08:45:48-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Drop zlib dependency
The code in tpsclient that used zlib was dropped in PKI 11.1
so the dependency is no longer needed.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/73fd6b978e55598880cf53cc0bf27e9bb6390421">73fd6b97</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-03-11T12:08:23+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Implement method for /ca/v2/certrequests APIs
The methods allow all the operation on the certrequests endpoint.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b15f520ec69e65af8cc3ee4170e557fb74ac98df">b15f520e</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-03-12T17:45:08+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove VLV query from EnrollServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a9c211b15e1b35da7994ee74bd1f53b39a226f77">a9c211b1</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-03-12T12:53:54-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Use gcc option _FORTIFY_SOURCE=3
The RPM spec has been updated to use gcc option _FORTIFY_SOURCE=3
since it's now required by rpminspect. The code that configures
this option in CMake script has been removed to reduce dependency
on CMake.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/58cc026ad851d6c5419fc811532cb45ba8eddefb">58cc026a</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-03-13T09:34:13-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add test for KRA with existing certs
A new test has been added to create KRA with existing system
certs and keys in a PKCS #12 file, their corresponding CSRs,
and the admin certificate.
https://github.com/dogtagpki/pki/wiki/Installing-KRA-with-Existing-Certificates
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/01ad06e90d2299e733a1b06faac9b1ddbfa2e82a">01ad06e9</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-03-13T16:55:20-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Drop sslget
The sslget command has been moved from pki-tools to jss-tools.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/726c63009afede3dcd2a5a01bc8ac66c6b51309e">726c6300</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-03-13T21:18:13-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update log messages in UGSubsystem.buildUser()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a2c528de654c178a0df7e2709b3da2dfaad87a32">a2c528de</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-03-14T09:47:59-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add test for KRA with existing NSS database
A new test has been added to create KRA with existing system
certs and keys in an NSS database, their corresponding CSRs,
and the admin cert.
https://github.com/dogtagpki/pki/wiki/Installing-KRA-with-Existing-NSS-Database
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/5b99fae1dd5c9ddf42b3a3a8db524831f2647ecf">5b99fae1</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-03-15T09:15:02-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update pki-server status
The pki-server status command has been modified to no longer
show the subsystem "Type" field since it's redundant. Instead,
it will show an "SD Manager" field which will indicate whether
the subsystem is a security domain manager. Some CI tests have
been updated to validate this command.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/41b524b1a1c25ef494615e2ac4bd7cf59f50e6ec">41b524b1</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-03-15T09:19:49-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add test for KRA with existing HSM
A new test has been added to create KRA with existing system
certs and keys in an NSS database connected to an HSM, their
corresponding CSRs, and the admin cert.
https://github.com/dogtagpki/pki/wiki/Installing-KRA-with-Existing-NSS-Database
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e8b0de18f0a6628cc871cb687abac4899d27af96">e8b0de18</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-03-15T15:10:24-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update CA tests to capture pkidestroy logs
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/da25445f02020ce7842eb590f5a3eeb290e1fde8">da25445f</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-03-15T18:59:03-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update PKIDeployer.setup_admin_cert()
The PKIDeployer.setup_admin_cert() has been updated to fail
if the pki_admin_cert_file points to a non-existent file.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/eda38d561c8d08eae3f52988702bc1c4a7f5ad9a">eda38d56</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-03-18T08:45:42-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Drop pki_existing param
The pki_existing param is actually redundant and can be removed
safely. Remaining references to this param in pkispawn have
been removed. The pkiparser.py has been modified to deprecate
this param. The CI tests have been updated to no longer use it.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/0f1414041763b4dc49b8ad0d3203fc7257fa5154">0f141404</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-03-19T09:09:25-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Drop p12tool
The p12tool command has been moved from pki-tools to jss-tools.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ccb86eb2a3d6ab38742dab0bbc9fb0470ba156e6">ccb86eb2</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-03-19T10:54:35-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove <subsystem>.standalone param
Previously the <subsystem>.standalone param was used to
indicate whether the subsystem is standalone, and if so
the security domain service would be enabled.
This param is actually redundant since the service can
also be enabled using the securitydomain.select param so
it will be enabled by default in standalone subsystems.
Subclasses of SecurityDomainService have been replaced
by the super class which will enable the service based
on the securitydomain.select param.
Since the <subsystem>.standalone param is no longer used
the upgrade script has been updated to remove this param
from existing instances.
Note: The pki_standalone param is still in use.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/9d26689aab06cdba1f8c3c5bd72633a97cffb680">9d26689a</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-03-19T10:57:18-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update KeyRecoveryAuthority.doKeyRecovery()
The KeyRecoveryAuthority.doKeyRecovery() has been updated to
reuse the existing Request object.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/5f19ac5282eeb85378b9f69e53ee5866c7f6e6a1">5f19ac52</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-03-20T11:08:26-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add test for key archival and retrieval
The basic KRA test has been modified to perform a cert enrollment
with key archival against CA, retrieve the archive key from KRA,
then verify that the archived key belongs to the cert.
The pki kra-key-retrieve has been modified to store the PKCS #12
data returned by KRA into the output file if specified.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/2498b4e158a1d67e8e52fd3302951ec6ce4a7f0f">2498b4e1</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-03-21T09:32:29-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Drop p7tool
The p7tool command has been moved from pki-tools to jss-tools.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/3353bbbee0807e63f1e7651fc2856d6458425640">3353bbbe</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-03-21T11:22:29-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add test for key archival and retrieval in IPA
The basic IPA test has been modified to create a vault,
verify that it is empty initially, archive a private key,
retrieve the private key, and verify the archived key.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/0bbcbdf4fe94d4ae5af2d87ab30fcbc4e3564159">0bbcbdf4</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-03-22T13:14:58+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Implement method for /ca/v2/agent/certs APIs
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e810299c588eba7787d5f90bd62256476428c88b">e810299c</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-03-22T18:26:19+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix log message in PKISocketFactory
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d0100484cffeaa74b90f692be10e0d15e9260cb8">d0100484</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-03-25T09:27:05-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Deprecate revoker tool
The original revoker tool has not been updated for a while
and doesn't seem to be working properly anymore so it has
been removed and replaced with a shell script that calls
pki ca-cert commands to revoke the certs. The shell script
will also generate a deprecation warning.
The pki ca-cert commands for revocation have been updated to
accept multiple serial numbers.
A new test has been added to verify cert revocation scenarios.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e496bb59d32bacba144bb04c2002c0d4f33a36a1">e496bb59</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-03-26T11:46:25-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update ds-container-create.sh
The ds-container-create.sh has been updated to provide options
to specify the suffix and the base DN of the directory.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/1656d4f120777e871b273e725e5eb13e4d908bf1">1656d4f1</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-03-26T11:46:25-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add test for KRA migration
A new test has been added to verify KRA migration by creating
a KRA, archive a key, retrieve the key, create a second KRA,
migrate the database using KRATool, then retrieve the key again
from the second KRA.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/9a31f33e89dd7395338ae71013f613fdfd6fea8a">9a31f33e</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-03-26T22:30:36-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update KRATool to use java.util.logging
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/9039fb329221d0cf66fb0de420a6c4728b85ff6e">9039fb32</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-03-28T11:44:47+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Convert CertStatusUpdate from VLV to paged search
Note: the VLV update was done on ordered elements. With the paged search
elements are not ordered to avoid extra work since the order it is not
relevant for the update.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/3942d22d05de6f9a6f30b2dbeae92a5b1db0e510">3942d22d</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-03-28T11:44:47+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Tidyup CertStatusUpdateTask
Removing useless temporary lists needed to work with VLV
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/13c25e507b1e7ee7fd69cac79c048d4ac73543b2">13c25e50</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-03-28T13:05:57-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update tests to use standard conf dir
Normally the Tomcat conf dir is located immediately under the
instance dir. For PKI server, which is based on Tomcat, the
location is /var/lib/pki/<instance>/conf.
Depending on the deployment scenario the config files might be
mounted from a different location (e.g. /etc/pki/<instance> on
Fedora) and the standard conf dir will be just a link to the
actual location.
To ensure that the tests are valid for all deployment scenarios
they have been updated to use the standard conf dir instead of
the Fedora-specific one.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/176c976aa86e98245a6218bd1477bcf696fd8445">176c976a</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-03-28T13:35:02-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Dockerfile for IPA tests
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/1d043daa83251eb7674541bdf59685bb6f5d5390">1d043daa</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-01T17:25:44-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Refactor CMSEngine.testLDAPConnection()
The CMSEngine.testLDAPConnection() has been modified to take
an LDAPConnectionConfig instead of LdapConnInfo.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ff5866be13151d99ca7641676e0d43ec8302255d">ff5866be</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-01T17:25:44-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Refactor LdapAnonConnFactory
The LdapAnonConnFactory has been modified to take an existing
LDAPSocketFactory instead of creating a new one.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/3267b8c996254d440d60b653794ab0ea0f3aa6d9">3267b8c9</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-01T17:25:44-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Refactor LdapBoundConnFactory
The LdapBoundConnFactory has been modified to take an existing
LDAPSocketFactory instead of creating a new one.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/3e74c8bec71b5d90dfa1ba6fc62f48b22f462442">3e74c8be</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-01T17:25:44-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Removed unused fields in LdapConnFactory
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a0622371f5f4db15ff77c574b6bb9e5a30592dee">a0622371</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-01T17:25:44-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove unused param in LdapAnonConnFactory.init()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/75aceb2dfe1a828122ad50f8e787e29312d7a5f2">75aceb2d</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-01T17:25:44-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove unused param in LdapBoundConnFactory.init()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/507f00451e8be37b9a131948ec1cfc795f76c8b1">507f0045</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-01T18:28:26-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Refactor DBSubsystem
The DBSubsystem has been modified to take an existing
LDAPSocketFactory instead of creating a new one.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/816d40f8cdd45d42f650c5fa0c4cddf27aef367a">816d40f8</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-01T18:57:28-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move KeyRecoveryAuthority.mKeyDB to KRAEngine
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f2bb97b1f9a3e457f2140103fd06d94caa818d6c">f2bb97b1</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-01T19:03:35-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move KeyRecoveryAuthority.mReplicaRepot to KRAEngine
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/3a6346ef582ba94a5b58fd53c78eb1c6b1994f11">3a6346ef</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-02T13:17:44-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move SessionContext to pki-server.jar
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f0bf163a3d27c8302f506d94bcbee1cf46b27520">f0bf163a</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-02T15:09:14-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Consolidate constants for LDAP-based profile auth
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f31d6ac6a6162848257da159bc8cf213c9eb8671">f31d6ac6</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-02T20:37:33-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update CA tests to show DS logs
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/103edf5f356642e6c9aaa0bad94d4148d3bdbfe9">103edf5f</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-02T20:37:33-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update IPA tests to show DS logs
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/21df31f07e7b183fcfd8043b4a4ea503740c93e9">21df31f0</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-02T23:36:20-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix IPA tests
The IPA tests have been updated to gather the logs before
removing the server to ensure that the logs exist.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/62d550ede1905e9fbc4ff4202214292ed43f8d45">62d550ed</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-03T09:32:51-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add test for CA with caDirPinUserCert profile
A new test has been added to set up the auth database using
the setpin tool, then perform PIN-authenticated enrollments
using the caDirPinUserCert profile.
The setpin tool has been modified to remove extra spaces in
the ACI attributes to make it easier to view and verify.
The pki ca-cert-request-submit command has been updated to
provide options to specify the enrollment password and PIN.
The CertRequestDAO.submitRequest() has been modified to get
the PIN from the enrollment request and store it into the
credentials object so that it can be authenticated later by
UidPwdPinDirAuthentication.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/16ad354f711397a398f8c89a91bf4d9b5213f119">16ad354f</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-03T11:50:52-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Refactor DBSearchResults
The DBSearchResults has been modified to no longer implement
Enumeration to simplify maintenance.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/890283c63dcca5e2f904ce66bd3066fedb77312e">890283c6</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-03T11:52:15-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update DBSearchResults.mRes
The DBSearchResults.mRes has been changed into LDAPSearchResults
to simplify maintenance.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/1ff8965343503cba6baa391d7d13f51b213525af">1ff89653</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-08T12:13:03-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update test for file-based CRL publishing
The test for file-based CRL publishing has been modified to
create a user cert and a server cert, revoke the certs, unrevoke
them, and check the cert validity using OpenSSL and NSS tools.
The cert profiles have been configured such that the user cert
has a CDP extension whereas the server cert does not. The AIA
extension has been removed to ensure the validation will be done
using CRL instead of OCSP.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/043ab92c59e392fd6ce3fdb06a0898eb255138f6">043ab92c</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-08T13:01:18-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Rename test for CA with non-default user
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a54130a86d0780681b17868f6bd2584e46e4a42d">a54130a8</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-04-08T23:45:17+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix building flags for C++ code
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/8dca24dd68f64859a719281629f44612a087b296">8dca24dd</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-09T08:32:11-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update docs to use standard conf dir
Similar to commit 13c25e507b1e7ee7fd69cac79c048d4ac73543b2,
the docs have been updated to use the standard Tomcat conf
dir instead of Fedora-specific dir such that the docs will
be valid for all deployment scenarios.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/918104a84dde3e5b3a3ef97a32601ccc957e459e">918104a8</a></strong>
<div>
<span> by Mikel Olasagasti Uranga </span> <i> at 2024-04-09T13:16:55-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Refactor validateSyntaxDNS to support wildcard DNS entries
Previously, wildcard DNS entries like '*.example.com' were failing URI
validation as they are not valid URIs. This commit separates the
wildcard validation logic to handle such cases separately, ensuring
accurate validation for wildcard DNS entries.
Fixes #4556
Signed-off-by: Mikel Olasagasti Uranga <mikel@olasagasti.info>
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/916c58018091b8ebe09754a071e386693c350534">916c5801</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-09T17:38:57-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add PKISubsystem.set_config()
The PKISubsystem.set_config() has been added to track
changes in CS.cfg.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d3e14452c4a02400bf17982e4662c687ad1f55f6">d3e14452</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-12T09:09:45-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Use standard conf dir
PKI server supports two directory layouts: the PKIServer
class uses the standard Tomcat layout where the config files
are stored under the instance folder, and the PKIInstance
class uses the FHS layout where the config files are stored
separately under /etc.
Previously the conf_dir() in these classes returned different
values. The one in PKIServer returned the standard conf dir
under the instance folder and the one in PKIInstance returned
the config folder at /etc/pki/<instance>.
To ensure the code works consistently in all cases scenarios
the conf_dir() has been modified such that it will always
return the standard conf dir, then in PKIServer the conf dir
will be the an actual folder, but in PKIInstance it will be a
link to the actual folder at /etc/pki/<instance>.
https://github.com/dogtagpki/pki/wiki/PKI-Server-Directory-Structure
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a9331953cc61bf4aa4e7792590307c37c7cc3ded">a9331953</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-15T19:58:09-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update LDAP minConns in CLIs
The CLIs have been modified to create an LDAP connection only
when it's actually needed.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/2e5688e38c041856db5e5466c81be197b033a14c">2e5688e3</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-15T19:58:09-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update exception messages in LdapConnInfo
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/61839dc1d6a1de16af704a6430f8d8a2c459cd87">61839dc1</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-15T19:58:09-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove redundant AnonConnection.getFacId()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/0ff34c4983e0fcf4f02e78f8ac39a06d03595ea5">0ff34c49</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-15T20:15:11-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove redundant LdapBoundConnection.connectionFactory
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/bc21f15427a703e8d996fb94889b7374acaed15a">bc21f154</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-15T20:49:44-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove redundant LdapBoundConnFactory.init()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/86fd68d6d075a04cfe7c0779f9bd3a1830564dac">86fd68d6</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-15T20:49:44-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Replace AnonConnection with LdapAnonConnection
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/756269646c92057437874f74fb4112bc91aedc15">75626964</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-15T20:49:44-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Convert LdapAnonConnFactory.mConns into List
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f0429a744c89c491aec5f3444b47c1802375fffb">f0429a74</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-15T20:49:44-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Convert LdapBoundConnFactory.mConns into List
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/9730d2c95a50fb0168b4d55a62c238467329a601">9730d2c9</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-16T08:32:30-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add tests for file types, owners, and permissions
Some CI tests have been updated to check the types (file, folder,
or link), the owners, and the permissions of the files in PKI
server and subsystems.
The test for basic PKI server installation has been updated to
test both the standard Tomcat layout and the FHS layout.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ec502b1a4cad8847ed0dd297c0fc237c4486fd58">ec502b1a</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-16T20:32:45-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix instance removal in KRA OAEP test
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/be1bc5f582f6f9bc54d59e53c37b99eb00e96e1b">be1bc5f5</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-04-17T19:16:13+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add template profile for ServerCert with CRL-DP extension
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/656f08d1cf0096e06d73f0388f0aa601513c656c">656f08d1</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-17T19:16:44-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up PKIServer.create() and remove()
The PKIServer.create() and remove() have been modified to be
more consistent with instance_layout.py.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a20d37b0b380044509441178a9bb85a2231384d9">a20d37b0</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-18T10:29:19-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add tests to check server files after removal
The CI tests have been updated to check the files left on the
system after PKI server removal using pkidestroy and pki-server
remove commands.
Currently their behavior is inconsistent:
- pkidestroy will leave PKI server and subsystem logs files
under /var/log/pki/<instance> folder
- pki-server remove will remove all files
Ideally the behavior should be more consistent. That will be
addressed separately later.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/469fe277abf9cf971e7210432db81e2199ab547c">469fe277</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-18T12:37:08-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add PKIDeployer.remove_server_nssdb()
The code for removing the server NSS database has been
consolidated into PKIDeployer.remove_server_nssdb().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e3dbbcb2dd1cce842934adaec43f627ff948d8e6">e3dbbcb2</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-18T15:20:26-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Disable upstream QE tests
The upstream QE tests are currently not working due to
dependency issues so they have been disabled.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/2a4a271d75b2518028cfaa558ab84be27743228e">2a4a271d</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-19T10:15:37-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update pkidestroy and pki-server remove
pkidestroy and pki-server remove commands have been modified to
work more consistently. Now by default the logs will be retained
so the following folders will remain:
- /var/lib/pki/<instance>
- /var/lib/pki/<instance>/logs
- /var/log/pki/<instance> for instances using FHS layout
The tools will also provide an option to remove the logs if they
are no longer needed.
The tests have been updated accordingly.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/2df73f0d89b59a9de77052dbfd9d9c988e2e5432">2df73f0d</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-19T11:19:49-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Replace LDAPSearchResult.nextElement() with next()
The code that calls LDAPSearchResult.nextElement() has been
updated to call next() instead to ensure that if there is an
LDAPException the code will throw it properly instead of
generating a ClassCastException.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/20a01c933ba1a368aac96d760c18fdc53e6b1738">20a01c93</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-04-20T00:34:42+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove CrlIssuer from template with CRLDP
CRLIssuer MUST not be included if the issuer is the same issuer of the
certificate. Therefore it is update the comment for the user to make it
clear.
See: https://datatracker.ietf.org/doc/html/rfc5280#section-4.2.1.13
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d726feb4cbcea580bee06cbfe7500f6758bff4b2">d726feb4</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-22T08:57:09-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Use standard logs dir
The code, the tests, and the docs have been updated to use the
standard logs dir at /var/lib/pki/<instance>/logs to ensure that
they are valid in all deployment scenarios.
PKIServer.log_dir() has been renamed into logs_dir() to match the
standard logs dir name.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b2cdbd96420c6725f821cde94cd1643d26ad3803">b2cdbd96</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-22T10:19:05-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update log messages in PKIServer.deploy_webapp()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f012c43f19d0dfbb698f7e4e5afd96e5ae45ffab">f012c43f</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-22T10:19:06-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update log messages in PKIServer.undeploy_webapp()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/48e84a5d5bbd826854d1c8cfac51b90119cd40f3">48e84a5d</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-22T10:22:15-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update log messages in PKIServer.makedirs()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/54ec3b7a0676d160a8c15c9e2b344836e82fd01f">54ec3b7a</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-22T10:22:23-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update log messages in PKIServer.symlink()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c90ce15a23bc7fab272dc4e8c18cd616dbda3d13">c90ce15a</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-22T10:22:43-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update log messages in PKIServer.store_passwords()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ef5c1ed43145a7771f82539183ab7e02cc5c5d8c">ef5c1ed4</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-22T10:22:43-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add exist_ok param for PKIServer.copy()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/218f7d280dc99524bfdd76c4c2e91ac09db6af7e">218f7d28</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-22T10:22:43-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add exist_ok param for PKIServer.copyfile()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/adbf5ea40c8b167c536b301079980aeed1d2d854">adbf5ea4</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-22T15:32:31-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update exception messages in LDAPExceptionConverter.toPKIException()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e6e1fe23898a31b9aed77056edb5de9d513e9412">e6e1fe23</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-22T15:32:31-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Rename EDBException to DBException
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/aeb186f057606b71587a6c1270fb184553a5b533">aeb186f0</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-22T15:32:31-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Rename EDBNotAvailException to DBNotAvailableException
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/4e5afe3c0a0e1e5dd12c40bc31f2b3ab6055c875">4e5afe3c</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-22T15:32:31-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Rename EDBRecordNotFoundException to DBRecordNotFoundException
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/1054cf4e1cbbd13237c8f66de29d26ee3107286a">1054cf4e</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-22T16:14:08-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add LDAPExceptionConverter.toDBException()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6cbe657c90093dd516f573d8ca4a8484124c15ce">6cbe657c</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-22T17:18:18-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add DBRecordAlreadyExistsException
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/0576adc458c9fb289a9c13aa329e2e38af274702">0576adc4</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-22T17:25:28-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update ELdapException to extend DBException
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/413098b92ebc16ff1c4727221c2123954116ad37">413098b9</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-22T17:25:28-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update DBSubsystem to use DBException
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/65a156c725c293caaca7c25d0f7b6531b5d400d5">65a156c7</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-22T17:25:28-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update UGSubsystem to use DBException
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/9c20b348245b6806ce6e0c6c40e3968d3c7d2c14">9c20b348</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-22T17:26:17-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update LDAPProfileSubsystem to use DBException
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/89ed1d5a083dd064c4db6b5a54f591df640be8de">89ed1d5a</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-22T17:26:17-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update CrossCertPairSubsystem to use DBException
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/96e988622ef7ec3af877a94d715baeeea956eaec">96e98862</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-22T17:26:17-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update AuthorityMonitor to use DBException
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/4cdf16c2997f5774e78569c7a2ba3f9ec4dbacaa">4cdf16c2</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-22T17:26:17-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update LDAPSecurityDomainSessionTable to use DBException
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b820cd25cbf23317985924c4ceedc41c6a5021fa">b820cd25</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-22T19:23:29-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Merge IPolicySet into PolicySet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/33c99ffa1c1287bf3bcaac577fa6c814ecb5f371">33c99ffa</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-22T20:41:34-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Convert IEnrollmentPolicy into EnrollmentPolicy
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/9a6a2b1c405d342b34f469b7588d525f4eb9e920">9a6a2b1c</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-22T20:42:30-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Convert IRenewalPolicy into RenewalPolicy
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/34c074af81239bdccbd864acfc474fc884f13a7c">34c074af</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-22T20:43:26-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Convert IRevocationPolicy into RevocationPolicy
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c4c0e5ad07082b745eac59d0b3bea3eb11698cb8">c4c0e5ad</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-22T20:53:12-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Rename APolicyRule to PolicyRule
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/fe049dac51a04b1ebb35f2f79a950aaeb918b12d">fe049dac</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-22T20:54:49-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Merge IPolicyRule into PolicyRule
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6ddb7da2fd72902f11d5ae0a6e07d552f5621991">6ddb7da2</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-22T22:00:08-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Convert IPolicy into Policy
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f171f56a16c28e3298e6727172739a26800a47ee">f171f56a</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-23T09:09:30-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove unused IPublishRuleSet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/1bb6ff48a0b204aafa3c63e6a1bef8c7deb5157e">1bb6ff48</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-23T09:09:33-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update RequestListener to use DBException
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c7d0d16af7e8675f431d34185c137ed6c13b916d">c7d0d16a</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-23T09:09:35-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update DirBasedAuthentication to use DBException
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/1f9bd14e3d5432a7e4b44cec793106a589e3354f">1f9bd14e</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-23T09:09:36-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update PasswdUserDBAuthentication to use DBException
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/be13be2b3b3a3b41d1c39fca219bb1269840aa78">be13be2b</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-23T09:09:38-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update DirAclAuthz to use DBException
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/23ea38e3f7f8eb1a9f66702b86d4f148cb2ecd87">23ea38e3</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-23T09:09:39-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update PublisherAdminServlet to use DBException
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ccb54654f5db2f6869c9d44e85a91ffced21942d">ccb54654</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-23T09:09:41-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update UpdateDir to use DBException
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f8ee0aa2642e7fb2704193c87adc1678a25561b1">f8ee0aa2</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-23T09:09:42-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update UpdateCRL to use DBException
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/18e401bbd3a081e91384bda902a24ce24d92e3d4">18e401bb</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-23T09:09:44-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update LDAPConfigStorage to use DBException
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/3f2f7b926c34d1af4c60cd76b927a188c0e57352">3f2f7b92</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-23T09:09:46-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update CAEngine to use DBException
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/497fb4d0f5186a2801409e6084fe4d0441be7bc3">497fb4d0</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-23T11:15:56-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove redundant code in subsystem_layout.py
The same code that creates registry.cfg also exists
in PKISubsystem.create_conf().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/7d9a8c69ff4f8ba2d132839e6d95c1615b4fd033">7d9a8c69</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-23T11:15:57-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update CAPublisherProcessor to use DBException
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/0dc2329f4e5ca05b8879a66a64a794312d7daf59">0dc2329f</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-23T11:15:58-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update PublisherProcessor to use DBException
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6233d5e28247e58f010f9936f4666a35c14e3c82">6233d5e2</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-23T11:16:00-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Publisher to use DBException
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/dfd40d499f15b10b4464846883ef1df7440dc33a">dfd40d49</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-23T11:16:01-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update LdapPublishModule to use DBException
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/59ad696ba36906a28a7c8dc87e6c225a0db30c57">59ad696b</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-23T11:16:03-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update LdapConnModule to use DBException
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/3f2d020281673a196a4f3d169afbca2238173830">3f2d0202</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-23T14:01:17-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update LdapExpression to use DBException
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d8085141e0e2ab12aad5c72a5a8d5241a9ec02e5">d8085141</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-23T14:01:18-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Mapper to use DBException
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/918237eea4405c2d55ffa590f0600ec2d1977d95">918237ee</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-23T14:01:19-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update publishing mappers to use DBException
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b249660d5344389b90f81c21bc4381183c0cbf83">b249660d</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-23T14:01:21-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Drop unused ELdapException in CertUserLocator
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/3a75d6f3cf691fa5a635575f43b85ccb3bf07231">3a75d6f3</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-23T14:01:22-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Drop unused ELdapException in LdapConnInfo
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6b8698cfc8a8efbb891887baaf7fe8d7905b72ca">6b8698cf</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-23T14:01:24-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update PKIDeployer.create_server_nssdb()
The PKIDeployer.create_server_nssdb() has been updated to call
PKIServer.open_nssdb() instead of creating a new NSSDatabase
object and password file.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a307f32dd6b4c20638301d7276d8ce39ad00a8bb">a307f32d</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-24T17:04:28-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update NSSDatabase.get_cert()
The NSSDatabase.get_cert() has been updated to use regex when
checking the standard error to improve its reliability.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/9ef0c03d07b1312deac54f1921f4d9f4a7bff6ed">9ef0c03d</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-24T17:04:31-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update NSSDatabase.import_pkcs7()
The NSSDatabase.import_pkcs7() has been updated to properly
support importing PKCS #7 data from memory.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f4698a2164790b5353120b0b998a73704b99f817">f4698a21</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-24T17:04:32-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update NSSDatabase.import_cert_chain()
The NSSDatabase.import_cert_chain() has been updated to support
importing cert chain data from memory.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/5b87d681616214df2cf97eea903307bbd2e9a393">5b87d681</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-24T17:04:34-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Split PKIDeployer.import_admin_cert()
The code in PKIDeployer.import_admin_cert() that loads
the admin cert has been moved into load_admin_cert().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a5e95b0b24cca628b18bcd9c109e09536a669d79">a5e95b0b</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-24T17:04:35-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update PKIDeployer.store_admin_cert()
The PKIDeployer.store_admin_cert() has been updated to no
longer import the admin cert into NSS database. Instead, the
import_admin_cert() needs to be called separately.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/3f42e101ff32e53cf4478ae2943e6a9a912f2847">3f42e101</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-24T21:46:58-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update PKIDeployer.export_admin_pkcs12()
The PKIDeployer.export_admin_pkcs12() has been updated to use
NSSDatabase.export_pkcs12().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c4f895c0c2023d36145fa424ffbb8d067be1ff87">c4f895c0</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-24T21:48:14-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove unused PK12util class
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/db90efe5ba68babb9e367e687f80515ad302d694">db90efe5</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-25T14:15:53-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update PKIDeployer.setup_admin_cert() (part 1)
The code that creates the admin CSR has been moved into
PKIDeployer.setup_admin_cert().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/58a4e0bc280ed8a881b89f208fa86b2720db0e73">58a4e0bc</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-25T14:32:42-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update PKIDeployer.setup_admin_cert() (part 2)
The PKIDeployer.setup_admin_cert() has been modified to import
the admin cert from pki_client_admin_cert_p12 if it's specified
and the cert does not exist in the NSS database.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/0f80857b7c17cf13da781ccee6fd804555d8570c">0f80857b</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-25T14:33:17-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update PKIDeployer.setup_admin_cert() (part 3)
The PKIDeployer.setup_admin_cert() has been modified to import
the admin cert from pki_admin_cert_file if it's specified and
the cert does not exist in the NSS database.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/aafadaf5626272d181dfafd0e7a1fd3fa5bbf1f1">aafadaf5</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-25T14:33:23-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add PKIServer.actual_conf_dir property
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/bc04be0c968de4113e253c32a1430a2a4676c1f9">bc04be0c</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-25T14:33:23-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add PKIServer.actual_logs_dir property
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c253e95bb56a42908c51d706d7abd44396732f76">c253e95b</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-25T16:22:20-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add ignore_duplicate param for PKISubsystem.add_user()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/125fd384374d763b2faa2ea48311540ce2930188">125fd384</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-25T16:22:22-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add ignore_duplicate param for PKISubsystem.add_user_cert()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/83517cf9623f031ab49b44d04fc5915faa2738e3">83517cf9</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-25T16:22:23-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add ignore_duplicate param for PKISubsystem.add_crl_issuing_point()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e25887e03048f4ee0cca845ee70001c010d471b7">e25887e0</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-25T16:22:25-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update client NSS database objects
The client NSS database objects have been updated to use
the client password file for consistency.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/9f18380bdf4d69b03b11c144bc2c0d11c663c8ca">9f18380b</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-26T13:07:21-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update log messages in SecurityDomainProcessor.getDomainInfo()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/4ab00a48af34c4e07159dea4731a6e92c0a2aec6">4ab00a48</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-26T14:37:24-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add PKIServer.enable_rewrite()
The code that enables rewrite has been consolidated into
PKIServer.create_rewrite_config().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/2364811983ab60e55389108579177e67d411340f">23648119</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-26T14:37:37-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add PKIDeployer.enable_access_log()/disable_access_log()
The code that enables/disables the access log has been moved
into PKIDeployer.enable_access_log()/disable_access_log().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b464091fbee9e1fbcf4afbf7c5131b88ce1d402a">b464091f</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-26T14:37:37-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add PKIDeployer.enable_proxy()
The code that creates AJP connectors has been moved into
PKIDeployer.enable_proxy().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/855fb5d2529b59c21fa71a65e2b623cc66aea677">855fb5d2</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-26T14:37:37-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add PKIDeployer.configure_http_connectors()
The code that configures the HTTP connectors has been moved
into PKIDeployer.configure_http_connectors().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/0f16031bf4162bdb5e22c7ec44a303307fe4e256">0f16031b</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-26T14:37:37-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update PKIDeployer.configure_server_xml()
The PKIDeployer.configure_server_xml() has been modified
to require that the server.xml is already created using
PKIServer.create_server_xml().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/06730cb82536ea567551bf0a362dd9e04b11dfaa">06730cb8</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-26T15:46:31-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Replace File.copy_with_slot_substitution() with PKIServer.copyfile()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/05c2a507d3b33f209bc74db2c46fe06881861e94">05c2a507</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-26T18:37:21-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Replace Certutil.verify_certificate_exists() with NSSDatabase.get_cert()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/10a4b222d5793512be6a416dbfed0541feeb4c8a">10a4b222</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-26T18:39:42-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Replace Certutil.import_cert() with NSSDatabase.import_cert_chain()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/7bf6b96c143e61be144d26322df08113f29cdac1">7bf6b96c</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-26T20:28:46-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove temporary password file
The code that creates a temporary password file to access the
NSS database has been replaced with PKIServer.open_nssdb().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/0e7e060e5da66a9169d945b7ba2772636f40f330">0e7e060e</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-26T20:28:53-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up instance_layout.py
The code in instance_layout.py that updates the value of
pki_server_database_password has been removed since it's no
longer necessary.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b33408e6c224c208aeb45b37e22704ae4529729c">b33408e6</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-29T15:12:02-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update OCSP tests to check DS and PKI logs
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c7827d9fcbd7abe7e62d1efe5275c9e9a2fa72dd">c7827d9f</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-29T17:36:54-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update TKS tests to check DS and PKI logs
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/55cfcda77b03925d3dc73f44b7b5411bc20b1d3b">55cfcda7</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-29T17:36:54-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update TPS tests to check DS and PKI logs
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/df9c3aab67127fb90851db3623003ff87454be7a">df9c3aab</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-30T11:49:32-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add options for custom config and log folders
The pkispawn and pki-server create commands have been modified
to provide options to create an instance using custom conf and
logs folders.
The CA container has been modified to use these options to store
the config and log files under /data folder. To ensure that the
files can be accessed by the container right now they need to be
owned by the root group. In the future it might be possible to
create a root-less container.
The CA container test has been modified to create an empty /data
folder then check the config and log files after installation.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/121d1ef246e6aea4f636daa41d9b28605c2dfb35">121d1ef2</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-30T14:34:11-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove redundant code in PKIInstance.create()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/9eb31b7d8517a93aaf255ba47f7f059a4179d40b">9eb31b7d</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-30T14:34:12-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up PKIServer.create_logging_properties()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b23c4a2010a7a98f820c4c76fe4a19516e854043">b23c4a20</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-30T14:34:13-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add PKIServer.create_catalina_properties()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/1d2ea874c414581a446c77d3147ef2ba46125aeb">1d2ea874</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-30T14:34:14-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add PKIServer.create_context_xml()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ff6ef998de63a0afc4cc21afb781d47ababff4dc">ff6ef998</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-04-30T14:34:19-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add PKIServer.create_web_xml()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/87ac4552a1d700b581d051f6fe2c4a64df311017">87ac4552</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-05-02T16:45:51+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix file-based CRL publishing test
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/3d58fa678cb0a452c435a7377bb96b3e98bb514c">3d58fa67</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-05-07T15:57:07+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add stack-clash protection to native code
Rpminspect is failing because the native code is compiled without the
required `-fstack-clash-protection` flag. For details:
https://sourceware.org/annobin/annobin.html/Test-stack-clash.html
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/352ca19e31f4f69fea5885b1800c25ac41f8cbc7">352ca19e</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-05-07T16:07:42+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Convert UniqueKeyConstraint from VLV to paged search
Additional code tidyup to fix sonar complaints: array designator to the
type, compliant variable name, string message formatter, etc...
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/89531adb2358ca6d6711c1c6c540b01ba0861769">89531adb</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-05-07T10:46:04-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add option to remove config folder
The pkidestroy and pki-server remove commands have been modified
to keep the config folder by default but provide an option to
remove the folder. The security_databases.py has also been
modified to no longer remove the client NSS database. This will
allow the subsystem to be reinstalled with the same config files
(including the certs).
The basic installation tests have been modified to verify that
the config folder still exists after server removal.
New tests have been added to install PKI subsystems with existing
config files from previous installation.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/21148f7ec88bb8d7bc488735481837c4886c3b98">21148f7e</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-05-07T12:38:58-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update lewagon/wait-on-check-action
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/bc06fffbcae0dbd3bcc1657518d8c51c8d6b3611">bc06fffb</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-05-07T18:20:56-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move KRA clone tests into separate workflow
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/7c4099308d4e7a407795bbe938fe99ab47152dbb">7c409930</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-05-07T19:22:46-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update PKIDeployer.setup_admin_cert()
The PKIDeployer.setup_admin_cert() has been modified to ensure
that the admin PKCS #12 file is not empty before importing it
into the client NSS database.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/3e338fce904425650b99fb457a0a17330b4406cd">3e338fce</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-05-08T08:01:23-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update installation tests with existing config files
The installation tests with existing config files have been
updated to verify that the config files do not get altered by
the second installation. Currently this is not entirely true
since there are timestamps stored in the config files, but in
the future these timestamps can be removed or moved into log
files instead.
The tests have also been updated to remove the config and log
files after the second installation.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/41b4c6d1a36e49ab7f20f0cb4d99e9ffa57b5297">41b4c6d1</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-05-09T08:43:47-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update CA container
The CA container has been updated such that all files will be
owned by pkiuser:root so that it will work in Docker/Podman as
well as in OpenShift.
The test for CA container has been updated to use pki-server
commands to set up the CA database in the default DS backend
(i.e. userroot).
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a291d14a4edd5433c0dbdf0f15b5a1f660ce2cb6">a291d14a</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-05-09T11:54:28-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix error handling in pki nss-cert-export
The pki nss-cert-export has been modified to check for null
return values and throw CLIException which will generate a
simpler error message on the console.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d9e02a93a8d19763f4e10bd6e208791f29f63a34">d9e02a93</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-05-09T13:46:33-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix pki-ca-run
The pki-ca-run has been updated to use the correct commands to
export the SSL server cert and issue the admin cert.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f44b90a4504a8c80f93166cea46b552dd47d0e6a">f44b90a4</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-05-10T11:57:21+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update CertificateRepository to Paged Search
Methods to find certificates using VLV indexes have been deprecated.
All their usage inside the CertificateRepository have been replaced with
paged search based query.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/35744360bf96a03bc20c128ba5c03b8082943bf2">35744360</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-05-10T11:57:21+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix certs find in UniqueKeyConstraint
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b9e672540527c1dc1420ea725de272e390f3500d">b9e67254</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-05-10T11:57:21+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Invert last serial number find in range
To be more efficient the last used serial number in a range is identified
from the upper range limit and getting the first element in the
direction of the lower limit.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ee390d6457c73ed0a8d31ceddddccc351bf6402b">ee390d64</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-05-10T11:57:21+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix LDAP paged search with sort key
When server sort and paged controls were both used only the last was
applied ignoring the sort control because applying multiple control get
overwritten.
The code has been modified to apply an array of controls when both are
present.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/bad3adffa1873c839fc13681245f4c5c9a0f15a4">bad3adff</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-05-10T18:31:31+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix critical failure exception
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/741e0f06f75590dd733fc87b5fb8e3c68df968f7">741e0f06</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-05-10T12:30:20-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update NuxwdogPasswordStore to implement PasswordStore
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6f4b7c00392e8edebbebdd42e7f90c9cf8fef6ba">6f4b7c00</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-05-10T12:30:21-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove redundant code in DBSubsystem.configureExcludedLdapAttrs()
The DBSubsystem.excludedLdapAttrs is only used by CA and KRA and
the excludedLdapAttrs.enabled param is false by default so it's
not necessary to check the subsystem type.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/078a33ca83d42daf5782901f7a633b31313a759a">078a33ca</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-05-10T14:08:04-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Replace PasswordStore.create() with CMS.createPasswordStore()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f0b1c9c4a9101ec448af0f1bfb4bf8e2822f0fc4">f0b1c9c4</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-05-13T12:16:16+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix pki-server subsystem-cert-export
Solve the pki-server subsystem-cert-export error when trying to export a
CSR.
Fix bz-2276139
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/441657bdd8d237081bcf5bd58245db5ffc6d510f">441657bd</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-05-13T07:09:43-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add default values for passwordFile and passwordClass
The code that uses passwordFile and passwordClass params has
been updated to use default values if these params are not
specified, so it's no longer necessary to store these params
in the CS.cfg. The PKISubsystem.create_conf() has also been
modified to no longer add these params if they are missing.
The upgrade script has been updated to remove these params
from existing instances if they contain the default values.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c90e83af38b5d61c0abc3dc05024b8799d9165d9">c90e83af</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-05-13T10:36:15-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add PKIDeployer.get_key_type()
The code that obtains the subsystem cert key type from pkispawn
param has been moved into PKIDeployer.get_key_type().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/8acf1501151c875904dc4303c81611c42adef1ec">8acf1501</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-05-13T12:15:38-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove preop.cert.<tag>.keytype param
The temporary preop.cert.<tag>.keytype param has been replaced
with direct calls to with PKIDeployment.get_key_type().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/8a0e90483c6968a7fec26eb7f83937837ac3dcf9">8a0e9048</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-05-13T12:15:46-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update IPA basic test
The IPA basic test has been updated to check the DS logs before
removing IPA server since DS logs are not preserved by default.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/1786e9f09ae15abb98ec3020ca40d883176c365a">1786e9f0</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-05-13T16:51:20-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix pki_security_domain_setup param
pkispawn has been updated to no longer call check_security_domain()
if pki_security_domain_setup is set to False.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/4b91181f86ecd369e7d3e4f4ebcdb967b197552c">4b91181f</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-05-13T20:02:07-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add PKIDeployer.get_cert_profile()
The code that determines the profiles for system certs has been
consolidated into PKIDeployer.get_cert_profile().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/64406c323b9e44ed42ced6440352df15b671f238">64406c32</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-05-14T11:15:03+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update DS container to dirsrv for OCSP ansible test
OCSP ansible test was the only one configured to use DS deployed in a
`pki-runner` container while all the other tests are currently using
`dirsrv` container from quay.io.
Since recently DS has problem to work from pki-runner container the test
has been update to dirsrv container.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b70f51c066bfb2acead6609a7bc34afb49e0e848">b70f51c0</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-05-14T13:02:06+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix log message in RecordPagedList
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/8eb98e9f71fe14b9ed891934469c4765a3fabb82">8eb98e9f</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-05-14T09:27:14-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove unconfigurable instanceId param
The instanceId param has been removed from CS.cfg since it's
not actually changeable and also to prevent misconfiguration.
The code that uses the instance ID has been modified to call
CMS.getInstanceID() instead which gets it from the instance
dir (which comes from catalina.base property). Due to class
loading issue the NuxwdogPasswordStore class cannot call this
method so it has to get it directly from the catalina.base
property.
The PKISubsystem.create_conf() has been modified to no longer
add the param if it's missing.
The upgrade script has been modified to remove the param from
existing instances.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/326be43d1967506b30f2be960df9429618b388ef">326be43d</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-05-14T09:54:18-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Drop pki-server-upgrade
The pki-server-upgrade was deprecated in PKI 10.7.1 so now it
has been removed.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ad8602b9ad9b82fee1b5c2a653414d9091946b36">ad8602b9</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-05-14T11:57:42-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add PKIDeployer.get_cert_type()
The code that determines the types of system certs has been
consolidated into PKIDeployer.get_cert_type().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/09ea4f774dce91b3f4dfd678e0d1b30d4a502bdc">09ea4f77</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-05-14T17:00:53-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update PKIDeployer.retrieve_cert_chain()
The code that retrieves the cert chain from CA has been moved
into PKIDeployer.retrieve_cert_chain().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/0f7647f93cc2765f3f6c133a98d5b25be2aa5820">0f7647f9</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-05-15T09:13:04-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove cs.type param
The cs.type param has been removed from CS.cfg since subsystem
type is not actually changeable and this param might introduce
configuration issues.
The code that uses the subsystem type has been modified to call
CMSEngine.getName() (for uppercase subsystem type) and getID()
for (for lower case subsystem type) instead.
The PKISubsystem.create_conf() has been modified to no longer
add the param if it's missing. The load() has also been updated
to no longer read the param.
The upgrade script has been modified to remove the param from
existing instances.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/abd605bfdabc0109e306df0026d90f14afd919e0">abd605bf</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-05-16T11:34:55-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix NSSDatabase.import_cert_chain()
Previously NSSDatabase.import_cert_chain() was passing PKCS #7
data as PKCS #7 filename into import_pkcs7(). The method has
been updated to use the correct param.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/0dcbd039c1b3918bafe730cfc06ccf00e5c664eb">0dcbd039</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-05-16T12:01:25-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove unused preop.cert.<tag>.dn
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/bf893a29d8ed37ee2eac3b1f3586fc41e9207f29">bf893a29</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-05-16T12:01:25-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove unused preop.cert.<tag>.nickname
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d763942a546c6cadf38648de9b29871590fbfd45">d763942a</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-05-16T13:35:16-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Merge preop.cert.audit_signing.type into PKIDeployer.get_cert_type()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b83487a7afeea08ee3907c2453be0977e023fbe3">b83487a7</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-05-16T13:35:16-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update pki pkcs7-cert-import
The pki pkcs7-cert-import has been updated to accept certs
specified via standard input.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/46c9b198919773659e8c7d3dfdcad4847e4a0b94">46c9b198</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-05-16T18:49:09-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove unused preop.cert.<tag>.keyalgorithm
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/82ac3f58cbe9f4f50223710c8b14cf27a93a381a">82ac3f58</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-05-16T19:03:33-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove unused preop.cert.<tag>.signingalgorithm
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/83b017a6a37725fb870588b8121c84e73fe91661">83b017a6</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-05-16T22:48:50-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update NSSDatabase.add_ca_cert()
The NSSDatabase.add_ca_cert() has been updated to support
adding CA cert from memory.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/7ccab05f49666c362a687d60b94eb6fdcca7835d">7ccab05f</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-05-16T22:48:50-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add NSSDatabase.get_pkcs7_certs()
The code in NSSDatabase.import_pkcs7() that exports the certs
from a PKCS #7 has been moved into get_pkcs7_certs().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/805195614a0671c846b466c2e4363d7ae68c0a52">80519561</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-05-16T22:48:50-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add DS params for CA container
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/76dc29c91134a6247947c42667e55690f4fa6e21">76dc29c9</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-05-16T22:48:51-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update pki-ca-run
The pki-ca-run has been updated to include the CA signing
cert into the admin.p12 file.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6bec07f937c14edbc1715695dd870812fdeb31e8">6bec07f9</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-05-16T23:56:33-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up CA container test (part 1)
The CA container test has been updated to no longer set up
security domain roles and database user.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d94d356b6bbd05d105f4b52028c1e81c0aac4a8b">d94d356b</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-05-16T23:56:40-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up CA container test (part 2)
The CA container test has been updated to create the shared
folders earlier.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6dfeeca35c11399d7922a32137302f3628a51def">6dfeeca3</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-05-17T11:52:59-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add NSSDatabase.create_pkcs7()
The NSSDatabase.create_pkcs7() has been added to create PKCS #7
from a cert chain using pki pkcs7-cert-import command.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c59e50045df6054f9e42496164687cbbc3b23773">c59e5004</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-05-17T12:36:17-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update NSSDatabase.import_pkcs7()
The NSSDatabase.import_pkcs7() has been updated to use pki
pkcs7-import which can import PKCS #7 with/without nickname.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/bbe6472dc07ed28625e385aaac73d86723375038">bbe6472d</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-05-17T12:36:17-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update PKIDeployer.finalize_ocsp()
The PKIDeployer.finalize_ocsp() has been updated to get the
CA signing PKCS #7 from the OCSP signing PKCS #7 which is
already available locally instead of from preop.cert.pkcs7
which has to be retrieved from the issuing/master CA.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/7a4103ceb787f1f0cba0ddf47dafec140ee5742d">7a4103ce</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-05-17T13:45:25-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Merge PKIDeployer.retrieve_cert_chain()
The PKIDeployer.retrieve_cert_chain() has been merged into
import_cert_chain() such that the cert chain will only be
imported once, either from file, issuing CA, or master CA.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/11a281f869d2a84b68cf969883eac3f5d30c4970">11a281f8</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-05-20T09:25:04-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update ACME container deployment doc
The deployment doc for ACME container has been updated to
use a network instead of a pod.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/baed8e33b4fe79ff48028cec01503fc672a2b0f8">baed8e33</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-05-20T09:25:04-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update ACME container volumes
The paths of ACME container volumes have been updated to
simplify deployment and to avoid collisions with instance
files/folders.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b5a792d44eae3188996f8e975036f10f146141a9">b5a792d4</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-05-20T09:25:04-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update ACME container instance
The ACME container has been updated to use the default
instance (i.e. pki-tomcat) instead of tomcat@pki which will
be more consistent with the CA container and will make it
easier to migrate from a regular deployment.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c4d520e58880ee3f283c665ac210b51259babb42">c4d520e5</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-05-20T20:56:14-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add support for deprecation info
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/12aa62df74becf0882d101803ff8c5e6535deea9">12aa62df</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-05-20T20:56:21-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up log messages
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/05bc23c1a173a4fdce5326f2c09f9249f855ae13">05bc23c1</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-05-21T08:23:14-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add data folder for ACME container
The ACME container has been updated to support a data folder
which can be used to store the config and log files generated
by the server.
The ACME container has also been modified to store the default
config files created during the build. If the container is
started with an empty data folder the default config files will
be installed automatically.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/998681cb4626cf47b84b5cfaebc2b4fa9c275360">998681cb</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-05-21T08:23:14-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update CA container
The CA container has been modified to extend pki-server
instead of pki-runner such that it will be more consistent
with the ACME container.
The CA container has also been modified to store the default
config files created during the build. If the container is
started with an empty data folder the default config files
will be installed automatically.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ac155cec1b38c4df1831c55708109ae9c5f9621a">ac155cec</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-05-21T15:10:23-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove unused preop.cert.<tag>.cncomponent.override
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/66ea43d17b232515e4f84492620aa12487785187">66ea43d1</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-05-21T15:12:40-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove unused preop.cert.<tag>.userfriendlyname
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c054df726a4a8bc6c9b27170766749d5a41ec6e2">c054df72</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-05-21T15:15:14-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove unused preop.cert.<tag>.subsystem
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c41360d31874b496ba9dfcfdd561cb3371f9b5dd">c41360d3</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-05-21T15:17:08-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove unused preop.cert.<tag>.keysize.custom_size
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b1cf4d0421e898145d3c1df71e9a2cfa41af44fd">b1cf4d04</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-05-21T15:19:44-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove unused preop.cert.<tag>.signing.required
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c3ab15dab4e37546ac705c1aa3c4ff3370488874">c3ab15da</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-05-21T15:24:20-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove unused preop.cert.<tag>.defaultSigningAlgorithm
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/96ab8be8840150dac2f71a5d27dfe439aedca682">96ab8be8</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-05-21T15:26:39-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove unused preop.cert.<tag>.keysize.size
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c1ab70cf4b890672895e6627070e4a055d79950c">c1ab70cf</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-05-21T15:29:33-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove unused preop.cert.rsalist
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/7f0647856bc839b66ca8b3931acb5cbd52c6e7e3">7f064785</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-05-22T10:27:37+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix mispelled "extension" word
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/392e32dfb27ac7ee82591f7366ed7a8de5ae2cf2">392e32df</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-05-22T09:30:09-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Restore pki_instance_configuration_path param
In PKI 11.5 the pki_instance_configuration_path param was
removed since it's meant to be used only internally and
has been redefined somewhere else. However, since the param
is actually used by IPA to support containers it has been
restored as an alternative to pkispawn --conf option.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a3de9066b9e77340eec5faf1807fed979d01f2be">a3de9066</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-05-23T08:13:36-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update PKI Server container
The PKI Server container has been updated to keep the certs
and CSRs created during startup.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e54bddfd0dfab39a62622f184b23714cb5cbc54d">e54bddfd</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-05-23T08:13:36-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update CA container test
The CA container test has been updated to verify that the
container can be restarted successfully.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/bef74bf541ee90a7da5c66e10006f716611f47d9">bef74bf5</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-05-23T08:13:36-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update ACME container test
The ACME container test has been updated to verify that the
container can be restarted successfully.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ab8f2e8db1420ac0952a3e1ca5eec3a127b95273">ab8f2e8d</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-05-23T08:13:36-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add KRA container
The Dockerfile has been updated to define a new KRA container.
A new test has been added to create CA and KRA containers, then
verify key archival and recovery.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/685264b3bf0ef160f9b97e0aca965bcfcaabf003">685264b3</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-05-23T08:13:36-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add OCSP container
The Dockerfile has been updated to define a new OCSP container.
A new test has been added to create CA and OCSP containers, then
verify CRL publishing and revocation checking.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/4830c7d90d410701ee32abcdd422d97764302a13">4830c7d9</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-05-23T14:54:03-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add options for ds-container-start.sh
The ds-container-start.sh has been modified to provide options
to specify the container image and Directory Manager password.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e99a402386838890d36fedc603cd409caebbc960">e99a4023</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-05-23T15:22:02-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add options for runner-init.sh
The runner-init.sh has been modified to provide options to
specify the container image, hostname, and network params.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/cbf3856e2c463478723fc36987427b6239c6920f">cbf3856e</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-05-23T15:22:02-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add options for ds-container-create.sh
The ds-container-create.sh has been modified to provide options
to specify the container image, hostname, network params, and
the Directory Manager password.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d2aa5d552e8b31084fe2cd0abefd44a8880da0b9">d2aa5d55</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-05-27T16:34:00+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix CI ansible tests
There is an incompatibility with latest requests package on ubuntu with
ansible docker so older version is required.
An example of error is https://github.com/dogtagpki/pki/actions/runs/9215527346/job/25354301193
For details, see https://github.com/docker/docker-py/issues/3256
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ea072a02b12f4856db6baf2644f9b802e73f6b15">ea072a02</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-05-28T18:17:41+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix CA with secure ds CI failure
DS container uses pki-runner image when configured with a certificate and
this has to be specified with the start script otherwise the startup take
in account the steps for quay.io ds image which is differently configured.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/dd5cc935914ebef304d36a5b123102d2c340d16f">dd5cc935</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-05-28T14:33:47-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update PKI server container
The PKI server container (which is the base for all PKI
subsystem containers) has been updated to install the ROOT
webapp (which provides Web UI files) and PKI webapp (which
provides common PKI services), and store the default config
files.
The startup script has been modified to install the default
config files if it doesn't exist already, use PKI NSS CLI
instead of certutil to prepare the certs, and run the server
as pkiuser in Docker/Podman so that the log files will be
owned by pkiuser as well.
The test has been updated to check the files created by the
container and to verify that the container can be restarted
successfully.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/0f062a0d9f68609336830aaf5906327e5597511a">0f062a0d</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-05-29T10:30:30+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Replace VLV with paged based search in HashEnrollServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b603eace1c8dcd09d61d26dbba61cf227ca321d5">b603eace</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-05-29T10:30:30+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Tidyup HashEnrollServlet
Fixed the following sonar identified problems:
- removed some variable not used
- merged catch exceptions
- Replaced StringBuffer with StringBuilder
- Modify the logs to use string format instead of concatenation
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/34e26e49d09e28e6107247330fb5b27bd05cd315">34e26e49</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-05-29T13:18:20+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update KeyRepository to Paged Search
Methods to find keys using VLV indexes have been deprecated.
All their usage inside the KeyRepository have been replaced with
paged search based query.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b6c56b8e65d1fcff50f5c883449a776ed8291ec2">b6c56b8e</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-05-29T13:18:20+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix CertificateRepository wrong method id debug log
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/90154c7737e28be7e39a5e7d27563f0417a4f66e">90154c77</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-05-29T13:18:20+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix filter for lastSerial in KeyRepository and tidyup
The filter can be simplified removing the first condition in the and
('&') since it always true for all the records.
Additionally, some tidyup fixing log format, array designators and other
minor improvements.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c870ba24c530ecb21452ac63b56377be8983ceb1">c870ba24</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-05-29T08:49:26-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix config file owners and permissions for containers
The container startup scripts have been modified to update
the owners and permissions after the configuration is done
such that the config files will have the proper owners and
permissions.
Note: Some files created at runtime (e.g. log files) still
have inconsistent owners/permissions. These files will be
fixed separately later.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e17a256550225fdb8660a3896ff90e031b6a1d8b">e17a2565</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-05-29T17:31:05+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add serial and issuer to SSL logs and audits
When creating an SSL connection, logs and audits where reporting only the
certificate subject. Since the certificate could be issued from other CAs
it could be difficult to identify.
This commit adds the issuer and the serial number of the certificate
in both the audit and log messages for a better identification.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/95c31ea655082e65e8e99f0d5dcfd2bf38bb6f47">95c31ea6</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-05-29T14:48:41-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update container tests to use Podman
The container tests have been updated to use Podman instead of
Docker (except for ACME container test due to a compatibility
issue with Certbot). The docker command is now just an alias to
podman.
In Podman the containers will run as a non-root user with random
UID so the tests now will only verify the group owner of the
files.
Also in Podman the containers need to be connected to the network
as soon as it's created using docker run command instead of using
a separate docker network connect command.
The tests have also been updated to capture the files generated
by the containers in the shared folders.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6721762ebeb14586e23a2513bd3a0c52be95527b">6721762e</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-05-29T14:56:31-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add GH workflow for CA container tests
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f1f1697e3d76246cadadb3dcf68e363b83e2357e">f1f1697e</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-05-30T12:25:27-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove obsolete [RA] section in default.cfg
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a411de4559946a931dc8386b1380910cf04aa38a">a411de45</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-05-30T16:28:05-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove unused Symlink class
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/260e4d4990ab1ddd35e0796589e69a5a9457179f">260e4d49</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-05-30T16:28:05-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove unused Directory.copy()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/da7bc16bcdeae1ecba0eaa32fdff4e3f84db630b">da7bc16b</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-05-30T16:28:05-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove unused Directory.modify()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ba96faa1fb6adc7dbe3cff681a00f0d2ae2e4585">ba96faa1</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-05-30T17:57:03-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move enable_pki_logger() into PKIDeployer
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c5f27a138c6920d6d88332dba56a416655b75670">c5f27a13</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-05-30T17:57:03-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move Systemd.set_override() into PKIDeployer
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6014e59a53b9c548f13ad331325dcd05a3a2fc49">6014e59a</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-05-30T18:05:57-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move System.write_overrides() into PKIDeployer
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/76fc0be3f4faea9c2a7dcaf772d666826608163e">76fc0be3</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-05-30T18:05:57-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update PKIConfigParser.validate()
The PKIConfigParser.validate() has been updated to take
a user_deployment_cfg param instead of using the global
config.user_deployment_cfg.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/7141dd772e485315c19eb1cbcc4d543fb51e3ee1">7141dd77</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-05-30T18:05:57-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update PKIConfigParser.read_pki_configuration_file()
The PKIConfigParser.read_pki_configuration_file() has been
updated to take a user_deployment_cfg param instead of using
the global config.user_deployment_cfg.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/43feca1438c5a0c972a7521cb550a70a59813e64">43feca14</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-05-30T18:05:58-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update PKIConfigParser.compose_pki_master_dictionary()
The PKIConfigParser.compose_pki_master_dictionary() has been
updated to take a user_deployment_cfg param instead of using
the global config.user_deployment_cfg.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/3a68683cb289ba159555b87aed2417fd0e073418">3a68683c</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-05-30T18:05:58-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update sanitize_user_deployment_cfg()
The sanitize_user_deployment_cfg() has been converted into
validate_user_deployment_cfg() which will validate user
deployment configuration instead of fixing it silently.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/5ecd8e65dfba713c3902dcb023091eb93ddf6874">5ecd8e65</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-05-31T20:28:25-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove default value for pki_server_database_password
The default.cfg has been modified to no longer define a
default value for pki_server_database_password such that
the param can be used to specify a blank password.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d6df530488266ef314c8773b0dd75fefceaf8a9b">d6df5304</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-05-31T20:31:35-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update PKIDeployer.create_server_nssdb()
The PKIDeployer.create_server_nssdb() has been updated to
update NSS database file permissions separately such that
the folder permission is only updated once.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/092b288e1b86ebe7cd4e37006e8f08270d0e775e">092b288e</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-05-31T20:31:58-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update PKIDeployer.setup_system_certs()
The PKIDeployer.setup_system_certs() has been updated to
update NSS database file permissions separately such that
the folder permission is only updated once.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/2794da717c0f00eae2956ef0e2b8a6c0e6a9644d">2794da71</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-05-31T20:32:01-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add PKIDeployer.create_cert_id()
The code in PKIDeployer.create_cert() that creates a cert ID
has been moved into PKIDeployer.create_cert_id().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ecd36fdf5a2c93ad26dd047823d244a0f0d49aa2">ecd36fdf</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-05-31T20:45:31-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add PKIServer.store_cert_request()
The code that stores CSR in PKIInstance.cert_update_config()
and PKISubsystem.store_system_cert_request() has been merged
into PKIServer.store_cert_request().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f9c05ce0b670955e20ec85ca35149651c0b8deb4">f9c05ce0</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-05-31T20:45:50-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up log messages in pkispawn
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/7977aa59d5e48a202fdf3935578d55ff30286109">7977aa59</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-05-31T20:51:18-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update os.chown() in pki.nssdb and pki.util
The pki.nssdb and pki.util have been updated such that the
code will call os.chown() only when it's running as root user.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/346014c45aaab0eba95241945ff6a3fd1ee48606">346014c4</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-06-01T00:19:09-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add PKIServer.chown()
The PKIServer.chown() has been added such that pkispawn will
call os.chown() only when it's running as root user.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/9e6c4b48e1b9b73081161e9dee98948bb0ac66d4">9e6c4b48</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-06-03T11:44:42-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Split container data folder
The /data folder in all containers has been split into /conf
and /logs which will allow them to be stored in different
volumes and will also make it easier to migrate from a regular
installation.
The container startup scripts have been modified to update the
owner and permissions twice: first, to make sure the startup
script can create/update the server config and log files, and
second, to make sure the server can access the files at runtime.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/5a0b2c1f015ea3e52a19c90c72a5299981ef90b1">5a0b2c1f</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-06-03T20:43:38+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Modify ChallengeRevocationServlet1 to use paged search
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/686341e106f06066ddf187689bac583c1f51dffe">686341e1</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-06-04T16:24:14+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Modify CMCRevReqServlet to use paged search
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/8f5b8c808dc31168fb1ab389bd6f5648582f1571">8f5b8c80</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-06-04T16:24:14+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Tidyup CMCRevReqServletFreeVLV
Fixed field access modifier, replaced literal strings and other.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/2d158c67248be0d1e1495db6e0bf7d49ef67ebaf">2d158c67</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-06-04T16:47:42+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Modify ServiceCheckChallenge to use paged search
The query for certificates has been converted to PagedSearch from the
deprecated VLV.
Additionally, the code has been improved removing some else conditions
which were redundant.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/db7c5a764fdc37618dc3eaac43df73ebacab5e28">db7c5a76</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-06-04T11:47:31-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add basic CA container test
A new test has been added to create a basic CA container with
minimal setup so it will create new certs.
The current CA container test has been converted into a test
for CA container with existing certs.
The container startup scripts have been modified to suppress
error messages when checking whether the certs already exist.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e41fb0df346091bf66335f20539be1fd88f8f729">e41fb0df</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-06-04T11:55:29-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Create home directory for default PKI user
The RPM spec has been modified to create a home directory for
the default PKI user if it does not exist. The home directory
can be used to store files that should be owned/accessible by
PKI user (e.g. SoftHSM tokens, systemd user services) so they
cannot be stored in root user's home directory.
https://github.com/dogtagpki/pki/issues/4501
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c11fab80d7f808c6a6110d19493d53dbb8304cad">c11fab80</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-06-04T11:55:29-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Allow non-root to run pkispawn/pkidestroy
pkispawn and pkidestroy have been modified to no longer require
the user to be running as root. Currently non-root users still
cannot complete the installation due to other permission issues,
but eventually a user should be able to create a PKI server for
a rootless systemd service.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/92d6b505498034d83f766ed5d3c9d0104dcc977e">92d6b505</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-06-04T18:58:51-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix default config file owners in container image
The Dockerfile has been updated to ensure that the instance
files (including the default config files) in the container
image are owned by pkiuser:root so that they can be accessed
properly at runtime.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/4d8bbec508ad2cfcf2820dddfda8c26c477b93ec">4d8bbec5</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-06-05T09:32:37-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add test for CA container system service
A new test has been added to run a CA container as a system
service. The container is running in Podman which runs inside
a Fedora container (i.e. pki-runner). The service is owned by
the root user but running as PKI user. In the future there
will be a separate test to run a CA container as a rootless
user service.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e6966dcdadf52998de3e848e1abaff72ab5ad66b">e6966dcd</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-06-05T20:18:59-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix file owners during installation
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b3135c7c9537d8994f319acdbebbb9f5e03e3327">b3135c7c</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-06-05T20:19:27-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix pki-artifacts-save.sh
The pki-artifacts-save.sh has been updated to archive the config
files from the actual conf folder.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/15a926bc9bf9ff7cbcde92f1022b5abe3bf57e88">15a926bc</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-06-06T08:41:04-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add test for CA container with existing config
A new test has been added to install a regular CA, then reuse
the certs, database, and config files to run the same CA as a
container.
The container startup scripts have been updated to provide
params to specify the nicknames of the existing certs and to
use password.conf to access the server's NSS database.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e06c2d9775a1a774c5c58f095690cb0e53c001c9">e06c2d97</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-06-06T15:32:44-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix nickname params in pki-kra-run
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/27580cdda4b415ce2603ee6cea88933cf24b7ab9">27580cdd</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-06-06T15:33:25-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up container startup scripts
The container startup scripts have been updated to use the
shorter paths for NSS database directory and password file.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/bff81c6263c9fda887d8e1e56d79475e1d3c10fe">bff81c62</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-06-07T09:51:13+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move base class for REST servlet to server package
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e2cb4ebe7a40551b49ea74aa41a37d59e0646c24">e2cb4ebe</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-06-07T09:51:13+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Implement method for /tpm/v2/activities APIs
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/2b2ab420644dde8087926a1b818fc497f0149964">2b2ab420</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-06-07T09:51:13+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix sorkey array control and TPS ActivityServlet
Sorkey array control generation get error when it is null.
ActivityServlet reports wrong message when resource is not found
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c444512e17fb7e01de8ef2878e9719cd3780da82">c444512e</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-06-07T09:51:13+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add excption to PKIServlet logs
Additionally, remove the url encoder test for the TPS activity id
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/850e6b9e5128264a471e57b70ab8d970cf9162f8">850e6b9e</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-06-07T13:15:19+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move REST endpoint to v1
The current REST implemenation is associated to /v1 path and the /rest
path is a redirect to the /v1.
This would make easier to switch between REST implementations.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/74e5f89343d55c6a555dc65d4591a02fb70675c8">74e5f893</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-06-07T13:15:19+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move current REST APIs to v1 package
The current rest APIs are moved to a subpackage named `v1`. The new
implementation has moved to the subpackage `v1`. The new implementation
has moved to the subpackage `v2`. This will simplify the selective
building of REST implementation.
Subsystems ACME and EST have not been modified because they use REST to
implement the protocol and this requires extra effort.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6cefdc41847ecc0fab4fd45f5d2ec48c88b5ff80">6cefdc41</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-06-07T13:15:19+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove printStackTrace from REST v2 filters
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e5b208af5037d340b9936ab08bb72232575ac9ee">e5b208af</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-06-07T13:15:19+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix cmake build of v2 REST APIs in TPS
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/52cfef99559f443402e87bb4b0b2b027d61a0f37">52cfef99</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-06-07T21:03:42-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix pylint issues
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e4a9fb0dc776d99f6aefdeed996f3f6f911a2ab2">e4a9fb0d</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-06-10T10:27:57-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove redundant files in containers
The containers have been updated to remove redundant files
to avoid conflicting or obsolete certs.
When the container is started the certs provided in /certs
will be the authoritative data and will be imported into
the server and admin NSS databases. If the certs are not
provided, the container will generate new certs directly in
the NSS databases. Once the container is running, the certs
in the NSS databases will be the authoritative data until
the container is restarted.
So now the container will only store certs and keys in NSS
databases and CSR files, but it will no longer store cert
files or PKCS #12 files since they are redundant. The tests
have been updated to export these files from the container
when they are needed.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/1d9a4f3151b18a652d745fbdb78920a463d41a21">1d9a4f31</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-06-11T13:28:19+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add handlers for all HTTP methods in PKIServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/90c4a4845fa07bf2da39c127f49f24f80ebeffa0">90c4a484</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-06-11T13:28:19+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Make ACL filter configurable for method and path
If the servlet has different ACLs for different HTTP methods or paths
the new implementation allows to define a map to identify the correct
ACL.
The MAP will associate a key with the ACL and the key is made as
<method>:<path>
The method is one of the HTTP defined method (e.g. GET, POST, ...) and
the special value of "*" indicate all methods.
The path is internal of the servlet path and in case of path parameter
these can be identified with "{}". An example of entry could be:
key= PUT:/token/{} value= token.read
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/57cbbbb2a14a30fd4a67d6aef0c0b3c0083b4b87">57cbbbb2</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-06-11T08:18:21-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add pki-server ca-cert-import --csr option
The pki-server ca-cert-import has been updated to provide an
option to specify the CSR of the cert to be imported. This way
the cert and the CSR can be imported using a single command.
The tests have been updated to use the new option.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a5e513ad569aeffc6219dc7b36dd9a92a808ede0">a5e513ad</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-06-11T08:18:21-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix runner-init.sh to support Podman in container
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/1dde79cb45b7397a2e78b1107113c80a59cb74df">1dde79cb</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-06-11T16:02:20-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove redundant default values in CS.cfg
Some default values in CS.cfg have been removed since they
will be overwritten by pkispawn.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/97dfad47316b87d1666f9d92517b1808dd68588d">97dfad47</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-06-12T09:45:10-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add test for CA migration to container
A new test has been added to migrate CA from a regular PKI
server (i.e. pki-tomcatd) into a Podman container running as
systemd service. The container will use PKI server's existing
config and log folders.
The container startup scripts have been modified to use the
standard CSR filenames for OCSP signing and audit signing
certs so that the container can find the existing CSRs in the
migrated config folder. The default nicknames have also been
updated for consistency.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b9c9f86236a059150270a4347b7ab6d1831e6b7b">b9c9f862</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-06-13T19:41:23+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add ansible step for DS setup
In CI test using ansible, after DS setup the following operation fails
because DS is not ready and the authentication bind get error.
An additional step to repeat the connection until the bind
authentication succeed is added after DS configuration.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/3e99af1d088a82aef7d4eb2d5872b612087f5311">3e99af1d</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-06-14T10:43:00+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Implement v2 TPS TokenService without vlv
The TokenService has been implemented using raw servlet. Since this
service is using different http methods and acl for the supported
methods, the base PKIServlet has been modified to support such methods.
Additionally, ACL uses the new map definition to control each method.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/aa7161ba378caf5cf0471aafb679a842679c8388">aa7161ba</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-06-17T15:54:35-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>CVE-2023-4727 Fix token authentication bypass vulnerability
Previously the LDAPSecurityDomainSessionTable.sessionExists()
and getStringValue() were using user-provided session ID as
is in an LDAP filter which could be exploited to bypass token
authentication.
To fix the problem the code has been modified to escape all
special characters in the session ID before using it in the
LDAP filter.
Resolves: CVE-2023-4727
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/9f19eaa0651e1c8789f42b4ca4c085de2d152e13">9f19eaa0</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-06-18T14:46:13-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add pki-server <subsystem>-user-add --cert option
The pki-server <subsystem>-user-add has been updated to provide
an option to specify the user certificate so it's not necessary
to use a separate pki-server <subsystem>-user-cert-add command.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/311d7b4c85fc4f5934f59bf8df43e9a1f9a618a5">311d7b4c</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-06-18T17:19:40-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add test for CA container user service
A new test has been added to run a CA container as a rootless
systemd service in user space then perform a cert enrollment.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/0d745dc6f32a85425d9f3358748ef53cb0bffbea">0d745dc6</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-06-19T12:39:48-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add TKS container
A new container has been added for TKS subsystem.
A new test has been added to create CA and TKS containers, then
perform some basic validations. The proper test for TKS container
will be added later as part of TPS container test.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b27cf237443e476f15a4144175e5d23691d5e318">b27cf237</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-06-19T16:24:57-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix failure in test for LWCA with HSM
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/28595ab71004a9e12ba1436d2d3ee4f4cff9e5b0">28595ab7</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-06-19T16:24:57-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move authdb methods into PKIDeployer
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/85255be4042fef41a3a82322217ec009e9898824">85255be4</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-06-19T21:37:48-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Split PKIDeployer.configure_tps()
The code that creates the CA, KRA, and TKS connectors in
PKIDeployer.configure_tps() has been moved into separate
methods.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/2f6d70f39387205e970db53cfc82083d23a3ac17">2f6d70f3</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-06-19T21:37:48-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update tests to use pki nss-cert-import
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/9f125317ae88efdfc73513101b7da7b78de7cf2a">9f125317</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-06-20T08:39:10-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add pki_authdb_url param
A new param has been added to specify the TPS authentication
database URL.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/62efea393f134ee3728f440c0b9d1c5716a9d62e">62efea39</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-06-20T08:39:10-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add TPS container
A new container has been added to provide a basic TPS
subsystem without any connectors. The connectors need
to be set up after the container is created. This is
necessary to allow creating clones of the container
without creating duplicate connectors.
pkispawn has been updated such that it will only set up
the connectors and the shared secret if the URLs to the
CA, KRA, and TKS are provided.
A new test has been added to create the initial CA, KRA,
TKS, and TPS containers. In the future the test will be
updated to set up the connectors and the shared secret,
and then test the token format and enroll operations.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/53a52dd279517d75210b1131151e284ede0382cf">53a52dd2</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-06-20T08:55:34-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix conf and logs paths in containers
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/2e3e4cf25d7d990bed4654e6bcbfd7db190d61d7">2e3e4cf2</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-06-20T19:20:52-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update CASubsystem.import_cert()
The CASubsystem.import_cert() has been modified to take binary
cert data instead of string.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/1aa259fcc6d56eca275e27c2a093610a0ea4d6ea">1aa259fc</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-06-20T19:20:52-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update container tests to check server info
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/8077cff32367e8327ec01ec5bead4baf4a9c5509">8077cff3</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-06-21T09:03:37-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update pki-server ca-cert-create
The pki-server ca-cert-create command has been updated to
provide an option to import the new cert into CA database.
The profile_id param in CASubsystem.create_cert() has been
renamed into profile_path which accepts both the profile
full path and the filename (for backward compatibility).
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f0f39c16cf7206bd16527f1a455b780ba7c11e52">f0f39c16</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-06-21T09:03:37-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove default admin cert in containers
Currently if the CA container is started without any certs,
it will create an admin cert in the container's default NSS
database but it's not permanent, so every time the container
is restarted it will create a new admin cert.
To avoid problems all containers have been modified to no
longer generate or store anything in the container's default
NSS database. Instead, the admin cert will need to be created
after the CA container is started, and it will only be stored
in the client's NSS database outside of the container.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d4f01051f2ccc80b6abb4799cf721ffb58ccf293">d4f01051</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-06-21T17:26:29+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove VLV search from RequestRepository
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c8d820f9a2ea31f24037e394aff225f083736f6d">c8d820f9</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-06-21T18:27:18-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up container startup scripts
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/782f3abf50f316446bb91413b7814082798ce6b9">782f3abf</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-06-24T17:16:20+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fixing race condition on close connection
LDAPConnection is closed before it is re-used. Closing the connection in
case it is not needed create a race conditions in some cases preventing
the execution. This is present in IPA cloning operations.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/0247a52ca3742a3ecaeceb7165ac1d8e4b3f954b">0247a52c</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-06-24T15:37:34-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix SPDX license
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/15910f1e6f434e0d7e75874fef2334ccdd366506">15910f1e</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-06-24T17:17:23-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove default audit signing cert in containers
Audit signing is disabled by default so it's not necessary to
create an audit signing cert for containers by default. The
containers have been modified such that the audit signing cert
nickname and CSR are optional.
The PKIDeployer and CMSEngine classes have been modified to
skip processing the cert if the nickname or the CSR is blank.
The container tests have been updated to no longer create or
process audit signing certs.
In the future the default audit signing cert for regular PKI
server installation might be removed as well.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/eecc6477ad1ee7c49510936b7335ab46712fecc0">eecc6477</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-06-25T12:17:13+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix IPA Clone checks
Some parameber are modified after the CRL move from the primary to the
secondary. These are:
- ca.listenToCloneModifications
- ca.certStatusUpdateInterval
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/3c574a6f2e2d22b4c9ee1da292470d1476eaaa21">3c574a6f</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-06-25T18:37:56-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up log messages in ConfigStore
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b3b8531a410296395f1446e3b3644928f83087bb">b3b8531a</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-06-25T18:37:56-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix TPS test failure
The code that configures the connection to TPS auth database
has been updated to store a lowercase boolean value into
auths.instance.ldap1.ldap.ldapconn.secureConn.
The code that creates connectors in TPS has been updated to drop
the default blank value in target.Subsystem_Connections.list.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/3e3993ce41ea15f2d798885d0c892485c89cef24">3e3993ce</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-06-27T17:42:35+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove VLV search from RequestNotifier
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/be367712b4a42e35b93cabea6e7a20d98e276a2e">be367712</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-06-27T17:53:12+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Replace Resteasy Exception with PKI equivalent in v2
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a6096933313765f8b6802684568a5d1b991b151b">a6096933</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-06-28T11:35:18-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Enable SHA1 policy when PKICertImport is tested
Since `pki pkcs12-export` creates p12 with sha1 signature these cannot
be imported with new fedora policy. The export has to be modified to use
different algorithms or at least use sha256 as default.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/480e25199db2530e1218bf4cefe6bf174a930abd">480e2519</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-06-28T17:48:03-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up CMake variables
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b6822b29a8857ad8bce8f155783a828a2d21f547">b6822b29</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-06-28T21:40:31-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Consolidate symlinks
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/1bb70ebbdc66ea037f424bf31fdef6502a1ba708">1bb70ebb</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-07-01T12:58:41-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Consolidate links for resteasy-servlet-initializer.jar
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/0c41a0067ac1bc072cb6c0f82c9c5f26a42567b0">0c41a006</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-07-01T13:35:23-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add support for bundling RESTEasy
The RPM spec has been updated such that by default it will bundle
the RESTEasy library. It also provides an option to continue using
the library provided by the system.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a05a85b75182ae5a6984bcf07d552339b165fbed">a05a85b7</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-07-01T15:47:48-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add support for bundling JBoss Logging
The RPM spec has been updated such that by default it will bundle
JBoss Logging library.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/dc88c31a6b14832ebcc4a39fc36f7fce5128d253">dc88c31a</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-07-01T18:21:39-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add support for bundling JAX-RS 2.0 API
The RPM spec has been updated such that by default it will bundle
JAX-RS 2.0 API.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/766d58c61e98361972ee8792e4018a93da64512f">766d58c6</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-07-01T20:23:28-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add support for bundling Jackson
The RPM spec has been updated such that by default it will bundle
Jackson library.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/0cd47ec4677b403af9db395a14e6d53d0bbf38f3">0cd47ec4</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-07-03T13:35:20-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix Maven metadata file names
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c4ee7406e64b4dca6a45a4bd16e5d9bc86db2467">c4ee7406</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-07-03T22:55:03-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Reorganize Maven dependencies
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/cc619522f1ba972d16de2196c4553c276f23368f">cc619522</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-07-09T11:26:31+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Implement v2 AccountService for CA
The implementation delegate the login/logout operation to
AccountServletBase object which is shared among the subsystems.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b6b2fd750ac93f041b9e54a3c94c1ebdac3e9b54">b6b2fd75</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-07-09T11:26:31+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Implement v2 AccountService for KRA
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/4422e4797d98493c45ab3ced1d0b4dd725a7d1a8">4422e479</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-07-09T11:26:31+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Implement v2 AccountService for OCSP
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/1f55b4a398b2589b7acfea819cb42cdce6c8b08d">1f55b4a3</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-07-09T11:26:31+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Implement v2 AccountService for TKS
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f92a3f0c427bf254fd8d1905bec744c05824999e">f92a3f0c</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-07-09T11:26:31+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Implement v2 AccountService for TPS
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/fe9416fd02e372e055532f1ab6438ac0157bbe1c">fe9416fd</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-07-10T08:00:13-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Publish Maven artifacts to dogtagpki/repo
Previously PKI's Maven artifacts were published to GitHub
Packages which is a private repository so it's difficult to
use.
To resolve the problem, the pom.xml has been modified to
publish the artifacts to a publicly accessible dogtagpki/repo
instead.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/daa189ab7cde42ee7628921a66fa897475aac2a9">daa189ab</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-07-10T08:54:31-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix fontawesome4-fonts-web dependency
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e5624f97508507d55c3a532ba03092ae3bc6dcc1">e5624f97</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-07-10T21:57:43-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update CMake script
The CMake script has been updated to use the imported JAR files
first if available, otherwise it will use the system JAR files.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/dd9a8226f64430015f5063ee8fe9d73d3369fcf5">dd9a8226</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-07-11T11:58:56+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add UserServletBase for user management
This is the delegated object for user operations in all subsystems.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b08177c6bf67e1063f0664d2e73bb20d7f402c79">b08177c6</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-07-11T11:58:56+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add UserServlet to CA subsystem
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6eed068e1b3d959200373f091cb0c194ed511710">6eed068e</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-07-11T11:58:56+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add UserServlet to KRA subsystem
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/cdadeb83baacd22858b4ec7eaf09b79792ecc3f1">cdadeb83</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-07-11T11:58:56+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add UserServlet to OCSP subsystem
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e0dcc38c7c76ee4bac16f63516e2fe56baa07167">e0dcc38c</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-07-11T11:58:56+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add UserServlet to TKS subsystem
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/5ce56d3b64201cf0bf0c1f1b8b6a69bd76ec9646">5ce56d3b</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-07-11T11:58:56+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add UserServlet to TPS subsystem
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/1adc12274dc67c900ea5ebfc8d92970ab84a78f6">1adc1227</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-07-11T11:58:56+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove printStackTrace and JAX-RS classes from UserServletBase
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/2e793c3b11753ab0dd2a9ac4c6575cdeb12a35af">2e793c3b</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-07-11T18:31:05+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add SelfTestServletBase for self test v2 APIs
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/bfbbf94e5ce9afdf11e79e5ffb6a43fdfcaf3d12">bfbbf94e</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-07-11T18:31:05+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add SelfTestServlet to CA v2 APIs
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ae137d0b9aaee122b047ca6cd809234fc92eb830">ae137d0b</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-07-11T18:31:05+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add SelfTestServlet to KRA v2 APIs
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/7b342349334dfd67dd07765feafe53a57b44a4f9">7b342349</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-07-11T18:31:05+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add SelfTestServlet to OCSP v2 APIs
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/fc7ac233d1b2ea9c52589246780445aee4ccae74">fc7ac233</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-07-11T18:31:05+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add SelfTestServlet to TKS v2 APIs
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/12b3d6724b4e2d5679c24358fb8a71bea5b01480">12b3d672</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-07-11T18:31:05+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add SelfTestServlet to TPS v2 APIs
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/3296004ccacdcff300ebad158d0081ee3f973c1a">3296004c</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-07-11T18:33:08+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix CMake build for missing libraries
The test for jackson and resteasy library was failing because the
variable is undefined when the libraries are not provided with the
package.
Since CMake test works with variables considering false when the
variable is undefined the all the is statements have been modified to
check if the variable is defined.
https://cmake.org/cmake/help/latest/command/if.html#variable
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d5ae2bf566bb8952710d878285200090f7442411">d5ae2bf5</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-07-11T11:42:57-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Rename jaxrs-api.jar to jboss-jaxrs-2.0-api.jar
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6408d1fad18dea56ddc8b3e4d2c277daa0feacd2">6408d1fa</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-07-11T11:42:57-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Rename jaxb-api.jar to jakarta.xml.bind-api.jar
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/80ef9cb612b0b102f5c2e4f8e7b6776773307e93">80ef9cb6</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-07-11T11:42:57-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Rename javax.activation.jar to jakarta.activation-api.jar
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/53a63847e107e603f4c0b1b89d6ecfaab5cbf1af">53a63847</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-07-11T11:42:57-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Rename javax.annotations-api.jar to jakarta.annotation-api.jar
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/501faf8a5cfc58383dffdc3cb74332debae0c64c">501faf8a</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-07-11T13:00:43-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Rename SSLClientCertAuthentication to SSLClientCertAuthManager
The SSLClientCertAuthentication class has been renamed to
SSLClientCertAuthManager to avoid possible conflicts with
SSLclientCertAuthentication.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/50033453a438cad9b21ca0d784a93ec10ed77373">50033453</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-07-11T13:00:46-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Eclipse classpath
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/33488fc5d8d8ef40a0b20529fc0ed6a93093fbdf">33488fc5</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-07-12T18:47:55+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix method name in log message
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/2d75da4f6e60fa0c7454ee247eeeadc46584df7f">2d75da4f</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-07-12T18:47:55+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add JobServletBase for Job v2 APIs
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/dec96774982c0ad8793461c75288bbc7e5f257a1">dec96774</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-07-12T18:47:55+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add JobServlet to CA, KRA, OCSP, TKS and TPS v2 APIs
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/bc86a941f1d8307a5fcd70ae109727bb18402c6c">bc86a941</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-07-15T21:55:01-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add RPM spec option to build without Maven
The RPM spec has been modified to provide an option to build
without Maven and instead use CMake to build both Java and
native binaries.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/843e8fe6c37f93218f87e6a1903bd7bb40b2c053">843e8fe6</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-07-16T17:31:09-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up RPM spec
The RPM spec file has been modified to provide an option to
disable the dependency on esc and to list bundled libraries.
The meta package has been modified to define the Obsoletes and
Conflicts when a subpackage is disabled to ensure that upgrade
will work properly.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/eaf1f8b3969083f2ae8cba470106d5389886bd59">eaf1f8b3</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-07-16T21:33:15-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add RPM spec options for build and runtime dependencies
The RPM spec file has been modified to provide options to
use external or bundled build and runtime dependencies.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/70acbfd1ce214c8b98da3bc26e229a9bc2e1d27b">70acbfd1</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-07-17T17:36:02-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix Azure pipeline failure
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ec6e87e2d4985c61a69cfb4484cb521f4233eeff">ec6e87e2</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-07-17T18:48:39-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update CMake files
The code that installs bundled libraries into the buildroot
has been moved from RPM spec into CMake files.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c4aff62e3d9e29456323cad042aa7df957a887cd">c4aff62e</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-07-17T22:33:11-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Rename jboss-jaxrs JAR file
The jboss-jaxrs JAR file has been renamed to match the
Maven artifact ID.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e4d414c7d9d6d61311bc69c41187c8e70007c231">e4d414c7</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-07-18T12:44:21+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add routing based the annotation WebAction
Using raw http servlet with base method it is not always possible to handle the
correct return state because the value depends on the operation of other
operation.
Using the annotation it is possible to map all the operations during the
init phase and provide the correct state in any situation.
Additionally, it is possible to split multiple operations associated to
a single http method simplifying the code.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b9c4eb6fb450814a0e3e6f2b40c16945e8f3cb87">b9c4eb6f</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-07-18T12:44:21+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update JobServlet to WebAction annotation
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ef9f167a2c4c45cd3464d13d8cb3bd74dd7985e7">ef9f167a</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-07-18T12:44:21+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update AccountServlet to WebAction annotation
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/fa270d2680e0c6f596216a63ef6aaa20e2020a56">fa270d26</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-07-18T12:44:21+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update SelfTestServlet to WebAction annotation
Additionally, the path specification in ACL filter for the root element
has been modified from empty string to "/" to have the same format used
in the PKIServlet.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d16caee8484e15adb1711820933969af57cdf02a">d16caee8</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-07-18T12:44:21+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update UserServlet to WebAction annotation
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/7839ce00d5b10eec89580d5a12ecc8adc1d8d545">7839ce00</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-07-18T12:44:21+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update CA servlets to WebAction annotation
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ae3e1c91854813adf593f75ccdacad2289eec7c6">ae3e1c91</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-07-18T12:44:21+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update TPS servlets to WebAction annotation
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b12487d57da151c86edea69afb7bd672f9c7ac97">b12487d5</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-07-18T12:44:21+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Reorganise v2 APIs shared among subsystems
Code of APIs supported in multiple subsystem is moved to server package
and the subsystem have to just extend without duplicate the code.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f378d5de42f93f848ccb537018a0ab4987d2b09f">f378d5de</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-07-18T12:44:21+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Rename v2 classes to be consistent with servlet name
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ac519491890db4b49186c3b0ebda26eba3cc6403">ac519491</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-07-18T12:44:21+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Make v2 WebAnnotation and ACLFilter paths relatives
All paths defined in WebAnnotation and ACLFilter for routing and
chacking the ACL are relatives to the servlet context
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/16ab4513305cf8454258c938dab3640e4a6f3eca">16ab4513</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-07-18T14:09:11-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up Azure pipeline
The Azure pipeline has been updated to no longer install
Maven dependencies manually since they are now available
from the Maven repository.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/7cf1351179562279719bbfb3524dbfc31b3b670f">7cf13511</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-07-18T23:34:56-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Bundle JAXB API
The RPM spec has been updated to bundle JAXB API for runtime
dependency by default.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e7a4ef0563e1513ff682264cb48fd82486cfd0f8">e7a4ef05</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-07-18T23:34:56-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Bundle Jakarta Annotation API
The RPM spec has been updated to bundle Jakarta Annotation API
for runtime dependency by default.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/59486a4bf1f4b0a00c363197d0f93c320e1bdea3">59486a4b</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-07-18T23:34:56-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Bundle Jakarta Activation API
The RPM spec has been updated to bundle Jakarta Activation API
for runtime dependency by default.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a3b0ee1cc7c6d98ebe4fd39fb36fe29ec6e7e8ff">a3b0ee1c</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-07-19T09:21:15+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move common methods for engine retrieve to PKIServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/adcb89f7aaacdc6cde9d42ad2243ab5ede9df413">adcb89f7</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-07-19T09:21:15+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add AuditService to Job v2 APIs
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/feb03c6f24f56addbc3c1ea5e09bd9435b49d245">feb03c6f</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-07-22T11:08:36+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add SecurityDomainService to Job v2 APIs
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ae453777a20c0473f54938935690b5a15c8c272a">ae453777</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-07-22T11:08:36+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix v2 routing regular expression
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/96a341e8c5a27e8418b49df9f41ab9e72ad1a77f">96a341e8</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-07-22T17:49:08+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Optimise the creation of servlet base object for v2
Base object creation has been moved from the request context to the
servlet context to optimise the execution.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/460ee37b6af17b8f9e3c0cd89effd08875dcc6e4">460ee37b</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-07-23T18:23:11-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update TokenAuthentication.sendAuthRequest()
The TokenAuthentication.sendAuthRequest() has been updated
to create PKIClient directly.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/98d7eca3673ec4c67e5b6006fcca2fe32f13bdb1">98d7eca3</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-07-23T18:23:11-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove unused Configurator
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e4556eaaa497327b40799fe5234752a51a0d8ea9">e4556eaa</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-07-24T09:20:25+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add GroupService to v2 APIs
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e6bb0a6c0471f83c6fbff82e5b327cee231f90a8">e6bb0a6c</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-07-24T09:20:59+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add FeatureService to v2 APIs
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/915c6228916b14edf9557d72613a25f1a4c293e9">915c6228</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-07-24T09:33:14-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up PKICertificateApprovalCallback
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/cbde7d1530ed136754048efeac81a9c8917d6ed1">cbde7d15</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-07-24T09:33:14-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move PKIClient.rejectedCertStatuses to PKICertificateApprovalCallback
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/89324e8676ab1081559abb62ba29146fa57564fc">89324e86</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-07-24T09:33:14-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move PKIClient.ignoredCertStatuses to PKICertificateApprovalCallback
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b6c1bf98056817a9da3d607bb18546bfd302740f">b6c1bf98</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-07-24T09:33:14-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move PKIClient.statuses to PKICertificateApprovalCallback
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f165726bc1d70a917493b1a3dbc0d98c4713b150">f165726b</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-07-24T09:33:14-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Replace ConfigCertApprovalCallback with PKICertificateApprovalCallback
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/3c7bbd48e8315bc0f8e55be33edefbdc395420ee">3c7bbd48</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-07-24T11:59:42-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add MainCLI.createCertApprovalCallback()
The MainCLI.createCertApprovalCallback() has been added to
provide a cert approval callback with the proper list of
rejected/ignored statuses for PKIClient instances created
in pki CLI.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b1ad63033fd46c69ddd22a90206cfcd2feb421cd">b1ad6303</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-07-24T12:04:53-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove unused PKIClient.crypto
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/eb86172fcf2c5556f58d4679b3b1a21898a140e4">eb86172f</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-07-24T12:05:22-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove unused PKIClient.callback
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/7f3390cc8cfea63c60f3a6d930a0ae369020bf62">7f3390cc</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-07-25T08:40:08-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove default cert approval callback in PKIClient
Previously the PKIClient class had a default cert approval
callback which would only warn the user if it receives a cert
with a BAD_CERT_DOMAIN but still allow it, or ask the user
whether to trust an UNTRUSTED_ISSUER.
On the client side (e.g. CLI, console) this is fine since the
user is actively interacting with the application, but on the
server side (e.g. authenticators) there are no users constantly
monitoring the logs so the cert verification needs to be more
stringent.
To resolve the issue, the default cert approval callback in
PKIClient has been removed such that certs with BAD_CERT_DOMAIN
or UNTRUSTED_ISSUER will automatically be rejected. On the server
side PKIClient will be used without a cert approval callback. On
the client side it will be used with an interactive callback.
Previously some of ACME tests were using the default issuer URL
which contains localhost.localdomain hostname so it actually
generated BAD_CERT_DOMAIN errors. They have been updated to use
the proper CA hostname.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6695a2902416f64cd13cd28fce1bedb2df33bbf6">6695a290</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-07-25T17:25:07+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add CA AuthorityService to v2 API
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/4673c3affe09d7789fb92190a67fa0951b6e8acc">4673c3af</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-07-26T12:55:08-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Replace TokenCertificate with PK11Cert
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b3254499186405dbd80f58830adb9a21f17c5c78">b3254499</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-07-26T13:10:36-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Replace InternalCertificate with PK11Cert
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/8ba03d7a7a5e1e2f27724ad9f7a23c44557ec69d">8ba03d7a</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-07-29T17:26:12+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add CA CAInstallerService to v2 API
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f2ef87a0b28d4d700dbcf4f46b7e40e3392fde22">f2ef87a0</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-07-29T17:48:14+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add CA CASystemCertService to v2 API
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c2322acd2024ed23842618e8323f7d50ba7c40b5">c2322acd</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-07-29T19:59:59-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add tests for cert validation with PKI CLI
The test for HTTPS connector with NSS has been modified to
check PKI CLI with untrusted issuer and bad cert domain.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/da0e1902aa851a67feeed50db883b1aaa9576413">da0e1902</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-07-29T20:17:27-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update SSLCertificateApprovalCallback.approve()
Subclasses of SSLCertificateApprovalCallback has been updated to
implement approve() that takes java.security.cert.X509Certificate
instead of org.mozilla.jss.crypto.X509Certificate so that it can
be used with certs coming from standard Java library.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/44ff6250f01079e69110e9627db9850c3c2897d1">44ff6250</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-07-31T21:21:44-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update cert validation test
The cert validation test has been modified to check PKI CLI's
stdout and stderr when the server cert is untrusted, has a
wrong hostname, or is already expired.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6efcff0015bc8c25f235e2312e225fe9dbf6abd6">6efcff00</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-08-01T22:22:50-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add pki nss-key-show
The pki nss-key-show has been added to display key details.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/61759595ba116f2c20e1cb98ade022154c8c39f0">61759595</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-08-01T23:47:42-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update pki nss-cert-show
The pki nss-cert-show has been updated to use PK11Store.findCert()
to find a cert from its binary data.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c52041ed3cefb59ab6145f6c0078dd7c84a559bd">c52041ed</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-08-02T20:59:30-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix test for HTTPS connector with NSS database
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/5e9fb5bc451eaa71d1a34da2d07b5ff7e8b98c1d">5e9fb5bc</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-08-06T21:07:55-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add pki -D option
The pki CLI has been modified to provide an option to specify
Java properties.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c628f79c1638a28dd160680a506e1d7ba8add1da">c628f79c</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-08-06T21:07:55-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Rename JSSProtocolSocketFactory to DefaultSocketFactory
The JSSProtocolSocketFactory in PKIConnection has been renamed
to DefaultSocketFactory and moved into a separate file.
The org.dogtagpki.client.socketFactory property has been added
to specify an alternative socket factory if needed.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e67221ef864fa0c8e6c5ff5d941d5ac7a1bc9987">e67221ef</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-08-07T16:27:17+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add CA ProfileService to v2 API
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b636083182903fa9e5d190decff746d22ab1c69a">b6360831</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-08-07T16:27:17+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Revert the ACL check for profile APIs to v1 code.
ACL groups does not match with the embedded checks in v1 code so the
code has been reverted to the embedded check leaving the ACL update to
future commits.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/527a671ccbe09257fed707d4626588025d796d90">527a671c</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-08-08T09:32:54+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add KRA InfoService to v2 API
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/52011a9760313345afb2b476ce74676df6db2724">52011a97</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-08-08T09:36:44+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add CA KRAConnectorService to v2 APIs
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b51e41b408966e825881ba6ce5b6ddc91fec1aa9">b51e41b4</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-08-08T08:40:40-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update test for HTTPS connector with PKCS #12 file
The test for HTTPS connector with PKCS #12 file has been updated
to create a CA signing cert, a short-lived SSL server cert, then
test cert validation using PKI CLI under various scenarios. This
test is similar to the one for HTTPS connector with NSS database.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e9c1af4c0d68b30e314bea1874c717c87fcfda81">e9c1af4c</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-08-08T16:27:00+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add KRASystemCertService to v2 APIs
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e7281d03b19a9c8a1cae2a3a5840567e423f339c">e7281d03</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-08-09T09:37:31+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add KRA KeyService to v2 APIs
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/0f12674d7e64b1bc158d46bd2b2b7211f95d97f0">0f12674d</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-08-09T15:58:09+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix content type for authorisation error message
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ce10a949fe997c9b7cc78947dcfb78ee348a71df">ce10a949</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-08-09T12:38:23-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Rename ds-container-start.sh to ds-start.sh
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c2b4b837371a6258e51d2c63468b70b742e0827a">c2b4b837</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-08-09T12:38:43-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Rename ds-container-stop.sh to ds-stop.sh
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ede1698b2034e36a68c3e74cc79285fbed74e6bc">ede1698b</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-08-09T13:57:16-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Rename ds-container-certs-import.sh to ds-certs-import.sh
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/295a4da8af93af7a5163aa0e34da51e30caba237">295a4da8</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-08-09T15:00:17-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Merge ds-container-create.sh into ds-create.sh
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/fcc9256a0463e52cb6fda27da15f47e2ddf0d995">fcc9256a</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-08-09T15:00:23-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Merge ds-container-remove.sh into ds-remove.sh
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/782ee1021ac9479d84e447f5c4ff419b2860702f">782ee102</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-08-19T12:27:28+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix log and field access for KRA KeyServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/32f0378afdc0f779e30495dda7fe2703f6c7f2b0">32f0378a</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-08-19T12:27:28+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add KRA KeyRequestService to v2 APIs
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/eaebd8b8ad512f1b9841f291e8c2a354541c2556">eaebd8b8</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-08-19T12:33:48+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add TKS TPSConnectorService to v2 APIs
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/3d749e6f6b1c47e6cb125eb542b801cbb26141ff">3d749e6f</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-08-19T12:57:23+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add TPS ConnectorService to v2 APIs
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/cd070b882e47bdb92cc17ce01f81bd4f97e80efb">cd070b88</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-08-19T12:58:19+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add PKI Services to v2 APIs
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a90cae0f8a442f59f49386e827980c6a5c519ce6">a90cae0f</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-08-19T13:06:53+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Replace JAX-RS with servlet status code in PKIExceptions
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f92a84439e5ec62b02df0b46d62489fd368cac0d">f92a8443</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-08-19T16:40:14+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix CMake build
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/80d8a200fb43844b07c810e8bb899081e1d6fd27">80d8a200</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-08-19T20:20:43-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Use gcc option -mbranch-protection=standard
The RPM spec has been updated to use gcc option
-mbranch-protection=standard on AArch64 since it's now required
by rpminspect.
https://sourceware.org/annobin/annobin.html/Test-dynamic-tags.html
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/eb2456af59c685bb90be82340e13a613e723c4bc">eb2456af</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-08-21T10:00:12+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add TPS TPSCertService to v2 APIs
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/9615892a1fbed1ca50733d16f74b1965fd29af38">9615892a</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-08-21T11:09:57+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove server classes from common library
Status codes were retrieved from tomcat servlet.jar package but since
the common package should be used in the server as well as the client
this dependency has been removed and the codes are retrieved from
httpcore package.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/64f3239c66d33ce4ecbeb4c2c732f7926d7d5b54">64f3239c</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-08-21T08:39:20-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update cert approval callback
Previously if a client tries to connect to a server but it does
not have the CA signing cert installed and trusted it will get an
UNTRUSTED_ISSUER error from NSS and the cert approval callback
will ask the user whether to trust the cert. In the latest NSS
the error has changed to UNKNOWN_ISSUER, so the callback has been
updated to handle the error in the same way. The tests have also
been updated accordingly.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/458f1a80fdfb01474e6bc17fafda6f00f5429006">458f1a80</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-08-21T08:39:20-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update sub CA tests
The latest NSS requires the client to have the full cert chain
in order to validate a cert, so most of the sub CA tests have
been updated to install the sub CA signing cert in addition to
the root CA signing cert. For some reason the sub CA tests with
HSM still work without these changes. That will be investigated
separately later.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b4097be4cf6c5d7a8252dce9214278000570dde5">b4097be4</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-08-21T13:56:38-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove redundant code in CRSEnrollment
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/0fff4dfa72b2715bc1cf86feb2a9f400ab05d64c">0fff4dfa</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-08-23T12:53:49-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add NonBlockingSocketFactory
The NonBlockingSocketFactory has been added to provide a
non-blocking socket factory for PKIConnection. Eventually
it will replace the DefaultSocketFactory once the support
for OCSP and CRL has been added into JSSTrustManager.
The test for HTTPS connector with NSS has been updated to
use the non-blocking socket factory and validate the new
error messages generated by JSSTrustManager. The test for
HTTPS connector with PKCS #12 file will continue to use
the blocking socket factory to prevent regressions.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a26cc9a6aaef7db5cd386c0a5d990716f87f81b4">a26cc9a6</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-08-26T10:48:29+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add TPS TPSProfileService to v2 APIs
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6f02dd94e07b0d57474b3a5e5248b0d3a42963c3">6f02dd94</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-08-26T10:49:05+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add TPS AuthenticatorService to v2 APIs
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/0d5eccbd9dcae97b2e632374712e9d9a003ed534">0d5eccbd</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-08-26T14:01:10-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add pki nss-cert-find --subject and --issuer options
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d5502a4969d68c397d389517fa0caf1d25729e0f">d5502a49</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-08-27T09:31:12+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix missing location in TPS profile POST answer
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/1236a4ca1f676b307e763d539d1480d38dab7b5d">1236a4ca</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-08-27T09:31:12+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add TPS ProfileMappingService to v2 APIs
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/da25f8ae35433abea32690cf9a4afd22359db4ce">da25f8ae</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-08-27T09:31:42+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add TPS ConfigService to v2 APIs
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/76d7686b738c2bbc2a2d996fc7b68840352daba2">76d7686b</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-08-27T18:01:15+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix pin cert enrollment in v2 APIs
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/91484ea194c3bc26df29253549d89c696a885d03">91484ea1</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-08-27T18:01:15+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix routing for duplicated path
In case where the same combination of "method:path" match the routing
it was selected always the first.
E.g.: POST:{} and POST:retrieve from KRA `KeyServlet` was not working
because always the first was used.
Additionally, the routing of servlets and filters are the same and it is
not supported anymore filter routing to multiple method using "*" which
has never been used.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/759ef9ba81f8e12567ee9ab518131e0d7b7e50a8">759ef9ba</a></strong>
<div>
<span> by Andrew Hughes </span> <i> at 2024-08-28T14:54:47-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Use Java 21 on RHEL 10
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/fe9c2f88ee4f26ba58621728b170630308ab4fb4">fe9c2f88</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-08-28T14:54:58-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Use Java 17 on RHEL 9
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d1f8c502f7a7a5b06c2f052c28fe0cda0392f1eb">d1f8c502</a></strong>
<div>
<span> by Chris Zinda </span> <i> at 2024-08-29T18:39:33+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Installing_EST.md
Added the dnf command to ensure the subsystem is installed.</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f3c1ec9a38883d294f88cbb0e2cc9db952127bfe">f3c1ec9a</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-08-30T16:49:46-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Reorganize Tomcat 9.0 files
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/7f86116a756613d9025a8e35da8d7ee2e6f53881">7f86116a</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-09-04T12:39:26-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix rpminspect test
The pki-rpminspect.yaml has been updated to expect Java 21
binaries on Fedora 40+ which matches the Java configuration
in pki.spec.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/74dc7993171b2c1a0b5bbf03e3d396507bb4b337">74dc7993</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-09-06T10:24:41-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Drop ClonesConnectivyAndDataCheck from pki-healthcheck
pki-healthcheck is a tool to check the status of an instance or
a node in a cluster so that if it reports a problem the admin can
fix it or the monitoring service can replace it with a new node.
The ClonesConnectivyAndDataCheck on the other hand is a plugin
that checks the connectivity from the instance to other clones.
This plugin will report a problem if another clone is down even
though the instance itself is fine, which would be misleading.
Since it doesn't really fit the purpose of pki-healthcheck this
plugin has been dropped.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d67d4d07cd1200e24740db137f1d32e396678bbe">d67d4d07</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-09-06T10:25:25-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Rename DB_IMAGE to DS_IMAGE
https://github.com/dogtagpki/pki/wiki/Configuring-Test-Database
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d78316d8dab49ac9d70c7fe4fd6c2e78fcb33c0e">d78316d8</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-09-06T14:18:13-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add ds-cert-import.sh --input option
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/59ea64902124cab5b2689b749fbbe9d24dab15c8">59ea6490</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-09-09T11:05:27-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix CA cloning test with secure DS connection
The tests for CA with secure DS connection (including
cloning) have been updated to use DS containers instead
of DS RPM packages from Fedora to avoid DS issue #6316.
https://github.com/389ds/389-ds-base/issues/6316
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ace004dbae6f01854325dd0cef70007ae54b80b9">ace004db</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-09-10T13:07:49-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Rename test for ACME with certbot into basic ACME
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ca2674ca385088e545a56847e930ce7b8827831e">ca2674ca</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-09-11T20:48:21-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix pki_ds_setup param
pkispawn has been updated to set up the internal database only
if the pki_ds_setup param is set to True.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a72c3f61f4d37a50a86ff88041cb93fbebeeb115">a72c3f61</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-09-12T09:27:38-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update pkispawn to support ACME
pkispawn has been modified to support installing ACME in a
shared PKI server (e.g. with existing CA).
New pkispawn params have been added to specify the ACME
database, issuer, and realm. A sample configuration has been
provided in acme.cfg.
The pki_ds_setup, pki_security_domain_setup, and
pki_registry_enable params in the default.cfg have been moved
from [DEFAULT] into each subsystem's section so that ACME can
skip DS setup, security domain setup, and registry setup by
default.
The templates for ACME database, issuer, and realm configs
have been modified to no longer contain passwords. The
passwords need to be specified during installation.
Some code in acme.py has been moved into subsystem.py so that
it can be reused.
The basic ACME test and the test with PostgreSQL have been
modified to install ACME using pkispawn.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e984ab74d92b1c6bed253c56775b3c0fb12542da">e984ab74</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-09-12T18:58:40-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update pkidestroy to ignore missing deployment.cfg
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/0172c1fbf0906fac91a294541bd499b2df069a63">0172c1fb</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-09-13T18:23:16-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update PKIServer.remove_subsystem() to take subsystem name
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/613a69854318de897adb54608c0f84f3b674a6e6">613a6985</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-09-13T18:33:31-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add default value for pkidestroy -i option
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/0ff1fc473e95b5ae48a7fad028810efbe099a3b8">0ff1fc47</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-09-16T09:29:22-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add test for ACME on separate instance
A new test has been added to install CA and ACME on separate
instances using pkispawn, then perform some operations using
certbot.
The code that calls spawn_acme() has been moved to run after
the instance is created by the instance_layout scriptlet.
The code that checks the existence of pki_ds_password has been
moved so that it will only run if pki_ds_setup is True.
The code that checks the existence of pki_admin_password and
pki_client_pkcs12_password has been updated so that it will
not run for ACME.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/9dd4ea2b467095b229eeb6560059f88266df2222">9dd4ea2b</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-09-18T13:16:34+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Modify pkispawn to deploy EST
EST deployment is included in pkispwn. The installation does not perform
all the steps done for CA and other subsystems so there is no security
domain management and user administration. During the installation there
is no DS or other DBs connection which has to be performed by the user
before or after the installation.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/69c899c848845d57d5e2a6a8476169be9a360204">69c899c8</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-09-18T20:26:51-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update ACME tests to check server files and folders
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d07d0c7b37ed967c21218170768dbb564465e9fa">d07d0c7b</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-09-18T22:09:08-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update PKIServer.remove()
The PKIServer.remove() has been updated to remove the
/var/lib/pki/<instance>/alias symlink if it exists.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/47414b8bcb1081e30360fd5e866637d9044f482e">47414b8b</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-09-19T13:31:16-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Merge NSSDatabase.create_request_with_wrapping_key() into create_request()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e2bd2bcf5bd33ca64bfd5f805a939a623eeb783e">e2bd2bcf</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-09-19T15:38:06-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up PKISubsystem.get_subsystem_cert() param name
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/0d5138f98604b1589cc61343c041cb3c7213ea30">0d5138f9</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-09-19T15:38:32-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Rename PKIDeployer.get_cert_id() to get_cert_param_id()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/1b7fd92de227c1832968390a0f2f98f6a4add359">1b7fd92d</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-09-19T17:17:13-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Rename PKIDeployer.request_cert() to issue_cert()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a772c6a4a45213aa7d8b1f7dffc241a379b9dba9">a772c6a4</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-09-20T09:02:45+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Allow pkispawn to install only EST subsystem
Deployment script has been modified to skip configuration for EST, it is
done differently from the other subsystems. The remaining steps are
performed to create and prepare the instance for EST.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/2217c891ad6af3a91cdb04648f4f4956afecf9b2">2217c891</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-09-20T09:50:36-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update pkidestroy to support ACME
pkidestroy has been updated to support removing ACME from
PKI server. If it is the last subsystem on the server, the
server will be removed as well.
The ACMESubsystem.create() has been modified to create a base
dir (i.e. /var/lib/pki/<instance>/<subsystem>) which is used
by PKIServer.load_subsystems() to determine if the subsystem
exists. The code that creates the conf and logs folders has
been moved into create_conf() and create_logs(), respectively.
The pki-server acme-remove has been updated to provide options
to remove the conf and logs folders.
The tests that use pkispawn to install ACME have been updated
to use pkidestroy to remove ACME.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/46ae1346ab749d75cdab4205a5277a5245569316">46ae1346</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-09-20T12:48:49-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update param names for PKIDeployer.issue_cert()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/5181954420c19f14fcbb4e93f2ec6ab42fa32cc8">51819544</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-09-20T17:12:48-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix basic IPA test
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/be8e5c014ee42135dfdde8922640adb4da54e668">be8e5c01</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-09-23T11:50:17+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add EST to pkidestroy
Add est to the list of subsystems and the command help.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/5bb5342c99fb11bc3c705db24b1abffd280c93b9">5bb5342c</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-09-23T14:18:29-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Rename ServerConfig.get_unsecure_port() to get_http_port()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/75c28c00433cd17508fcd5eed79d1999427bc226">75c28c00</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-09-23T14:18:50-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Rename ServerConfig.get_secure_port() to get_https_port()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d9ad64f8754952b02a1c3319c23f0fa97c82e0f6">d9ad64f8</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-09-23T17:45:25-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add ServerConfig.get_<protocol>_connector()
The code in ServerConfig.get_<protocol>_port() that finds
the connector for a specific protocol has been moved into
get_<protocol>_connector().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c5f4f4754e37a962587cd5a01d483c2b4c110c06">c5f4f475</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-09-23T17:45:28-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add IPA KRA test
The code that tests IPA KRA in the basic IPA test has been
moved into a separate IPA KRA test.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/56c4a0638b65b9aadba29e1bf9f818a3b83ce817">56c4a063</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-09-24T09:21:05-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix problem reinstalling CA with custom ports
The code that calls ServerConfig.get_connector() to find
a connector with a specific name or port number has been
modified to call get_<protocol>_connector() instead such
that it can always find the connector for the protocol
regardless of the name or the port number.
A new test has been added to install CA with custom port
numbers, remove it, install it again, and remove it again.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/33a139abfb541228bba341795e7415c09198a741">33a139ab</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-09-24T10:13:09-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add pki ca-cert-issue
The pki ca-cert-request-submit command can be used in two ways.
If it's invoked with an install token, the cert will be issued
immediately. If it's invoked without an install token, it will
submit the request to the CA, but then the request will need to
be approved, and the cert will need to be retrieved separately.
To make it easier to issue a cert, a new pki ca-cert-issue has
been added which is similar to pki ca-cert-request-submit but
it can approve the request and retrieve the cert immediately if
invoked with the proper credentials.
pkispawn and most CI tests have been updated to use the new
command. The pki ca-cert-request-submit options that take an
install token have been deprecated.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/fcfa2adf39e2c103c385ea2bb11193ac964e4f32">fcfa2adf</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-09-24T15:12:29-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update PKIDeployer.import_cert_chain()
The PKIDeployer.import_cert_chain() has been updated to skip
retrieving and importing the cert chain if it already exists
in NSS database.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/90537d48ed6ecfab97fd540019238779b79289da">90537d48</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-09-24T15:12:29-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add token param for PKIDeployer.generate_csr()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/81b273ae00c749d33e3a1e40bc44c4df79282a81">81b273ae</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-09-24T15:12:29-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add NSS database param for PKIDeployer.generate_<cert>_request()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/9f04b768596dcee16ef7bbeb8af4aceac3192ecf">9f04b768</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-09-24T15:12:29-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add request format param for PKIDeployer.issue_cert()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/5c1d20155c3c36d9ba895456073974cf57fa2723">5c1d2015</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-09-25T16:18:02+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix log message from GroupServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/64ed4cc8938cad444c002f43382ee0122926e1e9">64ed4cc8</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-09-25T09:19:35-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Auto-create SSL server cert for ACME on separate instance
pkispawn has been updated to use the ACME's issuer to
provide the cert chain and to automatically issue an SSL
server cert for ACME on separate instance.
The PKIDeployer.import_cert_chain() has been modified to
retrieve the cert chain from the ACME issuer.
The PKIDeployer.get_ca_signing_cert() has been modified
to ignore UNKNOWN_ISSUER error.
The PKIDeployer.issue_cert() has been modified to support
optional install token, subject DN, and issuer credentials.
The test for ACME on separate instance has been modified
to automatically issue an SSL server cert.
The original test with manual SSL server cert creation has
been moved into a separate test.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/9781a58c86eeb808a2d90f79d06aaa2b2e59b508">9781a58c</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-09-25T18:40:53+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove setup from Postgresql realm authentication
The realm should not modify the user database but it has to be provided
and configured in advance.
However, if a file is provided it is used during the initialisation and
not during the authentication.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/142568c2634dd14dbe3011ae22df25f5f24925c4">142568c2</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-09-25T18:40:53+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add est test for Postgresql realm
Adding a new test to verify the connection between the EST subsystem
and a realm user database handled with Postgresql.
Additionally, the realm test on separate instance has been modified to
authenticate the EST subsystem into the CA using a certificate.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/5f28b991fd30a1ea84af600fd68bfd5720526e36">5f28b991</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-09-25T18:40:53+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Revert DB setup to the connection method
Since DB could be not available before the connection the setup is moved
back to the connection method.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/7086d337f4f02c0b0740adce287c12bef2f0ff7e">7086d337</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-09-25T16:50:17-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Replace Directory.exists() with os.path.exists()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/267b8512f7c5196a25bbb5c55123bf81b3c5243a">267b8512</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-09-25T16:50:20-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Replace Directory.create() with pki.util.makedirs()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/527a0296dd4e6476295d35c8766dd5eb0a7ac28d">527a0296</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-09-25T17:32:23-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Replace Directory.delete() with pki.util.rmtree()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/68783eb0631cb049356fa284be4d5d54ae04a5c5">68783eb0</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-09-25T17:32:23-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove unused Directory class
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/0d545b8aa2cc629d528427899708c7adda753e39">0d545b8a</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-09-25T17:32:23-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Replace File.exists() with os.path.exists()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6859c63a68ea8241a976fe5a66333b30e06f4f66">6859c63a</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-09-25T18:28:03-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Replace File.copy() with PKIServer.copy()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e4202da992fb8f27f482866ff2f611b2379e9590">e4202da9</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-09-25T18:28:08-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Replace File.modify() with os.chmod()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a3514761afe35ca0393e21ed991d4dac937478df">a3514761</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-09-25T18:30:34-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Replace File.create() with Path.touch()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/318c1b486d2d5183a43cea938d5e63bfb734a0e0">318c1b48</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-09-25T18:30:37-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove unused File class
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/1e2c26e679e1f54c86114f06cd0332154b140b3e">1e2c26e6</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-09-25T18:30:37-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove unused Certutil class
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/175e3722d727f62ab297a92a6b5a21b30503d640">175e3722</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-09-25T18:30:37-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove unused Namespace class
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/fe6567d1f189c9fdd7f96617ea809d13cadeb9d6">fe6567d1</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-09-25T18:30:37-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove redundant code in PKISubsystem.remove_logs()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/dc14e3e102bab9d5cbcb6588ec5b9f909d0d66f5">dc14e3e1</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-09-25T18:30:37-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Replace default_deployment_cfg with DEFAULT_DEPLOYMENT_CFG
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/5fa0ac4a45a4d4330103e3a38332c3758f36799e">5fa0ac4a</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-09-26T08:48:33-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Enable registry for ACME
The default pki_registry_enable for ACME has been changed
to True. This allows pkispawn and pkidestroy to create and
remove ACME properly.
The PKIDeployer.create_acme_subsystem() has been modified
to create the registry. The remove_acme_subsystem() has
been modified to remove the registry.
The PKISubsystem.remove_registry() has been modified to
check whether the files/folders exist before removing them
in case the subsystem was created without registry.
The test for ACME on separate instance has been modified to
no longer create the server and NSS database before calling
pkispawn. Some file/folder permissions have also changed due
to these changes.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/174076a8c2510882a75a746fc9ec5c8978f7f7c9">174076a8</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-09-27T10:59:16-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update test for CA with caDirUserCert profile
The test for CA with caDirUserCert profile has been updated
to perform enrollments using pki ca-cert-issue command and
also manually using XML and JSON messages.
https://github.com/dogtagpki/pki/wiki/Configuring-Directory-Authenticated-Certificate-Profiles
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/7a13e699855c4c50af7257f7a157659e806971a6">7a13e699</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-09-30T10:15:43+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix EST sslserver key name
Key name for sslserver was not correctly configured in server.xml.
Additionally, the EST setup operations have been moved to match the
operation done for the other subsystem.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/611d34b0cd0d3fcd34c22027d02080db85c70159">611d34b0</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-09-30T10:15:43+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update EST CI to consider the file generated
After modifying the EST installation with pkispawn there are several
differences in the generated files which are verified in the CI tests.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/eddb83bae8f8f4ac893bdfdc8cc6eb6e783bb23e">eddb83ba</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-09-30T10:15:43+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Generate SSL certificate for EST subsystem
pkispawn will create the sslserver certificate for EST if it is not
provided with a PKCS12 bundle containing the certificate.
To generate the certificate the EST user credentials and profile are
used so these should be configured in the CA before EST installation.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/bbd6664533fab53323c77b4a75d0fcd99b0d7579">bbd66645</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-09-30T08:40:13-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update test for CA with caDirPinUserCert profile
The test for CA with caDirPinUserCert profile has been updated
to perform enrollments using pki ca-cert-issue command and also
manually using XML and JSON messages.
https://github.com/dogtagpki/pki/wiki/Certificate-Enrollment-with-PIN-Authenticated-Profile
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f21fea78e26a46858d9fe6a66f00b3397fea8eef">f21fea78</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-09-30T18:22:20-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update caServerCert profile test to use pki ca-cert-issue
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f0e1d653e86d538eb37c9c2e54ad111aee32c4ba">f0e1d653</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-10-01T20:03:31-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update IPA tests to check access logs
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e62f2c69fcdad96d4c33badeff51aedccee95f2c">e62f2c69</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-10-02T09:43:47-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update rpminspect test
The pom.xml files have been updated to define the target
Java version using maven.compiler.release property. The
maven-compiler-plugin is no longer used so it has been
removed.
The pki-rpminspect.yaml has been updated to no longer
define the javabytecode requirement so it will use the
standard requirement for the platform.
The rpminspect test has been updated to call rpminspect
directly in separate steps to make it easier to inspect
the failures. The rpminspect.sh is no longer used so it
has been removed.
Currently the test is failing because some dependencies
were built with older Java bytecode versions. They need
to be rebuilt with the proper version.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/93013c27985b5f0cf84a20995a77a5fd7e1b819c">93013c27</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-10-02T10:22:20-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add pki --api option
The pki CLI has been updated to provide an option to specify
the REST API version to use when communicating with the server.
By default the CLI will use API v1, but it might change in the
future.
The PKIClient class has been modified to store the API version
which will automatically be used by other client classes (e.g.
InfoClient).
The basic CA test has been updated to run pki info with the
default API and API v2 and verify the access logs generated by
these commands.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/269745d6326f1b213a12a12bc6c7af6fecd12c35">269745d6</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-10-02T10:22:20-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update pki ca-cert-find for API v2
The CertServlet.listCerts() has modified to no longer
return the total certs found to allow future performance
optimization. Calculating the total certs found with Simple
Paged Results requires retrieving the full search results
from the database so it should be avoided.
The basic CA test has been updated to test pki ca-cert-find
with the default API and API v2 then verify the access logs
generated by these commands. The test-ca-certs.sh script is
no longer used so it has been removed.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/2f0ba3ff4c7577793ade2086635af544c82f166b">2f0ba3ff</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-10-02T16:58:29-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update IPA tests to check HTTPD error logs
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d474d8341d0ea71d9930e371aa05f1b88784abb4">d474d834</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-10-02T21:09:04-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix broken publishing workflow due to Maven compiler properties
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a773182fe2736d7c0a4b3455093d4b92cf5c6f0d">a773182f</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-10-03T10:31:34-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update test for pki ca-user-show
The basic CA test has been updated to run pki ca-user-show
with default API and API v2 then verify the access logs
generated by these commands.
The AccountClient has been updated to use the API version
from PKIClient.
The AccountServlet.logout() has been updated to return
NO_CONTENT status for consistency with API v1.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a310a5496d0dbeae6509f951b7dd1e4c4874398d">a310a549</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-10-03T17:54:05+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix profiles for EST certificate and re-enrollment
Generate EST certificates with same profile of other subsystems.
Additionally, add EST generate certificate to the user and test both
enrollment with certificate and re-enrollment.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c91e0624bb1b34ad665ffd512d5fce9cf3e7265c">c91e0624</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-10-03T15:07:14-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update CA DS connection test to use pki ca-cert-issue
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/22e674e7c17cdd861805200cac5be740f9374060">22e674e7</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-10-03T15:07:14-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update CA renewal tests to use pki ca-cert-issue
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/da36e97d85d94fc69d48553c48dd455008b6c9fe">da36e97d</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-10-03T15:42:25-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update IPA tests to check logs before removing server
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/76267d9a717cb09c0be34aebd50156d9ac26b315">76267d9a</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-10-04T21:02:04-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move SerialNumberUpdateTask.updateSerialNumbers() to CAEngine
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/4e474aceeacadbc67cfcb445db5ca7e1cceb4a8f">4e474ace</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-10-08T08:47:00-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add SerialNumberUpdateJob
The SerialNumberUpdateJob has been added to update the ranges
for sequential serial numbers, similar to SerialNumberUpdateTask.
The job can be scheduled to run automatically at specific times,
or can be run immediately by calling pki ca-job-start, whereas
the task only supports a fixed interval.
An upgrade script has been added to add the default config params
for SerialNumberUpdateJob into existing instances. In the future
it might be possible to replace SerialNumberUpdateTask with
SerialNumberUpdateJob automatically.
https://github.com/dogtagpki/pki/wiki/Configuring-SerialNumberUpdateJob
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/2dd79f4cf0a8caac29a215870e6bedc8ebf0bf00">2dd79f4c</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-10-08T08:47:00-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update test for CA with sequential serial numbers
pkispawn has been modified to provide more params to configure the
sequential serial numbers in CA. The params can also be added for
KRA if needed later.
The test for CA with sequential serial numbers has been updated to
perform more detailed steps and verification. The test will now use
small ranges to make it easier to verify the changes in the CS.cfg
and DS. The test will also use SerialNumberUpdateJob to update the
ranges immediately instead of waiting for SerialNumberUpdateTask
to run.
A more complex test with CA clones will be added separately later.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/cd30548016cdd32486c130661276d8d394e071cf">cd305480</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-10-09T10:54:48-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add test for sequential serial number gaps
The test for CA with sequential serial numbers has been updated
to perform additional enrollments and check the request IDs and
cert serial numbers. Ideally the numbers should be contiguous,
but currently the cert serial numbers sometimes have gaps. This
issue will be fixed separately later.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/13e241b2c39f352f80b0d545547b1c114a199642">13e241b2</a></strong>
<div>
<span> by dependabot[bot] </span> <i> at 2024-10-10T15:33:31+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Bump commons-io:commons-io from 2.11.0 to 2.14.0 in /base/common
Bumps commons-io:commons-io from 2.11.0 to 2.14.0.
---
updated-dependencies:
- dependency-name: commons-io:commons-io
dependency-type: direct:production
...
Signed-off-by: dependabot[bot] <support@github.com></pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/34150e16ef84af99fb61a662384991369b5862ae">34150e16</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-10-11T20:30:20-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add test for CA clone with sequential serial numbers
A new test has been added to create a CA with sequential serial
numbers, create a clone with the same config, perform enrollments,
and update the serial number ranges with pki ca-job-start
serialNumberUpdate.
Ideally the serial numbers should be contiguous, but currently
the code creates a gap between the ranges. The steps for fixing
an existing gap and migrating to RSNv3 may be added later.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/41465e2ec54af2540b5230cb74e9b7047022f0cd">41465e2e</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-10-15T10:03:51+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Reverting the test-ca-certs.sh
The file is currently used for JSS tests
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b5e9c749c420fb206cd2d48dda7ae3e8b66cdfb4">b5e9c749</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-10-16T09:58:29-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add ca-<type>-range-config.sh scripts
The ca-<type>-range-config.sh scripts have been added to
simplify range config verification.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/0c1cd6ab7b3ebcb22a4d47ec4435c197b93e00a1">0c1cd6ab</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-10-16T09:58:29-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add ca-<type>-range-objects.sh scripts
The ca-<type>-range-objects.sh scripts have been added to
simplify range object verification.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/696472a9a48539c1d5afd2f7fe588f4ee33b8acc">696472a9</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-10-16T09:58:29-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add ca-<type>-next-range.sh scripts
The ca-<type>-next-range.sh scripts have been added to simplify
next range verification.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a76eb4b8b1d3be26de69eae36ce0fa560d3b7e72">a76eb4b8</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-10-17T10:32:20-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update test for CA with sequential serial numbers
The test for CA with sequential serial numbers has been updated
to use a different cert range configuration to verify how it
handles mismatching range size and increment and also hexadecimal
numbers in the CS.cfg.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/72b508eed894a3a2745bdc2c6f830f27ed95cdf3">72b508ee</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-10-22T12:58:55-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add tests for next begin/end numbers
The tests for CA with sequential serial numbers have been
updated to verify the dbs.nextBegin... and dbs.nextEnd...
parameters.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ff78d2a6a20b4b7c55aa70202bf42a91d8535bf9">ff78d2a6</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-10-22T13:00:55-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up Repository classes
The Repository classes have been updated to no longer use
class fields to store the names of the parameters that define
the boundaries of the ranges. Instead, the classes will use
the setter & remover methods of the parameters directly.
This will make it easier to find the code that modifies the
parameters.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b85f88e62c60c8e0ab42435e42f95fc28dfb0d9f">b85f88e6</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-10-24T19:23:20+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add a new sequential number generator: legacy2
The current generator has a problem with converting from hex to decimal
the range boundaries creating gaps between ranges. This a problem when
third parties tools are used to with certificates because contiguous
range are expected.
This commit introduce the generator legacy2. This uses same
configuration parameter but hex value are specified by the prefix '0x'.
When value are written to the configuration value it is possible to set
the radix with the options:
- dbs.cert.id.radix (default to 16)
- dbs.key.id.radix (default to 16)
- dbs.request.id.radix (default to 10)
Additionally, the new command `pki-server <subsystem>-id-generator-*`
has been added to migrate from the legacy generator to the legacy2 or to
random.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/16e42fd3f4b65eb75df5a65bc3f6e1e3e8447e11">16e42fd3</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-10-24T19:23:20+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add legacy2 generator test to sequential tests
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d8f2465da254c501f77b1b3824b2d1d4cefc595b">d8f2465d</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-10-24T17:18:15-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update CA clone test to check the logs
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6ae10a5226f05643592abf13149036167794989e">6ae10a52</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-10-24T20:41:04-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Rename SSNv1 tests
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6026ef01633fe233d67b78bcdbc73a7e6c8f5907">6026ef01</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-10-28T10:47:15-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add tests for SSNv2
New tests have been added to verify a single CA and CA clones
with SSNv2. New test scripts for SSNv2 have also been added to
make it easier to change the location of the range objects and
nextRange attributes later.
The test for CA with Nuxwdog has been relocated due to GitHub
workflow limit.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d138ee6dbb2f9f0baf33582d4132d1fefa01097d">d138ee6d</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-10-28T18:17:28+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move legacy2 ranges in a new tree
When an instance is updated from legacy generator to the new legacy2
generator the ranges will be stored in a new tree. The default tree
name is "ou=range_v2,<subsystem_base_db>".
The name of the ranges entry can be customised with the option `-r` (or
--range) to the command `pki-server <subsystem>-id-generator-update`.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/1e1e7e77d353442682a2756878324adb3528d0af">1e1e7e77</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-10-28T18:17:28+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update ssnv2 tests to support new ranges object for legacy2 migration
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/9785b3fa4316b5dbbc643d4b4f786730c2623639">9785b3fa</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-10-29T17:03:35-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up log messages in PKISocketFactory
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/250c3474ac2c7bf284230fe9c1743150c6f11abf">250c3474</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-10-29T17:14:44-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove duplicate test scripts
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/9fd6f3f810c32a705499758d56f086410a9d1834">9fd6f3f8</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-10-30T11:40:43+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix pageSize in AgentCertRequestServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a02aebaeff7a6ace96a0e8a5adb1dbcbce43afb8">a02aebae</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-10-30T20:05:49+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Dockerfile to work with F41
Some dnf options have been modified/removed in fedora 41 and the
Dockerfile has been update to the new options.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/23144cca88362387ae02cd5a9fed77dc901bf611">23144cca</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-10-31T10:20:00-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Relocate SSNv2 range objects for new CA instances
pkispawn has been modified to create ou=ranges subtree for SSNv1
and optionally ou=ranges_v2 subtree for SSNv2 if it's enabled for
new CA instances. The pki-server <subsystem>-db-init and
<subsystem>-range-update commands have been updated to use the
proper subtree to store the range objects. Hard-coded subtrees in
the create.ldif have been removed.
Similar changes are made to KRA as well, but since there are no
tests for KRA with SSNv2 it's not officially supported yet.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/830de109557a8b5e78768cdad11f0e7ad9338bff">830de109</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-10-31T10:20:00-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update test scripts for SSNv2
The test scripts have been updated to use ou=ranges_v2 subtree
for SSNv2 range objects.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a59b015aa248a9b715e57325d5a31b6ff92f1d52">a59b015a</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-10-31T17:44:09+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix mime type for authority chain rest API
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/1ee8f34643199e3eb608c67f38e740494baec953">1ee8f346</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-10-31T14:54:34-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update SSNv1 tests
SSNv1 tests have been updated to execute all steps regardless
of test failures to make it eaasier to maintain the tests and
troubleshoot issues.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/60d5348dda72adb9e0a47586a91e049856c7c605">60d5348d</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-11-01T10:23:47-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Command file required for PrettyPrintCert
F41 does not include the `file` command in the default installation and
need to be installed because it is used by PrettyPrintCert to
distinguish between pem and der certificates.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a666e1afebefbe69dd5827ab647c8b20cb3e2955">a666e1af</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-11-01T13:50:07-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Drop abrt-java-connector dependency
abrt-java-connector is no longer available in Fedora 41 and is
actually not required to run ACME container so the dependency
has been dropped.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/4e6c7a629723a0dd58cedc3be7352a9c3c5fc75f">4e6c7a62</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-11-01T14:48:51-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Drop update-crypto-policies dependency
update-crypto-policies is no longer available by default in
Fedora 41 and is actually not required to run PKICertImport
test so the dependency has been dropped.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/596ea567a81170c03304ce5ec8080e4aa8d85c30">596ea567</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-11-01T17:44:51-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix deprecation warnings in NSSDatabase
The NSSDatabase class has been updated to use timezone-aware
fields and methods for cert validity.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/116ef3621ef7173bd521e41e6c6ec86eed9cf313">116ef362</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-11-04T09:11:57-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Relocate SSNv2 nextRange attribute
The nextRange attribute for SSNv2 has been moved to
ou=requests,ou=ranges_v2 for requests and
ou=certificateRepository,ou=ranges_v2 for certs such that
the nextRange for SSNv1 is unchanged during migration.
This will simplify the recovery process in case there's
an issue during migration.
The SubsystemIdGeneratorUpdateCLI has been updated to
compute the request nextRange for SSNv2 with the same
process used to compute the cert nextRange for SSNv2.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/678b8d000daca80ce8c63d6aeb192c3148c68a7d">678b8d00</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-11-04T09:11:57-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update SSNv1 and SSNv2 tests
The SSNv1 and SSNv2 tests have been updated to use the new
SSNv2 nextRange location.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/16a100405ca5e8d7719ccc68f98f220cbdfa0a08">16a10040</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-11-04T13:38:34-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add fallback for Certificate.not_valid_before/after_utc
The NSSDatabase.get_cert_info() has been modified so that it will
use Certificate.not_valid_before/after_utc attributes which are
available since Python Cryptography 42, otherwise it will use the
deprecated not_valid_before/after then convert them into UTC.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/bb4b078e1b0fdb4b7be5b087c69e473a67ac1b7a">bb4b078e</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-11-04T16:43:37-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix variable name in NSSDatabase.get_cert_info()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/7407f408fd5329eab5620ed86cb889fce9a4c081">7407f408</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-11-04T18:15:28-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix JAVA_HOME on Fedora 42
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/bb3337574a22032fc66c4686c40cefa69a2586aa">bb333757</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-11-05T12:24:25+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Force SSNv2 to require configuration with 0x format
Since SSNv2 ranges number requires the format `0x...` to be correctly
interpreted as hex number, an exception is introduced when a decimal
number is provided. This approach make explicit the hex or dec number
are in use and avoid later problems.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/aa99ce613eb94ea269b4047a01c04cbcf8221758">aa99ce61</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-11-05T12:24:25+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add SSNv2 test deploymend with range format error
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e28470ae5b97186f1d4a6d9edcdd10b368da1272">e28470ae</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-11-05T12:26:33+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix builddep in azure pipeline
Fedora 41 moved to dnf5 and the builddep command do not support the
parameter `--spec` but it becomes a positional parameter so it is removed.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/70c58e6dbb56bb04e2f9f2911d2eb03690bc81cd">70c58e6d</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-11-05T12:59:06+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Explicitely assign `theme` global property in pki.spec
The theme property is read from `build.sh` using a regular expression
and the output provided to CMake. If the value is replaced with a
variable then the CMake build cannot work.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/4d594218b8c4731e2fc923869572271f1513520f">4d594218</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-11-06T13:25:48-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add tests for conflicts for CA with SSNv2
The test for CA with SSNv2 has been modified to check how the
CA handles conflicting requests and certs in the database.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/9cad746689deee058357d23553cdec668df112cb">9cad7466</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-11-06T17:23:23-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update basic CA test to check DS entries
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/847ddbc9e146603d11e917609411fde03e301778">847ddbc9</a></strong>
<div>
<span> by jmagne </span> <i> at 2024-11-06T17:03:07-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Address Test Port final TMS fixes for rhel7 to master branch, phase 2, RHCS-5403 (#4894)
This checkin coincides with the final sub task of porting the rhel7 tms to the master branch.
Once this code makes it to the testing phase, every feature present in the lastest version of the rhel7 tms
system should be present in any releases taken from the master branch.
Add some more TPS CS.cfg comments for newer features.
Fix tps docker test to include the cfg variable needed to allow tpsclient enrollments to complete.
Update call to CryptoUtil.exportSharedSecretWithAES in TPSConnectorProcessor.java to reflect change to
TPSConnectorService.java.
Addresss github code security concerns.
Change-Id: I7c98ddeffafd912debb908c9efc7a6bb591807ee</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/62d2052e507f2ecc40218fa4599f56c87f01ed88">62d2052e</a></strong>
<div>
<span> by jmisset-cb </span> <i> at 2024-11-07T13:25:19-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>fix createUserNotice parameter order
The usernotice certificate policy extensions qualifier can contain an
organizationname, noticenumbers and explicittext field. The explicittext
and noticenumbers fields are not handled correctly, causing the error
"wrong notice numbers" when submitting a CSR on a certificate profile
that contains a value in explicittext.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/1e824d978a2b6bbc639eb4ea474293b4c13ce256">1e824d97</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-11-08T15:14:38-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix test for request ID conflict with SSNv2
The test for request ID conflict with SSNv2 has been updated
to create a duplicate request record with the proper requestId
attribute. With this change the CLI is no longer failing, but
the CA is still updating the duplicate request record instead
of creating a new one as expected.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/475b58c996abc1999376684b60ef160955930544">475b58c9</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-11-14T20:03:20+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix range update to legacy2 with clone
When a new clone is deployed it get the initial allocation from the
current range or the next range already allocated. The code was not
considering the case of next range so it could generate a range overlap.
The fix will check if the next range is totally allocate for the service
or it is partial and in this case only the remaining part is used.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d357aed6cf5239f928c9581414ce03ee82625b40">d357aed6</a></strong>
<div>
<span> by Alexander Bokovoy </span> <i> at 2024-11-18T15:18:10+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>ACME PKI issuer: add support for Authority ID or DN
Allow issuing ACME certificates using a specific authority.
This would allow FreeIPA to specify a particular subCA to handle ACME
certificates.
Fixes: https://github.com/dogtagpki/pki/issues/4902
Signed-off-by: Alexander Bokovoy <abokovoy@redhat.com>
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/4d07685fc65e1306b3b17714f546ba97ad3da7e9">4d07685f</a></strong>
<div>
<span> by Alexander Bokovoy </span> <i> at 2024-11-18T15:18:10+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add a test to specify authority ID in ACME configuration
Signed-off-by: Alexander Bokovoy <abokovoy@redhat.com>
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ae7b3c20bc519339d063736a0eaf9cb729837b4d">ae7b3c20</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-11-21T10:21:12+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>fcf-protection only available for x86_64
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/2547014c375f0e26ace95aa9f5615973d74e1e32">2547014c</a></strong>
<div>
<span> by Alexander Bokovoy </span> <i> at 2024-11-21T11:20:41+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>doc: update ACME PKI issuer documentation for authority ID support
Fixes: https://github.com/dogtagpki/pki/issues/4902
Signed-off-by: Alexander Bokovoy <abokovoy@redhat.com>
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/79c1084961e31e786bed1527563e76d46c1154cf">79c10849</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-12-04T10:45:10+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Updating version to v11.6.0-alpha2
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ceb4d22596362210219883d14689b5bcb169ad1c">ceb4d225</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-12-06T05:56:12+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix PKIServer.create()
The PKIServer.create() has been updated to set the properties
in /var/lib/pki/<instance>/conf/tomcat.conf and in its copy at
/etc/sysconfig/<type>@<instance> properly.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/50f41a7284d42b97ec3307825c36d04b969df3f3">50f41a72</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-12-06T07:59:07+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix server tests
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6d3bd1dc0d468a62e13757ad3ccc23300fd9caf4">6d3bd1dc</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-06T10:01:00-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Create Installing_CA.adoc
This asciidoc file is converted from Installing_CA.md with minor changes.</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/75acc75db14844dfda3e4284d840a86253408828">75acc75d</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-06T10:59:18-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>fixed ca.cfg link in Installing_CA.adoc</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/29ba85034a400cb3233f0b68df76f08dc5cd0b1f">29ba8503</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-06T12:02:49-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update ca.cfg to include instance name and port numbers with default values
This is to make the more common customizable parameters readily available for users to modify.</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/29eec4a725276e2776bf586013868f987d39d736">29eec4a7</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-06T13:56:59-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>[skip ci]</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/4829bc34e83585278838efb1eb13d0e981c3e688">4829bc34</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-06T14:19:30-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Replacing Installing_CA.md with link to Installing_CA.adoc message
[skip ci]</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/00831999f3cabcb6ea982d04330cd7567c7a5434">00831999</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-06T16:19:15-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Create Installing_DS_Packages.adoc
[skip ci]</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/cc435f64efcd78c742cf8b15962d971d415e9041">cc435f64</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-06T16:28:05-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Create Creating_DS_instance.adoc
[skip ci]</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/4739cb0dc4f88fc06ba71d785cf73b579c7a6e40">4739cb0d</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-06T16:30:22-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Installing_DS_Packages.adoc
[skip ci]</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/40c5592b8ab48a6f59d77b5997e4e0c245de98a8">40c5592b</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-06T16:37:31-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Installing_CA.adoc
[skip ci]</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ff87fef4d0e23bcddfc51d1b2d9f27b961929999">ff87fef4</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-06T16:48:30-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Creating_DS_instance.adoc
[skip ci]</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/0c9bed596e3431d4c9d9f1ae62e65972a4cbf7a7">0c9bed59</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-06T16:50:35-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Creating_DS_instance.adoc
[skip ci]</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c1265b0bec3bee5c2a208fca885c0bc94d36fee1">c1265b0b</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-06T16:54:50-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Creating_DS_instance.adoc
[skip ci]</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/229ad096c78af0be859293186a8de10e01356da7">229ad096</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-06T17:19:09-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Creating_DS_instance.adoc
[skip ci]</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c91762787af98d6bb8f1d0ca9e2e943c12120fa1">c9176278</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-09T09:15:13-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Create Installing_DS_Packages.adoc
[skip ci]</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/3ca632320fd51652383abe282e4adaeb62cdeff5">3ca63232</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-09T09:17:48-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Create Creating_DS_instance.adoc
[skip ci]</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/7ca01fc181562254c597c592c6f44d0bddd7220e">7ca01fc1</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-09T09:18:47-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Creating_DS_instance.adoc
[skip ci]
moved to another folder: "others"</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/deee0c8c62153dc801c09d1d372d9407ffcfac8a">deee0c8c</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-09T09:19:16-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Installing_DS_Packages.adoc
[skip ci]
moved to another folder: "others"</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/83e5af63d8deca28a2ca7edc0bbd49111478591e">83e5af63</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-09T09:26:01-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Create FQDN_Configuration.adoc
[skip ci]</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/1b844a923c18702a4c8e9a4434d73804cd653f99">1b844a92</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-09T09:26:55-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update FQDN_Configuration.adoc
[skip ci]</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/9048e055b437a9b396f8571253e48bf7c8bfcebd">9048e055</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-09T09:28:27-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Installing_CA.adoc
[skip ci]
changed some link folder reference to "others" instead of "server"</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a92a019e3b7c687e09a50acb922a97c9e5855ce6">a92a019e</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-09T10:24:59-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Installing-CA-with-Random-Serial-Numbers-v3.adoc
[skip ci]
modified link to the CA installation .adoc copy (instead of .md copy)</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/dd0c7418bff2c46f5765fe13ceacc84904fe8781">dd0c7418</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-09T15:02:35-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Installing_CA.adoc
[skip ci]</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d1916173784267502b37148ad858c321be58bd69">d1916173</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-09T15:25:22-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Create Installing_CA_Clone.adoc
[skip ci]
first draft</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d76cf1ebf68eb32eb956e56d8e7f18d79eeec436">d76cf1eb</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-09T15:30:43-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Installing_CA_Clone.md
[skip ci]
Conversion completed.
Will remove the content after the "moved" message after finalizing.</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/24e9c0ac0ecf4a9921cdf1e4e2a31ad66f78185d">24e9c0ac</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-09T15:38:18-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Installing-CA-with-RSA-PSS.adoc
[skip ci]
adjust url to asciidoc version of Installing_CA</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/70d588617aef8016edb33343591efc02758d2fb1">70d58861</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-09T15:46:09-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Create Installing_CA_Clone_with_HSM.adoc
[skip ci]
converted from Installing_CA_Clone_with_HSM.md with modifications.</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/8aa53508fb281dd38926dc30f1e1f6bc31b6301e">8aa53508</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-09T15:49:40-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Installing_CA_Clone_with_HSM.md
[skip ci]
conversion to asciidoc completed.
.md file content to be removed after finalizing.</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ee1cfeac3648ce579752440fcbda84d30b34ec12">ee1cfeac</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-09T15:51:15-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Installing_CA.md
[skip ci]</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ccd5dea78897c52c2bf9a4917c795d1c0f1cb225">ccd5dea7</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-09T15:52:37-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Installing_CA_Clone.md
[skip ci]</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e5ea3e2678d69ca47c363c345b657a49eff80876">e5ea3e26</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-09T16:29:09-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Create Installing_CA_Clone_with_Secure_Database_Connection.adoc
[skip ci]
initial .md to .adoc conversion</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/da2596a670d265d62eba9218376bd4c8cb321664">da2596a6</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-09T16:36:57-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Create Enabling-SSL-Connection-in-DS.adoc
[skip ci]
moved from https://github.com/dogtagpki/pki/wiki/Enabling-SSL-Connection-in-DS</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b187477159f7e0a5e6223c4372b7a82602dda91d">b1874771</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-09T16:43:34-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Enabling-SSL-Connection-in-DS.adoc
[skip ci]
link adjustment</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/3ff16beefc7bd1e1ca707fc71e220d242c2ae3e6">3ff16bee</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-09T16:43:51-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Installing_CA_Clone_with_Secure_Database_Connection.adoc
[skip ci]
link adjustment</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/dbca7867b7096a79c0c5678d22dd263ccb1f9661">dbca7867</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-09T16:46:11-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Create PKI-NSS-CLI.adoc
[skip ci]
initial content copied from https://github.com/dogtagpki/pki/wiki/PKI-NSS-CLI</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/28f6698c019add35754cc81932c9958058b7fc76">28f6698c</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-09T16:49:29-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Create Exporting-DS-Certificates.adoc
[skip ci]
initial content copied from https://github.com/dogtagpki/pki/wiki/Exporting-DS-Certificates</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/7a7964d5182896e084a33f98aeff8713c98716af">7a7964d5</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-09T16:51:17-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Installing_CA_Clone_with_Secure_Database_Connection.adoc
[skip ci]
link adjustment</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/1f44a9c5a7ae15e79bc491118266d3edfcb0c8ee">1f44a9c5</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-09T16:55:22-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Installing_CA_Clone_with_Secure_Database_Connection.md
[skip ci]
message with converted/moved to Installing_CA_Clone_with_Secure_Database_Connection.adoc
.md content is to be removed after finalizing</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/abe49da255ec1e53c3bcff90bbe51f15390d4a66">abe49da2</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-12-11T21:16:08+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Python API to support REST API v2
The PKIClient class has been added to replace PKIConnection
as the main access point to PKI services. By default it will
use REST API v2, then fall back to v1 if it's not available.
Optionally, PKIClient can be configured to use a specific
REST API version.
The InfoClient, CertClient, AccountClient, and UserClient
classes have been added/updated to construct the proper REST
URL according to the REST API version in PKIClient.
The pki-healthcheck has been updated to use PKIClient. Some
simple Python scripts have also been added to demonstrate
how to use PKIClient.
New tests have been added to run these scripts against the
current CA and KRA which support both REST API v1 and v2
and also against an older CA that only supports REST API v1.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/1c159dfce5b61569bf64576e2b3c5c4839362f41">1c159dfc</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-12T15:41:56-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Create Installing_CA_with_Custom_CA_Signing_Key.adoc
[skip ci]
converted/modified from Installing_CA_with_Custom_CA_Signing_Key.md</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/1e477de27ef40bf0f13f814be99aba6583c8249c">1e477de2</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-12T16:05:23-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Installing_CA.adoc
[skip ci]
fixed missing title</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/338791c721bdec1d7ff1326eb9e5107322b37992">338791c7</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-12T16:06:00-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Installing_CA_Clone.adoc
[skip ci]
fixed missing title</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/05a2c2ab57b92d3adface00cb7fb9954cdd577fd">05a2c2ab</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-12T16:07:18-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Create Installing_CA_with_ECC.adoc
[skip ci]
copied/converted from Create Installing_CA_with_ECC.md</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ca74a560e3c3b9a5a1790e0155d388d86f9b9cb0">ca74a560</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-12T16:11:06-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update ca-ecc.cfg to include instance name and port numbers with default values
[skip ci]
This is to make the more common customizable parameters readily available for users to modify.</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/bb610ea5b75c7b45b296d90707837d135da1d7bc">bb610ea5</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-12T16:13:09-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Installing_CA_with_ECC.adoc
[skip ci]
copied/converted from Installing_CA_with_ECC.md</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/0b8e2827c171e986c15f569a998d94dba05671f7">0b8e2827</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-12T16:39:00-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Create Installing_CA_with_Existing_Keys_in_HSM.adoc
[skip ci]
content copied/converted from Installing_CA_with_Existing_Keys_in_HSM.md</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/5b97f4b7a18debf9c2686511b9da405aa0a76d07">5b97f4b7</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-12T16:53:48-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Create Installing_CA_with_Existing_Keys_in_Internal_Token.adoc
[skip ci]
copied/converted from Installing_CA_with_Existing_Keys_in_Internal_Token.md</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/3445c253db6fd2b1ef060252924bef7b49a2e927">3445c253</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-12T16:55:57-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update ca-existing-certs-step1.cfg to include instance name and port numbers with default values
[skip ci]
This is to make the more common customizable parameters readily available for users to modify.</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/3f57d2031700053fc0d9143c28875ff3ca1361e9">3f57d203</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-12T16:57:52-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update ca-existing-certs-step2.cfg to include instance name and port numbers with default values
[skip ci]
This is to make the more common customizable parameters readily available for users to modify.</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/2ec162f5a4fe7850fdb52c86b9c621bee7a76480">2ec162f5</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-12T17:15:02-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Create Installing_CA_with_External_CA_Signing_Certificate.adoc
[skip ci]
copied/converted from Installing_CA_with_External_CA_Signing_Certificate.md</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b6410f4e48cd897ea30eb28ea5da6e682bf3bc2c">b6410f4e</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-12T17:16:35-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update ca-external-cert-step1.cfg to include instance name and port numbers with default values
[skip ci]
This is to make the more common customizable parameters readily available for users to modify.</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/1a7e1cfd0b700d90c5243c5020d28a7c786772fd">1a7e1cfd</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-12T17:18:06-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update ca-external-cert-step2.cfg to include instance name and port numbers with default values
[skip ci]
This is to make the more common customizable parameters readily available for users to modify.</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6b0507ec849c4c96153659be20e5c3db91955a40">6b0507ec</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-12-13T21:35:26+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update pki.server.cli.banner to use argparse
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/0286c6ee6577fa38478eeb020ea7a20ddce03325">0286c6ee</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-12-13T21:35:26+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update pki.server.cli.group to use argparse
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ccbbf5da94e2aed2ba604efde08963aea3f8dd6c">ccbbf5da</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-12-13T21:35:26+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update pki.server.cli.jss to use argparse
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/7678489dd4652b50c6fd18d5c46e192fa567575c">7678489d</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-12-13T21:35:26+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update pki.server.cli.listener to use argparse
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/fc6ec3b0e0b103eaba49df88c4265726b0721028">fc6ec3b0</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-12-13T21:35:26+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update pki.server.cli.migrate to use argparse
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/079455b0ffe085d98a6fcf9dbffd782b02b19fe5">079455b0</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-12-13T21:35:26+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update pki.server.cli.nss to use argparse
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/aa8a770ac79a52f714ae83b5f7daf04a03b1f814">aa8a770a</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-12-13T21:35:26+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update pki.server.cli.password to use argparse
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f35483c3bd8face36fec93babea5005b01cd720e">f35483c3</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-13T16:30:21-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Create Installing_CA_with_HSM.adoc
[skip ci]
content copied/converted from Installing_CA_with_HSM.md</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/0201ad2ecac6ecbab2e445d2f7e63caf85c2a296">0201ad2e</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-13T16:34:25-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Installing_CA_with_Custom_CA_Signing_Key.md
[skip ci]
added "moved to" message
will remove content after finalizing.</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/0157bb21f71530140335154bc47e56e713f2e4da">0157bb21</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-13T16:35:45-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Installing_CA_with_ECC.md
[skip ci]
added "moved to" comment.
will remove content once finalized</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ae5306631f7e78f1dd903410f0fc5b42b4852e4e">ae530663</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-13T16:36:55-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Installing_CA_with_Existing_Keys_in_HSM.md
[skip ci]
added "moved to" comment
content will be removed after finalizing</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/4673ae3e5d2d1f14a5d3af3700e3c8dae3528a16">4673ae3e</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-13T16:38:31-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Installing_CA_with_Existing_Keys_in_Internal_Token.md
[skip ci]
added "moved to" message.
content will be removed after finalizing</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ac4ce8ae13d1629b4157c97b4e6b297f3e538860">ac4ce8ae</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-13T16:39:25-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Installing_CA_with_External_CA_Signing_Certificate.md
[skip ci]
added "moved to" message.
content will be removed after finalizing</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/9bb596ca047daf8f7e83d5188afa452c39cbcdca">9bb596ca</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-13T16:40:29-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Installing_CA_with_HSM.md
[skip ci]
added "moved to" message.
content will be removed after finalizing</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/0b393dd28b24f85d8eb6da01c09a294b4d00cd99">0b393dd2</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-13T17:08:13-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Create Installing_CA_with_Secure_Database_Connection.adoc
[skip ci]
copied/converted from Installing_CA_with_Secure_Database_Connection.md</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d74587b80c418c4a4d4e8a4eed1e266cdc855a92">d74587b8</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-13T17:09:51-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Installing_CA_with_Secure_Database_Connection.md
[skip ci]
added the "moved to" message.
content will be removed once finalized</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a60f6dedfef371706a532ce8b54770149372a090">a60f6ded</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-13T17:13:40-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update ca-secure-ds.cfg to include instance name and port numbers with default values
[skip ci]
This is to make the more common customizable parameters readily available for users to modify.</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/57d9e95a983632e973fa45b62cc9dbd0ddc26af3">57d9e95a</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-13T17:19:05-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Create Installing_Subordinate_CA.adoc
[skip ci]
copied/converted from Installing_Subordinate_CA.md</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ac0ff59796fa04490c2fe84a50f140d01b1ef462">ac0ff597</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-13T17:21:00-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update subca.cfg to include instance name and port numbers with default values
[skip ci]
This is to make the more common customizable parameters readily available for users to modify.</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c5cfd08b3eb7ea6c162729b16a92b8c570ce7269">c5cfd08b</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-13T17:23:10-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Installing_Subordinate_CA.md
[skip ci]
added the "moved to" message.
content will be removed once finalized.</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/287698c8946d8cb46728d57880018536862dd73d">287698c8</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-12-16T20:55:29+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update pki.server.cli.config to use argparse
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/7be71587205f89e842bcda6e57a2e268fc415116">7be71587</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-12-16T20:55:29+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update pki.server.cli.id to use argparse
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c3fe60299ae913a8b1ec20c221ca051a1cd0427b">c3fe6029</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-12-16T20:55:29+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update pki.server.cli.nuxwdog to use argparse
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a01f1602416fc7502cfffedc73c0ae4aa927e96b">a01f1602</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-12-16T20:55:29+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update pki.server.cli.range to use argparse
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/fef009a431091768a645bde3ea4696800eb7cc69">fef009a4</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-12-16T20:55:29+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update pki.server.cli.selftest to use argparse
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a2fffa1b8b15c0b851dc4afa5971dd5f3b5ab9db">a2fffa1b</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-12-16T20:55:29+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update pki.server.cli.upgrade to use argparse
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d1c38d491046f70204b9117b38b76370db31525b">d1c38d49</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-12-16T20:55:29+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update pki.server.cli.webapp to use argparse
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/2b3d75bd5e7fb02e3c5ea735d4620adbd18ba913">2b3d75bd</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-12-16T14:59:50+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix compiling option in RHEL-10
RHEL-10 requires cf protection and lto flags, similar to Fedora
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/23fd7f5166cb94f78de4e1eb50051992a5362148">23fd7f51</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-12-17T00:36:21+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix pki-server selftest-enable/disable
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b34f31d9792a99a9391f525b4bef950ab53f723b">b34f31d9</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-12-17T20:57:22+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update pki.server.cli.audit to use argparse
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/2b1ae68acc639333e52e351e4c3da964317c51a5">2b1ae68a</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-12-17T20:57:22+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update pki.server.cli.cert to use argparse
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/538b9f408b0ed8990663a0a06a00b7d53e0d9cba">538b9f40</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-12-17T20:57:22+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update pki.server.cli.db to use argparse
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/262d49cebe0a0252c86ce43984dd966f308c57da">262d49ce</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-12-17T20:57:22+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update pki.server.cli.http to use argparse
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/44d9629af19e8ae9fd41c7cad93a0f7f11197559">44d9629a</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-12-17T20:57:22+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update pki.server.cli.sd to use argparse
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6be90d231ba4248798388167c03c687022b1ceea">6be90d23</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-12-18T21:36:14+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update pki.server.cli.instance to use argparse
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d02153119d214a92dab95fccb7a2845e122b0af3">d0215311</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-12-18T21:36:14+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update pki.server.cli.subsystem to use argparse
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/fe37f42007ebc748f05bbee4fb0c5d1b0a86d2d8">fe37f420</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-12-18T21:36:14+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update pki.server.cli.user to use argparse
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/4dd5145a20933c9852ea780c747d68e9d56af931">4dd5145a</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-12-18T19:05:34+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix container restart issue
When container are restarted with podman the restart will send the TERM
signal to the entry process. Since the main entry for these container is
a script running other script and waiting the signal are not propagated
to the thread group making the restart hanging until a KILL signal is
used but these return with an error code making the automation failing.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b13594e295fcb9e492c067d7290b426018ef07ab">b13594e2</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-12-18T19:05:34+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>CI Restart network interface in podman container
When a podman container restarts the network interface does not always
get updated correctly, making the following communications with the container
fail.
Reload the network solve the problems when it is present.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ff87f39da51744cf579b5ff1644e3a9dcb661fb2">ff87f39d</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-12-19T20:59:56+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update pki.server.cli.ca to use argparse
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b1a13810150a6b4066a9844d3ca569070944377e">b1a13810</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-12-19T20:59:56+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update pki.server.cli.kra to use argparse
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/40f19b265484bef32e1719172d38cc695fceedf9">40f19b26</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-12-19T20:59:56+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update pki.server.cli.ocsp to use argparse
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/df5344fabbfab32664f05cb21005a839bf39774a">df5344fa</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-12-19T20:59:56+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update pki.server.cli.tks to use argparse
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/07af1e841b088c238cd341d71b80fa9c2186b7bd">07af1e84</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-12-19T20:59:56+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update pki.server.cli.tps to use argparse
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/7c5fe8d479f15a38bd91fe8eeb75d81feb8f8ec7">7c5fe8d4</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-12-19T20:59:56+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update pki.server.cli.acme to use argparse
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/52cefa42ca7d4d33d2edc5e9427471f0aba692fd">52cefa42</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-12-19T20:59:56+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update pki.server.cli.est to use argparse
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/66fe97ab9d6836c2e64ebd36dcda99ea7a0d36ce">66fe97ab</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-12-20T22:01:03+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update pki.cli.password to use argparse
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/fa240b97cd099d5dbe1f4414c3d40490be8e6b02">fa240b97</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-12-20T22:01:03+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update pki.cli.pkcs12 to use argparse
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/761f086ccec32571c0ed742dc14fd3363140bbab">761f086c</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-12-20T22:01:03+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update pki.cli.upgrade to use argparse
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/4e6a03146033aa9e425ef1396e8740752f009071">4e6a0314</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-12-20T22:01:03+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update drmtest.py to use argparse
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/bfb5a8eb8591452edfc10f33fa3559f954ea32fa">bfb5a8eb</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2024-12-20T22:01:03+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update pki.server.cli to use argparse
The classes in pki.server.cli have been updated to use argparse
except for PKIServerCLI since it needs to use subparsers which
requires additional investigation.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/65ac9ce907384bb6dc183d0904497fc7f21162d8">65ac9ce9</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2024-12-23T11:02:56+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add pkispawn EST deployment documentation
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/dd6ca1a0443d1e1fd5e881d31034da19150bda4a">dd6ca1a0</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-23T10:29:46-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Create Installing_OCSP.adoc
copied/converted from Installing_OCSP.md</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/77fe590065e37c45bd0cb615f305b00eb77c61b9">77fe5900</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-23T10:32:24-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Installing_OCSP.md
[skip ci]
added the "moved to adoc" message.</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/5880ed47f5d77c77641406894e066abf0e5f72c7">5880ed47</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-23T10:33:51-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Installing_OCSP.md
[skip ci]
adjusted comment designator</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/3913093c1707b4113f9299efb74ad027b7322c09">3913093c</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-23T10:42:02-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Create Installing_OCSP_Clone.adoc
[skip ci]
asciidoc converted/modified from Installing_OCSP_Clone.md</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/405b87d65de95cc83d82c80510cda103d71c9c0f">405b87d6</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-23T10:46:06-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Installing_OCSP_Clone.md
[skip ci]
added the "converted/moved to adoc" message</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6884e60dabd69fc84f8b6dbf93138a7f1b40b384">6884e60d</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-23T10:53:30-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Create Installing_OCSP_Clone_with_HSM.adoc
[skip ci]
initial copy/convert from Installing_OCSP_Clone_with_HSM.md</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/cd23a25de1745163d870481de1b25729ba69cac2">cd23a25d</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-23T10:55:29-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Installing_OCSP_Clone_with_HSM.md
[skip ci]
added the copied/converted to Installing_OCSP_Clone_with_HSM/adoc message</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/bfed58c3d80e0295c8cbf5bdc0265edca31d77e7">bfed58c3</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-23T10:56:22-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Installing_OCSP.md
[skip ci]
added link</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/957bc1ae5cb8cea5d3b5df46114e72be7bb4c3b8">957bc1ae</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-23T11:00:22-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Create Installing_OCSP_with_Custom_Keys.adoc
[skip ci]
copied/converted from Installing_OCSP_with_Custom_Keys.md</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/742427fcd743f7c053a2138ae56407611f140b6b">742427fc</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-23T11:01:46-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Installing_OCSP_with_Custom_Keys.md
[skip ci]
added the copied/converted to asciidoc message.</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6ab8feede31bd11c3a0321e43931b6e631236d41">6ab8feed</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-23T11:04:53-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Create Installing_OCSP_with_ECC.adoc
[skip ci]
initial copy/convert from Installing_OCSP_with_ECC.md</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d89afaf5034e9ac79fa7a460e571c38255c898e0">d89afaf5</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-23T11:06:39-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Installing_OCSP.adoc
[skip ci]
- added Prerequisites
- remove the top comment. It belongs to the commit message.</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/1bfc84b677c780754ed18ae4852692bcb661b3b1">1bfc84b6</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-23T11:07:30-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Installing_OCSP_Clone.adoc
[skip ci]
removed top comment. It belongs to the commit message.</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/9f99439b260552f41132d4a448abda6a03f72026">9f99439b</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-23T11:08:03-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Installing_OCSP_Clone_with_HSM.adoc
[skip ci]
removed top comment. It belongs to the commit message.</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/bdefb01033f82187193fc38c6a506a6988ff8646">bdefb010</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-23T11:08:21-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Installing_OCSP_with_Custom_Keys.adoc
[skip ci]
removed top comment. It belongs to the commit message.</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/bed3ff3a79cc58af23933cd95b25a8601e941a9e">bed3ff3a</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-23T11:08:50-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Installing_CA.adoc
[skip ci]
removed top comment. It belongs to the commit message.</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/16eec5a1398ffab229437304a6c2eaf27b0a9429">16eec5a1</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-23T11:09:06-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Installing_CA_Clone.adoc
[skip ci]
removed top comment. It belongs to the commit message.</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/24073887fb31170232240e2b56a073e556b3ed7f">24073887</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-23T11:09:36-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Installing_CA_Clone_with_HSM.adoc
[skip ci]
removed top comment. It belongs to the commit message.</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/4091c07694080d41668622a1d0c20cc8a6da802a">4091c076</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-23T11:10:13-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Installing_CA_Clone_with_Secure_Database_Connection.adoc
[skip ci]
removed top comment. It belongs to the commit message.</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/4a0d8ca80df01df9119c267d10a30297ef40e1a6">4a0d8ca8</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-23T11:10:33-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Installing_CA_with_Custom_CA_Signing_Key.adoc
[skip ci]
removed top comment. It belongs to the commit message.</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ad48e69114ce9671dc641441c4964d5f4e06b5ff">ad48e691</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-23T11:10:48-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Installing_CA_with_ECC.adoc
[skip ci]
removed top comment. It belongs to the commit message.</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/7105ad12ad610dfb57f25567ba564d27720d09e4">7105ad12</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-23T11:11:02-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Installing_CA_with_Existing_Keys_in_HSM.adoc
[skip ci]
removed top comment. It belongs to the commit message.</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/75c9c57785dd02d60a73f278a206f4bd80c41b2f">75c9c577</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-23T11:11:19-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Installing_CA_with_Existing_Keys_in_Internal_Token.adoc
[skip ci]
removed top comment. It belongs to the commit message.</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/0914fb311a2a3e1f94318d283916ae69f61253d8">0914fb31</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-23T11:11:32-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Installing_CA_with_External_CA_Signing_Certificate.adoc
[skip ci]
removed top comment. It belongs to the commit message.</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/1ce7ddff380fd1c7117bb13c01d3cbb1a8dadef4">1ce7ddff</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-23T11:11:44-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Installing_CA_with_HSM.adoc
[skip ci]
removed top comment. It belongs to the commit message.</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/88c231367c1eeee6cb661c714cc89ef2ef2f9696">88c23136</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-23T11:11:56-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Installing_CA_with_Secure_Database_Connection.adoc
[skip ci]
removed top comment. It belongs to the commit message.</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f20b83de5f1db4ec72034cf505ccae8c533fae9f">f20b83de</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-23T11:12:16-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Installing_Subordinate_CA.adoc
[skip ci]
removed top comment. It belongs to the commit message.</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/47ae95e7231fb8cd0734bd1117f6c9a4ba536a4b">47ae95e7</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-23T13:45:07-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Create Installing_OCSP_with_External_Certificates.adoc
[skip ci]
initial copy/convert from Installing_OCSP_with_External_Certificates.md to asciidoc</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/24155559e89dc57aec44e72a09204edf6e34ad97">24155559</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-23T13:47:44-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Installing_OCSP_with_External_Certificates.md
[skip ci]
added the copied/converted to asciidoc message</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/29d9b9ff09a6fc54e81b34114928d952be561805">29d9b9ff</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-23T13:49:14-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Installing_OCSP_with_External_Certificates.md
[skip ci]
fixed missing postfix of file name in link.</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a8fb7aa3a310a8f95347c48c7158264c2ed9cee6">a8fb7aa3</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-23T13:52:14-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Create Installing_OCSP_with_HSM.adoc
[skip ci]
initial copy/convert from Installing_OCSP_with_HSM.md to asciidoc</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/142b3018dac3b7a1e54f445b484034179cb2798d">142b3018</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-23T13:55:54-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Installing_OCSP_with_HSM.md
[skip ci]
added copied/converted to asciidoc message.</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/afc63e7296fdd0e6a437807e4fcf18e3d1d3ccbc">afc63e72</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-23T14:00:14-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Create Installing_OCSP_with_Secure_Database_Connection.adoc
[skip ci]
initial copy/convert from Installing_OCSP_with_Secure_Database_Connection.md to asciidoc</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/80a0b94e643d9baf0f45ac272478158b6e808866">80a0b94e</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2024-12-23T14:02:04-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Installing_OCSP_with_Secure_Database_Connection.md
[skip ci]
added the "converted to ascii" message.</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/5fbe5e4ed7be60cb5cd5855017810c94e1764909">5fbe5e4e</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-01-02T15:05:03-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update ocsp.cfg
[skip ci]
Adding the more common customizable parameters (with default values) readily available for users to modify: instance name, port numbers, and ds ports.</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d98e42b3c45af2603c00b2cd1651ca0726efe794">d98e42b3</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-01-02T15:19:39-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update ocsp-clone.cfg
[skip ci]
Adding the more common customizable parameters (with default values) readily available for users to modify: instance name, port numbers, and ds ports.</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ad1c748c1c0e730b9e028aad7cd681bfd41d9bd8">ad1c748c</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-01-02T15:21:29-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Installing_OCSP_Clone.adoc
[skip ci]
point reference to Installing_CA.adoc instead of the mid copy</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/5f17920259692c4bc066a9791882376aa621d5a1">5f179202</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-01-02T15:22:49-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Installing_OCSP_Clone.md
[skip ci]
conversion complete.</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/68bab8b661d7fb2c2856bf927989bb4be3a4e01a">68bab8b6</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-01-02T15:32:06-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Installing_OCSP.md
[skip ci]
conversion complete.</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/652f446e6e422e4e9daa669834b2be2b60ac6766">652f446e</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-01-02T15:39:30-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Installing_OCSP_Clone_with_HSM.adoc
[skip ci]
Adding the more common customizable parameters (with default values) readily available for users to modify: instance name, port numbers, and ds ports.</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/8b2b135e0d2bcd1cea4cc92adf3b6995a0acb2e6">8b2b135e</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-01-02T15:44:41-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Installing_OCSP_Clone_with_HSM.md
[skip ci]
conversion complete</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/fd6130a71ffbb23b1aa85f85d61217c49899981b">fd6130a7</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-01-02T15:59:34-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Installing_OCSP_with_Custom_Keys.adoc
[skip ci]
Adding the more common customizable parameters (with default values) readily available for users to modify: instance name, port numbers, and ds ports.</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/30d568f8f0a5a0435ecb221f9cfd94d61b2ba1e8">30d568f8</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-01-02T15:59:59-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Installing_OCSP_with_Custom_Keys.md
[skip ci]
conversion complete.</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f95f7b804101a7ee717ac12d880181d6e3021851">f95f7b80</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-01-02T16:05:13-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Installing_OCSP_with_ECC.adoc
[skip ci]
Adding the more common customizable parameters (with default values) readily available for users to modify: instance name, port numbers, and ds ports.</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/4cbec55d8bf8e9f094cf67e557b7aeaa88986b23">4cbec55d</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-01-02T16:08:17-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Installing_OCSP_with_ECC.md
[skip ci]
conversion complete</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/7fa0186c9d06383f6393533f60ee01cadb2daf4c">7fa0186c</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-01-02T16:11:19-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update ocsp-external-certs-step1.cfg
[skip ci]
Adding the more common customizable parameters (with default values) readily available for users to modify: instance name, port numbers, and ds ports.</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d96ce0d2a0b821732751ea5088ee61c60bf6b60f">d96ce0d2</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-01-02T16:22:40-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Installing_OCSP_with_External_Certificates.adoc
[skip ci]
fixed sample links.</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/0a8bc4b966103e30a009df55ad1ec14ff33f10a5">0a8bc4b9</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-01-02T16:24:07-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update ocsp-external-certs-step2.cfg
[skip ci]
Adding the more common customizable parameters (with default values) readily available for users to modify: instance name, port numbers, and ds ports.</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/9bba0ad42666e8c4fbbda633df97ae3c1eea5b41">9bba0ad4</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-01-02T16:26:57-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Installing_OCSP_with_Custom_Keys.adoc
[skip ci]
fixed links</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/1945d2390d0c9c5f1721a85cd38bd885c3cf00a4">1945d239</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-01-02T16:27:50-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Installing_OCSP_with_External_Certificates.md
[skip ci]
conversion complete.</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/5d5dfe1cf068eed98162d61f3ee0b60cf54cf826">5d5dfe1c</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-01-02T16:56:02-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Installing_OCSP_with_HSM.adoc
[skip ci]
Adding the more common customizable parameters (with default values) readily available for users to modify: instance name, port numbers, and ds ports.</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/9d6ad3db57f8c0a05054eb1933fee7fdf9b8455b">9d6ad3db</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-01-02T16:56:37-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Installing_OCSP_with_HSM.md
[skip ci]
conversion complete</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/fbd004153d20ba26955482f599ed75e3c7696744">fbd00415</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-01-02T17:00:13-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Installing_OCSP_with_Secure_Database_Connection.adoc
[skip ci]
Adding the more common customizable parameters (with default values) readily available for users to modify: instance name, port numbers, and ds ports.
also fixed a link.</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/3da8843b0eba4a465abba4a0e6ce1e2db174cdf9">3da8843b</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-01-02T17:00:40-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Installing_OCSP_with_Secure_Database_Connection.md
[skip ci]
conversion complete</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/173b37ebfbfffe39e173784ea094009ea3f5cb5f">173b37eb</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-01-02T17:03:33-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Installing_Standalone_OCSP.adoc
[skip ci]
changed regular OCSP installation link to the adoc copy.</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/5a2f40bc048ac0e0682146b122bfaa4295e3ef88">5a2f40bc</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-01-02T17:04:37-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update ocsp-standalone-step1.cfg
[skip ci]
Adding the more common customizable parameters (with default values) readily available for users to modify: instance name, port numbers, and ds ports.</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/cd7e0904218f71e88d84b4f1098014199967e13e">cd7e0904</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-01-02T17:05:33-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update ocsp-standalone-step2.cfg
[skip ci]
Adding the more common customizable parameters (with default values) readily available for users to modify: instance name, port numbers, and ds ports.</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/4f11eaf908bd9b0260cd63dc91100a4dfbe9582e">4f11eaf9</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-01-03T10:11:20-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Installing_OCSP_Clone_with_HSM.adoc
[skip ci]
added Prerequisites</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/355216a5d29f91b89bcb2582058133785f667f29">355216a5</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-01-03T10:12:28-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Installing_OCSP_with_Custom_Keys.adoc
[skip ci]
added Prerequisites</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/02f0b29e602b597614085447355f3587412e6fb2">02f0b29e</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-01-03T10:13:27-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Installing_OCSP_with_ECC.adoc
[skip ci]
added Prerequisites</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d48a55d25f23a0ec1b18ae3122431e04f4e17ecd">d48a55d2</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-01-03T10:14:11-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Installing_OCSP_with_External_Certificates.adoc
[skip ci]
added Prerequisites</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b07ef9f6549866751a10f404fbc624f7f472500a">b07ef9f6</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-01-03T10:15:33-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Installing_OCSP_with_HSM.adoc
[skip ci]
added Prerequisites</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d00c75e2b9e5d5b1052ecc6259c7b8cb15723c2a">d00c75e2</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-01-03T10:18:43-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Installing_OCSP_with_Secure_Database_Connection.adoc
[skip ci]
added Prerequisites</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/7b37f6a4c3f462d5ab594636029e411be3698ecc">7b37f6a4</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-01-03T10:22:21-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Creating_DS_instance.adoc
[skip ci]
replace DS ssl link with https://github.com/dogtagpki/389-ds-base/wiki/Configuring-SSL-Connection</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/771bfb564d552f6baf28afdb9b3989bea4831e31">771bfb56</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-01-03T14:09:12-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Creating_DS_instance.adoc
[skip ci]
fixed link</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/cd481c99d1b89060c5a3d4f9808c6b6a0301e78e">cd481c99</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-01-03T14:12:38-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Installing_DS_Packages.adoc
[skip ci]
fixed link</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/54e752d9d067ba21c2ae80a498da81829eeb1cc6">54e752d9</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-01-03T14:18:02-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Create PKI-LDAP-Tree.adoc
[skip ci]
copied from https://github.com/dogtagpki/pki/wiki/PKI-LDAP-Tree</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e8eb51367dd4305f2407ef1b7d797e91d191c95a">e8eb5136</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-01-03T14:22:16-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Creating_DS_instance.adoc
[skip ci]
fixed links</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f9b63735943e1dab1fe32542ff09e1ee69f920ca">f9b63735</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-01-03T14:25:51-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Installing_OCSP_with_Secure_Database_Connection.adoc
[skip ci]
grouped DS secure setup with DS instance setup under Prerequisites.</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/98d66c6fe274a57652e0bb901a5848191be338de">98d66c6f</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-01-03T15:14:16-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Installing_CA_Clone.adoc
[skip ci]
added missing subject.</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c9f2bf25c1980ecc5cbb29070507bfbf37f981b9">c9f2bf25</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-01-03T15:15:08-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Installing_CA_Clone.md
[skip ci]
conversion complete</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/38eb592ff80932819941e8a060bd39e2efa754b5">38eb592f</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-01-03T15:20:18-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Installing_CA_Clone_with_HSM.adoc
[skip ci]
Adding the more common customizable parameters (with default values) readily available for users to modify: instance name, port numbers, and ds ports.</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/984afc7eb329df6d941e285ec04f870bb4c2c93d">984afc7e</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-01-03T15:22:24-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Installing_CA_Clone_with_HSM.md
[skip ci]
conversion complete.</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/624812b0ece826b4269df7bcbf40bae9c6dd42a0">624812b0</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-01-03T16:13:29-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update ca-secure-ds-secondary.cfg
[skip ci]
Adding the more common customizable parameters (with default values) readily available for users to modify: instance name, port numbers, and ds ports.</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ccc7504151d57b5ea954517b08d4e74b6c381140">ccc75041</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-01-03T16:16:48-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Installing_CA_Clone_with_Secure_Database_Connection.adoc
[skip ci]
added clarification.</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/7d996d23dd3f82246312872f4e29da3b35002f46">7d996d23</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-01-03T17:26:11-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Installing_CA_with_Custom_CA_Signing_Key.md
[skip ci]
conversion complete</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/3a938eebf306c4d2e61dd914b69975fa8345732f">3a938eeb</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-01-03T17:28:06-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Installing_CA_with_ECC.md
[skip ci]
conversion complete.</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f1b422c64466a5ad5f72b0ca8b78e425dc0e96bd">f1b422c6</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-01-03T17:29:46-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Installing_CA_with_Existing_Keys_in_HSM.md
[skip ci]
conversion complete</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/64b8f2c42dae60cb400ed5e8b4a587098f8c301f">64b8f2c4</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-01-06T16:16:15-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Installing_CA_with_Existing_Keys_in_Internal_Token.adoc
[skip ci]
fixed bullets</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/06222b576147cbafa37e863228f016ff08eed6bc">06222b57</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-01-06T16:20:05-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Installing_CA_with_External_CA_Signing_Certificate.adoc
[skip ci]
added missing subject</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d7d6f14853e53f347635e7e9be64b536eb7961e2">d7d6f148</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-01-06T16:20:52-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Installing_CA_with_External_CA_Signing_Certificate.md
[skip ci]
conversion complete</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/eefde77324727c45cbf14a2691efb084d4d88e6e">eefde773</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-01-06T16:22:11-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Installing_CA_with_HSM.adoc
[skip ci]
fixed bullets.</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/aabe2075a0bd35450a1541f1357e520287c90b69">aabe2075</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-01-06T16:22:39-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Installing_CA_with_HSM.md
[skip ci]
conversion complete</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e3615ff10c0026ebe5498d2fa7cfa88a40ebb878">e3615ff1</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-01-06T16:27:59-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Installing_Subordinate_CA.md
[skip ci]
conversion complete</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c0cd231d1f13c856a9b7c0d041e3b4b297333595">c0cd231d</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-01-07T10:41:42+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix mail notification CI
The notification was not working because of a CVE in postfix required to
modify the default policy becoming more restrictive.
The fix is documented here: https://bugzilla.redhat.com/show_bug.cgi?id=2255563
This is a workaround which put back the original policy. The proper fix
would be to update the code communicating with smtp server.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/21871b72ae2f6dc2708c3afc79125d0ae111c288">21871b72</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-01-07T19:15:00+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update changes for pkispawn/pkidestroy
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6332bf07bc6bc7a94a184a672a7f92599765c751">6332bf07</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-01-08T16:01:40-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update PKI-NSS-CLI.adoc
[skip ci]
added missing subject</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/385bdfffcb5c8783ebaa263ac201b7d624b76934">385bdfff</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-01-08T16:02:58-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update PKI-LDAP-Tree.adoc
[skip ci]
added missing subject</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/84ea2ca86595869e1eaf70e71a6655ecd054d7b0">84ea2ca8</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-01-08T16:04:30-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Exporting-DS-Certificates.adoc
[skip ci]
added missing subject</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/05831d868387e4750812a04971d2a9b0250f9292">05831d86</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-01-08T16:06:15-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Enabling-SSL-Connection-in-DS.adoc
[skip ci]
added missing subject</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/7441a73ae8614857f8d94660208b4dca3491955c">7441a73a</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-01-08T16:22:38-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Create Generating-Certificate-Request.adoc
[skip ci]
original content copied from https://github.com/dogtagpki/pki/wiki/Generating-Certificate-Request</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/26ce07be9963879881c1edabce07627e11229332">26ce07be</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-01-08T16:33:43-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Create Certificate-Profiles.adoc
[skip ci]
content copied from https://github.com/dogtagpki/pki/wiki/Certificate-Profiles</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ffcc46a3ee6c0ab569701b3dd4e4de39ac6122e5">ffcc46a3</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-01-08T16:37:44-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Create Certificate-Profiles.adoc
[skip ci]
moved from https://github.com/dogtagpki/pki/new/master/docs/design</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/9794ce58efcb5e7547c03f28df551bed7a61817b">9794ce58</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-01-08T16:40:24-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Certificate-Profiles.adoc
[skip ci]
moved under Cert_Enrollment_Profiles</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ea4472353859d34c8e78c44f762ddd3d0d736b4a">ea447235</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-01-08T16:45:11-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Create Bootstrap-Profiles.adoc
[skip ci]
content copied from https://github.com/dogtagpki/pki/wiki/Bootstrap-Profiles</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/34e852022e88ed497ad604a783fbf0b517456631">34e85202</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-01-08T16:48:40-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Create CA-Certificate-Profiles.adoc
[skip ci]
content copied from https://github.com/dogtagpki/pki/wiki/CA-Certificate-Profiles</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c190a6d452d5f75cfd918392032baa97c678ae2f">c190a6d4</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-01-08T16:53:29-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update CA-Certificate-Profiles.adoc
[skip ci]
updated one link that's been moved over. More to come</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/9bab02e3c02dcccbc2b499dd38b0dd124286dc85">9bab02e3</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-01-09T10:39:17-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>moved Certificate-Profiles.adoc under docs/design/Cert_Enrollment_Profiles
moved docs/installation/others/CSR/Generating-Certificate-Request.adoc to
docs/user/tools/Generating-CSR/Generating-Certificate-Request.adoc
Coming up: more effort to move relevant wiki pages over to the repo.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/2c50a209aba61a67eaf33c7e52f161b2890aaac5">2c50a209</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-01-09T14:32:11-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>[skip ci]
copied PKI-NSS-* from https://github.com/dogtagpki/pki/wiki/ to
docs/user/tools/
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ea07d20b7139d694f8399f56617d656113225c25">ea07d20b</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-01-09T15:32:07-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>[skip ci]
copied Generating-Certificate-Request* and related docs from
https://github.com/dogtagpki/pki/wiki/ to
pki/docs/user/tools and pki/docs/user/tools/Generating-CSR
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/93b951811e497ea8481e900dcef5f9225d348c3f">93b95181</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-01-09T15:53:39-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>[skip ci]
copied over PKI-Client-CLI and Submitting-Certificate-Request-with-Key-Archival
More adjustments are still needed.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/53d9c84cf79ab093a92963bf3956034e492c022a">53d9c84c</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-01-09T16:05:14-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>[skip ci]
copied more files from https://github.com/dogtagpki/pki/wiki/
and fixed link.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/25eeb6bc3a40b4d36471cff1da4c4faa4a35690d">25eeb6bc</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-01-09T16:07:37-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>[skip ci]
fixed links
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/aa3ba8daeb63f0c8fd259a1dfbb119eec842c4a1">aa3ba8da</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-01-14T11:49:42+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix logrotate error
If the log rotate is invoked following a log using slf4j-impl the current
policy denied the accees to the log folder and the rotate fails.
This is always the case with the change to the SessionTimer class.
To solve the problem the policy is updated to grant slf4j-impl
read/write access to log folders.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/2817b436ebe906034ea7d1a9cc71539d21068518">2817b436</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-01-14T18:52:22+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix est doc formatting
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/919db96bc5ab041423879c9d6e9d478f9055b816">919db96b</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-01-15T09:34:49-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Temporary workaround for Podman issue on Ubuntu 24
To avoid a known issue in Podman on Ubuntu 24 the non-rootless
container tests have been modified to update the graph driver in
the SQLite backend manually. However, this method does not work
for the rootless container test so it has has been hard-coded to
use Ubuntu 22 for now.
https://github.com/containers/podman/issues/21683
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/7204ae0f390886459600902addd5ccbbe2a4b925">7204ae0f</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-01-15T17:44:51+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Replace libselinux restorecon API with CLI
The restorecon API in libselinux has a problem fixing the context if it
is update from the same script.
The bug is present in several RHEL releases and it is documented here:
https://issues.redhat.com/browse/RHEL-73348
Following the advice in the issue, the API call has been temporarily replaced
with the equivalent CLI.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/12b342841e7ff847856a7c08a70b0b1f38333fd7">12b34284</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-01-15T15:52:53-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>cfu testing out the wiki pages ported over to the repo.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6a24bd5c5b1a1a5366d560d2a2f0c9e6ffd2036a">6a24bd5c</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-01-15T15:52:53-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>[skip ci]
pki/docs/installation/kra
phase 1 md->adoc conversion:
- title format
- add blank line above bullets
- use Prerequisites links instead
existing links will be fixed in follow-up commit
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/daa0e2e38203cef189b481e67ada06afad933e78">daa0e2e3</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-01-15T15:52:53-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>[skip ci]
pki/docs/installation/pki
phase 2 md->adoc conversion
- replaced Markdown-style links with Asciidoc-style links
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/9a19e17990553ce410a62400ef075b76dd4b4f06">9a19e179</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-01-15T16:33:31-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>[skip ci]
pki/docs/installation/tks
phase 1
- title format
- add blank line above bullets
- use Prerequisites links instead
existing links will be fixed in follow-up commit
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/9ac397d10d829622e5be7902b1bcb32d3c152e07">9ac397d1</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-01-15T16:36:18-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>[skip ci]
pki/docs/installation/tks
phase 2 md->adoc conversion
- replaced Markdown-style links with Asciidoc-style links
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b251e7c1ffa8cecde261a6e2009897577ea84216">b251e7c1</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-01-15T16:49:59-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>[skip ci]
pki/docs/installation/tps
- title format
- add blank line above bullets
- use Prerequisites links instead
- replaced Markdown-style links with Asciidoc-style links
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ccedb20b5ee789d6c2f2a4e17a423ed3d9183541">ccedb20b</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-01-15T16:57:50-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>[skip ci]
fixed top subject level on 3 adoc files under pki/docs/installation/kra
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f390245e092f66467c34f99eb8517eed85885f60">f390245e</a></strong>
<div>
<span> by Adam Williamson </span> <i> at 2025-01-17T10:14:38+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Make sbin install dir configurable
We need it now we're doing sbin merge in Fedora.
Signed-off-by: Adam Williamson <awilliam@redhat.com>
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/5370420254a56639985d5fbc0fb97b9b3be3228d">53704202</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-01-17T09:46:10-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>docs/installation/ca replaced "moved to" messages
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/48823cef6165435d5e1bda2019dfcd46ef5ec479">48823cef</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-01-17T09:51:55-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>docs/installation/[ocsp,kra.tks.tps]
replaced .md files with "Converted/moved to" message
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/28b5bd02c5116e7230a94dbff59f2ef2cfe63946">28b5bd02</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-01-17T10:19:12-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>[skip ci]
docs/installation/server cleanup
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/10312f5c177bf3eba86de1a36312b04008582a44">10312f5c</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-01-17T10:38:53-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>[skip ci]
docs/installation/server md -> adoc conversion
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/bda458126fac538ed9e454d57b09af48b339697d">bda45812</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-01-17T20:47:29-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update CLI.execute()
The CLI.execute() has been updated to optionally take an object
that stores the arguments parsed by ArgumentParser. If the object
is provided, the code will not call parse_args().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/424fb5427ba9bae911fee122bff302593e8212d6">424fb542</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-01-17T20:48:08-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add CLI.create_parser()
The CLI code that creates ArgumentParser has been moved into
create_parser().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b4f48681b2161296f0e733b3ce316c3fc82cbe98">b4f48681</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-01-17T20:48:09-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Use CLI.get_full_name()
The CLI.create_parser() has been modified to create the
ArgumentParser with the module's full name.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/7c6c776352095d57ff60963da150880db1dcfbca">7c6c7763</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-01-20T10:59:30+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Updating version to v11.6.0-alpha3
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/07ddd03794f1bee4f92a4ea43304a3c4457635d6">07ddd037</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-01-20T08:59:02-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>[skip ci]
pki/docs/installation
removed .md files that had been moved away a long time ago.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/bb22542e8abedb9227bacc9444e5c21441ced998">bb22542e</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-01-21T11:33:03-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update pki-server to use ArgumentParser
The PKIServerCLI has been modified to create a main parser
using ArgumentParser then create a subparser for each sub-
command.
The CLI.create_parser() has been modified to take an optional
subparsers object and pass it down to the modules.
The PKICLI, PasswordGenerateCLI, and PKCS12ImportCLI will be
updated separately later.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/0c5c7e4df2c3ddc9a4d9334500886d5babe4f3af">0c5c7e4d</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-01-22T08:55:46-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update pki CLI to use ArgumentParser
The pki CLI has been updated to parse the main arguments (which
are also defined in MainCLI.java) using ArgumentParser, determine
the subcommand, then pass the remaining arguments to the Python
or Java module corresponding to the subcommand.
It does not use subparsers like in pki-server since the pki CLI
does not have the list of Java subcommands.
The pki CLI have options that might conflict with other options
in some subcommands. That will be addressed separately later.
The help message for default message format in MainCLI.java has
also been updated.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/7c7dd125f71ac4aa51156fd594dc30e691636a8f">7c7dd125</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-01-22T09:17:54-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update Python lint test
The pki-lint script has been split into python-lint.py and
python-flake8.py such that they can run independently. This
way a failure in one test will not prevent the other test
from running.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c0ceb9b081c906409ccb4c4d14ee7b2d962efc7b">c0ceb9b0</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-01-22T09:17:54-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix Python flake8 issues
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/bdcd55aa23d767c7a80129270c26f8de581476bc">bdcd55aa</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-01-22T10:11:22-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix typo in CertFixCLI
Resolves: https://github.com/dogtagpki/pki/issues/4917
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/1dac2b87705491c66b6edc23a6334b3bdd6ed11c">1dac2b87</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-01-22T11:26:17-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix build failure on Fedora Rawhide
See also commit f390245e092f66467c34f99eb8517eed85885f60.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6005cc0c03dbad959909916edf8aa38e90a86f7b">6005cc0c</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-01-22T18:48:44+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add doc for TLS mutual auth in EST
[skip ci]
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ba785b6c3fa16141eb99908d5130fb16379a1a95">ba785b6c</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-01-22T18:48:44+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Split EST doc between installation and admin
[skip ci]
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/400f412eece3d2547264d7b1dcf74cf0ec8ca93f">400f412e</a></strong>
<div>
<span> by jmagne </span> <i> at 2025-01-23T15:38:54+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix: RHEL-45539 (#4795)
CA Clone Installation is failing with 'Error verifying PKCS12 MAC; no PKCS12KDF support.' in FIPS mode.
This very simple fix only does the following.
The process fails when trying to export a cert out of the pkcs12 file into a pem file.
Currently the cmd fails becuase fips doesn't like the mac verfication alg.
Here, since we've already imported the p12 files into the nss db, using other cmds, it should be safe to do
this operation without asking openssl to do the mac verify.
Change-Id: I134c01ca4f15ef9093e9ff5aaa6c9c1bb820d9ac</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/930248a7d6e601a3efa47c07846ae646d01d79da">930248a7</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-01-23T10:23:16-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>[skip ci]
- updated pki/docs/acme/ to rely on Installing_DS_Packages.adoc and Creating_DS_instance.adoc in pki/docs/others instead of pki.wiki's DS-Installation.asciidoc.
- Deploying-DS-Container is not included in Creating_DS_instance.adoc. Will add later
- removed version-specific link reference to DS-1.3-Installation in Creating_DS_instance.adoc
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/58bd7fc88ebdbd8b40a10d5cad19bbf04a426626">58bd7fc8</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-01-23T13:01:49-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update IPA tests to check CA database config
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6dfe36ac7c650458a3c2715ac3f694ebb8c336b3">6dfe36ac</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-01-23T13:32:46-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update cert renewal doc
The IPA-specific content in Offline System Certificate Renewal
has been moved into a separate page:
https://github.com/dogtagpki/freeipa/wiki/Renewing-System-Certificates
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f833be0f6014ca94e7236d77c17f5d4cda6836fa">f833be0f</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-01-23T14:19:35-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up cert renewal doc [skip ci]
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/2f8e9573c5e49be822d656e254bc9aa5383054dd">2f8e9573</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-01-23T15:38:22-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix pki-server nss-create --password-file
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/550b2c1230ea8d99780feda63ebddcbe8b47ccdb">550b2c12</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-01-24T10:37:04-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add pki-server password-set/unset
The pki-server password-set/unset have been added to replace
pki-server password-add/del for managing the passwords in
password.conf.
The pki-server password-add will only work if the password
does not exist already, whereas the pki-server password-set
will overwrite the existing password.
The pki-server password-set will also support reading the
password from file and from console.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/3770a7f4c54095decba63909369204102cdb6783">3770a7f4</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-01-24T12:45:02-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up log messages in pki CLI
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/62a382e2c81e585eabdee2d4ff5a801402667991">62a382e2</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-01-24T12:45:37-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up log messages in pki-server cert-fix
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/0a9fd5d44428430e0691d4bb4a1d1e0a47c3d983">0a9fd5d4</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-01-27T09:18:13-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix pki-server cert-fix
The pki-server cert-fix has been updated to skip ACME and EST
subsystems since they don't have CS.cfg and are not needed to
renew expired system certificates.
The --cert and --extra-cert options have also been updated to
accept multiple values which are required by ipa-cert-fix.
A new --dm-password option has been added for specifying the
Directory Manager password to simplify testing.
See also:
* https://github.com/dogtagpki/pki/blob/master/docs/admin/Offline_System_Certificate_Renewal.md
* https://github.com/dogtagpki/freeipa/wiki/Renewing-System-Certificates
Resolves: https://github.com/dogtagpki/pki/issues/4873
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c4a889b45f974623e5006708c3f555806f82a673">c4a889b4</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-01-27T09:18:13-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add IPA renewal test
A new test has been added to install IPA with short-lived system
certs then renew the certs using ipa-cert-fix which internally
calls pki-server cert-fix.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/4ba57a0bf43baf8e7a969e79c07a0cac66b09bd7">4ba57a0b</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-01-27T09:22:03-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add tests for CA admin cert
Some tests have been updated to check the ca_admin.cert.
Apparently IPA is creating the file with an invalid format.
https://pagure.io/freeipa/issue/9735
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/cb70541ebb9fa6a505c8952b6361753a2a9b40b6">cb70541e</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-01-27T09:35:48-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update test for CA with existing config
The test for CA with existing config has been updated to verify
that the CA can be installed and re-installed with a non-default
instance name.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c85a3ce5d5f8f7cbee3954a8053ca29309d57896">c85a3ce5</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-01-28T15:02:16+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix request range creation bug for ssnv2
In some condition a new request range was created at every range update
task. The error was generated by a wrong method name which was creating
error in reading the existing next range
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/9ccccb906a6428f401d4cda9c345daf60d50ddb5">9ccccb90</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-01-28T08:30:35-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix pki-server instance-find
The pki-server instance-find has been updated to find instances
existing on the system based on PKIServer.exists().
The PKIServer.exists() has also been updated to check whether the
instance actually exists based on the <instance>/bin folder. It
does not use the <instance> folder itself since there might be
files (e.g. config files, logs) left in the folder after removing
the instance.
The test for installing CA with existing config has been updated
to validate pki-server instance-* commands.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a0c6cdbe9fc7c0fa6362a147119e26c23707adef">a0c6cdbe</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-01-28T09:07:53-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update pkiconsole script
The pkiconsole script has been updated to use the JVM specified
in JAVA_HOME so it will be more consistent with other PKI tools
(e.g. pki, pki-server, pkispawn).
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/25cb21a60f8e989c18065669785ed747611807cf">25cb21a6</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-01-28T09:13:30-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix pki-server subsystem-cert-find
The PKISubsystem.get_cert_infos() has been updated to return
a list instead of a generator object such that the number of
entries can be counted using len().
The pki-server subsystem-cert-find/show commands have been
deprecated since some of the certs returned by these commands
are shared with other subsystems (e.g. sslserver, subsystem)
which could cause some confusions. It's recommended to use
pki-server cert-find/show instead.
The test for basic OCSP installation has been updated to
check the above commands.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ca443ec79635dd906a50cbedec8c2dde08fc068e">ca443ec7</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-01-28T13:56:30-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix serial handling in PKIServer.renew_certificate()
Resolves: https://github.com/dogtagpki/pki/issues/4873
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/080cc976fb8949030ffb00911b1e1bc642440019">080cc976</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-01-29T10:01:51+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix error message for exhausted range
The exception message was reporting wrong numbers for requests because
there was a non correct hex conversion. Additionally, it was reporting the
wrong value because it was increasing even no new requests could be
generated.
Fix BZ#2332610
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/9f2ef0b39d19d3f5826186c4a5435ba4c769b1a5">9f2ef0b3</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-01-29T19:47:33-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Refactor PKIInstance.read_external_certs()
The PKIInstance.read_external_certs() has been renamed into
load_external_certs_conf() for clarity. The load_external_certs()
has been modified to load external certs from standard location.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/4c329e32d179bc2e0dc2b91addcf697cb4d80128">4c329e32</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-01-29T19:47:33-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Refactor PKIInstance.save_external_cert_data()
The PKIInstance.save_external_cert_data() has been renamed into
store_external_certs_conf() for clarity. The store_external_certs()
has been added to store external certs into the standard location.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/3b86f3dddbe749e88f65e4c7ab1b8ffa6f55b65d">3b86f3dd</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-01-29T19:47:33-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Refactor PKIInstance.add_external_cert() and delete_external_cert()
The PKIInstance.add_external_cert() and delete_external_cert()
have been updated such that the store_external_certs() will be
invoked by the caller to avoid repetitive invocations.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/3f3eedb5f4527818910f7aa621a9dcd465f4a8ca">3f3eedb5</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-01-29T23:00:26-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up log messages in pki-server instance-externalcert-add/del
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/90701b9409b66f8345fbb8d05135eb88d245f6a2">90701b94</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-01-29T23:00:26-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up log messages in pki pkcs12-import
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/917a4c4e74af2a91837047b9be0ad5ddc55c3764">917a4c4e</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-01-30T10:58:04+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix SSNv2 clone workflows
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c12dd2646cf81d6fc47c53fd1f7a61d0470eca6b">c12dd264</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-01-31T11:48:36+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix SSNv2 CA workflows
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/fb5c4273cc73cbdebb56b073b21942e0787a2bef">fb5c4273</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-01-31T09:20:03-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix pki_server_external_certs_path
Previously if the pki_server_pkcs12_path was not specified
the external certs specified in pki_server_external_certs_path
would not be imported either. This is incorrect since these
parameters are unrelated.
To address the issue the code that imports the external certs
in PKIDeployer.import_server_pkcs12() has been moved into
import_external_certs() which will always be invoked during
installation. The update_external_certs_conf() has been merged
into this method as well.
The PKIInstance.load_external_certs() has been modified to add
the external cert using add_external_cert() to avoid creating
duplicate entries in the external_certs.conf.
The PKIInstance.store_external_certs() has been modified to
remove the external_certs.conf if it's empty.
In the future the pki_server_external_certs_path param and the
pki-server instance-externalcert-* commands might be deprecated
and eventually removed since there are other ways to deal with
external certs without having to maintain external_certs.conf.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/0a88a9be6db52910504d4decdc2ebb342e2215f4">0a88a9be</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-01-31T09:20:03-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add test for pki-server instance-externalcert-add/del
The test for CA cloning with LDAPS connection has been updated
to create a CA, add an external cert, clone the CA, remove and
reinstall the clone, then remove the external cert.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/5a472223a85a2228152c49925f80d5d00d548ec8">5a472223</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-02-04T08:05:41-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix CLI help messages
Previously if a user called pki-server CLI with a wrong
sub-command the ArgumentParser would show an auto-generated
error message which looks significantly different from the
help message already defined in print_help().
To fix the issue the PKIServerCLI.create_parser() and
execute() have been modified to use remainder instead of
subparsers, and the create_parser() in the sub-commands has
been modified to create a regular ArgumentParser instead of
a subparser.
Similar changes were made to the CLI base class to fix the
help messages for sub-commands (e.g. pki-server ca).
The pki-server has also been modified to provide a --version
option to show the version number of the tool.
A new CLIException has been added to distinguish a normal
CLI error (which will generate a simple error message such
as "Invalid module") from an unexpected exception which will
generate a full stack trace.
Resolves: https://github.com/dogtagpki/pki/issues/4932
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/4719da0bfcb4b2387dfe8adff6754506332e52d3">4719da0b</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-02-04T08:05:41-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add tests for CLI help and error messages
Some tests have been added to check the help and error messages
generated by pki and pki-server CLIs.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/5bc99570331c31716ff38aca7408022bd3d123df">5bc99570</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-02-04T10:17:46-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up PKIDeployer.setup_admin_cert()
The PKIDeployer.setup_admin_cert() has been reorganized to
clarify the process of setting up an admin cert.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d1c5850bd1b69b3b58da0d3338acc399c53437b8">d1c5850b</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-02-04T18:58:48-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update pki.nssdb.convert_data()
The pki.nssdb.convert_data() has been updated to normalize
the input and output formats.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d7540acbc69c14d986ec56fc8b7dbaeb52cb9462">d7540acb</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-02-04T20:07:40-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update PKIDeployer.init_client_nssdb()
The PKIDeployer.init_client_nssdb() has been updated to allow
pre-existing ~/.dogtag/<instance>/<subsytem> folder.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e4cfd4c6a1d287dfe08f8cb33ca96b9cf0d9775a">e4cfd4c6</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-02-04T20:11:59-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add pki pkcs12-cert-export --cert-format
The pki pkcs12-cert-export has also been updated to provide an
option to specify the cert format.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/57387d878449b1ab4c086409ef22aecb00159e0b">57387d87</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-02-04T20:40:54-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add PKCS12.get_cert()
The PKCS12.get_cert() has been added to export a cert from a
PKCS #12 file using pki pkcs12-cert-export.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/cd0daf61578c9aa5bfeabcf4ef90291960e6bf1a">cd0daf61</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-02-05T14:02:26-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update pkispawn to verify admin cert
The pki nss-cert-verify has been added to verify that a cert
is issued by a trusted CA. The cert can be provided in an NSS
database, in a file, or via standard input.
The PKITrustManager class has been moved into pki-common.jar
such that it can be used by the CLI. This class is not yet
officially supported so it's not necessary to provide an
upgrade script.
The NSSDatabase.verify_cert() has been added to verify a cert
using pki nss-cert-verify.
The PKIDeployer.import_system_certs() and setup_admin_cert()
have been modified to verify the admin cert provided during
installation.
The test for installing CA with existing certs has been updated
to install the CA with a self-signed admin cert (which should
fail), then install it again with a CA-signed cert (which should
work).
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f1f894af9938020fcb3813e5c97bf18d5cc7dbe7">f1f894af</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-02-05T14:02:48-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix missing sys.exit() in pki-server
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/61a469da3f685280414d0545e7f3a9a201ea81ee">61a469da</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-02-06T08:58:32-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Rebuild search indexes during cloning
Since 389 DS 3.0 the search indexes need to be rebuilt
on the clone
Resolves: https://issues.redhat.com/browse/RHEL-63015
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/8fc88c56bbf4d88240d3eb1870e6cf2e59604e07">8fc88c56</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-02-06T09:02:52-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add test for installing CA with obsolete admin cert
The test for installing CA with existing config has been updated
to reinstall the CA with new system certs but with an old admin
cert from the previous installation (which should fail). Then the
test will remove the admin cert and reinstall the CA again (which
should succeed) and a new admin cert should be created.
pkispawn was updated to indicate that the installation failure
might be caused by an obsolete admin cert.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/fd518392819b7c2db6973b0223cf38d696fffd44">fd518392</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-02-06T21:06:47-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move CRMFPopClient.getKeyWrapAlgotihm() to CAInfoClient
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/fd4ee777abb3ef3914ee175da2f874d73db0d0ce">fd4ee777</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-02-06T21:07:17-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move CRMFPopClient.isEncoded() to CryptoUtil
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/9ec1dccda8d9d72568230bca79656105e9c12f01">9ec1dccd</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-02-06T21:07:17-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move CRMFPopClient.createAVA() to CryptoUtil
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/fb815b70dff548317435395d79aed496cd4970da">fb815b70</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-02-06T21:07:17-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move CRMFPopClient.createName() to CryptoUtil
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/5f87e1fe9ecec445282e9820987c4ffc1bf48e27">5f87e1fe</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-02-06T21:07:17-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move CRMFPopClient.getWrappingParams() to CryptoUtil
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/2efc56114d95fad0921341e1de40ad48df231b80">2efc5611</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-02-06T21:07:17-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move CRMFPopClient.createCRMFRequest() to CryptoUtil
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c73a1230df89d6083c9100104b8347df84e53f47">c73a1230</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-02-06T21:07:17-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move CRMFPopClient.createPop() to CryptoUtil
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f011ccf04fc4f77e916a01054d43c619cd57102b">f011ccf0</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-02-06T21:07:17-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move CRMFPopClient.createSigner() to CryptoUtil
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ef49dcf1eb730b65d8a6db1deb77f4f3d4a37fb4">ef49dcf1</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-02-06T21:07:17-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move CRMFPopClient.createCertTemplate() to CryptoUtil
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/2b0484d91032a0ab1af9d438a2094fe9f38bc2e5">2b0484d9</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-02-06T21:07:17-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move CRMFPopClient.createCertRequest() to CryptoUtil
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/4248adaf5df554b2b132104146af5135dc9b5b30">4248adaf</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-02-07T08:54:34-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update ACME tests to create DS indexes
The ACME tests have been updated to create DS indexes as
described in the docs.
The tests have also been updated to no longer upload test
artifacts to save space and reduce execution time.
The runner-init.sh has been updated to support multiple
network aliases.
https://github.com/dogtagpki/pki/wiki/Installing-ACME-Responder-using-pkispawn
https://github.com/dogtagpki/pki/wiki/Installing-ACME-Responder-using-PKI-Server-ACME-CLI
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6e89b62859cb354a003bd0936c54013b36a0c7c8">6e89b628</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-02-07T15:40:54-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Consolidate CryptoUtil.createCertificationRequest()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/591ccca552e4b4608694ee2a1022e29ac6a73831">591ccca5</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-02-07T17:07:58-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Refactory CryptoUtil.createSigner()
The CryptoUtil.createSigner() has been modified to take a
SignatureAlgorithm object.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/465671f68ebf7d40047060f84a51abbbbd0c091d">465671f6</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-02-07T17:07:58-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Refactory CryptoUtil.createPop()
The CryptoUtil.createPop() has been modified to take a
SignatureAlgorithm object.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e86084a383cc2b19c8a12c903a551e5f0f8bd458">e86084a3</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-02-07T17:09:49-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Refactor ClientCertRequestCLI.generatePkcs10Request()
The ClientCertRequestCLI.generatePkcs10Request() has been
modified to create a PKCS #10 request directly instead of
calling PKCS10Client.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/8eee35afbb2f550f55995b23a3546e6b00f29b9f">8eee35af</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-02-07T17:10:09-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Refactor ClientCertRequestCLI.generateCrmfRequest()
The ClientCertRequestCLI.generateCrmfRequest() has been
modified to take a key pair generated using generateRSAKeyPair()
or generateECCKeyPair().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b431e985cfeb13d5808ea16779373017ab5d9cfa">b431e985</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-02-10T10:58:19+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move realm DB set up for EST in a separate file
Additionally, realm configurations have been splitted in different
folders.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6f9a9f0ab9b8e87f58ac8c607a3b7504ca3cfebc">6f9a9f0a</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-02-10T10:58:19+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update EST doc to separte RELM config from user management
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f3ce5123a3eedc5aeb3f7195b48e9bd7e96c0d9a">f3ce5123</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-02-10T10:58:19+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update EST doc and CI to create group during installation
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/25a7e7a473a3023d6a1f6825fa39d7a3f9f5034b">25a7e7a4</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-02-10T10:58:19+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Rename default est group from estclient to EST Users
Additionally, update docs reference.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/4c5d76830b81a3c159f8d1b85be6d761bca429ec">4c5d7683</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-02-10T21:46:16+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move ServerSide pkcs12 key derivation to enrollment
Key derivation from pkcs12 password was implemented during the default
population operation and then the password was deleted. To implement a
new constraint for the password this operation has to move to a later
step so no computation is wasted in case the password do not satisfy its
constraints.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/fc70cfc07a0df9ebaf0dba0a14300d935a23c636">fc70cfc0</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-02-10T21:46:16+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>A new policy constraint to enforce p12 password quality.
The new *p12ExportPasswordConstraintImpl* constraint allows to check:
* `password.minSize` - the minimum size for the password;
* `password.minUpperLetter` - the minimum number of capital letters;
* `password.minLowerLetter` - the minimum number of lower letters;
* `password.minNumber` - the minimum number of digits;
* `password.minSpecialChar` - the minimum number of punctuation characters;
* `password.seqLength` - the size of substring sequence which cannot be repeated;
* `password.maxRepeatedChar` - maximum number of repeating for each character;
* `password.cracklibCheck` - a boolean to request an additional check with *cracklib* (it has to be installed if not present).
The same option can be configured in the CS.cfg replacing `password.*`
with `passwordChecker.*`. The configuration in CS.cfg is used for all
the passwords but the profile can overwrite to have stronger or weaker
configuration.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/72aaadfab3667d8ce8cf4c3f5fb858217bf15724">72aaadfa</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-02-10T21:46:16+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update script for plicy password contraint
The update add the policy password contraint to the registry but it does
not modify the current profiles policies.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/eddc530199b21f1944fe5370af6829f54c3d048c">eddc5301</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-02-10T21:46:16+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add test for CA password policy enforcement
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/11c92a86044284f0da30028a6433ea5bd10cf187">11c92a86</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-02-10T21:55:58+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix password check documentation
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/7a3fa494947f12c25df5159679a3935341480d64">7a3fa494</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-02-10T16:18:56-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>[skip ci]
For doc convergence:
commenting out links that could lead to requirement of too many files imported
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/9fbbdb5f5b8ca70ca606aa05edeea8f7fb002938">9fbbdb5f</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-02-10T18:25:30-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>[skip ci]
Moved the generic Prerequisites into others/Installation_Prerequisites.adoc
and replace all Prerequisites section.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/38ac6fc57938d0d4fc29e297c13f2f3f2a47fee5">38ac6fc5</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-02-10T20:28:06-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Refactor ClientCertRequestCLI (part 1)
The generateRSAKeyPair() and generateECCKeyPair() in
ClientCertRequestCLI have been moved into NSSDatabase.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/70d86d3917581c1b070cd418e140b68c4d904ac1">70d86d39</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-02-10T20:28:06-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Refactor ClientCertRequestCLI (part 2)
The ClientCertRequestCLI.createCRMFRequest() has been moved
into NSSDatabase.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/4fd502e54dde7a9759806b0bfa666fabe9b2cd19">4fd502e5</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-02-10T20:28:06-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Refactor ClientCertRequestCLI (part 3)
The ClientCertRequestCLI.createPKCS10Request() has been moved
into NSSDatabase.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/9f361e725d67d827f5df07edd53b9e883c03d687">9f361e72</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-02-10T20:28:06-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Refactor NSSCertRequestCLI
The code in NSSCertRequestCLI that constructs key usages has
been moved into NSSDatabase.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ce175d3a44c41d7b9b29b792253f27487ad8cdca">ce175d3a</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-02-11T11:45:42-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add test for PKCS10Client
A new test has been added to generate cert requests with RSA
and EC keys using PKCS10Client.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/28cdc45b13056cb9e4085d4cc6b648c3c2510372">28cdc45b</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-02-11T19:35:21-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Replace deprecated params in examples
The sample config files have been updated to use pki_ds_url
instead of pki_ds_ldap_port and pki_ds_ldaps_port since those
params have been deprecated since PKI 11.5 and will generate
deprecation warnings if used.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a0704b7e02baf659c421b3028215214e238fe49d">a0704b7e</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-02-11T19:36:55-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Refactor PKCS10Client (part 1)
The PKCS10Client has been updated to create the key pair
using NSSDatabase.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/cd2025104c6061cfb0fa35f7e36901c5b824d092">cd202510</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-02-11T19:36:55-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Refactor PKCS10Client (part 2)
The PKCS10Client has been modified to create the PKCS #10
request using NSSDatabase.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c79d242d340ba2e590ab2fac346963f82b553b5d">c79d242d</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-02-12T15:01:26-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update version number to 11.6.0
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6f36bf93f83848b3c9e0d8c684abe85e60e21e69">6f36bf93</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-02-12T16:48:11-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>[skip ci]
adopted content from 6.3. Setting the FQDN of [RHCS 10cc] for doc convergence.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/150f1607239a1b85d90ff86fe30795c6a07a18ee">150f1607</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-02-13T08:19:22-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add test for ACME container with CA
A new test has been added to create a CA container and an
ACME container using the CA, then run ACME tests using
certbot.
The pki-acme-run script has been modified to create the
/conf/acme folder to store imported config files if it
doesn't exist already.
The pki-server-run script has been modified to create an
NSS database and the /conf/certs folder to store imported
certs if they don't exist already.
The pki-server run command has been modified to provide
options to skip config upgrade and migration. The
pki-server-run script has also been modified to use these
options since in general containers should not alter the
config files automatically (including creating backup files).
For now containers should assume that the config files are
already upgraded/migrated by the admin.
The tests for basic ACME container and PKI server container
have been updated to no longer expect a backup folder to be
created in the /logs folder.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/df2b41aed3cf41c8990d701b4628de02285f8f98">df2b41ae</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-02-13T15:23:41+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix SSL alert in CI
Jss has fixed ssl alert for non blocking socket and the messages are
updated in CI tests.
See: https://github.com/dogtagpki/jss/commit/2f516c6e1f04c1dd4333d257e71007786e2ae5c5
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/25b01d4c90237101a27b719d603400821cd71573">25b01d4c</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-02-13T20:33:56+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update spec for compiler flags
C and C++ flags are now retrieved from 'optflags' macro. In Fedora this is:
CFLAGS='-O2 -flto=auto -ffat-lto-objects -fexceptions -g -grecord-gcc-switches -pipe -Wall -Werror=format-security -Wp,-U_FORTIFY_SOURCE,-D_FORTIFY_SOURCE=3 -Wp,-D_GLIBCXX_ASSERTIONS -specs=/usr/lib/rpm/redhat/redhat-hardened-cc1 -fstack-protector-strong -specs=/usr/lib/rpm/redhat/redhat-annobin-cc1 -m64 -march=x86-64 -mtune=generic -fasynchronous-unwind-tables -fstack-clash-protection -fcf-protection -mtls-dialect=gnu2 -fno-omit-frame-pointer -mno-omit-leaf-frame-pointer '
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/83d6a75b9db9ca46b6c87d3171b2950d1aad60b0">83d6a75b</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-02-13T20:33:56+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Using systemd for pkiuser in fedora
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/cb2c49b4d1dfd3a1b8eafe6c5738fe9372cc1a13">cb2c49b4</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-02-13T20:25:35+00:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update pki.spec
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/77cceb30e0fd158e308f1baf6780b8259d989918">77cceb30</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-02-14T14:10:22-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Use Maven with OpenJDK 17 on RHEL 9
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ae1fe9cddd27442aa9df6b5728bbcc17cac592aa">ae1fe9cd</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-02-14T16:45:25-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>[skip ci]
- point DS setup link to ../others/Installation_Prerequisites.adoc
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/2f4320b0de23ee063bfe2e4ea078aa87269abe2a">2f4320b0</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-02-14T20:04:19-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Reduce failures in container tests
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/3a234e1682d8a9e21bb7b51ba06b51be977d4238">3a234e16</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-02-17T16:36:17-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>[skip ci]
remove closing ='s from headers in adoc files under pki/docs/installation
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c72478ba39858d97440b9f8f194e1b0eb68a2de4">c72478ba</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-02-18T13:07:44-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix home directory owner in containers
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/cb61a0b6002d6f71ce82cee1020ac7d164308ade">cb61a0b6</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-02-18T15:59:35-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update ACME docs [skip ci]
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/83b1065b2d58fffa02a13b7e1dc1506aec120cf7">83b1065b</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-02-18T16:27:46-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>replace md quote style (“```”) with adoc style ("....") [skip ci]
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/1b95eb412f5de3bc9fd844a233178a2de453474e">1b95eb41</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-02-18T16:58:39-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>adding [literal,subs="+quotes,verbatim"] line above code "...." blocks [skip ci]
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a6e1ef9b72461f5e3f205f84f5eb3eb779440739">a6e1ef9b</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-02-19T17:41:33-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update PKIServer.create_logs_dir()
The PKIServer.create_logs_dir() has been updated to always create
the backup folder since the CI expects the folder to exist even if
there are no upgrade scripts for the current version.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a8f4af13c71510aea7f9eaea6e696b064cc322ff">a8f4af13</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-02-19T17:41:33-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update version number to 11.7.0-alpha1
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/77e237fefc6193be7b6c222569112de1b552b412">77e237fe</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-02-19T16:42:35-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Removed "Overview" per downstream convergence. [skip ci]
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6af7cb59d6d27b21b5fd6a5070279fc60b41e60f">6af7cb59</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-02-19T16:42:35-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Replace "This page describes the process" with "Follow this process"
per downstream convergence. [skip ci]
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/aa3690f58aa592b1b6308dac7278d15f77d7442e">aa3690f5</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-02-19T16:42:35-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>avoid reference to the word "page" for downstream convergence. [skip ci]
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/bfb2aad9d32a57694dee6f9a3d6ecc19ab1c1993">bfb2aad9</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-02-19T22:41:21-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix expected backup folder permissions in CI
The expected permissions of backup folder have been updated
due to recent changes in PKIServer.create_logs_dir().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/8d88ffd4c3fd87539a4658cea044811dbb8ba401">8d88ffd4</a></strong>
<div>
<span> by Pritam Singh </span> <i> at 2025-02-20T17:40:20+05:30 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Added 'pki_cert_chain_path' configuration parameter</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/05204b895979f6f9bea6b85182e070749009c5d5">05204b89</a></strong>
<div>
<span> by Pritam Singh </span> <i> at 2025-02-20T17:45:57+05:30 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Added 'pki_cert_chain_path' configuration parameter</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/760a59af3d9ed393ab39b2e5c21c69cdc7094204">760a59af</a></strong>
<div>
<span> by Pritam Singh </span> <i> at 2025-02-20T18:26:52+05:30 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Added 'token' parameters</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/0a2117866f376752ed9ab77492929dcc0013fb89">0a211786</a></strong>
<div>
<span> by Pritam Singh </span> <i> at 2025-02-20T18:31:01+05:30 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Added 'token' parameters</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/5fb8ce4a6b537ef6d0f0f8e49ede2241e60dda3e">5fb8ce4a</a></strong>
<div>
<span> by Pritam Singh </span> <i> at 2025-02-20T18:44:06+05:30 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Added 'token' and 'pki_cert_chain_path' configuration parameters</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/31ede6d1250991d61a97a3477b14c3450345bfbd">31ede6d1</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-02-20T14:01:52-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>adding missing note to assume export of CA signing cert to ca_signing.crt prior to cloning kra and ocsp with HSM [skip ci]
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/12e4d5c6126066f0aa718d480cdf888a12e12156">12e4d5c6</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-02-20T22:07:03+00:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Use Tomcat 9 on RHEL 10
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/9ab499a70567f57552dd21265eb8c9fd18b2d213">9ab499a7</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-02-20T18:03:48-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix product_id and theme params in pki.spec
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e8f13e409d8f67cbe712d3643e5c0c0d1109868c">e8f13e40</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-02-24T10:22:06+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add stale automation for issues and PRs
See https://github.com/actions/stale
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/bb13a91c1b506a1e5a69d082970b1bd060ffc7e1">bb13a91c</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-02-24T14:28:41-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up HTTPConnectorCLI.print_connector()
The HTTPConnectorCLI.print_connector() has been updated to no
longer print sslVersionRangeStream, sslVersionRangeDatagram,
and sslRangeCiphers params since they are no longer used since
PKI 10.10.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b2e1edf9bbdc1b9ac81274844e24b1adb393ba1c">b2e1edf9</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-02-24T14:40:31-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Refactor CRMFPopClient (part 1)
The CRMFPopClient has been modified to generate the key pairs
using NSSDatabase.createRSAKeyPair() and createECKeyPair().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/86ba72f6824c62c7bbed44431dcd459da0f687cb">86ba72f6</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-02-24T14:43:28-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Refactor CRMFPopClient (part 2)
The CRMFPopClient has been updated to generate the CRMF request
using NSSDatabase.createCRMFRequest().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/4d74199ffaf068d1e5c01b68076e2e9591f1cb88">4d74199f</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-02-25T14:07:55-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>replacing "e.g." with "for example" with some additional rules:
- if ')' is not followed by a punctuation, replace it with ','
- if ')' is followed by a punctuation, remove the ')'
- ignore "e.g." inside asciidoc code blocks, e.g. acme/Installing-ACME-Responder-using-PKI-Server-ACME-CLI.adoc
- adding a pair of backticks to surround the example
[skip ci]
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/753a0a609a6e3b859214a6fffe6fd6ff1dd1b4d4">753a0a60</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-02-25T14:07:55-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>- replace "will be deployed" with "is deployed" under pki/docs/installation
- remove backticks surrounding words (instead of names) under pki/docs/installation
- remove the extra ", for example" under pki/docs/installation
[skip ci]
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/8078953aaa68d25e0c51439a60b70e84acc3bb00">8078953a</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-02-25T15:05:11-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>replace "will be" with "is" (if singular) or "are" (if plural) under
pki/docs/installation [skip ci]
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d3ef7e8662982509a66870e23cbcaf8ca067a308">d3ef7e86</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-02-26T10:21:23+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Enable stale action
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b1cb2efc610c337df7348482bf82da2707b03ddd">b1cb2efc</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-02-26T17:29:52+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Enable certificate revocation check in NonBlockingSocketFactory
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/904bdac40cbe372785f6137f0a163b801c58d2e9">904bdac4</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-02-27T09:52:48-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Split tpsclient into libpki-tps.so
Most of the code in tpsclient has been moved into libpki-tps.so
(i.e. reverting commit 65d1a36e6dcddf8ab2bf24ad072bbd26753c4a4e)
such that it can be reused by other tools. The main() function
itself has been moved into tpsclient.cpp.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/2bb936bd2988e7d83e58a3397d5437ba920bf8c5">2bb936bd</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-02-27T09:52:48-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add pki tps-client
The pki tps-client has been added to replace tpsclient to make
it easier to maintain TPS client code and to troubleshoot TPS
issues. Currently it will simply reuse libpki-tps.so but in the
future the native code will gradually be converted to Java.
The tpsclient has been deprecated and will be removed in the
future.
The basic TPS test has been updated to test both pki tps-client
and tpsclient.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b377f6528cf25c54d690c0ecd29b63801044317e">b377f652</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-02-27T17:32:56+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update to jquery v3.7.1
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c818d3bf970dc9eafe6db5eb3618be6ff8c6f62b">c818d3bf</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-02-27T17:32:56+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update to underscore v1.13.7
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e9e3f94550bed7be2c39d4a6ac65cebc450b8f8f">e9e3f945</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-02-27T17:32:56+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update to backbone v1.6.0
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6c476607b76dad5d1ef193e705ef0eb6922c6267">6c476607</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-02-27T09:10:32-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>pki/docs/installation adoc files renamed according to new conventions.
- All lower case
- ‘-’ instead of “_”
- Adding “moved to” message to old files
- Changing link references from old to new names
- replaced "Secure-Connection" with "ldaps"
under pki/docs/installation
- renamed Set-Up-Realm-DB.adoc to configure-est-realm-db.adoc
- replaced pkispawn cfg content display block markers to use "----" instead of "...."
[skip ci]
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f3fdd26ee611dd13b23420987981a717bfc699af">f3fdd26e</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-02-27T11:39:08-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add support for subsystem logging.properties
The CMSEngine, ACMEEngine, and ESTEngine have been modified
to support subsystem logging.properties. If the file exists,
it can be used to configure the logging level in various
libraries (e.g. RESTEasy) to help troubleshooting.
The CA, ACME, and EST tests have been modified to create
the subsystem logging.properties then check the debug log.
https://github.com/dogtagpki/pki/wiki/Configuring-Subsystem-Debug-Log
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/1ba478477198fc23d4ff5d7cfde63e9d0c6a7eb2">1ba47847</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-02-27T14:21:12-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>The initial Dogtag pki documentation convention readme file.
- future contributors to pki/docs are expected to conform to the contentions listed in this file.
- reviewers are expected to give a comment pointing any future doc PR to this file before giving any detailed reviews.
[skip ci]
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/1b82d230bd4aef666c0f09b22c350dad55642d49">1b82d230</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-02-27T15:32:25-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>under pki/docs/installation
- adding the following three lines to the top of adoc files with all lower case file names:
-- :_mod-docs-content-type: PROCEDURE
-- \n
-- [id="xxx_{context}"] where 'xxx' is the file name minus the .adoc extention
[skip ci]
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/7b4cdc227febb4ed7ea34e822140dc39b1376977">7b4cdc22</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-02-27T16:11:13-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update dogtagpki-docs-convention-readme.adoc</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6d697d304d963a9826e4213a0af2666f129a6e01">6d697d30</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-02-27T17:17:56-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update dogtagpki-docs-convention-readme.adoc</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/9434241dcb8aa30b0859a01aa509706b0dd8e6b6">9434241d</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-02-28T11:29:15+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update CI stale to v9.1.0
There is a cache problem in v9 which should be solved in v9.1.0.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/aa3c316e4578ea06014b8f3b910baf55c9fdec65">aa3c316e</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-02-28T10:16:41-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove hard-coded pkidbuser
The pkidbuser is mainly used by PKI in IPA to access DS using
client cert auth. Regular (non-IPA) PKI generally do not use
this user but currently the user is created by default during
installation and the username is hard-coded in PKI.
To simplify the installation the code that sets up the database
user has been consolidated into configuration.py and the default
pki_share_dbuser_dn has been removed so it will no longer create
the user by default. IPA defines the pki_share_dbuser_dn during
installation so it will not be affected by this change.
The non-IPA tests have been updated to no longer check pkidbuser.
There are still some references to pkidbuser in CertFixCLI (which
is mainly used by IPA). They will be cleaned up separately later.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e43227c0af005bf524e062eb6d11ecee9739bfb7">e43227c0</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-02-28T17:05:27-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Refactor RA_Client::Execute()
The RA_Client::Execute() has been converted into Java code
in TPSClientCLI.execute(). The original C code has been moved
into tpsclient.cpp. The TPSClientCLI.invokeOperation() has
been added to call RA_Client::InvokeOperation().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d09271c6c82edfea0b15429ed5de01ed3d135ab0">d09271c6</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-03-03T10:55:19+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Increase number for CI stale actions
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/8083eb3b9a99ff97d45f6f6be867f1a9be3bf3f1">8083eb3b</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-03-04T08:55:02-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix Azure pipelines
Previously all JAR files were installed in /usr/share/java/pki,
but since now pki-tools.jar uses JNI Maven might install it in
/usr/lib/java/pki depending on the build environment (which
requires further investigation).
To maintain consistency the CMake script has been modified to
install pki-tools.jar in /usr/lib/java/pki then create a link
to it in /usr/share/java/pki.
The RPM spec has been modified to check where pki-tools.jar is
installed then create a link to it from the other location.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/324c209d91bebb06f53bdab3f6a003bc306ddbc4">324c209d</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-03-05T12:18:17-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Don't use pki_token_name as default token
Previously the pki_token_name was used as the default token for
all system certs, but due to a bug the fallback mechanism has not
been working properly in all cases, so currently the token name
for each system cert has to be specified in pki_<cert>_token if
it's needed, which is actually simpler.
Since the bug has existed for a long time and might require a lot
of effort to properly fix and test it, the code that provides the
fallback mechanism is no longer needed and has been dropped.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d6fea77ad39454d48fc2d7fd2dc0acb0e94d7e4a">d6fea77a</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-03-06T10:21:17+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add actionw write permission to stale CI
The permission is required for an issue with cache.
https://github.com/actions/stale/issues/1133
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ddaddb5741c28b9f79ee4746cd111f2b838e8658">ddaddb57</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-03-06T20:30:45+00:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update minimum CMake version
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/559b876a1c039ce0db775ebe4320e33c33ab9a1b">559b876a</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-03-07T10:14:03+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix typos for SSN messages
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c05485ed204e0a425a9ffa6e1a7a70a4340cd5ed">c05485ed</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-03-07T10:14:03+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update CI for typo fixes
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/610c2fa2a8142b15323e8c736eeadd34298338e7">610c2fa2</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-03-07T11:31:01-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Don't create audit signing cert by default
Previously the audit signing cert was always created by default
during installation, but it's actually only used if log signing
is enabled.
To reduce redundancies the default pki_audit_signing_nickname
has been removed so that pkispawn will skip creating the audit
signing cert if the nickname is not specified.
The selftest and pki-healthcheck have been modified to skip
validating the audit signing cert if the nickname is not
available.
The pki-server cert-find and pki-server subsystem-cert-find
commands have also been modified to skip displaying the audit
signing cert if the nickname is not available.
The basic tests of each subsystem have been updated to install
the subsystem without the audit signing cert nickname so it will
not create the cert. For basic CA test, it will later create the
cert and enable log signing manually.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/dfe40ab758bc4910f3c3684f90bcf5d0013d2cac">dfe40ab7</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-03-07T20:36:54+00:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix javac --release option
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/4dc3e8c8f103a665a2b04e5ed93f12987b07fac6">4dc3e8c8</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-03-10T10:37:38-07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>defer moving these user tool pages from wiki.
[skip ci]
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/3b61d531edabee7d539ec756fb2741a5a8186921">3b61d531</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-03-10T16:47:15-07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Cover two conditions:
- using ds temp bootstrap certs
- using certs issued by a real CA
These are meant to be used bo the files in pki/docs/installation
[skip ci]
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a90c1f4120dc848eb56677c960ce14bd2ba72069">a90c1f41</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-03-10T16:53:07-07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>remove the "moved to" files under pki/docs/installation
[skip ci]
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/7f42e95cfcbe095748f9f8e13e7de8f4cf6c52ae">7f42e95c</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-03-10T17:15:12-07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>removed the "moved to" .md files
[skip ci]
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/0bc40c61bf018a731bb82db31a06473e226ca728">0bc40c61</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-03-11T10:26:14-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Convert TPSClientCLI.invokeOperation() to Java
The TPSClientCLI.invokeOperation() has been converted into Java
which will use native methods to call RA_Client methods. The
RA_Client::InvokeOperation() has been moved to tpsclient.cpp.
The old_style variable has been moved into RA_Client class to
make it more accessible.
The basic TPS test has been updated to test basic operations
using pki tps-client and tpsclient.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c331ad1977067866b17c10fb3cb35f62536a3592">c331ad19</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-03-11T10:39:26-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add test for reinstalling IPA
A new test has been added to install IPA server with CA and
KRA, remove the server, reinstall the server, and verify that
everything is working properly with new certs.
The IPA KRA test has also been updated since IPA issue #9735
has been fixed.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b703a6759a0dd9dcccd962586f8ced2d60ecf8fa">b703a675</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-03-11T13:43:40-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up TPSClientCLI.cpp
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/dbb520a03415dec28b17e003a34ea17fc4e64ee9">dbb520a0</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-03-11T14:47:55-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update dependency to JSS 5.7
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/0facec6e586f73b681d49699a6e2422e6674e010">0facec6e</a></strong>
<div>
<span> by jmagne </span> <i> at 2025-03-11T16:22:30-07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix: RHCS-5675 (#4993)
Bug 2351094 - TPS subsystem cert unable to unwrap shared secret and TPS install fails with pki_import_shared_secret=True config.
This fix allows the auto imporation of the shared secret into TPS when using the HSM to succeed.
Change-Id: I0259e2dbe49c042598e018ec5a3a8e8834c3f9e8</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f69a551f183486f9517b34fb1c400c0cb78f42fc">f69a551f</a></strong>
<div>
<span> by Pritam Singh </span> <i> at 2025-03-12T21:42:22+05:30 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add SELinux workaround note for cracklibCheck (#4974)
* Add SELinux workaround note for cracklibCheck
When cracklibCheck=true is enabled, SELinux prevents its execution and in this case cracklib not function as expected, So adding workaround to trust and allow this module in SELinux policy.
* Update ServerSideKeygen.adoc
* Update ServerSideKeygen.adoc</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/22f2181a84d6fe44c18dbdac06fa31eba5f55dcd">22f2181a</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-03-12T17:38:53-07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>ldaps-related setup cleanup, including:
- copying the slightly adjusted installing-ca-clone-with-ldaps-connection.adoc to installing-ca-clone-with-temp-ldaps-connection.adoc for reference. Using the temporary bootstrap DS server cert shouldn't be a recommended case
- modified installing-ca-clone-with-temp-ldaps-connection.adoc so that it assumes that the existing PKI instance is running withr real DS server cert, and issues a real DS server cert for the DS of the clone
- modified all ldaps installation adoc files to reflect the changes
- some adjustments to the already updated ldaps-related sections under pki/docs/installation/others
- renamed enabling-temp-ssl-connection-in-ds.adoc to enabling-ssl-connection-in-ds-with-bootstrap-cert.adoc
- renamed installing-ca-clone-with-temp-ldaps-connection.adoc to installing-ca-clone-with-ldaps-using-bootstrap-ds-certs.adoc
[skip ci]
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ec48fb5f191d7e47537c1bf5822f39a22c5404a2">ec48fb5f</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-03-13T08:17:22-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix JRE dependency for pki-console
The pki.spec has been updated to require java-<version>-openjdk
for pki-console which provides the AWT library needed by the
console.
The Azure pipeline has been updated to build the console with
rpmbuild, CMake, and Maven and compare the binaries.
The CMake script has been updated to include all resource files
such that it generates a pki-console.jar identical to the one
built by Maven.
The Console.java has been updated to work with the latest Apache
Commons CLI library.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d067ba3b46272321c0f1fa3f8227ce479615251e">d067ba3b</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-03-13T16:53:54+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add option to match CSR subject and SAN with TLS cert
The new option "enrollMatchTLSSubjSAN" default to true so the check is
always performed.
If disabled, users can add their checks in the authorizer executable
since the information for the match (CSR and cleint cert chain) are
provided.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/bfeebd14adfd8983bf5eb4e77f04f4fb921484b5">bfeebd14</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-03-13T16:53:54+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add enrollMatchTLSSubjSAN option in est installation doc
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b0d7d33e6cb6b6b2b4811327d5b56bcdcc43afaf">b0d7d33e</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-03-13T16:53:54+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add EST test for enrollMatchTLSSubjSAN
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f5d6a767472634df38a66f9c1cbfcbbd68b82805">f5d6a767</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-03-13T16:53:54+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add EST subject check to basic authentication
If EST client uses basic authentication the CSR subject common name and
SAN, if present, have to match with the user full name or the user uid.
The check can vi disabled using the option "enrollMatchTLSSubjSAN" set
to false in the authorizer.conf file.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/7cab30cd7db598907221877c35285acc4b2347af">7cab30cd</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-03-13T16:53:54+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update EST doc for basic authentication subject check
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e32003c9ef53b7428af80940bee9ec4408597aa6">e32003c9</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-03-13T16:53:54+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update EST test for CSR subject check
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/3f840c06d172a07968f9a6a753798f1fae6992e3">3f840c06</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-03-13T16:53:54+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix CMake libraries for EST
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a9598133fa85d8762ebfa5b4e46c7c05d40e17bd">a9598133</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-03-13T19:08:47+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix erroneous opsFlag in nss-key-create operation
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/57ed704c72ad54b0184bccc9ad2f811a2e7f8825">57ed704c</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-03-13T14:28:31-07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>testing xref link to subsection of an adoc
[skip ci]
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/35b61951accd1aaa72fb55eea887242a533b3a04">35b61951</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-03-13T15:19:41-07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>desolving doc with simple command: exporting-ds-certificates.adoc
- merge the command line into referencing docs
[skip ci]
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/8f2e3807af27184f8de898074f1583a6b4013e5f">8f2e3807</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-03-13T15:26:30-07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>xref ref test into subsection using downstream style of
- [id=xyz]
[skip ci]
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/98f54712c7c82ce04c5431b6c68389b2c1d2d5bd">98f54712</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-03-13T17:23:39-07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>doc convergence: This is a test for asciidoc include
[skip ci]
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6652b230084d820ab225845a9654da3fb497836f">6652b230</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-03-13T17:30:11-07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>continue the test
remove the file name between []
[skip ci]
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/76897044a3935f21a9cea7a6c6f36aea41996d40">76897044</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-03-14T08:42:45-07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>replacing "link:" with 'xref:" for links not begin with "http"
- to allow asciidoc processor to do intelligent substitution (supposedly).
[skip ci]
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f3a04dfc754a9f154a81d89c74b3025aac518403">f3a04dfc</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-03-14T09:27:01-07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>removed test file
[skip ci]
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a29de7fc060c4cebb8c6ab5375e3d9b378e19283">a29de7fc</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-03-14T12:14:46-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Convert TPSClientCLI.formatToken() to Java
The TPSClientCLI.formatToken() has been converted into Java.
The old style method will use Java threads to call the native
code that performs the actual operation. The new style method
is still implemented in C++ and might be converted into Java
in the future. The RA_Client::OpConnUpdate() has been moved
into tpsclient.cpp.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/8aa58a7200ffb882d9a492838925d6b20b02fa6f">8aa58a72</a></strong>
<div>
<span> by Jack Magne </span> <i> at 2025-03-14T15:02:46-07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix RHCS-5701:
Fix Bug 2352409 - Default signing algorithm dropdown is empty in pkiconsole and java NullPointerException error is thrown.
Fixed by removing the unneeded serial number management panel.
Change-Id: Ie3536d30c5feade350b4ccd25f55ce05bb77655e
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/84ab3d4304990a16397ffc40cd50c0a0a44e625a">84ab3d43</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-03-17T10:28:40-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Convert TPSClientCLI.resetPIN() to Java
The TPSClientCLI.resetPIN() has been converted into Java. The
old style method will use Java threads to call the native code
that performs the actual operation. The new style method is
still implemented in C++ and might be converted into Java in
the future. The RA_Client::OpConnResetPin() has been moved
into tpsclient.cpp.
The basic TPS test has been updated to perform PIN reset.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/af53298c3680035cd820c55c87be5201e8e3a108">af53298c</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-03-17T18:00:44-07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Renaming enabling-ssl-connection-in-ds.adoc to getting-ds-cert-issued-by-actual-ca.adoc so that it fits in the downstream post-install section more nicely.
[skip ci]
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/353f16a2c097caf4c0e4a1c2c8a0758532ec5e1d">353f16a2</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-03-18T09:44:03-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>squashing pki-ldap-tree.adoc into creating-ds-instance.adoc
[skip ci]
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/42d61a94f4c985bc735d117b3e5eac534c89ee51">42d61a94</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-03-18T10:26:09-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Convert TPSClientCLI.enrollToken() to Java
The TPSClientCLI.enrollToken() has been converted into Java.
The old style method will use Java threads to call the native
code that performs the actual operation. The new style method
is still implemented in C++ and might be converted into Java
in the future. The RA_Client::OpConnEnroll() has been moved
into tpsclient.cpp.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d6e696fa89b95b5213844f684a1a37250d750091">d6e696fa</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-03-18T16:53:08-07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>misc adjustments in pki/docs/installation, including:
- removing the word "temporary" for the DS bootstrap certs
- adding dc=est to pki ldap tree
[skip ci]
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e681a786de6301d26398e54bc03c7f0aee8c19a3">e681a786</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-03-18T20:14:37-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update pki nss-cert-request
The pki nss-cert-request has been updated to provide options
to create a temporary, sensitive, or extractable key.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/bcce1af11162c6d74ec2e995d6e2f26f87724202">bcce1af1</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-03-19T09:43:58+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix EST csr match condition
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/7d4f27e73bdfe25eed9af41f1db7b2591e7858c9">7d4f27e7</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-03-19T09:43:58+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add EST reenroll test with different CSR
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d97e1cb0144bcda5a289436cf9b73cee4369418a">d97e1cb0</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-03-19T14:25:33-07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>under pki/docs/installation, replace calls to
pki client-cert-import ...
with
pki nss-cert-import ...
[skip ci]
more
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/9d3a4ab79106f337cc81898a63fffb94252d5588">9d3a4ab7</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-03-19T15:33:53-07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>under pki/docs/installation
- remove all pki client-init calls
[skip ci]
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/5e676faada603a25b25abc7381722b402a3f9b78">5e676faa</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-03-19T15:51:04-07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>under pki/docs/installation,
- replace the "To use the admin certificate ..." line
[skip ci]
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a0fed4317e7a9dd740b1d296c7aa0be00c3f8f22">a0fed431</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-03-19T15:59:43-07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>under pki/docs/installation,
- replace the import admin cert and key intro line
[skip ci]
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c4f946695520586bb7f8273a473f58b880d567ae">c4f94669</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-03-19T16:13:14-07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>under pki/docs/installation
- remove more pki client-init calls
[skip ci]
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f2a83d54e0a9ffe5072f964b960de5b44baa3313">f2a83d54</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-03-19T16:18:27-07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>under pki/docs/installation, replace
- Import admin key and certificate:
- with
- Import admin certificate and key into the client NSS database (by default ~/.dogtag/nssdb) with the following command:
[skip ci]
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/1a2b26b641d37f74019156485c6b12b2c8523bac">1a2b26b6</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-03-19T21:20:42-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Rename CertUtil.unwrapPKCS10() into unwrapCSR()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b6e4a298b48931e805f26973c024b1f3f889bcbc">b6e4a298</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-03-19T21:20:42-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add CertUtil.encodeCRMF()
The code that converts CRMF request into PEM format in
CRMFPopClient has been moved into CertUtil.encodeCRMF().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/84a6d014df8c9bc432ee83bcda821099dfa2cea0">84a6d014</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-03-19T21:28:07-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update CACertClient.submitRequest()
The CACertClient.submitRequest() has been updated to mimic
CRMFPopClient.submitRequest().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/7bc402c18255ab45a9bf9b333408368a6946b641">7bc402c1</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-03-20T11:23:12-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix deprecation warning in pki ca-cert-request-submit
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/5978683ecbfd075f69253135f292791c09ade51f">5978683e</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-03-21T10:59:23-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update pki nss-cert-request to support CRMF
The pki nss-cert-request has been updated to support creating
a CRMF request and storing it into a file. In the future this
command might replace pki client-cert-request which submits
the request immediately to the CA.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/9f3418cee9e1368fc96d0a60bb0f557674e8b11f">9f3418ce</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-03-21T10:59:23-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update pki ca-cert-request-submit to support CRMF
The pki ca-cert-request-submit has been updated to support
submitting an existing CRMF request in PEM or DER format.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/0e1c0255a65e4fa29b31922b65a560dbeb0c5e14">0e1c0255</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-03-21T10:59:23-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update KRA tests
Some KRA tests have been updated to create the CRMF request
using pki nss-cert-request so that the request can be stored
into a file for further inspection, then submit the request
using pki ca-cert-request-submit.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/26d5bf7975c68647d2312687b27f91e59103e844">26d5bf79</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-03-21T14:11:21-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update pki ca-cert-issue to support CRMF
The pki ca-cert-issue has been modified to support submitting
an existing CRMF request, approving the request, and retrieving
the issued cert in one step.
Some KRA tests have been simplified using this command.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/5d4af88bbe648fd5f30e20bd0db9588c2145bed7">5d4af88b</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-03-21T13:46:18-07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remmove "_{context}" in adoc id under pki/docs/installation/
- based on the latest changes in upstream rhcs-docs, "_{context}"
needs to be removed from the file id
[sip ci]
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/811d9bbebeb27c14468df7d6a5691a81a0cc0bc0">811d9bbe</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-03-21T22:14:26-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update IPA tests to check pkispawn and pkidestroy logs
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d8e468e874fb28e51f319cafc2c755e57392b431">d8e468e8</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-03-24T09:04:52-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update KeyClient.list_requests() and list_keys() to support REST API v2
The KeyClient.list_requests() and list_keys() have been modified
to use the PKIClient object to determine the proper path of the
REST API.
The KeyClient.__init__() has also been modified so that it can
be called without the crypto object and transport cert nickname.
These parameters are only needed for key archival/retrieval.
The Python test for KRA has been modified to test these methods
with REST API v1 and v2.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/1d752a87ab9a898a30cd9b00f4ca15d50baf4bac">1d752a87</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-03-24T17:27:48-07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>fixed xref from old md files to new adoc files
[skip ci]
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/983e7a7616a5d9265d27968876fe4ca8ff1c33ea">983e7a76</a></strong>
<div>
<span> by MichalTravnicek </span> <i> at 2025-03-25T14:03:54+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update pki.spec</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/291791c8378d03ece348c3a1cbc9d147f4eb3610">291791c8</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-03-25T11:10:20-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix missing error messages
Previously when a failure happened in the Python code in some
cases the error message was missing which made it difficult to
troubleshoot the problem.
To simplify troubleshooting some of the Python code has been
updated to capture only the stdout and let the stderr appear
on the console so that it can be seen by the user.
The PKISubsystem.run() has been modified to provide stdout and
stderr params so they can be configured separately.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a242c13bb6037b2e3fa37a3b6d808bbaa0d98e89">a242c13b</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-03-25T15:21:43-07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Misc update to make it compatible with downstream docs once imported
[skip ci]
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/8e27e968ea37f8d862babe48dad27402886461fb">8e27e968</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-03-25T16:39:13-07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>downstream import processing:
one small change for single line for script processing
[skip ci]
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d1d4be6489d95a47647585cc49d0d0ee20b416d7">d1d4be64</a></strong>
<div>
<span> by Michal Travnicek </span> <i> at 2025-03-26T15:58:24+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>CASigningUnit hexstring serial number
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/04fe7ef1842c7a4280fd98bcf87d860960291857">04fe7ef1</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-03-26T16:36:02-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Do not set up VLV by default
A new pki_ds_setup_vlv param has been added for pkispawn to add
and rebuild VLV indexes during installation. The default is set
to False and the CI tests have also been updated to no longer
set up the VLV indexes. So far there seems to be no issues in
the CI.
Disabling VLV will help identify any remaining VLV dependencies
so they can be removed. If this turns out to be causing many
issues for QE or IPA the default can be changed temporarily, but
eventually VLV should be disabled by default.
The PKIDeployer.setup_database() has been modified to set up the
regular search indexes in all cases, but set up the VLV indexes
only if pki_ds_setup_vlv is set to True.
The pki_clone_reindex_data param is no longer used so it has
been removed.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6edb63b39b812220f0b1234a572e4f0b581d73b1">6edb63b3</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-03-26T16:47:18-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update log messages in PKIServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c48a536dc45d58ddf92dc5df0290fec3d991e823">c48a536d</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-03-26T16:47:18-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update log messages in AgentCertRequestServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6037117200edd4d5e723edd2d4e28a6ea45601c8">60371172</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-03-26T16:47:18-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update log messages in DBSearchResults
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a9ce9a72b53641d3d7e591c2d74c60025adacf40">a9ce9a72</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-03-26T17:57:31-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update pki *-find commands
The pki *-find commands have been updated to show the total
number of matching entries only if it's provided by the
server.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/472fe4bb22428bb2fd24d26e73a0dd1f55c26b86">472fe4bb</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-03-27T09:00:49-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add test for paging parameters
The test for CA with SSNv2 has been updated to find cert requests
and certs using paging parameters. For cert requests the --start
param is used differently depending on the REST API version so
there is a separate test for each version. For certs the --start
param is used more consistently so there is only one test.
The pki ca-cert-request-find command has been modified to send
the --start param to the server as is so that it can be parsed
according to the REST API version.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/593c80139dbea47325ceec3ac2243bd36552ac9e">593c8013</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-03-27T09:39:24-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up pki pkcs12-export output
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a79d5b88e5b29c031b4724748ef0678f8c542e14">a79d5b88</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-03-27T09:49:12-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up log messages in pki ca-cert-create
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/77b8c50a6fa885014b534477090f2b9162c08bdf">77b8c50a</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-03-27T14:41:44-07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fixed issue where comment lines were between the 'id' line and the subject header line that it's supposed to anchor. Solution was to move the comments to after the subjet header.
[skip ci]
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ab43c5e9a2fa7396208c6d830dd99312ff16bc3a">ab43c5e9</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-03-28T10:48:52-07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Renamed ServerSideKeygen-related files for upstream->downstream convergence:
- ServerSideKeygen.adoc -> configuration-for-server-side-keygen.adoc
- Server-SideKeygenEnroll_approval.png -> server-side_keygen_enroll_approval.png
- Server-SideKeygenEnroll_manual.png -> server-side_keygen_enroll_manual.png
- Server-SideKeygen_LDAP_auth.png -> server-side_keygen_ldap_auth.png
[skip ci]
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/743cf876dc9a98953e58a841e98434e8c3714153">743cf876</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-03-28T14:05:37-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update KeyClient.modify_key_status() to support REST API v2
A new test has been added to modify the status of a key using
KeyClient.modify_key_status(). The basic KRA test has also
been modified to perform the same test using pki kra-key-mod.
The pki kra-key-find and pki kra-key-mod have been modified
to no longer show the public key data. The pki kra-key-show
will continue to show the public key data.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ee30e47d7da620943b46923746a6a4b8ef642b86">ee30e47d</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-03-28T14:06:04-07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>getting installing-ca-with-external-ca-signing-certificate.adoc ready to replace the section: 7.5. Setting up subsystems with an external CA in downstream install guide
[skip ci]
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ae6e1a26201e6e221703d641979e7efb7a4ad4d5">ae6e1a26</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-03-28T21:14:54-07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>As it turns out, standalone KRA and OCSP are described in the downstream Installation guide secton 7.6. Setting up a standalone KRA or OCSP.
This patch is to update the upstream docs so that they can be officially included in the Upstream->downstream doc convergence include list and processed properly for import to replace that section.
[skip ci]
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c53964047b2685c8abf96716cdaaa04dc133e0dc">c5396404</a></strong>
<div>
<span> by Louise McGarry </span> <i> at 2025-03-31T11:57:12-07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Updates to align with docs standards
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/50c0ce03cad77f5a109193950e972c99c20c8471">50c0ce03</a></strong>
<div>
<span> by Louise McGarry </span> <i> at 2025-03-31T11:57:12-07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Reviewed est files to align with doc requirements
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b0f444e481238fceb118c5b7f3a28537a92c9d93">b0f444e4</a></strong>
<div>
<span> by Louise McGarry </span> <i> at 2025-03-31T11:57:12-07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fixes in line with feedback
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6b968f5b04569f816e94efcf188d9bd4342a029e">6b968f5b</a></strong>
<div>
<span> by Louise McGarry </span> <i> at 2025-03-31T11:57:12-07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fixed formatting for consistency
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/7ed53c1e0da741423df57cf11ecc3afd5f930d06">7ed53c1e</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-03-31T13:51:22-07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>fixed issue introduced by the comment between id line and the header line by moving it below the header
[skip ci]
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f4db82903b1221799cfe8b8bda9462425dc57139">f4db8290</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-03-31T15:19:57-07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>fixed unpaird blocks ---
[skip ci]
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e95213df830d288adc2b971aecfa905f0922f0aa">e95213df</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-04-01T09:17:59-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update KeyClient to support archieval/retrieval with REST API v2
The KeyClient.submit_request() and retrieve_key_data() have been
updated to use the proper URL for the REST API version.
The CryptographyCryptoProvider's constructor has been updated
such that the transport cert nickname is optional.
The KeyRequestProcessor.archiveKey() has been updated to use the
same condition as in KeyRequestService.archiveKey() to validate
the key algorithm for symmetric key.
The basic KRA test has been updated to archive a secret then
retrieve it using pki CLI.
The KRA Python API test has been updated to archive a secret
then retrieve it using the updated Python API.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e6f29a63bf99d56eadc1165e1918f5de6eefe3ac">e6f29a63</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-04-01T14:01:42-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Rename Authority to AuthorityRepository
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/42b8d8e30f642b62a6d3ad13ab8431db95343c32">42b8d8e3</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-04-01T14:24:10-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move AuthorityRepository instance to CAEngine
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/2e247d852fa9de00f78cf18843a807a0e7e6be95">2e247d85</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-04-01T16:41:55-07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Revert "defer moving these user tool pages from wiki."
This reverts commit 4dc3e8c8f103a665a2b04e5ed93f12987b07fac6.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/5440adafc825fc7da71d14075b899ffe6899d671">5440adaf</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-04-01T21:21:37-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move CAEngine.getAuthorityRecord() to AuthorityRepository
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/13ac667c0c89510dd0fdd4608e9a50af3deae87c">13ac667c</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-04-01T21:21:37-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move CAEngine.addAuthorityRecord() to AuthorityRepository
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/9bd2cd47911630651010e33216648b7beacebe42">9bd2cd47</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-04-01T21:21:37-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move CAEngine.modifyAuthorityEntry() to AuthorityRepository
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/3a83b40bbaed0c6f41095a923e950cb76c0ea03f">3a83b40b</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-04-01T21:21:37-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add AuthorityRepository.deleteAuthorityRecord()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/2e128be1c579bed7b70f43a8e227086aa680936d">2e128be1</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-04-02T08:45:25-07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>replace past tense with present tense to conform to downstream conventions.
[skip ci]
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/923194ae56b1c01444d202ec5d35a6a69e51bbe3">923194ae</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-04-02T17:59:50+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix doc typos
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/76552846a9ee80cd67e2750258ef9741fb7b84c1">76552846</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-04-02T11:06:04-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move CAEngine.haveAuthorityContainer() to AuthorityRepository
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ce751a16afdd7c0b4dc4fe7ae87183f13d3d3ab7">ce751a16</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-04-02T11:06:04-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Disable access log buffer in IPA tests
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/40fbe826f8d14abba9a7c1219e7cf3af59e62aa3">40fbe826</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-04-02T11:06:04-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Drop KeyClient.key_url and key_requests_url
The remaining methods in KeyClient have been updated to use the
proper URL for the REST API version.
The key_url and key_requests_url attributes are no longer used
so they have been removed.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/84058d5b29fd0d0b3ab40107eb9009c96cc7a657">84058d5b</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-04-02T16:58:51-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move CAEngine.updateAuthoritySerialNumber() to AuthorityRepository
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/4969885092f4dbf5c1c21ca97077c5f082eb8cdf">49698850</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-04-02T18:42:38-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update LWCA tests
The LWCA tests have been updated to check the host CA's LDAP
entry before running pki ca-authority-find.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/4e33832e77f01f6ddf8adde1ecb7e6b7832ce627">4e33832e</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-04-03T08:57:17-07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>fixed downstream build issue on formatting reported by writer
[skip ci]
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b0ed9f25b236374d25358631ddc1527e59bac965">b0ed9f25</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-04-03T19:53:46+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Modify default CA OCSP response to use Key hash instead of name
Default CA OCSP responder provide subject names in the reponse to
identify the reponder ID but this has some problems when the setup
include SubCA with their own OCSP have certificate with the same
subject. Moving to the ID should solve the problem.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c79076b19156d3ff97cface3c139697f3bc474e7">c79076b1</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-04-03T19:53:46+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix KeyHash for CA OCSP Responder ID
OCSP specification [1] requires the Key hash computed from the public
key without additional tags. It was computed from the encoded key which
include extra information and cannot be identified.
This commit fix how the key hash is generated.
1. https://datatracker.ietf.org/doc/html/rfc6960#section-4.2.1
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/2170cfad20f16ad5f16a414f22bc3c5821e36fda">2170cfad</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-04-03T19:53:46+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add CI test for RootOCSP in SubCA scenario
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b0ec8cca44429f6f10fc3ad3b8fd43213317334f">b0ec8cca</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-04-03T19:53:46+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Upgrade script for internal OCSP ResponderID configuration
Default value for ResponderID has been update from Subject Name to Key
hash but running systems will keep their configuration making it
explicit.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/908e15919421e5c151fb8cd71c95f9c11ca300b0">908e1591</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-04-03T19:53:46+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update doc change for CA internal OCSP
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/16b6f8d472626ad9ef7a72339649da8fa78ddb24">16b6f8d4</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-04-03T19:53:46+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Modify default ResponderID in OCSP
The OCSP responses from OCSP responder changes the default from
ResponderID from Subject name to Key hash.
This change has been already done in the CA internal OCSP to limit
problems with repeated name in some complex scenarios.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f53bcc4c8cc3c022b36d8d4293ab7cd3ed5f087b">f53bcc4c</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-04-03T19:53:46+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update doc for OCSP ResponderID default change
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ba6d54a0822395c8146a462bccade9f9f5422d77">ba6d54a0</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-04-03T14:49:58-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Refactor AuthorityRepository.findCAs()
Currently the AuthorityRepository.findCAs() gets the authority
data from the CA objects in the CA engine. The AuthorityMonitor
creates a CA object for each authority record in LDAP, so it
might not scale well with large database and might be expensive
to run in cloud.
To address the issue, the AuthorityRepository.findCAs() has been
modified to get the data from the authority records directly. For
now it still uses the CA object to get some additional info, but
in the future it might be possible to store those info in LDAP as
well.
The AuthorityService.findCAs() has been modified to use the
AuthorityRepository.findCAs().
The AuthorityServlet.findCAs() has been modified to no longer
catch the exception and throw a BadRequestException since the
exception might not necessarily be a client issue.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/1d927c39bd4662d05fced7aa0da58708b77d7b21">1d927c39</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-04-04T10:48:52-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Refactor AuthorityRepository.getCA()
The AuthorityRepository.getCA() has been modified to get the
authority data from the authority record directly. For now it
still uses the CA object to get some additional info, but in
the future it might be possible to store those info in LDAP as
well.
The AuthorityRepository.readAuthorityData() has been modified
to get the issuer DN from the CA cert to match the original
behavior of the code.
The AuthorityService.getCA() has been modified to use the
AuthorityRepository.getCA().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/8bc2de43de631415d12e5f990fd8ff1a3f63dc63">8bc2de43</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-04-04T09:12:49-07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Comment out lines imcompatible with downstream doc build
[skip ci]
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/9a477004b741d06935e42b1d6dbbc1d1d3d93901">9a477004</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-04-07T10:01:02+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Make PKIConnection default to non blocking
The PKIConnection is now using NonBlocckingSocketFactory as default to
create a socket. The non bloking socket is built in JSSSocket.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/1f499cfacfa07200f40bbab1c4be7a1212946e2a">1f499cfa</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-04-07T10:01:02+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Installation steps has to ignore revoked certificate
During pkispawn some client command could fails because the revocation
cannot be verified since the server is down. These cases have to be
ignored.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/25f09bf96b761fcc83d032d610237e4a7ef89c98">25f09bf9</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-04-07T10:01:02+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Make client OCSP check optional
With JSSSocket in the client it is possible to enable OCSP check for the
certificate. If not specified it is enabled for all clients operation
but it is disabled for all the client commands executed by the server.
There are several scenarios where the check are failing because of the
presence of other OCSP certificates. This is the case of SubCAs. For
this reason it is disabled at the moment but can be disabled.
An option could be to enable and making OCSP using KeyHash using the
param ca.byName.
To disable revocation check from pki cli it has been introduced the
option `--skip-revocation-check`.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/979364ed7748a01a4773a8bf0152f18653d68ff4">979364ed</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-04-07T10:01:02+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Make optional OCSP check in CA running as client
When CA is running client operation there is no revocation check on
certificates. This can be enabled with the option in CS.cfg:
ca.clientRevocationCheck=true
The opetion can be enabled with pkispawn using the CA configuration:
pki_client_verify_cert=True
The default value is false
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/3d79d8acfeda73222f326dd9954131a5971ca555">3d79d8ac</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-04-07T10:01:02+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update v11.7 for OCSP in client commands
Since clients are moving to JSS which perform OCSP check by default
there are situation where these need to be disabled.
New option in pkispan and pki command have been added and here documented.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/5829e0417f85e2a7a88013903e52d69cc8909598">5829e041</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-04-07T10:01:02+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update CI for JSSSocket in pki CLI
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/99ac7de61a72a9894f2d1dd385ddfdc220606dd5">99ac7de6</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-04-07T10:01:02+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix network alias for IPA CI
IPA assign AIA to a dedicated host, named "ipa-ca", as described in
https://pagure.io/freeipa/issue/8595.
The host ipa-ca has to be an alias for the hostname to allow AIA to work
properly.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/80cca90a130127a4f2bf9aa52f18a6411ff6139c">80cca90a</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-04-07T10:01:02+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move clientRevocationCheck to KRA connector
The clientRevocationCheck is used only with KRA connector so it has been
moved to the connector configuration and renamed as "ca.connector.KRA.certRevocationCheck".
Additionally, the pkispawn parameter "pki_client_verify_cert" has been
renamed as "pki_kra_connector_verify_cert".
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/896cebce41429e20238bd2de037c438443707d44">896cebce</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-04-07T10:01:02+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update doc for name change in clientRevocationCheck
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b760ed92da484427e11a0b4f056dd8d05d90478a">b760ed92</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-04-07T12:00:59-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Refactor AuthorityRepository.findAuthorityRecords()
The AuthorityRepository.findAuthorityRecords() has been updated
to construct an LDAP search filter from authority ID, authority
DN, parent ID, and parent DN if provided.
The AuthorityRepository.findCAs() has been updated to provide the
search params to findAuthorityRecords() instead of filtering out
the search results afterwards.
The CAEngine.getCA() has been updated to get the authority record
using the findAuthorityRecords() then call another getCA() with
the authority ID to get the CertificateAuthority object.
The CAEngine.deleteAuthority() has been updated to determine
whether the authority to be deleted has any descendant using the
findAuthorityRecords().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/3550611305dfca8172048f281625b0a10dc569b3">35506113</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-04-08T10:27:09+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Replace httpclient deprecated code
PKI client connection are based on "DefaultHttpClient" and
"SchemeLayeredSocketFactory" but these classes have been deprecated and will
be removed so the code is updated to use their replacement.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d1afecff4f265fd62d34a594f95eb3960520ccfc">d1afecff</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-04-08T09:22:22-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Refactor CAEngine.validate()
The CAEngine.validate() has been updated to get the cert record
using the cert serial number from the OCSP request, then find the
authority records that might have issued the cert using the cert
issuer name, then finally validate the request against the CA
object that matches the hash value from the request.
The CAEngine.getCAs() is no longer used so it has been removed.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6457aa6f8829d3cd776e470b450d6df96236fcf9">6457aa6f</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-04-08T12:38:47-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update test for CA clone with HSM
The test for CA clone with HSM has been updated to use a shared
HSM container connected to all CA replicas using p11-kit module
over SSH connection. Certs/keys created in HSM will be available
to all CA replicas immediately, so they don't need to be exported
from the HSM and transferred into other replicas (which might not
be possible in real deployments).
Currently the SSH client needs to be set up for both the root
user and pkiuser since pkispawn is executing HSM operations as
both users. Ideally everything should be done by pkiuser. This
will be addressed separately later.
https://p11-glue.github.io/p11-glue/p11-kit/manual/pkcs11-conf.html
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/0739167a32eadb9389d80d10bd8f610e669fc1bc">0739167a</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-04-08T17:20:24-07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>moved dogtagpki-docs-convention-readme.adoc and update with more clarification. Also pushing the current "include" lists.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/32e71d7f9630244ed9b2e8555485c2dd401c2e4e">32e71d7f</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-04-09T10:39:23+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Using apache http basic authentication
The basic authentication is moved from resteasy filter to http
connection property.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/0ad39b9e085009d5c4ad5d1a034385a13109a580">0ad39b9e</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-04-09T10:02:08-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add test for LWCA clone with HSM
A new test has been added to create two CA replicas with a
shared HSM, create an LWCA in one, enroll certs in both, then
remove the LWCA from the other one. Since the HSM is shared
the LWCA can be used immediately on any replica without having
to transfer the signing key.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/32e0f4db75cf106077ddc657c486474612f030de">32e0f4db</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-04-09T14:34:34-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Refactor RequestInQListener (part 1)
The CA-specific code in RequestInQListener has been moved into
CARequestInQListener.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e681dd26d44fca3b2935f8112a2ea61a2a63b669">e681dd26</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-04-09T14:34:41-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Refactor RequestInQListener (part 2)
The RequestInQListener has been moved into pki-server.jar so
that it can be used by KRA.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/5008005a87781d1c3c6a1a83b2af8ceebd3ebbe4">5008005a</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-04-09T14:51:21-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Refactor CMSEngine.loadSubsystems()
The code in CMSEngine.loadSubsystems() that creates the subsystem
object has been moved into CMSEngine.createSubsystem().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/1198568cf3a26d1206f30744fc868ed8b3e0dd99">1198568c</a></strong>
<div>
<span> by Rob Crittenden </span> <i> at 2025-04-10T09:47:23+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add issuer_dn to the CertDataInfo
This is needed by IPA for its cert-find command for backwards
compatibility.
Signed-off-by: Rob Crittenden <rcritten@redhat.com>
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/95a0672cb78fb9de289b3b3650830c3855b23fce">95a0672c</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-04-10T13:01:20-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove redundant type casts
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ad6cd7557f3d99b97a8d87f82255bd5f3588e7bf">ad6cd755</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-04-10T13:01:20-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move PinRemovalListener to pki-ca.jar
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/4ad2e4b2a2d1751206aae7fb396a04e10c597781">4ad2e4b2</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-04-10T13:01:20-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add RequestListener.init()
A new RequestListener.init() without a Subsystem param has been
added since in most cases the param is not used.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/bc941f61a9f84ea4ee43754261f2f8a6b1544be4">bc941f61</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-04-10T13:01:20-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add KRARequestInQListener
The KRARequestInQListener has been added to provide KRA-specific
RequestInQListener.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b27dc5230bda71fdbe95670ea52dc84f4ae2665e">b27dc523</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-04-10T13:59:32-07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>update docs relating to serial number mechanism change
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/be1a59f07824772da79b544cd015880daaacd184">be1a59f0</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-04-10T18:04:18-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update CRLPublisher.init()
The CRLPublisher.init() has been updated to no longer take a
Subsystem param. If necessary, the Subsystem can be obtained
from the CAEngine.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/8965e8b40c07527658321ca3991c54dc469b1a9b">8965e8b4</a></strong>
<div>
<span> by Michal Travnicek </span> <i> at 2025-04-11T17:03:52+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix empty parameter in CLI
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6185addf2ce050f7f67192b983a3bd3d0765b881">6185addf</a></strong>
<div>
<span> by Michal Travnicek </span> <i> at 2025-04-11T17:03:52+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Revert removing blank arguments in nssdb.py
Block blank nicknames in adding subsystem_certs
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/cbd7c22b27395eecaec969810e6f640b4cc182a8">cbd7c22b</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-04-11T18:03:05+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix CLI debug
With the update in httpclient the response object is not a
BasicHttpResponse instance so the output was not printed when executed
in debug mode.
Since the entity operation are provided in the HttpResponse interface
there is no need to identify the real instance class.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/233a282d930aa528b8efed34c8036ca7dac7a072">233a282d</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-04-11T18:03:05+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Converting a CLI HTTP GET to httpclient
PKIClient implement several GET operations. One of these operation is
converted from RESTEasy client to apache httpcomponent-client to verify
the implementation.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/dbe4ee4752efbe3097e4fa8c9e3400a65e598149">dbe4ee47</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-04-11T18:03:05+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix error handling for httpcomponent client connections
The reported exception is the exception associated with the problem and
it contains the error reason only if provided by the server.
The previous code was using a generic PKIException with error code
provided by resteasy which will have a default message.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/92e189099c0525c558048dbd183d581bdfcb1c5f">92e18909</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-04-11T18:03:05+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update exception message in CI for the httpclient connections
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f6cc5d8b4f54a42517bebe41d51606f8fe4b105c">f6cc5d8b</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-04-11T18:03:05+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add dedicated exception for client connection problem
The new ClientConnectionException replace the ProcessingException
provided by RESTeasy library.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/0a752706dd531691b826cbd6aba7fd586a32e793">0a752706</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-04-11T11:05:11-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Refactor CAEngine.createCA()
The CAEngine.createCA() has been modified such that it calla
createAuthorityRecord() to create the AuthorityRecord with the
signing cert then calls another createCA() to create the CA
object.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/512939598bb45eb078829b7d2b5209e8daeb3900">51293959</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-04-11T18:40:41-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update log messages in CAEngine
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/da22ae0abccca85c8649050523fb3c6069e8aa26">da22ae0a</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-04-11T18:40:41-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update log messages in SigningUnit
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e9b011b6f9a931f357bb71551a8f97d57fe027ba">e9b011b6</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-04-11T18:40:41-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update log messages in OCSPServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d49e7fbbd5b642b6d0b25d434a39b1a1558c340f">d49e7fbb</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-04-14T18:26:02+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Implement client GET collections with httpclient
Collections have no explicit mapping so they require additional steps
for their serialisation.
Note: XML message are not generated from the server for a bug so the
client to handle them has not been implemented.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a3d6e3ac5adb4af1bd46bd60a193b317e07d0983">a3d6e3ac</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-04-14T15:49:04-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update AuthorityRepository.createCA()
The AuthorityRepository.createCA() has been modified to create
just the authority record and the signing cert, but the CA object
will only be created later by the AuthorityMonitor when it detects
the new authority record in DS.
The AuthorityService.createCA() has been updated to call
AuthorityRepository.createCA() as well.
The CAEngine.createCA() is no longer used so it has been removed.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/24730f9fc308820ac45e2881f4178948d516e7cc">24730f9f</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-04-15T09:47:13+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Implement client DELETE with httpclient
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/7755f5e59fa8308b0d4f69d0ecb38531197d294b">7755f5e5</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-04-15T09:47:13+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Implement client POST,PUT and PATCH with httpclient
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/fbf64d6084bdbe14a6bc8211338f7f4edd0dd820">fbf64d60</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-04-15T10:41:51+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Replace erroneous resteasy MediaType from v2 servlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/efe8cf4a40a92a08e75f12469e74bbe4a1bd99b6">efe8cf4a</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-04-15T10:47:40+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Replace erroneous resteasy exception from v2 servlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/1cd6d36e0bf3742e7d3d8080d215357d04386bd7">1cd6d36e</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-04-15T09:50:57-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update CertClient.list_requests() to support REST API v2
The CertClient.list_requests() has been updated to use the proper
URL for the REST API version.
The CA Python API tests have been updated to list cert requests
using the updated Python API.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/465edf1ec519a976189b5409e9a9ccdbc55551cb">465edf1e</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-04-15T14:19:06-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move AuthorityMonitor.authorities into CAEngine
The authorities map in AuthorityMonitor has been moved into
CAEngine and can only be accessed through synchronized methods
to avoid race conditions. Later there might be additional fields
that will be moved from AuthorityMonitor to CAEngine as well.
The CAEngine.getCA() has been modified to look for the requested
CA object in the map. If the CA object doesn't exist it will be
loaded from the database and stored in the map.
The code in AuthorityMonitor.addCA() and remove() that updates
the authorities map has been moved into CAEngine as well.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d3144444d54fef619993670d21bfbb594c184005">d3144444</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-04-15T14:42:26-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add AuthorityMonitor.init()
The code that initializes the AuthorityMonitor in CAEngine has
been moved into AuthorityMonitor.init().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ae26d934b1005a49944be8d0bc5a5bec23764033">ae26d934</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-04-16T09:22:13-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move CryptoUtil.parseCRMFMsgs() to CRMFUtil
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/2c7413e48246f0a5691e5996cbac9dbf64e63bea">2c7413e4</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-04-16T09:35:27-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move CertUtil.parseCRMF() to CRMFUtil
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/08c8d87e1cede5c163e48c746df754a57047c36b">08c8d87e</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-04-16T09:35:27-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move CertUtil.encodeCRMF() to CRMFUtil
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/1a739bc52ca1b8d7f6677897c73deb03431cb474">1a739bc5</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-04-16T09:35:27-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move CryptoUtil.getX509KeyFromCRMFMsg() to CRMFUtil
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/9cf32f78be6ca20428998028dcf210b54f983e0c">9cf32f78</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-04-16T09:35:27-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move CryptoUtil.getX509KeyFromCRMFMsgs() to CRMFUtil
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b6cd7c7583d8beb3098c1f9627790f6bb382dafc">b6cd7c75</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-04-16T09:35:27-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move CryptoUtil.getSubjectName() to CRMFUtil
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/0729dd7ab3a80e1a1f3e86854cbcde2ce7bd729c">0729dd7a</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-04-16T09:40:29-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move CryptoUtil.getExtensionFromCertTemplate() to CRMFUtil
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/311edc81b040cd792651eb38af5d713d0eafa207">311edc81</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-04-16T09:40:29-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move CryptoUtil.createCertTemplate() to CRMFUtil
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ff4e55fc3c83512e7230fc824b53f796420e789f">ff4e55fc</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-04-16T09:44:52-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move CryptoUtil.createCertRequest() to CRMFUtil
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b0f67bbf13604d3b614160e29abec6f35b2764db">b0f67bbf</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-04-16T09:49:37-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move CryptoUtil.createPop() to CRMFUtil
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/8b5219516453cd04db2c2191614f46e2e54bac10">8b521951</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-04-16T09:51:28-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move CryptoUtil.createCRMFRequest() to CRMFUtil
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/850a5beca255929c7926d0f998d0648b7cb590d8">850a5bec</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-04-16T10:54:20-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove resteasy MediaType from PKIClient
The MediaType class in PKI has been renamed to MimeType since it
contains only MimeTypes.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a836ff5ea246bb851ae866f41c435d05329015fb">a836ff5e</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-04-16T18:10:11-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up CRMFUtil.getExtensionFromCertTemplate()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/4282b97b2e4bf01d96cd17d2373e7fdd6f269e35">4282b97b</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-04-17T10:29:50-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Refactor CRMFUtil.encodeCRMF()
The CRMFUtil.encodeCRMF() has been updated to take a sequence
of CRMF messages.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/01d3c841854cf84b654b90af24fbd53def66e848">01d3c841</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-04-17T10:29:51-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Refactor CRMFUtil.createCRMFRequest()
The CRMFUtil.createCRMFRequest() has been updated to return a
sequence of CRMF messages.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/7be3c544e364553dd56723390dec5e0402fe97f2">7be3c544</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-04-17T10:29:51-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Refactor CRMFUtil.createCertRequest()
The CRMFUtil.createCertRequest() has been updated to take a list
of extensions.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/1d669d73c2bfbc9de1bc5459b2180e783f2c7b9a">1d669d73</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-04-17T10:29:53-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Refactor NSSDatabase.createCRMFRequest()
The NSSDatabase.createCRMFRequest() has been updated to take
a list of extensions.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/367e3271dea86395d520e03c3c368589b8e98ce1">367e3271</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-04-17T12:18:58-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Refactor NSSDatabase.createCertificate()
The NSSDatabase.createCertificate() has been updated to take
a public key and a subject name.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/bdfa9d686a54797ac376215afca1c8ee2ddccbb4">bdfa9d68</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-04-17T12:21:36-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add CRMFUtil.getSANExtension()
The CRMFUtil.getSANExtension() has been added to find a SAN
extension from a CRMF request.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/86dbd473d559e57d16d8b81f43cbc61735136399">86dbd473</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-04-17T12:21:36-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update KRA container test
The test for KRA container has been updated to enroll a server
cert.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/391d420a57668a87bf98bb148a7b2ce781c95c3e">391d420a</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-04-17T16:49:32-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Convert RA_Client::OpConnStart() to Java
The formatToken(), resetPIN(), and enrollToken() in TPSClientCLI
have been updated to support running multiple operations using
multiple threads.
The original RA_Client::OpConnStart() has been moved into
tpsclient.cpp.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b62aaa0d4666a2734e1e2eb62260f54f8fdf94f1">b62aaa0d</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-04-17T18:03:30-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Refactor ThreadConnUpdate()
The code that formats the token has been moved into FormatToken().
The remaining code in ThreadConnUpdate() has been moved into
tpsclient.cpp.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f2f890f8dcef407485965dbaa17c2cb6413ee7c5">f2f890f8</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-04-17T18:03:30-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Refactor ThreadConnResetPin()
The code that resets the PIN in ThreadConnResetPin() has been
moved into ResetPIN(). The remaining code in ThreadConnResetPin()
has been moved into tpsclient.cpp.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e6f18001b51f8c624b80971cb8d765dec265dfb6">e6f18001</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-04-17T18:03:30-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Refactor ThreadConnEnroll()
The code that enrolls the token in ThreadConnEnroll() has been
moved into EnrollToken(). The remaining code in ThreadConnEnroll()
has been moved into tpsclient.cpp.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f564ea4dcbbaeace5eef53b3219ed5164a5bcde7">f564ea4d</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-04-17T18:15:58-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move CAEngine.initCertSigningUnit() into CertificateAuthority
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d8ded49e58431bba1a8d77a7fdbd0735483edd3b">d8ded49e</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-04-17T18:16:41-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move CAEngine.initCRLSigningUnit() into CertificateAuthority
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ce296b54697ebfad045c8c7e7e7c1878d3b97ff1">ce296b54</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-04-17T18:17:19-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move CAEngine.initOCSPSigningUnit() into CertificateAuthority
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/22bf885df1d97c87f5320b2b9168327641f62b80">22bf885d</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-04-17T18:17:20-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move CAEngine.startKeyRetriever() into CertificateAuthority
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/81ce5b42109b22e60cea4df44e46d4c3ce16330a">81ce5b42</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-04-18T10:17:25-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add connection methods in TPSClientCLI
The code that manages the connection in TPSClientCLI has been
moved into separate methods.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/72f7b11a8d0253813e20b27d8e4e0e84d4e34ad0">72f7b11a</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-04-18T10:17:29-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add token methods in TPSClientCLI
The code that manages the token in TPSClientCLI has been
moved into separate methods.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/451cc4d0202f807ea6c1005744c9adb15435143d">451cc4d0</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-04-18T10:17:34-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Use synchronous LWCA KeyRetriever
The CertificateAuthority.startKeyRetriever() has been modified
to use a synchronous KeyRetriever to ensure that the LWCA has
the signing key before it can be used.
https://github.com/dogtagpki/pki/issues/4677
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/02ddc399fc589292e23f316d6430b0a4b17212a4">02ddc399</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-04-18T12:58:18-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move CAEngine.initCA() into CertificateAuthority
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6fc69d9f7be2872469acb42dfb545c11c5d79fca">6fc69d9f</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-04-18T12:58:21-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move CAEngine.checkForNewerCert() into CertificateAuthority
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/83d5a7a2bdcba037a2ffdef06ed5b3d9fd69842e">83d5a7a2</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-04-18T15:02:04-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Rename KeyRetrieverRunner.certificateAuthority
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d46acd4044d7a22c789c13845a7efeef25271319">d46acd40</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-04-21T09:02:37-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update FormatToken(), ResetPIN(), EnrollToken()
The FormatToken(), ResetPIN(), and EnrollToken() have been
updated to take a collection of extensions.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/1b125b98bbb9617920dc2242b5491bfd57ad1513">1b125b98</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-04-21T11:17:29-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Convert TPSClientCLI.performFormatToken() to Java
The TPSClientCLI.performFormatToken() has been replaced with
performOperation() which is written in Java and calls native
methods.
The original FormatToken() has been moved to tpsclient.cpp.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/915fdc7cf3b261a974167055bc0e24a1e688afda">915fdc7c</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-04-21T11:17:29-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Convert TPSClientCLI.performResetPIN() to Java
The TPSClientCLI.performResetPIN() has been replaced with
performOperation() which is written in Java and calls native
methods.
The original ResetPIN() has been moved to tpsclient.cpp.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/3606a8ec083927ab63712164c043f313a3da3cac">3606a8ec</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-04-21T11:17:29-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Convert TPSClientCLI.performEnrollToken() to Java
The TPSClientCLI.performEnrollToken() has been replaced with
performOperation() which is written in Java and calls native
methods.
The original EnrollToken() has been moved to tpsclient.cpp.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/9121496055377e24a2bb53610ba5c567000a23a2">91214960</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-04-21T12:13:43-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Merge formatToken(), resetPIN(), enrollToken()
The formatToken(), resetPIN(), enrollToken() in TPSClientCLI
have been merged into performOperations().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/070558391ec22cfb86edfc52b7800490f096cdc0">07055839</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-04-21T12:22:53-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Refactor HandleLoginRequest()
The HandleLoginRequest() has been merged into TPSClientCLI.
The original code has been moved into tpsclient.cpp.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6209025f22d80f8ac3548bef36994b3a9d79d93b">6209025f</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-04-21T12:22:53-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Refactor HandleExtendedLoginRequest()
The HandleExtendedLoginRequest() has been merged into TPSClientCLI.
The original code has been moved into tpsclient.cpp.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/690711fb0511c508485d1984bce0695ef9df19bb">690711fb</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-04-21T12:22:53-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Refactor HandleStatusUpdateRequest()
The HandleStatusUpdateRequest() has been merged into TPSClientCLI.
The original code has been moved into tpsclient.cpp.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/93c7fc6c078baf82fbef313edd7ae30d68d6740c">93c7fc6c</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-04-21T12:22:53-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Refactor HandleSecureIdRequest()
The HandleSecureIdRequest() has been merged into TPSClientCLI.
The original code has been moved into tpsclient.cpp.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/5edd857c9e9d1aad84f2b3c44c8fc129814aaed9">5edd857c</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-04-21T12:22:53-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Refactor HandleASQRequest()
The HandleASQRequest() has been merged into TPSClientCLI.
The original code has been moved into tpsclient.cpp.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/34e2180927796ad17beff67ba80629aefc0dd2c5">34e21809</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-04-21T12:22:53-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Refactor HandleTokenPDURequest()
The HandleTokenPDURequest() has been merged into TPSClientCLI.
The original code has been moved into tpsclient.cpp.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b76f2cde70f4985219319805035e5d21b87f78c8">b76f2cde</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-04-21T12:22:53-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Refactor HandleNewPinRequest()
The HandleNewPinRequest() has been merged into TPSClientCLI.
The original code has been moved into tpsclient.cpp.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/0ccb674b7de1330fc738607ee995df529cdb0743">0ccb674b</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-04-22T11:27:06-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add Python SubsystemClient
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/fc201f2cb92b980bccdcdfcb5d410391c041bd37">fc201f2c</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-04-22T11:27:06-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update CertClient to support REST API v2
The remaining methods in CertClient have been updated to use
the proper URL for the REST API version.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/503a1158446b3f1cc47a61f5912a8e7b1ad80812">503a1158</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-04-22T11:27:06-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update AuthorityClient to support REST API v2
The AuthorityClient has been updated to use the proper URL for
the REST API version.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/dff5f4938ef17677e87564a2a2e30ce83a5950bc">dff5f493</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-04-22T11:27:06-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update ProfileClient to support REST API v2
The ProfileClient has been updated to use the proper URL for
the REST API version.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d5026fa7b54a63d70bab1e2fb087b67013c7bbf4">d5026fa7</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-04-22T11:27:06-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update SystemCertClient to support REST API v2
The SystemCertClient has been updated to use the proper URL for
the REST API version.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/bc4170c5e08adbda4747711ac935bed1bb6d774b">bc4170c5</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-04-22T11:27:06-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update FeatureClient to support REST API v2
The FeatureClient has been updated to use the proper URL for
the REST API version.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/390b13fc579e8245fe2e86fd98f537ed8e4f8ddb">390b13fc</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-04-22T11:27:06-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update SecurityDomainClient to support REST API v2
The SecurityDomainClient has been updated to use the proper URL
for the REST API version.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/850c00b141246008753e59e2c57cc3e1dc2cb81b">850c00b1</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-04-22T11:27:06-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update SystemConfigClient to support REST API v2
The SystemConfigClient has been updated to use the proper URL
for the REST API version.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/79aa44f1c7870799206ec22d319b354e527524d0">79aa44f1</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-04-23T21:24:54+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Replace WebTarget with URIBuilder in PKI client
PKI client URL are built from the initial URI using the
httpcomponent-client URIBuilder.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/2bf1184b52d5da7c7d7f0f3341f15720a995d81e">2bf1184b</a></strong>
<div>
<span> by Rob Crittenden </span> <i> at 2025-04-24T11:36:03+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Allow searching for certs by the issuerDN of the cert
This was possible to do by directly using the REST API
but the client library did not have a provision for it.
Signed-off-by: Rob Crittenden <rcritten@redhat.com>
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/43a527aef180a6935303f574090c8677a1f1642d">43a527ae</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-04-24T11:51:02+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix postgres library for CI tests
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/34823e48bab60960b71b530dbfc4011ff34ef080">34823e48</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-04-24T11:51:32+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix postgres library path in EST doc installation
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f382d87d4639421bd1cdfa14ea525ef2439f41cc">f382d87d</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-04-24T10:57:22-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix pki-server <subsystem>-clone-prepare
The pki-server <subsystem>-clone-prepare has been updated to
support optional audit signing cert.
The PKISubsystem.export_system_cert() has been modified to
generate a more user-friendly error message.
The basic clone tests have been updated to no longer use audit
signing certs.
Resolves: https://github.com/dogtagpki/pki/issues/5053
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/74a64d6f3f474e92ec8ddbbcd6026d0b1345a304">74a64d6f</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-04-25T00:41:34+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Disable password console callback if file provided
When a password file is provided to the CLI then all password are read
from that file and no requests are done to the user if a token misses
password.
Missing password tokens are reported in verbose or debug mode.
The console password callback is still used if the user provides
password for individual tokens.
Fix issue #5045.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b33b5b8e86e4f1f98f19a6f814bb23b96729c575">b33b5b8e</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-04-30T20:42:41+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove RESTeasy from EST subsystem
EST implementation has been converted from RESTEasy to PKIServlet in
order to work with a similar approach of rest APIs v2.
It is important to notice that EST subsystem does not fully implement
the CMSEngine and it does not use the subsystem authentication plugins
handled by the PKIRealm so the ACL and AuthMethod filters cannot work.
The authentication and authorisation is managed with the tomcat realm
and several specific controls implemented in EST subsystem. As a result
the migration to PKIServlet has not modified how EST is configured and
used.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/9c5e4884b8fad14fdeabb2489155045abfc97f35">9c5e4884</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-04-30T20:42:41+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Upedate EST CI to read JSON error message
With migration to PKIServlet error messages are in JSON while
they where in XML.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f75662f001dc5745aede7382f804ed5ffa33bb6a">f75662f0</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-05-02T13:51:02-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update clone tests to check replica ID ranges
The CA and KRA clone tests have been modified to check the
changes to replica ID ranges throughout the cloning process
to prevent regressions.
Some scripts have been added to check replica ID ranges in
CS.cfg and DS.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/26bb025a136dbffa98a30fc9d3e4fe8e751387ba">26bb025a</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-05-02T13:59:25-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up pki pkcs12-cert-del output
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6efb2328d008ce64c29bc672abe930ba70620df3">6efb2328</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-05-02T13:59:25-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up pki pkcs12-key-del output
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/1cd483ba6fbbd6f90a97496cc367061f652ef2b7">1cd483ba</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-05-02T19:44:31-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up pki pkcs12-cert-import output
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e8cc99300d68d37c11067bfd9ef4a44509b721c8">e8cc9930</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-05-02T19:54:45-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update log messages in CertRequestService
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c76c1467bfcfcee57d48f37aa149bd3302ea2832">c76c1467</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-05-02T19:54:45-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update log messages in CertRequestServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a1d42ecbc69a7af9f9df89c6e3bfc2466e6fbf69">a1d42ecb</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-05-02T19:54:45-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update log messages in AgentCertRequestServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f0f6e7a5f14b03ac8ae4c570a60fabd649d1241d">f0f6e7a5</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-05-05T10:51:23-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add KRA clone failover test
A new test has been added to install a CA with multiple KRAs
and perform cert enrollments with key archival to verify the
KRA failover functionality.
The test is currently failing as reported in this bug:
https://bugzilla.redhat.com/show_bug.cgi?id=2363834
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/cac5a686f5a46aceca6e27aaa4be1ca7c9d7226a">cac5a686</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-05-06T10:24:58+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix client redirect strategy
Redirect during CLI operations are followed without user interaction
even the HTTP specification for 302 status recommend to follow only GET
operations without user interaction.
The correct solution should be to have tomcat returning status 307 but this
cannot be configured for moving from unsecure to secure connections.
Fix the #5054
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/cc1241d14c752b3c36a66bf3a39a5310a5333aab">cc1241d1</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-05-06T09:16:32-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update standalone KRA test
The test for standalone KRA has been updated to install the
KRA without a security domain while the CA is down. The KRA
connector in CA and the CA subsystem user in KRA will be set
up after installation by the admin user from a separate
client container.
In the future all KRA installations might be done this way
to reduce the complexity of the installation code and to
make it more reliable (i.e. less dependent on a running CA).
The pki-server status has also been updated to support KRA
that does not have any security domain params.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/24b31c76c0d839ff051d0b07829a75b2cdc7bbd0">24b31c76</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-05-06T17:25:34+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix EST id when running in different context
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/5fe4e2c86fd41d293063f451a54e42bdd9bc3ea9">5fe4e2c8</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-05-06T17:26:56+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Removed not used RESTeasy dependencies
RESTeasy client has been replaced from all CLI and EST subsystem has
moved to plain servlet approach so library dependencies are updated
accordingly.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/4009a4f4d56f4995418f8c97ea2c95dcfcfcd3f2">4009a4f4</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-05-06T15:11:50-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update standalone OCSP test
The test for standalone OCSP has been updated to install the
OCSP without a security domain while the CA is down. The CRL
publishing will be set up after installation.
In the future all OCSP installations might be done this way
to reduce the complexity of the installation code and to
make it more reliable (i.e. less dependent on a running CA).
The pki-server status has also been updated to support OCSP
that does not have any security domain params.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/af396a9bf9355b2e927dd09034e268a9f42f24fe">af396a9b</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-05-08T11:32:12+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove resteasy client jar link
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a0f227a7f343bb207e45306cd5c6a300aa1a7d75">a0f227a7</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-05-08T09:13:26-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add pki-server tps-connector-find
The pki-server tps-connector-find has been added to list the
connectors in TPS.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/cee1e1026b43b057c3aafe9dfbdece8eebc90e38">cee1e102</a></strong>
<div>
<span> by vzlamal </span> <i> at 2025-05-08T08:38:03-07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>remove substitutions that broke the code block
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/686375798b1c0fbfbc6079a22186a10c285defde">68637579</a></strong>
<div>
<span> by vzlamal </span> <i> at 2025-05-08T08:38:03-07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>remove substitutions that broke the code block
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/cf82ddd896ee5fda39179ba97be279779ad9c744">cf82ddd8</a></strong>
<div>
<span> by vzlamal </span> <i> at 2025-05-08T08:38:03-07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>changing commands to use pki export csr instead of parsing it with sed
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/8904738d6858fe6a88e21cfa3425a0c06d434170">8904738d</a></strong>
<div>
<span> by vzlamal </span> <i> at 2025-05-08T08:38:03-07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>fix broken formating in installing-ca-with-existing-keys-in-hsm.adoc
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/41d966dd331c05d3bfd99608bddc99923002b992">41d966dd</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-05-09T09:38:58+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Implement ACME service with PKIServlet
ACME implementation has been converted from RESTEasy to PKIServlet in
order to work with a similar approach of rest APIs v2.
It is important to notice that ACME subsystem does not fully implement
the CMSEngine and it does not use the subsystem authentication plugins
handled by the PKIRealm so the ACL and AuthMethod filters cannot work.
The authentication and authorisation is managed with the tomcat realm
and several specific controls implemented in ACME subsystem. As a result
the migration to PKIServlet has not modified how ACME is configured and
used.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/df22b136b00d12d0da7b064ad8b7a0b0fb2fe157">df22b136</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-05-09T09:38:58+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove RESTEasy based services from ACME
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/fbf822d93b8a34dd17f6157925fe00ba2dd1a77a">fbf822d9</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-05-09T09:59:33-07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update TPS container test
The TPS container test has been updated to import KRA transport
cert into TKS which will be needed later by TPS.
The pki-server cert-import and PKIInstance.cert_import() have
been modified such that the cert ID param is optional to allow
the command to be used to import non-system certs into the
server's NSS database.
The PKIDeployer.create_cs_cfg() has been updated to merge the
template CS.cfg from /usr/share/pki into the existing CS.cfg
in the instance without overwriting existing params.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/67e6e22be8803d24e76db2d11f35f437b56c9246">67e6e22b</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-05-12T17:45:22+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix pki CLI help commands list
A list of java commands is included in the python code to be included in
the help.
The pki help command, or when no command is provided, returns a list of
commands based on the initialised python CLI modules ignoring the commands
implemented by the java CLI. The new list include these and it is
printed in the help so all possible commands are shown.
Fixes: #5061
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/63e7c5938b19c4a8351269cd316bcc314fdb7c20">63e7c593</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-05-13T07:26:45-07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add pki-server tps-connector-add
The pki-server tps-connector-add has been added to create CA,
KRA, and TKS connectors in TPS.
The TPS container test has been updated to create TPS subsystem
users in CA, KRA, and TKS and the corresponding connectors in
TPS.
The code that creates the connectors in PKIDeployment has been
moved into TPSSubsystem.add_connector().
The TPSSubsystem.get_connector() has been modified to return
None if the connector doesn't exist.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/2be5a6d24bc1f58ecc3ec8ca7d949376cbbccf90">2be5a6d2</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-05-13T13:14:10-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Consolidate CryptoUtil.generateKey()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/75a8aecc493d49842c401599f3e37f586410e53a">75a8aecc</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-05-13T19:01:17-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add pki nss-key-export --session-key-size
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f576c319e52aeb7a23c7f4a69cc2fce4e6117887">f576c319</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-05-13T19:01:17-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add pki nss-key-export --wrapper-cert
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/3576dbc64166dc025fc10b46e42249325e0f0738">3576dbc6</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-05-14T13:04:19+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove redundant code from EST spawn
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/8db49e17efc38b7a7590e430a6e5a3132762b6b4">8db49e17</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-05-14T09:37:30-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add pki-server tks-connector-* commands
The pki-server tks-connector-find and tks-connector-add commands
have been added to manage connectors in TKS.
The TPS container test has been updated to add a TPS connector
in TKS and create a shared secret for TKS and TPS.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/741a749d8d37eec8853d303c2b6cd4b46c5c3c68">741a749d</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-05-15T08:32:22-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update TPS container test
The TPS container test has been updated to set up the user
auth database, add a token, format the token, enroll the
token, and reset the PIN.
The pki-tps-run script has been updated to require the base
DN of the user auth database.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/114c7de01e305635e2b2ef588d7b086a09c88101">114c7de0</a></strong>
<div>
<span> by Pritam Singh </span> <i> at 2025-05-16T15:45:08+05:30 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update creating-ds-instance.adoc (#5076)
Added sed regexp fix for "Customize the DS configuration file"</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/71f00686cc4e19d104abd427c807d3b30b640c5b">71f00686</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-05-19T12:50:14+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix P12 constraint configuration key
The key for cracklib check has been fixed. It was not loaded if the
other constraints were not present.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e481ef274c6906e000f9f923419829f1efd34187">e481ef27</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-05-20T09:20:16+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add a new profile input for client information
Implement a new profile input `RAClientAuthInfoInput` for information
about client authentication.
When a RA send an enrollment request to the CA the new input allows to
provide information about the client originating the request in order to
implement ad-hoc policy. This could be relevant for some enrollment
such as EST.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/5d0238c7f406e25149b9df2569fa1e0f390fcfed">5d0238c7</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-05-20T09:20:16+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Modify EST to send client information
The CA could implement specific policy about the certificates to return
during EST enrollment. Client authentication information are provided to
the CA in order to implement such policies.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/45142b5e19128a608c8940780a41b8b12cd50e68">45142b5e</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-05-20T10:07:07-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add MCP server prototype
A prototype of MCP server has been added to demonstrate
accessing PKI services using LLM.
A new test has been added to install CA with MCP server,
install Ollama with Llama 3.2, then run MCP CLI to find
CA users.
https://github.com/dogtagpki/pki/wiki/Model-Context-Protocol
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c8a9e68c0ab3aeef954c5e48005883e65f8b76f6">c8a9e68c</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-05-20T17:27:26-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add TPSSubsystem.update_profiles()
The code that configures TPS profiles has been moved into
TPSSubsystem.update_profiles().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/2ff28cd38f430e65ccd743b1ce969de428852a53">2ff28cd3</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-05-21T09:32:41-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add MCP_TESTS_ENABLED variable
The MCP server test has been modified to run only if the
MCP_TESTS_ENABLED variable is set to 'true'.
The test has also been updated to use a regex that will
work with bulleted and numbered list.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/94d3edb6cfe2ed2c2000bfa1e3d76775469b6a82">94d3edb6</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-05-21T09:39:38-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add pki-server ca-connector-* commands
The pki-server ca-connector-find and ca-connector-add commands
have been added to manage connectors in CA. Some tests have been
updated to use these commands.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/43444dc83c3c9fdd182e1bfe3c5768c715d29ee8">43444dc8</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-05-21T13:07:21-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Replace PKIDeployer.authdb_init() with get_authdb_url()
To improve reusability the PKIDeployer.authdb_init() has been
replaced with get_authdb_url() that returns the URL object of
the authentication database instead of storing it as an
instance attribute.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/be34866857857ea9d60d59578db7c900586f4e52">be348668</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-05-21T14:51:01-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix IPA clone test
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/817b9829f72b4d9d795d552520891b55d9695c01">817b9829</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-05-21T21:21:27-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up PKIDeployer.import_ds_ca_cert()
The PKIDeployer.import_ds_ca_cert() has been modified to
return if the cert file to be imported does not exist.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/5e0633613d5a3b14d874d2355fd851a1d9f59d20">5e063361</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-05-22T12:26:56-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update TPS container
The pki-tps-run script has been modified to no longer require
the authorization database URL and base DN params. Instead,
these params can be configured directly in the CS.cfg. This
will reduce the number of params required to start the TPS
container.
The PKIDeployer.init_subsystem() has been modified to set
up the connection to the authentication database only if
the base DN is specified.
The default minimum connection param in TPS's CS.cfg has been
changed to 0 such that the TPS container can start without
creating a connection to the authentication database.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/7de63d6d85fd7e2ee9a5906f6cb8306626be8476">7de63d6d</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-05-22T13:45:00-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update PKIDeployer.ds_connect()
To improve reusability the PKIDeployer.ds_connect() has been
modified to take a URL object and return the DS connection
object of instead of storing it in PKIDeployer instance.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/3015f366899411180472a8d30a0b68a47cbe2226">3015f366</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-05-22T16:57:59-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up log messages in PKIInstance.load_external_certs_conf()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/808167530bd920db19e6b3406bea29dc9de352f0">80816753</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-05-22T17:52:42-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Convert PKIDeployer.ds_init() into get_ds_url()
To improve reusability the PKIDeployer.ds_init() has been
converted into get_ds_url() that returns the URL object of the
internal database instead of storing it in PKIDeployer instance.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d8c32dba67bb4bf9f5518194f8ab509b7bd6f3a5">d8c32dba</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-05-27T09:31:02-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix NPE in pki ca-kraconnector-add
The CAClient.addKRAConnector() has been updated to get the
Error field from the Response node.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/8ed1bb075055c5bcd2057e43a7046b3cc6ee1de3">8ed1bb07</a></strong>
<div>
<span> by Rob Crittenden </span> <i> at 2025-05-27T19:22:35-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add python API for ACME enable/disable
These two new methods return True/False whether the ACME enable
or disable was successful.
This API is needed by IPA to avoid making direct REST calls.
Signed-off-by: Rob Crittenden <rcritten@redhat.com>
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/4f8bcdca7426f2572b9c17c65d4df576a41dd5b1">4f8bcdca</a></strong>
<div>
<span> by Fraser Tweedale </span> <i> at 2025-05-27T19:32:11-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update python API to support raw profiles
Fixes: https://github.com/dogtagpki/pki/issues/1928
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ecfc95170a896cd9b8054b85e4ecbf81b9b81589">ecfc9517</a></strong>
<div>
<span> by Rob Crittenden </span> <i> at 2025-05-27T19:32:11-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update python API to support raw profiles (modify)
Part of: https://github.com/dogtagpki/pki/issues/1928
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/9eedd7a54d7ac523aa089dda932d3eb4fe993f2a">9eedd7a5</a></strong>
<div>
<span> by Fraser Tweedale </span> <i> at 2025-05-27T19:38:32-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>python api: add SecurityDomainClient.remove_host()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/cb657c08f269eefeb74130fb0aacf7e32fbec7e4">cb657c08</a></strong>
<div>
<span> by Rob Crittenden </span> <i> at 2025-05-27T19:40:50-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Handle a missing request_url in the cert request REST output
In the class request_url defaults to None. If it isn't present in
in the json attributes the request_id can't be determined and ends
up as the string 'None'.
If request_url isn't present then use requestID instead.
Signed-off-by: Rob Crittenden <rcritten@redhat.com>
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/894eadb4f80d1c9c993fee6882d6dcfc7e3c9024">894eadb4</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-05-28T10:03:09-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update TPS container test
The TPS container test has been modified to no longer specify
the PKI_DS_URL and PKI_DS_PASSWORD params for each container
which will make it easier to start and set up the containers.
Instead, the internal database hostnames, port numbers, and
passwords will be configured in the CS.cfg directly, then all
containers will be restarted before running the test.
The PKIDeployer.get_ds_url() has been modified to return None
if the internal database URL is blank.
The PKIDeployer.configure_internal_database() has been updated
to configure the internal database params in CS.cfg only if the
corresponding pkispawn params exist.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/17a44731c7d6aa2888ae8e700149712351fe081c">17a44731</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-05-28T10:27:40-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add upgrade script to enable URL rewrite
An upgrade script has been added to add a RewriteValve and
create a link to rewrite.config that are missing in instances
created prior to PKI 11.3.
See also:
https://github.com/dogtagpki/pki/commit/f95df455c5f062ef024b91f5bfc95d919c91cfb7
https://github.com/dogtagpki/pki/commit/994d932100c7d335752fe817a7d8757f62439b08
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f2757d58256e27f9b9f7eede454142548ecf8903">f2757d58</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-05-29T12:27:26-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update TPS container test to use generic subsystem users
Normally pkispawn would create subsystem users with a username
that contains the hostname and the port number of the subsystem
(e.g. CA-ca.example.com-8443). However, if the subsystem is
migrated to a different server the username will no longer be
correct and there's no official process to fix it. Also, in a
cloud environment the hostnames of the containers may be random
and not permanent.
To avoid issues or confusions it's recommended to use generic
subsystem users without the hostname or port number in the
username (e.g. CA). The TPS container test has been updated to
use generic subsystem users to demonstrate that it's already
supported by the current code.
In the future pkispawn might be modified to provide params to
change the usernames of the subsystem users.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/4074a13e8a3562bdbf563c198ecafb6150145232">4074a13e</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-05-30T09:32:46+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add a new profile constraint for subject name
Implement a new profile constraint, named `RAClientAuthSubjectNameContraint`,
to limit the subject name of enrolled certificate when submitted from a diffierent
subsystem
The new constraint get the information for RAClientAuthInput and try to
match the client certificate subject with the one in the CSR or, if the
client was not using TLS authentication, match the client name.
The new constraint implement similar EST policy on the CA.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/324e10c2fa07259bd0fec938755e9d1f430407d1">324e10c2</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-05-30T09:32:46+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add a pattern params to RAClientAuthSubjectNameContraint
The new params allows to define subject with additional information.
The pattern param has to match with the new subject after replacing the
2 possible values with the actual values:
- $ra_client_name$
- $ra_client_uid$
It is not handled like a regular expression.
The pattern is only used when client certificate is not available.
Finally, the estServiceCert.cfg has been modified to include the new
constraint (enabled) as well as the SubjectNameContraint so the user can
easily modify the policy to apply.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ab5a98c3c91fbf13b6b8d2990065e0218be17caa">ab5a98c3</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-05-30T09:32:46+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Modify pkispawn to request server certificate when not provided
EST was requesting a certificate using EST profile during pkispawn
instance creation. This is modified to use a server certificate profile.
It requires the right authorisation for the EST user.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e20e49e0437f826e7ab2fc0e38a5a1cf40ac579e">e20e49e0</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-05-30T09:32:46+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update EST CI to the new profile subject contraint
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/301ae5bbe4a523e3f993037f5527a0ad9e6b5db1">301ae5bb</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-05-30T09:32:46+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Verify client group before enforce subject name with RAClientAuthSubjectNameContraint
When RAClientAuthSubjectNameContraint the subject is enforced to match
the client user id or the subject of the client provided certificate.
If the certificate is owned by a CA agent the subject is not enforced.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/fc53e971459cb6301d259e98af328106fba5639e">fc53e971</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-05-30T09:32:46+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update CI test to verify subject bypass with agent authentication
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/02c29d971a437531480c2767ed88dd3cd5ff1a6e">02c29d97</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-06-03T11:13:02-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update pki-server cert-fix
The pki-server cert-fix CLI was originally written for IPA so it
had IPA-specific requirements. The CLI has been updated such that
it's easier to use in non-IPA environments.
The CLI will now provide an optional param to specify a database
user for connecting to the database with basic authentication. By
default it will use the bind DN configured in CS.cfg, but for IPA
it will continue to use uid=pkidbuser,ou=people,o=ipaca.
The CLI will also use ldapmodify instead of ldappasswd (which
requires LDAPI or LDAPS connection) to update the password of the
database user. This way the CLI can be used with a plain LDAP
connection. The CLI will also use the port number from the LDAP
URL, but for IPA it will continue to use 389.
The Offline System Certificate Renewal page has been converted
into AsciiDoc.
Some new tests have been added to renew CA system certs using
pki-server cert-fix CLI without IPA, one with LDAP connection
and another one with LDAPS connection.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d5a863833f24d00c048601a9abd2f49a85bbac56">d5a86383</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-06-03T20:38:27+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix nuxwdog instances
Nuxwdog enabled instances are not working with latest release of systemd
for permission problems.
With the release of systemd version 257 the command
`systemd-ask-password` when executed as user in systemd servive cannot invoke agent for
password request because it is missing privileged. At the same time
cannot execute as system because pkiuser is not authorised.
The TTY agent alternative is not working properly because it is not
linked to the root shell executing the start command.
As a solution the `pki-server-nuxwdog` script is executed with privileged
user but it operates on user keyring. This required a new option with
user name and the possibility for keyring object to operate for a
specific user.
Fix #5085
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/dbefad46dee5cd2a7881e5cd95c5838b63e72f38">dbefad46</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-06-03T20:38:27+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove acl installation from workflow
Nuxwdog does not use setacl to startup, it has moved to a different
approach.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6040bca4d139047b40d6efb43c90ef9fc180c86b">6040bca4</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-06-03T14:18:49-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up log messages in NSSDatabase
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/430a09eb60729b0f63bc5cb5c2e5cda9b213a74a">430a09eb</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-06-03T14:20:05-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up log messages in CAService
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/50ab03db84c90f42b5a635e7c1bbe56d91902e1a">50ab03db</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-06-03T14:20:49-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up log messages in ProcessCertReq
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/5c4097bc2125f1b27c3573abb6ac17a62a4d8b25">5c4097bc</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-06-03T14:21:08-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up log messages in RenewalServlet
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ccbeca4c3395d5845b23627be7be0769f293ee20">ccbeca4c</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-06-03T19:56:01-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up log messages in Profile
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/56ee456f45711e12ec080b8c1da8727343ea562d">56ee456f</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-06-04T09:33:49+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Make keyring clear operation on user id
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f6068a8b0bb2a533491c189d9ee31069c46fb5f4">f6068a8b</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-06-04T09:28:58-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix pki-server db-schema-upgrade
The PKISubsystem.import_ldif() has been modified to call
ldapmodify with -H <URL> option instead of the obsolete
-h <hostname> option.
The server upgrade test has been updated to test pki-server
db-schema-upgrade which is currently just re-importing the
DS schema.
Resolves: https://github.com/dogtagpki/pki/issues/5086
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e0c74aa863f1100f606c1a99ae6ab52583dd3773">e0c74aa8</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-06-04T15:01:00-07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>trust option needs to be preceded by two '--' instead of '-'.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/9e46d03eb8c4e650db7c99d6be0a4ad7a1cfa26d">9e46d03e</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-06-04T18:16:17-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Reorganize server port and user tests
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/87a9f22b6ced95b6d1a039bb71d17e491aea0396">87a9f22b</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-06-05T15:53:16+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update EST CI pkcs12 command to newer option
The CI was using a deprecated option for the password and has been
replaced.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ed0bb297f621e4bd0e7d8cc48040c633b15f1d4a">ed0bb297</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-06-05T09:17:13-07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update README-doc-convention.adoc
Added convention for presentation of replaceable values.</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/80153feb73919f69b023409aa88e73adcdadf3a0">80153feb</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-06-11T10:40:59-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add internationalization test
The PKIClient.entity() and unmarshall() has been updated
to create the request object and to parse the response
object with UTF-8 encoding.
The SimpleProperties.load() and store() has been updated
to load and to store the profile config file with UTF-8
encoding.
The ConfigStore.store() has been updated to export the
profile config into a raw format with UTF-8 encoding.
The pki <subsystem>-user-add has been modified to accept
a --full-name option for consistency with the pki-server
<subsystem>-user-add command.
The UserShowCLI has been modified to retrieve the correct
fields from the JSON object.
A new test has been added to create a cert profile, enroll
a cert, create a user, then perform client cert auth with
wide characters.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/766b34e29741a7c6db12e546be5a75beb93f7fbc">766b34e2</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-06-11T15:37:54-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update KRAConnector.deregister() and TPSConnector.deregister()
The KRAConnector.deregister() and TPSConnector.deregister()
have been updated to use password.conf instead of the actual
password and to show the error message if the command fails.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ede420a3431938633c17073663fc20a804ac54de">ede420a3</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-06-13T09:28:21-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add test for CA cert request templates
The test for CA Python API has been updated to check listing
and retrieving cert request templates with REST API v1 and v2.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/2d255b6a157962c6ef7f64a8e62d83b73912a3d8">2d255b6a</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-06-13T10:05:01-07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>RHCS-5994 Changes from Test Day CY25Q2
This patch covers some of the Doc change requests from taherrin that require upstream changes from the CY25Q2 Test Day.
https://issues.redhat.com/browse/RHCS-5994
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/0d63e486314ebcf4d28c010a11cd95f0ae97d4d0">0d63e486</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-06-16T15:37:08-07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>RHCS-5927 [DOC] Asciidoc code block rendering issue with [literal,subs="+quotes,verbatim"]
This patch was re-created after https://github.com/dogtagpki/pki/pull/5077 that was provided by community member vzlamal to address the issue where bold and italic in some cases are mis-interpreted where '*' and '_' are intended to be literally part of the code.
Note that there is still a desire to bold the actual commands. This patch is to be considered a temporary fix.
https://issues.redhat.com/browse/RHCS-5927
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/9f944cd4f7c1d15285bdea3d33272c45b027d0f5">9f944cd4</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-06-17T08:36:06-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add basic test for pki-server CLI
The mandatory positional arguments for pki-server subcommands
have been changed to become optional such that the --help
option can be parsed properly.
A new test has been added to check pki-server help messages.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/61f47121d658b23311104008d68b0e78de7ec388">61f47121</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-06-20T09:55:17-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add pki ocsp-cert-verify
The pki ocsp-cert-verify has been added to check the status
of a cert in an OCSP responder. The command can be used by
providing the serial number of the cert or by providing a
file containing DER-encoded OCSP request. In the future this
command might replace OCSPClient.
The basic OCSP test has been updated to check the cert status
using pki ocsp-cert-verify, OCSPClient, and OpenSSL.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/be8cc53aab895731908ab7f5d03540b41b2d6735">be8cc53a</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-06-20T09:45:48-07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>RHCS-6004-[DOC-dev] Upstream->downstream import for Test Day changes involving upstream
This patch addresses comments from lmcgarry on the patch imported downstream.
https://issues.redhat.com/browse/RHCS-6004
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a29205da812dd27ae9af3ee774c06ce8119ef458">a29205da</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-06-20T19:07:52-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up log messages in DefStore
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/4e475effc1656feda98ecec27010a48883d1dab8">4e475eff</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-06-23T08:21:36-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update OCSP clone test
The OCSP clone test has been updated to use a replicated
CRL database in LDAP instead of the default OCSP publishing
in order to provide properly replicated OCSP responders. In
the future OCSP clone installation might be required to use
this mechanism.
https://github.com/dogtagpki/pki/wiki/Setting-up-CRL-Database
https://github.com/dogtagpki/pki/wiki/Publishing-CA-Certificate-to-LDAP-Server
https://github.com/dogtagpki/pki/wiki/Publishing-CRL-to-LDAP-Server
https://github.com/dogtagpki/pki/wiki/Configuring-OCSP-Revocation-Info-Store
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6fae9df3f9dadc39bbc63c4aefa498f9e57e4165">6fae9df3</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-06-23T13:02:24-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add pki ca-crl-update
The pki ca-crl-update has been added to simplify manual CRL
update.
The deprecation of XMLObject has been removed since the class is
still used in multiple places and generates deprecation warnings.
Once the migration to REST API v2 is complete the class might be
deprecated again.
https://github.com/dogtagpki/pki/wiki/PKI-CA-CRL-CLI
https://github.com/dogtagpki/pki/wiki/UpdateCRL-Service
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/5ed1f72ba15a6e65993c69ed66a4cd93860e92f7">5ed1f72b</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-06-23T13:06:41-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Refactor CertStatus
The CertStatus interface has been converted into a base class
which stores the label of the cert status. The code that uses
CertStatus has been updated to use the labels.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/9a4c3e1cab73cc7931d62edf0913275690e6b37d">9a4c3e1c</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-06-24T09:39:48-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add test for built-in OCSP in CA clone
The test for CA clone has been updated to validate the
built-in OCSP responder.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/2f3efaf31194d95bc89dac3df9d2ef3f6914929f">2f3efaf3</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-06-24T18:47:23-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add CRLAutoUpdateTask
The code in CRLIssuingPoint for updating the CRL automatically
has been moved into CRLAutoUpdateTask.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e7b4eb8dcfabd7e6e94d60aa928ac392940a2ceb">e7b4eb8d</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-06-24T19:00:06-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up log messages in LogFile.setupSigningFailure()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/1d57ec7619f815ac1899a717439c68d7dbe66dc2">1d57ec76</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-06-24T19:10:15-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update ElementProcessor to use generics
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c4711bf766265d4ad1d073d52441aa003480b417">c4711bf7</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-06-27T10:34:42-07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>pkidoc-find-unique-ext-links.py finds external linkns in adoc files. (#5143)
This script recursively searches all AsciiDoc (.adoc) files in a given directory.</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/162e56c5474743b67e99958d84b6b210e531796a">162e56c5</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-06-27T16:20:45-04:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add pki-server ca-crl-record-show
The pki-server ca-crl-record-show has been added to show
the CRL record in CA database.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/74fed842dc54f81ed8091ff604eeb00481472aa7">74fed842</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-06-27T16:20:45-04:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add pki-server ca-crl-record-cert-find
The pki-server ca-crl-record-cert-find has been added to
list the revoked certs in the CRL record in CA database.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/590f28a430dc0631bcaf86403264be51e3bf3466">590f28a4</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-06-27T16:20:45-04:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update CRL test to use pki-server ca-crl-record
The CRL test has been updated to use pki-server ca-crl-record
commands to validate the CRL record in CA database.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/4178934fe8345902025fc959b5ad3dd26c12a9b7">4178934f</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-06-27T15:13:10-07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>pkidoc-find-unique-ext-links.py: print file names only instead of full paths and add result output file (#5144)
- print filenames only. Full paths output clutter the display and makes it difficult to read.
- optionally write result to an output file
- delete the accidental checkin of pkidoc-find-unique-ext-links0.py</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6bf67f0070a51850ba22a95c1d7c0c2ba76b2f59">6bf67f00</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-06-30T09:29:59-07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>removing an experimental file used for an exercise with Github Copilot.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6dfc2d90f7096101c75cf0fdd79c5957ea5cf224">6dfc2d90</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-06-30T15:23:30-04:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update server tests to get version number from pom.xml
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/18936d8fbff4c5e464aadce96e0296260601c26e">18936d8f</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-06-30T15:23:30-04:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update version number to 11.7.0-beta1
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/543a88dac20d927b25e716b47ec53a28047db8d5">543a88da</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-06-30T16:05:54-04:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix doc links
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/db2e7fc3028f4b3b6c640be05c997ea9ea62f659">db2e7fc3</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-06-30T17:14:08-04:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update version number to 11.8.0-beta1
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b5c6263d7209e295296006cf97147f5d975da2c9">b5c6263d</a></strong>
<div>
<span> by Super User </span> <i> at 2025-07-01T18:29:49-04:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update RESTEasy dependency
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/5f27ecb77d8d8734b458dc796d137907bfdaa602">5f27ecb7</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-07-01T18:32:30-04:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update NSS dependency
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/fac32b67e5250be24c1cb1e54512fbdd1e91bb1e">fac32b67</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-07-01T21:21:23-04:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update JSS dependency
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/4059b4b850989723f6a75d74e7354a792ad9bc9f">4059b4b8</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-07-09T09:22:40-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update version number to 11.9.0-alpha1
The build scripts have been modified to generate RPM version
numbers more compliant with Fedora Packaging Guidelines.
https://docs.fedoraproject.org/en-US/packaging-guidelines/Versioning
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/5379088bb82d75f041d5d80c8268a5abb8403287">5379088b</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-07-09T20:46:38+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add ACME support to ES256
Introduce ACME support to ES256 signature algorithm as requested in RFC
8555 section 6.2.
Fix #4638
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f8ea92179d409569a2dcf8f43792719eb086819c">f8ea9217</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-07-09T20:46:38+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Include ACME test with Caddy web server
Caddy implement its ACME client and it uses ES256 as default signature.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b24f8736444a4e4d7dcd5285358a2572a5ce9e26">b24f8736</a></strong>
<div>
<span> by Fraser Tweedale </span> <i> at 2025-07-17T14:24:23-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Handle some cases of uninitialised SigningUnit
The `CertificateAuthority.mSigningUnit` may be `null` in some cases.
In particular, when a clone does not yet have the keys for some
lightweight CA, its signing unit can be null. Update a handful of
locations to handle this scenario without triggering NPE or similar.
Related: https://issues.redhat.com/browse/RHCS-6003
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/69067ed630bcf25091db3590765c20f7d1d2516c">69067ed6</a></strong>
<div>
<span> by Fraser Tweedale </span> <i> at 2025-07-17T19:21:17-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>RHCS-6003: Revert "Use synchronous LWCA KeyRetriever"
This reverts commit 451cc4d0202f807ea6c1005744c9adb15435143d.
Making LWCA key retrieval causes hangs on servers to which
lightweight CA keys have not yet been successfully retrieved (e.g.
due to transient issue). The problem arises as follows:
1. AuthorityMonitor thread observes creation of new CA via LDAP
replication.
2. AuthorityMonitor initialises the CertificateAuthority object.
3. At SigningUnit initialisation, observes absence of keys and
initiates key retrieval (synchronously)
4. Key retrieval fails; enters exponential backoff loop
5. CertificateAuthority initialisation is stuck in key retrieval
backoff loop; it does not get added to the CA registry.
6. Separately, `AuthorityService` / `AuthorityServlet` receives a
request related to the CA (e.g. retrieve authority info or cert
chain).
7. Lookup via `AuthorityRepository` locates the data, but no
`CertificateAuthority` object exists for it. Starts the
initialisation process afresh (and hangs).
8. Rinse, repeat. Eventually even unrelated functions can be
impacted due to resource starvation (e.g. no available HTTP
worker threads).
The fix is to revert to asynchronous key retrieval. Happily, the
earlier patch reverted cleanly. The change to synchronous retrieval
was intended to resolve an [issue] with nondeterministic failures
when creating many LWCAs in rapid succession. Further investigation
of that issue hints that the issue may be resource limit related
because LDAP connection failures affect both LWCA creation and key
retrieval. We may need to do further investigation and
experimentation to solve that issue in a different way.
[issue]: https://github.com/dogtagpki/pki/issues/4677.
Fixes: https://issues.redhat.com/browse/RHCS-6003
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a3e93c5d0e026a62d77b52d145de83c0d6c4f51c">a3e93c5d</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-07-17T21:29:52-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update CMake scripts
The PKI_TOMCAT_9_0_JAR variable have been renamed into
PKI_TOMCAT_IMPL_JAR to make it easier to support multiple
Tomcat versions.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/11292e8ac96430510b3447abaf13c029c54359e5">11292e8a</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-07-18T14:15:04-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update dependency to JSS 5.9
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/00d2e49da5f5a4245cfb42040beea9f36062960e">00d2e49d</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-08-06T20:10:10-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update tests for KRA connector
Some tests have been updated to verify the config params for
KRA connector in CA's CS.cfg.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/8502e1cb211320abcfa7190325de25deb5b14ffd">8502e1cb</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-08-07T16:58:58+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Replace java_devel dependency in pki-server
pki-server currently requires java_devel but it is not necessary for the
server to work properly.
Since this requirement has many dependencies to desktop related packages it
is replaced with the java_headless dependency which is enough to work.
The only tool used from java_devel is the command jar which has been
replaced by unzip since they support the same format.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6502a25d6992aa4956ea205a4c24fe30a3219611">6502a25d</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-08-07T12:10:12-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Convert password enforcement test into SSKG test
The password enforcement test has been converted into a server-side
key generation test since it's using the caServerKeygen_UserCert
profile. It has also been updated to reproduce issue #5037 by
approving the pending requests. The issue itself will be fixed
separately later.
https://github.com/dogtagpki/pki/issues/5037
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/21b17ed59506fffd49f6f3de6c0d1b6ba136afc7">21b17ed5</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-08-18T21:39:23-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Disable Java Security Manager
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/14719535f5fec6103d7a9be8da6ce4413ea37691">14719535</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-08-18T21:39:23-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Disable RPATH
https://docs.fedoraproject.org/en-US/packaging-guidelines/#_beware_of_rpath
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/4bae017e65186afb4ed8cf80e3c89f4047aa6685">4bae017e</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-08-20T22:45:44-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update NSSDatabase.addCertificate()
The NSSDatabase.addCertificate() has been updated to return
the new cert added into NSS database.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c04e5ae717142b3243da8abd09ea3be7ec8e2ecc">c04e5ae7</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-08-20T22:45:54-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add NSSDatabase.getCertificate()
The NSSDatabase.getCertificate() has been added to get a cert
from NSS database.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/01aa3be4c804a995ffce6cd29c011e0a74057510">01aa3be4</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-08-20T22:45:54-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add NSSDatabase.deleteCertificate()
The NSSDatabase.deleteCertificate() has been added to remove
a cert from NSS database.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/87bebbf54ecc1e1341b3a090aefef814961a6532">87bebbf5</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-08-20T22:45:54-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update NSSDatabase.add_cert()
The NSSDatabase.add_cert() has been updated to support runas
param.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/7f03e1e296779738b165949ffa625d720c9917c7">7f03e1e2</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-08-20T22:45:54-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update PKISubsystem.export_system_cert()
The PKISubsystem.export_system_cert() has been updated to use
NSSDatabase.export_pkcs12().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a15cbabb20daef4dd424e1a15f46967778a14bd3">a15cbabb</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-08-25T10:28:23+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Revert CertificateAuthority update in KeyRetrieverRunner
During execution of KeyRetrieverRunner the CertificateAuthority could be
updated and the signing unit will not get properly initialised.
This is the case in IPA setup where an external key retriever is
configured as default.
Problem described in https://issues.redhat.com/browse/RHEL-108293
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/102ca61b997acaa01912d9e487be8658a5c56126">102ca61b</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-08-25T10:28:23+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add IPA LWCA certificate generation in the tests
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d824f9cebb878b52e5f1e9840b752251ddb2fc26">d824f9ce</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-08-25T13:58:43-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add reindex step for setting up ACME database
As described in issue #5160 with LMDB backend newly added DS
indexes always need to be rebuilt. For ACME and other subsystems
installed without pkispawn this additional step needs to be done
manually. In the future this step can be integrated into pkispawn
for ACME.
Some ACME tests have been modified to create DS instances with
LMDB backend to demonstrate the additional reindex step. The ACME
docs have been updated as well.
https://github.com/dogtagpki/pki/issues/5160
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/17319b8ab38c1d3dfeb43a1df7967efeeb6e07f0">17319b8a</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-08-26T09:39:03+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add new pki-server <subsystem>-group-add command
Add the CLI to add a new group from the administrator. The command
accept the option `--description` to include a group description and
requres the `group_id`.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6babf25445b2eed33a3e8d9bedb68fbe1b07cb2b">6babf254</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-08-26T21:17:01-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update basic server test
The basic server test has been updated to check Tomcat and
PKI shared libraries.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/8339cb11cc70a93f8fd0a89eb15b087f9bc07a15">8339cb11</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-08-27T11:58:59-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add pki-server acme-database-init
The pki-server acme-database-init has been added to simplify
ACME database initialization which includes importing the schema,
creating indexes, rebuilding indexes, and creating the subtree.
The command can only be used after the database is configured,
so some ACME tests have been changed to initialize the database
after the ACME subsystem is created.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c36489f8430ea7e1ea2fa64e7be1881541a078ee">c36489f8</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-08-27T16:30:37-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update ACME tests to check pki-server acme-<object>-show
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/719d55d61bc55e51b2907bfd7eeaca40c7e6b71b">719d55d6</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-08-28T09:32:58-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add pki-server acme-realm-init
The pki-server acme-realm-init has been added to simplify ACME
realm initialization which includes creating the DS subtrees
for the realm.
The RealmCommon.initRealm() has been added to initialize the
realm. The LDAPRealm has been updated to implement this method
for initializing ACME realm.
The PKISubsystem.run() has been modified to include the entire
Tomcat library which defines the realm classes.
Some ACME tests have been changed to initialize the realm using
this command.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/42319d74c7e87f53879c587c51ead2df4f1e53dc">42319d74</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-08-29T13:02:05+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add new pki-server <subsystem>-acl command group
Add the CLI to allow the administrator to modify the ACL. The command
includes the operation to find, add and delete ACL.
The operation are:
pki-server <subsystem>-acl-find
pki-server <subsystem>-acl-add <acl>
pki-server <subsystem>-acl-del <acl>
To remove the acl it has to exactly match the one in use.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/0248c2fec0592af83881e51389e919a26a725c8d">0248c2fe</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-08-29T08:52:04-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add pki-server acme-database-index-rebuild
The pki-server acme-database-index-rebuild has been added to
simplify rebuilding ACME database indexes. This command can
be used to repair existing instances that are experiencing
issue #5160.
The pki-server acme-database-init has been updated to provide
a --skip-reindex option to demonstrate the issue.
https://github.com/dogtagpki/pki/issues/5160
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/4d2c4fde0a4c24e14ec9ac7fac5e1732f8132a92">4d2c4fde</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-08-29T18:15:18+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add pki-server sd-type-add CLI
The new CLI allows to create a new entry in the security domain object
for a new subsystem type. This is neeeded when a new type of subsystem
is introduced.
The new CLI is:
pki-server sd-type-add <subsystem_type>
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a74c8adfff209f5a4a9104cb75449f57fa83a1cc">a74c8adf</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-09-01T17:27:01+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix update with nuxwdog
Upgrade/migrate script trying to read certificate information from
NSSDB read all the passwords from the related file but if it is not present
then only the password for the current token is read from keyctl. As a
result, the token has to be specified when DB is open or the operation
will fail.
An example of upgrade script accessing certificate information is in
base/server/upgrade/11.5.0/04-RemoveCertCSRfromConfig.py
Fix #4895
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/fba940cae63b9bbe56f0c757144d8d22a11f7aec">fba940ca</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-09-23T20:41:43+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add doc changes for the new commands:
- pki-server sd-type-add
- pki-server <subsystem>-group-add
- pki-server <subsystem>-acl-find
- pki-server <subsystem>-acl-add
- pki-server <subsystem>-acl-del
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/5d66a109534dc85f0016afdef57125183f8d9800">5d66a109</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-09-24T11:53:28+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix CMake build of acme module
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/da256cb1c9289cf4c9543ef96a996b6869c02ef9">da256cb1</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-09-25T09:17:55+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix HSM connection and container in actions
Modify the actions to install the p11-kit-client package. It is needed
to connect with remote HSM.
Update owner of podman container generated files when running in the
action. They are owned by the _runner_ user.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/8805e85a70994c424252e8183c8fbb02df2fd163">8805e85a</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-09-29T17:52:05-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update IPA tests to check DS server after installation
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b118ce47f75bc0dba1df4e267d8070170e7171a8">b118ce47</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-09-30T17:00:40-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update CMSEngine.shutdown() to show remaining threads
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/fd2f00357bd4921f4cdd4de8e989b88f459dd813">fd2f0035</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-09-30T20:00:37-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add PKIDeployer.system_certs
The PKIDeployer.setup_system_certs() has been modified to
store the results in PKIDeployer.system_certs.
The PKIDeployer.deployer.setup_subsystem_user() has been
modified to use PKIDeployer.system_certs.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/aa0612acfc812156aaa3cde0694a56338008476b">aa0612ac</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-10-01T16:20:10-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update initialization.py
The code that removes the subsystem from the security domain
in initialization.py has been moved into configuration.py.
The code that stops PKI server in initialization.py has been
moved into subsystem_layout.py.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6e0a310f50c65dc265ad6d475edfdab68174a9f0">6e0a310f</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-10-01T16:20:10-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update finalization.py
The code that manages PKI server in finalization.py has been
moved into instance_layout.py and configuration.py.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/35c628812de8da44f48b31c18ec809cb00efb325">35c62881</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-10-02T13:14:55-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update configuration.py
The code that enables/disables the instance in configuration.py
has been moved into instance_layout.py.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/558c613c799be7dfd98575e065073a9ca9d0715c">558c613c</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-10-02T17:34:48-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update instance_layout.py
The code that removes the instance in instance_layout.py has
been modified to use PKIServer.remove().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/de198d6e829dd88b06cab0d7b061aec07c25d1a5">de198d6e</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-10-06T09:31:32+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix GET authority APIs
When the authority id cannot be found a 404 error message has to be
sent. It was reporting internal server error to the user.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/29208e107eadc3c78c12a01cc0b53fb049c25cf0">29208e10</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-10-06T09:55:50-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add ACME clone test
A new test has been added to install CA, ACME, and ACME replica,
then perform ACME registration and enrollment.
https://github.com/dogtagpki/pki/wiki/Installing-ACME-Responder-Clone
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/583052200649a17d2c8f48d0130a4c207ab6b312">58305220</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-10-06T14:22:15-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update rpminspect test to check RPM content
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d3b0094cab9d40bfca21e63ad581212380c582f1">d3b0094c</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-10-07T10:25:10+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Make REST API exception return default to JSON
REST APIs v1 default format for entity is JSON as defined in [1] but in case an
exception is raised the default format is XML.
The PKIException default format is modified to JSON in order to be
consistent.
1. https://github.com/dogtagpki/pki/blob/master/base/server/src/main/java/com/netscape/cms/servlet/base/PKIService.java#L155
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/424f58d5a265d7f269de253e9d62706fa3a5d622">424f58d5</a></strong>
<div>
<span> by gkimetto </span> <i> at 2025-10-09T08:49:18-04:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix pki-server ca-audit-event-update-update fails with object has no attribute 'event_filter'
Added a fix to resolve a simple argparse issue causing failure in Issue# 5135.
The AuditEventUpdateCLI class parser.add_argument defines the "filter" argument
but the execute method was trying to access "args.event_filter"
Fix: 5135
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/57dc48aff5d59b58688744d62ec4c05bbdabd5ae">57dc48af</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-10-09T09:48:21-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add CLI option to specify DS backend
The pki-server acme-database-init and acme-database-index-rebuild
have been modified to provide an option to specify the DS backend
for creating/rebuilding indexes.
The test for ACME with separate instance has been modified to use
a non-default DS backend.
Note that pkispawn will not be modified to initialize the database
(which is the current behavior when installing ACME with pkispawn).
Instead, for installing the first ACME instance the admin will need
to initialize the database using the above commands after running
pkispawn, and for installing an ACME replica the admin will need to
configure the DS replication separately.
https://github.com/dogtagpki/pki/wiki/PKI-Server-ACME-Database-CLI
https://github.com/dogtagpki/pki/wiki/PKI-Server-ACME-Realm-CLI
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e98eae2f5a3d029ccad9c6a92c80240e147b1cf8">e98eae2f</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-10-10T11:14:51-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Change nsPagedSizeLimit default value
The default value for nsPagedSizeLimit in pkidbuser has been
changed to -1 to avoid issues when cloning CA or KRA that uses
Sequential Serial Numbers as reported in PKI Issue #5133.
The pki-server <subsystem>-user-show and <subsystem>-user-mod
have been updated to provide options to inspect and modify the
user's operational attributes including nsPagedSizeLimit and
nsPagedLookThroughLimit.
The basic IPA test has been updated to verify that these
attributes can be inspected and modified using these tools
after installation.
For existing CA or KRA instances, the attribute needs to be
updated manually since the current upgrade mechanism cannot
reliably update the database (e.g. the database might not be
running when the automated upgrade runs which happens when PKI
server is started).
https://github.com/dogtagpki/pki/wiki/PKI-Server-Subsystem-User-CLI
Resolves: https://github.com/dogtagpki/pki/issues/5133
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/601a6c84ce95d70832cdb7d3b5259551216be051">601a6c84</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-10-13T10:01:40-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add support for pki-server ca-user-show --attr +
The pki-server ca-user-show has been modified to provide a way
to display all operational attributes in the user's LDAP entry.
https://github.com/dogtagpki/pki/wiki/PKI-Server-Subsystem-User-CLI
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d9b4e8e9b90ae8a1ec42ea693b3ddd9996f4f88e">d9b4e8e9</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-10-14T12:37:56-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move default instance name constant into pki.server
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/82c71dd17f059b2d163ebe2d03b3967014cb9855">82c71dd1</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-10-14T12:37:56-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move Tomcat port constants into pki.server
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d532e80eb4f5bfb5cc54594edf1f02dc60b4ab1a">d532e80e</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-10-14T12:37:56-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move SELinux labels into pki.server
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/20bc64c6ca54ebb9bfbb15000ab51a1a67025667">20bc64c6</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-10-14T12:37:56-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Convert pki_selinux_config_ports into local variable
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/80d6ecdde5709179d5452d8632cf78ffb70c151b">80d6ecdd</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-10-14T12:38:44-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move SELinux methods into PKIServer
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6e429cc49fc1a510bb3b3d62fd5bb252bcf36f60">6e429cc4</a></strong>
<div>
<span> by jmagne </span> <i> at 2025-10-14T16:58:22-07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>IDM-3425 (#5190)
Complete CI and merge for dogtag-pki changes for f43 to master upstream branch.
This fix allows pki to build and run on either a tomcat 9 or tomcat 10 system.
If pki is built on a tomcat 9 system, it will run on a tomcat 9 platform.
If pki is built on a tomat 10 system, it will run on a tomcat 10 system.
Tomcat 10 is used for platforms >= f43 and >= rhel10.
Fix build.sh to determine the APP_SERVER variable without obtaining it from the spec file.
Account for jdk versions for rhel, different from fedora.
Address review comments.</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/1333c53b5de5e3ed3e84318b71bd0ed9919ed42a">1333c53b</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-10-14T20:22:59-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move verify_sensitive_data() into PKIDeployer
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a0ef2534324a59a28ca87b9c14a636e878411a2d">a0ef2534</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-10-14T20:22:59-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Merge initialization.py into PKIDeployer
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/505191c67c8d0a2103022abebf360d0cee87d892">505191c6</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-10-14T20:22:59-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Merge infrastructure_layout.py into PKIDeployer
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/39058397d2269adf6840f7b4a458fa97cf9dfa74">39058397</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-10-14T20:22:59-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Merge security_databases.py into PKIDeployer
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/9f2156690378e7f9531e93d9a198843777981f16">9f215669</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-10-14T20:22:59-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Merge selinux_setup.py into PKIDeployer
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/62c200b0eb340008d165b7f60e6395ed9af927a2">62c200b0</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-10-14T20:22:59-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Merge keygen.py into PKIDeployer
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/5488ae14b3b85d9f452ddd7abaed8cb8120333a3">5488ae14</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-10-14T20:22:59-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Merge fapolicy_setup.py into PKIServer
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c9061cec185d7b74ff2d8aa367104c231793e3c8">c9061cec</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-10-14T20:22:59-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Merge finalization.py into PKIDeployer
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/46e74390a992ddd31515dff2e7f82e80deb5a58a">46e74390</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-10-15T13:58:42+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Modify EST deployment to match other subsystems
EST subsystem has been modified to use the security domain during the
deployment and this is the default behaviour.
Installing with SD the EST subsystem will use the subsystem certificate
to communicate with the CA. An additional subsystem user is created when
deployed in a separate instance.
Alternatively, standalone 2 step installation is provided and in this
case the sslserver and subsystem certificate have to be generated during
installation.
EST cannot create its own SD since the related APIs are not present.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/2704ee4bb1fe2204c29f171bded62f9cba8adf0e">2704ee4b</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-10-15T13:58:42+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update EST tests to use the new deployment approach
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/2d7a0d8ed86bb1baec7d91e209e9c496342e2c98">2d7a0d8e</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-10-15T13:58:42+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add EST upgrade script
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/73106141063c207c5d9bce6b328fd6bcf4bf0648">73106141</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-10-15T13:58:42+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update EST installation documentation
The EST installation has been modified to work with Security Domain or
in standalone mode like the other subsystem. The documentation has been
updated to match the changes.
Additionally, the new policies for subject matching are included.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/9c24f06ef6ef706a0e70f282bdc5828e507ed80b">9c24f06e</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-10-15T13:58:42+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add EST document for manual upgrade
The upgrade script should perform the update process to allow EST
joining SD but there are conditions where these cannot be updated and
the administrator has to manually update the configuration.
A document describing these steps is included.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/dc6fc23163c452d9e85a1e8ce6ce459b931f9af6">dc6fc231</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-10-15T13:58:42+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix pylint executable miss in workflow
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/743df7583ebfced1f44fe1eea20bbae2366abbae">743df758</a></strong>
<div>
<span> by gkimetto </span> <i> at 2025-10-22T08:30:49-04:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add helpful error message for missing NSS database password #5163
Updated useful message when "pki client cert request" fails with unfriendly error when NSS password is not provided
Updated message to: "NSS database password required. Use -c <password> to provide NSSDB password."
Fix: #5163
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/47355e401931406cc6ffb657617cee6b5eec7256">47355e40</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-10-22T17:40:57+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix export sslserver CA in case of multiple certificates
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d0c4bfe43e6f593db937415484d2923d36e43281">d0c4bfe4</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-10-24T10:54:29-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add key ID file option
The pki nss-key-create, nss-key-show, and nss-cert-request
commands have been modified to provide an option to specify
a file to store the ID of a new key or to load the ID of an
existing key.
The test for PKI CLI with ECC has been updated to use the
new option.
https://github.com/dogtagpki/pki/wiki/PKI-NSS-Key-CLI
https://github.com/dogtagpki/pki/wiki/Generating-Certificate-Request-with-PKI-NSS
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/9f3084fa997655e776a5387a0fe0826c9d7fd05b">9f3084fa</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-10-27T11:59:55-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move basic EST test into separate file
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/3de2e95c9598b9a50af7adcd2ebd59caf4ac59e3">3de2e95c</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-10-27T11:59:55-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update log messages for external commands
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/2bda65ad9149b9e4a3e219c0feb857e3032f2c3f">2bda65ad</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-10-28T10:26:22-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add shell/batch mode for PKI CLI
The PKI CLI has been modified to provide a shell/batch mode
to run multiple commands in a single Java process which can
minimize the number of authentications to external resources
(e.g. NSS, HSM, SSL) since it will maintain a single session
across multiple commands.
Some tests have been updated to use PKI CLI in shell/batch
mode.
https://github.com/dogtagpki/pki/wiki/PKI-CLI
Resolves: https://github.com/dogtagpki/pki/issues/2701
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/8a2c13117ef909bb98e700997579ef6144897763">8a2c1311</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-10-29T18:13:56-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix incorrect pki-tomcat JAR filename
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f612849686aa17f56f5acc32ceed2e8c083d3496">f6128496</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-10-30T10:17:09+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add support to ML-DSA
New profiles and installation example are included to deploy a CA using
ML-DSA algorithms in all certificates.
The provided installation example is for ML-DSA-44.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/fa92763eb7676b23900a172894752a8d58181c43">fa92763e</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-10-30T12:30:06+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix python indent format error
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e6f1e91de41ce554fd9c291a233c7064850f0f17">e6f1e91d</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-10-31T16:50:24+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix keyring exception for missing id
When a password is searched in keyring but it is not present the
following log message fails with a TypeError because the key id is null.
This error is not handled and the startup fails with a message which
make not clear what is generating the problem.
The behaviour is modified to raise a value error which is handled and if
the password cannot be retrieved the final error will be something like:
Exception: No available password to access the token "internal"
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/1a967eca519c6f6b552ce0480be3325da626d502">1a967eca</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-10-31T18:43:25+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove log for host-manager and manager
The host-manager and manager web application are not deployed with
dogtag and following the tomcat recommendation [1] the logger should be
removed if the application are not configured.
1. https://tomcat.apache.org/tomcat-10.0-doc/logging.html#Considerations_for_production_usage
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/55560e0f8fca2c1c9146610970c735405e972963">55560e0f</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-10-31T18:43:25+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix missing JAVA_OPTS
In tomcat 10 the JAVA_OPTS is not present in default configuration.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c4c60b44123d8f5b608cd9c12105e5356d99cfb0">c4c60b44</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-10-31T18:43:25+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Temporary fix for healthcheck
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/fe07ddb4d6253ea67d9e58b75fb8d7616627a2fb">fe07ddb4</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-11-03T17:36:45+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix python lint problem with log message
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/5656f3df6a4319c04aec44447d07ab6ad30a4a35">5656f3df</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-11-04T17:36:44-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update chown commands to use colons
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/738d7e1b5d40297c080e1f89ea2822befd40835e">738d7e1b</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-11-05T17:27:26-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move MainCLI.executeCommands() into CLI
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b2dc19998ff313b762cf734f5ecca0f57193f532">b2dc1999</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-11-05T19:13:05-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up log messages in PKISubsystem.run()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c2a7d6675736c563d4e0c3f7ef93648555232655">c2a7d667</a></strong>
<div>
<span> by Fraser Tweedale </span> <i> at 2025-11-06T17:31:49+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Use a single worker thread for LWCA key retrieval
Lightweight CA key retrieval is failing in an IPA test scenario
where many sub-CAs are created in rapid succession. The test output
suggests resource exhaustion (e.g. LDAP server connections). The
current implementation spawns a separate, concurrent key retriever
thread for each new LWCA. This behaviour is suspected to be the
cause of the failure.
Modify LWCA key retrieval to use a single retriever thread per
replica. Retrievals are processed sequentially. The exponential
backoff on failure is retained.
The queue behaviour lives in the new `KeyRetrieverWorker` class,
which uses `java.util.Timer` under the hood. `CAEngine`
instantiates a single instance of `KeyRetrieverWorker`, which in
turn starts the single timer thread and manages the queue.
Fixes: https://issues.redhat.com/browse/RHEL-27181
Fixes: https://github.com/dogtagpki/pki/issues/4677
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f1ccb46c410437417db18d07edcf749b689e5bdb">f1ccb46c</a></strong>
<div>
<span> by Zachary Sherman-Burke </span> <i> at 2025-11-06T16:42:13-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Added upgrade script to add latest version of java to JAVA_HOME in tomcat.conf file
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/31f59190cce2ce98628c736794ecd1efd194fb7c">31f59190</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-11-07T09:03:33-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update NSSDatabase.get_cert() to use pki nss-cert-export
The NSSDatabase.get_cert() has been updated to use
pki nss-cert-export instead of certutil.
The tools tests have been updated to verify the behavior
of pki nss-cert-show and nss-cert-export commands.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/27c257807001662c97c219f3014781e6c217cf6b">27c25780</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-11-07T09:05:37-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update NSSDatabase.get_trust() to use pki nss-cert-show
The NSSDatabase.get_trust() has been updated to use
pki nss-cert-show instead of certutil.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/325851d0edca42d0f1d7714a8c8bc97071bda52d">325851d0</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-11-07T15:16:58-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update NSSDatabase.create_key()
The NSSDatabase.create_key() has been modified to call
pki nss-key-create with password.conf.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/16f6e7fbc3c6446166b19f5a9dca98210b2156f5">16f6e7fb</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-11-10T18:38:44-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update NSSDatabase.modify_cert() to use pki nss-cert-mod
The pki nss-cert-mod has been added to modify the trust
flags of an existing cert in NSS database.
The NSSDatabase.modify_cert() has been updated to use
pki nss-cert-mod instead of certutil.
The pki client-cert-mod has also been deprecated since
it uses certutil.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/df4c7a41363df47fa604beb2cb779da7b0da3b57">df4c7a41</a></strong>
<div>
<span> by jmagne </span> <i> at 2025-11-10T17:27:59-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix the SSH config on F43 for certain CI tests. (#5210)
This fix is part of getting old Tomcat 10.1 working under the new CI test changes, which now assumes f43.</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d90f13c4c00f4a653b9783a7f35b5897e9f3025e">d90f13c4</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-11-11T11:25:59+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add ML-DSA support for certificate request
The `pki client-cert-request` `--algorithm` option can specify the value
"mldsa" and the `--length`` can be 44, 65 (default) or 87.
Similarly, the command `pki nss-cert-request` `--key-type` option can specify the value
"ML-DSA" and the `--key-size` can be 44, 65 (default) or 87.
Finally, the command `pki client-cert-request` has been deprecated.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/438655d9b8b4afdf29bbf48a96ce5a5fecc7adad">438655d9</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-11-11T09:21:57-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update PKISubsystem.validate_system_cert()
The pki nss-cert-verify has been updated to provide an option
to validate the cert usage.
The PKISubsystem.validate_system_cert() has been updated to use
the new option.
The pki client-cert-validate --certusage option has been
deprecated.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/dc96083683c89bf741021f9f72002a323e013ad7">dc960836</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-11-12T17:17:31-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update test for pki pkcs12 CLI
The test for pki pkcs12 CLI has been updated to perform more
comprehensive validations.
The pki pkcs12-key-del has been updated to remove references
from the cert to the key being removed to avoid dangling
links.
The pki pkcs12-import has been updated to no longer assign
the default trust flags for CA certs if the --no-trust-flags
option is specified.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/da045da81c6c33441f650ba6cf495c5941ee7ce8">da045da8</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-11-13T12:00:55+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix update script for EST
Fix type for group operation requireing a set instead of a list.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/4055651aaec15c13b186ed2a77afc87565bb9270">4055651a</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-11-13T10:27:43-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Convert pki pkcs12-import to Java
Previously pki pkcs12-import was implemented both in Python
to import CA certs using certutil and in Java to import the
remaining certs using JSS. This was needed since JSS was not
able to preserve the nicknames when importing CA certs into
NSS database.
Since the latest JSS does not have that problem anymore, the
pki pkcs12-import has now been fully converted to Java. It
also has been modified to support the --no-ca-certs and
--no-user-certs options for backward compatibility. Some
options have also been deprecated to match the Python code.
The Python pki.cli.pkcs12 module has been removed since it's
no longer used.
The test for CA clone with secure DS has been updated since
certs are returned in a different order due to this change.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/fff82b9f071b182f9243b123ae4a46eb87336a05">fff82b9f</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-11-13T20:11:05-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update tools tests to check help messages
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/599930aa535aca089d347d1652d5994bd4383841">599930aa</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-11-14T11:30:39-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update SecurityDomainCLI
The SecurityDomainCLI has been updated to point to the security
domain running on the CA. The ProxyCLI is no longer used so it
has been removed.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/4daec6b0aaf97f6b5f4bfa568e2722c72694d18b">4daec6b0</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-11-14T13:13:00-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update tests to check pki CLI help messages
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d749d8aea484127546857a7c0c4565182dc6af0c">d749d8ae</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-11-17T10:36:47-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update tests to check external commands used in installation
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/0252a891a570bfe19e7c5a2de4ad7d33e38f25f6">0252a891</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-11-17T14:55:22-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Drop AuthorityCLI.getAuthorityClient()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/3dc4d29cec1c6ac9e535563138d7d3fe4cd37c92">3dc4d29c</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-11-17T15:18:10-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Drop CACertCLI.getCertClient()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/5735502793eba66bc081c6aaf9bf41330a436d7f">57355027</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-11-17T15:18:52-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Drop CA ProfileCLI.getProfileClient()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/522983399b0219b6df58b79137499c036c2bb28d">52298339</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-11-17T15:25:52-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Drop FeatureCLI.getFeatureClient()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f19c1d61369e5aca16d739c98da4d023c5bf1fe3">f19c1d61</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-11-17T15:33:38-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Drop GroupCLI.getGroupClient()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/3841fa880ea3dd4898d2f601b18ff81a73d0332f">3841fa88</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-11-17T15:44:03-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Drop SelfTestCLI.getSelfTestClient()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/eb45a0d2bbe1b0510972c7ee5241c05a810b6ca4">eb45a0d2</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-11-17T15:54:21-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Drop UserCLI.getUserClient()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b8d3f1a6396b0363e099b56f266b263cdae69943">b8d3f1a6</a></strong>
<div>
<span> by Taylor Herring </span> <i> at 2025-11-18T12:25:07-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Improve maven tomcat dependency section in pki.spec and removed requirement for pki-resteasy to fix CentOS Copr (#5226)
Added >= RHEL10 to conditional in maven tomcat dependency section in pki.spec to cover Centos10 & RHEL 10 distributions
Also removed BuildRequires line for obsolete pki-resteasy package (#5226)
Added a trim function for getting the version ID and ID from /etc/os-release file, since quotes are newly added to this file in centos 10.</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6022466dff0b02ad52a198cbd6909ea7860e3fdb">6022466d</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-11-18T13:00:18-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Drop unused KRAClient.init()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/13cce8dc73822f5071b7c142c28265a61fe4a53f">13cce8dc</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-11-18T13:00:18-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Drop TKSKeyCLI.getTPSConnectorClient()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/0f9fa63466bb587d715715483dcc67ee6914e096">0f9fa634</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-11-18T13:00:18-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Drop TPSConnectorCLI.getTPSConnectorClient()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/4ee1fe6108a050968ef7b0b84620b78c07e29e36">4ee1fe61</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-11-18T13:00:18-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Drop ActivityCLI.getActivityClient()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/5d7466134de8b989f47c42ff97ff262fac4d4d91">5d746613</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-11-18T13:00:18-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Drop AuthenticatorCLI.getAuthenticatorClient()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d383eb01229c4690217db2fbdff9dbe1d62a1c4b">d383eb01</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-11-18T13:00:18-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Drop TPSCertCLI.getTPSCertClient()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/5637a8004f1b8b832591558bd23b488b44189398">5637a800</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-11-18T13:00:19-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Drop ConnectorCLI.getConnectorClient()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f30f5ee84d983945f25b026adee0409093302f0d">f30f5ee8</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-11-18T13:00:19-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Drop TPS ProfileCLI.getProfileClient()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/03f219d27889621a657aeb86ceb7be56c3797a88">03f219d2</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-11-18T13:00:19-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Drop ProfileMappingCLI.getProfileMappingClient()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ac42b60c515a53e5ef84bdb2101bde97fb1bcabc">ac42b60c</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-11-18T13:00:19-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Drop TokenCLI.getTokenClient()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/1ea76f047ef58859f6b97f356048bcd1a3152015">1ea76f04</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-11-18T17:58:22-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update SubsystemCLI.getSubsystemClient() to take PKIClient
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/723ebc78253f16d98504bc991130cf42d86d8735">723ebc78</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-11-19T10:25:27-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update basic KRA test to validate key generation
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/62e1159482c19bf0336d153fbc59961f861c3cb7">62e11594</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-11-19T10:25:52-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Drop SubsystemCLI.login() and logout()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/68631e6d80eeb9c037e44b861a7234d036087d6e">68631e6d</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-11-19T10:25:52-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Drop SubsystemClient.login() and logout()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/498bce80d61f7db61531c9a0abbe7f6cff242994">498bce80</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-11-19T10:25:52-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Drop unused Client.clients
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a4f1f9755f66210d95c79880290d1bf7dfe34f0d">a4f1f975</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-11-19T10:25:52-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update CACertRequestCLI.getCertClient() to take PKIClient
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/bf0c30609a17800d9a85b88328725eac906ad7e6">bf0c3060</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-11-19T10:25:53-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update ConfigCLI.getConfigClient() to take PKIClient
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/fb35743147205d4b9f8e64d6f329c2d75f8636a9">fb357431</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-11-19T10:25:53-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update JobCLI.getJobClient() to take PKIClient
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b9f7ace395f7954298e449f46a707455fd83b592">b9f7ace3</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-11-19T13:28:34-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update KRAKeyCLI.getKeyClient() to take PKIClient
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/00f0ec239227e49055693afbf3f7cc8b0d0eb387">00f0ec23</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-11-19T13:28:34-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update AuditCLI.getAuditClient() to take PKIClient
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d8354076a0f735b2d41435e69e4ba47dc297264e">d8354076</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-11-19T13:28:34-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update KRAConnectorCLI.getKRAConnectorClient() to take PKIClient
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f4f51f9f7e01d8260083c0938da4a3979ab9921d">f4f51f9f</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-11-19T13:28:34-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update SecurityDomainCLI.getSecurityDomainClient() to take PKIClient
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d39388d63c5ac8fda233943efce662e275cf6afe">d39388d6</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-11-19T13:28:34-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Drop CLI.getClient()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/65864d82a012619aea9251db157647d830ac2423">65864d82</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-11-20T10:37:19-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add SubsystemCommandCLI
The SubsystemCommandCLI has been added to be the super class
of CLI commands that will access a PKI subsystem.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d2fe3b4d11e9c2884ad84845a760947ea597e21f">d2fe3b4d</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-11-20T10:41:48-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add SubsystemCommandCLI.subsystemCLI
The SubsystemCommandCLI.subsystemCLI has been added to point
to the subsystem CLI object so it can be used directly by
subsystem commands.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/baa2e60db7c469eb0a475f7a7f459100c5ab08c6">baa2e60d</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-11-20T17:20:29-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move SubsystemCLI.execute() into SubsystemCommandCLI
The code that performs subsystem authentication has been
moved from SubsystemCLI.execute() into SubsystemCommandCLI.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/14b57aa95fac35ebc66aeca9f9b6397f881f6b56">14b57aa9</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-11-21T10:34:36+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Rename keytype to MLDSA
Profiles and configuration use key type MLDSA so the command has been
modified to replace the key type from ML-DSA to MLDSA.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b7caa3794f55cbfed339e6ec6e9ea692b68746ae">b7caa379</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-11-21T10:29:23-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update CLIs to use SubsystemCommandCLI.subsystemCLI
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d39d576c43a8213ff4d7219fc1b08b2939222563">d39d576c</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-11-21T23:04:01-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Refactor CommandCLI.createOptions()
The CommandCLI.createOptions() has been modified to define the
default options to improve consistency and reduce duplicates.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/21653142e3cc31ae2daf543abfd15361ea334c46">21653142</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-11-24T20:30:04+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix typo in class RAClientAuthSubjectNameContraint
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/cb250438063730d926f83258ce3c5c8ee972f951">cb250438</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-11-25T12:27:59+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add ML-DSA support in key default and constraint
Modify the `keyConstraintImpl` class_id in CA profiles to support the
`keyType` value MLDSA and `keyParameters` 44,65,87 for the ML-DSA
algorithms.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/dc33fed643cb4d0f6eec8c1b53734925cae0042d">dc33fed6</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-11-25T12:27:59+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update profile for ML-DSA
All profiles are now accepting ML-DSA signatures and the ML-DSA specific
profiles have been updates to work with key constraints.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c8e127a0309ea1fdb6c2eb0a384755ff8cb31eb1">c8e127a0</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-11-25T12:27:59+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update script to add ML-DSA support in profiles
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a4512ba79b68cc80ffbc394cba7703dc4d447a75">a4512ba7</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-11-26T15:56:50+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix all profiles to support ML-DSA after upgrade
The upgrade script has been modified to update all the profiles
available in the instance to include ML-DSA signatures, including the
profile which are not in use by the CA.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b3e333002942c360e50d3a202d3593d079251ec2">b3e33300</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-11-26T09:30:51-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Implements EST rfc7030 & rfc8951 fullcmc support (#5224)
* Implements EST fullcmc support: rfc7030 & rfc8951
Forwards CMC requests from EST to CA's ProfileSubmitCMCFull endpoint.
Preliminary implementation uses single profile configured in backend.conf.
Reflects fullcmc response status in HTTP response header.
Returns:
- success response in base64 of simple PKI Response
- failure response in base64 of full CMC response
Assisted-by: Claude
IDM-3993
* Add support of cert constraint-based authorization for EST /fullcmc
- Adds CMCAuthForEST authenticator to handle EST-forwarded CMC requests.
* Validate EST subsystem TLS cert using AgentCertAuth
* Validate RA-authenticated client cert via CMC
- Add RAHeaderClientCertSubjectNameConstraint for EST fullcmc
* Reads client cert from HTTP header (via SessionContext)
* Allows agents to request any subject name
* Restricts non-agents to their own certificate subject
- Extract isAgentCert() to EnrollConstraint base class for reuse
- Update RAClientAuthSubjectNameConstraint to use inherited method
- Updates CMCOutputTemplate to set pki-cmc-status header for EST requests
- Adds estFullcmcDeviceCert profile to use new constraint
- Register new constraint in registry.cfg
- Updates CS.cfg to register new authenticator and profile.
Assisted-by: Claude
IDM-4021</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/3a892a461ee09a6941c7ef5e54b46c4de7d85212">3a892a46</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-11-26T20:40:11+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix issue with ML-DSA key type
In a previous commit the key type for ML-DSA family algorithm has been
modified from ML-DSA to MLDSA but there were several missed changes
creating problem in some cases.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/412a296c734fca59ac37ef02a7a8480fde89063e">412a296c</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-11-27T12:00:52+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove unused code in CLI.execute()
The code that traverses the CLI hierarchy in CLI.execute()
is no longer used since the MainCLI.executeCommand() and
PKIServerCLI.executeCommand() are using CLI.findModule() to
find the command module to execute directly.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ac7564179f98aa84cf4db79098026b3f3ba9dac1">ac756417</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-11-27T14:21:45+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add CLI.createOptions()
The CLI.createOptions() has been added to create CLI options
more consistently.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/89c5db5ca80d87241166b2ddaa8879927c16cac9">89c5db5c</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-11-27T15:18:14+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add CLI.parseOptions()
The CLI.parseOptions() has been added to parse CLI options
more consistently.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/bd85b32e626b665e1c56a89ae7bca602308e6a44">bd85b32e</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-11-28T07:29:54+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add SubsystemCommandCLI.getSubsystemClient()
The SubsystemCommandCLI.getSubsystemClient() has been added
to simplify obtaining the client object for a subsystem.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6007947bccc9cd44a28adacc88c00b151ac4d595">6007947b</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-11-28T07:29:55+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add SubsystemCommandCLI.getPKIClient()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/1eef9cce456bc780f7187f84aea64762ea195f00">1eef9cce</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-11-28T07:29:56+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Rename MainCLI.getClient() to getPKIClient()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/72109735dddcd82b9ddd7765b6f7a8b4ec738c11">72109735</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-11-28T07:29:58+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update tests to check for warnings during installation
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d7dc9d7fb2f2339c660c644ab977847b3b67f9f3">d7dc9d7f</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-12-02T13:02:49-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add connection params for pki <subsystem>-* commands
Previously the connection params (e.g. server URL, username,
password, nickname) for PKI CLI had to be specified globally
(i.e. pki <connection> <command>) and they would be used by all
commands running in shell/batch mode.
To support connections to multiple servers in shell/batch mode,
the subsystem commands have been modified to provide command-
specific connection params (i.e. pki <subsystem>-* <connection>).
The SubsystemCommandCLI has been modified to define the connection
options for all subsystem commands and also parse the specified
params. If the server URL is specified the command will use the
specified connection params, otherwise it will use the global
connection params.
The pki --http-output option has been added to replace the
--output option to avoid conflicts with existing command
options with the same name.
The Python code used by pkispawn/pkidestroy has been modified
to use the command-specific connection params such that later
it will be able to use the shell/batch mode.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/99be58e2f8dc150bd3ded9eeab679311abb1d28a">99be58e2</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-12-03T10:50:01+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add CI for ML-DSA
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/7039ec8231bb55a0e957ec4104b829f7da0e7662">7039ec82</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-12-03T10:50:01+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add installation doc for ML-DSA CA
Documentation for CA with ML-DSA key based on the equivalent for ECC
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/936c404425f1bc4d0da5bb2169975933baea2419">936c4044</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-12-03T21:56:34+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add pki ca-sd-join/leave
The pki securitydomain-join/leave commands actually only work
with a security domain running inside the CA, so the commands
have been replaced with pki ca-sd-join/leave commands which
also support command-specific connection params.
In the future all remaining pki securitydomain-* commands will
be replaced with pki ca-sd-* commands.
The Python code used by pkispawn/pkidestroy has been modified
to use the new commands.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ed4f2cd594e73dc81d8745624426f39b7ff73a71">ed4f2cd5</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-12-03T22:38:56+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix typo
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/396dfc1f9fa4f8b5fc6d6b44fd1d23ca9db6d701">396dfc1f</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-12-03T18:38:59+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix wrong parameter value in documentation
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f53863fd8ea7a198f9344c9d17474238ae585d42">f53863fd</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2025-12-04T17:59:36+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove check for pki log folder
Remove the check to pki logs folder because it is not always present.
Tomcat 10.1 [1] has modified the logging system introducing a lazy creation
so log folder and file are created only if there is something to write.
Therefore, the pki folder for pki webapps logs is not created since at
default logging level there should be no logs.
1. https://fedoraproject.org/wiki/Changes/Tomcat10ChangeProposal#Detailed_Description
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/993ce30a16deba6da27fbd6089b33e76c871075c">993ce30a</a></strong>
<div>
<span> by dependabot[bot] </span> <i> at 2025-12-09T10:04:38+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Bump ansible from 8.5.0 to 12.2.0 in /tests/dogtag/pytest-ansible
Bumps [ansible](https://github.com/ansible-community/ansible-build-data) from 8.5.0 to 12.2.0.
- [Changelog](https://github.com/ansible-community/ansible-build-data/blob/main/docs/release-process.md)
- [Commits](https://github.com/ansible-community/ansible-build-data/compare/8.5.0...12.2.0)
---
updated-dependencies:
- dependency-name: ansible
dependency-version: 12.2.0
dependency-type: direct:production
...
Signed-off-by: dependabot[bot] <support@github.com></pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d4bdc159b8135fb0bd7b527cbeb2e964acd89528">d4bdc159</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-12-10T12:25:51+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update tests to check external commands used by pkidestroy
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/43d574b03d1299828adff345b6f2eef2d0ec491c">43d574b0</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-12-10T15:32:46+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Rename server's SubsystemCLI into ServerCommandCLI
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d1fa6394195c535da557583639b9be6f9b4fd682">d1fa6394</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-12-10T15:34:02+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add default options for ServerCommandCLI
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/24d05d7170a7d07cb23565d13ef7e4264ad1945b">24d05d71</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-12-12T00:03:24+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Convert pki-server <subsystem>-db-* commands to Java
The pki-server commands are mainly implemented in Python which
will use PKI Python API, but if the API needs to use NSS, LDAP,
or PKI Java API it will call an external Java code and each
call will require a separate NSS authentication.
To avoid this problem some of the pki-server <subsystem>-db-*
commands used by pkispawn/pkidestroy have been converted to run
the corresponding Java code directly so later they can be
executed in shell/batch mode which only requires a single NSS
authentication.
The methods in PKISubsystem that call these commands have
been modified to call pki-server so later these calls can
be converted into shell/batch mode.
A new global -i option has been added to pki-server CLI to
specify the instance name. This later can be used to specify
the instance name for all commands executed in shell/batch
mode.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d26b7347441e1fba076d8ccbb0c6fbf93105b0f8">d26b7347</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-12-13T08:31:40+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Convert pki-server <subsystem>-user-* to Java
In order to minimize the number of NSS authentications the
pki-server <subsystem>-user-* commands used during installation
have been converted to run the corresponding Java code directly
so later they can be executed in shell/batch mode.
The SubsystemUserAddCLI Java class has been modified to provide
options to import the user certificate which were provided by
the corresponding Python class.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f17ddabea6accaf9dc21da9ad6c8917435797e93">f17ddabe</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-12-13T08:31:40+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Convert pki-server <subsystem>-group-* to Java
In order to minimize the number of NSS authentications the
pki-server <subsystem>-group-* commands used during installation
have been converted to run the corresponding Java code directly
so later they can be executed in shell/batch mode.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/27c8959d0fdb19496a1a2adcf596e6de649519af">27c8959d</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-12-15T23:06:25+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Convert pki-server ca-profile-* to Java
In order to minimize the number of NSS authentications the
pki-server <subsystem>-profile-* commands used during installation
have been converted to run the corresponding Java code directly
so later they can be executed in shell/batch mode.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/717e0b2753f5974606140865d03e650da292b5a8">717e0b27</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-12-15T23:06:25+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Convert pki-server ca-cert-* to Java
In order to minimize the number of NSS authentications the
pki-server <subsystem>-cert-* commands used during installation
have been converted to run the corresponding Java code directly
so later they can be executed in shell/batch mode.
The CACertCreateCLI and CACertImportCLI Java classes have been
modified to provide the options to specify the CSR and whether
to import the newly created cert which were provided by the
corresponding Python classes.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/1784d642288b4aa6165e681c89ad92339b2cc481">1784d642</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-12-15T08:37:22-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add EST /fullcmc upgrade script (#5249)
- Add device.conf with appropriate extensions for device certificates
(keyUsage: digitalSignature, keyEncipherment; extendedKeyUsage: clientAuth)
- Update estFullcmcDeviceCert.cfg to remove inappropriate extensions:
- Remove nonRepudiation from keyUsage (not appropriate for devices)
- Remove emailProtection from extendedKeyUsage (not needed for devices)
These changes ensure device certificates have appropriate key usage for
IoT/device authentication rather than user-oriented extensions."
- 01-EnableEST.py: updated to update changes needed in the CA
- 02-EnableESTFullCMC.py: added to update changes needed in the EST
Assisted-by Claude
IDM-4226</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c0f7f10b1b257a6f5d1967f63945a1fea5e7ed1a">c0f7f10b</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-12-15T17:09:50-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>fix pylint issue
/usr/share/pki/server/upgrade/11.9.0/01-EnableEST.py:172:32: E128 continuation line under-indented for visual indent
'com.netscape.cms.authentication.CMCAuthForEST')
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/41237febb89589d073fa90643f72614a3eb80d1c">41237feb</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-12-16T14:55:08+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update HSM tests to check external commands
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d59043ffb1617fc8863e0d37c4b1b933783db2a7">d59043ff</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-12-16T08:42:44-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix CMCAuthForEST to support non-agent users (#5250)
- Skip CA database authentication for EST fullcmc enrollment in CMCAuth:
Extract CA user database authentication from verifySignerInfo() into
a separate protected authenticateCAUser() method that can be cleanly
overridden by subclasses.
Changes to CMCAuthForEST.java:
- Add authenticateCAUser() override that skips CA database authentication
- Let profile constraint handle agent vs non-agent checks.
- Add ML-DSA signature algorithm support to CMC authentication
Note: Comprehensive testing with ML-DSA certificates will be handled in a separate ticket to ensure thorough validation.</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a6cab315c318cb8abd81709c255015546d6994f4">a6cab315</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2025-12-16T08:55:26-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Create EST fllcmc example install/setup/test doc (#5251)
Assisted-by Claude
idm-4310</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c3909f56e40819378d0f464f8b560193efd24a5e">c3909f56</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-12-17T11:28:54+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Convert pki-server sd-* to Java
Currently the pki-server sd-* commands are hard-coded to work
only with CA. Since a security domain can also run on standalone
KRA and OCSP these commands have been replaced with pki-server
<subsystem>-sd-* commands.
In order to minimize the number of NSS authentications the
pki-server <subsystem>-sd-* commands used during installation
have been converted to run the corresponding Java code directly
so later they can be executed in shell/batch mode.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/edc0b71180a0e8f54be927878a39d45e8ccd824a">edc0b711</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-12-17T11:28:54+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Convert pki-server <subsystem>-range-* to Java
In order to minimize the number of NSS authentications the
pki-server <subsystem>-range-* commands used during installation
have been converted to run the corresponding Java code directly
so later they can be executed in shell/batch mode.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d166a0cb26d2eeae87d6d4fb006b016ac3026b57">d166a0cb</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-12-19T01:39:26+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Convert pki-server <subsystem>-db-repl-* to Java
In order to minimize the number of NSS authentications the
pki-server <subsystem>-db-repl-* commands used during installation
have been converted to run the corresponding Java code directly
so later they can be executed in shell/batch mode.
The Java code has been modified to provide DS connection params
as in the original Python code.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ded27328673380a8a17fc0e4b33839d8feee729a">ded27328</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-12-19T01:39:26+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Convert pki-server <subsystem>-db-vlv-* to Java
In order to minimize the number of NSS authentications the
pki-server <subsystem>-db-vlv-* commands used during installation
have been converted to run the corresponding Java code directly
so later they can be executed in shell/batch mode.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/205623db9f25327b456a3756da0f1cadbf66f204">205623db</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-12-24T05:58:37+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Convert pki-server <subsystem>-acl-* to Java
In order to minimize the number of NSS authentications the
pki-server <subsystem>-acl-* commands used during installation
have been converted to run the corresponding Java code directly
so later they can be executed in shell/batch mode.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b954f2ebcaaca8b29f331f1db68bd9c533a501d9">b954f2eb</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-12-24T05:58:37+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Convert pki-server <subsystem>-crl-* to Java
In order to minimize the number of NSS authentications the
pki-server <subsystem>-crl-* commands used during installation
have been converted to run the corresponding Java code directly
so later they can be executed in shell/batch mode.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/dafb5f01d0820fe38a588905c1be7faa42341082">dafb5f01</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2025-12-24T07:19:49+08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Convert pki-server <subsystem>-id-generator-update to Java
In order to minimize the number of NSS authentications the
pki-server <subsystem>-id-generator-* commands used during
installation have been converted to run the corresponding
Java code directly so later they can be executed in
shell/batch mode.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b868d7ba6b2d71c8741fd3a433ec4578401c28dc">b868d7ba</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-01-03T09:35:55+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update return code in pki nss-cert-export
The pki nss-cert-export has been modified to return an error
code 1 if the cert does not exist in order to distinguish it
from other errors.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e95530cf523f20e14d6c4794cb659a4aefb15c92">e95530cf</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-01-03T10:43:44+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add pki nss-key-create --token option
The pki nss-key-create has been modified to provide an option
to specify the token to generate the key.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/8f1b8cd9b3253c327fca677062f811728ebd26fa">8f1b8cd9</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-01-03T10:43:44+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add pki nss-cert-request --token option
The pki nss-cert-request has been modified to provide an option
to specify the token to generate the key to load the key from.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/557d02e41c3877e7824dd1e97fcb962ff1fed2e1">557d02e4</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-01-03T12:07:02+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add pki nss-key-create --output-file option
The pki nss-key-create has been modified to provide an option
to store the output into a file.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/8dbfad35c0ef88db91d7796ece65790eeccb59d1">8dbfad35</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-01-03T12:07:02+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add pki nss-cert-show --output-file option
The pki nss-cert-show has been modified to provide an option
to store the output into a file.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/17caeabd85014b5b86aabcd677c921049f309a7c">17caeabd</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-01-05T13:32:51+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update NSSDatabase.verify_cert()
The NSSDatabase.verify_cert() has been updated to take an
optional cert usage param.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/2342d4ca2e63f3d8365c68878bb87261a87337ee">2342d4ca</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-01-10T07:23:32+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update CI to support Fedora 42
Currently the CI only works with Fedora 43 which uses Tomcat 10.
Sometimes it's necessary to run the CI with a different Fedora
version using the BASE_IMAGE variable. In order to support Fedora
42 which uses Tomcat 9, the CI has been updated to get the Fedora
version from the running container then use it to perform the
proper validation.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/43d21879347bed6d1ef220bcbc682a7d5170f355">43d21879</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2026-01-12T16:44:07+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update FIPS option for JDK>25
When running in FIPS mode the provider SunJSSE+SunPKCS11 conflict with
JSS. To avoid problems the JVM has to start in non FIPS mode, JSS will
take care to use the correct policy.
>From Java 8 to 24 the fips was disabled with the option `-Dcom.redhat.fips=false`
(see [1]). In Java 25 the option has been changed and it is
`-Dredhat.crypto-policies=false` (see [2]).
To avoid problems both options are included so fips is disabled with all
JVM versions.
Fixes #5256
1. https://docs.redhat.com/en/documentation/red_hat_build_of_openjdk/8/html/release_notes_for_red_hat_build_of_openjdk_8.0.472/rn-openjdk-disabling-fips-on-rhel82
2. https://docs.redhat.com/en/documentation/red_hat_build_of_openjdk/25/html/release_notes_for_red_hat_build_of_openjdk_25.0.1/crypto_fips
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/87a91f8a490ed00c2f9fd40bf7c10c9ac1f4d05a">87a91f8a</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-01-13T02:46:32+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix KRA container test
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/df78f07619d80cc9539aec295a978e13a77a8d74">df78f076</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-01-13T02:46:32+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update NSSDatabase.export_cert_from_db()
The NSSDatabase.export_cert_from_db() has been converted into
export_cert_bundle() to improve reusability.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/3e041f90df0f16209d2f3c4083d0baa3a2fa2f15">3e041f90</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-01-13T02:46:32+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add pki --exit-on-error option
The pki CLI has been modified an option to exit immediately
if there's an error in shell/batch mode.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/458318379f0c0b88a66f0f658b0f61832c7eea5c">45831837</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2026-01-15T11:31:13+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix file permission when random serial is in use
Permission for the file `CS.cfg` is different if deployment use
sequential serial number (0o0660) or random serial number (0o0664).
The permission has been modified to always be 0o0660.
Fixes #4906.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/117135c59afa10be55fc3dc29fe6173cbc18bb13">117135c5</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2026-01-15T11:31:13+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add update script for configuration file permission
All configuration files should be 0o0660 but with random serial number
they could have different permission. It has been fixed and the script
will update current instances.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/fa0d4ba5aa67cd26a9b7ec5606a5164d7cc12567">fa0d4ba5</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2026-01-15T18:15:02+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update to version 11.9.0-beta1 and fix references
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/2838568517983211093ef846450ae8b14b938375">28385685</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2026-01-15T18:26:33+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update version to 11.10.0-alpha1
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/444dc7d30f353004db3698ebf2ff119e7b7b65cb">444dc7d3</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-01-16T02:51:23+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Convert pki password-generate to Java
The pki password-generate CLI has been converted to Java
so that later it can be used in shell/batch mode.
A new test has been added to verify pki password-generate
with default and non-default charsets.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d530a2c79925d0197d8bd1569255911d237c7435">d530a2c7</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2026-01-16T12:26:26+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update jss requirements to 5.10
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/156096ecb1e0c8a250b204544e7e6124b58e762e">156096ec</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2026-01-16T16:53:28+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix permission in container configuration
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/af48a58c22cb5984319f7c79bfdf3cca73a64c0f">af48a58c</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2026-01-21T10:41:43+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix python pylint error in EST upgrade script
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/19540347037ee6f16db00f1b401d64fa695dadf1">19540347</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2026-01-21T10:42:26+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix python pylint error in EST upgrade script
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/59d747fa3d43f4311644fdbe3bd62f4b81165be0">59d747fa</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-01-22T01:04:56-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix publish job
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a4b15f429b0dac87f3295a61fbc71ea4c9c04471">a4b15f42</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-01-22T16:33:04-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up RPM spec
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/8e8da6361022d9229c684dfab829f4bb15db0c55">8e8da636</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-01-22T18:02:28-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up RPM spec
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/487a56cd6b5daa8519b5dbbfe319ec5d8df9bce0">487a56cd</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2026-01-23T10:13:37+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix CMake build with tomcat10
CMake build had tomcat-9 library hard-coded and has been removed to get
it from the `build.sh`.
The `build.sh` test to identify the tomcat version to use was not
working with dotted version (e.g. 10.2) and it has been fixed.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/1ed40e5c071f77dd447598ce43537cf41fe9afda">1ed40e5c</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2026-01-23T10:16:59+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix CMake build with tomcat10
CMake build had tomcat-9 library hard-coded and has been removed to get
it from the `build.sh`.
The `build.sh` test to identify the tomcat version to use was not
working with dotted version (e.g. 10.2) and it has been fixed.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/cb9b0f602b3f394a65107a9144588406be1830fa">cb9b0f60</a></strong>
<div>
<span> by gkimetto </span> <i> at 2026-01-26T09:08:46-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>[DEV] [FIX] OCSP response provides a SHA1 signature in the header packet #DOGTAG-4129
Add support for detecting and optionally rejecting OCSP requests that
use deprecated digest algorithms (MD2, MD5, SHA-1), and allow
configuration of the OCSP response signing algorithm.
Doc update:
Add this CS.cfg Configuration for CA's built in responder in pki-tomcat:
# /var/lib/pki/{instance}/conf/ca/CS.cfg
# Reject deprecated algorithms (default: false)
ca.ocspRejectDeprecatedAlgorithms=true
# Configure response signing algorithm (default: use signing unit default)
ca.ocspResponseSigningAlgorithm=SHA256withRSA
Alternatively for Standalone OCSP Responder
Edit /var/lib/pki/<instance>/ocsp/CS.cfg and add:
ocsp.rejectDeprecatedAlgorithms=true
ocsp.responseSigningAlgorithm=SHA256withRSA
Supported Signing Algorithms:
- SHA256withRSA
- SHA384withRSA
- SHA512withRSA
- SHA256withEC
- SHA384withEC
- SHA512withEC
After making changes, restart the PKI instance:
systemctl restart pki-tomcatd@<instance>.service
Fix: DOGTAG-4129
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/753f1702aa33023ee77a978cb725afc09ca927a9">753f1702</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2026-01-27T16:12:37+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add ML-DSA key option to caInternalAuthAuditSigningCert profile
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/755fca79ed12d8d27118816a3bf10d56d482a980">755fca79</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2026-01-27T16:15:47+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add ML-DSA key option to caInternalAuthAuditSigningCert profile
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/9d3de1bf1978070b8ea303b792478bbeccc2373c">9d3de1bf</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2026-01-28T12:28:00+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move client to APIs v2
CLI default APIs is moved to v2. v1 APIs can still be used only if
specified in the CLI.
Additionally, certrequest operation has been fixed because the v2 does
not provide the requestURL with id in decimal format..
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/4a29f097b2dba99f89488737ff9fe8f5497fd211">4a29f097</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2026-01-28T12:28:00+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update action for v2 APIs
Since CLI is now using the v2 APIs as default the command the test have been update to verify default and v1 APIs. Additionally, checks on server logs have been fixed since they are different because of different API paths.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c47795675704bf1693d2a8ca70318ee0c2085c2e">c4779567</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2026-01-28T12:28:00+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix EST action with postgresql
The `tomcat-digest` command does not work in Fedora 43 with tomcat10 out-of-the-box but because of library problem. The problem is solved providing a custom CLASSPATH to a proper tomcat library.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b063a02ff2ba8f0831b725c097075c6b80cb270e">b063a02f</a></strong>
<div>
<span> by gkimetto </span> <i> at 2026-01-28T14:04:11-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>[DEV] [FIX] OCSP response provides a SHA1 signature in the header packet #DOGTAG-4129
Add support for detecting and optionally rejecting OCSP requests that
use deprecated digest algorithms (MD2, MD5, SHA-1), and allow
configuration of the OCSP response signing algorithm.
Doc update:
Add this CS.cfg Configuration for CA's built in responder in pki-tomcat:
# /var/lib/pki/{instance}/conf/ca/CS.cfg
# Reject deprecated algorithms (default: false)
ca.ocspRejectDeprecatedAlgorithms=true
# Configure response signing algorithm (default: use signing unit default)
ca.ocspResponseSigningAlgorithm=SHA256withRSA
Alternatively for Standalone OCSP Responder
Edit /var/lib/pki/<instance>/ocsp/CS.cfg and add:
ocsp.rejectDeprecatedAlgorithms=true
ocsp.responseSigningAlgorithm=SHA256withRSA
Supported Signing Algorithms:
- SHA256withRSA
- SHA384withRSA
- SHA512withRSA
- SHA256withEC
- SHA384withEC
- SHA512withEC
After making changes, restart the PKI instance:
systemctl restart pki-tomcatd@<instance>.service
Fix: DOGTAG-4129
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/5f64d7868f52781876a4b2f992608798868f2ff6">5f64d786</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-01-28T14:27:24-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix upgrade script indexes
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/8b471e97aa9561e8c256c1dac14d3f3d632cc1eb">8b471e97</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-01-28T14:31:51-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix upgrade script indexes
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/47cef968c244e69fd41fab652f6cb2081564a1e1">47cef968</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2026-01-29T11:33:42+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add check for audit signature with ML-DSA
Enable audit signature in ML-DSA tests to verify the logger recognise
the keys and signature algorithms.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ee912a66ce63d67257c218a0a0131483738e0e89">ee912a66</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2026-01-29T11:33:42+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix audit signing with ML-DSA
When a certificate key is ML-DSA-* audit has to be signed with the
corresponding signature algorithm (the names of algorithm key and
signature are the same).
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a2c23b2b2a404b19821349f011e21205666e6513">a2c23b2b</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2026-01-29T11:42:49+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix EST action with postgresql
The `tomcat-digest` command does not work in Fedora 43 with tomcat10 out-of-the-box but because of library problem. The problem is solved providing a custom CLASSPATH to a proper tomcat library.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/504670fa6b67eb286f3bfd386d5d75663b4e4129">504670fa</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2026-01-29T11:43:02+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix audit signing with ML-DSA
When a certificate key is ML-DSA-* audit has to be signed with the
corresponding signature algorithm (the names of algorithm key and
signature are the same).
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/7c7c8c7fe42e410f6c43758dfafe03b4aa9f5780">7c7c8c7f</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2026-01-29T12:10:33+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add ML-DSA key option to caInstallCACert profile
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f1c6470663cb34e26b42b60e6f663e3b7380c1ca">f1c64706</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2026-01-29T12:11:19+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add ML-DSA key option to caInstallCACert profile
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/fcdfef338b6666e47b4bd74c56839fbf72f29a49">fcdfef33</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2026-01-30T15:45:07+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix ca test regular expression
Command `ca-cert-find` output has slightly changed the format and the
regular expression in test has been updated to get the right fields.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a64237d2a8be84d9dc394b6c7df844666701a6ac">a64237d2</a></strong>
<div>
<span> by Alessandro Garagnani </span> <i> at 2026-01-30T15:47:52+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix pki ca-cert-hold/release-hold/revoke showing Java exception
This patch fixes hold, release and revoke CLI Java implementations to handle errors in the same way as main CLI
This patch extend the handle error common behaviour to all childen of java.lang.Exception. Prior to this any uncaught exception more specific would have raised stacktrace logs to the standard output.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/7626bf28db846b9453343630cf59796280dd554f">7626bf28</a></strong>
<div>
<span> by Alessandro Garagnani </span> <i> at 2026-01-30T16:03:16+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix pki ca-cert-hold/release-hold/revoke showing Java exception
This patch fixes hold, release and revoke CLI Java implementations to handle errors in the same way as main CLI
This patch extend the handle error common behaviour to all childen of java.lang.Exception. Prior to this any uncaught exception more specific would have raised stacktrace logs to the standard output.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/eb548dd8c006fa4bf4e20d7dacf1262fcace5308">eb548dd8</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-01-30T23:46:10+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Disable ML-DSA test on Fedora 42
The ML-DSA test has been disabled on Fedora 42 since it's
failing with SSLV3_ALERT_HANDSHAKE_FAILURE. The test works
fine on Fedora 43 or later.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6e5e00890b1090cbe48ed84de816b6399009efae">6e5e0089</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-01-30T10:51:21-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Disable ML-DSA test on Fedora 42
The ML-DSA test has been disabled on Fedora 42 since it's
failing with SSLV3_ALERT_HANDSHAKE_FAILURE. The test works
fine on Fedora 43 or later.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/89c8c000cfc833788c60d85d17f612210ad163c4">89c8c000</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2026-02-02T14:02:34-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add VLV index for CRL generation by issuer + CI test (#5268)
This fixes unindexed LDAP searches during CRL generation by adding
the allRevokedCertsByIssuer VLV index.
The fix addresses two bugs found in the original DOGTAG_10_5_BRANCH
implementation (commit e587f95576):
- Bug 1: VLV index parent DN must match VLV search name
- Bug 2: nsindexVLVAttribute must reference the index, not search
Changes:
- Add allRevokedCertsByIssuer VLV search and index to vlv.ldif
- Add allRevokedCertsByIssuer-{instanceId}Index to vlvtasks.ldif
- Move VLV creation to after certificate installation in configuration.py
so that CA signing certificate DN is available for VLV filter
- Update SubsystemDBVLVAddCLI to read CA DN from NSS certificate and
set {caIssuerDN} template variable with enhanced logging
- Add setParam() method to LDAPConfigurator for dynamic templates
- Add note about LWCA limitation in configuration.py
CI Test:
- Added verification step to ca-crl-test.yml workflow
- Checks DS access log after CRL generation to confirm VLV usage
- Displays LDAP queries for revoked certificates showing index usage
Server Change doc:
- Added Server change doc for v11.10 and added entry for this fix
Tested on fresh installations and upgrades without restart.
Assisted-by: Claude
Fixes: DOGTAG-4244</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/34c5e74d7a8ae08fcf1335aede7d5ccf96fe2037">34c5e74d</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2026-02-02T15:02:23-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add VLV index for CRL generation by issuer + CI test (#5270)
This fixes unindexed LDAP searches during CRL generation by adding
the allRevokedCertsByIssuer VLV index.
The fix addresses two bugs found in the original DOGTAG_10_5_BRANCH
implementation (commit e587f95576):
- Bug 1: VLV index parent DN must match VLV search name
- Bug 2: nsindexVLVAttribute must reference the index, not search
Changes:
- Add allRevokedCertsByIssuer VLV search and index to vlv.ldif
- Add allRevokedCertsByIssuer-{instanceId}Index to vlvtasks.ldif
- Move VLV creation to after certificate installation in configuration.py
so that CA signing certificate DN is available for VLV filter
- Update SubsystemDBVLVAddCLI to read CA DN from NSS certificate and
set {caIssuerDN} template variable with enhanced logging
- Add setParam() method to LDAPConfigurator for dynamic templates
- Add note about LWCA limitation in configuration.py
CI Test:
- Added verification step to ca-crl-test.yml workflow
- Checks DS access log after CRL generation to confirm VLV usage
- Displays LDAP queries for revoked certificates showing index usage
Server Change doc:
- Added Server change doc for v11.9 and added entry for this fix
Tested on fresh installations and upgrades without restart.
Assisted-by: Claude
Fixes: DOGTAG-4244</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/38d63085667efab64c95815e5455248a70217154">38d63085</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-02-02T18:58:58-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Drop KRAConnector.get_ca_list_from_security_domain()
The KRAConnector.deregister() has been modified to reuse
PKIDeployer.get_domain_info().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f9c8e36ba63290016ef62a782322b228e917b7a0">f9c8e36b</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-02-02T18:58:58-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add PKIDeployer.remove_kra_connector()
The code that removes a KRA connector from a CA subsystem has
been moved into PKIDeployer.remove_kra_connector().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d2ae76150f5efde31ca332615ce21c2769381d78">d2ae7615</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-02-02T18:58:58-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add PKIDeployer.remove_kra_connectors()
The code that removes a KRA connector from all CA subsystems
has been moved from PKIDeployer.remove_kra_connectors().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d8de4baf5535d8a1de71b3a25f7153a0d4d61fbe">d8de4baf</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-02-02T18:58:58-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add PKIDeployer.remove_tps_connector()
The code that removes a TPS connector from a TKS subsystem
has been moved into PKIDeployer.remove_tps_connector().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/18f58c87b19dfb1fb9c94a07406d681a381bef85">18f58c87</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2026-02-04T14:51:28+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix certificate verification with multiple CA
If multiple CA root certificates are present in the NSSDB the CLI
`nss-cert-verify` will cycle among the CAs to verify the
signature. However, if CA certificate are configured with different
key algorithms the `PKITrustManager.checkCert()` method raises an
exception when the certificate key algorithm does not match the one for
the CA so the check will not move to the next CA certificate.
The `InvalidKeyCertificate` is handled to allow moving to the next
certificate.
Fixes: #5242
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/da542c370d2ad9520e8f5444b5d3c5fc76c240a5">da542c37</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2026-02-04T14:51:28+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix nss-cert-verify option dependency
The CLI nss-cert-verify `--cert-usage` option works only if the nickname is provided
but if a certificate file is provided there is no output indicating that
the check is skipped.
A `CLIException` is thrown to make evident the usage cannot be verified
if the certificate nickname is not provided.
Fixes: #5246
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d20c16a6c10a37a86557cbeab6a538661045c2c6">d20c16a6</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2026-02-04T14:53:34+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix certificate verification with multiple CA
If multiple CA root certificates are present in the NSSDB the CLI
`nss-cert-verify` will cycle among the CAs to verify the
signature. However, if CA certificate are configured with different
key algorithms the `PKITrustManager.checkCert()` method raises an
exception when the certificate key algorithm does not match the one for
the CA so the check will not move to the next CA certificate.
The `InvalidKeyCertificate` is handled to allow moving to the next
certificate.
Fixes: #5242
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b3dd4af6146cdbca4e1d5782365464f5e942e8a5">b3dd4af6</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2026-02-04T14:53:34+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix nss-cert-verify option dependency
The CLI nss-cert-verify `--cert-usage` option works only if the nickname is provided
but if a certificate file is provided there is no output indicating that
the check is skipped.
A `CLIException` is thrown to make evident the usage cannot be verified
if the certificate nickname is not provided.
Fixes: #5246
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f01cf683e126e75137935b25d4000e147db166d6">f01cf683</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-02-04T22:37:31+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix CA container tests
The CA container tests have been updated to support Tomcat 9
on Fedora 42 in addition to Tomcat 10 on Fedora 43 or later.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b04b4267bfd67e6ba8ecad8d5503ed2a362fee6e">b04b4267</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2026-02-04T16:41:48+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix MLDSA configuration example
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/efea1a65883d54a6b4b5d6566b2dbe0e6f719b6b">efea1a65</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2026-02-04T16:42:27+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix MLDSA configuration example
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c72bc8a62f848d117936bffed9689ea233e1cd10">c72bc8a6</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-02-04T10:45:34-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix CA container tests
The CA container tests have been updated to support Tomcat 9
on Fedora 42 in addition to Tomcat 10 on Fedora 43 or later.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/5edab9fef35cae1344fa09337a59ff8f19c9801c">5edab9fe</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2026-02-05T14:36:24+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix ML-DSA CA cloning
During cloning sslserver and subsystem certificate are created using a
dedicated certificate. The deployment script has been modified to
include the correct profile for ML-DSA and dedicated profiles have been
created.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/2f56482e074c3c9faf17ae53d76fb5bef4faf580">2f56482e</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2026-02-05T14:40:12+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix ML-DSA CA cloning
During cloning sslserver and subsystem certificate are created using a
dedicated certificate. The deployment script has been modified to
include the correct profile for ML-DSA and dedicated profiles have been
created.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/4fba4585bd83c77ebcb79a56d1cacc83e28f0a30">4fba4585</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-02-05T23:07:48+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update basic installation tests
The basic installation tests have been updated to
check the content of <instance>/conf/alias and
<instance>/conf/Catalina/localhost directories.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a59bfa0134b40eda345892e3b01bb4881c0b3654">a59bfa01</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2026-02-05T17:39:31+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix error in algorithm name for audit signing
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/2494057471b3d46e8518e9398f25fc622511d653">24940574</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2026-02-05T17:40:09+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix error in algorithm name for audit signing
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/8208a98218e0f116d2f6e2eb8bd7849e611d08b6">8208a982</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2026-02-05T19:12:28+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix admin profile for ML-DSA key certificate
If the subsystem is not a CA the admin certificate request should use
the profile `caMLDSAAdminCert` when the ML-DSA key is used but it was
using the default `caAdminCert` profile.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c63d5288029c74b9c63732909aa41d58004167cd">c63d5288</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2026-02-05T19:12:55+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix admin profile for ML-DSA key certificate
If the subsystem is not a CA the admin certificate request should use
the profile `caMLDSAAdminCert` when the ML-DSA key is used but it was
using the default `caAdminCert` profile.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c299f4e7789e12a0b22fd5023258a0e0c2aba7b5">c299f4e7</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-02-05T14:26:43-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update basic installation tests
The basic installation tests have been updated to
check the content of <instance>/conf/alias and
<instance>/conf/Catalina/localhost directories.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/fa922f29b90d978ef22d998c5527c21b03924cdb">fa922f29</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2026-02-06T09:42:13+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix typo in profile name for ML-DSA admin certificates
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/279f8d9843712dd8ae5fb7b33a259cba92e9b4d3">279f8d98</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2026-02-06T09:43:46+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix typo in profile name for ML-DSA admin certificates
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/89f7176dd5edacce7cf2f721cef98887b40f4f76">89f7176d</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2026-02-06T10:22:07+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update upgrade script for MLDSA
The profiles `caMLDSAInternalAuthSubsystemCert` and `caMLDSAInternalAuthServerCert` are included in the upgrade script for ML-DSA.
These profiles are used by other subsystem during spawn to generate
server and subsystem certificates through security domain.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e8fb66c307e404750944d7ad62e84dd52aa1517a">e8fb66c3</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2026-02-06T10:22:24+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update upgrade script for MLDSA
The profiles `caMLDSAInternalAuthSubsystemCert` and `caMLDSAInternalAuthServerCert` are included in the upgrade script for ML-DSA.
These profiles are used by other subsystem during spawn to generate
server and subsystem certificates through security domain.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/0c12fb51f1abaa787a6b50bff51eb8e4a1cdc597">0c12fb51</a></strong>
<div>
<span> by Michael L. Young </span> <i> at 2026-02-07T00:41:56+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add Rocky Linux support to get_tomcat_app_server
The get_tomcat_app_server function in build.sh only recognizes rhel,
centos, and fedora as valid distribution IDs. Rocky Linux uses ID="rocky"
in /etc/os-release, which caused the function to fall through to the
default case and return tomcat-9.0 instead of checking the version and
selecting tomcat-10.1 for Rocky Linux 10+.
This patch adds "rocky" to the case statement so Rocky Linux is treated
the same as RHEL/CentOS for Tomcat version selection.
Signed-off-by: Michael L. Young <elgueromexicano@gmail.com>
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/40a0834e465e97bbbc19394072380490ddcd1bd8">40a0834e</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2026-02-06T19:50:24+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Updating version to v11.9.0-beta2
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ea6fbae93340165bb90bc582452dc09c182eede2">ea6fbae9</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-02-09T22:39:51+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix localhost log file permission
Previously pki-server ran Java commands as the current user
(e.g. root), so files generated by the commands (e.g. localhost
log file) would be owned by the current user instead of PKI user
(e.g. pkiuser) which might cause issues later.
The PKIServerCLI.execute_java() has been modified to run the
command as PKI user by default unless the current user wants to
run it as itself.
The pki-server CLI has been modified to provide an option to
run the command as the current user which could be useful for
containers.
The methods in PKISubsystem that use pki-server CLI have been
modified to change the ownership of the temporary directory to
PKI user so that the files in it can be accessed by the CLI.
The CASubsystem.create_cert() has been modified to no longer
create a temporary directory since it's not actually needed.
The tests have been updated to verify that the localhost log
file is owned by pkiuser instead of root. The container tests
have been modified to store files in /tmp since the current
directory cannot be accessed by pkiuser.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/afaa7739aeb088b039525c1aaa7815937ab231e6">afaa7739</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-02-09T09:43:51-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix localhost log file permission
Previously pki-server ran Java commands as the current user
(e.g. root), so files generated by the commands (e.g. localhost
log file) would be owned by the current user instead of PKI user
(e.g. pkiuser) which might cause issues later.
The PKIServerCLI.execute_java() has been modified to run the
command as PKI user by default unless the current user wants to
run it as itself.
The pki-server CLI has been modified to provide an option to
run the command as the current user which could be useful for
containers.
The methods in PKISubsystem that use pki-server CLI have been
modified to change the ownership of the temporary directory to
PKI user so that the files in it can be accessed by the CLI.
The CASubsystem.create_cert() has been modified to no longer
create a temporary directory since it's not actually needed.
The tests have been updated to verify that the localhost log
file is owned by pkiuser instead of root. The container tests
have been modified to store files in /tmp since the current
directory cannot be accessed by pkiuser.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a8e59ce4b0aaa9e0fdea531d77a9ad80d4b79971">a8e59ce4</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-02-09T15:37:38-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add test-init.sh
The test-init.sh has been added to initialize the default
values of some environment variables in several branches.
This way the same code can be used in multiple branches
which simplifies the branching process.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/5d43b840aa944f4a9afb726326f6cb774c8b03fa">5d43b840</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-02-09T15:38:05-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add test-init.sh
The test-init.sh has been added to initialize the default
values of some environment variables in several branches.
This way the same code can be used in multiple branches
which simplifies the branching process.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/bc60dd88c57b08c4bf7c8a615b74ee349cbceda7">bc60dd88</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-02-09T16:53:43-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update healthcheck tests to show external commands
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/76d3c4c55eea4385f3da9fdfd129c8aaa7f9645d">76d3c4c5</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-02-09T18:11:28-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update healthcheck tests to show external commands
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/eaadbd3f4e37a56b7d9ae7beaf1f62ed09259a91">eaadbd3f</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-02-10T02:03:18+00:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up RPM spec
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/5219b9a798d1248dd6bc3e3e9755d33e7287cee0">5219b9a7</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-02-10T02:03:23+00:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update version number to 11.9.0-beta3
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/72137a59ec375926dba474b6db7bf91899e2c707">72137a59</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-02-10T20:24:47+00:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up RPM spec
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d750472564bd89b966423824bf3c3e64e06b3bcc">d7504725</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-02-10T20:20:02-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix default values in test-init.sh
The test-init.sh has been updated to set the default values
of environment variables properly for all branches.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c9e5a139c0b5c18a6698ec78e70b1d564b077a61">c9e5a139</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-02-13T04:45:32+07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add support for bundling commons-logging.jar
The build scripts have been updated to optionally support
bundling commons-logging.jar in addition to other libraries
into the RPM package.
The server test has been updated to check the libraries
included in the RPM package.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/4ff0bc838e73d521f8de50099266f21550c059db">4ff0bc83</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2026-02-13T10:01:39+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix AKI and SKI in PKITrustManager checkCert
The AKI and SKI in `checkCert(...)` where logged as `null` because the
UniqueId where extracted from the certificate instead of the proper
AKI and SKI extension. As reported in the RFC#5280 [1] the unique identifier
should not be used unless of specific case where subject are reused.
Additionally, an additional condition is included to skip the test in
case certificate AKI does not match with SKI of trusted certificate
since this is a requirement for a valid signature.
1. https://www.rfc-editor.org/rfc/rfc5280#section-4.1.2.8
Fix: #5247
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/437b88d844b27e17afdcd3fb07e67d4bf71bd522">437b88d8</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2026-02-13T10:09:04+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix registry update in EST upgrade script
The registry is not properly updated because the `save()` method
is called only if a condition is selected ignoring the others.
Additionally, the condition is not correct.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/eee444dd6fb5fea354a951212b2e21e7f1b487bd">eee444dd</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-02-13T15:40:28-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up CA tests
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/2ee02b255c87f5a7e633d2025f6ab6548dc1ca31">2ee02b25</a></strong>
<div>
<span> by Timo Aaltonen </span> <i> at 2026-02-16T14:22:18+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Merge tag 'v11.4.3' into m3
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/9c29b14bf0adf28e7b97bb6d00ec31540e7c6b5c">9c29b14b</a></strong>
<div>
<span> by Timo Aaltonen </span> <i> at 2026-02-16T14:22:23+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Merge branch 'master' into m3
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d717af04f0b3fe8cfddefca31b82eb43ae63e3a0">d717af04</a></strong>
<div>
<span> by Timo Aaltonen </span> <i> at 2026-02-16T20:38:10+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>version bump
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b3f3502fee3140e8ea8e4d437febeecaecd3ddb6">b3f3502f</a></strong>
<div>
<span> by Timo Aaltonen </span> <i> at 2026-02-16T20:38:29+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>delete more binaries
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/094791b7df81254003f0225cf61504ff8e3fae70">094791b7</a></strong>
<div>
<span> by Timo Aaltonen </span> <i> at 2026-02-16T20:50:50+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>patches: Refreshed.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/65ae3d331ffc19e7d40f54c6628b7caed3f0e333">65ae3d33</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-02-17T09:53:12-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add support for bundling Apache Commons library
The build scripts have been updated to optionally support
bundling Apache Commons library in addition to other libraries
into the RPM package.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d06d376bd695ba71d09e619c546d821f437a7622">d06d376b</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-02-17T13:10:34-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add support for bundling HTTP Components library
The build scripts have been updated to optionally support
bundling HTTP Components library in addition to other
libraries into the RPM package.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/cfe20246f6ad00a8a92fe7a188744e4f0eb83b09">cfe20246</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-02-17T13:10:34-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add support for bundling SLF4J library
The build scripts have been updated to optionally support
bundling SLF4J library in addition to other libraries into
the RPM package.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f9fa051af0cb19dec8fb9dc1e6779bc66ec66b69">f9fa051a</a></strong>
<div>
<span> by Alessandro Garagnani </span> <i> at 2026-02-18T13:30:41+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add new test for CA cloning with ML-DSA keys
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/2c381f82a5be00b4a3d810ad95873ddf3f961333">2c381f82</a></strong>
<div>
<span> by jmagne </span> <i> at 2026-02-18T08:44:37-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>New old tomcat 10 (#5265)
* First cut, new tomcat 10 support.
* Get dogtag working under old tomcat 10 or new tomcat 10.
New code to reconcile the proper systemd unit to use in old vs new tomcat 10 scenario, assisted by coding assitant.
The fix to the unit files uses a script that detects if we have upgraded tomcat from old tomcat 10 to new tomcat10.
If that is the case it replaces the current unit file with a newer copy of the unit file that supports new tomcat10.
This solution was deemed the most simple after several alternate attempts to get this working. Also this supports both
fresh installs under old or new tomcat 10 and also supports an independent upgrade from old to new tomcat 10.
At the next restart the unit file will be updated.
Based upon further feedback, I"ve implemented a solution based using one single file but having it call abstracted
scripts to start and stop the server, which determines which tomcat 10 is present and calls the correct start script.</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/49f244bc1d6c6af29ba61b51c0bd1ddc3e853eb8">49f244bc</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2026-02-18T15:35:50-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add new feature entries for VLV Index for CRL Generation and EST /fullcmc to Server-Changes.adoc (#5288)
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/48eb8ea2bfc6d958cfbcecb26d46b375ece7ab24">48eb8ea2</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2026-02-18T15:46:28-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>adding missing [] for link in Server-Changes.adoc
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f62cc0fbfb05931d76700ce31290b6978d12e8b2">f62cc0fb</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-02-19T09:52:01-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Disable test for CA clone with ML-DSA on Fedora 42
Similar to eb548dd8c006fa4bf4e20d7dacf1262fcace5308, the CA
clone test with ML-DSA has been disabled on Fedora 42 since
it's failing with SSLV3_ALERT_HANDSHAKE_FAILURE. The test
works fine on Fedora 43 or later.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/47a7ae4e5a60d449fe1bc7729fc46d8426f1c4ab">47a7ae4e</a></strong>
<div>
<span> by Taylor Herring </span> <i> at 2026-02-23T10:14:19-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix nuxwdog password handling for HSM environments
This commit fixes password handling issues that prevented PKI instances
from starting when using nuxwdog password store with HSM tokens.
Changes:
1. password.conf existence check - Check if password.conf exists in
NSSDatabase constructor rather than at each usage point. This ensures
self.password_conf is only set when the file actually exists, preventing
errors when the file is missing. Also guarded remaining unconditional
uses of self.password_conf in modify_cert() and verify_cert().
2. get_all_passwords() fixes - Changed delimiter from ':' to '=' to match
password.conf format expected by NSS tools. Also kept the 'hardware-'
prefix when writing HSM token passwords to the multi-token password
file. The PKI CLI expects the 'hardware-' prefix to identify HSM tokens
(e.g. 'hardware-NHSM-CONN-XC=password'), but the code was stripping it,
causing the CLI to skip HSM token authentication.
3. Multi-token password support for HSM - Added need_all_tokens logic to
get_trust(), get_cert(), and export_cert_bundle() methods. When accessing
certificates on HSM tokens, both internal token and HSM token passwords
are required. The all_tokens=True parameter creates a multi-token password
file using password.conf format ('-f' flag) instead of single-password
format ('-C' flag).
4. Keyring.getKeyID() NumberFormatException fix - When a key doesn't exist
in the keyring, keyctl returns the error message "keyctl_search: Required
key not available" instead of a numeric key ID. The code now catches
NumberFormatException and logs the non-numeric output for troubleshooting,
rather than letting the exception propagate. This was the original bug
encountered during fresh install with nuxwdog and HSM (DOGTAG-4272).
5. export_ca_cert() HSM token password pre-population - Pre-populate the
HSM token password from keyring before opening the NSS database. In
nuxwdog mode, password.conf does not exist and passwords are stored in
the kernel keyring. Without this, open_nssdb() only fetches the internal
token password, leaving the HSM token password missing from the password
file passed to the PKI CLI.
6. pki-server-nuxwdog sleep timer - Increased background sleep from 10 to
600 seconds to ensure the keyring file descriptor remains open longer
during the ExecStartPre sequence (systemd bug #1668954).
Assisted by: Claude Sonnet 4.5
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6ef5ca023f0257cc5c3d6cbfe252f4ef7c1d5b87">6ef5ca02</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-02-23T10:07:37-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add encrypt_alg_oid and wrap_name for KeyClient.retrieve_key()
The KeyClient.retrieve_key() has been modified to provide
params to override encrypt_alg_oid and wrap_name attributes
in KeyClient.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/5e72a1f9f53b4cf001f943da3c6fb9a9583d12be">5e72a1f9</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-02-23T18:41:13-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up KRA tests
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c062e122a7fdcd5992404dbfcb6bd34ce251bd25">c062e122</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2026-02-24T10:49:21+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add test for ML-DSA-87
The ML-DSA-87 requires a bigger buffer for TLS handshake otherwise the
deployment will fail.
The ML-DSA test is extended to verify the installation using ML-DSA-87
with default buffer and bigger buffer.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/72c0384856cbbee44e6989e476a454c3ea9fced6">72c03848</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-02-24T09:07:05-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Drop KeyClient.archive_key()
The KeyClient.archive_key() was supposed to provide a convenient
way to archive data, but it's using a CryptoProvider to generate
an initialization vector and a session key, then wrap the key and
encrypt the data for archival. It's also using a transport cert
stored in memory without an update mechanism so it could become
obsolete. The caller had no control over this process.
To reduce dependency on CryptoProvider and to allow more control
over the archival process the archive_key() has been dropped and
replaced with the existing archive_encrypted_data().
The drmtest.py is obsolete but it has been updated accordingly.
The pki-kra-key-archive.py script and IPA are already using
archive_encrypted_data() so they are not affected by this change.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/fe83a3d3d8743ec1f7381ce7407d82769e7ff283">fe83a3d3</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-02-25T10:16:04-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update KeyClient.retrieve_key()
Previously the KeyClient.retrieve_key() could be called without
the trans_wrapped_session_key param for convenience. In that case
it would use a CryptoProvider to generate a session key, wrap the
key, then decipher or unwrap the retrieved data/key. It's also
using a transport cert stored in memory without update mechanism
so it could become obsolete. The caller had no control over this
process.
To reduce dependency on CryptoProvider and to allow more control
over retrieval operation the method has been modified such that
the caller needs to provide the trans_wrapped_session_key param
and also decrypt/unwrap the retrieved data/key.
The drmtest.py is obsolete but it has been updated accordingly.
The pki-kra-key-retrieve.py script and IPA are already calling
this method with the required param so they are not affected by
this change.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/9921f332e345379a5a0d6526354031e374889d31">9921f332</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-02-26T09:09:32-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Drop KeyClient.get_transport_cert()/set_transport_cert()
The KeyClient.get_transport_cert()/set_transport_cert() and the
corresponding attributes have been removed since the archival/
retrieval code in KeyClient that uses them has been removed.
The KeyClient and KRAClient constructors will generate a warning
if the transport cert nickname is specified.
The drmtest.py is obsolete but it has been updated accordingly.
The pki-kra-key-archieve/retrieve.py scripts and IPA do not use
these methods/attributes so they are not affected by this change.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/1a5ad762db5a27f650cf7e0d3e58c0a991eee29e">1a5ad762</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-02-27T10:13:43-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update test for KRA with ECC
The test for KRA with ECC has been updated to use pki
ca-cert-issue since the pki client-cert-request will be
deprecated in the future. It's also been updated to
check the CLI outputs and LDAP records in more details.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c8295e3188e25981c205699288712d8dc9b2e834">c8295e31</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-02-27T11:05:52-06:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Drop CryptoProvider.get_cert()
The CryptoProvider.get_cert() has been removed since it's no
longer used and it doesn't provide any mechanism to update
the certs stored in memory.
The KRAClient and KeyClient constructors have been modified
to no longer take transport cert params.
The CryptographyCryptoProvider constructor will still take
transport cert nickname and data params but the values will
no longer be used (i.e. deprecated).
The pki-kra-key-archieve/retrieve.py and drmtest.py have
been updated to no longer create CryptographyCryptoProvider
with transport cert params.
IPA will continue to create CryptographyCryptoProvider with
transport cert params, but it should not be affected by the
deprecation.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/7450737ce1bdf8ee9a37807f5536b34d4fcb20c8">7450737c</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-03-03T07:27:34-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update IPA KRA test to check crypto params
The IPA KRA test has been updated to check the crypto params
stored in key records in order to prevent regressions.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/0a66e84be9a5a0ebb0227a7beddeaf775b459c8f">0a66e84b</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-03-03T07:31:17-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Drop CryptoProvider.symmetric_wrap()
The CryptoProvider.symmetric_wrap() has been dropped in order
to reduce dependency on Python Cryptography. The caller will
be responsible to perform the encryption operation.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/95a17b33f30753491c77418512e7a7c289bda5cc">95a17b33</a></strong>
<div>
<span> by jmagne </span> <i> at 2026-03-03T17:50:13-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add support for old and new Tomcat 10.1 - Upgrade and branch porting (#5301)
This fix introduces an upgrade script for pki 10.11.0 which fixes the
permissions of instance directory "webapps". This is the only directory
so far detected to be different in the following two scenarios:
1. Install a fresh pki 11.9.0 instance on old tomcat 10.
2. Install a fresh pki 11.10.0 instance on old tomcat 10.
When starting with scenario #1 above and upgrading pki to 11.10.0,
the upgrade script will change the perms of the webapps directory to
770 instead of the previous 755.
Note this code used the code assistant to make the script extensible
should we discover that we need to take care of additional directories.</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/2d9e14b4507d6a16235cf9fb9a0750b2a5efb8af">2d9e14b4</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-03-04T07:53:22-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Drop CryptoProvider.asymmetric_wrap()
The CryptoProvider.asymmetric_wrap() has been dropped in order
to reduce dependency on Python Cryptography. The caller will
be responsible to perform the key wrapping operation.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/53a5d61b48582660fecf567066c7db5dc1ea7bef">53a5d61b</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-03-05T07:45:06-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add support for Tomcat 10 with bundled build dependencies
Previously the code in pki.spec would only perform javax2jakarta
migration on bundled runtime dependencies imported from external
RPM packages, but it wouldn't migrate bundled build dependencies
provided as dist-git sources.
The code has been reorganized such that it would perform the
migration on both bundled build and runtime dependencies which
are needed to support Tomcat 10 on certain platforms.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/2bc1e91760c8b8128dc4e57f2216618b27c79750">2bc1e917</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-03-06T09:32:38-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Drop CryptoProvider.key_unwrap()
The CryptoProvider.key_unwrap() has been dropped in order to
reduce dependency on Python Cryptography. The caller will be
responsible to perform the key unwrap operation.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/74b3f85e9643c87cffa6b313cdded646874894b3">74b3f85e</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-03-06T09:32:38-08:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Drop CryptoProvider.symmetric_unwrap()
The CryptoProvider.symmetric_unwrap() has been dropped in order
to reduce dependency on Python Cryptography. The caller will be
responsible to perform the decrypt operation.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/5ff2f58b57ca7247a4813d4a7943dbb3003e93f0">5ff2f58b</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2026-03-07T00:40:38+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove references to v1 classes
References to classes and interfaces implementing v1 REST API, outside of the API itself, are replaced in order to have a total separation of the API implementations.
The total separation will make easier to remove v1 REST APIs in future releases.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/562f5f4348c4d1a1d7ab192301ed4e13526e3ada">562f5f43</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2026-03-09T16:18:38+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix default tomcat for non RHEL dirivative distro
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/acf268c0dfac29e33d30c38dbdebb8cf44a7ee01">acf268c0</a></strong>
<div>
<span> by Lukáš Lipinský </span> <i> at 2026-03-10T10:39:14+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>build: add Oracle Linux ID to get_tomcat_app_server
Treat /etc/os-release ID="ol" the same as RHEL when selecting the Tomcat app server version.
Signed-off-by: Lukáš Lipinský <lukas.lipinsky@oracle.com>
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/786eebcec1863bbcd8faba4c182f9e397029cb4b">786eebce</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-03-10T09:50:31-07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Drop crypto methods and params from CryptoProvider
The crypto-related methods and params in CryptoProvider have been
dropped in order to reduce dependency on Python Cryptography. The
caller will be responsible to provide the nonce, the session key,
and the crypto params.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e0737e2eecfea50e895b1b1c7565f0f621eea431">e0737e2e</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2026-03-11T11:54:22+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Replace FormParam with a custom Param annotation
FormParam is an annotation defined in javaee [1] for binding form
parameter in request entity to method parameter but since all the APIs
moved to XML first and json later the FormParam was not used for its
original goal. It is used to identify some fields inside Json mapped
objects.
Since the annotation is present in classes used by both v1 and v2 APIs
preventing to remove the resteasy dependency it has been replaced with a
custom annotation named "Param".
1. https://docs.oracle.com/javaee/7/api/javax/ws/rs/FormParam.html
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ba629ff461a54abd1ea38ca1525aab592d3ff4f4">ba629ff4</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2026-03-11T16:16:16+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove the PKIRESTProvider
The PKIRESTProvider was used in the PKIconnection to stream the
message body in resteasy client. The commit
79aa44f1c7870799206ec22d319b354e527524d0 has replaced the resteasy
client with httpcomponent-client library so the PKIRESTProvider is not
needed.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/28e8fbf7ed9044d821154081d65405df808f1155">28e8fbf7</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-03-12T14:28:51-07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update tests to check for core dumps
The tests that sometimes crash due to SIGSEGV have been
updated to check for core dumps to help the investigation.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/883c979c22c3482ff8c9fea95f59be092a3b9fd0">883c979c</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2026-03-13T09:58:28+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move key parameters in KeyParameters class
Static KeyParameter where defined in the Key*Resource classes. Since
the resource classes are associated to v1 APIs and can be removed in
future releases the parameters have been moved to a class defined only
for them.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/7278acf4287a4cdd9731d4ed2a11d8e44d78a4de">7278acf4</a></strong>
<div>
<span> by Alessandro Garagnani </span> <i> at 2026-03-13T19:44:05+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Dropping dependency on python-six
Removes all six imports
Removes all six dependencies
Tracked by issue IDM-4697
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/8187cb7904bf9adc76c1d140c8f2c80d2ffd3558">8187cb79</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-03-16T07:41:54-07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Reorganize CA API test
The API test in CA basic test has been moved into a separate
workflow to make it easier to investigate the SIGSEGV issue.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a536d8caa1bdd97a156f56f3ebd62c0d810035de">a536d8ca</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-03-17T15:04:09-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update tests to check for core dumps (part 2)
The tests that sometimes crash due to SIGSEGV have been
updated to check for core dumps to help the investigation.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/50c3958e2e1d52802605f69e5addd2d016b7d986">50c3958e</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-03-19T12:18:28-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Use Java 21 on Fedora 43
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/8d096fed346fe170b5d1776451e88fd33506e0a0">8d096fed</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-03-19T18:03:28-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Replace PKIDeployer.client with pki_client
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b014c5a7f678d8a809c38ec0a59a6b8536416d43">b014c5a7</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-03-19T19:36:34-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Replace PKIDeployer.sd_connection with sd_client
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/227bbeb5b7f2e91e48ea94cbdfc1a3d339ce6bd5">227bbeb5</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2026-03-24T12:02:45+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move KRA KeyRequestDAO to v1 packages
KeyRequestDAO was used by both v1 and v2 APIs but it has dependency on resteasy package creating problem in case of dropping v1 APIs and related dependency.
The class has been moved to v1 packages and the few methods in use by v2 APIs have been duplicated in the KeyProcessor class so they are totally independent.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/510893a7ce5ee80e523e37f6f170ed7926a4df64">510893a7</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2026-03-24T12:02:45+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move KRA CMSRequestDAO to v1 packages
CMSRequestDAO was used only by v1 APIs so it is moved to v1 package to make easier to drop it with the other v1 APIs.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b714c47ac87a5c853bafcc6e476f1983b235662a">b714c47a</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2026-03-24T12:02:45+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove MultivaluedMap from RESTMessage
RESTMessage is a base class for REST request/response messages used in
several APIs. The message can accept MultivaluedMap which is provided
by resteasy and used only in APIs v1. The constructor using
MultivaluedMap has been removed and v1 APIs extend RESTMessage to add
this specific constructor.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/df56fbc5ce88c61bfae57fb567bbfabadd07abb2">df56fbc5</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2026-03-24T12:02:45+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove unused constructors using MultivaluedMap
These constructors were not used in the current code but will maintain
a dependency with resteasy so they are removed.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/87d4d5e936ed702697b39e9e7ac0ff686338263a">87d4d5e9</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-03-24T14:43:32-07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Drop ESC dependency
The pki.spec has been modified to no longer depend on ESC,
so ESC will need to be installed separately, possibly on an
older system that still has it.
The theme files related to ESC have also been removed.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e3d813823bc1cf8281fbf0bded27df07f758e240">e3d81382</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-03-25T09:41:44-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up OCSP tests
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/808384b117caaeab979efe916c2219cc88794627">808384b1</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-03-25T11:10:22-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update tests to check for core dumps (part 3)
The tests that sometimes crash due to SIGSEGV have been
updated to check for core dumps to help the investigation.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/13a31b4c4b93790c07e4effee0ac5dfdacd69680">13a31b4c</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-03-25T15:22:55-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up sub CA tests
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/acfa83f160570810784c8dc74adc015e1c496629">acfa83f1</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-03-25T15:22:55-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up TKS tests
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/1bd5508c89cc81194a3b08d78a77171ead99f951">1bd5508c</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-03-25T15:22:55-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up TPS tests
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/02747cdf21247910b0ed42c103b559ad907cc9ec">02747cdf</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-03-25T16:20:11-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up server tests
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f415088bca148adbcc2620cb9a40a245907843e0">f415088b</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-03-25T17:36:00-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up tools tests
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/12c3966914926289f28f57b6bfab92a785401bb6">12c39669</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-03-25T18:29:16-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update tests to check for core dumps (part 4)
The tests that sometimes crash due to SIGSEGV have been
updated to check for core dumps to help the investigation.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/bca84994d7986006f22e028bb611390fb24d2516">bca84994</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2026-03-26T11:25:00+01:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move or delete resteasy dependency
Remove the use of MultivaluedMap and UriInfo because they were not actually used outside of v1 APIs. Replace Response status with HttpStatus in the check and resteasy MediaType with internal MimeType. Finally some static values have been duplicated outside of Resource classes.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6782ba93409340ed6f829d5df8b00d51dbbb8c9c">6782ba93</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2026-03-27T14:05:23-07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Standalone Build Mechanism for KRATool (pki-kratool rpm): (#5319)
Added build-kratool.sh script and associated spec/pom.xml files to generate
a standalone kratool RPM package. This allows administrators to install or
update KRATool independently without overwriting existing PKI RPMs that may
contain critical hotfixes.
Build: ./base/tools/build-kratool.sh rpm
Output: ~/build/kratool/
Assisted-by: Claude
IDM-5245</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a375b8c8abf9a0e6e8465885dd235680cb08eb2d">a375b8c8</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2026-03-30T09:24:17-07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add cross-scheme migration support to KRATool (#5320)
This commit adds comprehensive cross-scheme migration capabilities to KRATool,
enabling secure migration of archived keys between KRA instances using different
cryptographic schemes (e.g., from RSA+AES/CBC to RSA-OAEP+AES-KWP for FIPS-mode HSMs).
Key Features:
- Secure rewrap flow: Private keys remain wrapped throughout migration; only
session keys are temporarily exposed during token transfer
- Entry-based LDIF processing: Order-independent parsing extracts privateKeyData
and publicKeyData regardless of their position in LDIF records
- Algorithm auto-detection: Automatically regenerates session keys when source
and target algorithms or key sizes differ, with user confirmation
- HSM compatibility: Supports payload processing in NSS DB (software token) via
-use_nss_for_payload_processing flag when HSM lacks algorithm support
- Pure Java implementation: JSS_KeyExchange mechanism with automatic fallback
to temporary RSA keypair approach for key transfer between tokens
- Performance optimizations: reuse SecureRandom, cloneKey capability caching, IV reuquirements caching, and -verbose flag to
minimize logging for large datasets
Supported Algorithms:
- Session key wrap: RSA, RSA-OAEP
- Payload wrap: AES KeyWrap/Wrapped etc. (CKM_AES_KEY_WRAP_KWP, recommended),
New Command-Line Options:
-use_cross_scheme
-source_rsa_wrap_algorithm <RSA|RSA-OAEP>
Source session key wrap algorithm (default: RSA)
-target_rsa_wrap_algorithm <RSA|RSA-OAEP>
Target session key wrap algorithm (default: RSA-OAEP)
-source_payload_wrap_algorithm <algorithm>
Source payload wrap algorithm
-target_payload_wrap_algorithm <algorithm>
Target payload wrap algorithm
-source_payload_wrap_keysize <128|192|256>
Source payload wrapping key size in bits (default: 128)
-target_payload_wrap_keysize <128|192|256>
Target payload wrapping key size in bits (default: 128)
-use_nss_for_payload_processing
Perform payload unwrap/rewrap in NSS DB when HSM lacks algorithm support
-regenerate_session_key
Force session key regeneration even when algorithms match
-split_target_ldif_per_records <N>
Split output into multiple LDIF files, each containing N records
-verbose
Enable detailed per-record logging for debugging
TEST-ONLY (hidden) options:
-skip_rewrap
-force_rsa_keypair_transfer
Assisted-by: Claude
IDM-5245</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b327852255c9d6770e6efd1c66b3370e01c66daa">b3278522</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-04-06T11:20:57-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add compatibility tests for OpenDNSSEC
Some tests with SoftHSM have been updated to install OpenDNSSEC
to prevent regression on PKI Issue #5045.
https://github.com/dogtagpki/pki/issues/5045
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ea89f8d4486b0958cddb7b310b725160b26a1c07">ea89f8d4</a></strong>
<div>
<span> by Zachary Sherman-Burke </span> <i> at 2026-04-10T08:07:43-04:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix EST fullcmc documentation errors
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/06ee605d6957f5d3d8fa8628c127f564f7d257ca">06ee605d</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-04-20T10:00:23-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update pki nss-cert-request
The pki nss-cert-request has been updated to store the ID of
the newly created key into the key ID file if specified.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/7f5163cef2012f8f15430fe2ab64b424bf2e7905">7f5163ce</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-04-20T10:00:24-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update pki nss-key-show
The pki nss-key-show has been updated to throw a CLIException
if the key ID or the nickname does not exist in NSS database.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f808a793e01a2c3837719bb89fb62d4dbcf8fef3">f808a793</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-04-20T10:00:26-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Rename pki-nss-hsm-test.yml to pki-nss-softhsm-test.yml
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f7d850531db733e31b4d47841797fc8f4ae64fb3">f7d85053</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-04-21T11:36:27-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update MainCLI.promptForPassword()
The MainCLI.promptForPassword() has been updated similar to the
Password.readPasswordFromConsole() in JSS to read the password from
the standard input in case the system console is not available.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a5852f932d04305efd2b63dc97dd23c98b9710fb">a5852f93</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-04-21T14:16:38-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add pki nss-key-del
The pki nss-key-del has been added to provide a way to remove a key
pair. The CryptoUtil.deletePrivateKey() has been replaced with
deleteKeyPair() to remove the private key and the public key too if
exists, similar to JSSKeyStoreSpi.engineDeleteEntry() in JSS.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/578def465533a1589cab9d66730ff4a75a5cd5ce">578def46</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2026-04-21T14:41:58-07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add PKI HSM compatibility verification tools (#5330)
This commit introduces tools for verifying HSM/PKCS#11 compatibility
with Dogtag PKI KRA key archival and recovery operations:
- hsmCompatVerifyServ: Server-side verification tool that creates
mock CA/KRA certificates on HSM, verifies complete KRA workflow
including transport unwrap, storage wrap/unwrap, and PKCS#12 export.
Supports LDIF file operations for archival and recovery.
- hsmCompatVerifyClnt: Client-side tool that generates test keys,
wraps them using session key and KRA transport certificate.
- CryptoToolsUtil: Utility class for PKIArchiveOptions creation
and key wrapping operations.
Key features:
- Supports RSA and RSA-OAEP for asymmetric key wrapping (default: RSA-OAEP)
- Supports multiple symmetric key wrap algorithms: AES KeyWrap/Wrapped
(default, recommended for HSM/FIPS), AES KeyWrap/Padding,
AES KeyWrap/NoPadding, AES/CBC/PKCS5Padding
- LDIF file support for archival and recovery operations with three modes:
* Full workflow (default): archive to LDIF + recover + create PKCS#12
* Archive-only mode (--archive-only): create LDIF and stop
* Recovery-only mode (--recover-only): recover from existing LDIF
* Custom LDIF path (--ldif-file): default is <client-db-path>/kra-archived-key.ldif
- Password file options for better security (--*-passwd-file) to avoid
password visibility in process listings
- Clear option naming:
* --pkiserv-db-path for PKI server NSS database path
* --client-db-path for client NSS database path (base for all file defaults)
* --hsm-token for HSM token name
* --p12-output for PKCS#12 output file
- Automatic path resolution: relative p12 paths resolve to client-db-path,
full paths displayed in output and pk12util commands
- Standalone operation without requiring PKI server installation
- Verifies complete KRA workflow on HSM tokens
- Non-legacy PKCS#12 support with --legacyPKCS12 option:
* Non-legacy mode (default): AES-256-KWP, HSM compatible
* Legacy mode: PBE_SHA1_DES3_CBC (may fail on some HSM in FIPS 140-3)
* Matches KRA behavior: kra.legacyPKCS12=false, kra.nonLegacyAlg=AES-KWP
- HSM token fallback to internal token for P12 creation (matching KRA pattern)
- Fix HSM key iteration to handle keys without accessible public keys
Assisted-by: Claude
IDM-4768</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/aee9aa2593cafcdff13c24e6ca0147a521348614">aee9aa25</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2026-04-21T14:42:58-07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Standalone build mechanism for PKI HSM compatibility tools (pki-hsm-compat-verify rpm) (#5331)
Add standalone build infrastructure to create a standalone pki-hsm-compat-verify
RPM package independent of main PKI build. This allows administrators to install
or update the tool independently without overwriting existing PKI RPMs that may
contain critical hotfixes.
- build-hsm-compat-verify.sh: Standalone build script
- pki-hsm-compat-verify.spec: RPM spec file
- hsm-compat-verify-pom.xml: Maven configuration
The package provides two command-line tools:
- hsmCompatVerifyServ: Server-side HSM verification
- hsmCompatVerifyClnt: Client-side key generation
Assisted-by: Claude
IDM-4768</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/45d5d708d6cc308f1b32c4df1651c86e2cf1c95f">45d5d708</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-04-22T14:04:27-04:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix password prompt in pki CLI
The pki CLI has been modified to disable the password callback only
if the password config is specified (e.g. during installation) to
prevent OpenDNSSEC from triggering a password prompt but still allow
password prompts in other cases.
The tests for pki CLI with RSA, ECC, and SoftHSM has been updated
to create CA signing cert, SSL server cert, and audit signing cert
to validate the password prompts.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/7a01722973fcc1afbd1d8f769ea8e4d8d65515a9">7a017229</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-04-27T10:28:14-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Reorganize CA profile tests
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/25b410ca51ad2d4e414317873401ecac42d729b2">25b410ca</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-04-27T18:30:41-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update PKIDeployer.get_domain_info()
The PKIDeployer.get_domain_info() has been updated such that the
caller is required to call sd_connect() first.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/67dc6147e5ecbd275174d08001177fa3904cb9dc">67dc6147</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-04-27T18:30:46-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Merge PKIDeployer.join_security_domain() into get_install_token()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/be7e3df6963c0b412051a2a24b3ccda20432c0fe">be7e3df6</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-04-27T19:10:30-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update pki nss-cert-request
The pki nss-cert-request has been updated to allow optional
transport nickname such that it can generate a CRMF request
without PKIArchiveOptions.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ff83616a2ccb18fe04b3e1abbb12ef782bf29b1b">ff83616a</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-04-27T22:25:03-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix PKICertImport test by adding basicConstraints to intermediate CA
The ca_sub_signing.conf was missing the basicConstraints extension
which is required for NSS to recognize a certificate as a valid CA.
This caused test_chain_import to fail with "Certificate type not
approved for application" when verifying intermediate CA certificates.
Co-Authored-By: Claude Sonnet 4.5 <noreply@anthropic.com>
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/19496a360c1edc5bd79c0ac9c5b4a3c5b2a8736b">19496a36</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-04-29T10:08:39-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update exception message in pki nss-cert-del
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/791cf5492135d57af8859673be8a3f49defb1fcf">791cf549</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-04-29T14:52:32-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update RPM spec to use %autochangelog
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/52d4be991a6381e8b0956dd13525698f37e85524">52d4be99</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-04-30T21:32:46-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up log messages in EnrollmentService.serviceRequest()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c789a47cf2cf5c5a837346601ecaffeaa381bf99">c789a47c</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-04-30T21:32:46-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up log messages in RecoveryService.serviceRequest()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/3c84fdfaaf0a972c1c550697c25475f79f52d66d">3c84fdfa</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-05-01T12:49:24-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up log messages in NSSDatabase
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a9e91eb9fbaff3bef813fd5a4cf6695c7b4bf1f0">a9e91eb9</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-05-01T18:20:41-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add tests for pki nss-cert-verify
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/0b52ac286b1923749a72b6bc163bb35100ee642b">0b52ac28</a></strong>
<div>
<span> by Alexander Bokovoy </span> <i> at 2026-05-05T14:56:44+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>dbs: throw DBRecordNotFoundException from LDAPSession.read() when entry is not found
LDAPSearchResults.next() can return null when the LDAP search yields
no results instead of throwing LDAPException(NO_SUCH_OBJECT). The
code dereferences entry.getAttributeSet() without a null check,
causing a NullPointerException.
Throw DBRecordNotFoundException to be consistent with the existing
LDAPException(NO_SUCH_OBJECT) path already handled by
LDAPExceptionConverter.
Signed-off-by: Alexander Bokovoy <abokovoy@redhat.com>
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/9d8d6d26ec4c528612f58ab75f892ddc72d69dc3">9d8d6d26</a></strong>
<div>
<span> by Alexander Bokovoy </span> <i> at 2026-05-05T14:56:44+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>deployment: set packetSize on AJP connectors
Add pki_ajp_packet_size to default.cfg (default: 65536, the AJP
maximum) and use it when creating AJP connectors in enable_proxy().
The upstream httpd proxy must be configured with a matching
ProxyIOBufferSize to allow the larger packets through.
Signed-off-by: Alexander Bokovoy <abokovoy@redhat.com>
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/3007edaf66d88b170cf7da515a4a77af8cc3e049">3007edaf</a></strong>
<div>
<span> by Alexander Bokovoy </span> <i> at 2026-05-05T14:56:44+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>upgrade: add packetSize=65536 to existing AJP connectors
Upgrade script for existing instances that sets packetSize on all
AJP/1.3 connectors in server.xml. Skips connectors that already
carry a packetSize attribute. Reads the default value from
pki_ajp_packet_size in default.cfg.
Signed-off-by: Alexander Bokovoy <abokovoy@redhat.com>
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/8e667b2b37628730252320fa8a0d7d9dc4a8378f">8e667b2b</a></strong>
<div>
<span> by Alexander Bokovoy </span> <i> at 2026-05-05T14:56:44+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>docs: document AJP packet size and LDAPSession NPE fix in v11.10.0 changes
Signed-off-by: Alexander Bokovoy <abokovoy@redhat.com>
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/5eaaad1600e35c46177b5a31f287e6ebe7f6e4d9">5eaaad16</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-05-05T09:40:36-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add test for caStorageCert profile
A new test has been added to enroll a storage cert with RSA key
using PKCS #10 request and CRMF request with/without POP.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a8f335d4f775a9448c9215ac1649e82e84b2347c">a8f335d4</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-05-05T09:40:36-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add test for caTransportCert profile
A new test has been added to enroll a transport cert with RSA key
using PKCS #10 request and CRMF request with/without POP.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d35069eab8fda9dd7cc559dea95380e716640415">d35069ea</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-05-05T09:50:57-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Consolidate system cert healthchecks into single module
Merge expiration.py and trustflags.py into systemcerts.py to combine
trust flag validation and expiration checks into unified classes for
each subsystem (CA, KRA, OCSP, TKS, TPS) to reduce pki-healthcheck
execution time.
Co-Authored-By: Claude Sonnet 4.5 <noreply@anthropic.com>
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/91cccca7c319520fab8f1b711122b7f4fc7eab26">91cccca7</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-05-05T21:27:43-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update PKISubsystem.validate_system_cert()
The PKISubsystem.validate_system_cert() has been modified
to validate the system cert using NSSDatabase.verify_cert().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/4b979037484110b76695ef2d389c29c6ee14dfb4">4b979037</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-05-07T13:32:47-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add test for PKI CLI with Kryoptic
A new test has been added to check PKI CLI against Kryoptic.
The test is similar to the existing test for SoftHSM, but
there are some differences in how the trust flags are handled
in Kryoptic.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/666e243c082873f6e0284d4c95e6fe6134dfaf81">666e243c</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-05-07T13:33:11-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Rename code-analysis.yml to java-tests.yml
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/376006aa92d12e96141c2e0e95fd8c0691e2f207">376006aa</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-05-07T13:33:11-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Rename ca-tests2.yml to ca-extra-tests.yml
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/8129f9a866e062a53b020c28059ee7b49f5dff2e">8129f9a8</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-05-11T15:17:39-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update NSSDatabase.createCertificate()
The NSSDatabase.createCertificate() has been updated to require
the caller to provide the hash function.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a5a7b7fa0463cb0e93a5d9d87377e2f8fc7d32b0">a5a7b7fa</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-05-11T15:17:40-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up NSSExtensionGenerator.createExtensions()
The NSSExtensionGenerator.createExtensions() that takes an
issuer and a PKCS #10 object has been merged into another
method.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/cab889843149db8fad8ee9713f44cce45e2f3c2d">cab88984</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-05-11T15:24:23-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up log messages during installation
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/8719aa4dae1e336d15691a387be183ff8fefe3e6">8719aa4d</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-05-11T17:02:53-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up log messages during token auth
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/3bdde006dcccf68d0e922d060f1eb610d373c8a1">3bdde006</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2026-05-12T14:32:06-07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix KeyException handling in PKCS11KeyCLI.printKeyInfo() (#5348)
Add "throws java.security.KeyException" to printKeyInfo() method signature
to properly handle potential KeyException from PrivateKey.getType() calls.
While the current JSS master getType() does not throw KeyException, this
change prepares PKI for future JSS API enhancements that may add exception
handling for key type detection (e.g., reading CKA_PARAMETER_SET for ML-KEM
and ML-DSA keys can fail on some PKCS#11 tokens).
Impact:
- Callers (PKCS11KeyFindCLI, PKCS11KeyShowCLI) already declare "throws Exception"
so they automatically propagate this exception
- No functional change to current behavior
- Improves API consistency
Assisted-by: Claude</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c277d95552e587f26d79019e03997f94e08954af">c277d955</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-05-13T15:37:23-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update PKI CLI to support PQC
The pki nss-key-create and pki nss-cert-request have been updated
to support ML-KEM.
The pki nss-cert-request and pki nss-cert-issue have been updated
to use SHA256 only for RSA and EC. ML-DSA and ML-KEM do not use a
hash function.
The pki nss-cert-issue has been updated to support CRMF request.
The NSSDatabase.createCertificate() has been updated to allow
optional hash function.
A new test has been added to issue ML-DSA and ML-KEM certs using
PKI CLI.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/91c4bd54c4c265280a76edcf95d8e690bbd7c8b9">91c4bd54</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-05-13T16:08:45-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update CRMFPopClient to support PQC
The CRMFPopClient has been updated to support creating a CRMF
request with ML-DSA or ML-KEM key.
The KeyConstraint has been updated to support ML-KEM.
New tests have been added to install CA with ML-DSA then enroll
storage and transport certs with ML-KEM which can be used for KRA
installation later. The enrollment is done using a CRMF request
without POP created with CRMFPopClient and PKI CLI. The enrollment
is also done using profiles that use security domain session (i.e.
install token) for authentication.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/dd68d591072af7351fe20e8dbdfe5fbe9729c3c5">dd68d591</a></strong>
<div>
<span> by jmagne </span> <i> at 2026-05-13T14:54:07-07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>IDM-5781 Add support to PBMAC1 in pkcs 12 [PKI] (#5346)
* IDM-5781 Add support to PBMAC1 in pkcs 12 [PKI] - Java
- Add configurePFXMac() to RecoveryService for CS.cfg-driven MAC selection
- Add --mac-type and --mac-digest to pki pkcs12-export CLI
- Add PKCS#12 MAC configuration to KRA CS.cfg
- Optimize SecurityDataProcessor IV generation for client-provided IVs
- Add debug logging to TransportKeyUnit unwrap operations
- Bump JSS dependency to >= 5.10.0
Assisted-by: Claude Sonnet 4.5
* IDM-5781 Add support to PBMAC1 in pkcs 12 [PKI] - Python
- Add --mac-type and --mac-digest to pki-server instance-cert-export
- Add --mac-type and --mac-digest to pki-server subsystem-cert-export
- Add mac_type/mac_digest params to nssdb.export_pkcs12()
- Add pki_pkcs12_mac_type/mac_digest to default.cfg
- Write KRA CS.cfg MAC settings during pkispawn deployment
- Hardcode legacy defaults for subsystem cert export
Assisted-by: Claude Sonnet 4.5</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/af558a0a8a8f373f36a636267aa5959554d41a21">af558a0a</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-05-14T10:22:28-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Rename PKISubsystem.get_cert_info() to get_system_cert_config()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/dea3514fcdbdacae98c4e9d542816f5fc7268c6b">dea3514f</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-05-14T10:22:32-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Rename PKISubsystem.get_nssdb_cert_info() to get_system_cert_info()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a636463d933d99e98a2b967e6e086083a7704a33">a636463d</a></strong>
<div>
<span> by jmagne </span> <i> at 2026-05-14T14:18:06-07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix a couple of python violations intruduced by pbmac1 feature. (#5352)</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/fbc5a9fdaf38b1a067e5c393273902895bdeeaa1">fbc5a9fd</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-05-15T11:50:05-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update PKISubsystem.export_cert_chain()
The PKISubsystem.export_cert_chain() has been updated to provide
pkcs12_password param.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a96cb1edcf9982a39ffe580de5fc36b8b649e38c">a96cb1ed</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-05-15T11:50:31-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update PKISubsystem.export_system_cert()
The PKISubsystem.export_system_cert() has been updated to provide
pkcs12_password param.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e503a76cef72c3131481a08622022c9040c05d9f">e503a76c</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-05-15T13:50:08-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update PKIInstance.export_external_certs()
The PKIInstance.export_external_certs() has been updated to
provide pkcs12_password param.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/9918b8d98205cc21c6a426c3c327aac73efc6162">9918b8d9</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-05-15T14:53:42-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update NSSDatabase.create_key()
The NSSDatabase.create_key() has been updated to provide
key_strength param.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/24dbdf431160304f4720bb2cc575086ffd41536b">24dbdf43</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-05-15T15:00:14-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update NSSDatabase.create_request()
The NSSDatabase.create_request() has been updated to provide
request_type param.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/976a96bfa95b1f447ce70fd0c61a22b4d98a14a5">976a96bf</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-05-15T16:22:20-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up log messages
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b52c97b5c7d00c03db78cdbe09f701bc04a3353d">b52c97b5</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-05-18T15:22:00-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update pki-server <subsystem>-clone-prepare
The pki-server <subsystem>-clone-prepare commands have been
modified to create a PKCS #12 file in a temporary directory
accessible by pkiuser first, then move the file to the final
location and update the ownership after everything is done.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/cd497ca0cfb40e3a61d8d075cddc532535512c28">cd497ca0</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-05-18T15:22:11-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up log messages in LogFile
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c110a7954685b03703b606b4b4cde1a4a7fd7fec">c110a795</a></strong>
<div>
<span> by jmagne </span> <i> at 2026-05-18T14:49:35-07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix: [Dev] Enable end to end KWP Support for KRA Key Archival and Recovery. (#5349)
Change distilled down to a simple resolution of any confusion on whether to use AES KEY WRAP PAD or KWP in a kra WrapingParams situation. This fix takes steps to make sure KWP is used if the token supports that mechanism.
Also added a fallback to AES KEY WRAP PAD in case the client call explicitly wanted this algorithm.
Assisted by: Claude Sonnet 4..</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b273c619742f579ef1d08e1f0cea5738f479a028">b273c619</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-05-19T10:42:44-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix failure in CA test with ML-DSA
The PK11PrivKey.getAlgorithm() in JSS was updated recently to
return the algorithm family name (e.g. ML-DSA) instead of the
full algorithm name (e.g. ML-DSA-<strength>) which have caused
the CA test with ML-DSA to fail due to NoSuchAlgorithmException
in LogFile.setupSigning().
The code has been modified to handle the algorithm family name
properly so that the test will complete successfully.
The PKI CLI test with PQC has been updated to validate the key
algorithm.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/edefb1f577ff90b81c3d8c9c758a21cae55fbf90">edefb1f5</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-05-19T11:07:10-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update pkispawn to support KRA with PQC
pkispawn has been modified to support installing KRA with ML-KEM
for storage and transport certs and ML-DSA for other certs. It
will use CRMF without POP to request ML-KEM certs from the CA.
A new test has been added to install CA and KRA with ML-DSA and
ML-KEM certs. The test needs to modify the profiles used to issue
the storage and transport certs since they don't support ML-KEM
by default. In the future the profiles can be updated to support
ML-KEM so this step will not be needed. Also in the future the
test can be improved to validate key archival and recovery.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/98ef735de0c3eb5610d3c144377417df36cc23c6">98ef735d</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-05-19T11:07:43-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up KRA clone tests
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/cdce94bceee7352ebd22ce42a542960f246c3c9d">cdce94bc</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2026-05-19T14:13:49-07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add PQC algorithm mapping and ML-KEM key wrap/unwrap helpers (#5354)
Adds helper methods to CryptoUtil for PQC operations:
Algorithm name mapping:
- getMLDSAStrength(): Maps ML-DSA algorithm names to strength parameters
- getMLDSASignatureAlgorithm(): Maps ML-DSA names to SignatureAlgorithm
- getMLKEMStrength(): Maps ML-KEM algorithm names to strength parameters
ML-KEM encapsulation/decapsulation:
- encapsulateMLKEM(): Generates shared secret and ciphertext
- decapsulateMLKEM(): Recovers shared secret from ciphertext
- KEMEncapsulation: Result class containing shared secret and ciphertext
(compatible with existing non-PQC LDAP storage format)
These helpers consolidate PQC algorithm handling and will be used by
KRA key archival/recovery and hsmCompatVerify test tools.
IDM-6295
Assisted-by: Claude</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/275572f3fd36529d159579277741e72a0aaf8a64">275572f3</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-05-20T01:28:30+00:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix Javadoc warnings on unknown tag
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d981255b23559b28abe8a038359b812f6badfc79">d981255b</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-05-20T01:28:30+00:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix remaining Javadoc warnings
- Fix @exception tags with incorrect class names:
- CertUserDBAuthentication: Replace EAuthsException with actual exception types
- NullAuthentication: Replace fully qualified names with actual exception types
- PasswdUserDBAuthentication: Replace fully qualified names with actual exception types
- LdapConnFactory: Fix EldapException to ELdapException
- LogEventListener: Replace generic text with EBaseException
- CRMFParser: Fix malformed @exception tag to specify IOException
- Fix @param tags with incorrect parameter names:
- DBSSession: Change sortKey to sortKeys to match actual parameter
- Fix broken @link references:
- LDAPDatabase: Replace broken findPagedCertRecords reference with description
Co-Authored-By: Claude Sonnet 4 <noreply@anthropic.com>
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/dc9bba94d60dd9226dfe9f603be43313a6412c5e">dc9bba94</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-05-20T01:28:30+00:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix unused variable warning in tkstool delete.c
Remove unused 'count' variable that was causing -Wunused-but-set-variable
build warning. The variable was incremented but never used in the logic.
Co-Authored-By: Claude Sonnet 4 <noreply@anthropic.com>
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/5bdaccdd792c685826da12a2d090b90dabdf9b10">5bdaccdd</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-05-20T01:28:30+00:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix unused parameter warnings in tkstool file.c
Mark wrappedKeyName parameter as unused in TKS_ReadInputFileIntoSECItem
and TKS_WriteSECItemIntoOutputFile functions. These parameters are part
of the API interface but not used in the current implementation.
Co-Authored-By: Claude Sonnet 4 <noreply@anthropic.com>
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/4dad411134be1d0123bbd71d93aafdd63758b4a2">4dad4111</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-05-20T01:28:30+00:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix unused parameter warning in tkstool help.c
Mark progName parameter as unused in TKS_PrintHelp function.
The parameter is part of the API interface but not used in
the current implementation.
Co-Authored-By: Claude Sonnet 4 <noreply@anthropic.com>
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/50694352aaed05cd6aa9e913566f9f44ad6fdf18">50694352</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-05-20T01:28:30+00:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix build warnings in tkstool key.c
- Fix signed/unsigned comparison warnings by changing int variables
to PRUint32 in InputHexSessionKey and TKS_GenerateSessionKeyShare
- Fix variable shadowing by renaming pwdata parameter to pwdataParam
in TKS_ImportSymmetricKey
- Remove unused origin variable from TKS_ImportSymmetricKey
- Mark unused parameters as intentionally unused in TKS_ImportSymmetricKey
Co-Authored-By: Claude Sonnet 4 <noreply@anthropic.com>
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/11dba8bca4478973bdaf8892cf16f247efab3ca3">11dba8bc</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-05-20T01:28:30+00:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix unused parameter warnings in tkstool list.c
Mark index and dopriv parameters as unused in TKS_ListKeys function.
These parameters are part of the API interface but not used in
the current implementation.
Co-Authored-By: Claude Sonnet 4 <noreply@anthropic.com>
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/7d794512da101e3457c443e9e357baf351194b77">7d794512</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-05-20T01:28:30+00:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix build warnings in tkstool pppolicy.c
- Add missing field initializers for SEC_ASN1Template structures
(explicit NULL and 0 values for 'sub' and 'size' fields)
- Mark unused 'msg' parameters as intentionally unused in
secu_PrintUserNoticeQualifier and secu_PrintPolicyInfo functions
- Add explicit fallthrough comment to fix implicit fallthrough warning
in secu_PrintPolicyQualifier switch statement
Co-Authored-By: Claude Sonnet 4 <noreply@anthropic.com>
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/91487fd304766ac4d7a4fed05953305ee224d580">91487fd3</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-05-20T01:28:30+00:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix missing prototype warning in tkstool secerror.c
Add missing include for secutil.h which contains the prototype
for SECU_Strerror function, fixing the -Wmissing-prototypes warning.
Co-Authored-By: Claude Sonnet 4 <noreply@anthropic.com>
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/40e3bb3592a4be1869a5e3b32c175a30e8c0f1a0">40e3bb35</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-05-20T01:28:30+00:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix unused result warning in tkstool secpwd.c
Check return value of QUIET_FGETS (fgets) to fix -Wunused-result
warning. Handle error/EOF cases properly by restoring echo and
returning NULL. Also add safety check before removing newline
character to prevent accessing invalid memory.
Co-Authored-By: Claude Sonnet 4 <noreply@anthropic.com>
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b6eba3931c70e59ee13e8560f87971bcc59e415f">b6eba393</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-05-20T01:28:30+00:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix initial build warnings in tkstool secutil.c (part 1)
- Make internal functions static: SECU_GetString, SECU_PrintErrMsg, secu_InitSlotPassword
- Add format attribute to SECU_PrintErrMsg to fix format warning
- Mark unused parameters: SECU_GetPasswordString (arg), SECU_FilePasswd (slot)
- Fix missing field initializer in SECU_ReadDERFromFile filedata struct
- Fix unused variable warning in SECU_ChangePW by using rv to check PK11_InitPin result
Co-Authored-By: Claude Sonnet 4 <noreply@anthropic.com>
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/7f61b9834dbe74b946aa56b0e6bff9e14949cb44">7f61b983</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-05-20T01:28:30+00:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix more build warnings in tkstool secutil.c (part 2)
Make more internal functions static to fix missing prototype warnings:
- secu_StdinToItem
- SECU_StripTagAndLength
- SECU_PrintSet
- SECU_PrintEncodedBoolean
- SECU_PrintEncodedInteger
- SECU_PrintEncodedObjectID
Co-Authored-By: Claude Sonnet 4 <noreply@anthropic.com>
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/16d38b790f5ecb5a85358ce80074e12603929245">16d38b79</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-05-20T01:28:30+00:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix additional build warnings in tkstool secutil.c (part 3)
- Make more internal functions static: SECU_DecodeAndPrintExtensions,
SECU_PrintSetOfExtensions, SECU_PrintSetOfAny, SECU_PrintCertAttribute,
SECU_PrintCertAttributes, printFlags
- Add format attributes to SECU_PrintError and SECU_PrintSystemError
- Mark unused parameters: SECU_GetClientAuthData (fd, caNames),
secu_PrintSubjectPublicKeyInfo (arena), SECU_ParseCommandLine (progName),
SECU_PrintCertAttribute (m)
Co-Authored-By: Claude Sonnet 4 <noreply@anthropic.com>
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/cc9e750267de2cd33015e7fbcfd36f9a809ca979">cc9e7502</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-05-20T01:28:30+00:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix unused parameter warnings in tkstool secutil.c (part 4)
Mark unused 'msg' parameters in extension printing functions:
- secu_PrintX509KeyUsage
- secu_PrintAuthKeyIDExtension
- secu_PrintCRLDistPtsExtension
- secu_PrintNameConstraintsExtension
- secu_PrintAuthorityInfoAcess
Mark unused 'authorityKeyID' parameter in SECU_FindCrlIssuer
Co-Authored-By: Claude Sonnet 4 <noreply@anthropic.com>
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/41ebd66e3a8024a2a61382dc5620c3088ad2cbd1">41ebd66e</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-05-20T01:28:30+00:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix implicit fallthrough and const qualifier warnings in tkstool secutil.c (part 5)
- Add missing break statements in SECU_printCertProblems switch cases
to fix implicit fallthrough warnings
- Fix const qualifier warnings by changing variable declarations:
- SECU_ConfigDirectory: home -> const char *
- SECU_PrintName: str -> const char *
- SECU_PrintCertNickname: name -> const char *
- Fix const qualifier warning in SECU_GetModulePassword by casting "external"
Co-Authored-By: Claude Sonnet 4 <noreply@anthropic.com>
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c9f91e36ab8406215652af596fd1982b6fc3a11d">c9f91e36</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-05-20T01:28:30+00:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix remaining build warnings in tkstool secutil.c (part 6)
- Fix const qualifier warnings: change errstr to const char * in SECU_printCertProblems
- Fix sign comparison warnings: cast sizeof to PRInt32 in SECU_PrintPRandOSError
- Fix pointer-to-int cast warnings: use uintptr_t intermediate cast in SECU_printCertProblems
- Fix deprecated declaration warnings: replace CERTDB_VALID_PEER with CERTDB_TERMINAL_RECORD
- Fix sign comparison in SECU_StoreCRL: cast PR_Write result to unsigned int
- Add stdint.h include for uintptr_t support
Co-Authored-By: Claude Sonnet 4 <noreply@anthropic.com>
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/76451a9eaa6d35beefa8d8d1617e797fe1459426">76451a9e</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-05-20T01:28:30+00:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix compiler warnings in tkstool.c
- Fix const qualifier warnings by declaring DBPrefix and slotname as const char*
- Fix sign comparison warnings by casting sizeof to PRInt32 when comparing with errLen
Co-Authored-By: Claude Sonnet 4 <noreply@anthropic.com>
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a16956fa344283bdc5afb26045606ad6ebe2f27f">a16956fa</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-05-20T01:28:30+00:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix compiler warnings in tkstool util.c
- Fix unterminated string initialization by using {0} instead of explicit null characters
- Fix unused-but-set variables by adding proper terminal settings restoration
- Fix unused result warning for system() calls by storing and marking result as unused
- Add terminal restoration code to properly restore original terminal settings
Co-Authored-By: Claude Sonnet 4 <noreply@anthropic.com>
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c083ca6731c84356db3f03a3bcf9db1a92992e29">c083ca67</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-05-20T16:00:28-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update PQC tests, docs, and config files
A new doc and config file have been added for installing
KRA with PQC. The test for KRA with PQC has been updated to
use the new config file.
The installing-ca-with-mldsa.adoc has been renamed into
installing-ca-with-pqc.adoc for consistency.
The ca-mldsa.cfg and ca-clone-mldsa.cfg have been renamed into
ca-pqc.cfg and ca-clone-pqc.cfg for consistency. The files have
also been updated to use ML-DSA-65 to reflect the default
strength for ML-DSA.
The ca-mldsa-test.yml and ca-clone-mldsa-test.yml have been
renamed into ca-pqc-test.yml and ca-clone-pqc-test.yml for
consistency and also updated to use ML-DSA-65.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/7092e06cbf31cf51d08a1183d03345a882bac8dc">7092e06c</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-05-20T16:47:05-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update NSSDatabase.run()
The NSSDatabase.run() has been updated to switch user only
if the current user is not the owner of the NSS database.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/02a1d82f7e0c28c942dee71afaa4b17f65ed9ec6">02a1d82f</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-05-21T17:22:33-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Drop PKIDeployer.self.system_certs
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/aece5f64ef5ac291299985418623567ef4b76250">aece5f64</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-05-21T17:22:33-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Rename PKIServer.store_cert_request() into store_csr()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/708941c3ba1aeb60e53eb05d90843bf438e4110e">708941c3</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-05-21T17:22:33-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Refactor PKIDeployer.setup_sytstem_certs()
Some of the code in PKIDeployer.setup_sytstem_certs() has been
simplified and moved into setup_system_cert().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/4be4f7e876ddbc02b5b7263a39ce90b7606fe18c">4be4f7e8</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-05-21T17:22:33-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add PKIDeployer.setup_local_system_cert()
The code that creates a system cert locally has been moved
into PKIDeployer.setup_local_system_cert().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/8c0e4ba008850a5fe1551f5b6ba2a1a0325456c5">8c0e4ba0</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-05-21T17:22:33-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add PKIDeployer.setup_remote_system_cert()
The code that creates a system cert remotely has been moved
into PKIDeployer.setup_remote_system_cert().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/bd2e3f557a78b9816e0fc92402e52a8f7c81bc30">bd2e3f55</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-05-21T17:22:33-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add PKIDeployer.setup_system_csr()
The code that generates a CSR for a system cert has been moved
into PKIDeployer.setup_system_csr().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/2f52f93edbe02c2699652e793086d583f62be87c">2f52f93e</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2026-05-21T18:34:04-07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix CryptoUtil ML-KEM methods to accept key size in bits (#5363)
Change encapsulateMLKEM() and decapsulateMLKEM() to accept key
size in bits instead of bytes, consistent with PKI convention and
other CryptoUtil methods like generateKey().
The methods now convert bits to bytes internally when calling the
Java KEM API, making them compatible with params.getSkLength()
which returns key size in bits.
IDM-6295</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/8b3796aeb02953ebc7ae67b23c10e1fb28ffdc57">8b3796ae</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-05-26T14:09:30-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add support for installing CA with Kryoptic
The code in NSSDatabase, PKIInstance, PKISubsystem, and PKIDeployer
has been modified to run external commands as pkiuser so that they
can access Kryoptic token in pkiuser's home directory.
The PKIDeployer.setup_system_cert() has been modified to set the
trust attributes while importing the certs due to an issue in
Kryoptic, but it will continue to update the trust attributes
after import for cloning with certain HSMs (e.g. SoftHSM) where
trust attributes are stored in the internal token.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/0060dddbd0cacfd413d65c28b5663af1e35b92fd">0060dddb</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-05-26T14:09:30-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add test for installing CA with Kryoptic
A new test has been added to create a Kryoptic token in pkiuser's
home directory then install CA with the token. The existing test
for PKI CLI with Kryoptic has been updated to set the trust
attributes while importing the certs due to an issue in Kryoptic.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/348eb021eec88a9b0815904530a020ad3e3d2720">348eb021</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-05-26T18:09:51-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Drop PKISubsystem.find_system_certs()
The PKISubsystem.find_system_certs() has been replaced with
get_subsystem_certs() and the get_subsystem_cert() will only
be called if needed.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e0c86aff392367e8b882077a296b595f40a3828e">e0c86aff</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-05-26T18:10:32-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Replace PKISubsystem.get_subsystem_cert() in pki-healthcheck
The pki-healthcheck has been updated to call PKISubsystem.
get_system_cert_config() instead of get_subsystem_cert() and
it will only call get_system_cert_info() if needed.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/1ae6193a85e62d5196822b0e83a0946e6dbf396f">1ae6193a</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-05-26T20:36:22-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Replace PKISubsystem.get_subsystem_cert() in pki-server CLI
The pki-server CLI has been updated to call PKISubsystem.
get_system_cert_config() instead of get_subsystem_cert() and
it will only call get_system_cert_info() if needed.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/077c0f9d53b93e84d9f50dcb852f01a407113499">077c0f9d</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2026-05-27T12:04:59+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix ML-DSA signing algorithm name extraction
Extract the specific ML-DSA variant name from NamedParameterSpec when
determining the signing algorithm. This ensures ML-DSA keys use the
correct variant identifier (e.g., ML-DSA-44, ML-DSA-65, ML-DSA-87)
rather than the generic KeyPairAlgorithm name when signing
certificates.
This fix is necessary because ML-DSA has multiple variants defined by
NIST FIPS 204, and the signing operation requires the specific variant
name to select the correct algorithm parameters.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/83fcb97c4c11ed4b1646ae2bcc323bbd228049c4">83fcb97c</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2026-05-27T15:02:17+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add ML-DSA support to PKCS10Client
PKCS10Client now supports generating ML-DSA key pairs in addition to
RSA and EC. The -a parameter accepts "mldsa" and the -l parameter
specifies the ML-DSA strength (44, 65, or 87, default 65).
Updated documentation to reflect ML-DSA support. Renamed rsa_keylen
variable to keyStrength for clarity.
Co-Authored-By: Claude Sonnet 4.5 <noreply@anthropic.com>
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/205f30e0ac052ac07dfb0d7759c0ad40fb683c99">205f30e0</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-05-27T20:17:05-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Replace PKISubsystem.get_subsystem_cert() in PKIDeployer
The PKIDeployer has been updated to call PKISubsystem.
get_system_cert_config() or get_system_cert_info() directly
instead of get_subsystem_cert().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c4f02e17124ab24c5b2b11c1e3f2aa973dcbe9d9">c4f02e17</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-05-28T09:15:03-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add test for installing KRA with Kryoptic
A new test has been added to create a Kryoptic token in pkiuser's
home directory then install CA and KRA with the token using PQC
certs.
The existing test for installing CA with Kryoptic has also been
updated to use PQC certs.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/351e32015550518bd7f9d1e7df286fb159708a41">351e3201</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-05-28T13:08:57-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Drop PKISubsystem.get_subsystem_cert()
The remaining references to PKISubsystem.get_subsystem_cert()
have been replaced with get_system_cert_config() and
get_system_cert_info().
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/5d4cc46bd77c917ed8abd1ebbdc2d052c5a24eba">5d4cc46b</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-05-28T18:18:52+00:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix build warnings in pistool delete.c
Replace deprecated key.h include with keyhi.h and remove unused count variable in TKS_DeleteKeys().
Co-Authored-By: Claude Sonnet 4.5 <noreply@anthropic.com>
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/73268b7158d092cdfcb735b8cf3816e3c2395cf4">73268b71</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-05-28T18:30:33+00:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix build warnings in pistool file.c
Mark wrappedKeyName parameters as intentionally unused in TKS_ReadInputFileIntoSECItem() and TKS_WriteSECItemIntoOutputFile().
Co-Authored-By: Claude Sonnet 4.5 <noreply@anthropic.com>
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/00ed2d3ff30f0e71629c162ae81d3a8d0ca4fa14">00ed2d3f</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-05-28T18:30:55+00:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix build warnings in pistool help.c
Mark progName parameter as intentionally unused in TKS_PrintHelp().
Co-Authored-By: Claude Sonnet 4.5 <noreply@anthropic.com>
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/18b8e0ff496930966afb818e4e9ce301c44ecd6b">18b8e0ff</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-05-28T18:30:58+00:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix build warnings in pistool key.c
Fix sign comparison warnings by casting PL_strlen() results to appropriate
integer types (int or PRIntn).
Fix const-qualifier warnings by updating function signatures to accept
const char * for string parameters:
- InputHexSessionKey: sessionKeyShareName parameter
- InputHexKCV: sessionKeyShareName parameter
- TKS_ComputeAndDisplayKCV: keyName parameter (in both key.c and pistool.h)
- Make keyType parameter const in TKS_ComputeAndDisplayKCV
Fix declaration-after-statement by moving variable declarations to comply
with ISO C90.
Fix uninitialized variable warning by explicitly initializing
hexSessionKeyShare field-by-field to avoid false positive with LTO.
Co-Authored-By: Claude Sonnet 4.5 <noreply@anthropic.com>
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/75c15949c4f3f774f1af95ef7d6b3e61bf08ff94">75c15949</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-05-28T18:31:37+00:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix build warnings in pistool list.c
Mark index and dopriv parameters as intentionally unused in TKS_ListKeys().
Co-Authored-By: Claude Sonnet 4.5 <noreply@anthropic.com>
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d48648721373588e0c04d1a8abe79536273ca603">d4864872</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-05-28T20:24:42+00:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix build warnings in pistool secerror.c
Add include for secutil.h to provide the SECU_Strerror prototype.
Co-Authored-By: Claude Sonnet 4.5 <noreply@anthropic.com>
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/0ead8e919458986a1eb37d85d9256cb5728c4755">0ead8e91</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-05-28T20:24:42+00:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix build warnings in pistool secpwd.c
Check the return value of fgets and handle NULL properly to avoid
undefined behavior when fgets fails.
Co-Authored-By: Claude Sonnet 4.5 <noreply@anthropic.com>
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ede5482fbb23e62e920d95e1a45694a595478a97">ede5482f</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-05-28T20:24:42+00:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix build warnings in pistool util.c
- Fix unterminated string initialization by using {0}
- Remove unused variables: rv, orig_lflag, orig_cc_min, orig_cc_time
- Capture and explicitly ignore system() return value
Co-Authored-By: Claude Sonnet 4.5 <noreply@anthropic.com>
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/7214549fe9963910fb639eb6268be3692ecafab6">7214549f</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-05-28T22:06:41+00:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix build warnings in pistool pppolicy.c
Add explicit NULL/0 initializers to SEC_ASN1Template structures to fix
-Wmissing-field-initializers warnings:
- secu_PolicyQualifierTemplate: qualifierID and qualifierValue entries
- secu_PolicyInfoTemplate: policyID and policyQualifiers entries
SEC_ASN1Template has four fields: kind, offset, sub, and size. When sub
is NULL and size is 0, both must be explicitly specified to avoid compiler
warnings about missing field initializers.
Make msg parameters const char * in pppolicy.c functions:
- secu_PrintUserNoticeQualifier
- secu_PrintPolicyQualifier
- secu_PrintPolicyInfo
Also update const char * for msg parameters in secutil.c and secutil.h:
- SECU_PrintString
- SECU_PrintGeneralizedTime
- SECU_PrintAny
- SECU_PrintObjectID
Mark unused msg parameters with (void) casts in:
- secu_PrintUserNoticeQualifier
- secu_PrintPolicyInfo
Add FALLTHROUGH comment for intentional switch case fall-through in
secu_PrintPolicyQualifier.
Co-Authored-By: Claude Sonnet 4.5 <noreply@anthropic.com>
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/9c7f780764c437f1765cfe31fbe835ef18c6eddd">9c7f7807</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2026-05-29T10:05:21+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add ML-DSA signature support for CMC enrollment
Implement RFC 9882 algorithm requirements for Certificate Management
over CMS (CMC) [1] by adding support for ML-DSA post-quantum signature
algorithms.
Changes:
- Update CMCRequest to detect ML-DSA key types and select appropriate
signature algorithms based on parameter specs
- Configure SHA-512 as the digest algorithm for ML-DSA signatures in
both CMCRequest and CMCOutputTemplate
This enables CMC-based enrollment and issuance of certificates using
post-quantum ML-DSA signature algorithms as specified in RFC 9882.
Additionally, add a new `caCMCMLDSAserverCert` profile for server
certificates with ML-DSA keys (ML-DSA-44, ML-DSA-65, ML-DSA-87) and
register the new profile in CS.cfg profile list.
1. RFC 9882 - Using ML-DSA in the Cryptographic Message Syntax (CMS)
(https://www.rfc-editor.org/rfc/rfc9882)
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/9de01b55743d54cf3fa437234e50537e61e91e0e">9de01b55</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2026-05-29T10:05:21+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Extend CA PQC tests with a CMC certificate request
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/00a9aa9d07717a177d7c96f5192db009750b8372">00a9aa9d</a></strong>
<div>
<span> by jmagne </span> <i> at 2026-05-29T16:28:25-07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix [Dev] ML-KEM (with Archival) support for CRMFPopClient (and/or cli) (#5364)
Add code in KRA to extract the ML-KEM session key if encapsulated.
Added a new user profile caMLKEMUserCert.cfg
Fixed UserKeyDefault.java to recognize ML-KEM, it already checks for ML-DSA.
Assisted-by: Claude Sonnet 4.5</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/60dc2ac8e0a5ef55dd8200f0f212b26b162bd969">60dc2ac8</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2026-05-29T18:57:39-07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add ML-KEM storage support to KRA key archival (#5358)
* Add ML-KEM support to KRA key archival
This change adds ML-KEM key archival support to KRA when using an ML-KEM
storage certificate:
- When an ML-KEM storage certificate is detected, the archival process uses
ML-KEM encapsulation to derive a shared secret (instead of generating and
wrapping a session key with RSA/EC as in traditional archival).
- The user's private key is wrapped with the shared secret using AES-KWP,
producing a backward-compatible privateKeyData structure:
SEQUENCE { kemCiphertext, wrappedPrivateKey }
- Runtime enforcement ensures that ML-KEM storage certificates cannot be
used with the allowEncDecrypt_archival mode, as ML-KEM does not support
this alternative encryption path.
- The privateKeyData structure remains compatible with existing code:
RSA/EC storage: SEQUENCE { wrappedSessionKey, wrappedPrivateKey }
ML-KEM storage: SEQUENCE { kemCiphertext, wrappedPrivateKey }
Recovery (unwrap) support will be added in a separate PR.
Assisted-by: Claude
IDM-5472
IDM-6363
* Improve ML-KEM keyRecord metadata and upgrade to AES-256
Skip non-applicable metadata fields for ML-KEM key archival:
- sessionKeyWrapAlgorithm and sessionKeyKeyGenAlgorithm are not
applicable to ML-KEM (uses encapsulation, not wrapping/generation)
- payloadEncryptionOID and payloadEncryptionIV are only used when
kra.allowEncDecrypt.archival=true (which ML-KEM does not support)
Add storageKeyAlgorithm field to keyRecord metadata to clearly
indicate the storage certificate algorithm (e.g., "ML-KEM-1024",
"RSA", "EC") for better visibility and debugging.
Upgrade default session key size from AES-128 to AES-256 for
improved security (applies to RSA, EC, and ML-KEM storage certs).
Add recommended security settings to KRA CS.cfg:
- keyWrap.useOAEP=true for RSA session key wrapping
- kra.legacyPKCS12=false with AES-256-KWP for PKCS#12 encryption
- Add explanatory comments for configuration clarity
Before (ML-KEM keyRecord metadata):
metaInfo: sessionKeyWrapAlgorithm:RSA
metaInfo: payloadEncrypted:false
metaInfo: sessionKeyKeyGenAlgorithm:AES
metaInfo: sessionKeyType:AES
metaInfo: sessionKeyLength:128
metaInfo: payloadEncryptionOID:2.16.840.1.101.3.4.1.2
metaInfo: payloadEncryptionIV:N5Dpy30TAonmtwgnCdFpKg==
metaInfo: payloadWrapAlgorithm:AES KeyWrap/Padding
algorithm: 2.16.840.1.101.3.4.4.2
After (ML-KEM keyRecord metadata):
metaInfo: storageKeyAlgorithm:ML-KEM
metaInfo: payloadEncrypted:false
metaInfo: sessionKeyType:AES
metaInfo: sessionKeyLength:256
metaInfo: payloadWrapAlgorithm:AES KeyWrap/Padding
algorithm: 2.16.840.1.101.3.4.4.2
Assisted-by: Claude
IDM-5472 IDM-6363</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/7d8659428738948d4b2610959c97aa335aac9c2e">7d865942</a></strong>
<div>
<span> by Zachary Sherman-Burke </span> <i> at 2026-06-01T10:47:47-04:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Adding test to verify LDAPS works with ML-DSA
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/47d959eda1f69f6b87d88d27ba4ac36fa472d77f">47d959ed</a></strong>
<div>
<span> by Taylor Herring </span> <i> at 2026-06-01T14:54:52-04:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix Tomcat paths for RHEL compatibility (DOGTAG-4399)
Update Tomcat executable and systemd wrapper script paths for pki-tomcat-start/stop from /usr/bin to /usr/sbin for compatibility in RHEL. Additionally removed an in-line systemd service file comment causing a systemd parsing warning, which also resulted in pkispawn failure
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ecab4dd3fd7c149f423737e69cc06253d072db45">ecab4dd3</a></strong>
<div>
<span> by Taylor Herring </span> <i> at 2026-06-01T17:29:31-04:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add upstream test for internal OCSP with ML-DSA (DOGTAG-4381)
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/216614ab1e49d4718522adda7bdde917e22ebaa4">216614ab</a></strong>
<div>
<span> by Taylor Herring </span> <i> at 2026-06-01T19:31:13-04:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>fix: enable caMLDSAUserCert profile for internal OCSP test
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6bbe41cbb3113af95ebe99fd782345c30123a0b9">6bbe41cb</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-06-01T22:00:35-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix build warnings in pistool.c and related files
This commit addresses multiple ISO C90 compliance and build warnings:
- Move variable declarations to the beginning of code blocks to comply
with ISO C90 (all declarations must appear before executable statements)
- Make string literal initializations use const char *
- Fix sign comparison warnings by casting sizeof to PRInt32
- Fix const qualifier warnings by updating function signatures
- Add KEY_ALG_UNKNOWN cases to switch statements
- Mark unused DBDir variable
- Initialize detectedAlgString to NULL
The changes ensure pistool.c compiles cleanly with strict C90 compliance
flags and eliminates declaration-after-statement, sign-compare, and
const-qualifier warnings.
Co-Authored-By: Claude Sonnet 4.5 <noreply@anthropic.com>
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/7febec1ddde1124cebf42a342010a02a15e17c6c">7febec1d</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-06-01T22:03:44-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up log messages in CI
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f0b3d0b57db81f4feead415edcf8457c536638c9">f0b3d0b5</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2026-06-01T20:44:21-07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Minimize impact on non-PQC deployments for KRA archival (#5373)
Changes to reduce impact on existing RSA/EC KRA deployments:
1. CS.cfg: Restore sessionKeyLength=128 (from 256) and keep
keyWrap.useOAEP commented out (false by default) to maintain
backward compatibility with existing configurations.
2. KeyRecord.java: Only store storageKeyAlgorithm metadata for
ML-KEM keys. RSA/EC keys don't need this field since the
algorithm can be determined from the key itself.
Note: TransportKeyUnit.java already has the correct RSA unwrap
logic from the parent commit, so no changes needed.</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/34b2d8a077ce348cdc75aff05135950dc38b3916">34b2d8a0</a></strong>
<div>
<span> by Zachary Sherman-Burke </span> <i> at 2026-06-02T06:51:03-04:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add HTTPS connector test with ML-DSA certs (DOGTAG-4372)
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b1758ecd3b4d9d6f1dcdceb2d8b7ee8bc0a04a4e">b1758ecd</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2026-06-02T14:46:15-07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add ML-KEM-specific enrollment profiles for KRA storage and transport certificates (#5361)
Creates dedicated enrollment profiles for issuing ML-KEM certificates to KRA
subsystems, ensuring RFC 9935 compliance.
Changes:
- Add caMLKEMInternalAuthDRMstorageCert profile
* Supports ML-KEM-512, ML-KEM-768, ML-KEM-1024
* Sets keyEncipherment as only key usage bit (per RFC 9935 §5)
* No clientAuth EKU (ML-KEM certs don't perform SSL client auth)
* Uses ML-DSA-65 for signing
- Add caMLKEMInternalAuthTransportCert profile
* Same ML-KEM parameter set support
* RFC 9935 compliant key usage
* No clientAuth EKU
- Update pkispawn to use ML-KEM profiles when KRA certs use MLKEM key type
* Automatically selects caMLKEMInternalAuthDRMstorageCert for ML-KEM storage certs
* Automatically selects caMLKEMInternalAuthTransportCert for ML-KEM transport certs
* Falls back to RSA profiles (caInternalAuthDRMstorageCert/caInternalAuthTransportCert) for non-ML-KEM
* For ML-KEM: sets keyEncipherment only, no clientAuth
* For RSA/EC: preserves existing key usage and clientAuth
- Add ML-KEM exemption to certificate validation
* CertUtil.verifyCertificateUsage() skips SSLClient validation for ML-KEM certs
* ML-KEM transport/storage certs have only keyEncipherment, not SSLClient usage
* Allows ML-KEM KRA instances to start without validation errors
* Existing RSA/EC KRA instances unaffected (still validate with SSLClient)
* Errors in ML-KEM detection propagate to caller rather than being silently caught
- Add ML-KEM profile tests
* New workflow files for testing ML-KEM-specific profiles
* Tests CRMFPopClient enrollment without POP for both ML-KEM variants
* Tests PKI CLI CRMF enrollment without POP
* Verifies cert issuance and key matching
* Existing RSA/EC profile tests remain unchanged
RFC 9935 compliance: ML-KEM certificates must have keyEncipherment as the
only key usage bit when the keyUsage extension is present.
Assisted-by: Claude
IDM-6363</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/39414a48bff9b8e71b71ece00ff71fba8f2811b4">39414a48</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2026-06-02T20:45:05-07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add ML-KEM support for KRA key recovery (#5362)
This commit implements complete ML-KEM support for KRA key recovery
workflow, enabling recovery of keys that were archived using ML-KEM
storage certificates or retrieval using ML-KEM transport certificates.
Server-side recovery changes (storage key):
- StorageKeyUnit.java:
* Updated unwrap() methods for both PrivateKey and SymmetricKey
recovery to detect ML-KEM storage certificate
* Added ML-KEM decapsulation to recover shared secret from KEM
ciphertext instead of traditional session key unwrapping
* Maintains backward compatibility with RSA/EC storage certificates
* Added comments documenting SEQUENCE structure semantics for
RSA/EC (wrapped session key) vs ML-KEM (KEM ciphertext)
- RecoveryService.java:
* Added note that allowEncDecrypt_recovery is not supported for
ML-KEM storage at this time
Server-side recovery changes (transport key):
- EncryptionUnit.java:
* Updated unwrap_session_key() to detect ML-KEM transport
certificate and use decapsulation instead of unwrapping
* Added clarifying comments explaining KEM ciphertext vs wrapped key
Client-side recovery changes (transport key handling):
- CryptoUtil.java:
* Added defensive checks in wrapSymmetricKey() and wrapUsingPublicKey()
* Throws clear exception if ML-KEM transport key is detected
Client-side recovery changes (passphrase-based recovery):
- CryptoProvider.java:
* Added abstract encapsulateMLKEM() method for ML-KEM encapsulation
- NSSCryptoProvider.java:
* Implemented encapsulateMLKEM() with token.importPublicKey() to
fix SIGSEGV crash during ML-KEM public key operations
* Added defensive NSS token login logic with helpful error messages
for uninitialized NSS databases
- KeyClient.java:
* Updated retrieveKeyByPassphrase() and retrieveKeyByRequestWithPassphrase()
to detect ML-KEM transport certificate and use encapsulateMLKEM()
* For ML-KEM: generates shared secret directly via encapsulation
* For RSA/EC: generates session key and wraps it (existing behavior)
* Encrypts passphrase with session key/shared secret in both cases
Key insight: ML-KEM encapsulation produces both the shared secret and
ciphertext together, unlike RSA/EC where the session key is generated
separately and then wrapped.
Recovery workflow:
1. Read privateKeyData SEQUENCE from KeyRecord
2. Extract ciphertext (first OCTET STRING) and wrapped key (second)
3. If storage/transport cert is ML-KEM: decapsulate to get shared secret
4. If storage/transport cert is RSA/EC: unwrap session key (existing path)
5. Unwrap user's private key with shared secret/session key
6. Create PKCS#12 with recovered key (works for PQC keys)
The PKCS#12 creation code requires no changes as it already works
with PQC keys (verified by hsmCompatVerifyServ tool).
Assisted-by: Claude
IDM-5473 IDM-6363</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a7b3b7314d015aa7c3cc29de3a259f2ab44e390e">a7b3b731</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-06-03T14:40:48+00:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add function prototypes and const qualifiers to secutil.h and secutil.c
Header file (secutil.h):
- Add missing function prototypes to prevent -Wmissing-prototypes warnings
- Update function parameters to const char* for string literals to fix const qualifier warnings
- Add format attributes for printf-style functions to enable static analysis
- Update function signatures: SECU_PrintError, SECU_PrintSystemError, SECU_PrintErrMsg
- Fix SECU_StripTagAndLength return type to SECStatus (matches implementation usage)
- Add const qualifiers to message parameters in print functions
Implementation file (secutil.c):
- Update function signatures to match header with const char* qualifiers
- Fix return types (int to SECStatus) for SECU_DecodeAndPrintExtensions,
SECU_PrintSetOfExtensions, SECU_PrintSetOfAny, SECU_PrintCertAttribute,
and SECU_PrintCertAttributes
This aligns the function definitions with their prototypes and eliminates
missing prototypes and const qualifier warnings while maintaining API compatibility.
Co-Authored-By: Claude Sonnet 4.5 <noreply@anthropic.com>
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b3d8c258abf543ae1b91f5000c87fe6671b4e6ab">b3d8c258</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-06-03T14:40:48+00:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix build warnings in secutil.c
- Mark unused parameters with __attribute__((unused)) to suppress -Wunused-parameter warnings
- Fix implicit enum conversion warning by returning SECFailure instead of SEC_ERROR_NO_MEMORY
- Add missing break statement to fix -Wimplicit-fallthrough warning in SECU_printCertProblems
Co-Authored-By: Claude Sonnet 4.5 <noreply@anthropic.com>
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/25cd080ee5ae39e10fc943ae688f2eaad96115b7">25cd080e</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-06-03T14:40:48+00:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix build warnings in pistool secutil files
Add const qualifiers to function parameters accepting string literals
and update all function definitions to match updated declarations.
Changes include:
- secutil.h: Update function declarations to use const char * for
message/prompt parameters (SEC_GetPassword, SECU_PrintPolicy,
SECU_PrintCRLInfo, SECU_PrintName, SECU_PrintExtensions,
SECU_PrintFingerprints)
- secutil.c: Update ~35 function definitions to match declarations,
mark unused parameters with __attribute__((unused)), and fix
implicit fall-through in switch statement by adding missing break
- pppolicy.c: Update SECU_PrintPolicy definition to use const char *
- secpwd.c: Update SEC_GetPassword definition to use const char *
This resolves all const-discard warnings, unused-parameter warnings,
and conflicting type errors in the pistool native code.
Co-Authored-By: Claude Sonnet 4.5 <noreply@anthropic.com>
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ed51092a803f4abfd5014eaa251dc7a2dd851bca">ed51092a</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-06-03T20:14:37+00:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix build warnings in pistool secutil.c
- Replace deprecated CERTDB_VALID_PEER with CERTDB_TERMINAL_RECORD
- Add const qualifier to SECU_PPFunc msg parameter
- Cast PRInt32 to size_t for sizeof comparisons
- Use uintptr_t for pointer-to-int conversions
- Cast PR_Write return value for unsigned comparison
- Fix sizeof(sd) to sizeof(*sd) in memset
- Fix incompatible pointer type errors in SECU_PrintCertificate function
Co-Authored-By: Claude Sonnet 4 <noreply@anthropic.com>
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6e0a0df3a7ac41288b14801d4361b5a37d7448a6">6e0a0df3</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-06-03T20:15:15+00:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix build warnings in setpin b64.c
- Remove unused variable 'len' in ldif_base64_encode_internal
- Add function prototype for ldif_base64_encode
Co-Authored-By: Claude Sonnet 4.5 <noreply@anthropic.com>
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/fba365da52b7a0896ef9a8c68cf5c6ca1a5e6c8c">fba365da</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-06-03T20:15:15+00:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix build warnings in setpin options.c
Updated function signatures and declarations in setpin options
files to resolve compiler warnings.
Co-Authored-By: Claude Sonnet 4 <noreply@anthropic.com>
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/49f3938e7090034aa5d9a17dfd132fca66572df3">49f3938e</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-06-03T20:15:15+00:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix build warnings in setpin.c
- Add static qualifiers and function prototypes for internal functions
- Cast string literals to char* for LDAPMod structure assignments
- Cast pwd parameter to unsigned char* for PK11_HashBuf
- Move struct berval declaration before code to comply with C90
- Cast pointer to uintptr_t before converting to unsigned int
- Remove unused 'change' variable
- Fix strcpy source/destination issue by using pointer assignment
- Add stdint.h for uintptr_t
Co-Authored-By: Claude Sonnet 4.5 <noreply@anthropic.com>
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/0a81d9b98a1c8271196c6e371405705c7b02a190">0a81d9b9</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-06-04T00:33:07+00:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix XP_UNIX redefinition warning in config.h
Add ifndef guard around XP_UNIX definition to prevent redefinition
warnings when NSPR headers (which already define XP_UNIX) are included.
Co-Authored-By: Claude Sonnet 4.5 <noreply@anthropic.com>
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c5e28b2bf766da185cbbd5fd674c91cc60d66874">c5e28b2b</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-06-04T00:33:07+00:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix build warning in Util.cpp
Remove unused status variable in DiversifyKey function.
Co-Authored-By: Claude Sonnet 4.5 <noreply@anthropic.com>
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/59ad7c017df1e194bef621e2e7e0b5c858affb8d">59ad7c01</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-06-04T00:33:07+00:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix build warnings in RA_Client.cpp
Replace unsafe sprintf pattern that used output buffer as both source
and destination with pointer arithmetic to safely append hex bytes.
Co-Authored-By: Claude Sonnet 4.5 <noreply@anthropic.com>
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/05e1be32e90a73de9597c8cb7bd92b6f98d6d02d">05e1be32</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-06-04T00:33:07+00:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix build warnings in RA_Conn.cpp
Co-Authored-By: Claude Sonnet 4.5 <noreply@anthropic.com>
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/46b5435b4389efa32d84d8c8c607c5c8968778fa">46b5435b</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-06-04T00:33:07+00:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix build warnings in RA_Token.cpp
- Change char* to const char* for curveName in curveNameTagPair struct
- Change char* to const char* for keycurve variable in ProcessGenerateKeyECC
- Fix const char* to char* conversion in SetMSN function using const_cast
- Add missing variable declarations: input buffer in CreateSessionKey, algtag in ProcessGenerateKey
- Remove unused variables and code: input buffer loops, attrFlags, n variable assignment
- Add void cast to suppress algtag unused variable warning in ProcessGenerateKey
- Move pkeyb and pkeyb_len declarations inside VERIFY_PROOF ifdef block
Co-Authored-By: Claude Sonnet 4 <noreply@anthropic.com>
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/03a1b221ca513e801942e231bb099e3d88855d34">03a1b221</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-06-04T00:33:07+00:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix build warning in TPSClientCLI.cpp
Co-Authored-By: Claude Sonnet 4.5 <noreply@anthropic.com>
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e9c19b49e725a2b4b8154a48820dd0b55d2a753e">e9c19b49</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-06-04T00:33:07+00:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix build warning in tpsclient.cpp
Co-Authored-By: Claude Sonnet 4.5 <noreply@anthropic.com>
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a3257d4096a08d490377920e15512ce9ed13c8be">a3257d40</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2026-06-05T09:44:23+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update kryoptic configuration for trust attributes
To be compatible with NSS, Kryoptic has introduced the new
configuration option `objects_dedup = "TrustOnly"` which prevent the
creation of multiple overlapping trust objects.
The Kryoptic workflow has been updated to use the new configuration.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/daa308e2b640e990f6bb9efc57bddce260c88aa7">daa308e2</a></strong>
<div>
<span> by Zachary Sherman-Burke </span> <i> at 2026-06-05T13:48:56-04:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix duplicate error messages in LDAPExceptionConverter
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/7d896dc41372fe734b1d515c8d866b7ba9a0b346">7d896dc4</a></strong>
<div>
<span> by parrishjd </span> <i> at 2026-06-05T20:53:02+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update 04-UpdateMLDSAProfiles.py
Allow for highly modified profiles with the same name.
Update 04-UpdateMLDSAProfiles.py
Fixed line length by linter
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/60558cda195489c34fdea17dee5d4f8cfaec0404">60558cda</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-06-05T14:29:36-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up test messages
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/03b94b80780e02b56a5ad8dc964ab02fd26d914a">03b94b80</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-06-05T14:29:36-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up build messages
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b4dc24557c4eebed096042fe3dfcce0efaaba7c4">b4dc2455</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-06-05T14:29:36-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update version number to 11.10.0-beta2
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ee33dee3742ccacaf9fef3b3a63c0f3bd9efd2db">ee33dee3</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-06-08T16:07:39-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix publish job
The pom.xml has been updated to use org.jboss.spec.javax.ws.rs
so that it can be used to publish Maven artifacts. The pki-local
will now be created dynamically in pki.spec. The publish job has
also been updated to use Java 21.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/02b3d7f167ce569480b3a1d66cac7a5ca06b095a">02b3d7f1</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-06-09T15:27:20-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add build.sh --product-version option
The build.sh has been updated to provide an option to specify
a product version in case it's different from the PKI version.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/1c1c6141cb33ac344000449dad5917a82be5090c">1c1c6141</a></strong>
<div>
<span> by Zachary Sherman-Burke </span> <i> at 2026-06-10T11:42:31-04:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add HTTPS connector test with ML-DSA certs and Kryoptic HSM
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a1bca89cd904bb844ac3bfec6d4c5522ead8f921">a1bca89c</a></strong>
<div>
<span> by jmagne </span> <i> at 2026-06-10T15:11:24-07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Address sporadic CI crashes by having the CLI cmds clean up the connection at the end. (#5376)
Assisted by Claude Sonnet 4.5.</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/079f8284a7601cdb60b3ba9baa67fef13bdca836">079f8284</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2026-06-10T17:29:58-07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add ML-KEM archival/recovery tests (#5381)
* Register and enable caMLKEMUserCert profile
- Add caMLKEMUserCert to profile list in CS.cfg
- Add caMLKEMUserCert.class_id mapping
- Enable caMLKEMUserCert profile by default (enable=true)
- Keep visible=false for API/programmatic use
IDM-4328
* Enhance kra-pqc-test with ML-KEM archival/recovery tests
Enhanced the KRA PQC test workflow to include comprehensive ML-KEM key
archival and recovery testing:
- Configure KRA CS.cfg for ML-KEM archival with AES KeyWrap/Padding
- Use CRMFPopClient with -t false to keep ML-KEM-768 key in client NSS DB
- Generate cert request with key archival to KRA
- Test cert import into original client NSS DB (verify trust flags u,u,u)
- Test ML-KEM key retrieval and PKCS#12 export
- Import PKCS#12 with p12tool into new NSS DB (verify trust flags u,u,u)
- Verify ML-DSA-65 for system certs, ML-KEM-768 for transport/storage
The test validates both recovery scenarios:
1. Client retains private key: import cert into original NSS DB
2. Client lost private key: recover from KRA PKCS#12 into new NSS DB
The test focuses on PQC-specific functionality and removes redundant
file permission checks already covered in kra-basic-test.yml.
Assisted-by: Claude
IDM-4328</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/5ce2f9e6f7754df37c1e65e6166b8b0ee42f9087">5ce2f9e6</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2026-06-11T18:36:15+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update CA PQC test with new dynamic buffer size
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/3c00b348f18d8455f5e3855e512cf6b73df3af44">3c00b348</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2026-06-11T09:40:27-07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix crmf pop client mldsa temp (#5382)
* Set PQC keys as non-temporary by default in CRMFPopClient
ML-DSA and ML-KEM private keys need to be permanent (not temporary) for
NSS to properly link them with imported certificates. This matches the
existing behavior for RSA keys.
Without this fix, certificates imported via client-cert-import show
trust flags ,, instead of u,u,u because NSS cannot find the matching
private key, even though CRMFPopClient generated and stored it.
The fix simplifies the logic: only EC keys are temporary by default,
all other algorithms (RSA, ML-DSA, ML-KEM) are permanent.
DOGTAG-4435
* Add CI test for ML-DSA CRMFPopClient enrollment
This test verifies that ML-DSA keys generated by CRMFPopClient are
properly linked to their certificates after import (trust flags u,u,u).
The test validates the fix in CRMFPopClient.java that makes ML-DSA
keys non-temporary by default, eliminating the need for users to
manually specify -t false.
Test procedure:
- Enable caMLDSAUserCert profile
- Generate ML-DSA-65 key with CRMFPopClient using POP_NONE
- Issue certificate and import it
- Verify trust flags are u,u,u (proving key is linked)
DOGTAG-4435</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e6e2c3e65e7cbb03731cee75e5f96a1cfe0af715">e6e2c3e6</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2026-06-11T18:58:18+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix PQC test for multiple deployment
Clean the home folder to allow the server to be re-installed with different options.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/cc839e6e88cec5d7b0f00178486a5dbc1e188b9d">cc839e6e</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-06-12T11:22:29-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update dependencies in .classpath
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/da016d52aff5d9393bd34cf549042357ddd17859">da016d52</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-06-12T14:00:54-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up log messages in PKIDeployer
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/49e4f1cb93bfbfe36803140360757e98314e53bb">49e4f1cb</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-06-12T14:00:54-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Refactor PKIDeployer.create_cert_request()
The PKIDeployer.create_cert_request() has been modified to
simply call NSSDatabase.create_request() and return the CSR
as a string. The caller is responsible to provide the params
including hash alg and extensions.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/47971d09bfa148da70790a2ae7ab2bb72471b6d2">47971d09</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-06-15T14:00:03-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix KRA installation with external certs on Kryoptic
The NSSDatabase.add_ca_cert() has been updated to run pki
nss-cert-import as pkiuser so it can access Kryoptic token.
The PKIDeployer.generate_csr() has been updated use
create_cert_request() to create the cert request as a string
to avoid file permission when used with Kryoptic.
The PKIDeployer.setup_system_cert() has been updated to use
PKISubsystem.get_system_cert_info() so it can get the CA
signing cert info from Kryoptic.
A new test has been updated to install KRA with external
certs on Kryoptic.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/751eae03e7805344d72135ab4df6f9d58c49a090">751eae03</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-06-15T20:17:17-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Remove redundant code in systemcerts.py
The calls to NSSDatabase.get_trust() are no longer needed since
the trust attributes are already available from the cert info.
The nssdb_connection() is no longer used so it has been removed
as well.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ae062d909a44fc564a8dd55d3cdb91d863a09a3a">ae062d90</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-06-15T20:18:29-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix warnings due to deprecated --key-size option
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/eede50ab569f38b7cc459c2f0fad5f9f776e6048">eede50ab</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-06-15T20:18:29-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix warnings due to deprecated --fullName option
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/60144d213c0c25cd6fa7cd42056cbc83195c25e9">60144d21</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-06-15T20:18:29-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix warnings due to unused params in TPS CS.cfg
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f6f7edae26fbe34d52dbc5da89b12c3fb69355b5">f6f7edae</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-06-15T20:18:29-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix warnings due to missing ca.crt
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/41bac9b7a3929317b2ef85ac09c5f6733096cda3">41bac9b7</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-06-15T20:18:29-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update tests to disallow warnings
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/0e8956d832d0dbf8bb857fe022d5583dce78f406">0e8956d8</a></strong>
<div>
<span> by jmagne </span> <i> at 2026-06-15T19:23:12-07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>For Server Side KeyGen, both CA and TPS, allow the key usages to be configured. (#5383)
For the CA, we can configure these in the SSKG CA cert enrollment profiles.
For TPS we can confugire these both in the token profile for each key type or the keyset mapping resolver configuration.
Exs:
CA SSKG profile (e.g., caServerKeygen_UserCert):
policyset.userCertSet.3.default.params.keyGenUsages=sign,verify,sign_recover,verify_recover,encrypt,decrypt,wrap,unwrap
TPS static profile config:
op.enroll.externalRegISEtoken.keyGen.encryption.serverKeygen.enable=True
op.enroll.externalRegISEtoken.keyGen.encryption.serverKeygen.archive=true
op.enroll.externalRegISEtoken.keyGen.encryption.serverKeygen.drm.conn=kra1
op.enroll.externalRegISEtoken.keyGen.encryption.serverKeygen.keyGenUsages=sign,verify,sign_recover,verify_recover,wrap,unwrap
TPS keySetMappingResolver:
tps.mapping.resolver.keySetMappingResolver.0.filter.tokenCUID.start=40906145B1960000
tps.mapping.resolver.keySetMappingResolver.0.filter.tokenCUID.end=40906145B19600FF
tps.mapping.resolver.keySetMappingResolver.0.target.keySet=defKeySet
tps.mapping.resolver.keySetMappingResolver.0.target.keyWrapAlg=KWP
tps.mapping.resolver.keySetMappingResolver.0.target.keyGenUsages=sign,verify,sign_recover,verify_recover,wrap,unwrap
Assisted-by : claude Sonnet 4.5.</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/9507e67cc55dadb6f8e0534f5c4ba00995727004">9507e67c</a></strong>
<div>
<span> by Yaakov Selkowitz </span> <i> at 2026-06-16T12:22:24+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add Fedora ELN support to get_tomcat_app_server
Fedora ELN, the basis for the next RHEL major version, now uses ID="eln"
and VERSION_ID=11 in /etc/os-release to avoid confusion with Fedora Linux.
This fixes the build script so that tomcat-10.1 is properly selected for ELN.
Signed-off-by: Yaakov Selkowitz <yselkowi@redhat.com></pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/5d46b0464ec8d7aee8042bf8cd3abc67c19cef62">5d46b046</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-06-16T09:38:10-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update OCSPServlet response on internal error
The OCSPServlet has been updated to return a proper response
status if there is an internal error (e.g. missing CRL data)
as defined in RFC 6960:
https://datatracker.ietf.org/doc/html/rfc6960#section-2.3
> The response "internalError" indicates that the OCSP responder
> reached an inconsistent internal state. The query should be
> retried, potentially with another responder.
The OCSP clients have been updated to check for error status
before processing the response bytes and generate a more
intelligible error message.
The OCSP tests have been updated to expect the new error
message.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/15e9c4160f20272e4740d5bf201bd050e7a8dd24">15e9c416</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-06-16T12:34:52-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update tests to use actions/cache@v5
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6bce3e6b0ee34f193edfdfaac16412851c7c1cb5">6bce3e6b</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2026-06-16T15:56:51-07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Auto-configure key wrapping based on storage cert type (#5386)
This change automatically selects the appropriate key wrapping profile
based on the storage certificate type during KRA installation.
Changes:
- Add wrapping.2 defaults to CS.cfg for ML-KEM storage certs
- Auto-select wrapping profile in configure_kra() based on storage_key_type:
- wrapping.1 for RSA/ECC storage certs (existing default)
- wrapping.2 for ML-KEM storage certs
- Users can override individual wrapping parameters via pkispawn config
- ML-KEM installations get secure PKCS#12 settings by default
- Update kra-pqc-test.yml to verify auto-configuration
- Add comprehensive LDAP validation for ML-KEM archived keys
This makes the code more maintainable and easier to extend for future
key types without requiring ML-KEM-specific logic.
Assisted-by: Claude
DOGTAG-4328 part 2</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6dda7b3e5aa86d03c78ef0c259d017733cc28d4e">6dda7b3e</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-06-16T18:04:40-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update version number to 11.10.0
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b86abaa9e771c2550a5bb098c15995c14627b816">b86abaa9</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2026-06-17T11:47:46+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix phase update error
The update script is expecting the phase to be removed by commenting
the option and not with the `%undefine'.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/544da2940255f6d75c8b9ba8ddaf2ce440472eed">544da294</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2026-06-17T09:34:53-07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add KRATool and hsmCompatVerify to v11.10.0 Tools Changes (#5391)
- KRATool: Document cross-scheme migration support
- hsmCompatVerify: Document new HSM compatibility verification tools
Assisted-by: Claude</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/0844e811ab7b3b721bb6d32b7d7a3483e06853cf">0844e811</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-06-18T15:06:19-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update tests to use actions/checkout@v7
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/a779ea6b928de1908879ed1990b9ea6086461353">a779ea6b</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-06-18T15:08:30-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update tests to use docker/setup-buildx-action@v4
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/36137ba83983358b78903c439d9e0b4a30552a9d">36137ba8</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-06-18T15:09:55-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update tests to use docker/build-push-action@v7
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f9c6f47e9e2cbd4c860a34bca80dff032d880993">f9c6f47e</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-06-22T10:38:12-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update tests to use lewagon/wait-on-check-action@v1.8.0
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f377ce5708ce53a218ba42eb7e1ef8716ef28a6f">f377ce57</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2026-06-24T11:06:07+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Use parent CA key type for LWCA generation
Previously, lightweight CAs always generated RSA keys regardless of
the parent CA's key type. This change makes LWCA key generation
match the parent CA's algorithm and strength.
Changes:
- Detect parent CA key type (RSA, EC, ML-DSA) and generate matching
key pair for lightweight CA
- Use appropriate signature algorithm in PKCS10 request based on
key type instead of hardcoded SHA256withRSA
- Add key parameter constraints to caCACert profile
- Maintain backward compatibility with fallback to RSA 3072
Assisted-by: Claude Sonnet 4.5 <noreply@anthropic.com>
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6ee86b1573595a3c9ea17132cb94ab213bfe7544">6ee86b15</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-06-24T09:13:32-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update tests to use actions/setup-java@v5
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/7c60de131f9ba66df574b931cfb10392cdf00f2a">7c60de13</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-06-24T09:13:32-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update tests to use docker/login-action@v4
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/f4312dcfbe875de2b8c61d0368ff1e9738f8d987">f4312dcf</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-06-24T09:13:32-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update tests to use actions/upload-artifact@v7
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/fd93ad3638cb8b3599708f404f5f94b20b261753">fd93ad36</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-06-25T15:55:05-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add variable to enable/disable test suites
A new GH Action variable has been added to configure the
list of test suites that will run in the CI.
https://github.com/dogtagpki/pki/wiki/Configuring-Test-Suites
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/8593d41c1b48694469fb2f5a9e9a0e161ceb437e">8593d41c</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-06-26T19:08:24-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Drop support for Fedora 42
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b0369148c90ede5704b5ca1ed260c4736240a432">b0369148</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-06-26T19:10:57-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up log messages
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/00d5d2728c17061f82c58a68b02497e9b853dac9">00d5d272</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-07-01T15:01:46-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add test for sub CA with PQC
A new test has been added to install root CA and sub CA
with PQC, then validate the cert requests, issued certs,
cert chains, cert statuses, and cert usages.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/2cb3a819e7a754c9b707c6817504fe753f026952">2cb3a819</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-07-02T13:22:29-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Move RSN and SSN tests to CA Extra
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/cf3040e0590199cfbbbf9e0be58f7e5aa338d9c3">cf3040e0</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-07-02T19:49:59-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Rename DB_IMAGE to DS_IMAGE
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/01fd4ca8aa05bdd9853f948edc6b03c8d3aaa87c">01fd4ca8</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-07-06T16:27:55-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Replace FEDORA_VERSION >> with tee -a
Change all echo "FEDORA_VERSION=$FEDORA_VERSION" >> $GITHUB_ENV
to echo "FEDORA_VERSION=$FEDORA_VERSION" | tee -a $GITHUB_ENV.
Co-Authored-By: Claude Sonnet 4 <noreply@anthropic.com>
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/dea6b5f6596d38aad91ea6d7e57f40caa12e5055">dea6b5f6</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-07-06T18:13:54-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Simplify and standardize TOMCAT_FLAVOR tests
Streamline TOMCAT_FLAVOR conditional logic:
- Replace expected/expected_new_tomcat10 with expected_old/expected_new
- Replace if/else conditionals with direct diff expected_$TOMCAT_FLAVOR output
- Remove "Detected Tomcat flavor:" debug print statements
- Change echo >> $GITHUB_ENV to echo | tee -a $GITHUB_ENV
- Simplify computation into one-liner test command
This reduces code duplication, eliminates output noise, improves readability,
and simplifies test maintenance across all workflow files.
Co-Authored-By: Claude Sonnet 4 <noreply@anthropic.com>
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/d0ec8c0ceaf5925b647e320c69fbf1d295b26a7e">d0ec8c0c</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-07-07T20:00:26-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Clean up log messages in CAService.issueX509Cert()
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/83a08e18b8b0079d528ceea358f1a0a05eb03b00">83a08e18</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-07-10T12:20:29-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix python3-flake8 dependency
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/40d9178cf62ca52d8037110387cc91af348d4b11">40d9178c</a></strong>
<div>
<span> by Taylor Herring </span> <i> at 2026-07-13T17:58:56-04:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix ML-DSA profiles incorrectly setting keyUsageKeyAgreement=true
ML-DSA is a pure signature algorithm (FIPS 204) and does not support
key agreement or data encipherment. Fixes DOGTAG-4513.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/400409f78bffff35698964dc1aee6f5322ef2942">400409f7</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2026-07-14T10:11:48+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add REST API v1 build-time control with runtime deprecation
Introduce build-time flag to exclude v1 REST API code and
dependencies, with optional runtime control for managing v1
deprecation when included.
Build-time Control:
- New --without-apiv1 flag in build.sh to exclude v1 code from build
- Default: v1 REST API included (backward compatible)
- When excluded: v1 source files not compiled, JAX-RS/RESTEasy
dependencies skipped, binary RPMs ~2-3MB smaller
- Maven property api.v1=true/false controls profile activation
- Profile api-v1-deps includes JAX-RS/RESTEasy/Jackson-JAX-RS dependencies
- Profile api-v1-dropped excludes v1 source files via maven-compiler-plugin
Runtime Control (when v1 built):
- Three runtime states: enabled, deprecated (default), disabled
- System property api.v1.status controls behavior at runtime
- Can be set per-instance via tomcat.conf or per-subsystem via CS.cfg
- ApiStatusHelper centralizes status checking across all subsystems
- Input validation: trims, lowercases, rejects invalid values
Runtime States:
1. enabled: v1 fully functional, no warnings
2. deprecated (default): v1 functional with startup warnings and
standard Deprecation headers (IETF draft-dalal-deprecation-header)
3. disabled: v1 returns HTTP 404 Not Found with clean JSON error response,
includes Deprecation
Implementation:
- base/pom.xml: api-v1-dropped profile for source exclusion
- base/common/pom.xml: api-v1-deps profile for conditional dependencies
- base/javadoc/CMakeLists.txt: Exclude v1 REST packages from javadoc
- pki.spec: Conditional BuildRequires/Requires, %post JAR cleanup
- build.sh: --without-apiv1 flag, passes to CMake and RPM
- ApiStatusHelper: Shared utility for status validation and handling
- ApiDisabledResource: JAX-RS catch-all returning HTTP 410 Gone
- ApiDeprecationFilter: JAX-RS response filter adding standard headers
- All Application classes updated to use ApiStatusHelper
HTTP Standards Compliance:
- Deprecation header for deprecated state
- Link header (RFC 8288) pointing to v2 API documentation
- Separate HTTP method handlers per JAX-RS specification
RPM Build:
- build.sh: ./build.sh --without-apiv1 rpm
- rpmbuild: rpmbuild --without apiv1 -ba pki.spec
- Spec validates bcond and sets build_api_v1 conditional
- Maven receives -Dapi.v1=true/false based on bcond
Migration Path:
- Default: v1 included at build, deprecated at runtime (warnings)
- Gradual: Configure runtime disabled to enforce v2 migration
- Final: Build with --without-apiv1 to remove v1 code permanently
Documentation: docs/changes/v11.10.0/Packaging-Changes.adoc and
Server-Changes.adoc
Assisted-By: Claude Sonnet 4.5 <noreply@anthropic.com>
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c4bb4b57e0f0e505529e4aeda9dfffa37133cccf">c4bb4b57</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-07-14T11:32:53-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update basic CA test
The basic CA test has been updated to validate the cert
requests, issued certs, cert chains, cert statuses, and
cert usages, similar to the test for sub CA with PQC.
The basic CA test has also been updated to create the
audit signing cert by default so that the default cert
can also be validated.
The sub CA test has also been updated to validate the
cert usages using pki nss-cert-verify in addition to
vfychain which is failing in some cases.
NOTE: There are some key usage inconsistencies between
the certs in basic (i.e. root) CA and the certs in sub
CA. This will require further investigation.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/2ec00ebe838dda5b1e4b771401b28fb8616864eb">2ec00ebe</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2026-07-15T08:42:27-07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Add PQC and multi-token support to hsmCompatVerify tools (#5392)
Key Features added:
**PQC Support:**
- ML-DSA (44/65/87) for CA signing certificates
- ML-KEM (512/768/1024) for KRA transport and storage certificates
- ML-KEM encapsulation for secure key archival (replaces RSA wrap)
- Support for archiving RSA/EC/ML-KEM user keys with ML-KEM transport
- PKCS#12 export modes: AES-KWP, AES-256-CBC, 3DES-CBC legacy
- Auto-enable PQC mode when ML-KEM user key type selected
**Multi-Token Deployment:**
- Separate token support for CA and KRA certificates via --ca-token and --kra-token
- Independent token authentication (password file or inline)
- Smart token reuse when CA and KRA share same token
- Backward compatible (defaults to single --hsm-token)
- Works with both traditional (RSA/EC) and PQC modes
**Additional Features:**
- CA-only setup mode (--ca-only) for faster testing
- Session key size derived programmatically from CryptoUtil.getWrappingParams()
- Backward-compatible --algorithm flag (alias for --user-key-type)
- Enhanced configuration output and validation
**Documentation and Usability:**
- Reorganized --help examples: Quick Start (Software Token, HSM Traditional, HSM PQC)
- Added PKCS#12 import guidance (p12tool from dogtag-jss-tools package)
- Enhanced help text with full workflow examples and advanced usage reference
Bug fixes:
- Fix IV file path derivation from wrapped-private filename
- Fix LDIF field name consistency (payloadWrapIV instead of payloadEncryptionIV)
Assisted-by: Claude
IDM-5817 IDM-6617 IDM-7034 DOGTAG-4484</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/6c1c16b68cd34709ad50124c24dd84151553481c">6c1c16b6</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2026-07-16T17:01:35-07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'> Fix KRATool generating wrong session key size in cross-scheme migration (#5400)
* Fix KRATool generating wrong session key size in cross-scheme migration
Use mTargetPayloadWrapKeySize directly instead of getKeySizeFromAlgorithm()
to ensure correct target key size when source and target algorithms have
the same name.
Changes:
- Line 3244: Use mTargetPayloadWrapKeySize for session key generation
- Line 6913: Use mTargetPayloadWrapKeySize for LDIF sessionKeyLength update
- Remove redundant 'if (targetKeySize == 0)' checks (can never be 0)
- Delete unused getKeySizeFromAlgorithm() method
- Update pki-kratool.spec: Replace java-17-openjdk-* with java-* >= 1:17
to allow any Java 17+ implementation
- Remove printUsage() calls after error messages to prevent dumping full
usage text (~250 lines) on every error
Assisted-by: Claude
DOGTAG-4517 DOGTAG-4495 DOGTAG-4498
* Fix KRATool cross-scheme DES3 source key migration
KRATool cross-scheme mode failed when migrating keys archived with DES3
session key wrapping. The error was "Key is not the right type for this
algorithm" due to hardcoded SymmetricKey.AES and 128-bit strength in
session key unwrap operations.
Changes:
- Add getSymmetricKeyType() helper to map algorithm name to SymmetricKey.Type
(DES3/DESede → SymmetricKey.DES3, AES → SymmetricKey.AES)
- Add getKeyStrength() helper to determine key strength in bits
(DES3 always returns 168 bits, AES uses user-specified size)
- Fix session key unwrap to use derived sourceKeyType and sourceKeyStrength
instead of hardcoded SymmetricKey.AES/128 (rewrap_wrapped_key_data line 3128)
- Fix importSessionKeyToToken() to accept and use keyType parameter instead
of hardcoded SymmetricKey.AES (line 2881)
- Fix needNewSessionKey() to use getKeyStrength() for accurate source key
size in user prompts (shows "168-bit DES3" not "128-bit DES3")
- Update validation to accept 168-bit keysize for source (DES3)
- Update help text to document 168-bit option for DES3 sources
- Restrict target to AES only (no DES3 target - legacy/deprecated)
- Add validation to reject DES3 as target algorithm
The tool now correctly handles migration FROM legacy DES3 TO modern AES:
-source_payload_wrap_algorithm "DES3/CBC/Padding" \
-source_payload_wrap_keysize 168 \
-target_payload_wrap_algorithm "AES KeyWrap/Padding" \
-target_payload_wrap_keysize 128
Assisted-by: Claude
DOGTAG-4496 DOGTAG-4508
Fix exit codes for cross-scheme validation errors</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/63188fa5aeaced1982b89d8cd3026b97e460641b">63188fa5</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2026-07-17T10:14:39+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix bundled jackson version mismatch
New versions of jackson (>2.20) uses a major.minor version for the
jackson-annotations package but it keep the same major.minor.update
for the other modules. Since the cmake script will retrieve the
version from the jackson-annotations the compilation is failing when
2.21.4 is bundled.
This change will consider the jackson-annotation separately from the
other modules.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/9622ae319b5fcb17c4a4377f5e8c49f9a57dc1a0">9622ae31</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2026-07-21T14:26:53-07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>KRATool: Fix DES3 key size for PKCS#11 unwrap operations (#5402)
The previous fix used 168 bits for DES3 key strength, which caused
PKCS#11 C_UnwrapKey to fail with error -8152 "The key does not
support the requested operation."
Root cause: DES3 has an effective security strength of 168 bits
(3 × 56-bit keys), but the actual PKCS#11 key length must be
192 bits (24 bytes: 3 × 64-bit keys including parity bits).
When getKeyStrength() returned 168, CryptoUtil.unwrap() divided
by 8 to get 21 bytes, but NSS pk11mech.c:PK11_GetKeyType()
expects exactly 24 bytes for DES3 (or 16 bytes for DES2).
Changes:
- Update getKeyStrength() to return 192 for DES3 (was 168)
- Add detailed comment explaining the 168 vs 192 distinction
- Update inline comments to reflect 192-bit PKCS#11 requirement
Users can still specify -source_payload_wrap_keysize 168 (the
commonly cited effective strength), but internally we now use
192 for all PKCS#11 operations.
Fixes: DES3 to AES-KWP migration in cross-scheme mode
Reported-by: QE
Assisted-by: Claude
DOGTAG-4496 DOGTAG-4508</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/38c1007003820058fe6c42ae89c574ea1ed78f64">38c10070</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-07-22T02:26:31-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix basic server test
The basic server test has been updated to work with Fedora 45 and
and the new-style of Tomcat 10.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/b7c6afac18450f74d4a8ace90b02019ea1584dae">b7c6afac</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-07-23T13:44:21-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix container startup scripts
The container startup scripts have been updated to no longer
update the file and folder permissions to avoid conflicts with
upgrade scripts that update the permissions.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/ec5c1b3c0e76894c250a87aefaf81ce6b5e8e625">ec5c1b3c</a></strong>
<div>
<span> by Christina Fu </span> <i> at 2026-07-23T18:00:01-07:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>KRATool: Update DES3 key size documentation to recommend 192 bits (#5404)
The previous documentation recommended users specify 168 for DES3,
but the code internally uses 192 bits for PKCS#11 operations. This
caused confusion when users saw "192-bit DES3" in logs after
specifying 168.
Changes:
- Update help text to recommend 192 for DES3 (was 168)
- Remove 168 from documented options (still accepted for backward compatibility)
- Update error message to list only documented options (128, 192, 256)
- Add missing javadoc @param keyType in importSessionKeyToToken()
Users can still specify 168 if needed (it works the same), but 192
is now the recommended and documented value.
Assisted-by: Claude
Related to: IDM-4508</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/9168f3012ad812556711c79a6bd7658ad1f18861">9168f301</a></strong>
<div>
<span> by Endi S. Dewata </span> <i> at 2026-07-24T02:06:50-05:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix update_version.sh to handle phase properly
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/1de2daace899545f0d1615e12df67ab425cf4260">1de2daac</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2026-07-24T09:50:37+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix LDAPSession.countEntries() warning with page results
The method LDAPSession.countEntries() is updated to use raw paged
search. It was counting the object associated with the retrieved ldap
query but the query in this case retrieve only objectClass so the
object mapping was failing.
The count was correct but there were additional logs for the mapping
error and it requires extra time for object mapping.
Assisted-By: Claude Sonnet 4.5 <noreply@anthropic.com>
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/452be3754bfb7c97388ae314e43076c3f486bfc3">452be375</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2026-07-28T17:41:37+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Fix authorisation bypass in ACME enable/disable
Fix #5405
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/da07c70dec3ac4fe4917409f978f2ae2a06c3c2b">da07c70d</a></strong>
<div>
<span> by Marco Fargetta </span> <i> at 2026-07-28T18:37:15+02:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Update version number to 11.10.1
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/c6008f56f7cfe47708e6451478bb8f862d1d3adf">c6008f56</a></strong>
<div>
<span> by Timo Aaltonen </span> <i> at 2026-09-27T10:33:34+03:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>control, rules: Build with tomcat10.
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/e769b4238db9616a1052c619e4849c0d445bffb4">e769b423</a></strong>
<div>
<span> by Timo Aaltonen </span> <i> at 2026-09-27T10:35:56+03:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Merge tag 'v11.9.0-beta3' into mas
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/2ab9c1f617b7fe6f2901d0fc69fe133e853cb26a">2ab9c1f6</a></strong>
<div>
<span> by Timo Aaltonen </span> <i> at 2026-09-27T10:36:00+03:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>Merge branch 'm3' into mas
</pre>
</li>
<li>
<strong style="font-weight: 600;"><a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/commit/62dd9877126c40909f57358d09ebd9ec44ee357c">62dd9877</a></strong>
<div>
<span> by Timo Aaltonen </span> <i> at 2026-09-27T10:36:35+03:00 </i>
</div>
<pre class="commit-message" style='white-space: pre-wrap; display: block; font-size: 14px; color: #3a383f; position: relative; font-family: "GitLab Mono", "JetBrains Mono", "Menlo", "DejaVu Sans Mono", "Liberation Mono", "Consolas", "Ubuntu Mono", "Courier New", "andale mono", "lucida console", monospace; font-variant-ligatures: none; word-break: break-all; word-wrap: break-word; background-color: #fbfafd; border-radius: 2px; margin: 0; padding: 8px 12px; border: 1px solid #dcdcde;'>version bump
</pre>
</li>
</ul>
<h4 style="margin-top: 10px; margin-bottom: 10px;">
3165 changed files:
</h4>
<ul>
<li class="file-stats">
<a href="#354079a72b91a4280407c16a36f47d1986fd85a5">
.classpath
</a>
</li>
<li class="file-stats">
<a href="#8e27da30e44c17b9ecea502ae30ccada88c05898">
.github/workflows/pki-nss-hsm-test.yml
→
.github/workflows/PKCS10Client-test.yml
</a>
</li>
<li class="file-stats">
<a href="#412502b0712158acef2cfcae24bbe6add53f1b32">
.github/workflows/PKICertImport-test.yml
</a>
</li>
<li class="file-stats">
<a href="#cb84944b63c38ea89d10be0b120a6ae5d06abfe6">
.github/workflows/acme-certbot-test.yml
→
.github/workflows/acme-basic-test.yml
</a>
</li>
<li class="file-stats">
<a href="#4ae405cffc5765765a49060b0837ca1a676608c6">
<span class="new-file">
+
.github/workflows/acme-clone-test.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#338806cb26ed8d44ae4313e2be747110d944ca5c">
<span class="new-file">
+
.github/workflows/acme-container-basic-test.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#e736154c0d7ac0bdff28d4eaee6c28e9cbc593b4">
<span class="new-file">
+
.github/workflows/acme-container-ca-test.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#a3a60fc99f2b5ec75956b09c2008aa57462f9e29">
<span class="deleted-file">
−
.github/workflows/acme-container-test.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#5c01f4ac96d53c077fcf6add278d15656e27371c">
<span class="new-file">
+
.github/workflows/acme-existing-nssdb-test.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#1a45c0b786fd7908358e0a84fea991c87ed01159">
.github/workflows/acme-postgresql-test.yml
</a>
</li>
<li class="file-stats">
<a href="#a4009485ffa49339362f9a20571ae0b2c018855d">
<span class="new-file">
+
.github/workflows/acme-separate-test.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#9d4b5fb502c734038d196048d3c01825fb06a644">
.github/workflows/acme-switchover-test.yml
</a>
</li>
<li class="file-stats">
<a href="#ecae19c77a082e8b0487ab1eb8428f56f72e4341">
.github/workflows/acme-tests.yml
</a>
</li>
<li class="file-stats">
<a href="#fe77d5d1439f26e353a42bbd38dece2467ff6558">
.github/workflows/build.yml
</a>
</li>
<li class="file-stats">
<a href="#a4cdf804eb1a812d6a674d99589d96e4822932b5">
<span class="new-file">
+
.github/workflows/ca-admin-user-test.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#2888c7f12521ec65174ae212c22e8477c5202146">
<span class="new-file">
+
.github/workflows/ca-api-test.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#836c6dc852b7dc36072f05f81015b43e2785b527">
.github/workflows/ca-basic-test.yml
</a>
</li>
<li class="file-stats">
<a href="#032dd4a7be9b902ccfa0b7d70858d4cb825d45b1">
<span class="new-file">
+
.github/workflows/ca-cert-revocation-test.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#f2d8937c64396431fb1352637cd50645ac082304">
.github/workflows/ca-clone-hsm-test.yml
</a>
</li>
<li class="file-stats">
<a href="#793f9cdeea8f9eedf8e4495fbc0d544a45bafcba">
<span class="new-file">
+
.github/workflows/ca-clone-pqc-test.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#c296d72444a7324d1b33fc366f45c793ea11d645">
<span class="new-file">
+
.github/workflows/ca-clone-replicated-ds-test.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#a30a65a378a9fa5cbe8f71c4374320adb85292fd">
.github/workflows/ca-clone-secure-ds-test.yml
</a>
</li>
<li class="file-stats">
<a href="#3d7320d37204c929dc9f9728c33df2ca71754369">
<span class="new-file">
+
.github/workflows/ca-clone-shared-ds-test.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#d33ad99f345db7d1a7f89e82e208fbc8eca4a3ba">
<span class="new-file">
+
.github/workflows/ca-clone-ssnv1-test.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#b0c77e8ca891d78350e09b5a750e677fed3600cc">
<span class="new-file">
+
.github/workflows/ca-clone-ssnv2-test.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#1e3ff435a06019335523255e0045ff15b6df2bb0">
.github/workflows/ca-clone-test.yml
</a>
</li>
<li class="file-stats">
<a href="#c0678da47f44d33c684ea6414a39bd724e12ea57">
<span class="new-file">
+
.github/workflows/ca-clone-tests.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#4945aa7a62583a9b0040ebf6fd0706305a99377c">
.github/workflows/ca-shared-token-test.yml
→
.github/workflows/ca-cmc-shared-token-test.yml
</a>
</li>
<li class="file-stats">
<a href="#b78a9b06b599a8101b4e8c9e9b86719d9f2d3001">
<span class="new-file">
+
.github/workflows/ca-container-basic-test.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#52ed08ddb3ab4f09a8b9b0ce02cf7db05605331e">
<span class="new-file">
+
.github/workflows/ca-container-existing-certs-test.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#0fe9a6ff9b751ff85cfeff7113bf59165afc1232">
<span class="new-file">
+
.github/workflows/ca-container-existing-config-test.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#5606a75765d32a14f097d8480a6f040ca2f7c505">
<span class="new-file">
+
.github/workflows/ca-container-migration-test.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#a670a6604a366365cf2083eb5fc02097e66adbb0">
<span class="new-file">
+
.github/workflows/ca-container-system-service-test.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#7550ed51ebb2647be2cfbfdac2a590e9f260a664">
<span class="new-file">
+
.github/workflows/ca-container-tests.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#9467fb08e843d115f794e7b31a45a145ae184c21">
<span class="new-file">
+
.github/workflows/ca-container-user-service-test.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#d31dee00609a22ea66303f21f484b61a9830ea80">
.github/workflows/ca-crl-test.yml
</a>
</li>
<li class="file-stats">
<a href="#a506921de9bc0741bf57fce934d2a66f64438812">
.github/workflows/ca-ds-connection-test.yml
</a>
</li>
<li class="file-stats">
<a href="#8bdfbfda07e63b2cf2c44ece40d4a14c6c183066">
.github/workflows/ca-ecc-test.yml
</a>
</li>
<li class="file-stats">
<a href="#9988bfb45cbede7715a107e721b6ff2eb813d63a">
.github/workflows/ca-existing-certs-test.yml
</a>
</li>
<li class="file-stats">
<a href="#c3bb8b470163ad517a256e921f1b418c783bbc26">
<span class="new-file">
+
.github/workflows/ca-existing-config-test.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#1c5c6536c9f568ae21f08adb65de105389922a67">
.github/workflows/ca-existing-ds-test.yml
</a>
</li>
<li class="file-stats">
<a href="#442d1081e5d6d2850e17866cdb81918453badde5">
.github/workflows/ca-existing-hsm-test.yml
</a>
</li>
<li class="file-stats">
<a href="#3deeae8e6bcc3eefd2b010d32bbe4919bbdbe067">
.github/workflows/ca-existing-nssdb-test.yml
</a>
</li>
<li class="file-stats">
<a href="#91a329bc78d7cc48e6cd91673299e15bdc07b13c">
<span class="new-file">
+
.github/workflows/ca-extra-tests.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#8891f00d1b402e7206410239c6ff1c2ea8a5778d">
<span class="new-file">
+
.github/workflows/ca-hsm-operation-test.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#b11a0d1e3cad2709f848a8caa9293059951b2cdb">
<span class="new-file">
+
.github/workflows/ca-kryoptic-test.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#8ee84ff9dd1d287b8928c9d5446edd54cee8acc8">
<span class="new-file">
+
.github/workflows/ca-mldsa-CRMFPopClient-test.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#ffdf60845da40215cab25bb218e8b40f61664f32">
.github/workflows/ca-notification-request-test.yml
</a>
</li>
<li class="file-stats">
<a href="#649696927498cb2e3aee17c7b6be44d620e1c580">
.github/workflows/ca-nuxwdog-test.yml
</a>
</li>
<li class="file-stats">
<a href="#6cc912ce41b015cd3c28e106ec342c6245fc0e9a">
<span class="new-file">
+
.github/workflows/ca-pqc-test.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#2f395323053adb0a88f3e40decb8d8d5a5f07143">
<span class="new-file">
+
.github/workflows/ca-profile-caDirPinUserCert-test.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#482d4a146c86d3392b64eba4ef96b336c774b709">
<span class="new-file">
+
.github/workflows/ca-profile-caDirUserCert-test.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#9a50f387475f5c85d9ebb0e0e55f6dfb650f19fb">
<span class="new-file">
+
.github/workflows/ca-profile-caInternalAuthDRMstorageCert-test.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#40c093b34ff057d12845dea1954ba9bfccb6b89f">
<span class="new-file">
+
.github/workflows/ca-profile-caInternalAuthTransportCert-test.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#1059b5a7f51e76b7cd234989e286f74ecf9e083d">
<span class="new-file">
+
.github/workflows/ca-profile-caMLKEMInternalAuthDRMstorageCert-test.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#0553d1d1ac416df77b3964b298706e093a6551db">
<span class="new-file">
+
.github/workflows/ca-profile-caMLKEMInternalAuthTransportCert-test.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#cb902347a1f0e07d612da1a1d0a15baffab3811a">
<span class="new-file">
+
.github/workflows/ca-profile-caServerCert-test.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#0ad8861bea1005ea1ce8567ca2d203f93f1416b3">
<span class="new-file">
+
.github/workflows/ca-profile-caStorageCert-test.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#b26f539e35f20192a0891fed3477695d8df3c406">
<span class="new-file">
+
.github/workflows/ca-profile-caTransportCert-test.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#901f3e26ce8c5fd8228f4ef6e5bdc0cac381f311">
<span class="new-file">
+
.github/workflows/ca-profile-custom-test.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#7b49a8a3d7da718771b7b1b9fa0b0632c4663633">
<span class="new-file">
+
.github/workflows/ca-profile-tests.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#7c69ee2188c6b75d6c8c0d843effb367aea6f04f">
.github/workflows/ca-pruning-test.yml
</a>
</li>
<li class="file-stats">
<a href="#cd67762ad7ab4b4ec7b74cd0876db9fb21e5377e">
.github/workflows/ca-publishing-ca-cert-test.yml
</a>
</li>
<li class="file-stats">
<a href="#ddd28214d457c006f293750ec3a5802e3d30d92f">
.github/workflows/ca-publishing-crl-file-test.yml
</a>
</li>
<li class="file-stats">
<a href="#90dd42753ec903b897e5cce68d4d7951c2bdf68c">
.github/workflows/ca-publishing-crl-ldap-test.yml
</a>
</li>
<li class="file-stats">
<a href="#6eab63d09c164ee7bf5f2189505979a6649695cb">
.github/workflows/ca-publishing-user-cert-test.yml
</a>
</li>
<li class="file-stats">
<a href="#7d7be1158b6beed02ca4a32e60494de5387c50ad">
<span class="new-file">
+
.github/workflows/ca-renewal-automated-ldaps-test.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#094fb85374c70c023f36ed5dac43c5805bfb12ee">
<span class="new-file">
+
.github/workflows/ca-renewal-automated-test.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#50c1645b199010a7db20062b37498dc4caf9952c">
<span class="new-file">
+
.github/workflows/ca-renewal-manual-hsm-test.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#b7e884722b7a1e15cf2355f3c2526f8fa35e64a5">
<span class="new-file">
+
.github/workflows/ca-renewal-manual-test.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#7b06e0dd781fb3f31c6f937a1a121a28819ca1f7">
.github/workflows/ca-rsa-pss-test.yml
</a>
</li>
<li class="file-stats">
<a href="#d9139766a7565a3b38784ace392b7665fa2848fb">
<span class="new-file">
+
.github/workflows/ca-rsa-test.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#56db60e0c0353df37a538b21c80f3df8a1b50503">
.github/workflows/ca-rsnv1-test.yml
</a>
</li>
<li class="file-stats">
<a href="#4e26e0f27542e3a5668e689fcc9ad5807450f9b1">
<span class="new-file">
+
.github/workflows/ca-secure-ds-pqc-test.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#3d5f2bf95536b4d65bce6ccfcaaee6d8981d6790">
.github/workflows/ca-secure-ds-test.yml
</a>
</li>
<li class="file-stats">
<a href="#dcd36a3d15f9bb3552710d7d76048219ca5196be">
<span class="deleted-file">
−
.github/workflows/ca-sequential-test.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#929e23146e02c1053f673cc561814221a51a92b4">
.github/workflows/ca-hsm-test.yml
→
.github/workflows/ca-softhsm-test.yml
</a>
</li>
<li class="file-stats">
<a href="#411f8ec0561781c099fc0d288b102542c7b7d6a5">
<span class="new-file">
+
.github/workflows/ca-ssnv1-test.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#0273269c425aadead12553d43898fe2dc6b44acb">
<span class="new-file">
+
.github/workflows/ca-ssnv2-test.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#59aa675277e0d680e6ce78ba8f1b1e1d9918a617">
.github/workflows/ca-tests.yml
</a>
</li>
<li class="file-stats">
<a href="#5437e1f76d72ff03c77a33d753c44da57bbc3c5a">
<span class="deleted-file">
−
.github/workflows/ca-tests2.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#26d4e1dbc7e5305fafe8f565b04d240c03e9de45">
.github/workflows/qe-tests.yml
→
.github/workflows/disabled/qe-tests.yml
</a>
</li>
<li class="file-stats">
<a href="#40c3f4564a277ebff9cdca9bf030958140c9a09b">
.github/workflows/est-basic-test.yml
</a>
</li>
<li class="file-stats">
<a href="#5db1270743d560715317cfff7f4123d63bf99627">
<span class="new-file">
+
.github/workflows/est-ds-realm-separate-test.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#6d6d9f408c2ac3adb0ad1fe0723fc9c221fd7d6e">
<span class="new-file">
+
.github/workflows/est-ds-realm-test.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#e1fa455ddfc608bc7c64b8424db7b279afe96004">
<span class="new-file">
+
.github/workflows/est-postgresql-realm-test.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#b8ce046fa0d54166835c15ff3c7ab997659295f1">
<span class="new-file">
+
.github/workflows/est-standalone-test.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#a09cffb8bd1a4e2607d62ef14fef400f92aede2b">
.github/workflows/est-tests.yml
</a>
</li>
<li class="file-stats">
<a href="#8689106d550f326ad472a818ab11799eb1f63ffe">
<span class="deleted-file">
−
.github/workflows/init.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#63eb7cc78f6c3779a336ba5ec5f8439e5cb3c0a7">
.github/workflows/ipa-acme-test.yml
</a>
</li>
<li class="file-stats">
<a href="#d6710f5296d848a3cacf81c1dee7d3c2827ffaf4">
.github/workflows/ipa-basic-test.yml
</a>
</li>
<li class="file-stats">
<a href="#d88082dd71e4657444644c8a19befeee2a6b7d5d">
.github/workflows/ipa-clone-test.yml
</a>
</li>
<li class="file-stats">
<a href="#eedd67b37053e688c18a76536d8405d770bf568f">
<span class="new-file">
+
.github/workflows/ipa-kra-test.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#28b5b1c7be1a95ce7e693cccd08668bcd52c6ef5">
<span class="new-file">
+
.github/workflows/ipa-reinstall-test.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#9600ad320255090026bdc44e3f808f501b817623">
<span class="new-file">
+
.github/workflows/ipa-renewal-test.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#f7f2d0f25a1b599ae9df6a81c3ecac8d0f6d7394">
<span class="new-file">
+
.github/workflows/ipa-subca-test.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#1ef4ca516abc68d9dded3e330ec5c9a546d313f4">
.github/workflows/ipa-tests.yml
</a>
</li>
<li class="file-stats">
<a href="#b906f3e61026a0f74ef116902ee521e986f1ecb5">
.github/workflows/code-analysis.yml
→
.github/workflows/java-tests.yml
</a>
</li>
<li class="file-stats">
<a href="#f549e22e13acb63c9d5120d541c877b41e2aca5b">
.github/workflows/kra-basic-test.yml
</a>
</li>
<li class="file-stats">
<a href="#58f65bcdf64b0fe52b9142bc74bf0734aaf8cd2e">
<span class="new-file">
+
.github/workflows/kra-clone-failover-test.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#ed7ec9b5965cbd3ba8a67e18f498961f20cbf326">
<span class="new-file">
+
.github/workflows/kra-clone-hsm-test.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#118d34f55884237ceb60ad2cc6c54e8c6b8d780e">
<span class="new-file">
+
.github/workflows/kra-clone-replicated-ds-test.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#128cb8f1ef54d38313b3ff64c6f75bb045a823b3">
<span class="new-file">
+
.github/workflows/kra-clone-shared-ds-test.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#7eb26b525a50b49b7e0dc8796353ba6d2c7efe76">
.github/workflows/kra-clone-test.yml
</a>
</li>
<li class="file-stats">
<a href="#129243ca1581f87e888793137e1f78dd89d7680e">
<span class="new-file">
+
.github/workflows/kra-clone-tests.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#6c7be5dee303fdeb67c3dc1af80f3e25ae40b7c9">
.github/workflows/kra-cmc-test.yml
</a>
</li>
<li class="file-stats">
<a href="#dd7020b4e9f834a8f0f7caa51bdf449795b8aff7">
<span class="new-file">
+
.github/workflows/kra-container-test.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#4c06e35ab2aab0b3cf87bddf4642539f57ab5a2c">
<span class="new-file">
+
.github/workflows/kra-ecc-test.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#f27d974425b2eb67e5566638464e022888624de3">
<span class="new-file">
+
.github/workflows/kra-existing-certs-test.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#dbd95080a19c2a35a8c5e8b852db47b9b8e075c4">
<span class="new-file">
+
.github/workflows/kra-existing-config-test.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#153ba93d8e8154fc4a026346e9eda954e7abfee0">
<span class="new-file">
+
.github/workflows/kra-existing-ds-test.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#5059b84b85cd77f1c20357894cb9cf939dbbe753">
<span class="new-file">
+
.github/workflows/kra-existing-hsm-test.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#72d99b211597ad05bbd6a4b96063579d5d075719">
<span class="new-file">
+
.github/workflows/kra-existing-nssdb-test.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#f7413c2bc8119d827f79d10da7c6d8909a1832c1">
<span class="new-file">
+
.github/workflows/kra-external-certs-kryoptic-test.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#e95660c4160a908101290cb47818f29b595498cc">
.github/workflows/kra-external-certs-test.yml
</a>
</li>
<li class="file-stats">
<a href="#8cbbf6a41c3730080aebb6756a1395bae8af5574">
<span class="new-file">
+
.github/workflows/kra-kryoptic-test.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#49698277b4e1d58f0045a9298321f93366b084ee">
<span class="new-file">
+
.github/workflows/kra-migration-test.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#ded75128f3f51947adeb4d25e2657133e3fab7a3">
.github/workflows/kra-oaep-test.yml
</a>
</li>
<li class="file-stats">
<a href="#c68dd4d62060e1208afd39a2f51a3824925de3e1">
<span class="new-file">
+
.github/workflows/kra-pqc-test.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#529d37bf992270fcce4c852f9370461b1fee940f">
.github/workflows/kra-separate-test.yml
</a>
</li>
<li class="file-stats">
<a href="#05c49844ce1ef10208fe660821714d69cfb746fc">
.github/workflows/kra-sequential-test.yml
</a>
</li>
<li class="file-stats">
<a href="#1035cdcf3797abdf9bca1083acd3d6293acfb3a4">
.github/workflows/kra-hsm-test.yml
→
.github/workflows/kra-softhsm-test.yml
</a>
</li>
<li class="file-stats">
<a href="#28c38f8171dbb6f43a8fb04405e17dc428b427f7">
<span class="new-file">
+
.github/workflows/kra-sskg-test.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#49a5d4860abdd27b8769f23729dbc365dc98a826">
.github/workflows/kra-standalone-test.yml
</a>
</li>
<li class="file-stats">
<a href="#1f5479b96d388bf5ea248b689c8d27f6e6565a4f">
.github/workflows/kra-tests.yml
</a>
</li>
<li class="file-stats">
<a href="#bed18c3b0e89503461ecbb6073d2b6ca5d9a85ef">
.github/workflows/ca-lightweight-test.yml
→
.github/workflows/lwca-basic-test.yml
</a>
</li>
<li class="file-stats">
<a href="#45317542441cff8b3d25fd59648c79c1551dcbc1">
<span class="new-file">
+
.github/workflows/lwca-clone-hsm-test.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#71e8ebb333efc017d125170236fd155377d1ec05">
.github/workflows/ca-lightweight-hsm-test.yml
→
.github/workflows/lwca-hsm-test.yml
</a>
</li>
<li class="file-stats">
<a href="#a964fbaf5d0ed5ae58716f39c7b80126131c1c6a">
.github/workflows/ocsp-basic-test.yml
</a>
</li>
<li class="file-stats">
<a href="#6e3051b94f6e5db70a8b523fac869d6539d89296">
.github/workflows/ocsp-clone-test.yml
</a>
</li>
<li class="file-stats">
<a href="#06722320a5fde27b688709661dea7c558a1a2ea8">
.github/workflows/ocsp-cmc-test.yml
</a>
</li>
<li class="file-stats">
<a href="#8a4b3508db1cfb177e51e8058a95c3278cd904d8">
<span class="new-file">
+
.github/workflows/ocsp-container-test.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#b76f54d8d6aad81de046c0efb95eee418ca68a33">
.github/workflows/ocsp-crl-direct-test.yml
</a>
</li>
<li class="file-stats">
<a href="#6f8f5b6a19db9936fe49532ac38094eff8983714">
.github/workflows/ocsp-crl-ldap-test.yml
</a>
</li>
<li class="file-stats">
<a href="#7190290047cf6fc911d98e424e9b7caa72f317f1">
<span class="new-file">
+
.github/workflows/ocsp-existing-config-test.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#2298232642aff227a5d466708943f3b106530a4a">
.github/workflows/ocsp-external-certs-test.yml
</a>
</li>
<li class="file-stats">
<a href="#a68f16ac358697f6ff40d4fc2418ade0860a3701">
.github/workflows/ocsp-hsm-test.yml
</a>
</li>
<li class="file-stats">
<a href="#a5079411adc07764c7b32c48b62d067dd1499cc2">
.github/workflows/ocsp-separate-test.yml
</a>
</li>
<li class="file-stats">
<a href="#dd696aa7d62cc03e9828ffe9083dcfda58aa1311">
.github/workflows/ocsp-standalone-test.yml
</a>
</li>
<li class="file-stats">
<a href="#b0c8c439fb8797a70835207888b7917a361db129">
.github/workflows/ocsp-tests.yml
</a>
</li>
<li class="file-stats">
<a href="#474021d5d39994ab57a789b338b2298f9f6e0924">
<span class="new-file">
+
.github/workflows/pki-basic-test.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#b306230cbf497933912e71c2cbb1faccd94fee0d">
.github/workflows/pki-nss-aes-test.yml
</a>
</li>
<li class="file-stats">
<a href="#9e173c65ad575b546c234728774e239fe3398f81">
.github/workflows/pki-nss-ecc-test.yml
</a>
</li>
<li class="file-stats">
<a href="#088172995ed55808db297de1d373857334ab0e4e">
.github/workflows/pki-nss-exts-test.yml
</a>
</li>
<li class="file-stats">
<a href="#cc7e8c673e9437a6134a58ff78143f2afbea85e7">
<span class="new-file">
+
.github/workflows/pki-nss-kryoptic-test.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#887fb0d86a100ca69c4be6c6fd966e55f1f307b1">
<span class="new-file">
+
.github/workflows/pki-nss-pqc-test.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#65ff6a30f3d8bddb5a06f8882157d46de752966f">
.github/workflows/pki-nss-rsa-test.yml
</a>
</li>
<li class="file-stats">
<a href="#8472091b4eb931e60d469b46da273ad0433f9c71">
<span class="new-file">
+
.github/workflows/pki-nss-softhsm-test.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#77aaed1df8982ae3c804de198b631316aed9350f">
<span class="new-file">
+
.github/workflows/pki-password-test.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#c73657a5f33f4c2524791785b8a7fa168a48761a">
.github/workflows/pki-pkcs11-test.yml
</a>
</li>
<li class="file-stats">
<a href="#624cc93db63fd3aa2946e0cd7e3e8af492ba7643">
.github/workflows/pki-pkcs12-test.yml
</a>
</li>
<li class="file-stats">
<a href="#5c3c6d03f1cbdf63bb0acf2857e87844958452a3">
.github/workflows/pki-pkcs7-test.yml
</a>
</li>
<li class="file-stats">
<a href="#802e0c8f6b52d1819501862af07d44a204ca5053">
<span class="new-file">
+
.github/workflows/pki-server-basic-test.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#4639989a2b9ca33671669f3e377b9d0308553f80">
.github/workflows/publish.yml
</a>
</li>
<li class="file-stats">
<a href="#394e196df036497949c1c59a6b671b3baac552e2">
.github/workflows/ca-container-test.yml
→
.github/workflows/python-ca-rest-api-v1-test.yml
</a>
</li>
<li class="file-stats">
<a href="#920e3b175349e4ccc43a7e3c0b6da260f1dab755">
<span class="new-file">
+
.github/workflows/python-ca-test.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#4695f3f2516c2637e258dcf7ddb55a5ff90fd5ce">
<span class="new-file">
+
.github/workflows/python-kra-test.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#f3e33430973644ee8574963d27ef6aa2473f6f73">
.github/workflows/python-lint-test.yml
</a>
</li>
<li class="file-stats">
<a href="#e917c7a1acef149c48724bffc3c116280232a0f3">
.github/workflows/python-tests.yml
</a>
</li>
<li class="file-stats">
<a href="#18ba431ea6570d5b79b7cbdd4481c2c31dbd0cb8">
.github/workflows/rpminspect-test.yml
</a>
</li>
<li class="file-stats">
<a href="#4ac6dcebc738404ac82c5963293e3626ca0be4f0">
.github/workflows/scep-test.yml
</a>
</li>
<li class="file-stats">
<a href="#0c7f5ac8587f0442e180e7917b53bf6265377b65">
.github/workflows/server-backup-test.yml
</a>
</li>
<li class="file-stats">
<a href="#095fe4b16b164ee2aef12358c6213594f1057ef2">
.github/workflows/server-basic-test.yml
</a>
</li>
<li class="file-stats">
<a href="#f9ea1b0f5abc91b3f36c93d459ed7b527f586f7d">
.github/workflows/server-container-test.yml
</a>
</li>
<li class="file-stats">
<a href="#3afda28d49f22accce163ed0caf76394ab15816d">
.github/workflows/server-https-jks-test.yml
</a>
</li>
<li class="file-stats">
<a href="#9b5d86af59ee8b161c681624a5385b07f54154dd">
<span class="new-file">
+
.github/workflows/server-https-kryoptic-pqc-test.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#a3b9341782f4ef7e457cdc67222beb9200e33acd">
<span class="new-file">
+
.github/workflows/server-https-nss-pqc-test.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#c6e481ae3ff1554267d4585aa720d0b77cda2e07">
.github/workflows/server-https-nss-test.yml
</a>
</li>
<li class="file-stats">
<a href="#a0b81d68fa4b0696350e1008b9fe4052fbddc237">
.github/workflows/server-https-pem-test.yml
</a>
</li>
<li class="file-stats">
<a href="#7d518807b23693d277fe055caaf7749a07a0e681">
.github/workflows/server-https-pkcs12-test.yml
</a>
</li>
<li class="file-stats">
<a href="#c2f8b2a71aaa58364bd34cd6adb14979c691e854">
<span class="new-file">
+
.github/workflows/server-mcp-test.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#fbcdbb7e04fa1914b94845a82f98b11861c9071a">
<span class="new-file">
+
.github/workflows/server-port-test.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#2b0613f0bac8ded036b2400159310b1bf0aee0fe">
.github/workflows/server-tests.yml
</a>
</li>
<li class="file-stats">
<a href="#904f6a800f2e22ff5ec5df0524202b0d3250a1f6">
.github/workflows/server-upgrade-test.yml
</a>
</li>
<li class="file-stats">
<a href="#7cc191542eb0c290356cfb02bfeb4ef69b90c10b">
.github/workflows/ca-non-default-user-test.yml
→
.github/workflows/server-user-test.yml
</a>
</li>
<li class="file-stats">
<a href="#c98bb6bf62713b38ab748785b449ff6a74b84060">
.github/workflows/sonarcloud-pull.yml
→
.github/workflows/sonarcloud-pr-test.yml
</a>
</li>
<li class="file-stats">
<a href="#1d19aad7b7b27d190877325ddc2bf187f2ea4808">
<span class="new-file">
+
.github/workflows/stale.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#1ecc2f133bfeb90196c97fa04535eb9ab872a358">
.github/workflows/subca-basic-test.yml
</a>
</li>
<li class="file-stats">
<a href="#191a9ff6b50bd029bda8f6cc3c4546f2f49e7f5c">
<span class="new-file">
+
.github/workflows/subca-clone-hsm-test.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#294264690bdb8269ec7b7811cba32f8eff6fd818">
<span class="new-file">
+
.github/workflows/subca-clone-test.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#5eab17a8744b4a050c500468868354a128be6801">
.github/workflows/subca-cmc-test.yml
</a>
</li>
<li class="file-stats">
<a href="#32083866633793e9c43b94e5548a1a2377f73f71">
.github/workflows/subca-external-test.yml
</a>
</li>
<li class="file-stats">
<a href="#6e2d104c799d001711a8bbab7e24ec3fd9024e37">
.github/workflows/subca-hsm-test.yml
</a>
</li>
<li class="file-stats">
<a href="#34740ad8ae2ab907d07cc0f6e6bf9ccf56afb7bd">
<span class="new-file">
+
.github/workflows/subca-pqc-test.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#78afe9e74c95140eaecbb3785f9b439ba198c8cd">
<span class="new-file">
+
.github/workflows/subca-tests.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#b610c672861089070287dea04706c4146cee85f9">
.github/workflows/tks-basic-test.yml
</a>
</li>
<li class="file-stats">
<a href="#ec5a8352b9cab8187bb8c8fd0e0d144b71cba41c">
.github/workflows/tks-clone-test.yml
</a>
</li>
<li class="file-stats">
<a href="#bdbbc6917a0b5b4a5d56174378fe0c2ee2facf36">
<span class="new-file">
+
.github/workflows/tks-container-test.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#75a2c59f8055ead245895c99e6e6846585d16ac1">
<span class="new-file">
+
.github/workflows/tks-existing-config-test.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#33deb9ac00f3d926c27e217944b31f594cdac5bf">
.github/workflows/tks-external-certs-test.yml
</a>
</li>
<li class="file-stats">
<a href="#a6870d63e6b0cf4453e271315fbad144ad1d9d47">
.github/workflows/tks-hsm-test.yml
</a>
</li>
<li class="file-stats">
<a href="#f42df8857e035da027146c050922a1c4466b9ffb">
.github/workflows/tks-separate-test.yml
</a>
</li>
<li class="file-stats">
<a href="#c7c6f24a599351c849a0dc534d96050b8134603a">
.github/workflows/tks-tests.yml
</a>
</li>
<li class="file-stats">
<a href="#40c2db45719df685a029d2db730dffcc503cb520">
.github/workflows/tools-tests.yml
</a>
</li>
<li class="file-stats">
<a href="#525f7be910cc949b56bb7c7c1ac5a448e99ce9db">
.github/workflows/tps-basic-test.yml
</a>
</li>
<li class="file-stats">
<a href="#1b1172bfb7e233ec1959fdd697221d03a4ad8468">
.github/workflows/tps-clone-test.yml
</a>
</li>
<li class="file-stats">
<a href="#62fc987bc2e4805499c2d364bdfad5e59503a0e5">
<span class="new-file">
+
.github/workflows/tps-container-test.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#028dc1f215b849cbcfea41e341dea1f0ebf0a3bc">
<span class="new-file">
+
.github/workflows/tps-existing-config-test.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#f14df77f20057780bfd189aa9f87de689b01d41e">
.github/workflows/tps-external-certs-test.yml
</a>
</li>
<li class="file-stats">
<a href="#40d88723eb01c30274cf646e1817530f3bc9b854">
.github/workflows/tps-hsm-test.yml
</a>
</li>
<li class="file-stats">
<a href="#4106f9f18d1ce0f141f438dec4169b0a224d70d6">
.github/workflows/tps-separate-test.yml
</a>
</li>
<li class="file-stats">
<a href="#9f1a27ff46ff0e8b47b6d3bcf2a9518f2d9df62c">
.github/workflows/tps-tests.yml
</a>
</li>
<li class="file-stats">
<a href="#53647db095d8ab71e4407ae874742dfbbdab5ab4">
.github/workflows/update-version-test.yml
</a>
</li>
<li class="file-stats">
<a href="#d30a4d01310cc5cb85fb41707a0b3b37ef9b2697">
<span class="new-file">
+
.github/workflows/wait-for-build.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#a5cc2925ca8258af241be7e5b0381edf30266302">
.gitignore
</a>
</li>
<li class="file-stats">
<a href="#8eef649c6f3efda90b9e4f57ec6593b23880057e">
.packit.yaml
</a>
</li>
<li class="file-stats">
<a href="#9a2aa4db38d3115ed60da621e012c0efc0172aae">
CMakeLists.txt
</a>
</li>
<li class="file-stats">
<a href="#6651ddff6eb82c840ced7c1dddee15c6e1913dd4">
Dockerfile
</a>
</li>
<li class="file-stats">
<a href="#8ec9a00bfd09b3190ac6b22251dbb1aa95a0579d">
README.md
</a>
</li>
<li class="file-stats">
<a href="#40ebc6823f24f296c0cd3fddd6ccda69b74ff2e4">
azure-pipelines.yml
</a>
</li>
<li class="file-stats">
<a href="#d0f22e8bdff03f4e5a1fd1bf9ce97db437323959">
base/CMakeLists.txt
</a>
</li>
<li class="file-stats">
<a href="#0b3cc8b828fd333d07b22c8f8cd7923f0bf75ea9">
base/acme/CMakeLists.txt
</a>
</li>
<li class="file-stats">
<a href="#63ffd8e45cfcae6135a76ec084286fce4acc3a2f">
base/acme/Dockerfile
</a>
</li>
<li class="file-stats">
<a href="#b79bea530cf82a6344c73a270b0661da2e16c814">
base/acme/bin/pki-acme-run
</a>
</li>
<li class="file-stats">
<a href="#84be96facc074405e89f1f7b02eb1cb56e79b7ee">
base/acme/conf/configsources.conf
</a>
</li>
<li class="file-stats">
<a href="#fd73bba9cc2bca4eb32cef8f8439f234af883b52">
base/acme/database/ds/database.conf
</a>
</li>
<li class="file-stats">
<a href="#770f6efce9770f3dcdc8ff0655313bca2334f7a0">
base/acme/database/ldap/database.conf
</a>
</li>
<li class="file-stats">
<a href="#5957e541ca44b0d2a468fdb82081373d735bc49a">
base/acme/database/openldap/database.conf
</a>
</li>
<li class="file-stats">
<a href="#1d30cdf549e58be2c3de419d367702c40b6de24a">
base/acme/database/postgresql/database.conf
</a>
</li>
<li class="file-stats">
<a href="#d81459437271930afb0f2674c508548e08ac34d8">
base/acme/issuer/pki/issuer.conf
</a>
</li>
<li class="file-stats">
<a href="#249eb09eefad52de4b9ed8781b08fd379e7dbe40">
base/acme/openshift/pki-acme-database.yaml
</a>
</li>
<li class="file-stats">
<a href="#c565b1970758217a97cb948e724f423c9f0ad719">
base/acme/openshift/pki-acme-deployment.yaml
</a>
</li>
<li class="file-stats">
<a href="#a0fe44ed5cab5a0fd6768967458f62e2da03b026">
base/acme/openshift/pki-acme-issuer.yaml
</a>
</li>
<li class="file-stats">
<a href="#5405a968792d622fbc5985369f5351a2271afe58">
base/acme/openshift/pki-acme-realm.yaml
</a>
</li>
<li class="file-stats">
<a href="#cfd4e1f52be1ec2c861cbcddffc3e6091a7fe6a1">
base/acme/pom.xml
</a>
</li>
<li class="file-stats">
<a href="#ed9ffcb1571185ee44ed9eea34726aa2b09845ad">
base/acme/realm/ds/create.ldif
</a>
</li>
<li class="file-stats">
<a href="#87f12dd2ae826b70a678390aba6a6df81a81209a">
base/acme/realm/ds/realm.conf
</a>
</li>
<li class="file-stats">
<a href="#9f47f5094d519f06b9f20e0c3d2b495b306317ba">
base/acme/realm/in-memory/realm.conf
</a>
</li>
<li class="file-stats">
<a href="#cb8cf39149d5d92cae670653d0271c00b776d716">
base/acme/realm/postgresql/realm.conf
</a>
</li>
<li class="file-stats">
<a href="#a17a3cb8539654ed6e9c2adef3123ca576f48261">
base/acme/src/main/java/org/dogtagpki/acme/database/ACMEDatabase.java
</a>
</li>
<li class="file-stats">
<a href="#7e3c3d62d988f7e26b4abd3137c39eb978a8511d">
base/acme/src/main/java/org/dogtagpki/acme/database/LDAPDatabase.java
</a>
</li>
<li class="file-stats">
<a href="#b0e573db995216d32374cdbefec51adb6a32e097">
base/acme/src/main/java/org/dogtagpki/acme/issuer/ACMEIssuer.java
</a>
</li>
<li class="file-stats">
<a href="#25caf75bac59a0d20e46aeeb21a86c11f882bb9f">
base/acme/src/main/java/org/dogtagpki/acme/issuer/NSSIssuer.java
</a>
</li>
<li class="file-stats">
<a href="#d3eb5bfa7996cf73eeea98e5b31d1713bda24dca">
base/acme/src/main/java/org/dogtagpki/acme/issuer/PKIIssuer.java
</a>
</li>
<li class="file-stats">
<a href="#108214856e33a65b9ae8c3de814b9cf71aac7853">
base/acme/src/main/java/org/dogtagpki/acme/realm/LDAPRealm.java
</a>
</li>
<li class="file-stats">
<a href="#e7d4d6982f8e6bd44898a7bfa655d26e6e89fe5e">
<span class="deleted-file">
−
base/acme/src/main/java/org/dogtagpki/acme/server/ACMEAccountOrdersService.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#0342c699f443b1f87dd0fb0d041a663998c61f5e">
<span class="deleted-file">
−
base/acme/src/main/java/org/dogtagpki/acme/server/ACMEAccountService.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#e4a47ec10c7e904a34e3652ebe8f08389415dfb0">
<span class="new-file">
+
base/acme/src/main/java/org/dogtagpki/acme/server/ACMEAccountServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#96e7894df61e6f24d5e4e6501ba1a030f12a38bd">
<span class="deleted-file">
−
base/acme/src/main/java/org/dogtagpki/acme/server/ACMEApplication.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#557d0c70d6ced481bfe0c3ec2be43d7df3426a4b">
base/acme/src/main/java/org/dogtagpki/acme/server/ACMEAuthorizationService.java
→
base/acme/src/main/java/org/dogtagpki/acme/server/ACMEAuthorizationServlet.java
</a>
</li>
<li class="file-stats">
<a href="#2b31fa74bb89c80d600251867f56d66b8b96c214">
<span class="deleted-file">
−
base/acme/src/main/java/org/dogtagpki/acme/server/ACMECertificateService.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#bc2332c23aa5d248d677fad28ad4cf2e5494192e">
<span class="new-file">
+
base/acme/src/main/java/org/dogtagpki/acme/server/ACMECertificateServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#47f0196da5cce6d2949a2454bc8a860fc56548f5">
base/acme/src/main/java/org/dogtagpki/acme/server/ACMEChallengeProcessor.java
</a>
</li>
<li class="file-stats">
<a href="#018e2e748ad84fc51e26fe5bd34e9f87b63f0b14">
base/acme/src/main/java/org/dogtagpki/acme/server/ACMEChallengeService.java
→
base/acme/src/main/java/org/dogtagpki/acme/server/ACMEChallengeServlet.java
</a>
</li>
<li class="file-stats">
<a href="#f5401a1ffaea0dff3739c73627292c811484d03c">
<span class="deleted-file">
−
base/acme/src/main/java/org/dogtagpki/acme/server/ACMEDirectoryService.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#74226971ca2f0ccb96449fa5321aedd763df96c0">
<span class="new-file">
+
base/acme/src/main/java/org/dogtagpki/acme/server/ACMEDirectoryServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#3e9f5df2089d0792e3c2c81a7f11aa036e14d384">
<span class="deleted-file">
−
base/acme/src/main/java/org/dogtagpki/acme/server/ACMEDisableService.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#b9174cb91a61aa18a1619fb7ab33a1a47a2a2323">
<span class="new-file">
+
base/acme/src/main/java/org/dogtagpki/acme/server/ACMEDisableServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#513d488555fae3d6b629f37c7bde73ddb19a3a11">
base/acme/src/main/java/org/dogtagpki/acme/server/ACMERequestFilter.java
→
base/acme/src/main/java/org/dogtagpki/acme/server/ACMEEnableFilter.java
</a>
</li>
<li class="file-stats">
<a href="#72c085a269017866699405986a96ddaa80c0a026">
base/acme/src/main/java/org/dogtagpki/acme/server/ACMEEnableService.java
→
base/acme/src/main/java/org/dogtagpki/acme/server/ACMEEnableServlet.java
</a>
</li>
<li class="file-stats">
<a href="#fe30397906f164c11d263718ee3bd1effb2e004d">
base/acme/src/main/java/org/dogtagpki/acme/server/ACMEEngine.java
</a>
</li>
<li class="file-stats">
<a href="#d97ce73c9b7e9e4ea4ea6050b63d6cd6fc953103">
base/acme/src/main/java/org/dogtagpki/acme/server/ACMEIdentifierValidator.java
</a>
</li>
<li class="file-stats">
<a href="#65c865efd3d7ce058bf1a55e2b50711718474243">
base/acme/src/main/java/org/dogtagpki/acme/server/ACMELoginService.java
→
base/acme/src/main/java/org/dogtagpki/acme/server/ACMELoginServlet.java
</a>
</li>
<li class="file-stats">
<a href="#5fc4e81b5e189dd657b0a47975563ee1c6a9a0a3">
base/acme/src/main/java/org/dogtagpki/acme/server/ACMELogoutService.java
→
base/acme/src/main/java/org/dogtagpki/acme/server/ACMELogoutServlet.java
</a>
</li>
<li class="file-stats">
<a href="#fa64d2ec1866b5631b32cd9af4d05dcb606d52f5">
base/acme/src/main/java/org/dogtagpki/acme/server/ACMENewAccountService.java
→
base/acme/src/main/java/org/dogtagpki/acme/server/ACMENewAccountServlet.java
</a>
</li>
<li class="file-stats">
<a href="#10dcec8c792934cbde3f02881205afb42755226c">
<span class="deleted-file">
−
base/acme/src/main/java/org/dogtagpki/acme/server/ACMENewNonceService.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#3b92cfab84705be5bab71c0cf00536e19d47baeb">
<span class="new-file">
+
base/acme/src/main/java/org/dogtagpki/acme/server/ACMENewNonceServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#6e685924af2ec9da35550ae41df18b5aaedfab39">
base/acme/src/main/java/org/dogtagpki/acme/server/ACMENewOrderService.java
→
base/acme/src/main/java/org/dogtagpki/acme/server/ACMENewOrderServlet.java
</a>
</li>
<li class="file-stats">
<a href="#76c670a1879890082b873e958f592bb88ebade98">
<span class="deleted-file">
−
base/acme/src/main/java/org/dogtagpki/acme/server/ACMEOrderService.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#3f434e273dafa3bf28d1274ccf068bbb91bb6a27">
base/acme/src/main/java/org/dogtagpki/acme/server/ACMEFinalizeOrderService.java
→
base/acme/src/main/java/org/dogtagpki/acme/server/ACMEOrderServlet.java
</a>
</li>
<li class="file-stats">
<a href="#02ac79cb7f119b8bb05a5ef7f2ba51327eda1aba">
base/acme/src/main/java/org/dogtagpki/acme/server/ACMERevokeCertificateService.java
→
base/acme/src/main/java/org/dogtagpki/acme/server/ACMERevokeCertificateServlet.java
</a>
</li>
<li class="file-stats">
<a href="#ef769d992870e64600b825f40b390c00ed025d91">
<span class="deleted-file">
−
base/acme/src/main/java/org/dogtagpki/acme/server/ACMEService.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#61ec5ab3268ccabf952a82e0efff48dfc4407028">
<span class="new-file">
+
base/acme/src/main/java/org/dogtagpki/acme/server/ACMEServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#06a2dc44ea85f494dde046175515c03417480d1a">
base/acme/src/main/java/org/dogtagpki/acme/server/ACMEWebListener.java
</a>
</li>
<li class="file-stats">
<a href="#208d84e12b7c76005b03c4f7db9a17f992c98e95">
<span class="new-file">
+
base/acme/src/main/java/org/dogtagpki/server/acme/cli/ACMECLI.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#166985ff19670a9046fae22977355766b6c1aa5e">
<span class="new-file">
+
base/acme/src/main/java/org/dogtagpki/server/acme/cli/ACMEDatabaseCLI.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#d6f178b532d08fe8a19f395c11bfab31cadad9db">
<span class="new-file">
+
base/acme/src/main/java/org/dogtagpki/server/acme/cli/ACMEDatabaseIndexCLI.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#7aa9c6bbc93b29cbf6d86ba87387ccd0a201cf1c">
<span class="new-file">
+
base/acme/src/main/java/org/dogtagpki/server/acme/cli/ACMEDatabaseIndexRebuildCLI.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#eff26736181131ecc42de922bc59a7c62629a071">
<span class="new-file">
+
base/acme/src/main/java/org/dogtagpki/server/acme/cli/ACMEDatabaseInitCLI.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#fadc1150de6da887a6b494c89f94b7860cd0c003">
<span class="new-file">
+
base/acme/src/main/java/org/dogtagpki/server/acme/cli/ACMERealmCLI.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#a286674421133f158a6de6784bd68e8025022e9e">
<span class="new-file">
+
base/acme/src/main/java/org/dogtagpki/server/acme/cli/ACMERealmInitCLI.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#ea1070bdae0dce60ce13318ab07bdc23eeeee4f1">
<span class="new-file">
+
base/acme/tomcat-10.1/conf/Catalina/localhost/acme.xml
</span>
</a>
</li>
<li class="file-stats">
<a href="#9c3baf49268f17ec665276d2202dd6a339f78a4a">
base/acme/webapps/acme/WEB-INF/web.xml
</a>
</li>
<li class="file-stats">
<a href="#19d6c0cb525b2f8ecb90b65f1e0dacb3d04f3c54">
base/acme/webapps/acme/index.jsp
</a>
</li>
<li class="file-stats">
<a href="#97587b4f6c03ae82e5ae9a3eb901e018151ba12a">
base/ca/CMakeLists.txt
</a>
</li>
<li class="file-stats">
<a href="#115e217b1cc5aa3a5101df34be14de95cdbb121f">
base/ca/Dockerfile
</a>
</li>
<li class="file-stats">
<a href="#96ec3c2bdd8d600583e78e717c174b73e5d74cf9">
base/ca/bin/pki-ca-run
</a>
</li>
<li class="file-stats">
<a href="#a7340a8cdaec52ce6e3d570746adf977ff186872">
base/ca/database/ds/acl.ldif
</a>
</li>
<li class="file-stats">
<a href="#c9239d6fdb2dbc87fb4090d4165634e098bcfa20">
base/ca/database/ds/create.ldif
</a>
</li>
<li class="file-stats">
<a href="#f56883ea6db95c17124f44ef5abdbe102ac6c965">
base/ca/database/ds/vlv.ldif
</a>
</li>
<li class="file-stats">
<a href="#e16a56a5a3d65824488699dc33818bdb681a6312">
base/ca/database/ds/vlvtasks.ldif
</a>
</li>
<li class="file-stats">
<a href="#f2f5606358fa3e68d340ac14c2e7a26619db65e1">
base/ca/pom.xml
</a>
</li>
<li class="file-stats">
<a href="#427db533d88c6eae8397382b75e258c04be3ef12">
base/ca/shared/conf/CS.cfg
</a>
</li>
<li class="file-stats">
<a href="#3694da0db3f4a4658a5a35abe10e7384a825d8b8">
base/ca/shared/conf/caCert.profile
</a>
</li>
<li class="file-stats">
<a href="#b7e664046a31d198f4e02f3b1eb26f1b2a7b5429">
<span class="new-file">
+
base/ca/shared/conf/mldsaAdminCert.profile
</span>
</a>
</li>
<li class="file-stats">
<a href="#758fb2a47c99d959286297c16b7e0baed8b3c066">
<span class="new-file">
+
base/ca/shared/conf/mldsaServerCert.profile
</span>
</a>
</li>
<li class="file-stats">
<a href="#ee4fc4bbd224575ab8dbddd39702ea07cf462ea5">
<span class="new-file">
+
base/ca/shared/conf/mldsaSubsystemCert.profile
</span>
</a>
</li>
<li class="file-stats">
<a href="#080553d8328c25571ed6c641c5cd9663c62abf0e">
base/ca/shared/conf/registry.cfg
</a>
</li>
<li class="file-stats">
<a href="#e00787d06879b23bb47a02edef01afb7689dbe64">
base/ca/shared/profiles/ca/AdminCert.cfg
</a>
</li>
<li class="file-stats">
<a href="#d35c10b450c7430148f604f94fb7bc0484a5a4cb">
base/ca/shared/profiles/ca/ECAdminCert.cfg
</a>
</li>
<li class="file-stats">
<a href="#2d7b27cb610ca909cc263f360965a4c5d9ff1331">
base/ca/shared/profiles/ca/acmeServerCert.cfg
</a>
</li>
<li class="file-stats">
<a href="#3ea05f7ba635a0cb1d761519fe2dd810fc4a8ea4">
base/ca/shared/profiles/ca/caAdminCert.cfg
</a>
</li>
<li class="file-stats">
<a href="#24354bc89c5b9cde5ab20ff5263cf3269101b674">
base/ca/shared/profiles/ca/caAgentFileSigning.cfg
</a>
</li>
<li class="file-stats">
<a href="#328d8a10afb7bf092778169f19730b00a3b0fad9">
base/ca/shared/profiles/ca/caAgentServerCert.cfg
</a>
</li>
<li class="file-stats">
<a href="#f3f5eab180b90e52b5e177f8decf5400654e5a45">
base/ca/shared/profiles/ca/caAuditSigningCert.cfg
</a>
</li>
<li class="file-stats">
<a href="#7dd5a3356a7e02bd4097476f290d99eb6dbbb475">
base/ca/shared/profiles/ca/caCACert.cfg
</a>
</li>
<li class="file-stats">
<a href="#54356798f6b2f1dff17151040963f5e0c05d478e">
base/ca/shared/profiles/ca/caCMCECUserCert.cfg
</a>
</li>
<li class="file-stats">
<a href="#b28a2062264998a5da3631a900d481e195ef46a5">
base/ca/shared/profiles/ca/caCMCECserverCert.cfg
</a>
</li>
<li class="file-stats">
<a href="#0544e3f6f42d57f94f5968aea28bd7f5877ad400">
<span class="new-file">
+
base/ca/shared/profiles/ca/caCMCECserverCertWithCRLDP.cfg
</span>
</a>
</li>
<li class="file-stats">
<a href="#ccf3be94c331a28fab798d0c55dfe993c0a8a76e">
base/ca/shared/profiles/ca/caCMCECsubsystemCert.cfg
</a>
</li>
<li class="file-stats">
<a href="#42d9cdcfd41f59d1412ed1e168e1d96e262f3b54">
<span class="new-file">
+
base/ca/shared/profiles/ca/caCMCMLDSAserverCert.cfg
</span>
</a>
</li>
<li class="file-stats">
<a href="#ee2915d1d8bdcc73a921da31b894f00f9e9c946b">
base/ca/shared/profiles/ca/caCMCUserCert.cfg
</a>
</li>
<li class="file-stats">
<a href="#22cd88397c7ed3920cb453f00f5806406f3c52bc">
base/ca/shared/profiles/ca/caCMCauditSigningCert.cfg
</a>
</li>
<li class="file-stats">
<a href="#4a119a67dccf026c3d39086d98f3f92b1dac3d12">
base/ca/shared/profiles/ca/caCMCcaCert.cfg
</a>
</li>
<li class="file-stats">
<a href="#73f5708e2422f9c619f47f994a33872e9e151cf5">
base/ca/shared/profiles/ca/caCMCcaIssuanceProtectionCert.cfg
</a>
</li>
<li class="file-stats">
<a href="#a9c33fc338a702d4852e76ed7df63f93aae6930d">
base/ca/shared/profiles/ca/caCMCkraStorageCert.cfg
</a>
</li>
<li class="file-stats">
<a href="#9ee677932f7f9c5f9c03419654043e35f949e87e">
base/ca/shared/profiles/ca/caCMCkraTransportCert.cfg
</a>
</li>
<li class="file-stats">
<a href="#69566a5fa75b8658209e658a19c1ad663c37aa3c">
base/ca/shared/profiles/ca/caCMCocspCert.cfg
</a>
</li>
<li class="file-stats">
<a href="#64832540d518b4c4a0e6d8cca1a062f46ad8c633">
base/ca/shared/profiles/ca/caCMCserverCert.cfg
</a>
</li>
<li class="file-stats">
<a href="#b4fb7e315becf71d63f828873fa01e169aef7a20">
<span class="new-file">
+
base/ca/shared/profiles/ca/caCMCserverCertWithCRLDP.cfg
</span>
</a>
</li>
<li class="file-stats">
<a href="#4e4cd45cc91ec47d23a537d8965ca026de8c02b3">
base/ca/shared/profiles/ca/caCMCsubsystemCert.cfg
</a>
</li>
<li class="file-stats">
<a href="#85f2b9b306c434522ef49a610e5b47827c22e493">
base/ca/shared/profiles/ca/caCrossSignedCACert.cfg
</a>
</li>
<li class="file-stats">
<a href="#d52e59d40446b3fe86a985c520274e582e5a8155">
base/ca/shared/profiles/ca/caDirBasedDualCert.cfg
</a>
</li>
<li class="file-stats">
<a href="#6179d91aef64fc28ce882ea539e34234739b4209">
base/ca/shared/profiles/ca/caDirPinUserCert.cfg
</a>
</li>
<li class="file-stats">
<a href="#f8abdfe9490f89e3f9e0c6c15727a90fa0df1ddf">
base/ca/shared/profiles/ca/caDirUserCert.cfg
</a>
</li>
<li class="file-stats">
<a href="#b6d1d3472a192538ba9be32297660a2d8fbf66f4">
base/ca/shared/profiles/ca/caDualCert.cfg
</a>
</li>
<li class="file-stats">
<a href="#cbb1a372336c27bf27a987460fffe8767b35a091">
base/ca/shared/profiles/ca/caDualRAuserCert.cfg
</a>
</li>
<li class="file-stats">
<a href="#5ea2bb8470f445ff0a33ec285cd1aa288463565a">
base/ca/shared/profiles/ca/caECAdminCert.cfg
</a>
</li>
<li class="file-stats">
<a href="#03080cd13ce847263cc823dad7dbad9816bd80a1">
base/ca/shared/profiles/ca/caECAgentServerCert.cfg
</a>
</li>
<li class="file-stats">
<a href="#aeb820dd0810231202533b3373bf2fc24ffc5c70">
base/ca/shared/profiles/ca/caECDirPinUserCert.cfg
</a>
</li>
<li class="file-stats">
<a href="#cdf2ee43d86f6ca1f374a3b11a010909d7a4df54">
base/ca/shared/profiles/ca/caECDirUserCert.cfg
</a>
</li>
<li class="file-stats">
<a href="#9a81b1d92429f4a292d086f25f10172e4d6f5532">
base/ca/shared/profiles/ca/caECDualCert.cfg
</a>
</li>
<li class="file-stats">
<a href="#6ad280767e71bf8e2e80f61db5f00e7144363a3d">
base/ca/shared/profiles/ca/caECFullCMCSharedTokenCert.cfg
</a>
</li>
<li class="file-stats">
<a href="#8e16425d6b2dc171d907de2e5f3a51bdd652c824">
base/ca/shared/profiles/ca/caECFullCMCUserCert.cfg
</a>
</li>
<li class="file-stats">
<a href="#9954091ccf009282d6d91dca34be576fb644b7ab">
base/ca/shared/profiles/ca/caECFullCMCUserSignedCert.cfg
</a>
</li>
<li class="file-stats">
<a href="#11159ff179cc3e5431df94f5ade780dec7cebcdc">
base/ca/shared/profiles/ca/caECInternalAuthServerCert.cfg
</a>
</li>
<li class="file-stats">
<a href="#641d2ab8e75e536a0c5b75216f9cdef03001868f">
base/ca/shared/profiles/ca/caECInternalAuthSubsystemCert.cfg
</a>
</li>
<li class="file-stats">
<a href="#ee4137506826eb4ff9bc39442d91b544367771f3">
base/ca/shared/profiles/ca/caECServerCert.cfg
</a>
</li>
<li class="file-stats">
<a href="#7d38d968329e093b53200289213cae7f9996b742">
<span class="new-file">
+
base/ca/shared/profiles/ca/caECServerCertWithCRLDP.cfg
</span>
</a>
</li>
<li class="file-stats">
<a href="#a9c4712e3d6b4d3c471130e95b787aadc2e54ae5">
base/ca/shared/profiles/ca/caECServerCertWithSCT.cfg
</a>
</li>
<li class="file-stats">
<a href="#d413bcc545c224af7d8d359b0aeb817071603112">
base/ca/shared/profiles/ca/caECSimpleCMCUserCert.cfg
</a>
</li>
<li class="file-stats">
<a href="#63ff6e89d13e69ac90703440a06c4b9c3311836f">
base/ca/shared/profiles/ca/caECSubsystemCert.cfg
</a>
</li>
<li class="file-stats">
<a href="#5a6151273b216df72c473fbb3f58798210c5358e">
base/ca/shared/profiles/ca/caECUserCert.cfg
</a>
</li>
<li class="file-stats">
<a href="#751bf825939b9b7a296998b214e083d2f4cfe9ad">
base/ca/shared/profiles/ca/caEncECUserCert.cfg
</a>
</li>
<li class="file-stats">
<a href="#1bc5cdecdfb3e029fc281b0a9688673c18b2889d">
base/ca/shared/profiles/ca/caEncUserCert.cfg
</a>
</li>
<li class="file-stats">
<a href="#280f7013d5aceae1946accc4e1855409599af894">
base/ca/shared/profiles/ca/caFullCMCSharedTokenCert.cfg
</a>
</li>
<li class="file-stats">
<a href="#a6350514df432cee2c56dda684ae9d6c65daa09a">
base/ca/shared/profiles/ca/caFullCMCUserCert.cfg
</a>
</li>
<li class="file-stats">
<a href="#4cee46738217b344d357cca3ae12dd84c1470c3b">
base/ca/shared/profiles/ca/caFullCMCUserSignedCert.cfg
</a>
</li>
<li class="file-stats">
<a href="#72ff23048156d82c5feb28d33ac58f4a8fb6462e">
base/ca/shared/profiles/ca/caIPAserviceCert.cfg
</a>
</li>
<li class="file-stats">
<a href="#bdb1363cdc84d17b63143b530a40d9f13dd62aa4">
base/ca/shared/profiles/ca/caInstallCACert.cfg
</a>
</li>
<li class="file-stats">
<a href="#96d0a71b1f975504455fc38cab28cf9518271e0d">
base/ca/shared/profiles/ca/caInternalAuthAuditSigningCert.cfg
</a>
</li>
<li class="file-stats">
<a href="#a5397b7fe6a639e40a28ec0427773ff40a27ab5a">
base/ca/shared/profiles/ca/caInternalAuthDRMstorageCert.cfg
</a>
</li>
<li class="file-stats">
<a href="#488bf9649f0a337b6c017cf1e47335a0530ec633">
base/ca/shared/profiles/ca/caInternalAuthOCSPCert.cfg
</a>
</li>
<li class="file-stats">
<a href="#8855434395d9d83cb4165eb9b3d39fa18b82e800">
base/ca/shared/profiles/ca/caInternalAuthServerCert.cfg
</a>
</li>
<li class="file-stats">
<a href="#43cfd9d62bb4db449dc1bbf039a0d38350e3fdea">
base/ca/shared/profiles/ca/caInternalAuthSubsystemCert.cfg
</a>
</li>
<li class="file-stats">
<a href="#4a45bdbd730f63a1c1c47ee971e0ac6f4edab5da">
base/ca/shared/profiles/ca/caInternalAuthTransportCert.cfg
</a>
</li>
<li class="file-stats">
<a href="#1c3a6963d10f936d683363e20ab675e73198592e">
base/ca/shared/profiles/ca/caJarSigningCert.cfg
</a>
</li>
<li class="file-stats">
<a href="#f3bfe48e74c68e995767dfadb8ab136ff39b84e8">
<span class="new-file">
+
base/ca/shared/profiles/ca/caMLDSAAdminCert.cfg
</span>
</a>
</li>
<li class="file-stats">
<a href="#3d5c13f525df60ab58a28aa270085561797f6bd5">
<span class="new-file">
+
base/ca/shared/profiles/ca/caMLDSAInternalAuthServerCert.cfg
</span>
</a>
</li>
<li class="file-stats">
<a href="#fd37c625fb17f8d8399cb99d46e4246116f74141">
<span class="new-file">
+
base/ca/shared/profiles/ca/caMLDSAInternalAuthSubsystemCert.cfg
</span>
</a>
</li>
<li class="file-stats">
<a href="#f736d5f22af423b7aea9c0de0210556104c72f3d">
<span class="new-file">
+
base/ca/shared/profiles/ca/caMLDSAServerCert.cfg
</span>
</a>
</li>
<li class="file-stats">
<a href="#41d120097620db63fbef16c0f662d5d56af9d272">
<span class="new-file">
+
base/ca/shared/profiles/ca/caMLDSASubsystemCert.cfg
</span>
</a>
</li>
<li class="file-stats">
<a href="#5aafc950fdefcef8489c3dcb0c35bc8a0c8797f0">
<span class="new-file">
+
base/ca/shared/profiles/ca/caMLDSAUserCert.cfg
</span>
</a>
</li>
<li class="file-stats">
<a href="#d84f316c1a772174b5ded8e4e58da278dbeaf431">
<span class="new-file">
+
base/ca/shared/profiles/ca/caMLKEMInternalAuthDRMstorageCert.cfg
</span>
</a>
</li>
<li class="file-stats">
<a href="#470f9a484af3ad3842021ae95c21649bcd1b43d5">
<span class="new-file">
+
base/ca/shared/profiles/ca/caMLKEMInternalAuthTransportCert.cfg
</span>
</a>
</li>
<li class="file-stats">
<a href="#4d94c4f1cd9cff7eb737e533399c59043dd767e4">
<span class="new-file">
+
base/ca/shared/profiles/ca/caMLKEMUserCert.cfg
</span>
</a>
</li>
<li class="file-stats">
<a href="#3abda90493086a90e84b46c5a2d1da23b90ad5a8">
base/ca/shared/profiles/ca/caOCSPCert.cfg
</a>
</li>
<li class="file-stats">
<a href="#85a48150e5b90860699e11f9b16989f6f5629f36">
base/ca/shared/profiles/ca/caOtherCert.cfg
</a>
</li>
<li class="file-stats">
<a href="#94c2e41aa33a45224afc3314091aebf913eb1f69">
base/ca/shared/profiles/ca/caRACert.cfg
</a>
</li>
<li class="file-stats">
<a href="#d1eebaafee48cd8a1c5ae6082047ebbb821c01c5">
base/ca/shared/profiles/ca/caRARouterCert.cfg
</a>
</li>
<li class="file-stats">
<a href="#0dede753dafcb1502b1dbd7813c6635bb1fe6b54">
base/ca/shared/profiles/ca/caRAagentCert.cfg
</a>
</li>
<li class="file-stats">
<a href="#04e4f601905d25ef52b0fd3fa5cc29d3a50ee681">
base/ca/shared/profiles/ca/caRAserverCert.cfg
</a>
</li>
<li class="file-stats">
<a href="#e346c770aaaf6fd027107c2d92744a9fd643049d">
base/ca/shared/profiles/ca/caRouterCert.cfg
</a>
</li>
<li class="file-stats">
<a href="#2d48eda9b3d59d33717cd0369058e88226864ca7">
base/ca/shared/profiles/ca/caServerCert.cfg
</a>
</li>
<li class="file-stats">
<a href="#8bbe697d8320b2787f52ac1a5c67a519ca5b616e">
<span class="new-file">
+
base/ca/shared/profiles/ca/caServerCertWithCRLDP.cfg
</span>
</a>
</li>
<li class="file-stats">
<a href="#fcf18bb89daef842772652392919eca45fc9608c">
base/ca/shared/profiles/ca/caServerCertWithSCT.cfg
</a>
</li>
<li class="file-stats">
<a href="#40b1f54c1b9fb96b32aedb2fdde197cf55c623ba">
base/ca/shared/profiles/ca/caServerKeygen_DirUserCert.cfg
</a>
</li>
<li class="file-stats">
<a href="#d7d965a1ab3979b8e2be0ecac50d941f36340c97">
base/ca/shared/profiles/ca/caServerKeygen_UserCert.cfg
</a>
</li>
<li class="file-stats">
<a href="#1e0a1d0584b9de75390659db08542d75229bbdff">
base/ca/shared/profiles/ca/caSignedLogCert.cfg
</a>
</li>
<li class="file-stats">
<a href="#b6b66f69856711bfd3df0505c073ac3ef6af39db">
base/ca/shared/profiles/ca/caSigningECUserCert.cfg
</a>
</li>
<li class="file-stats">
<a href="#cd757bf12f6226fa3cf48db8793868db92e695e3">
base/ca/shared/profiles/ca/caSigningUserCert.cfg
</a>
</li>
<li class="file-stats">
<a href="#2c0b4e303d06ba0f0ee579610cec7119ef55af2d">
base/ca/shared/profiles/ca/caSimpleCMCUserCert.cfg
</a>
</li>
<li class="file-stats">
<a href="#ff6b51aec95a444e39fc3a6ef139c9412856630b">
base/ca/shared/profiles/ca/caStorageCert.cfg
</a>
</li>
<li class="file-stats">
<a href="#91dbe81dd450476cfd9cde768133c3d37b11a31f">
base/ca/shared/profiles/ca/caSubsystemCert.cfg
</a>
</li>
<li class="file-stats">
<a href="#3070aa7c90962798acc6808295f69959b217a2ff">
base/ca/shared/profiles/ca/caTPSCert.cfg
</a>
</li>
<li class="file-stats">
<a href="#d0bc8c1e4b5f97fa32a2bb838b243cd35459cf98">
base/ca/shared/profiles/ca/caTransportCert.cfg
</a>
</li>
<li class="file-stats">
<a href="#029949b453f8af804ebc978ab64127cbba2c5a66">
base/ca/shared/profiles/ca/caUUIDdeviceCert.cfg
</a>
</li>
<li class="file-stats">
<a href="#e75f2ddf95d793f97d61f5eb77715ae5ae170181">
base/ca/shared/profiles/ca/caUserCert.cfg
</a>
</li>
<li class="file-stats">
<a href="#6a184f468e71e0ff82aefaebf16c84ed1a6c4f2c">
base/ca/shared/profiles/ca/caUserSMIMEcapCert.cfg
</a>
</li>
<li class="file-stats">
<a href="#6e22c4dd9b199ffc6c3d4d4b6bfc6e71841f2c80">
<span class="new-file">
+
base/ca/shared/profiles/ca/estFullcmcDeviceCert.cfg
</span>
</a>
</li>
<li class="file-stats">
<a href="#88c86b2dc04bccfdb953db456404759b0fa24fd1">
base/ca/shared/profiles/ca/estServiceCert.cfg
</a>
</li>
<li class="file-stats">
<a href="#b345c3dd4d9f25f8f320ad0300e7e379c4ade2b6">
base/ca/shared/webapps/ca/WEB-INF/web.xml
</a>
</li>
<li class="file-stats">
<a href="#015b365e77913f879fe9e3e7bf5b7c6fe0850745">
base/ca/shared/webapps/ca/agent/ca/queryBySerial.html
</a>
</li>
<li class="file-stats">
<a href="#626adb596fa9d77dc7b3e0daa60d675ae7f1f412">
base/ca/shared/webapps/ca/agent/ca/queryCert.template
</a>
</li>
<li class="file-stats">
<a href="#50e9da3d7cc4ff9e7cb49f312852a9696092d388">
base/ca/shared/webapps/ca/ee/ca/queryBySerial.html
</a>
</li>
<li class="file-stats">
<a href="#20efb8df2005ee6e073019fed1bf160fbcc1c8e8">
base/ca/shared/webapps/ca/ee/ca/queryCert.template
</a>
</li>
<li class="file-stats">
<a href="#34f4f8dc1926264f14aff06379b3a58b9bc82e7c">
base/ca/src/main/java/com/netscape/ca/AuthorityMonitor.java
</a>
</li>
<li class="file-stats">
<a href="#0253fd5ac5e6f94d68fcb3edefec82b92caae846">
base/ca/src/main/java/com/netscape/ca/CAService.java
</a>
</li>
<li class="file-stats">
<a href="#7a71d16a40adb12676e8bcff861742ae7f9fae00">
base/ca/src/main/java/com/netscape/ca/CASigningUnit.java
</a>
</li>
<li class="file-stats">
<a href="#06086101ae976d401fbfdf085d922a5b9bd71ea7">
<span class="new-file">
+
base/ca/src/main/java/com/netscape/ca/CRLAutoUpdateTask.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#0844852102c69e1c87f349ba3e9b810a647b893e">
base/ca/src/main/java/com/netscape/ca/CRLConfig.java
</a>
</li>
<li class="file-stats">
<a href="#681a3d93513953fa9b99ffb900398acacfd8b45f">
base/ca/src/main/java/com/netscape/ca/CRLIssuingPoint.java
</a>
</li>
<li class="file-stats">
<a href="#8d17709ef81180d5ba0a19761778f99c035c4aef">
base/ca/src/main/java/com/netscape/ca/CRLIssuingPointConfig.java
</a>
</li>
<li class="file-stats">
<a href="#4574f9abfc10306ff73499141138c181ed614087">
base/ca/src/main/java/com/netscape/ca/CertRecordProcessor.java
</a>
</li>
<li class="file-stats">
<a href="#f08a99ff894605440a853c5ac0f95dcf5518c6b9">
base/ca/src/main/java/com/netscape/ca/CertificateAuthority.java
</a>
</li>
<li class="file-stats">
<a href="#e1ee7def4f28b8e14485d98b63a433a86bafd377">
base/ca/src/main/java/com/netscape/ca/GetCertStatus.java
</a>
</li>
<li class="file-stats">
<a href="#406950cb8b2d6ffbb7430aa3dcf5f328f2c3783d">
base/ca/src/main/java/com/netscape/ca/KeyRetrieverRunner.java
</a>
</li>
<li class="file-stats">
<a href="#61dfb2d0e0db28603e148b0cbe4d89b64164a4e1">
<span class="new-file">
+
base/ca/src/main/java/com/netscape/ca/KeyRetrieverWorker.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#d9aeb3a48ab994cb84c1eb5cd14bfa80ca6ee2b6">
base/ca/src/main/java/com/netscape/ca/ServiceCheckChallenge.java
</a>
</li>
<li class="file-stats">
<a href="#7015177d5910f4301421802ae573ba9b590949eb">
base/ca/src/main/java/com/netscape/ca/ServiceGetCAChain.java
</a>
</li>
<li class="file-stats">
<a href="#0b25121072e94639d3c16164731a979adcd8ee86">
base/common/src/main/java/com/netscape/certsrv/notification/IEmailResolver.java
→
base/ca/src/main/java/com/netscape/certsrv/notification/EmailResolver.java
</a>
</li>
<li class="file-stats">
<a href="#9a1dfad33e694cde78b5696615f4ca24f13198a5">
base/ca/src/main/java/com/netscape/certsrv/publish/CRLPublisher.java
</a>
</li>
<li class="file-stats">
<a href="#de8c0cb21c56c13cc52bdd626bae3c0ba99bdcca">
<span class="deleted-file">
−
base/ca/src/main/java/com/netscape/certsrv/publish/IPublishRuleSet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#ba6ec3068f17d5e8e285df2ebed592998b41a8b7">
base/ca/src/main/java/com/netscape/cms/authentication/CAAuthSubsystem.java
</a>
</li>
<li class="file-stats">
<a href="#a093f361367887130cf5f2540e8d8c20fd6b1bc2">
base/ca/src/main/java/com/netscape/cms/authentication/CMCAuth.java
</a>
</li>
<li class="file-stats">
<a href="#8de0beb0881c6f27053e09dca18d7363a4d9416b">
<span class="new-file">
+
base/ca/src/main/java/com/netscape/cms/authentication/CMCAuthForEST.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#d5e55dad191768ef5d1e92eaa9313d833bd49d2d">
base/ca/src/main/java/com/netscape/cms/authentication/CMCUserSignedAuth.java
</a>
</li>
<li class="file-stats">
<a href="#bf5580b92737999d206b653871c4bb5306deafcd">
base/ca/src/main/java/com/netscape/cms/authentication/FlatFileAuth.java
</a>
</li>
<li class="file-stats">
<a href="#8a10619f9005a3cdda91a1f772e1bf8cb760507e">
base/ca/src/main/java/com/netscape/cms/authentication/SSLClientCertAuthentication.java
→
base/ca/src/main/java/com/netscape/cms/authentication/SSLClientCertAuthManager.java
</a>
</li>
<li class="file-stats">
<a href="#b429c7edc728ef408c33b1c04a6c91a135c6fd4a">
base/ca/src/main/java/com/netscape/cms/authentication/SharedSecret.java
</a>
</li>
<li class="file-stats">
<a href="#bf61995d38408ec8c1e06ac7b5fb233e2df3de3f">
base/ca/src/main/java/com/netscape/cms/crl/CMSAuthorityKeyIdentifierExtension.java
</a>
</li>
<li class="file-stats">
<a href="#2b992330f3a20f833a90a36812e40e5938432288">
base/ca/src/main/java/com/netscape/cms/jobs/PublishCertsJob.java
</a>
</li>
<li class="file-stats">
<a href="#a35eab6c0510503d0cba7dd40ef0743d394a3415">
base/ca/src/main/java/com/netscape/cms/jobs/RenewalNotificationJob.java
</a>
</li>
<li class="file-stats">
<a href="#6b2b352a78b8a305b0e2388eb12c42820c93d8a9">
base/ca/src/main/java/com/netscape/cms/jobs/UnpublishExpiredJob.java
</a>
</li>
<li class="file-stats">
<a href="#fca5412baa36c9809ad862848963877e2c126a1a">
base/server/src/main/java/com/netscape/cmscore/request/SearchEnumeration.java
→
base/ca/src/main/java/com/netscape/cms/listeners/CARequestInQListener.java
</a>
</li>
<li class="file-stats">
<a href="#5be82fcea7a452968323cedfaf095dc78524dbb4">
base/ca/src/main/java/com/netscape/cms/listeners/CertificateIssuedListener.java
</a>
</li>
<li class="file-stats">
<a href="#701b17cc7ee60680f51657963c15548a07ed3db9">
base/ca/src/main/java/com/netscape/cms/listeners/CertificateRevokedListener.java
</a>
</li>
<li class="file-stats">
<a href="#d63a461ad8ca8df80c04aefea6cf110f31e3514b">
base/server/src/main/java/com/netscape/cms/listeners/PinRemovalListener.java
→
base/ca/src/main/java/com/netscape/cms/listeners/PinRemovalListener.java
</a>
</li>
<li class="file-stats">
<a href="#91f0af69c2b58048d987cadead92148b7b1b2a9b">
base/ca/src/main/java/com/netscape/cms/profile/common/CACertCAEnrollProfile.java
</a>
</li>
<li class="file-stats">
<a href="#c6a7edfc42d577a777070394b7043334a183685a">
base/ca/src/main/java/com/netscape/cms/profile/common/CAEnrollProfile.java
</a>
</li>
<li class="file-stats">
<a href="#40a48eafe52b2ad6272cde57d8f9083a1ee92113">
base/ca/src/main/java/com/netscape/cms/profile/common/EnrollProfile.java
</a>
</li>
<li class="file-stats">
<a href="#63721778b42d485712020a7456aae2eba07b9a94">
<span class="new-file">
+
base/ca/src/main/java/com/netscape/cms/profile/common/PolicyConstraintConfig.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#2b817b4972c473ad5745c30d71fa7a01a28e951b">
<span class="new-file">
+
base/ca/src/main/java/com/netscape/cms/profile/common/PolicyDefaultConfig.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#a8411e04f28bacfc61df62e7f501f397d6a95577">
base/ca/src/main/java/com/netscape/cms/profile/common/Profile.java
</a>
</li>
<li class="file-stats">
<a href="#a201d3939936ef6c2a0aac3b51cbe8a2fcd17419">
base/ca/src/main/java/com/netscape/cms/profile/common/ProfileConfig.java
</a>
</li>
<li class="file-stats">
<a href="#feb4f06ec4506e0022cf54e712625ec42786a2d3">
base/ca/src/main/java/com/netscape/cms/profile/common/ProfileInput.java
</a>
</li>
<li class="file-stats">
<a href="#5858e2ab50b395779f9f58e693a21e0a497a3a81">
base/ca/src/main/java/com/netscape/cms/profile/common/ProfileOutput.java
</a>
</li>
<li class="file-stats">
<a href="#8091e0f7001d842a57f85eb7b48a764cd248959f">
<span class="new-file">
+
base/ca/src/main/java/com/netscape/cms/profile/common/ProfilePolicyConfig.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#dc575a42e9f2162c834b305e4b2172da6a94a8ae">
<span class="new-file">
+
base/ca/src/main/java/com/netscape/cms/profile/common/ProfilePolicySetConfig.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#149945348b83079b3556596863f32b01123b84b0">
<span class="new-file">
+
base/ca/src/main/java/com/netscape/cms/profile/common/ProfilePolicySetsConfig.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#5f4716696e8401f522ad3dee49b8101b47a22cdd">
base/ca/src/main/java/com/netscape/cms/profile/common/ServerCertCAEnrollProfile.java
</a>
</li>
<li class="file-stats">
<a href="#c35b7859f5bb1cc1a362027dc4d5618e4ad19de6">
base/ca/src/main/java/com/netscape/cms/profile/common/UserCertCAEnrollProfile.java
</a>
</li>
<li class="file-stats">
<a href="#27ee30ad3f063ac60afda56ab5f658b91d76ca14">
base/ca/src/main/java/com/netscape/cms/profile/constraint/CAValidityConstraint.java
</a>
</li>
<li class="file-stats">
<a href="#a800a85a06f0c4c10a031ef04a25f9797ea659ae">
base/ca/src/main/java/com/netscape/cms/profile/constraint/CMCSharedTokenSubjectNameConstraint.java
</a>
</li>
<li class="file-stats">
<a href="#e086e93ea83cdb5f43936b91280b5099a568df9b">
base/ca/src/main/java/com/netscape/cms/profile/constraint/CMCUserSignedSubjectNameConstraint.java
</a>
</li>
<li class="file-stats">
<a href="#06fe1241594c60ece50d80838e778f2a3362c80d">
base/ca/src/main/java/com/netscape/cms/profile/constraint/EnrollConstraint.java
</a>
</li>
<li class="file-stats">
<a href="#d71d93db3752a5bec9636246eb21e96de1ffe951">
base/ca/src/main/java/com/netscape/cms/profile/constraint/ExternalProcessConstraint.java
</a>
</li>
<li class="file-stats">
<a href="#6c5770ffe786c37932e677d722201da61b3312b2">
base/ca/src/main/java/com/netscape/cms/profile/constraint/KeyConstraint.java
</a>
</li>
<li class="file-stats">
<a href="#c3f9669a2bc32c203ded4e9238e943ee6bf87eb7">
base/ca/src/main/java/com/netscape/cms/profile/constraint/NoConstraint.java
</a>
</li>
<li class="file-stats">
<a href="#1694f26d84a98f4b71bd3d67521adda3b604f9ea">
<span class="new-file">
+
base/ca/src/main/java/com/netscape/cms/profile/constraint/P12ExportPasswordConstraint.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#5df7f4fa5dbbb9341a300975f0afcf195aa48211">
base/ca/src/main/java/com/netscape/cms/profile/constraint/PolicyConstraint.java
</a>
</li>
<li class="file-stats">
<a href="#306e07875df10e020516fc4c346ab2584a1574bc">
<span class="new-file">
+
base/ca/src/main/java/com/netscape/cms/profile/constraint/RAClientAuthSubjectNameConstraint.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#ca4c23cad89da2f87ba638db036d15732a1f1058">
<span class="new-file">
+
base/ca/src/main/java/com/netscape/cms/profile/constraint/RAHeaderClientCertSubjectNameConstraint.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#9dd5af6953d2d7d8e086f8711bcf3c0b7c6e5554">
base/ca/src/main/java/com/netscape/cms/profile/constraint/SubjectNameConstraint.java
</a>
</li>
<li class="file-stats">
<a href="#30da73622e8f72a401033d296e27dd2a9bbfaa33">
base/ca/src/main/java/com/netscape/cms/profile/constraint/UniqueKeyConstraint.java
</a>
</li>
<li class="file-stats">
<a href="#4249624979511794b9b686a1065955a7ac498bcb">
base/ca/src/main/java/com/netscape/cms/profile/constraint/UniqueSubjectNameConstraint.java
</a>
</li>
<li class="file-stats">
<a href="#b3688e4c27d1c3e8d9b91b5b236e0bac131fdf4e">
base/ca/src/main/java/com/netscape/cms/profile/def/AuthInfoAccessExtDefault.java
</a>
</li>
<li class="file-stats">
<a href="#9431880993641a4106002f017b4fab513774e938">
base/ca/src/main/java/com/netscape/cms/profile/def/CAEnrollDefault.java
</a>
</li>
<li class="file-stats">
<a href="#8448000bd64051a41b0318a05367bf2741b26e88">
base/ca/src/main/java/com/netscape/cms/profile/def/CAValidityDefault.java
</a>
</li>
<li class="file-stats">
<a href="#ae7137fc6b60e25b1c0e096e3896b68594175d3a">
base/ca/src/main/java/com/netscape/cms/profile/def/CRLDistributionPointsExtDefault.java
</a>
</li>
<li class="file-stats">
<a href="#f7ed285f5b13921b9006bbb6593112515264c27c">
base/ca/src/main/java/com/netscape/cms/profile/def/CertificatePoliciesExtDefault.java
</a>
</li>
<li class="file-stats">
<a href="#0bc2baba43aec71925edc076f224fd0416eebdad">
base/ca/src/main/java/com/netscape/cms/profile/def/EnrollDefault.java
</a>
</li>
<li class="file-stats">
<a href="#48c68ac8b4a6a5d7a74af77a4458c415aa6a3ff1">
base/ca/src/main/java/com/netscape/cms/profile/def/FreshestCRLExtDefault.java
</a>
</li>
<li class="file-stats">
<a href="#bb43524523a62e3a6e97a1f4cf40c9b5aaa5d620">
base/ca/src/main/java/com/netscape/cms/profile/def/NameConstraintsExtDefault.java
</a>
</li>
<li class="file-stats">
<a href="#224ebd44ea631e02af21bfe8311dbcdfa9103de4">
base/ca/src/main/java/com/netscape/cms/profile/def/NoDefault.java
</a>
</li>
<li class="file-stats">
<a href="#5a770027449f5a12b83622b973b08670ced47568">
base/ca/src/main/java/com/netscape/cms/profile/def/PolicyDefault.java
</a>
</li>
<li class="file-stats">
<a href="#f96d5a397a7e51f905597e5dc47ef4e0a61cdaec">
base/ca/src/main/java/com/netscape/cms/profile/def/PolicyMappingsExtDefault.java
</a>
</li>
<li class="file-stats">
<a href="#cf028ee70dbac39cf14ca2ba41fd1155905d2541">
base/ca/src/main/java/com/netscape/cms/profile/def/ServerKeygenUserKeyDefault.java
</a>
</li>
<li class="file-stats">
<a href="#51b3a572fc82fd8b85e96177bac86246a1549136">
base/ca/src/main/java/com/netscape/cms/profile/def/SubjectAltNameExtDefault.java
</a>
</li>
<li class="file-stats">
<a href="#c84b74f237cb79384e9b67d9c97b7be9406e45a5">
base/ca/src/main/java/com/netscape/cms/profile/def/SubjectDirAttributesExtDefault.java
</a>
</li>
<li class="file-stats">
<a href="#8c689e5da75b75d6d202e836d01532c956445e09">
base/ca/src/main/java/com/netscape/cms/profile/def/SubjectInfoAccessExtDefault.java
</a>
</li>
<li class="file-stats">
<a href="#ef2008d9ecb2abd9d882edafebac60edf8d68dee">
base/ca/src/main/java/com/netscape/cms/profile/def/UserKeyDefault.java
</a>
</li>
<li class="file-stats">
<a href="#0f9a3843ca404676d421c2af2002ceaa10faf65f">
base/ca/src/main/java/com/netscape/cms/profile/def/UserSubjectNameDefault.java
</a>
</li>
<li class="file-stats">
<a href="#baa48af8ebfc55711ee6eba2e4d2f1d0856f2488">
base/ca/src/main/java/com/netscape/cms/profile/def/ValidityDefault.java
</a>
</li>
<li class="file-stats">
<a href="#1e2e50dae1f267f5f404c9086da223d4f129392e">
base/ca/src/main/java/com/netscape/cms/profile/def/nsNKeySubjectNameDefault.java
</a>
</li>
<li class="file-stats">
<a href="#7d29793fa8f421e6241b52b5b1b8c6c946485642">
base/ca/src/main/java/com/netscape/cms/profile/def/nsTokenUserKeySubjectNameDefault.java
</a>
</li>
<li class="file-stats">
<a href="#3ec95485f72fc8145010c0a061e7d3893eb66002">
base/ca/src/main/java/com/netscape/cms/profile/input/CMCCertReqInput.java
</a>
</li>
<li class="file-stats">
<a href="#da9b976a2c1e7fb9cbafa3b63d574c3515993227">
base/ca/src/main/java/com/netscape/cms/profile/input/CertReqInput.java
</a>
</li>
<li class="file-stats">
<a href="#3f32ac4af69ca2ca54c485215e74ec5c5dab4879">
base/ca/src/main/java/com/netscape/cms/profile/input/DualKeyGenInput.java
</a>
</li>
<li class="file-stats">
<a href="#83f9536acde6d32c06f32088ffa8cbfa0c5c4a4c">
base/ca/src/main/java/com/netscape/cms/profile/input/EncryptionKeyGenInput.java
</a>
</li>
<li class="file-stats">
<a href="#dfd30eaac40f80a183570a41750ad357a469c09a">
base/ca/src/main/java/com/netscape/cms/profile/input/EnrollInput.java
</a>
</li>
<li class="file-stats">
<a href="#0f510e179b0676fa515570ae6add4fcb7bae2285">
base/ca/src/main/java/com/netscape/cms/profile/input/FileSigningInput.java
</a>
</li>
<li class="file-stats">
<a href="#6555d9e99d0815c2177495523fdb130fe9865a64">
base/ca/src/main/java/com/netscape/cms/profile/input/GenericInput.java
</a>
</li>
<li class="file-stats">
<a href="#3b6b210fba7ff112ef418352c80fa1ec77813289">
base/ca/src/main/java/com/netscape/cms/profile/input/ImageInput.java
</a>
</li>
<li class="file-stats">
<a href="#4351c7b0340e263320d4e0a4c067eaff358ed44b">
base/ca/src/main/java/com/netscape/cms/profile/input/KeyGenInput.java
</a>
</li>
<li class="file-stats">
<a href="#d739a5502017bc3d02288a6fb535aea595448880">
<span class="new-file">
+
base/ca/src/main/java/com/netscape/cms/profile/input/RAClientAuthInfoInput.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#e99b1347682c4c28c441ff02591ac12539a353b3">
base/ca/src/main/java/com/netscape/cms/profile/input/SerialNumRenewInput.java
</a>
</li>
<li class="file-stats">
<a href="#de1b19e6f8be7a938b8843b509e2e41d97388d6e">
base/ca/src/main/java/com/netscape/cms/profile/input/ServerKeygenInput.java
</a>
</li>
<li class="file-stats">
<a href="#5dbe5f6c53f0126b8b1570a6c4b8080197c56db9">
base/ca/src/main/java/com/netscape/cms/profile/input/SigningKeyGenInput.java
</a>
</li>
<li class="file-stats">
<a href="#b800736991cb95b98798e7bffdc953fdd0a8b450">
base/ca/src/main/java/com/netscape/cms/profile/input/SubjectAltNameExtInput.java
</a>
</li>
<li class="file-stats">
<a href="#cf105707ff9356e55e1543ff8003131dae06f42e">
base/ca/src/main/java/com/netscape/cms/profile/input/SubjectDNInput.java
</a>
</li>
<li class="file-stats">
<a href="#507855d6cd61b6faf27bd9be4053da4843f8946f">
base/ca/src/main/java/com/netscape/cms/profile/input/SubjectNameInput.java
</a>
</li>
<li class="file-stats">
<a href="#71e10e8b72e7a760b70b080fcc5ab064b1b51138">
base/ca/src/main/java/com/netscape/cms/profile/input/SubmitterInfoInput.java
</a>
</li>
<li class="file-stats">
<a href="#4d2d105773781e0fb6d736311ffc8b9f554d0e22">
base/ca/src/main/java/com/netscape/cms/profile/input/nsHKeyCertReqInput.java
</a>
</li>
<li class="file-stats">
<a href="#abf1922bc7228dffbd3035061f1a4c033eebd8ed">
base/ca/src/main/java/com/netscape/cms/profile/input/nsNKeyCertReqInput.java
</a>
</li>
<li class="file-stats">
<a href="#85de12515d7c1d50561a4722ee0b9704155a3276">
base/ca/src/main/java/com/netscape/cms/profile/output/CMMFOutput.java
</a>
</li>
<li class="file-stats">
<a href="#69396b14bff0c926916045aff5841dc4f134d3a5">
base/ca/src/main/java/com/netscape/cms/profile/output/CertOutput.java
</a>
</li>
<li class="file-stats">
<a href="#ad63adcf3773ba4c361ca5dd9c1aa3ead69d2726">
base/ca/src/main/java/com/netscape/cms/profile/output/EnrollOutput.java
</a>
</li>
<li class="file-stats">
<a href="#f4b71df00dd84080c8c343b7dba19cba2c69d0ed">
base/ca/src/main/java/com/netscape/cms/profile/output/PKCS7Output.java
</a>
</li>
<li class="file-stats">
<a href="#743138ff4fe46969b416be89f28be23a8960c602">
base/ca/src/main/java/com/netscape/cms/profile/output/nsNKeyOutput.java
</a>
</li>
<li class="file-stats">
<a href="#aad7690bf4c98ff2c701ab2e938a6b5f764c4167">
base/ca/src/main/java/com/netscape/cms/publish/mappers/AVAPattern.java
</a>
</li>
<li class="file-stats">
<a href="#31b26ba240f614ea19859d67353af51873e7ac6b">
base/ca/src/main/java/com/netscape/cms/publish/mappers/LdapCaSimpleMap.java
</a>
</li>
<li class="file-stats">
<a href="#d61990038b73056bd2091df77ae960f3e63aa4a0">
base/ca/src/main/java/com/netscape/cms/publish/mappers/LdapCertCompsMap.java
</a>
</li>
<li class="file-stats">
<a href="#27720ca57ea22fbaca536caabe69637aec46d95a">
base/ca/src/main/java/com/netscape/cms/publish/mappers/LdapCertExactMap.java
</a>
</li>
<li class="file-stats">
<a href="#cb02dec316c636726feeb31564a83eb8de8d6b04">
base/ca/src/main/java/com/netscape/cms/publish/mappers/LdapCertSubjMap.java
</a>
</li>
<li class="file-stats">
<a href="#50e8119e1975980cec7f829a1b40616f54d58113">
base/ca/src/main/java/com/netscape/cms/publish/mappers/LdapCrlIssuerCompsMap.java
</a>
</li>
<li class="file-stats">
<a href="#657868598ac61c164c58f9fa411572ce03c3539d">
base/ca/src/main/java/com/netscape/cms/publish/mappers/LdapDNCompsMap.java
</a>
</li>
<li class="file-stats">
<a href="#36768c565c440019874f9f366e821d1d2449d4b5">
base/ca/src/main/java/com/netscape/cms/publish/mappers/LdapEnhancedMap.java
</a>
</li>
<li class="file-stats">
<a href="#f72834ea379c4d22d0b69f0453faf3ca10ea88b1">
base/ca/src/main/java/com/netscape/cms/publish/mappers/LdapSimpleMap.java
</a>
</li>
<li class="file-stats">
<a href="#9bf18f705dd330e9e810547b88c42f52e7e6263c">
base/ca/src/main/java/com/netscape/cms/publish/mappers/MapAVAPattern.java
</a>
</li>
<li class="file-stats">
<a href="#4cd76377e99e437a7b79a52bd6d50d5a0b9ef70f">
base/ca/src/main/java/com/netscape/cms/publish/mappers/MapDNPattern.java
</a>
</li>
<li class="file-stats">
<a href="#6a3ab3008f13f8ac9e517b13e0fdd8dd7a4d8329">
base/ca/src/main/java/com/netscape/cms/publish/mappers/MapRDNPattern.java
</a>
</li>
<li class="file-stats">
<a href="#fe0286f706c7a996c9348fde0fce548ae9311a06">
base/ca/src/main/java/com/netscape/cms/publish/mappers/NoMap.java
</a>
</li>
<li class="file-stats">
<a href="#5289e475f5d6e9bab9a709c5b7952094f5c73326">
base/ca/src/main/java/com/netscape/cms/publish/publishers/FileBasedPublisher.java
</a>
</li>
<li class="file-stats">
<a href="#c2d91b0900133c48310c639d1290b0bdcfb189bf">
base/ca/src/main/java/com/netscape/cms/publish/publishers/LdapCaCertPublisher.java
</a>
</li>
<li class="file-stats">
<a href="#5fe547ca679e3cedcc3157dad30063d4c578b827">
base/ca/src/main/java/com/netscape/cms/publish/publishers/LdapCertSubjPublisher.java
</a>
</li>
<li class="file-stats">
<a href="#a6c047509dc6d6ad5c42a2b3cd5b92e4884a58fc">
base/ca/src/main/java/com/netscape/cms/publish/publishers/LdapCertificatePairPublisher.java
</a>
</li>
<li class="file-stats">
<a href="#dc61ef86da5ddb9007c24aac54b39b06f58aff05">
base/ca/src/main/java/com/netscape/cms/publish/publishers/LdapCrlPublisher.java
</a>
</li>
<li class="file-stats">
<a href="#1107e574ecab9416b9e94537d2818538a3eb0144">
base/ca/src/main/java/com/netscape/cms/publish/publishers/LdapEncryptCertPublisher.java
</a>
</li>
<li class="file-stats">
<a href="#dfee9fb1ede10ec03c8324acfc259eabe7fbb292">
base/ca/src/main/java/com/netscape/cms/publish/publishers/LdapUserCertPublisher.java
</a>
</li>
<li class="file-stats">
<a href="#cbe99492b655fb2c8cd15d14bc9941a6c2506dc5">
base/ca/src/main/java/com/netscape/cms/publish/publishers/OCSPPublisher.java
</a>
</li>
<li class="file-stats">
<a href="#183fac3ba8e65cda900ce817da7b7b1cfb971821">
base/ca/src/main/java/com/netscape/cms/selftests/ca/CAPresence.java
</a>
</li>
<li class="file-stats">
<a href="#0ff906eb4649391d5b3ccd9796451423305cf892">
base/ca/src/main/java/com/netscape/cms/selftests/ca/CAValidity.java
</a>
</li>
<li class="file-stats">
<a href="#e2a002a8cbfa614306cac5c82ec70ffbcd783518">
base/ca/src/main/java/com/netscape/cms/servlet/admin/CAAdminServlet.java
</a>
</li>
<li class="file-stats">
<a href="#c402e052961f8a6f1f6ae78c94b90d105f46b489">
base/ca/src/main/java/com/netscape/cms/servlet/admin/CAPolicyAdminServlet.java
</a>
</li>
<li class="file-stats">
<a href="#348c34099962388e3dab27815dbd55c10315469b">
base/ca/src/main/java/com/netscape/cms/servlet/admin/ProfileAdminServlet.java
</a>
</li>
<li class="file-stats">
<a href="#aad0f94a47d21e6dbe769fc6f08399b146dea444">
base/ca/src/main/java/com/netscape/cms/servlet/admin/PublisherAdminServlet.java
</a>
</li>
<li class="file-stats">
<a href="#835cf850d12b2eda3a1453a956df7bc77920fb9b">
<span class="new-file">
+
base/ca/src/main/java/com/netscape/cms/servlet/base/CADynamicVariables.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#e961ed294e4e2190a3679a65a03d9974f6a0bf57">
<span class="new-file">
+
base/ca/src/main/java/com/netscape/cms/servlet/base/CADynamicVariablesAdmin.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#a540dbbd048bf977571813d6817e23bd0df379e9">
<span class="new-file">
+
base/ca/src/main/java/com/netscape/cms/servlet/base/CADynamicVariablesAgent.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#2339c039103cf474f4e7d87df8b7c2ef34bb7a67">
<span class="new-file">
+
base/ca/src/main/java/com/netscape/cms/servlet/base/CAListRequests.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#f567d663dee3e67062e81f87854eff759010c7b5">
<span class="new-file">
+
base/ca/src/main/java/com/netscape/cms/servlet/base/CAPortsServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#a1f40ad5312074acc9af592cce86fc0cb6c1ab6d">
<span class="new-file">
+
base/ca/src/main/java/com/netscape/cms/servlet/base/QueryBySerial.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#4d8fed62fd46688e913bfc4098f022210aa5f7bc">
<span class="new-file">
+
base/ca/src/main/java/com/netscape/cms/servlet/base/SearchCert.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#d913c2ca55a2f6cd763f07b9b9194a45c7fb8a5c">
<span class="new-file">
+
base/ca/src/main/java/com/netscape/cms/servlet/base/SearchRevokeCert.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#1f8531e25ff68fda89e92a6ae819f0ecdbccd73c">
<span class="new-file">
+
base/ca/src/main/java/com/netscape/cms/servlet/base/UpdateDirectory.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#e743284e05996ad72223c34ca5e15f1448bb387c">
base/ca/src/main/java/com/netscape/cms/servlet/cert/DisplayBySerial.java
→
base/ca/src/main/java/com/netscape/cms/servlet/cert/CADisplayBySerial.java
</a>
</li>
<li class="file-stats">
<a href="#6120d37269e066e2bc7eec8d7e74506bc0fca1d5">
<span class="new-file">
+
base/ca/src/main/java/com/netscape/cms/servlet/cert/CADisplayBySerialAgent.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#b25c6b8a478c1afc541fe32eea4eb6debb9ada8b">
base/ca/src/main/java/com/netscape/cms/servlet/cert/CMCRevReqServlet.java
</a>
</li>
<li class="file-stats">
<a href="#a83e220c8db51933902f3de2ececfb294557ec54">
base/ca/src/main/java/com/netscape/cms/servlet/cert/CertRequestInfoFactory.java
</a>
</li>
<li class="file-stats">
<a href="#92a6d5cd720e2eff7d1a32ef6fbd2e32d09eca79">
base/ca/src/main/java/com/netscape/cms/servlet/cert/CertReviewResponseFactory.java
</a>
</li>
<li class="file-stats">
<a href="#5f87f72a6b42c78d05b8af13f0868f133e0eca8d">
base/ca/src/main/java/com/netscape/cms/servlet/cert/ChallengeRevocationServlet1.java
</a>
</li>
<li class="file-stats">
<a href="#1a4000fc4eefb15f8655e22b155cd1ed44bbdf20">
base/ca/src/main/java/com/netscape/cms/servlet/cert/DisplayCRL.java
</a>
</li>
<li class="file-stats">
<a href="#54d95a07ed2fbcff38fea9620f9abc408249b247">
base/ca/src/main/java/com/netscape/cms/servlet/cert/DoRevoke.java
</a>
</li>
<li class="file-stats">
<a href="#0b9158c2c93e5f907c32298dfe8fd2fafafcdb99">
<span class="new-file">
+
base/ca/src/main/java/com/netscape/cms/servlet/cert/DoRevokeAgent.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#4555fcd94c0a15548856c8517d0354c9be297d37">
base/ca/src/main/java/com/netscape/cms/servlet/cert/EnrollServlet.java
</a>
</li>
<li class="file-stats">
<a href="#51fa890a32e1050bb5b99e2921ebeaf1a709e01f">
base/ca/src/main/java/com/netscape/cms/servlet/cert/GetCAChain.java
</a>
</li>
<li class="file-stats">
<a href="#8228a38e58808260a10e672b3b567648068cb53a">
base/ca/src/main/java/com/netscape/cms/servlet/cert/GetCRL.java
</a>
</li>
<li class="file-stats">
<a href="#d1851f4875f0567a2d80d7f95ab75f1e7c644b6d">
base/ca/src/main/java/com/netscape/cms/servlet/cert/GetInfo.java
</a>
</li>
<li class="file-stats">
<a href="#3095e0be4f51f39edea029bfa59b54232a646eaa">
base/ca/src/main/java/com/netscape/cms/servlet/cert/HashEnrollServlet.java
</a>
</li>
<li class="file-stats">
<a href="#8732e0ae1e3e75838f5ff48ea7f6af4b15e66844">
base/ca/src/main/java/com/netscape/cms/servlet/cert/ImportCertsTemplateFiller.java
</a>
</li>
<li class="file-stats">
<a href="#fe1add17cc5c84c1290b6fdef6ad61c426b6d740">
base/ca/src/main/java/com/netscape/cms/servlet/cert/ListCerts.java
</a>
</li>
<li class="file-stats">
<a href="#72dc50982c9ddf7f3416a1bbb39e0cfae70300bc">
<span class="new-file">
+
base/ca/src/main/java/com/netscape/cms/servlet/cert/MasterCAGetInfo.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#528d3d53cdb5194a1b6bfb46a1a0f70be3fdcab5">
base/ca/src/main/java/com/netscape/cms/servlet/cert/Monitor.java
</a>
</li>
<li class="file-stats">
<a href="#c9c4aaa943c5d8612d89efd3d9b2336b9152204b">
base/ca/src/main/java/com/netscape/cms/servlet/cert/RenewalServlet.java
</a>
</li>
<li class="file-stats">
<a href="#9ad7b132d7515fdc973bd739d75af8c595550d3d">
base/ca/src/main/java/com/netscape/cms/servlet/cert/SrchCerts.java
</a>
</li>
<li class="file-stats">
<a href="#18e66b9ac113f12ec6c7a421d470c43f645926be">
base/ca/src/main/java/com/netscape/cms/servlet/cert/UpdateCRL.java
</a>
</li>
<li class="file-stats">
<a href="#583daba15fd4bdcd48485ffc625a3150ecc2bd15">
base/ca/src/main/java/com/netscape/cms/servlet/cert/UpdateDir.java
</a>
</li>
<li class="file-stats">
<a href="#a8802dde975e4f403aabd0b8a0fc1b3dbcd53353">
base/ca/src/main/java/com/netscape/cms/servlet/cert/scep/CRSEnrollment.java
</a>
</li>
<li class="file-stats">
<a href="#01b77992c7fe4d465d20af709eca75aa8ce95347">
<span class="new-file">
+
base/ca/src/main/java/com/netscape/cms/servlet/cert/scep/SCEPConfig.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#53eb1ca8b7eede8ba6c9eb6f6475bf1f21fa2e38">
base/ca/src/main/java/com/netscape/cms/servlet/common/CMCOutputTemplate.java
</a>
</li>
<li class="file-stats">
<a href="#ce78b9de2152d50a1d1dfde26859ba66a8c9ed4f">
base/ca/src/main/java/com/netscape/cms/servlet/connector/KRAConnectorServlet.java
→
base/ca/src/main/java/com/netscape/cms/servlet/connector/CAConnectorServlet.java
</a>
</li>
<li class="file-stats">
<a href="#739897bf71127f9e94f179680cf11986a8c7bfa6">
base/ca/src/main/java/com/netscape/cms/servlet/csadmin/BootstrapProfile.java
</a>
</li>
<li class="file-stats">
<a href="#0639e4228a501a259b6dbdf68efb6ba172d0b36b">
<span class="new-file">
+
base/ca/src/main/java/com/netscape/cms/servlet/csadmin/CAGetCookie.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#5cb0cad55033d08bd778aeec49ea994b38bd191f">
base/server/src/main/java/com/netscape/cmscore/request/RequestList.java
→
base/ca/src/main/java/com/netscape/cms/servlet/ocsp/CAOCSPServlet.java
</a>
</li>
<li class="file-stats">
<a href="#ea5fdeab099759a0e6a5fd81ec8d1cf6128dec5a">
<span class="new-file">
+
base/ca/src/main/java/com/netscape/cms/servlet/profile/ProfileListAgentServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#c220eb8fcc7d3e0e0d5890f5a570d14ded208b5a">
base/ca/src/main/java/com/netscape/cms/servlet/profile/ProfileListServlet.java
</a>
</li>
<li class="file-stats">
<a href="#9361442920c116c202f828de49abbc02058654f9">
base/ca/src/main/java/com/netscape/cms/servlet/profile/ProfileReviewServlet.java
</a>
</li>
<li class="file-stats">
<a href="#1e4b6dd476cab42167d80a5222ceb3c5853bce24">
<span class="new-file">
+
base/ca/src/main/java/com/netscape/cms/servlet/profile/ProfileSubmitCMCFullAuditSigningServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#7b5d541bf6c5c8204d4233414bcbcb334c5df9d3">
<span class="new-file">
+
base/ca/src/main/java/com/netscape/cms/servlet/profile/ProfileSubmitCMCFullCAServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#3a3ca561688a3c96897b534cd34db519d437ecce">
<span class="new-file">
+
base/ca/src/main/java/com/netscape/cms/servlet/profile/ProfileSubmitCMCFullKRAStorageServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#000cbcdf7c9a33df087318a4dc1799dea5bd9379">
<span class="new-file">
+
base/ca/src/main/java/com/netscape/cms/servlet/profile/ProfileSubmitCMCFullKRATransportServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#1c8a111e54f4e6a84f47c9c90cda10d1099ff005">
<span class="new-file">
+
base/ca/src/main/java/com/netscape/cms/servlet/profile/ProfileSubmitCMCFullOCSPServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#3b0ab5079f0f8a34ed1732e3951edb21259c5a13">
<span class="new-file">
+
base/ca/src/main/java/com/netscape/cms/servlet/profile/ProfileSubmitCMCFullServerServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#b421fd417374b0239c04ec7a09d31a11d083ec95">
<span class="new-file">
+
base/ca/src/main/java/com/netscape/cms/servlet/profile/ProfileSubmitCMCFullServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#c82062ed63517e358d4cda19a5eaf6167101daeb">
<span class="new-file">
+
base/ca/src/main/java/com/netscape/cms/servlet/profile/ProfileSubmitCMCFullSubsystemServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#25b5f51f5dfda97dc8dc42345ae7487523874e80">
base/ca/src/main/java/com/netscape/cms/servlet/profile/ProfileSubmitCMCServlet.java
</a>
</li>
<li class="file-stats">
<a href="#f729646b31420d6bd4128065f0922e6a27121d5a">
<span class="new-file">
+
base/ca/src/main/java/com/netscape/cms/servlet/profile/ProfileSubmitCMCSimpleServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#63ae17770a2e2033975378506b518b2ffaf4e218">
<span class="new-file">
+
base/ca/src/main/java/com/netscape/cms/servlet/profile/ProfileSubmitSelfSignedCMCFullServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#1b59b550ce3074e38600f0249a99c00e451c3b9c">
<span class="new-file">
+
base/ca/src/main/java/com/netscape/cms/servlet/profile/ProfileSubmitUserSignedCMCFullServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#6fdca07293f3109d17f8d108e29d320571d4d4b2">
base/ca/src/main/java/com/netscape/cms/servlet/request/CertReqParser.java
</a>
</li>
<li class="file-stats">
<a href="#7d11892fb9382442ab3714c3fdffc705a5494bbe">
base/ca/src/main/java/com/netscape/cms/servlet/request/ProcessCertReq.java
</a>
</li>
<li class="file-stats">
<a href="#7b8f38a0442430202de1e0f69408ff9143ca7e44">
base/ca/src/main/java/com/netscape/cmscore/cert/CrlCachePrettyPrint.java
</a>
</li>
<li class="file-stats">
<a href="#6b7faa5cad8a720bc3bb7d0cc992a28c8e7fa41d">
base/ca/src/main/java/com/netscape/cmscore/cert/CrossCertPairSubsystem.java
</a>
</li>
<li class="file-stats">
<a href="#5b377489d8958fd2b0ff00bb15e66389c117f29e">
base/ca/src/main/java/com/netscape/cmscore/connector/LocalConnector.java
</a>
</li>
<li class="file-stats">
<a href="#300f4b4a947e38ac64a2e7a32e6e42108bbd5229">
base/ca/src/main/java/com/netscape/cmscore/dbs/CRLRepository.java
</a>
</li>
<li class="file-stats">
<a href="#7691026fda82d06e28aea4d835063633524e35b4">
base/ca/src/main/java/com/netscape/cmscore/dbs/CertRecordMapper.java
</a>
</li>
<li class="file-stats">
<a href="#f55e7cb82de08f30d626d8be568ea766301df20c">
base/ca/src/main/java/com/netscape/cmscore/dbs/CertStatusUpdateTask.java
</a>
</li>
<li class="file-stats">
<a href="#0b50e4ca596a796dff24a268fe1327a4bd5f36cc">
base/ca/src/main/java/com/netscape/cmscore/dbs/CertificateRepository.java
</a>
</li>
<li class="file-stats">
<a href="#3613852a418ba7a0cb1b2f1a3c299c856c98f843">
base/ca/src/main/java/com/netscape/cmscore/dbs/SerialNumberUpdateTask.java
</a>
</li>
<li class="file-stats">
<a href="#0a4616c6415dec05bdb3a82cd92dbf70136c0bae">
base/ca/src/main/java/com/netscape/cmscore/ldap/CAPublisherProcessor.java
</a>
</li>
<li class="file-stats">
<a href="#3975bfe3e545afe6e16a5521b01a06744aeb9ae1">
<span class="new-file">
+
base/ca/src/main/java/com/netscape/cmscore/ldap/LDAPPublishingConfig.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#79f1443d508b2a2364ffc71db90dc592c3d29e3c">
base/ca/src/main/java/com/netscape/cmscore/ldap/LdapAndExpression.java
</a>
</li>
<li class="file-stats">
<a href="#20204e590bd078c79087276b2a75492dace99dec">
base/ca/src/main/java/com/netscape/cmscore/ldap/LdapConnModule.java
</a>
</li>
<li class="file-stats">
<a href="#fe72881f6bef5323e118cb8ae672129033469c38">
base/ca/src/main/java/com/netscape/cmscore/ldap/LdapEnrollmentListener.java
</a>
</li>
<li class="file-stats">
<a href="#f16d1ead634d550a304098b3b75177b8c748ab10">
base/ca/src/main/java/com/netscape/cmscore/ldap/LdapExpression.java
</a>
</li>
<li class="file-stats">
<a href="#189b5c3e95d92204257b5c7a9dbe23912da10de1">
base/ca/src/main/java/com/netscape/cmscore/ldap/LdapOrExpression.java
</a>
</li>
<li class="file-stats">
<a href="#1a75884ad1e2a73870fe8a8a18b35235da625da0">
base/ca/src/main/java/com/netscape/cmscore/ldap/LdapPredicateParser.java
</a>
</li>
<li class="file-stats">
<a href="#bc79aa153823819ff21e7f3d3c43675e04261dd4">
base/ca/src/main/java/com/netscape/cmscore/ldap/LdapPublishModule.java
</a>
</li>
<li class="file-stats">
<a href="#2eac6a0d4169d6d4ee216e580951ae4f3624d236">
base/ca/src/main/java/com/netscape/cmscore/ldap/LdapRenewalListener.java
</a>
</li>
<li class="file-stats">
<a href="#98b23c713a278c238a2d8bb690a58de49771e7a8">
base/ca/src/main/java/com/netscape/cmscore/ldap/LdapRevocationListener.java
</a>
</li>
<li class="file-stats">
<a href="#da09b5afba9ce2bd1fc13ee1751da5dd2179be0e">
base/ca/src/main/java/com/netscape/cmscore/ldap/LdapSimpleExpression.java
</a>
</li>
<li class="file-stats">
<a href="#0b56c80b1aa364b5282d8b016609d3251b9ac484">
base/ca/src/main/java/com/netscape/cmscore/ldap/LdapUnrevocationListener.java
</a>
</li>
<li class="file-stats">
<a href="#1e05578acc0103e8fc2a38855fd0e178c0c03117">
base/ca/src/main/java/com/netscape/cmscore/ldap/PublisherProcessor.java
</a>
</li>
<li class="file-stats">
<a href="#8e65f8eb931cf2c9a03d0282709314a00a78330b">
base/ca/src/main/java/com/netscape/cmscore/ldap/PublishingConfig.java
</a>
</li>
<li class="file-stats">
<a href="#2c378c5007b850963d9ba6da03a5b75bdc002bb8">
base/ca/src/main/java/com/netscape/cmscore/ldap/PublishingPublisherConfig.java
</a>
</li>
<li class="file-stats">
<a href="#2784da94661956f43b2b644a875b86b1702b3662">
<span class="new-file">
+
base/ca/src/main/java/com/netscape/cmscore/ldap/PublishingPublisherInstancesConfig.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#a3c9f4d5d15b6cb84a08f4edbba79b43fabeaf92">
<span class="new-file">
+
base/ca/src/main/java/com/netscape/cmscore/ldap/PublishingPublisherPluginsConfig.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#c49ede95ef94b2fa8fcb5146306f62c461f0b371">
<span class="new-file">
+
base/ca/src/main/java/com/netscape/cmscore/ldap/PublishingQueueConfig.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#a5bba0cb2efb5800d254b2d2a11fec154e6c4e22">
base/server/src/main/java/com/netscape/cmscore/notification/ReqCertEmailResolver.java
→
base/ca/src/main/java/com/netscape/cmscore/notification/ReqCertEmailResolver.java
</a>
</li>
<li class="file-stats">
<a href="#4356ee5fc1c01b1fe3b498b74311e020e7b4ea2d">
base/ca/src/main/java/com/netscape/cmscore/notification/ReqCertSANameEmailResolver.java
</a>
</li>
<li class="file-stats">
<a href="#4815314313bb0f1625cda85b5dd74cc6b3ff4915">
base/ca/src/main/java/com/netscape/cmscore/profile/LDAPProfileSubsystem.java
</a>
</li>
<li class="file-stats">
<a href="#7797939df750de5b14238d254c549a8cc958ef17">
base/ca/src/main/java/com/netscape/cmscore/request/CertRequestRepository.java
</a>
</li>
<li class="file-stats">
<a href="#fbd03807f2d732fb7bfeda03bea5b3872d5ad30d">
base/ca/src/main/java/org/dogtagpki/ct/CTEngine.java
</a>
</li>
<li class="file-stats">
<a href="#bf30f06ad7e3e31d195e3cf2754e17f63af80d47">
base/ca/src/main/java/org/dogtagpki/legacy/ca/CAPolicy.java
</a>
</li>
<li class="file-stats">
<a href="#b05814fdb83fa5ee00b27ef6c79d2a9e1f128b49">
base/ca/src/main/java/com/netscape/cms/profile/common/ProfilePoliciesConfig.java
→
base/ca/src/main/java/org/dogtagpki/legacy/ca/CAPolicyConfig.java
</a>
</li>
<li class="file-stats">
<a href="#a9f580fec9eca66a0a898a0046a1b1a5802a6caf">
base/ca/src/main/java/org/dogtagpki/legacy/server/policy/constraints/AgentPolicy.java
</a>
</li>
<li class="file-stats">
<a href="#7c0b386fe9351532fb9c1c8e3a73112c324982d5">
base/ca/src/main/java/org/dogtagpki/legacy/server/policy/constraints/AttributePresentConstraints.java
</a>
</li>
<li class="file-stats">
<a href="#59609f79ec7902496694a834a84687340bab0b17">
base/ca/src/main/java/org/dogtagpki/legacy/server/policy/constraints/DSAKeyConstraints.java
</a>
</li>
<li class="file-stats">
<a href="#96907f74cc6cdf1a7f42663b07168a19393aea59">
base/ca/src/main/java/org/dogtagpki/legacy/server/policy/constraints/IssuerConstraints.java
</a>
</li>
<li class="file-stats">
<a href="#d5eec51ad2dc1e23e2d134a62ca21d60052a04e5">
base/ca/src/main/java/org/dogtagpki/legacy/server/policy/constraints/KeyAlgorithmConstraints.java
</a>
</li>
<li class="file-stats">
<a href="#64107ee1d69238175979c28aa48c0af6abd37316">
base/ca/src/main/java/org/dogtagpki/legacy/server/policy/constraints/RSAKeyConstraints.java
</a>
</li>
<li class="file-stats">
<a href="#a164c0cbd7865349e4b48ed677bf1db5ef8544d5">
base/ca/src/main/java/org/dogtagpki/legacy/server/policy/constraints/RenewalConstraints.java
</a>
</li>
<li class="file-stats">
<a href="#58ecc6f131979748d9298c5283d685654290eecb">
base/ca/src/main/java/org/dogtagpki/legacy/server/policy/constraints/RenewalValidityConstraints.java
</a>
</li>
<li class="file-stats">
<a href="#333d69f3c09963ae3c5e767995e578b6e674eea0">
base/ca/src/main/java/org/dogtagpki/legacy/server/policy/constraints/RevocationConstraints.java
</a>
</li>
<li class="file-stats">
<a href="#1d28b8c5fe9bb0685c62e8db4acf0ab12f765be6">
base/ca/src/main/java/org/dogtagpki/legacy/server/policy/constraints/SigningAlgorithmConstraints.java
</a>
</li>
<li class="file-stats">
<a href="#f8bd1f8efbf1b92fbb0bd9dbc9a8f6bd92370655">
base/ca/src/main/java/org/dogtagpki/legacy/server/policy/constraints/SubCANameConstraints.java
</a>
</li>
<li class="file-stats">
<a href="#3d674fdd89fe4bde0e4c3db1fede8b3e034694f9">
base/ca/src/main/java/org/dogtagpki/legacy/server/policy/constraints/UniqueSubjectNameConstraints.java
</a>
</li>
<li class="file-stats">
<a href="#616fee35b8e776ae865aca9398bd484cb2ace231">
base/ca/src/main/java/org/dogtagpki/legacy/server/policy/constraints/ValidityConstraints.java
</a>
</li>
<li class="file-stats">
<a href="#60b7cdbce8f545634c552d34e5cbdb0747a27517">
base/ca/src/main/java/org/dogtagpki/legacy/server/policy/extensions/AuthInfoAccessExt.java
</a>
</li>
<li class="file-stats">
<a href="#c53772c49f4b9f272bbfc240bf403001c1a4f6ab">
base/ca/src/main/java/org/dogtagpki/legacy/server/policy/extensions/AuthorityKeyIdentifierExt.java
</a>
</li>
<li class="file-stats">
<a href="#e68ddad0eaea02f25db2f6e2503ecb89594ff715">
base/ca/src/main/java/org/dogtagpki/legacy/server/policy/extensions/BasicConstraintsExt.java
</a>
</li>
<li class="file-stats">
<a href="#d62a040c951817a9de41222602a1aa06b66d28dc">
base/ca/src/main/java/org/dogtagpki/legacy/server/policy/extensions/CRLDistributionPointsExt.java
</a>
</li>
<li class="file-stats">
<a href="#1752a047f471c190cdd9819f74a17d4c8ef59730">
base/ca/src/main/java/org/dogtagpki/legacy/server/policy/extensions/CertificatePoliciesExt.java
</a>
</li>
<li class="file-stats">
<a href="#3ddd3a502b72793595147b4477b74886dd6ec11c">
base/ca/src/main/java/org/dogtagpki/legacy/server/policy/extensions/CertificateRenewalWindowExt.java
</a>
</li>
<li class="file-stats">
<a href="#15befeaed0475a94f4ed2fb32856e38b9a3f3f7e">
base/ca/src/main/java/org/dogtagpki/legacy/server/policy/extensions/CertificateScopeOfUseExt.java
</a>
</li>
<li class="file-stats">
<a href="#e8d2ba1ab8efa888ba0c22b6c50b604bc6669ac3">
base/ca/src/main/java/org/dogtagpki/legacy/server/policy/extensions/ExtendedKeyUsageExt.java
</a>
</li>
<li class="file-stats">
<a href="#284594f20634f47ed4b5cdc26c3a7bdcc38e92ba">
base/ca/src/main/java/org/dogtagpki/legacy/server/policy/extensions/GenericASN1Ext.java
</a>
</li>
<li class="file-stats">
<a href="#4074cc19e36589bd7531098c771025eccc82bf1d">
base/ca/src/main/java/org/dogtagpki/legacy/server/policy/extensions/IssuerAltNameExt.java
</a>
</li>
<li class="file-stats">
<a href="#ce304acf610de97084554ad9d6de203148f2f0ab">
base/ca/src/main/java/org/dogtagpki/legacy/server/policy/extensions/KeyUsageExt.java
</a>
</li>
<li class="file-stats">
<a href="#83214f36c977fe40501fc0744006600358baae7c">
base/ca/src/main/java/org/dogtagpki/legacy/server/policy/extensions/NSCCommentExt.java
</a>
</li>
<li class="file-stats">
<a href="#f4ff17423828907ea8efc965527d0a3339369857">
base/ca/src/main/java/org/dogtagpki/legacy/server/policy/extensions/NSCertTypeExt.java
</a>
</li>
<li class="file-stats">
<a href="#fbf9348faa670442f443229b99e51b8602ddb4b0">
base/ca/src/main/java/org/dogtagpki/legacy/server/policy/extensions/NameConstraintsExt.java
</a>
</li>
<li class="file-stats">
<a href="#534a7363c8aec039a726fed3ea49ffc89c834a04">
base/ca/src/main/java/org/dogtagpki/legacy/server/policy/extensions/OCSPNoCheckExt.java
</a>
</li>
<li class="file-stats">
<a href="#58472b46566fb097b481f150fc5f6520b54fb59b">
base/ca/src/main/java/org/dogtagpki/legacy/server/policy/extensions/PolicyConstraintsExt.java
</a>
</li>
<li class="file-stats">
<a href="#6d06a6d5b838c23366a77db7d9961394fce18358">
base/ca/src/main/java/org/dogtagpki/legacy/server/policy/extensions/PolicyMappingsExt.java
</a>
</li>
<li class="file-stats">
<a href="#f0b3945ef6dfee9e056b6f25e434be2d4115705f">
base/ca/src/main/java/org/dogtagpki/legacy/server/policy/extensions/PresenceExt.java
</a>
</li>
<li class="file-stats">
<a href="#db321da91761b86326657dd66417f49ac24a5b3a">
base/ca/src/main/java/org/dogtagpki/legacy/server/policy/extensions/PrivateKeyUsagePeriodExt.java
</a>
</li>
<li class="file-stats">
<a href="#e94a3835fa15803ee1063fc9ed70f1651208cd2b">
base/ca/src/main/java/org/dogtagpki/legacy/server/policy/extensions/RemoveBasicConstraintsExt.java
</a>
</li>
<li class="file-stats">
<a href="#eab4acdf23dc4f935a4425b07af7a37bcb477526">
base/ca/src/main/java/org/dogtagpki/legacy/server/policy/extensions/SubjAltNameExt.java
</a>
</li>
<li class="file-stats">
<a href="#3d7c8eef617b8cb26a73a99e03394fa4f835221e">
base/ca/src/main/java/org/dogtagpki/legacy/server/policy/extensions/SubjectAltNameExt.java
</a>
</li>
<li class="file-stats">
<a href="#ab054687e141dc3587e0f97ef1c0f430988dc963">
base/ca/src/main/java/org/dogtagpki/legacy/server/policy/extensions/SubjectDirectoryAttributesExt.java
</a>
</li>
<li class="file-stats">
<a href="#fcfbf1c1aebb0cbb8a429827cbc750f96f25d888">
base/ca/src/main/java/org/dogtagpki/legacy/server/policy/extensions/SubjectKeyIdentifierExt.java
</a>
</li>
<li class="file-stats">
<a href="#50197534ff6a9b4a2983ce3afa837aef9132eb8d">
<span class="new-file">
+
base/ca/src/main/java/org/dogtagpki/server/ca/AuthorityRecord.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#e7e39761343761f710f2386a08a21bd462a21f90">
base/ca/src/main/java/org/dogtagpki/server/ca/CAConfig.java
</a>
</li>
<li class="file-stats">
<a href="#c713f3b6b7f86fe980d397af7e29cf98c6ce9ffb">
base/ca/src/main/java/org/dogtagpki/server/ca/CAEngine.java
</a>
</li>
<li class="file-stats">
<a href="#d939cc188f54f1c0b8b8aa9725e2439355f12d70">
base/ca/src/main/java/org/dogtagpki/server/ca/CAWebListener.java
</a>
</li>
<li class="file-stats">
<a href="#d98a48b7594a50c57a970ac383bc53f66bf902be">
base/ca/src/main/java/org/dogtagpki/server/ca/cli/CACLI.java
</a>
</li>
<li class="file-stats">
<a href="#b5169db2666c0a86e4d521ec12f32b65fdebab07">
<span class="new-file">
+
base/ca/src/main/java/org/dogtagpki/server/ca/cli/CACRLCLI.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#b79678e4321256f726563774e37100155f0873c2">
<span class="new-file">
+
base/ca/src/main/java/org/dogtagpki/server/ca/cli/CACRLRecordCLI.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#9e96fe5077a127e1ca01207499b024c412f8b55b">
<span class="new-file">
+
base/ca/src/main/java/org/dogtagpki/server/ca/cli/CACRLRecordCertCLI.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#7a37acbb716cc99b15e05d82eba5e8d25bc8c752">
<span class="new-file">
+
base/ca/src/main/java/org/dogtagpki/server/ca/cli/CACRLRecordCertFindCLI.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#dfce2bad700f048fcccae05186ab38ebd3044858">
<span class="new-file">
+
base/ca/src/main/java/org/dogtagpki/server/ca/cli/CACRLRecordShowCLI.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#ea9d152efb209bdcf7a50e8a4a28e952ab9bdc7a">
base/ca/src/main/java/org/dogtagpki/server/ca/cli/CACertCLI.java
</a>
</li>
<li class="file-stats">
<a href="#bc86144bdb7823a34256e2cfc4af6510bc4682f3">
base/ca/src/main/java/org/dogtagpki/server/ca/cli/CACertCreateCLI.java
</a>
</li>
<li class="file-stats">
<a href="#9f172f706221b73b7676579f0dc29610f1c80861">
base/ca/src/main/java/org/dogtagpki/server/ca/cli/CACertFindCLI.java
</a>
</li>
<li class="file-stats">
<a href="#a9c7de352b26b3bf5ffea105ab37f22a75500f97">
base/ca/src/main/java/org/dogtagpki/server/ca/cli/CACertImportCLI.java
</a>
</li>
<li class="file-stats">
<a href="#5367be449599e3d02c0cd049ad954c28fc7944ea">
base/ca/src/main/java/org/dogtagpki/server/ca/cli/CACertRemoveCLI.java
</a>
</li>
<li class="file-stats">
<a href="#dfa2c34dad22d37ab56b77ac7f072575683aefbd">
base/ca/src/main/java/org/dogtagpki/server/ca/cli/CACertRequestImportCLI.java
</a>
</li>
<li class="file-stats">
<a href="#53f095bc5970488b84c5e78af73f0f6e10d71a67">
base/ca/src/main/java/org/dogtagpki/server/ca/cli/CADBCLI.java
</a>
</li>
<li class="file-stats">
<a href="#e1bf11b829353dd057486c8afe64de8d2ffc5e20">
<span class="new-file">
+
base/ca/src/main/java/org/dogtagpki/server/ca/cli/CADBInitCLI.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#f94f1a70f480acb3b1185dbe8df20a1cb9480a28">
<span class="new-file">
+
base/ca/src/main/java/org/dogtagpki/server/ca/cli/CAIdCLI.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#552d817c52d44c8a2c8000297b0b61ba461a1b2a">
<span class="new-file">
+
base/ca/src/main/java/org/dogtagpki/server/ca/cli/CAIdGeneratorCLI.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#f0abb2e370bf7912799125ca4461b76f8c96a0d5">
<span class="new-file">
+
base/ca/src/main/java/org/dogtagpki/server/ca/cli/CAIdGeneratorUpdateCLI.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#eec1034e3f802217e95646807e6ca713a09487a3">
base/ca/src/main/java/org/dogtagpki/server/ca/cli/CAProfileImportCLI.java
</a>
</li>
<li class="file-stats">
<a href="#16f74624294f503cda6630e2d2624a04041cab06">
base/ca/src/main/java/org/dogtagpki/server/ca/cli/CARangeUpdateCLI.java
</a>
</li>
<li class="file-stats">
<a href="#f99894afa501003b755407b49d7160f50fd1e7f0">
base/ca/src/main/java/org/dogtagpki/server/ca/job/PruningJob.java
</a>
</li>
<li class="file-stats">
<a href="#3a039d9f7f24f279ffc93d7f979773c515a0b4bd">
<span class="new-file">
+
base/ca/src/main/java/org/dogtagpki/server/ca/job/SerialNumberUpdateJob.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#fa3f234304bb06a6238741f3abe0b1aaa7d4285f">
<span class="deleted-file">
−
base/ca/src/main/java/org/dogtagpki/server/ca/rest/CASecurityDomainService.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#709c62ccd9c61dced458562bc2c896c38e43eae4">
<span class="new-file">
+
base/ca/src/main/java/org/dogtagpki/server/ca/rest/base/AuthorityRepository.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#4f6b819f6167922f35a45417d28508c2ebb5b858">
<span class="new-file">
+
base/ca/src/main/java/org/dogtagpki/server/ca/rest/base/ProfileBase.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#a8c64a32128ae5e77fa8b3d15633ad8c424c07b3">
<span class="new-file">
+
base/ca/src/main/java/org/dogtagpki/server/ca/rest/v1/AgentCertRequestService.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#09305409f8786d9c584df3ad70518e9ee4daddc6">
base/ca/src/main/java/org/dogtagpki/server/ca/rest/CertService.java
→
base/ca/src/main/java/org/dogtagpki/server/ca/rest/v1/AgentCertService.java
</a>
</li>
<li class="file-stats">
<a href="#b8838331e6df00c9a1c75295b9416142787dc799">
base/ca/src/main/java/org/dogtagpki/server/ca/rest/AuthorityService.java
→
base/ca/src/main/java/org/dogtagpki/server/ca/rest/v1/AuthorityService.java
</a>
</li>
<li class="file-stats">
<a href="#763e32a73eaf995ac99267836ae61e5f4b449b2b">
base/ca/src/main/java/org/dogtagpki/server/ca/rest/CAApplication.java
→
base/ca/src/main/java/org/dogtagpki/server/ca/rest/v1/CAApplication.java
</a>
</li>
<li class="file-stats">
<a href="#6de8e77b0263e497510c71f652bfa903161348bd">
base/server/src/main/java/org/dogtagpki/server/rest/InfoService.java
→
base/ca/src/main/java/org/dogtagpki/server/ca/rest/v1/CAInfoService.java
</a>
</li>
<li class="file-stats">
<a href="#4869cb80776e67eb560098c736af73aadfe90a90">
base/ca/src/main/java/org/dogtagpki/server/ca/rest/CAInstallerService.java
→
base/ca/src/main/java/org/dogtagpki/server/ca/rest/v1/CAInstallerService.java
</a>
</li>
<li class="file-stats">
<a href="#a80f07bc9e2e828f47f3801d3951c2024c351f70">
base/ca/src/main/java/org/dogtagpki/server/ca/rest/CASystemCertService.java
→
base/ca/src/main/java/org/dogtagpki/server/ca/rest/v1/CASystemCertService.java
</a>
</li>
<li class="file-stats">
<a href="#75d18c074234adc7c9a0e76645135bb9c3bbb990">
base/ca/src/main/java/org/dogtagpki/server/ca/rest/CertRequestDAO.java
→
base/ca/src/main/java/org/dogtagpki/server/ca/rest/v1/CertRequestDAO.java
</a>
</li>
<li class="file-stats">
<a href="#56e3877fdfacdb10734e6cb8842fa858cdd3d317">
base/ca/src/main/java/org/dogtagpki/server/ca/rest/CertRequestService.java
→
base/ca/src/main/java/org/dogtagpki/server/ca/rest/v1/CertRequestService.java
</a>
</li>
<li class="file-stats">
<a href="#7b5ed52cc08463ee6e762b0fa028416a2aae8450">
<span class="new-file">
+
base/ca/src/main/java/org/dogtagpki/server/ca/rest/v1/CertService.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#c333f0f84ef46aad713506a7faef057bd875e5b6">
base/ca/src/main/java/org/dogtagpki/server/ca/rest/KRAConnectorService.java
→
base/ca/src/main/java/org/dogtagpki/server/ca/rest/v1/KRAConnectorService.java
</a>
</li>
<li class="file-stats">
<a href="#49132c18ecfaa0ab6fc5c1a67e5401547129a5ba">
base/ca/src/main/java/org/dogtagpki/server/ca/rest/ProfileService.java
→
base/ca/src/main/java/org/dogtagpki/server/ca/rest/v1/ProfileService.java
</a>
</li>
<li class="file-stats">
<a href="#09a686eead6b063d705d5f991ea758168ec1731a">
<span class="new-file">
+
base/ca/src/main/java/org/dogtagpki/server/ca/rest/v2/AgentCertRequestServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#a6ba182625b8c38494e47bd096816b6714fb2f77">
<span class="new-file">
+
base/ca/src/main/java/org/dogtagpki/server/ca/rest/v2/AgentCertServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#ad187f555284a856ebf9081e65301076a814cb34">
<span class="new-file">
+
base/ca/src/main/java/org/dogtagpki/server/ca/rest/v2/AuthorityServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#e39715affb27d773d2572af64146bc1ed074023e">
<span class="new-file">
+
base/ca/src/main/java/org/dogtagpki/server/ca/rest/v2/CAAccountServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#0ea3861829cbbeebfba48b900f73fb478f94aaf7">
<span class="new-file">
+
base/ca/src/main/java/org/dogtagpki/server/ca/rest/v2/CAAuditServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#75ad931e86539878a984d555c8cec110eaae6ab1">
<span class="new-file">
+
base/ca/src/main/java/org/dogtagpki/server/ca/rest/v2/CAFeatureServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#73cab4866183a4ef42c3d431460c67a7e566d611">
<span class="new-file">
+
base/ca/src/main/java/org/dogtagpki/server/ca/rest/v2/CAGroupServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#4144b865a0d4eb47627f4834f7ee8daca53c38e2">
<span class="new-file">
+
base/ca/src/main/java/org/dogtagpki/server/ca/rest/v2/CAInfoServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#378600c6097e32c006ec1d14aa47148070ef9177">
<span class="new-file">
+
base/ca/src/main/java/org/dogtagpki/server/ca/rest/v2/CAInstallerServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#0b3f13e5132bf1ba02f6e168344ce7eafd3bd086">
<span class="new-file">
+
base/ca/src/main/java/org/dogtagpki/server/ca/rest/v2/CAJobServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#d2d38619c1babba8026652aa29ff477558a2c2e3">
<span class="new-file">
+
base/ca/src/main/java/org/dogtagpki/server/ca/rest/v2/CASecurityDomainServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#e80d835486ffa00d7b093499fb320fb5771cda3e">
<span class="new-file">
+
base/ca/src/main/java/org/dogtagpki/server/ca/rest/v2/CASelfTestServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#a9798e6e835bf99e171a77a74b52777a09ab0500">
<span class="new-file">
+
base/ca/src/main/java/org/dogtagpki/server/ca/rest/v2/CAServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#e6c65a955ca6ad78b9a6edcdabd24d08e11277e6">
<span class="new-file">
+
base/ca/src/main/java/org/dogtagpki/server/ca/rest/v2/CASystemCertServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#1fa2d4363b212d5b00bf538dffb260e46e8404d9">
<span class="new-file">
+
base/ca/src/main/java/org/dogtagpki/server/ca/rest/v2/CAUserServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#00a8fcf92fab533a81c5659ee6570df2503e4ace">
<span class="new-file">
+
base/ca/src/main/java/org/dogtagpki/server/ca/rest/v2/CertRequestServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#e2978e6209f4ad3fd5710d08ece3996dbb2c7eb3">
<span class="new-file">
+
base/ca/src/main/java/org/dogtagpki/server/ca/rest/v2/CertServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#ff73db519e559d625511b145bf7d7eff2ba20e96">
<span class="new-file">
+
base/ca/src/main/java/org/dogtagpki/server/ca/rest/v2/KRAConnectorServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#5a1e0e6b275d912205f31550d58707eebe77ffab">
<span class="new-file">
+
base/ca/src/main/java/org/dogtagpki/server/ca/rest/v2/ProfileServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#f5779dd184b3eb453bd47315e45f5f887790857e">
<span class="new-file">
+
base/ca/src/main/java/org/dogtagpki/server/ca/rest/v2/filters/AgentCertACL.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#665d9f68d366bb841e43a9aa4515c0b5f2a37649">
<span class="new-file">
+
base/ca/src/main/java/org/dogtagpki/server/ca/rest/v2/filters/AgentCertAuthMethod.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#49b8926c13174192053f92e68b2c4bee7b0b1c20">
<span class="new-file">
+
base/ca/src/main/java/org/dogtagpki/server/ca/rest/v2/filters/AgentCertRequestACL.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#7617a80081c654c668814b7668c3ca305ea2a69d">
<span class="new-file">
+
base/ca/src/main/java/org/dogtagpki/server/ca/rest/v2/filters/AgentCertRequestAuthMethod.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#468bc80485bf5c532162f0c5f74f0c55609651fb">
<span class="new-file">
+
base/ca/src/main/java/org/dogtagpki/server/ca/rest/v2/filters/AuthorityACL.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#9e4fa18c3c2a137050e5943cb28786c6d02620cd">
<span class="new-file">
+
base/ca/src/main/java/org/dogtagpki/server/ca/rest/v2/filters/AuthorityAuthMethod.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#238dd001a038ba3c4409a8efbcc49177b1f4cb9f">
<span class="new-file">
+
base/ca/src/main/java/org/dogtagpki/server/ca/rest/v2/filters/CAAccountACL.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#012f0860ad9034b24e255dff51eec8704e8d6983">
<span class="new-file">
+
base/ca/src/main/java/org/dogtagpki/server/ca/rest/v2/filters/CAAccountAuthMethod.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#c4293dc69d58b6b68c862bb9a02eeaa29ee4ebe7">
<span class="new-file">
+
base/ca/src/main/java/org/dogtagpki/server/ca/rest/v2/filters/CAAuditACL.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#4e86c109757e314ec7fe17ef2d8340cb3396e82e">
<span class="new-file">
+
base/ca/src/main/java/org/dogtagpki/server/ca/rest/v2/filters/CAAuditAuthMethod.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#9f4a929561869de791ddcab17f7c5bec3d0b09cc">
<span class="new-file">
+
base/ca/src/main/java/org/dogtagpki/server/ca/rest/v2/filters/CAGroupACL.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#997d18be009dc8cc9f48ff1ad067ed6b7acc4da6">
<span class="new-file">
+
base/ca/src/main/java/org/dogtagpki/server/ca/rest/v2/filters/CAGroupAuthMethod.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#14a52b4750d99c4a6bf3894e2e7463e6413e8695">
<span class="new-file">
+
base/ca/src/main/java/org/dogtagpki/server/ca/rest/v2/filters/CASecurityDomainACL.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#57bbcd93077e19cede1129a8677992e7a1fd4d81">
<span class="new-file">
+
base/ca/src/main/java/org/dogtagpki/server/ca/rest/v2/filters/CASecurityDomainAuthMethod.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#8e9ef9f67e86c97f237a01933ea69cf0f42d5c91">
<span class="new-file">
+
base/ca/src/main/java/org/dogtagpki/server/ca/rest/v2/filters/CASelfTestACL.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#af21aa6a9cb98c3ff8b37df6ca629fdf5a9157ae">
<span class="new-file">
+
base/ca/src/main/java/org/dogtagpki/server/ca/rest/v2/filters/CASelfTestAuthMethod.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#92a108a009e39000410517a9044fa0dd782a7840">
<span class="new-file">
+
base/ca/src/main/java/org/dogtagpki/server/ca/rest/v2/filters/CAUserACL.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#ebe5cec89fd02df25ddcf7618f67d21f1f34616a">
<span class="new-file">
+
base/ca/src/main/java/org/dogtagpki/server/ca/rest/v2/filters/CAUserAuthMethod.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#51e8faabb563f71cdd8588425e88952894bad538">
<span class="new-file">
+
base/ca/src/main/java/org/dogtagpki/server/ca/rest/v2/filters/EmptyACL.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#60e817cce8ca785bea584514f53d4697c497f079">
<span class="new-file">
+
base/ca/src/main/java/org/dogtagpki/server/ca/rest/v2/filters/EmptyAuthMethod.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#4a809571c257705a461b7f1b4e3a622babb1b321">
<span class="new-file">
+
base/ca/src/main/java/org/dogtagpki/server/ca/rest/v2/filters/KRAConnectorACL.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#45464cc67a6dcc55bdb366a2c33dae174b6b5c25">
<span class="new-file">
+
base/ca/src/main/java/org/dogtagpki/server/ca/rest/v2/filters/KRAConnectorAuthMethod.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#c5182babc577ba587fa2510ff533a69d7218c6a9">
<span class="new-file">
+
base/ca/src/main/java/org/dogtagpki/server/ca/rest/v2/filters/ProfileACL.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#8302fd34351a7f90beb5a47d0268419ff2015606">
<span class="new-file">
+
base/ca/src/main/java/org/dogtagpki/server/ca/rest/v2/filters/ProfileAuthMethod.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#2d00c9e40a8146db9f25dbf70de6836a2edc4e0e">
<span class="deleted-file">
−
base/ca/src/main/java/org/dogtagpki/server/rest/CAInfoService.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#48078e085a8f6cff6f2a7f0033abad6609b8e380">
base/ca/src/test/java/com/netscape/cms/servlet/test/CATest.java
</a>
</li>
<li class="file-stats">
<a href="#c1de6f42f5ea2b6d461bfe966821beaa5c7c4c9e">
<span class="new-file">
+
base/ca/tomcat-10.1/CMakeLists.txt
</span>
</a>
</li>
<li class="file-stats">
<a href="#9a104509f408f8f91dec502963f647a9fc3e4587">
<span class="new-file">
+
base/ca/tomcat-10.1/conf/Catalina/localhost/ca.xml
</span>
</a>
</li>
<li class="file-stats">
<a href="#e502cdb2bfa4f66d84929371f23f1685e762a62f">
base/common/CMakeLists.txt
</a>
</li>
<li class="file-stats">
<a href="#48e167a9e169dba79e18c93f00b458c81536d871">
base/common/THIRD_PARTY_LICENSES
</a>
</li>
<li class="file-stats">
<a href="#3cf5033e87678f6a58b840e99bee3ffabf1cdbf1">
base/common/examples/CMakeLists.txt
</a>
</li>
<li class="file-stats">
<a href="#a5985f3191b9cd7594fe21b05b3212822caffc82">
base/common/examples/java/CAClientExample.java
</a>
</li>
<li class="file-stats">
<a href="#edd4fe0beb4c16977b6e638aff3700fd3b004c17">
base/common/pom.xml
</a>
</li>
<li class="file-stats">
<a href="#7614d83a2002cfb764607eee70e4b42367cb16db">
base/common/python/pki/__init__.py
</a>
</li>
<li class="file-stats">
<a href="#0cd113da1514477b41f60e0ffc514e5894c1c0e0">
base/common/python/pki/account.py
</a>
</li>
<li class="file-stats">
<a href="#3818d83b1ae528c3a5a7cc68a30bb085c45698fa">
<span class="new-file">
+
base/common/python/pki/acme.py
</span>
</a>
</li>
<li class="file-stats">
<a href="#40bde283f7f3a61ddd7b11e68002cf4b0b0b623e">
base/common/python/pki/authority.py
</a>
</li>
<li class="file-stats">
<a href="#cd5b0ef81dce4df8f995ceb76d72b01e139fe652">
<span class="new-file">
+
base/common/python/pki/ca.py
</span>
</a>
</li>
<li class="file-stats">
<a href="#455bba7d0d65a264cb7c538a9507b5d01e926f7a">
base/common/python/pki/cert.py
</a>
</li>
<li class="file-stats">
<a href="#fd0bb2cdb16bd07b8bcdc688a5a1e35cf4b2b831">
base/common/python/pki/cli/__init__.py
</a>
</li>
<li class="file-stats">
<a href="#709367a33b4eb3c1eec05881bd3c767ca7aa8de7">
base/common/python/pki/cli/main.py
</a>
</li>
<li class="file-stats">
<a href="#5660d5f0fcf802430058f589b48bb713429166a8">
<span class="deleted-file">
−
base/common/python/pki/cli/password.py
</span>
</a>
</li>
<li class="file-stats">
<a href="#9db563f1aee36c2726aa71f2ceb3bfcd221ee114">
<span class="deleted-file">
−
base/common/python/pki/cli/pkcs12.py
</span>
</a>
</li>
<li class="file-stats">
<a href="#2a36b44af18318a80dec7fca5ab591b289e5a034">
base/common/python/pki/cli/upgrade.py
</a>
</li>
<li class="file-stats">
<a href="#660f51f570b6c349ae9fc6c997197686770a486a">
base/common/python/pki/client.py
</a>
</li>
<li class="file-stats">
<a href="#f21977e96a47bdde6000b6d401b168a92c53b6a6">
base/common/python/pki/crypto.py
</a>
</li>
<li class="file-stats">
<a href="#ee3515f9c38916b087d209399e952af61161e165">
base/common/python/pki/encoder.py
</a>
</li>
<li class="file-stats">
<a href="#4ed6f6bd1333e83252d8f5ae74068c63e2283756">
base/common/python/pki/feature.py
</a>
</li>
<li class="file-stats">
<a href="#2b3c98e41ce0d9085723fb667c6e3db4200a7049">
base/common/python/pki/info.py
</a>
</li>
<li class="file-stats">
<a href="#fdc10b628734e4525ae0a62d89a129809e4b4f66">
base/common/python/pki/key.py
</a>
</li>
<li class="file-stats">
<a href="#20fced24069adf6b2919214b35d04fa9377a9c48">
base/common/python/pki/keyring.py
</a>
</li>
<li class="file-stats">
<a href="#17c371f596c50fbe1705382a040b1c4d9411efea">
base/common/python/pki/kra.py
</a>
</li>
<li class="file-stats">
<a href="#77eb54795e4ddac41aa58eb1883ffad676194378">
base/common/python/pki/nssdb.py
</a>
</li>
<li class="file-stats">
<a href="#ddbfc49064035dbcde62b0e9c4591a67fbad8795">
base/common/python/pki/pkcs12.py
</a>
</li>
<li class="file-stats">
<a href="#cb85177610f432ea47c7e9a968186b19e118edfb">
base/common/python/pki/profile.py
</a>
</li>
<li class="file-stats">
<a href="#a14b6280904c63249215ca14179cffe576ade3d0">
<span class="new-file">
+
base/common/python/pki/subsystem.py
</span>
</a>
</li>
<li class="file-stats">
<a href="#944a02024251906d64136a8298fe86098df207bd">
base/common/python/pki/system.py
</a>
</li>
<li class="file-stats">
<a href="#e5b224302a9ca433aa005402e923afe0b82ef217">
base/common/python/pki/systemcert.py
</a>
</li>
<li class="file-stats">
<a href="#e8c2e9191f4dd20f102625639accf22464e2c9aa">
base/common/python/pki/upgrade.py
</a>
</li>
<li class="file-stats">
<a href="#e12bf97f9d04d42f0a0b779d2077d6eb7abb02e9">
<span class="new-file">
+
base/common/python/pki/user.py
</span>
</a>
</li>
<li class="file-stats">
<a href="#f2bad79093ba459ebd533f7504caf861ca6c418a">
base/common/python/pki/util.py
</a>
</li>
<li class="file-stats">
<a href="#4b184fe386de9b67ce66bd7406f8dcd7c3011fa4">
base/common/python/setup.py
</a>
</li>
<li class="file-stats">
<a href="#43a1e047e7c46251ad2db8baa7e0ca9428ce2161">
base/common/sbin/pki-upgrade
</a>
</li>
<li class="file-stats">
<a href="#ee6eea617413f293fc87930b8ffae297f8717100">
base/common/share/etc/pki.conf
</a>
</li>
<li class="file-stats">
<a href="#9f5de8295bee860633b1721ffdbf34a868bbf606">
base/common/src/main/java/com/netscape/certsrv/account/AccountClient.java
</a>
</li>
<li class="file-stats">
<a href="#884ec993c5b74ead20ef32ec1d133b368808eedc">
<span class="deleted-file">
−
base/common/src/main/java/com/netscape/certsrv/authentication/IPasswdUserDBAuthentication.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#a0466d327792198c6b1de63e0a5aa0a0404cdf63">
base/common/src/main/java/com/netscape/certsrv/authority/AuthorityClient.java
</a>
</li>
<li class="file-stats">
<a href="#3ede47bd62739c59aefcd07e4860fc566561c6ba">
base/common/src/main/java/com/netscape/certsrv/authority/AuthorityResource.java
</a>
</li>
<li class="file-stats">
<a href="#1e57692a03cb6bf38b6f90a889bcbe86051dd613">
base/common/src/main/java/com/netscape/certsrv/base/BadRequestException.java
</a>
</li>
<li class="file-stats">
<a href="#455fd5791c97a0981a3698abcc90d18d12b3fc94">
base/common/src/main/java/com/netscape/certsrv/base/IExtPrettyPrint.java
→
base/common/src/main/java/com/netscape/certsrv/base/ClientConnectionException.java
</a>
</li>
<li class="file-stats">
<a href="#cc35cb2ef04c606432a8ee2c15950cbef1d98fb0">
base/common/src/main/java/com/netscape/certsrv/base/ConflictingOperationException.java
</a>
</li>
<li class="file-stats">
<a href="#931052f641799bb10a7b4efeb5c0a482103087e1">
base/common/src/main/java/com/netscape/certsrv/base/DataCollection.java
</a>
</li>
<li class="file-stats">
<a href="#f6eb4d6dad6e07ee0bbc6f5f4d4b843ee62755d7">
base/common/src/main/java/com/netscape/certsrv/base/ExtendedPluginInfo.java
</a>
</li>
<li class="file-stats">
<a href="#ed4c8084272d0dd1d84595099a30fe36c52a78eb">
base/common/src/main/java/com/netscape/certsrv/base/ForbiddenException.java
</a>
</li>
<li class="file-stats">
<a href="#782c1ac76d3ba0706038ded99e4f2714c5d4aee4">
base/common/src/main/java/com/netscape/certsrv/base/HTTPGoneException.java
</a>
</li>
<li class="file-stats">
<a href="#4f115d8e644f66414de8875f44b715bbac7e5095">
base/common/src/main/java/com/netscape/certsrv/base/IExtendedPluginInfo.java
</a>
</li>
<li class="file-stats">
<a href="#83a8b4fae21b80b7c15288e82abd5fb7f008d150">
<span class="deleted-file">
−
base/common/src/main/java/com/netscape/certsrv/base/IPrettyPrintFormat.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#c81cf3b6963f93f5ad1a394a07ffc6822a9bccba">
<span class="new-file">
+
base/common/src/main/java/com/netscape/certsrv/base/MimeType.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#9d0dd89a2557f40d2f422b72b1a566e008cb3741">
base/common/src/main/java/com/netscape/certsrv/base/PKIException.java
</a>
</li>
<li class="file-stats">
<a href="#d3b0369d554dbb486ca2b2b582e1aa91bdd5107a">
base/common/src/main/java/com/netscape/certsrv/base/RESTMessage.java
</a>
</li>
<li class="file-stats">
<a href="#caf2b0744869289c0265dbf9f5d064ef8e5414fb">
<span class="new-file">
+
base/common/src/main/java/com/netscape/certsrv/base/RequestNotAcceptable.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#5b2b73ea9e481f798702f9cfac7d64757fe80590">
base/common/src/main/java/com/netscape/certsrv/base/ResourceNotFoundException.java
</a>
</li>
<li class="file-stats">
<a href="#519f0a73a80bca93be5b6114bd57fe3ec56f5dfd">
base/common/src/main/java/com/netscape/certsrv/base/SecurityDomainSessionTable.java
</a>
</li>
<li class="file-stats">
<a href="#990ee5c41beb18f34dfece8b664aba170ea40454">
base/common/src/main/java/com/netscape/certsrv/base/ServiceUnavailableException.java
</a>
</li>
<li class="file-stats">
<a href="#c7daacc4e82d5c8e1fce87c80e4ed1ecfe02d2c1">
base/common/src/main/java/com/netscape/certsrv/base/UnauthorizedException.java
</a>
</li>
<li class="file-stats">
<a href="#cb371ca38201929c3d98ce49e13e77d4e9979e31">
<span class="new-file">
+
base/common/src/main/java/com/netscape/certsrv/base/UnsupportedMediaType.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#4b0400ef9a4fd9ba4b078a7cd4467960d09c4ce5">
<span class="new-file">
+
base/common/src/main/java/com/netscape/certsrv/ca/CAAgentCertClient.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#6feca459b68f892c0b4805ec51f3dbfe38635874">
<span class="new-file">
+
base/common/src/main/java/com/netscape/certsrv/ca/CAAgentCertRequestClient.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#d0d9593ce4789635945566dd37a0f0ed3b0fea23">
<span class="new-file">
+
base/common/src/main/java/com/netscape/certsrv/ca/CACRLClient.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#d863d5ebcf56e5ef26dfb690c0ad1780aac728bd">
base/common/src/main/java/com/netscape/certsrv/ca/CACertClient.java
</a>
</li>
<li class="file-stats">
<a href="#43f6e2ab4a14dee0f3f4942d86c15f7b9fbf4903">
<span class="new-file">
+
base/common/src/main/java/com/netscape/certsrv/ca/CACertRequestClient.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#9781da7309145d066c85a9065b18aaa79e887100">
base/common/src/main/java/com/netscape/certsrv/ca/CAClient.java
</a>
</li>
<li class="file-stats">
<a href="#a2f6fcc5a62e25695c58eb1528e44c01f1c618c0">
<span class="new-file">
+
base/common/src/main/java/com/netscape/certsrv/cert/AgentCertRequestResource.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#4689bba921b7bbd6b79d6d750f777c781f0e30ec">
<span class="new-file">
+
base/common/src/main/java/com/netscape/certsrv/cert/AgentCertResource.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#4bfed38813e94a32f796d7a805169974a3d1890a">
base/common/src/main/java/com/netscape/certsrv/cert/CertDataInfos.java
</a>
</li>
<li class="file-stats">
<a href="#8a8ef5837ddeeaf7293921a16ec778bf5e7e3384">
base/common/src/main/java/com/netscape/certsrv/cert/CertEnrollmentRequest.java
</a>
</li>
<li class="file-stats">
<a href="#056b0f45dcec044e4a589177356b87f38ee489b1">
base/common/src/main/java/com/netscape/certsrv/cert/CertRequestResource.java
</a>
</li>
<li class="file-stats">
<a href="#6b090e2230c59f70b5df697cf11dc11bac8bedec">
base/common/src/main/java/com/netscape/certsrv/cert/CertResource.java
</a>
</li>
<li class="file-stats">
<a href="#94e49c32d67e85622861e338c7865299ae10cb9b">
base/common/src/main/java/com/netscape/certsrv/cert/CertSearchRequest.java
</a>
</li>
<li class="file-stats">
<a href="#4ccd877e5e3ca4383fc6c8d758728a58b4115131">
base/common/src/main/java/com/netscape/certsrv/client/Client.java
</a>
</li>
<li class="file-stats">
<a href="#65815a7f7e312dc6f2245c28a902bd1e90a28dbb">
base/common/src/main/java/com/netscape/certsrv/client/ClientConfig.java
</a>
</li>
<li class="file-stats">
<a href="#da6e581caa19585df06313bd29ca48373d2808f1">
base/common/src/main/java/com/netscape/certsrv/client/PKICertificateApprovalCallback.java
</a>
</li>
<li class="file-stats">
<a href="#27cc32bdb1834257046647b392ce8d397cf82060">
base/common/src/main/java/com/netscape/certsrv/client/PKIClient.java
</a>
</li>
<li class="file-stats">
<a href="#fce8ebf317c89c21da44da58d651aeea7dd45b04">
<span class="deleted-file">
−
base/common/src/main/java/com/netscape/certsrv/client/PKIClientAuthenticator.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#e6ad181471f485cbf1d1a489431c0f105fc5e332">
base/common/src/main/java/com/netscape/certsrv/client/PKIConnection.java
</a>
</li>
<li class="file-stats">
<a href="#7b1f42d01d93ea1be478f807e5b0c143525c540f">
<span class="deleted-file">
−
base/common/src/main/java/com/netscape/certsrv/client/PKIRESTProvider.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#97c2a1d0b95ec1fd5353a7dd35f9a435a145a904">
base/common/src/main/java/com/netscape/certsrv/client/SubsystemClient.java
</a>
</li>
<li class="file-stats">
<a href="#dd22b8ecf5618ada538997e22e65b6957c648ec9">
base/common/src/main/java/com/netscape/certsrv/dbs/EDBException.java
→
base/common/src/main/java/com/netscape/certsrv/dbs/DBException.java
</a>
</li>
<li class="file-stats">
<a href="#aaf4f929c73cf9059711c2bcc225671c49763ad0">
base/common/src/main/java/com/netscape/certsrv/dbs/EDBNotAvailException.java
→
base/common/src/main/java/com/netscape/certsrv/dbs/DBNotAvailableException.java
</a>
</li>
<li class="file-stats">
<a href="#131b5425a83e4f804cdc840a468e3dd90e427cae">
<span class="new-file">
+
base/common/src/main/java/com/netscape/certsrv/dbs/DBRecordAlreadyExistsException.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#aa962c96e6f65e1d04d2b2e0ceee94327b3905a9">
base/common/src/main/java/com/netscape/certsrv/dbs/EDBRecordNotFoundException.java
→
base/common/src/main/java/com/netscape/certsrv/dbs/DBRecordNotFoundException.java
</a>
</li>
<li class="file-stats">
<a href="#057f4e31b791b84509ed27a439005249f4ad11b3">
base/common/src/main/java/com/netscape/certsrv/dbs/certdb/CertId.java
</a>
</li>
<li class="file-stats">
<a href="#41ff1b8f54237a3298cb718f05a92c96af3e74d1">
base/common/src/main/java/com/netscape/certsrv/group/GroupClient.java
</a>
</li>
<li class="file-stats">
<a href="#3f6144d5aed2fac704e03358c2e2977d2200ad39">
base/common/src/main/java/com/netscape/certsrv/group/GroupCollection.java
</a>
</li>
<li class="file-stats">
<a href="#6f2ba9afb6c6f0ace4f6e608aaaf370d86695f2a">
base/common/src/main/java/com/netscape/certsrv/group/GroupData.java
</a>
</li>
<li class="file-stats">
<a href="#34174f6b0587552e342d3e202753c9cac97c4d30">
base/common/src/main/java/com/netscape/certsrv/group/GroupMemberData.java
</a>
</li>
<li class="file-stats">
<a href="#d848e086f6d24fcd743e14dddcc61a53c78900c7">
base/common/src/main/java/com/netscape/certsrv/key/AsymKeyGenerationRequest.java
</a>
</li>
<li class="file-stats">
<a href="#276cbf639e8d3f3c8e35b21a47bd7ba5d68c58eb">
base/common/src/main/java/com/netscape/certsrv/key/KeyArchivalRequest.java
</a>
</li>
<li class="file-stats">
<a href="#d3e211896588a06758a63adf046d5f9330c82603">
base/common/src/main/java/com/netscape/certsrv/key/KeyClient.java
</a>
</li>
<li class="file-stats">
<a href="#210ff1e0c482e1a60555e996861251da57312acb">
<span class="new-file">
+
base/common/src/main/java/com/netscape/certsrv/key/KeyParameters.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#4cc7af6ca8845dbd3e68c8166858176687d74bd1">
base/common/src/main/java/com/netscape/certsrv/key/KeyRecoveryRequest.java
</a>
</li>
<li class="file-stats">
<a href="#9881987fd75df2eba46963e91e6889d1c2b6a689">
<span class="new-file">
+
base/common/src/main/java/com/netscape/certsrv/key/KeyRequestClient.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#9420df1db57240a663978e8a1e8dedc45f9c271a">
base/common/src/main/java/com/netscape/certsrv/key/KeyRequestResource.java
</a>
</li>
<li class="file-stats">
<a href="#689d1d917dfeb8101f9ee0f8c475930df9ae2140">
base/common/src/main/java/com/netscape/certsrv/key/KeyResource.java
</a>
</li>
<li class="file-stats">
<a href="#4e7152c44b3e3470f958c9cf8ae885f03068c2aa">
base/common/src/main/java/com/netscape/certsrv/key/SymKeyGenerationRequest.java
</a>
</li>
<li class="file-stats">
<a href="#7a223abb9918cdbf009c4f6247d3e7fc00122ffd">
base/common/src/main/java/com/netscape/certsrv/kra/KRAClient.java
</a>
</li>
<li class="file-stats">
<a href="#070f58256aeddff77c69c8bd85f77b36c76e00cc">
base/common/src/main/java/com/netscape/certsrv/ldap/ELdapException.java
</a>
</li>
<li class="file-stats">
<a href="#369d6e573fe21fb9d6f4407efc72ed05b414bb4d">
base/common/src/main/java/com/netscape/certsrv/ldap/LDAPExceptionConverter.java
</a>
</li>
<li class="file-stats">
<a href="#073779b3b8406c5076b5c73da90906b1a293213f">
base/common/src/main/java/com/netscape/certsrv/logging/ActivityClient.java
</a>
</li>
<li class="file-stats">
<a href="#6dd2ee9b02369ae497f5945c9d76427fa81e7914">
base/common/src/main/java/com/netscape/certsrv/logging/ActivityCollection.java
</a>
</li>
<li class="file-stats">
<a href="#3171925ba19a8c4ce6bc9b1175a91357fb785bb6">
base/common/src/main/java/com/netscape/certsrv/logging/AuditClient.java
</a>
</li>
<li class="file-stats">
<a href="#e37a2bd132b16f66448e4d63126f8ab70c00c6c6">
base/common/src/main/java/com/netscape/certsrv/logging/AuditFileCollection.java
</a>
</li>
<li class="file-stats">
<a href="#34090712df2af896400bab6a34d98a5393b221f9">
<span class="deleted-file">
−
base/common/src/main/java/com/netscape/certsrv/notification/IEmailFormProcessor.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#8d40f6528b3bf67e5c70a02e4b6d562619d1e214">
base/common/src/main/java/com/netscape/certsrv/ocsp/OCSPClient.java
</a>
</li>
<li class="file-stats">
<a href="#d59a5ddb2f0b2d7855007f5a8bb900619f295013">
base/common/src/main/java/com/netscape/certsrv/profile/ProfileClient.java
</a>
</li>
<li class="file-stats">
<a href="#dca05d800a2b27a1d2b3e10ee22e4c57c43d8eb1">
base/common/src/main/java/com/netscape/certsrv/profile/ProfileDataInfo.java
</a>
</li>
<li class="file-stats">
<a href="#702470c17664dfe3530a2c0141d30d1f78520be8">
base/common/src/main/java/com/netscape/certsrv/profile/ProfileDataInfos.java
</a>
</li>
<li class="file-stats">
<a href="#50d68f266dad01b971b657636c02dde4db5a51be">
base/common/src/main/java/com/netscape/certsrv/profile/ProfileResource.java
</a>
</li>
<li class="file-stats">
<a href="#6e23abc469a0e2870040fa651f0552fcfc8b51d6">
base/common/src/main/java/com/netscape/certsrv/profile/ProfileRetrievalRequest.java
</a>
</li>
<li class="file-stats">
<a href="#7c1bb92a0c9cc5641cb862020ab92838471f8cc1">
base/common/src/main/java/com/netscape/certsrv/request/AgentApprovals.java
</a>
</li>
<li class="file-stats">
<a href="#64d4d53e87b5e8fb3777f0aac30bd0608e0fc835">
base/common/src/main/java/com/netscape/certsrv/selftests/SelfTestClient.java
</a>
</li>
<li class="file-stats">
<a href="#df83143b03d52e54554259b3b92f04fa12578785">
base/common/src/main/java/com/netscape/certsrv/selftests/SelfTestCollection.java
</a>
</li>
<li class="file-stats">
<a href="#9d3a6bb7d77bfe05d775231bbec1a7e01f912044">
base/common/src/main/java/com/netscape/certsrv/selftests/SelfTestResults.java
</a>
</li>
<li class="file-stats">
<a href="#7aad657499eb741d33f4fd60c8dddd6c7e530793">
base/common/src/main/java/com/netscape/certsrv/system/FeatureClient.java
</a>
</li>
<li class="file-stats">
<a href="#677ee3ba91acccb622bba90cc4edd276033bfe15">
base/common/src/main/java/com/netscape/certsrv/system/KRAConnectorClient.java
</a>
</li>
<li class="file-stats">
<a href="#fbe29c4181d503589ef3adb1146d590bbd63c1d1">
base/common/src/main/java/com/netscape/certsrv/system/KRAConnectorInfo.java
</a>
</li>
<li class="file-stats">
<a href="#a578eff2e570bb1c1120247715d64ac7c9b90f90">
base/common/src/main/java/com/netscape/certsrv/system/SecurityDomainClient.java
</a>
</li>
<li class="file-stats">
<a href="#00d1ab8344a7922693cbacdfc9e20ed2a5f81581">
base/common/src/main/java/com/netscape/certsrv/system/TPSConnectorClient.java
</a>
</li>
<li class="file-stats">
<a href="#bdad4be8fb9d37791fb1e8a78bb77aa3ed067376">
base/common/src/main/java/com/netscape/certsrv/system/TPSConnectorCollection.java
</a>
</li>
<li class="file-stats">
<a href="#5cd3d2c4cce7bb5dee266c679417f55ccf5372b7">
base/common/src/main/java/com/netscape/certsrv/tks/TKSClient.java
</a>
</li>
<li class="file-stats">
<a href="#a867b44489a4134b1a6c77c866771617778a32e9">
base/common/src/main/java/com/netscape/certsrv/tps/TPSClient.java
</a>
</li>
<li class="file-stats">
<a href="#af408209d4eacf889580d86d6c01dd33a0249297">
base/common/src/main/java/com/netscape/certsrv/tps/authenticator/AuthenticatorClient.java
</a>
</li>
<li class="file-stats">
<a href="#53f9315b301619f7ce2cba9bc51c542c9a80a166">
base/common/src/main/java/com/netscape/certsrv/tps/authenticator/AuthenticatorCollection.java
</a>
</li>
<li class="file-stats">
<a href="#f1fc5a44b85a390650b89beb5909134d56318384">
base/common/src/main/java/com/netscape/certsrv/tps/cert/TPSCertClient.java
</a>
</li>
<li class="file-stats">
<a href="#1e6e734436400caf82ed7da0dbd174f1f246698c">
base/common/src/main/java/com/netscape/certsrv/tps/cert/TPSCertCollection.java
</a>
</li>
<li class="file-stats">
<a href="#87c268bfa36927b49de3166a277a0bbd34e619ff">
base/common/src/main/java/com/netscape/certsrv/tps/connector/ConnectorClient.java
</a>
</li>
<li class="file-stats">
<a href="#375a385eb39c6165b8e1ac944d8a06e24cbe0401">
base/common/src/main/java/com/netscape/certsrv/tps/connector/ConnectorCollection.java
</a>
</li>
<li class="file-stats">
<a href="#48a25c1cc4a80cf607330489cb19c4b0606c34c5">
base/common/src/main/java/com/netscape/certsrv/tps/profile/ProfileClient.java
</a>
</li>
<li class="file-stats">
<a href="#ec30e261b97b27655e186c5272be886ac18626ff">
base/common/src/main/java/com/netscape/certsrv/tps/profile/ProfileCollection.java
</a>
</li>
<li class="file-stats">
<a href="#736da3a4c33d10ee635a55fd366ef12da4b34f64">
base/common/src/main/java/com/netscape/certsrv/tps/profile/ProfileMappingClient.java
</a>
</li>
<li class="file-stats">
<a href="#3e6a6f5fd6ca1b36c7399376f605d6a5800d63c5">
base/common/src/main/java/com/netscape/certsrv/tps/token/TokenClient.java
</a>
</li>
<li class="file-stats">
<a href="#529c8c1a0e59a94511a47a109d2d64ce063f55e2">
base/common/src/main/java/com/netscape/certsrv/tps/token/TokenCollection.java
</a>
</li>
<li class="file-stats">
<a href="#a40235283334945138c4c058d9157d1afd4b1526">
base/common/src/main/java/com/netscape/certsrv/user/UserCertCollection.java
</a>
</li>
<li class="file-stats">
<a href="#d3cd2b18225ec8b9e2faabfe9de890aa6150df5e">
base/common/src/main/java/com/netscape/certsrv/user/UserCertData.java
</a>
</li>
<li class="file-stats">
<a href="#b6542a451de9327adec7727b07937e67b22dd7e2">
base/common/src/main/java/com/netscape/certsrv/user/UserClient.java
</a>
</li>
<li class="file-stats">
<a href="#5790debeb0710b0ac3fc743e7fd4b50d57f954df">
base/common/src/main/java/com/netscape/certsrv/user/UserData.java
</a>
</li>
<li class="file-stats">
<a href="#8b70846ce4df74f2ba730168fd989885ebeb5040">
base/common/src/main/java/com/netscape/certsrv/user/UserMembershipData.java
</a>
</li>
<li class="file-stats">
<a href="#05f68f5aba0a43c5d5cdc6e715fce5824d6c4d17">
base/common/src/main/java/com/netscape/certsrv/util/CryptoProvider.java
</a>
</li>
<li class="file-stats">
<a href="#4d491169037f6d94df5d47e7d064e788f53076b9">
base/common/src/main/java/com/netscape/certsrv/util/NSSCryptoProvider.java
</a>
</li>
<li class="file-stats">
<a href="#faf329187c574427c1940d12cd926e1ef21331b9">
base/acme/src/main/java/org/dogtagpki/acme/server/ACMEManagedService.java
→
base/common/src/main/java/com/netscape/certsrv/util/Param.java
</a>
</li>
<li class="file-stats">
<a href="#94f4df3080ed44c276aff0efb302b01af19e9524">
base/server/src/main/java/com/netscape/cmscore/cert/CertDateCompare.java
→
base/common/src/main/java/com/netscape/cmscore/cert/CertDateCompare.java
</a>
</li>
<li class="file-stats">
<a href="#489c0464ab3f847820b9d4a308947f94ede246e0">
base/common/src/main/java/com/netscape/cmsutil/crypto/CryptoUtil.java
</a>
</li>
<li class="file-stats">
<a href="#cce99b1d7ac61dbbf19a28047f9077eddc4416d6">
base/common/src/main/java/com/netscape/cmsutil/ocsp/CertStatus.java
</a>
</li>
<li class="file-stats">
<a href="#55547c520cc8bb8d5ae2a2ee6d7ef859662ec491">
base/common/src/main/java/com/netscape/cmsutil/ocsp/GoodInfo.java
</a>
</li>
<li class="file-stats">
<a href="#d40c8e9ee889ab81bc00445c79781e1ef38edbe4">
base/common/src/main/java/com/netscape/cmsutil/ocsp/OCSPProcessor.java
</a>
</li>
<li class="file-stats">
<a href="#381efd3ed851e08bb4ba28535a3f99a612cb4941">
base/common/src/main/java/com/netscape/cmsutil/ocsp/OCSPResponse.java
</a>
</li>
<li class="file-stats">
<a href="#643223c0d301dafd2a370e19fa16ab7db29dc0de">
base/common/src/main/java/com/netscape/cmsutil/ocsp/OCSPResponseStatus.java
</a>
</li>
<li class="file-stats">
<a href="#04434e11e070ecb05d2c6747b8ec3a5caa620466">
base/common/src/main/java/com/netscape/cmsutil/ocsp/RevokedInfo.java
</a>
</li>
<li class="file-stats">
<a href="#0a1bff63d2414db24cfd40104315f548fd3da179">
base/common/src/main/java/com/netscape/cmsutil/ocsp/UnknownInfo.java
</a>
</li>
<li class="file-stats">
<a href="#7d6aae54f1df6769145ce4bae762dfd02e5bdd09">
base/common/src/main/java/com/netscape/cmsutil/password/PasswordStore.java
</a>
</li>
<li class="file-stats">
<a href="#eaae3fbf0b7e7e5040e90d150c0beae7f8a5df73">
base/common/src/main/java/com/netscape/cmsutil/util/Keyring.java
</a>
</li>
<li class="file-stats">
<a href="#d4dab3a3ebf495443a368061885bba3146d2417e">
base/common/src/main/java/com/netscape/cmsutil/xml/XMLObject.java
</a>
</li>
<li class="file-stats">
<a href="#6714df590dce25d30c1a643051cbb756e77eeb01">
base/common/src/main/java/org/dogtagpki/acme/ACMEClient.java
</a>
</li>
<li class="file-stats">
<a href="#ee5cd3f6a89df774f6b2514148c745aacaa5dfdb">
<span class="new-file">
+
base/common/src/main/java/org/dogtagpki/acme/ACMEException.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#2419460e64a4a47b56dcffd6abe350c818629245">
base/common/src/main/java/org/dogtagpki/acme/JWK.java
</a>
</li>
<li class="file-stats">
<a href="#e1b2019bdccc1d05005b13e2274c7ed422732825">
base/common/src/main/java/org/dogtagpki/ca/CASystemCertClient.java
</a>
</li>
<li class="file-stats">
<a href="#dcfa1ee765138e1b677286095dc93e6eaa83304b">
base/tomcat/src/main/java/org/dogtagpki/tomcat/PKITrustManager.java
→
base/common/src/main/java/org/dogtagpki/cert/PKITrustManager.java
</a>
</li>
<li class="file-stats">
<a href="#77814d049c723ca146c1a946514011926a4d4689">
base/common/src/main/java/org/dogtagpki/cli/CLI.java
</a>
</li>
<li class="file-stats">
<a href="#c2e7dde132c504a9463a051a1595fa306049582c">
base/common/src/main/java/org/dogtagpki/cli/CLIException.java
</a>
</li>
<li class="file-stats">
<a href="#473f4b337fb3b997895e6289a2f949867d3e932f">
base/common/src/main/java/org/dogtagpki/cli/CommandCLI.java
</a>
</li>
<li class="file-stats">
<a href="#bd4b7f002e95fe04dae945807b76c8f7981c0b49">
<span class="new-file">
+
base/common/src/main/java/org/dogtagpki/client/JSSSocketFactory.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#d64a1b00fba1df88253226c98e03f9ec5e385288">
<span class="new-file">
+
base/common/src/main/java/org/dogtagpki/client/SSLSocketFactory.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#13ece658efea29969fdd147f6776117f49e89abb">
base/common/src/main/java/org/dogtagpki/common/CAInfoClient.java
</a>
</li>
<li class="file-stats">
<a href="#6f1f2e2b416f4f5a891f90d4ed6a6aa633de0237">
base/common/src/main/java/org/dogtagpki/common/ConfigClient.java
</a>
</li>
<li class="file-stats">
<a href="#a1f0cac248e44f270e817be623c35b4a80b73e89">
base/common/src/main/java/org/dogtagpki/common/InfoClient.java
</a>
</li>
<li class="file-stats">
<a href="#ecbceee0e39c03d6ee1f1818b57b2d719d6a4b2a">
base/common/src/main/java/org/dogtagpki/common/KRAInfoClient.java
</a>
</li>
<li class="file-stats">
<a href="#6622b21ed8ff6b2d4a021776b93abad1cd7e6e06">
base/common/src/main/java/org/dogtagpki/common/LoginClient.java
</a>
</li>
<li class="file-stats">
<a href="#8a1ea44677ee336c1d7689c94bee0a383d0fd8cf">
base/common/src/main/java/org/dogtagpki/job/JobClient.java
</a>
</li>
<li class="file-stats">
<a href="#f5c3c2c4e31cc40c9727b4561e45cca9582916cb">
base/common/src/main/java/org/dogtagpki/kra/KRASystemCertClient.java
</a>
</li>
<li class="file-stats">
<a href="#ddfca0fb3aa3dfa852bc07e238b2cd30a6a5efeb">
base/common/src/main/java/org/dogtagpki/nss/NSSDatabase.java
</a>
</li>
<li class="file-stats">
<a href="#9baf2cd32c44373497e2a99c0fed849fda5dae6d">
base/common/src/main/java/org/dogtagpki/nss/NSSExtensionGenerator.java
</a>
</li>
<li class="file-stats">
<a href="#e1ef7201b4bc1ddde3a66083e3c1aa485409f72a">
base/common/src/main/java/org/dogtagpki/tps/TPSConnection.java
</a>
</li>
<li class="file-stats">
<a href="#2387501fa73f49aa58cffc2dd4524f9e898665c1">
base/common/src/main/java/org/dogtagpki/tps/apdu/APDU.java
</a>
</li>
<li class="file-stats">
<a href="#a421ec5f7a154e27036c233c440b1051e1257ea1">
<span class="new-file">
+
base/common/src/main/java/org/dogtagpki/tps/apdu/DeleteKeysAPDU.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#038826b9e4fce0d7f3e424efcc9057644ce59b96">
base/common/src/main/java/org/dogtagpki/tps/apdu/SelectAPDU.java
</a>
</li>
<li class="file-stats">
<a href="#35ce8d3d1d4c066ad92ee94f2b360a74c6dcc3e6">
base/common/src/main/java/org/dogtagpki/tps/main/TPSBuffer.java
</a>
</li>
<li class="file-stats">
<a href="#2749b172a50f278926f2b7f70ae71ff87cf19109">
base/common/src/main/java/org/dogtagpki/tps/msg/EndOpMsg.java
</a>
</li>
<li class="file-stats">
<a href="#bdba0b62843b9e9a3dfaf82c1e0fb3c114a8d93f">
base/common/src/main/java/org/dogtagpki/tps/msg/TPSMessage.java
</a>
</li>
<li class="file-stats">
<a href="#e9c3e3ffca1e0be2b644fe9275390c9d2e1f51f2">
base/common/src/main/java/org/dogtagpki/tps/msg/TokenPDURequestMsg.java
</a>
</li>
<li class="file-stats">
<a href="#cb84d4edb81dbd658b6a508ad13569ae89335dcc">
<span class="new-file">
+
base/common/src/main/java/org/dogtagpki/util/cert/CRMFUtil.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#2dd5d928be3d8ed6682385b35f38e33ae620b1d1">
base/common/src/main/java/org/dogtag/util/cert/CertUtil.java
→
base/common/src/main/java/org/dogtagpki/util/cert/CertUtil.java
</a>
</li>
<li class="file-stats">
<a href="#602764df642ee06ead867df80250f5baf67fb25d">
base/common/src/main/java/org/dogtagpki/util/logging/PKILogger.java
</a>
</li>
<li class="file-stats">
<a href="#4f4349b5b3055458b55cb1f16aed174e18469ffb">
base/common/src/test/java/com/netscape/certsrv/account/AccountTest.java
</a>
</li>
<li class="file-stats">
<a href="#fff23d32b4ab24fe9d320ccf5fc014bd22df0835">
base/common/src/test/java/com/netscape/certsrv/authority/AuthorityDataTest.java
</a>
</li>
<li class="file-stats">
<a href="#179809e2d723b068b3f08227c7ace93253dd2557">
base/common/src/test/java/com/netscape/certsrv/base/DataTest.java
</a>
</li>
<li class="file-stats">
<a href="#138925395f9c1944d3581b47887ff881a9b7a6af">
base/common/src/test/java/com/netscape/certsrv/base/RESTMessageTest.java
</a>
</li>
<li class="file-stats">
<a href="#52f6e72db0d9d062e01d61f74924409c9639d273">
base/common/src/test/java/com/netscape/certsrv/cert/CertDataInfoTest.java
</a>
</li>
<li class="file-stats">
<a href="#2cac12f8041cb276948a5bb5dfdffe905f791ae8">
base/common/src/test/java/com/netscape/certsrv/cert/CertDataInfosTest.java
</a>
</li>
<li class="file-stats">
<a href="#85175ece07ec025668f588c570895d6f3397304c">
base/common/src/test/java/com/netscape/certsrv/cert/CertDataTest.java
</a>
</li>
<li class="file-stats">
<a href="#894f5e9aca5bb986205971e61a2e69a27304de09">
base/common/src/test/java/com/netscape/certsrv/cert/CertEnrollmentRequestTest.java
</a>
</li>
<li class="file-stats">
<a href="#1a03d32284587a0f98ccc97c234bfb5d9f4aaed4">
base/common/src/test/java/com/netscape/certsrv/cert/CertRequestInfoTest.java
</a>
</li>
<li class="file-stats">
<a href="#4ca78515e6e4322c669dafbff6fc79f78dc2f21d">
base/common/src/test/java/com/netscape/certsrv/cert/CertRequestInfosTest.java
</a>
</li>
<li class="file-stats">
<a href="#f03ab9a847a612524138e4f3ebb775cd2f746823">
base/common/src/test/java/com/netscape/certsrv/cert/CertRetrievalRequestTest.java
</a>
</li>
<li class="file-stats">
<a href="#fdc6a06985773991d421032db8edb841e16fef14">
base/common/src/test/java/com/netscape/certsrv/cert/CertReviewResponseTest.java
</a>
</li>
<li class="file-stats">
<a href="#3c8269e75be6a3a5182e97d73048a0553295d441">
base/common/src/test/java/com/netscape/certsrv/cert/CertRevokeRequestTest.java
</a>
</li>
<li class="file-stats">
<a href="#2462ab1333c4a22d9c933cc39a4237ecf6ce53d8">
base/common/src/test/java/com/netscape/certsrv/cert/CertSearchRequestTest.java
</a>
</li>
<li class="file-stats">
<a href="#6c508acf7168c0884056d31b7040fbbb4c59a390">
base/common/src/test/java/com/netscape/certsrv/client/ClientConfigTest.java
</a>
</li>
<li class="file-stats">
<a href="#cc2b2d9b19f72a147e0b6e01b17aa8518772785e">
base/common/src/test/java/com/netscape/certsrv/dbs/keydb/KeyIdTest.java
</a>
</li>
<li class="file-stats">
<a href="#ab080f06c4c79e7976a20f518dec1fd323c93052">
base/common/src/test/java/com/netscape/certsrv/group/GroupDataTest.java
</a>
</li>
<li class="file-stats">
<a href="#d7e931c365f7c342863b90b3b4fd91b08a911217">
base/common/src/test/java/com/netscape/certsrv/group/GroupMemberCollectionTest.java
</a>
</li>
<li class="file-stats">
<a href="#cf61af3be4863adaabf08ebc43a68180ef61838f">
base/common/src/test/java/com/netscape/certsrv/group/GroupMemberDataTest.java
</a>
</li>
<li class="file-stats">
<a href="#11e94c8c1aac2d3189025fda305447b28547d835">
base/common/src/test/java/com/netscape/certsrv/key/AsymKeyGenerationRequestTest.java
</a>
</li>
<li class="file-stats">
<a href="#6146d14358bf4d91ca90de84bb4ddbd71fc551f7">
base/common/src/test/java/com/netscape/certsrv/key/KeyArchivalRequestTest.java
</a>
</li>
<li class="file-stats">
<a href="#034f1aa32993e086e111343c95ffba6dc6a984b7">
base/common/src/test/java/com/netscape/certsrv/key/KeyDataTest.java
</a>
</li>
<li class="file-stats">
<a href="#7f2de57833a3b12d04b78183f17bf02a51b8702c">
base/common/src/test/java/com/netscape/certsrv/key/KeyInfoCollectionTest.java
</a>
</li>
<li class="file-stats">
<a href="#c55f5c99760612e809129fd208fc44bd75636151">
base/common/src/test/java/com/netscape/certsrv/key/KeyInfoTest.java
</a>
</li>
<li class="file-stats">
<a href="#6fdbf80ff6eb55824dc97173bae334a84f1add03">
base/common/src/test/java/com/netscape/certsrv/key/KeyRecoveryRequestTest.java
</a>
</li>
<li class="file-stats">
<a href="#97cbcf850d4ae237d85cc054b1893b09fb7ad4f1">
base/common/src/test/java/com/netscape/certsrv/key/KeyRequestInfoCollectionTest.java
</a>
</li>
<li class="file-stats">
<a href="#6e6a55797d96853b247d8b12728cadde9934f7bd">
base/common/src/test/java/com/netscape/certsrv/key/KeyRequestInfoTest.java
</a>
</li>
<li class="file-stats">
<a href="#e21774b01ec2b891523925450fb42e1a66e11e92">
base/common/src/test/java/com/netscape/certsrv/key/KeyRequestResponseTest.java
</a>
</li>
<li class="file-stats">
<a href="#03c9b7ac5cf59fc9b14a7734a13fee7322509574">
base/common/src/test/java/com/netscape/certsrv/key/KeyTest.java
</a>
</li>
<li class="file-stats">
<a href="#6c5cec71dde3108a2b8647aa36d730fdf83f9934">
base/common/src/test/java/com/netscape/certsrv/key/SymKeyGenerationRequestTest.java
</a>
</li>
<li class="file-stats">
<a href="#0f9b0dd0df6744f2e1dd110da6c3d78bd2f851e4">
base/common/src/test/java/com/netscape/certsrv/logging/ActivityDataTest.java
</a>
</li>
<li class="file-stats">
<a href="#47e3d890285f022759e31ffdbe1a62e1a27000d6">
base/common/src/test/java/com/netscape/certsrv/logging/AuditConfigTest.java
</a>
</li>
<li class="file-stats">
<a href="#05f4732149089bf01b64d884e6efae3c65392b33">
base/common/src/test/java/com/netscape/certsrv/logging/AuditFileTest.java
</a>
</li>
<li class="file-stats">
<a href="#9fc1b2e10e05b9ac14df6371aaa9d00302ef49ca">
base/common/src/test/java/com/netscape/certsrv/profile/PolicyConstraintTest.java
</a>
</li>
<li class="file-stats">
<a href="#f8bf59d761ad34d7a0a58f0f7215d6ab5502c1d1">
base/common/src/test/java/com/netscape/certsrv/profile/PolicyConstraintValueTest.java
</a>
</li>
<li class="file-stats">
<a href="#f568e8efcec05f64c34b898c01e2c33e4b75d15d">
base/common/src/test/java/com/netscape/certsrv/profile/PolicyDefaultTest.java
</a>
</li>
<li class="file-stats">
<a href="#903955daad9576dda548130a852dfd37da031721">
base/common/src/test/java/com/netscape/certsrv/profile/ProfileAttributeTest.java
</a>
</li>
<li class="file-stats">
<a href="#26dad21683f5f2e308f9e5582185461144d5c510">
base/common/src/test/java/com/netscape/certsrv/profile/ProfileDataInfoTest.java
</a>
</li>
<li class="file-stats">
<a href="#466ac00af5987423c777cf34ebd2f8fa0fa31789">
base/common/src/test/java/com/netscape/certsrv/profile/ProfileDataTest.java
</a>
</li>
<li class="file-stats">
<a href="#d6688b8b23412c4a8e2717b61ef793eaf1bab7ac">
base/common/src/test/java/com/netscape/certsrv/profile/ProfileInputTest.java
</a>
</li>
<li class="file-stats">
<a href="#db3aaea1d44a8a576e67af4bcc64f4987687847d">
base/common/src/test/java/com/netscape/certsrv/profile/ProfileOutputTest.java
</a>
</li>
<li class="file-stats">
<a href="#c9f5cd2ad38478c751a313406799917647f8b0fa">
base/common/src/test/java/com/netscape/certsrv/profile/ProfileParameterTest.java
</a>
</li>
<li class="file-stats">
<a href="#f4d925ab58e62ffeb42e3afc9ee9b81b1133eb0f">
base/common/src/test/java/com/netscape/certsrv/profile/ProfilePolicyTest.java
</a>
</li>
<li class="file-stats">
<a href="#283395738a2405ea74b537a93b1dd367eb1c0988">
base/common/src/test/java/com/netscape/certsrv/property/DescriptorTest.java
</a>
</li>
<li class="file-stats">
<a href="#1f2d3584d63e9ccf11d1ec5f1487342ac5a194cb">
base/common/src/test/java/com/netscape/certsrv/request/CMSRequestInfoTest.java
</a>
</li>
<li class="file-stats">
<a href="#66238d23e1fbe142fe31518685cb3d08ca387c8f">
base/common/src/test/java/com/netscape/certsrv/request/RequestIdTest.java
</a>
</li>
<li class="file-stats">
<a href="#9856c061eac0ec612596cfb1a4cc732bdbd1e651">
base/common/src/test/java/com/netscape/certsrv/selftests/SelfTestDataTest.java
</a>
</li>
<li class="file-stats">
<a href="#17e479c186c38bdacada356ae3d03b8b10eeb6ef">
base/common/src/test/java/com/netscape/certsrv/selftests/SelfTestResultTest.java
</a>
</li>
<li class="file-stats">
<a href="#e9439cba052deb1b475c586219659ac114da1097">
base/common/src/test/java/com/netscape/certsrv/system/CertificateSetupRequestTest.java
</a>
</li>
<li class="file-stats">
<a href="#08af673616240012331876b079d23ae7059d0b0f">
base/common/src/test/java/com/netscape/certsrv/system/DomainInfoTest.java
</a>
</li>
<li class="file-stats">
<a href="#315b0a5041f456e578d751b3b92878564b3d7565">
base/common/src/test/java/com/netscape/certsrv/system/FeatureTest.java
</a>
</li>
<li class="file-stats">
<a href="#b27b8c0fc1742cfac993a95ea851377ece15cba9">
base/common/src/test/java/com/netscape/certsrv/system/InstallTokenTest.java
</a>
</li>
<li class="file-stats">
<a href="#8a89d4c6538ff5e742b2bdf33675b9dd90288b74">
base/common/src/test/java/com/netscape/certsrv/system/KRAConnectorInfoTest.java
</a>
</li>
<li class="file-stats">
<a href="#41aba8bda9d1d47232b886d0a8ddf1743a18ec85">
base/common/src/test/java/com/netscape/certsrv/system/SecurityDomainHostTest.java
</a>
</li>
<li class="file-stats">
<a href="#025ed811b59b7d979d9b04f1ea58961e0c590053">
base/common/src/test/java/com/netscape/certsrv/system/SecurityDomainSubsystemTest.java
</a>
</li>
<li class="file-stats">
<a href="#5ae06914d92a9e3be07803b1d147985720f30bbb">
base/common/src/test/java/com/netscape/certsrv/system/SystemCertDataTest.java
</a>
</li>
<li class="file-stats">
<a href="#adc7329ef2bb27d8b5113c0cb414ae9c856914e3">
base/common/src/test/java/com/netscape/certsrv/system/TPSConnectorDataTest.java
</a>
</li>
<li class="file-stats">
<a href="#f357a504c1541268978d0f1a4e1fb7e0ee0c5b40">
base/common/src/test/java/com/netscape/certsrv/tps/authenticator/AuthenticatorDataTest.java
</a>
</li>
<li class="file-stats">
<a href="#d25d8ed8b1524493a9f949f1bfd9def47cba913a">
base/common/src/test/java/com/netscape/certsrv/tps/cert/TPSCertDataTest.java
</a>
</li>
<li class="file-stats">
<a href="#793e67053eb87fa9a469c5f268f0c618140a798a">
base/common/src/test/java/com/netscape/certsrv/tps/connector/ConnectorDataTest.java
</a>
</li>
<li class="file-stats">
<a href="#d03a9ecb3e480ff12f653b892e6f79fd0f2e1cc1">
base/common/src/test/java/com/netscape/certsrv/tps/profile/ProfileDataTest.java
</a>
</li>
<li class="file-stats">
<a href="#7236eafc33827257a1558ce39c4df4dc7e84960e">
base/common/src/test/java/com/netscape/certsrv/tps/profile/ProfileMappingDataTest.java
</a>
</li>
<li class="file-stats">
<a href="#9f5a36b436a78abd7a340e6e8b08103585f27c50">
base/common/src/test/java/com/netscape/certsrv/tps/token/TokenDataTest.java
</a>
</li>
<li class="file-stats">
<a href="#2dd8a4cba9dd361c08331912e557afae59084005">
base/common/src/test/java/com/netscape/certsrv/user/UserCertDataTest.java
</a>
</li>
<li class="file-stats">
<a href="#f238b05c13abb4a42af788f69ec39e52c416a703">
base/common/src/test/java/com/netscape/certsrv/user/UserCollectionTest.java
</a>
</li>
<li class="file-stats">
<a href="#b2cc8612cfe831624b9991dab357e2d5bc7d1d8c">
base/common/src/test/java/com/netscape/certsrv/user/UserDataTest.java
</a>
</li>
<li class="file-stats">
<a href="#4fe140802e2328f81e0325decbd2b3de3ad8ae12">
base/common/src/test/java/com/netscape/certsrv/user/UserMembershipCollectionTest.java
</a>
</li>
<li class="file-stats">
<a href="#371cec0258b3ed926b53e0e4b7aa94a631b3577e">
base/common/src/test/java/com/netscape/certsrv/user/UserMembershipDataTest.java
</a>
</li>
<li class="file-stats">
<a href="#68ef3d83412b06bc1046353cce58e73260a2bfbe">
base/common/src/test/java/com/netscape/cms/servlet/test/ConfigurationTest.java
</a>
</li>
<li class="file-stats">
<a href="#5cae38a85104238934f2e2fd807b7578580de536">
base/common/src/test/java/com/netscape/cmsutil/crypto/KeyIDCodecTest.java
</a>
</li>
<li class="file-stats">
<a href="#c53b9dfa524b7a35454436e360b1f4fa7fda28e8">
<span class="deleted-file">
−
base/common/src/test/java/com/netscape/test/TestListener.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#6b053c33f8ef20f8ed6d181451a3acdb42f766f4">
base/common/src/test/java/com/netscape/test/TestRunner.java
</a>
</li>
<li class="file-stats">
<a href="#e1e45fb95ebcc45beb1b407ca201198d4986fad4">
base/common/src/test/java/org/dogtagpki/common/CAInfoTest.java
</a>
</li>
<li class="file-stats">
<a href="#85c1bc4f3ae5b1f9544eb18eec7b4b11d998f056">
base/common/src/test/java/org/dogtagpki/common/ConfigDataTest.java
</a>
</li>
<li class="file-stats">
<a href="#b826f5abdf17581a4917f2b36b3071e377a1391a">
base/common/src/test/java/org/dogtagpki/common/InfoTest.java
</a>
</li>
<li class="file-stats">
<a href="#9d2a10f93b3270b15b6efff7f960966911144483">
base/common/src/test/java/org/dogtagpki/common/KRAInfoTest.java
</a>
</li>
<li class="file-stats">
<a href="#2b5daa8280ce2054b427d49113d0af6eb9916f86">
base/console/CMakeLists.txt
</a>
</li>
<li class="file-stats">
<a href="#f3e511e6ad82ce0bdcae0f090a64faffcae2fe48">
base/console/bin/pkiconsole
</a>
</li>
<li class="file-stats">
<a href="#12a48b6057ad094179169ba2dc54ffb8cc347858">
<span class="new-file">
+
base/console/pom.xml
</span>
</a>
</li>
<li class="file-stats">
<a href="#a717530d2b89194d4c4a2eee0d11692762a9049e">
base/console/src/main/java/com/netscape/admin/certsrv/CMSAdmin.java
</a>
</li>
<li class="file-stats">
<a href="#6d7303262afa9a27215ba0e85645cf863aac0d41">
base/console/src/main/java/com/netscape/admin/certsrv/CMSTaskModel.java
</a>
</li>
<li class="file-stats">
<a href="#935c1aa8fac666bb2e9be54fc961cf6eba596566">
base/console/src/main/java/com/netscape/admin/certsrv/Console.java
</a>
</li>
<li class="file-stats">
<a href="#52b1c1b4a6917ff18f31df8aa06056ce07b81aea">
base/console/src/main/java/com/netscape/admin/certsrv/UIMapperRegistry.java
</a>
</li>
<li class="file-stats">
<a href="#a3bb184a39e692201f9e09765aca580fdb50c804">
base/console/src/main/java/com/netscape/admin/certsrv/config/CMSCAGeneralPanel.java
</a>
</li>
<li class="file-stats">
<a href="#0531cb085c77d8db00571b3e8f122a9ab8ea2ed5">
base/console/src/main/java/com/netscape/admin/certsrv/config/WBaseManualCertRequestPage.java
</a>
</li>
<li class="file-stats">
<a href="#9843717a063c8acab71b0e1d776b8ec77df0e44f">
base/console/src/main/java/com/netscape/admin/certsrv/config/install/WIGenKeyCertReqPage.java
</a>
</li>
<li class="file-stats">
<a href="#5df34e0c8b96fef006b996615e7958f9b1b06279">
base/console/src/main/java/com/netscape/admin/certsrv/connection/JSSConnection.java
</a>
</li>
<li class="file-stats">
<a href="#3c1208b506c0a042e8754965acfadfc41685e34c">
base/console/src/main/java/com/netscape/admin/certsrv/security/Response.java
</a>
</li>
<li class="file-stats">
<a href="#54a5ea2f224125acf75c245f1cbe689657ff10aa">
base/console/src/main/java/com/netscape/admin/certsrv/task/CMSMigrateCreate.java
</a>
</li>
<li class="file-stats">
<a href="#3c5561138228390ff2a5de679378decd6fffedfa">
base/console/src/main/java/com/netscape/admin/certsrv/task/CMSStartDaemon.java
</a>
</li>
<li class="file-stats">
<a href="#ed279aa01614f1eb88cc3c905cfa6dd21448454c">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/AboutDialog.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#ab9b928d4faf58d1c760d4143ff3ea97fa7cbbb1">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/CloseVetoException.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#199b2c752a8a0347301b109b83c1949a2ca108d9">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/FeedbackIndicator.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#3e077f8b5b72d5733010fff7daa41a7a7b7d479f">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/FontPreferencesTab.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#12baa987181db42ff66a5df90520dbc39dd5c34b">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/Framework.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#323f9aad3dce0a20911db9206e1ffeb33767dea8">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/FrameworkInitializer.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#be66c6978adf6e5cd46ac23922d06876cdca8f3d">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/IFramework.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#494ccef5bd9b20ab4ea2a811706da8281b196bef">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/IFrameworkInitializer.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#575810aed40382d938720ec4dc7d08711cef5068">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/IMenuInfo.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#0fe9453b04d3953233988a301e805ddaea428a14">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/IMenuItem.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#a201bd33b593445c0a4e3f2aa91a97b6dc6b3a70">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/IMenuItemCategory.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#57356489854ef3bd4f5a87322af64c01c6b4d254">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/IMenuItemCheckBox.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#c1abd0878ab4ef6628e09cbdb9c1faf657c73aac">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/IMenuItemSeparator.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#c7fec5ec1a23e13af1d38f5b8f3ae72d108604ef">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/IMenuItemText.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#3ba1c2c47889f448600338481ad5799f0bab5761">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/IPage.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#ae8ec548455e49d13f280890a8b002537ef0ea2e">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/IResourceModel.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#202087f2cea0ea7a154570f3411f3e95566a5d7a">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/IResourceModelListener.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#c4a4fda6f8cf5b8d7e3917943edbcde72dec2658">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/IResourceObject.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#8e1a8365cc7f0a9b17b54f95ec29d1250ead816f">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/IStatusItem.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#de880554c3b548a25bc300c87bb417004a3f3cde">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/ITaskModel.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#84d83adb17a149b9c2cff729eaab41aa2c50c9f8">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/ITaskModelListener.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#d33f8c4885d0e69f502f9c2cf8edc444a6c8005b">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/ITaskObject.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#e27ad9368b0b08fd104f81966e491eb8743d257f">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/LDAPTaskModel.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#25c96cbd2a934833af139bdc365f6f18508990fc">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/MenuData.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#1829e975e2744478877c0dfebddb402849a67e2d">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/MenuItemCategory.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#f567c617b8917758742e5f255de6a41262650fa2">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/MenuItemCheckBox.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#64bf12bae8f0547188c1d289ac1613eae1add489">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/MenuItemSeparator.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#0131287198db18ff35768ca9300d018d1c2885d8">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/MenuItemText.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#a8867f6fc7745b8d1008e0a62082f2c523874c18">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/ResourceCellRenderer.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#865bc3b0dcdde89cfe718c88ca6cfe82048bf138">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/ResourceModel.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#da2a3e8695699c167cd17d2b850ff74a6fdb6e95">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/ResourceModelEvent.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#619399a469a9ef120586d4d7b127d9f2af39b5e6">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/ResourceObject.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#0ef85e1c9801fc09943d63c9ee32e5e8a333ad19">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/ResourcePage.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#37c02922796c894fcc08066ddb31c3f929f97881">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/SettingsPreferencesTab.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#ec49e31e4807fe0d87e345ae4ba7fc0d58382730">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/StatusItemIcon.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#ab9a149e0e6654869f90cf9058b6adaa4618f522">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/StatusItemProgress.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#dc1bd696f51ae3e076cd811101333bede2b15c35">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/StatusItemSecureMode.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#08b5b259e3c3683f0e51f60f363756703404dc70">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/StatusItemSpacer.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#ee73d12bf970ff86cec4bd3d8cb529d763da0fc0">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/StatusItemText.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#8ae53dec7a4f764ede80057cfe23224abc043457">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/TaskModel.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#e0d15435c0838bee229c53e601217c1595cfa6e1">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/TaskModelEvent.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#0deb183dc87a5ff8e4d1fe8268053be9470f7c90">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/TaskObject.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#958bfc032e75b77881d73e87c860fe3701133104">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/TaskPage.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#ca7b740a6d1c43e54e08398107d3f7fbd85909b7">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/UIPermissions.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#e9bb3e6a35938f679aae2d2811bab2dea2d03492">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/UIPermissionsPreferencesTab.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#86a1190334ca9f039c606e7848b158ba8e98445a">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/ace/ACIAttribute.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#ea894f90c1b7eff17dda623a05d2a1c5e245ac6a">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/ace/ACIEditor.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#63d7dd23b54a8fa92853aeaf7ce94cbda1c8ce71">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/ace/ACIManager.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#57cefa536a596d5be1cab0c1dca33875e380d68e">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/ace/ACIParser.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#4e532d883d57e0f6e72d545364772c2cb2e9aa0e">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/ace/HostTab.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#dfb9d36690704de58646f118075fad386f06f443">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/ace/IACITab.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#c44a4d8df560ea37c9b7da8662e9b0a08104866b">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/ace/RightsTab.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#dec2b531c6bee6d666003a593f555cffafb692ed">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/ace/TargetTab.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#5476d54e0946a827925f9a7ab7ff6db67e97bdcc">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/ace/TimeTab.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#bead86be3920c8af120e0019d8f1d10249c466b4">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/ace/UGChooserDialog.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#bffebbcbf2fce8f722f7e86b6d21ef0e82b93b1c">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/ace/UGTab.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#5d4ed1aef25c20e561094c0c848f28d7704197cc">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/ace/UGTable.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#dff1cc5ce0aa3a050a4937344a747caa3b29be52">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/ace/UGTableModel.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#43c8060afd4c744078a9dab6e1c7495cd5f43028">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/acl/ACL.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#7bee99625e8d735606fff68b627596dd8015b1da">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/acl/AttributeList.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#49180aa288c59857100a605ea7453fe8bf2b261a">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/acl/FileACL.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#7787e60a1934af2cbb14e147f4747360e3760e82">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/acl/HttpACL.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#5dca2ef9fb1fa9d75a8f12ef7aa516edac0ad672">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/acl/HttpWriter.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#00cd811c19b90c9b54b0c87eb5746bbd4e9dc611">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/acl/LdapACL.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#fad748ce267cd1b1e0fafaa0c47d27daf3de0146">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/acl/LdapACLSelector.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#8419ec89cb16f57064c8f529b30d54245062ef8e">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/acl/LdapRule.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#2125adc6a5bad4cf7f1b297b2999d2bd17dcc0e7">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/acl/LdapWriter.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#a3c2216f62284c6906219978cc75fb11df8fbc3c">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/acl/Rule.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#613c9d41a72118cc0428c0e46017ddfae816fa37">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/acleditor/ACLEditor.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#81087727670c970cd079253a8c398da09b2ee20b">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/acleditor/ACLEditorConstants.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#fc3721910a32edaf2371d9341c1495689a440d11">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/acleditor/ACLEditorWindow.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#0e7468520d48cd2b949ead8130eb9cc9e60bea5b">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/acleditor/ACLRuleTableWindow.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#63edd73ba89b74809a678a957d92d6934fd45b06">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/acleditor/ACLSelectorWindow.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#bf2dabd35c48e9406115967a15853859abadde58">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/acleditor/AttributesWindow.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#6708ceafbafae8e80aac48823f7b9b994afa15a2">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/acleditor/CallbackAction.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#5184ec6a083239f8990b7bdd6377576912d6bb3a">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/acleditor/CustomJTable.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#4692f74293f44ac8a887509f664504a83f9d8b7a">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/acleditor/DataModelAdapter.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#40d0e9a444af8c0cd88f0963acee0b7cf27fb749">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/acleditor/DataModelFactory.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#4b3b5d039d25c8cb2b32c922d7c0e0c2ce678840">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/acleditor/DefaultDataModelFactory.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#74c9ea827fb8c799d8f9886e09ad7ebb05ef3206">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/acleditor/DefaultWindowFactory.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#a60f826489f4ed08aa045d40633a57e33ab45328">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/acleditor/HorizontalLine.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#912e722a848fbf858e1dd03029b318d83c31f458">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/acleditor/HostsDataModel.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#eedcc3031163a9198441e81b4fcc39b88e8bbdd6">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/acleditor/InheritedTableDataModel.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#e5e9f38dfbdc1f16e88ecfeeba73bf8e2e827c65">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/acleditor/PickerWindow.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#d17f406d802dde5eaaec604cb3e7b4b6105ad1c1">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/acleditor/PopupErrorDialog.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#a22a2e0154b0b491b58c40be0b63a7c6456ebde1">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/acleditor/RightsDataModel.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#0d1694dde395325d35672bf44472c41c683f8a22">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/acleditor/RightsWindow.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#efc96820b0ce67d0fcac06a1b29da5ece593b439">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/acleditor/SelectionListener.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#8d1a66d5d536b207b60a4b92ed6c25e6336c8171">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/acleditor/SyntaxWindow.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#83ea0f0e73e5866f1b95aed19dc8cd5f4eae3cd5">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/acleditor/Table.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#03a85eafd2b29647a8187337758655cac39ba23d">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/acleditor/TableDataModel.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#a99e184dbe7b4f6f409e67be8304281fb5df1a04">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/acleditor/TimeWindow.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#02e7be935aafc853f502ea5a13a412f86d4c0673">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/acleditor/UserGroupDataModel.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#797f7550c8cb1847db1e007d21a8a3e4ca50ef67">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/acleditor/WindowFactory.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#08f1152dda519ae4d9be218a143bb3ab288c6c52">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/cmd/CommandLineParser.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#80fafda4e2a5b49674e428a1fe9053dc78798b1e">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/cmd/GetOpt.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#5bba8b9447a9471ed113c4473e630ea558fba280">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/comm/AbstractCommClient.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#9961e0945770992260b17d866d0947140eb50b4e">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/comm/AsyncByteArrayInputStream.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#23ab885125a075aeaccc795702c111dc7c7606ac">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/comm/ClientThread.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#36f2319ea3e1ab72bd1efe3cc8259deed95e6711">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/comm/CommChannel.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#9656dbbd74cf1bc277f63216db2af65079d06274">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/comm/CommClient.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#678da81bc38b1a31c3429a1be9037dae0ab39986">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/comm/CommClient2.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#8ab8ab8573a1fd914a9f594d746b6d299e6761c2">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/comm/CommManager.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#24ab2aee3afa2a1f9a780d8793ea409d0fd5e742">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/comm/CommRecord.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#28918da845dbb386d18b8070191471854f07ee24">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/comm/HttpChannel.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#22bc786408fe706a2af68b605099acacbd24b8d9">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/comm/HttpException.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#2a1d41b51bf1eaa38be3154c38790f58e5345cf9">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/comm/HttpManager.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#da1e27c244225c404f0eccba1f14a00ac726931d">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/comm/HttpsChannel.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#67d1636b015cc30475698dbc9921419ac1b74d4a">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/comm/Response.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#7c5336f2cfd2786901ca0253170d8a1ec4b22baa">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/components/ButtonFactory.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#8052c61460480013f6fd8a062e83f9e23da203c6">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/components/ClickBorder.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#ba3c65b7e3553772b7231f64ba6979f7e47e8496">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/components/ComponentFactory.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#62679413b3d052895ab5f374e52d746c6da3f74f">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/components/DetailTable.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#4d38ae2cd3cd128b1fbb9d65990ec5c0c8c60905">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/components/DirBrowserDialog.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#2bf3497d31603ca8c5e63e26def88bae3b3829a5">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/components/DirModel.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#28be560620d074f27381c6dc4a38053cf9b1a991">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/components/DirNode.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#001165d83f50c6d78f9867faecd9c0ed22403c6c">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/components/DirNodeEvent.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#3c13d100d230efd83595503322a703b2e002d64b">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/components/DirTree.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#f604a980322e07d8a042666df0fd288dfe58aa6d">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/components/DotBorder.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#6637cef63746e5cabe4ebd721aea125b55c6df4c">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/components/ErrorDialog.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#721917187fa5f592114487ffdb2818b09122b81a">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/components/FlatBorder.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#b709931fd4d0a39bc907580d9ad7fb314962920a">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/components/FontChooserDialog.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#9e1f05555b6d8ca741d548844ac5c5ba40ed9924">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/components/FontFactory.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#58a542c027210e2b7d8a474bb0e5173ada076086">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/components/GenericDialog.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#757ec122653210d00b258dcb106563db237f793c">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/components/IDataCollectionModel.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#4e85fdd4643b9f52e47aa4a3bdb222fcd307e12b">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/components/IDirContentListener.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#2b073160d7f7dac49ba81dd83c2a78f6484b6313">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/components/IDirModel.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#9c081a273b61b99bef641dd31c8d869cee9b4818">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/components/IDirNode.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#d7ae6452f9fd75f9c87e1c59de1641105c640b60">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/components/IDirNodeListener.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#d11bc697491eddeafdbead7d7c7dfca4fadaa2a5">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/components/IPAddressField.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#ad221401e0f468e83e497f35624209cefc98dc15">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/components/IPByteField.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#06b09d6df587b746c15bf56bd923f7c62bfb1407">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/components/ISortableTableModel.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#9dcea7f2cfadb20016a868f8ca41f1354b7f1caa">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/components/IWizardPageContent.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#af2c30c593d41d139cea9c88c12f9c28d364e2fb">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/components/IWizardPageValidator.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#ca7ce749b3b541244392e955eaa1515178756978">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/components/IWizardSequenceManager.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#43553d7e70454d9ee8b9ab50b4200e5a1530524d">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/components/PopupMenuButton.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#96909a198758da9770abf3f5bbb3bfad14c3f75d">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/components/RootDirNode.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#cc4c1013986f13e801b04cbc6d51e3e09e5fde19">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/components/StatusDialog.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#945b6632dd22085e475a17c37f0fb64124becfbd">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/components/Table.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#889b55298e2051a3289f05d91731a066ba8da8fc">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/components/TableMap.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#ab5489aa85c0f81e0c845966fde2c8c80e7e94d1">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/components/TableSorter.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#ce53700ca55a9d946d372c882a9f4271ab32d887">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/components/TaskDetailArea.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#9a58f24781f9eb6afa47d84ed250964c5e2fbcd4">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/components/TextDetailArea.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#91f5c9e8531676cc928e18f1050c233fb4297678">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/components/TimeDayPanel.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#fcc4c121febd8d45454809d94c0a644124f833a2">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/components/TreePanelCellRenderer.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#754bf86c01374ee9592bbaa0c9a6196614c137cb">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/components/UIConstants.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#ca962030945605a2db5db99fd68941c6866dd12e">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/components/Wizard.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#5f1a000f2c429364846f3b767476925af41b6e45">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/components/WizardDataCollectionModel.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#a6b5b35eb98bc2c44e5a2a4c8909ef08792d1cea">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/components/WizardNavigator.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#6069d593979e944b1b5876b733f45b33b72f8a63">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/components/WizardPage.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#6db6da121d71e8c337f2e938e0760e5d821ddfa4">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/components/WizardSequenceManager.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#0ec2284cc19b54e7be12b469049bfa22cbd8b9b5">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/console/Console.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#884321b25492c078d772ba1a57a98a5392704a84">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/console/ConsoleHelp.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#09d53543a5dc462563ff993cfab00c91c803ac9f">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/console/ConsoleInfo.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#4dbd26936f0a67363c0b41e43db0fdf2dcdb0291">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/console/LoginDialog.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#8aa0c4af453ebd7ecfc4415d74a6e282d264fe62">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/console/RestartDialog.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#7a769a48ad8765c959656342aa87ed41d60f964a">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/console/SplashScreen.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#9688cccf72c66d3ab4bb7056bd7e45de0a3efcb9">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/console/VersionInfo.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#0c18a0153f941106d85d6e0c78fb0c28fc6079fb">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/console/genverinfo.sh
</span>
</a>
</li>
<li class="file-stats">
<a href="#3acf90fadf77362a3d31aa5c85021d052d306be5">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/keycert/README.txt
</span>
</a>
</li>
<li class="file-stats">
<a href="#7f2511518dd23ba2746cf73f50fe472da66a7fdf">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/logging/IFilterComponent.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#5dc352fc249cb57c33cb210031774b65978bf01b">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/logging/ILogViewerModel.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#a2e8e45ec6067a6ee14f73fee749519c77d7923d">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/logging/LogLengthCommClient.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#7a1462beb4eb774101be5e295727247835e0e79f">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/logging/LogViewer.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#4e2f9562e9015d58303987bbb2e57e8609ef32ab">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/logging/LogViewerModel.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#a164cd4915109d0c04aff66cfbe47bffb6c28dda">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/preferences/AbstractPreferencesTab.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#a80a6116d5814508e86c9c571729f320b3f709aa">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/preferences/FilePreferenceManager.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#6a2d6e36292a0fdafa652ebcb8b8f514b0152785">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/preferences/FilePreferences.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#1e3b16a12156f72c5a74acbf2ee16d0d83d46f51">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/preferences/IPreferencesTab.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#304a443b69a087a2d6cfc1f84e02e38674146b67">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/preferences/LDAPPreferenceManager.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#d98a6fdee8477460cdd072d8914ff4dd5708dd86">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/preferences/LDAPPreferences.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#29e617f6976d39396d16937a31303a4ef9e9a71a">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/preferences/PreferenceManager.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#c1e73430c4a4d15b9d0aa2e425c7f697aec98215">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/preferences/Preferences.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#18df97089120b4a340711cbabf51f1b038f92cf1">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/preferences/PreferencesDialog.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#e7d822f9a5f70c02127685def85e1345f3d18426">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/security/CACertificatePane.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#e4557680dfb2e45d2838deb2d3dd145d1af632a8">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/security/CRLCertificatePane.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#24f0b61bd5dfb93bdf31d6ab24c13cf82ed42c49">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/security/CertInstallCertInfoPage.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#0b75801c8ccd23e5c61ccba0ad6ed63b09949825">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/security/CertInstallCertNamePage.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#203d32ccbb67f2949026c16178d5df13a22cfd1c">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/security/CertInstallCertPage.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#33c099ffde40eb289f7a8522791de60da8982767">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/security/CertInstallSetTrustPage.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#44adfcfe2ef6ab7f04a8eb1a1275ce2fbe4127c7">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/security/CertInstallTypePage.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#d37eb3ded0fba540b0868c58a8b1e6e1795ca0fa">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/security/CertInstallWizard.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#f7971136a07b627f63f513d7cce537ba8b352134">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/security/CertMigrateAliasSelectionPage.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#1477e09f00e3a7063040d2b6a7f8ed201ce78b2a">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/security/CertMigrateConfirmPage.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#197af5952d69f5a718ca1b38415eacbec92c3a0e">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/security/CertMigrateSourcePage.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#4bf0ca77676a1aa273518a79386387b847437fc1">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/security/CertMigrateWizard.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#14062a765992e115ae0263ad1361ff5c0db8b920">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/security/CertRequestWizard.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#5deae02ffa302940ba7cb989cdde5773135fbe5e">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/security/CertificateDetailDialog.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#ca9171d34ec4d29b9befe79fc1835940d858af65">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/security/CertificateDialog.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#e3aad840a22ceb3f884195f01305090fd8a62b00">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/security/CertificateInfoPanels.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#d9207769ae83621f962dbb1be0f11dd16a6f294d">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/security/CertificateList.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#41beb6cd60b38a282cd80d0c546120d579fbd0b8">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/security/CertificateListPane.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#28c36f73c1793cb113e447b1d8d78779098ef9ad">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/security/CipherPreferenceDialog.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#2f499d91f601b9481c4a6da31146b691751cc63c">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/security/ClientAuthPanel.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#74721707e032fddedc36d4779c9b30550d00c232">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/security/EditTrustDialog.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#5749e8de24534e0d36264c3c15f9ceec7f82a855">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/security/EncryptionOptions.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#5c1c1b3242459bc1a35b37c4e314010827118397">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/security/EncryptionPanel.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#fcfb5af8f2b4ce3f47b268ef4950be333feb5938">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/security/EncryptionTokenDialog.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#4189bc641b95a71c0dc769de07e7adee7e023217">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/security/IClientAuthOptions.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#194ed7d4aa3135cca81cb6f5ddb56ce023cac029">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/security/IEncryptionOptions.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#5161aef895c1e19f631cd1851ca3fb774d21d23f">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/security/InstallCRLDialog.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#c0e30f5b41306b0102f5ad4af3d59c97a1cad6ab">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/security/InstallPKCSDialog.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#2684a0907602ab62a3a0db2606bc99646a916d1c">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/security/KeyCertUtility.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#ae14d22a9c0593f28229e39aedb6a99f5fe3348f">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/security/ListTableModel.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#4f501f7aef2d8036324b58d16e4cf491ca8ee844">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/security/PKCSConfigDialog.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#f2b28defcc9269a03d4051d34b0cc76d1b6a432b">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/security/Parser.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#045bb3a33b3f4bffe6a40b87f7ef220a658b666c">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/security/PromptForTrustDialog.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#92f4b38f6d5a5d46578db2178eb73167503b07a5">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/security/PromptTokenPasswordDialog.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#c9f9d7f16468f397fc8f79fa1fa51f8ee7a0e864">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/security/SecurityPreferences.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#d2e09325a3debf63faed3b7a1d213859ab3117a0">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/security/SecurityUtil.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#3d38c658a61c4dc966d0fc34abef0dc18a0a5d34">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/security/ServerCertificatePane.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#a543954a9f789d6e0e98c6a3aae79a8fc204443f">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/security/SetTokenPwdDialog.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#7901ed5248005e9ecd9a0fbbf2c5d75e586f038f">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/security/StatusPage.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#2415e84b0c775ff7ef4d0789e7efb9d7b876c9f9">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/security/TokenPasswordPage.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#db2ccd653d2c1f3b33387ca129d5e3f30fa6c46e">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/security/ViewCertificateDialog.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#8142dde4570b4a81c02ab1e9007c350ad284c09c">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/security/csr/CertRequestInfoPage.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#47b623ff0f8fab64b5541635f9ca170d7e19819b">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/security/csr/CertRequestKeyPage.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#ac2e2f0698d67894697ef6fc525225a2d481fc81">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/security/csr/CertRequestSubmissionPage.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#5692db8767dd89787413d3e191822ea6e7424140">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/security/csr/DefaultPlugin.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#4ca5245c9bd2a22a88c04b77227fb92eec059391">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/security/csr/ICAPlugin.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#51f93aa7bad4fe45a0740d915a35f48a4f24fd2c">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/security/csr/ICAPluginUtil.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#dcee37ba692213ea39739b5246db89619201294a">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/security/csr/IContentPage.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#1c56c63f60ac15022fc4d2d7d7dc938088ea722e">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/security/csr/ISecurityUtil.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#126ad1be6f37c9762bf6fef71b858f199db52bfb">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/security/csr/IUIPage.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#16b7039029e2edf964cedcbaf90b723ec1c7024a">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/security/csr/manifest.mf
</span>
</a>
</li>
<li class="file-stats">
<a href="#67a7b1354202b88ccb9d7dacfcfee293a361b410">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/topology/AbstractServerObject.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#8b5ccbdb86bf03ce22c1cba25f794304f8bec486">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/topology/AdminGroupNode.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#5dd946437d141a2f074c21dfa556f426a794bc2e">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/topology/CancelOpenDialog.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#9d8eb81d3f93386b86c71909c3e1b5f83a547d37">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/topology/DefaultTopologyPlugin.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#94f2860780204085382505034f00e5086970b5fb">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/topology/DomainNode.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#cce01975a00d278586a6eacf4d644e362b0914d1">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/topology/HostNode.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#95da7d3d23843799bebfc584bac93d7a47ef3a54">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/topology/ICustomView.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#47c141ffcd7ad495d30caa5ba60965c7a87cd5a7">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/topology/INodeInfo.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#de1f816862d6f8e0d04640ea133dec740e0f708b">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/topology/IProductObject.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#a70243a7ae852e51308e5a65d3c5cc978f4749bc">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/topology/IRemovableServerObject.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#1125bcdd224f633b5fe75d7e92ead4464e3f5721">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/topology/IServerObject.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#10c8ac48d34df6eb1943deb3263fc969017daa0c">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/topology/ITopologyPlugin.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#0981028ed99a2ef623d4fec9f4006ced11f043da">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/topology/KeyCertMigrationDialog.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#0e76818556859202392a4276da0cfbd829292de0">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/topology/NetworkNode.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#aeffc9f28eed15b322e4417d9f76d913e7818775">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/topology/NewDomainDialog.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#2ebdab85c9f4a3b0ed68941e5f566c06e948c673">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/topology/NodeData.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#646610b406ae5fbbf4cf238a70bd48d630fc1cac">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/topology/NodeDataPanel.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#4cb59cc6aa6efbdf10fa0986c34c2d7b20a56f85">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/topology/PermissionDlg.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#1a32c27896235b0b053d6abfdf15b94a9cca2d4e">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/topology/ProductSelectionDialog.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#a4ce44f5309f05f8e7ab6188dcef08dd3f6b0a45">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/topology/ServerLocModel.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#3bd73415104e9ca7b245bf55a1e19ceab0093ba4">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/topology/ServerLocNode.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#2f9dbbaaf7991d29e0527f85e82759c0cbb9bd99">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/topology/ServerNode.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#ef6116a422c1f8c2750ccad2ada389256035c2e0">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/topology/ServerRootPromptDialog.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#83918eb53e708fb99c504c888ddc716984b2d371">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/topology/ServiceLocator.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#79024d16fd1618bbfcef99ff380d55eecb87d522">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/topology/TopTopologyNode.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#b85ae28719d4093ea642f0218649e1a06c0f1a9e">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/topology/TopologyInitializer.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#3d8b3a9622f764584777af4741f8782c2b361baf">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/topology/TopologyModel.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#da085002545de4c300423398157268ffb2c7c567">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/topology/TopologyResourcePage.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#7e61d06f9b12763bb2f76213c704960e3820f826">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/topology/customview/CustomView.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#7718aeca47b13d197d6c38771861c72f3cdde957">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/topology/customview/EditDialog.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#9b21d0225a5ef43656a8986d5951e854ae1702ff">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/topology/customview/NewDialog.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#6fe1a38593ce4a3b93351657d6156eeee6d4de80">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/topology/customview/RenameDialog.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#752d6339c021b28ea93a1ca9eb086c34cb8fc80b">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/topology/customview/ViewInfo.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#83094b0acdc19755bf89758993d8b4419d78440f">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/topology/customview/ViewObject.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#428c1b6e9b24836ceb154eca07068debe2b8f197">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/topology/customview/ViewSelectorComponent.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#48eefb12415a61d554bf980a9a9027713e4e7c5b">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/topology/customview/ViewSelectorDialog.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#aadbf5db825da379211b11145ea4db60043b9995">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/topology/ug/EditUserGroupPane.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#8d90d2b37936aeb27ccd0f77b047573e9db55080">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/topology/ug/IUGToolPlugin.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#52adc7828ccaf21fa9855da279245f900d89f05e">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/topology/ug/OUPickerDialog.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#12a65a153a43d957c638d5b24655a151a3f1bb5d">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/topology/ug/UGPage.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#9a14a092f051940d1acee705d39f9491a48b903f">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/ug/ActionPanel.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#278d83b40e3c72ae974854df059de741d9a53da5">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/ug/AdvancePanel.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#4996c9ffdc68c2983c1b01c8e09e3abb83b5829e">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/ug/AttributeSearchFilter.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#2fdd08b03b1a1072b9c12b04a47b307327feb2d5">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/ug/BasicPanel.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#24de835561e1b304a019a64b48c41b25726099a2">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/ug/CancelSearchDialog.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#98ff0208796232edcfd2be3eb3f070e20cbce39d">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/ug/ChangeDirectoryDialog.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#932a4109fc7d18c405bf638a70bc994f186796e2">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/ug/DefaultResEditorPage.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#8385effcf1746a440f993394fd29250447b6f620">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/ug/DirectoryListItem.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#d69fab8fd76abb98bb4452a5d2a4eb5b7d713644">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/ug/DynamicQueryDlg.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#851ce4ffdb42f42ead4cb868164588a5c0bc1ae1">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/ug/GroupLanguageFactory.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#40ef0e81ec1b17fc663c4cf82c9387ed5f0ad874">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/ug/IAdvancedResPickerPlugin.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#ae506025164f93ee1e476b9bcc54ad9795c2a8e3">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/ug/ILanguageFactory.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#1f8cac2dc847fdf2525cca0d063f269bb9b03d55">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/ug/ILocalize.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#2d9b1597efd83facee05581e421a253c794dabc1">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/ug/IRPCallBack.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#17554e08159f5acdbcfc49e46d9e306341ef0eb3">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/ug/IRPSearchDlg.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#8f74db5fee4a6192e6cd2166c3643f7565275a72">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/ug/IResEditorAdvancedOpt.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#6f166a5e96138deb3de509bca3f2fa3a79c6c8ba">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/ug/IResourceDeleteCallBack.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#9f0bfcfe24d631be6cf200ceb95968dc996e9657">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/ug/IResourceEditorAccPage.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#32f2ba03b839cbc74fa5b243e523140da29c21cb">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/ug/IResourceEditorPage.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#acc74fe6c7da7e63b2ea1d480a2361f4147ebbb3">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/ug/IResourcePickerPlugin.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#885938a8d8043e07697b32530021aa027a4044ea">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/ug/ISearchResultCallBack.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#931f1aa230805ac98c5a6bfdd51df4311f95e210">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/ug/IStandardResPickerPlugin.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#77d3cb8a517e58b4ee99110562da3ee135f620ff">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/ug/LanguagePage.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#b2883497200584b6646bd1b1f3356a0ef0d64194">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/ug/LdapQueryBuilderDialog.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#adb29b2c567c0aa4970972c1f4e58df098d5cd82">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/ug/OULanguageFactory.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#e7d189048b13171524083df6e5d402c04486c5c8">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/ug/OUPage.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#ae0ca23304149e852bf6c74d1a34d63bc80092d6">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/ug/PickerEditorResourceSet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#199b5f966423982560ad2edc9143b1fa0c497cbc">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/ug/ResEditorAccountPage.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#2b9c427930fe019ca8420a1fdce9b5a0f63aabfd">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/ug/ResEditorCertGroupMembers.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#dd12b26e26c8eac953e8bb863bfb7cf3a1f74a4d">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/ug/ResEditorDynamicGpMembers.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#581359c2cbcdbbf0914305fa38c72de4434631a8">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/ug/ResEditorGroupInfo.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#453d7780d493bafe99982fb24d0c6ebac42aa967">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/ug/ResEditorGroupMembers.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#5afa577f11f04d0bf0dc16152b9b0ded0526f67c">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/ug/ResEditorGroupTitlePage.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#593bdb72dfbd67428c55285588352c8de4c38319">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/ug/ResEditorNTUser.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#94d7c470b24c9cd70a104863c13cb76bd905f4bd">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/ug/ResEditorOUTitlePage.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#c3aea2676114611f0841b7a38e2e904cb872776f">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/ug/ResEditorPasswordPage.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#b352cb9ff76ec436f93269c161baada01e460f47">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/ug/ResEditorPosixGpMembers.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#a4de9fb7ca65f2d36db9211087e4f8da53865e0c">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/ug/ResEditorPosixGroup.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#5fde0b27abf58ca367ec36b8c0f7ad5ff01885b9">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/ug/ResEditorPosixUser.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#de2eaf9ca68489983197b64d064331961bf3ca70">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/ug/ResEditorStaticGpMembers.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#959639d1b320009a1e6e1ca7108c353982826cbe">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/ug/ResEditorUserPage.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#52a1ed0651349d1a76ba42547d038a9aa2c66db7">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/ug/ResEditorUserTitlePage.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#0485fa79a5a60e82b32af2812a2941fae908aee1">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/ug/ResourceEditor.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#42b44aa7304458686de787ca7411f8475009f59c">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/ug/ResourceEditorActionPane.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#4e0470884415b2a12fc5e0d30dfb08d3836a5696">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/ug/ResourcePageObservable.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#60c92d167ef06fd444b30dbc0507577a93606931">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/ug/ResourcePickerDlg.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#cda89a6dba341e716ccf67772203a153b12ef928">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/ug/ResourcePickerDlgMenu.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#582a3d99c4d9b4183bd3021380de55c2c3b6e6fb">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/ug/SearchParameter.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#369c8b023d6a08b71eab60224d88ac343bae6bec">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/ug/SearchResultPanel.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#972e96c2a75f26bc7867e3e5f454b51f15895038">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/ug/TitlePanel.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#e0f44ea0098e8efef91b8970f24c2834eea1a685">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/ug/UGTextArea.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#82e2d52faf5a9e12eb25a8da5929413d91a3483d">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/ug/UserLanguageFactory.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#d9585ae9179197211cd70aa9e3b85c5e90afde41">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/ug/VLDirectoryTable.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#60a92117c193345e5c6a570068cb1680366b3258">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/ug/VLDirectoryTableModel.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#84b93f978adef850dbe3355526a7a05b799a3d2d">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/util/ADUtil.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#33a29379728b75da7f360911b4c50b7cc18b5644">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/util/About.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#34591d20ecb99b5bdfb8218f31a1fc753253b4fa">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/util/AbstractDialog.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#20df1ed77ba32cf48da19521a71aedd5344cb34f">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/util/AbstractModalDialog.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#e0ca9249aed9e9a95634e795946b629aac06c0bc">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/util/AcceptLanguage.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#bb689495d183348897449044607f5fdebd78c54a">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/util/AcceptLanguageList.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#98260824f92f2741d4b2f426ed2a8e719e2b1416">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/util/AdmTask.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#40a81a309633d37a527cc9a8b73bc039e53d26d8">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/util/AdmTaskArg.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#95feae9d420075f79f123cc83468046d1ce5c7c0">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/util/ArrowIcon.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#7768066d81bc63729f7a380692cb923bfd7f26b6">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/util/Assert.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#45e594a247a5c667ba5ad770100b2ddda4ab3f91">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/util/AssertionError.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#659ca68ae234e128214336ce91a75b65b519152b">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/util/AssertionException.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#487e86448c69886b223b6be753fe6fd8957ce834">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/util/BrowseHistoryListener.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#857738629b8d1d96e6e734a20d719048870943c8">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/util/BrowseHtmlDialog.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#26649c6ce617b4b51303334e127058e89ad01434">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/util/BrowseHtmlHistory.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#c1824891683ec6fcd796c19cc4fc33d1852e67c9">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/util/BrowseHtmlPane.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#f73a02b6ad781ac8a786fa891b05f3af82d61ca2">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/util/Browser.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#3c6c9697f1c9ae60957ecd415e4a8943b1766d15">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/util/ClassLoaderUtil.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#6fd64d32e5daf3dbbd468eb72ae858d3238c85db">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/util/ClipBoard.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#9d8397f413d35a005840fe089ae6b1d5e498675f">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/util/CompleteAcceptLanguageList.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#9847d32f64ef666c50fc3ad5aa0cd9d5b3b2a4d3">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/util/DatePicker.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#5252c740cb489a3ff4da4bda69bebb572dc681c4">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/util/DateTimePicker.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#7db4d21641d2fda4c2490049c8dbce450e65ceea">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/util/DayPicker.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#c923718f61076a50ecc9affc13d6ff82128d486e">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/util/Debug.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#85caa0f6fa5c7c0a39d55ea269fbb2f508224874">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/util/DefaultCellRenderer.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#4bf72b045359fd5b1d1dce563993720c307a0a00">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/util/DirUtil.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#b2d3e3a9fb64311865f46f742f3d2a244c36b999">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/util/DottedBorder.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#cd880da48f547d8182769f76cc6d12df0e2a9df0">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/util/ExtendedMouseAdapter.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#b33c04978f59a260a09f2242bfbf60cf34bb47e2">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/util/GridBagUtil.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#bab03fa28c8e674281c3f472ac733f4f4daef8c3">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/util/Help.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#70f48b53a40e5a5115e2d4b4877c3c4e63836405">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/util/HelpAdminURL.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#ef8608a38c44f8350122bea1c2a6e5dd3753c596">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/util/IProgressListener.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#a22c81cdb8572d56beb6b4aea919d6520e461e74">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/util/ISpinListener.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#382a0804a49729ab8d13b534b830abf610d0260b">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/util/IWizardControl.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#a1f2ae06a16ee6ac7cec0ad661dd0d7db3a17f1e">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/util/IWizardPageControl.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#abb6029be92314b639312f7b4d3a3d4b7eda8252">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/util/ImageInfo.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#2adea54f45aa0e6c3ae291913e31ee3b9e3ee1c1">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/util/IndexDialog.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#ab14c92a13124fe8e18d2ca96b5defeba58a7055">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/util/JButtonFactory.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#828d56ed454a831f87c1c9f95b14f1ce76b194c6">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/util/KingpinClassLoader.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#ed06a674528e9ac66520cdffd484515be0d9fdc6">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/util/KingpinLDAPConnection.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#b54471386bd76533b64203c0d2b99ad21816b8eb">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/util/LDAPInputStream.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#cdb293c145f6025c3c5533c9a325aff89eaa7be1">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/util/LDAPOutputStream.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#05de2565155c026e6f64c1d1ae5b826c58d63f2d">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/util/LDAPUtil.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#cec5dcb6ed3bafc9be5e6db44d2276b7e87d0d9a">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/util/LinkedList.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#a0fe05bb26f0a28d7be3be5614869f898801a2a1">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/util/LinkedListElement.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#1f892ff67bc5dd830429127ce965413ab828b14d">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/util/LocalJarClassLoader.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#39c581d5393cbade3a126b5ec670a9b20e327598">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/util/ModalDialogUtil.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#1d261274879f3a5a1d7a124bc377950e3262ed09">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/util/MultilineLabel.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#0a16c93d6836c175eee63ba5e0737bffec95e166">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/util/Permissions.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#f693a2bdf8df051ecf4e0c918b9c2f6d5beca0b8">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/util/RemoteImage.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#2c607aec4b91067e8e9789613aed22a6bc0e4ea7">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/util/ResourceSet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#53adfbc71c1382ec032be13cffb93f8449f18c9b">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/util/SimpleReferral.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#6ff7ce47cef8ed2fe76957c92c92d14156d9cb0e">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/util/SingleByteDocument.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#0c5fee821df80420968f69755a0653c7e8cae5d0">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/util/SingleBytePasswordField.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#c8799c88b5f4225153babba24532518a2e21b6f0">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/util/SingleByteTextArea.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#d3e558f12acafd5d24e00b6584ae2c4657c764df">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/util/SingleByteTextField.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#3e27ab7acf6e9c8e6dc7433c232ff9a4b68b36a2">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/util/SpinControl.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#5ff79d5aef3c9b4bba50c5eb61a0da74bde9500d">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/util/SpinEvent.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#19ce30f16d0f732b34e12d1d41cc4f040e3489ef">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/util/SwingPackageNameConverter.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#6a7a30c407f893cec135729381b1953f2dd29d8b">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/util/TableHeaderEditor.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#b46d279ed8c700d9701a6f7a0098882d95364e26">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/util/TimePicker.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#8fc261025324a5e7abe5615bd2ae9ba8e687a204">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/util/UITools.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#314e067428deb8d941aadb6c92762e7deeededbb">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/util/URLByteEncoder.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#6dc45f202a2bb6845504010bdf0ae0c6071507cd">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/util/UtilConsoleGlobals.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#30e5cd20f83387cc80e49f012f219ea343a4d4bc">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/client/util/Wizard.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#99775659564ba5006831b644010f63ea634c6d7e">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/nmclf/SecondaryTabbedPane.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#b0050649ae1042a5a700763cdd820d01db1a8175">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/nmclf/SuiBoundedRangeModel.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#70cc23962becdaa09e0be4df7a52d4f8d67b3049">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/nmclf/SuiCheckCellEditor.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#008d6e91c91dfa212ffd8d761371d72af2467162">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/nmclf/SuiCheckCellRenderer.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#6706ae111dad2da2c4b26b54fdd99c8e497eb7e6">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/nmclf/SuiComboBoxUI.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#2eb7ce83ad570245c58e417f1e7972a9d597fd9f">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/nmclf/SuiConstants.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#f0dd6b8a9913829c8f1c233e0355602a796613c7">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/nmclf/SuiIconText.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#8cf324a273ea2eee5841c9ddc57c762416a34ecc">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/nmclf/SuiListCellRenderer.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#dfacd4dd37fec84f864f71b4a807f0babb989700">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/nmclf/SuiLookAndFeel.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#01ba838661a54385cab4570e3d5bf1dc123cf7ac">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/nmclf/SuiOptionPane.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#84dacbf997c64b8000af90ded626da04b53ed96f">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/nmclf/SuiOptionPaneUI.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#54c63dd336bf3406f8bf12644bba4693ed92c048">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/nmclf/SuiPasswordField.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#aecd7d99e02c150c7a116215e405d111ad893481">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/nmclf/SuiScrollPane.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#797aeee64aa80ebf560cbcde4edecb8783452a46">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/nmclf/SuiTable.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#e9276119bde165465d29f27c8a242862a90f739c">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/nmclf/SuiTableCellRenderer.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#1b47ef1d6651a93ed55f82dbbe0c9d78163172f0">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/nmclf/SuiTableColumn.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#364871539a5ff412c738da44c8d13688e70830d8">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/nmclf/SuiTableHeaderBorder.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#4e0003d363eebd16201b822a8e2b205c2444d2f5">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/nmclf/SuiTableHeaderRenderer.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#550a953200016f6fce1890246d91548cb4455891">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/nmclf/SuiTableUI.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#ed2952ad70f196d6a5693460584026251c6f9519">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/nmclf/SuiTitle.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#2877d8ff1f83f772ef686dc52556b843676c1913">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/nmclf/SuiTreeCellRenderer.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#b0a1e4c44aa30a9d901f9f6cbc7accb88643b26f">
<span class="new-file">
+
base/console/src/main/java/com/netscape/management/nmclf/SuiTreeUI.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#f023178a551ab2f45a74607f44b28db2a7f2975e">
base/console/src/main/java/com/netscape/admin/certsrv/images/CertificateServer.gif
→
base/console/src/main/resources/com/netscape/admin/certsrv/images/CertificateServer.gif
</a>
</li>
<li class="file-stats">
<a href="#0ba50ea19d475ab22723d21e980f461817751319">
base/console/src/main/java/com/netscape/admin/certsrv/images/CertificateServerL.gif
→
base/console/src/main/resources/com/netscape/admin/certsrv/images/CertificateServerL.gif
</a>
</li>
<li class="file-stats">
<a href="#26059ce089f559c2b390222beb7001bdb427c7f2">
base/console/src/main/java/com/netscape/admin/certsrv/images/LOGobjs.gif
→
base/console/src/main/resources/com/netscape/admin/certsrv/images/LOGobjs.gif
</a>
</li>
<li class="file-stats">
<a href="#ec3da0b749973c2749c0c98298d066644fd06a2d">
base/console/src/main/java/com/netscape/admin/certsrv/images/UGobjs.gif
→
base/console/src/main/resources/com/netscape/admin/certsrv/images/UGobjs.gif
</a>
</li>
<li class="file-stats">
<a href="#8f3e386dd5dd7f57d8b815010fe529ea575c0deb">
base/console/src/main/java/com/netscape/admin/certsrv/images/acl.gif
→
base/console/src/main/resources/com/netscape/admin/certsrv/images/acl.gif
</a>
</li>
<li class="file-stats">
<a href="#2428c1efe1fc07ffbcb09bcb43986abc75fd2055">
base/console/src/main/java/com/netscape/admin/certsrv/images/aclobj.gif
→
base/console/src/main/resources/com/netscape/admin/certsrv/images/aclobj.gif
</a>
</li>
<li class="file-stats">
<a href="#2668d0f028d193218463ecce161abf7e6052ad6b">
base/console/src/main/java/com/netscape/admin/certsrv/images/aclplugin.gif
→
base/console/src/main/resources/com/netscape/admin/certsrv/images/aclplugin.gif
</a>
</li>
<li class="file-stats">
<a href="#60dc0be4600efd84e1d9ea3a85f2f83c5fd041db">
base/console/src/main/java/com/netscape/admin/certsrv/images/alertl.gif
→
base/console/src/main/resources/com/netscape/admin/certsrv/images/alertl.gif
</a>
</li>
<li class="file-stats">
<a href="#d84a1357ec35db32596740cc44d9168627e0bc17">
base/console/src/main/java/com/netscape/admin/certsrv/images/allfolder16n.gif
→
base/console/src/main/resources/com/netscape/admin/certsrv/images/allfolder16n.gif
</a>
</li>
<li class="file-stats">
<a href="#11f9e2b23802d72eb572de50cdeb975f66359ccb">
base/console/src/main/java/com/netscape/admin/certsrv/images/allgroup16n.gif
→
base/console/src/main/resources/com/netscape/admin/certsrv/images/allgroup16n.gif
</a>
</li>
<li class="file-stats">
<a href="#ba9b6c9fc953125e9d09ea65b735fc73ff10aed2">
base/console/src/main/java/com/netscape/admin/certsrv/images/alllogdoc16n.gif
→
base/console/src/main/resources/com/netscape/admin/certsrv/images/alllogdoc16n.gif
</a>
</li>
<li class="file-stats">
<a href="#47881a782274f2e586d201e9f50af9121111349f">
base/console/src/main/java/com/netscape/admin/certsrv/images/alllogfolder16n.gif
→
base/console/src/main/resources/com/netscape/admin/certsrv/images/alllogfolder16n.gif
</a>
</li>
<li class="file-stats">
<a href="#1906cd56a2487a8181e093eeae08fcabd6515719">
base/console/src/main/java/com/netscape/admin/certsrv/images/alluser16n.gif
→
base/console/src/main/resources/com/netscape/admin/certsrv/images/alluser16n.gif
</a>
</li>
<li class="file-stats">
<a href="#0f900cd0df8b232bd99ba11def7840448e4e75ed">
base/console/src/main/java/com/netscape/admin/certsrv/images/alluserwithcert16n.gif
→
base/console/src/main/resources/com/netscape/admin/certsrv/images/alluserwithcert16n.gif
</a>
</li>
<li class="file-stats">
<a href="#158bd9e8defc02e1e81c7e8174ed3511c20322cd">
base/console/src/main/java/com/netscape/admin/certsrv/images/auth.gif
→
base/console/src/main/resources/com/netscape/admin/certsrv/images/auth.gif
</a>
</li>
<li class="file-stats">
<a href="#d145b3882f984baf8ac83d04ead9b60aeb5781f6">
base/console/src/main/java/com/netscape/admin/certsrv/images/authobj.gif
→
base/console/src/main/resources/com/netscape/admin/certsrv/images/authobj.gif
</a>
</li>
<li class="file-stats">
<a href="#36125a409dcbfc69881cb647fda833e2b0cdf816">
base/console/src/main/java/com/netscape/admin/certsrv/images/authplugin.gif
→
base/console/src/main/resources/com/netscape/admin/certsrv/images/authplugin.gif
</a>
</li>
<li class="file-stats">
<a href="#d767ed0c71beb85f990bdbedf2bcdabdddf2aec5">
base/console/src/main/java/com/netscape/admin/certsrv/images/cert24.gif
→
base/console/src/main/resources/com/netscape/admin/certsrv/images/cert24.gif
</a>
</li>
<li class="file-stats">
<a href="#e68efec6faaa76ba31d2e0fa2a6f07c311e63a74">
base/console/src/main/java/com/netscape/admin/certsrv/images/cert41.gif
→
base/console/src/main/resources/com/netscape/admin/certsrv/images/cert41.gif
</a>
</li>
<li class="file-stats">
<a href="#050e21bbbeba84ca6ff26eeb684db01a27419faa">
base/console/src/main/java/com/netscape/admin/certsrv/images/cert42.gif
→
base/console/src/main/resources/com/netscape/admin/certsrv/images/cert42.gif
</a>
</li>
<li class="file-stats">
<a href="#f807fd897bfb0c10965e93f7fabbedf98d24dd3b">
base/console/src/main/java/com/netscape/admin/certsrv/images/cms-branding.gif
→
base/console/src/main/resources/com/netscape/admin/certsrv/images/cms-branding.gif
</a>
</li>
<li class="file-stats">
<a href="#11e886dcfba3ccb05b562d7b3146167e18b0adf3">
base/console/src/main/java/com/netscape/admin/certsrv/images/error.gif
→
base/console/src/main/resources/com/netscape/admin/certsrv/images/error.gif
</a>
</li>
<li class="file-stats">
<a href="#54d15e134880d6d73c9a4b00cd28c5bab36e9f93">
base/console/src/main/java/com/netscape/admin/certsrv/images/genobject.gif
→
base/console/src/main/resources/com/netscape/admin/certsrv/images/genobject.gif
</a>
</li>
<li class="file-stats">
<a href="#cc6943127d61fb0d6634fcf8ccad88133fc5e8cd">
base/console/src/main/java/com/netscape/admin/certsrv/images/jobobj.gif
→
base/console/src/main/resources/com/netscape/admin/certsrv/images/jobobj.gif
</a>
</li>
<li class="file-stats">
<a href="#42dfece2757df2265312a74374fc28506a3fa44c">
base/console/src/main/java/com/netscape/admin/certsrv/images/jobplugin.gif
→
base/console/src/main/resources/com/netscape/admin/certsrv/images/jobplugin.gif
</a>
</li>
<li class="file-stats">
<a href="#aceebe4169afaa8bb177590b4408f8435d7545a6">
base/console/src/main/java/com/netscape/admin/certsrv/images/jobs.gif
→
base/console/src/main/resources/com/netscape/admin/certsrv/images/jobs.gif
</a>
</li>
<li class="file-stats">
<a href="#79ec23593573022692e9f731672dd0114b5890d2">
base/console/src/main/java/com/netscape/admin/certsrv/images/ldapub.gif
→
base/console/src/main/resources/com/netscape/admin/certsrv/images/ldapub.gif
</a>
</li>
<li class="file-stats">
<a href="#6ee95481b6a6cf7e77b2792713f61a4b2c074e63">
base/console/src/main/java/com/netscape/admin/certsrv/images/messagel.gif
→
base/console/src/main/resources/com/netscape/admin/certsrv/images/messagel.gif
</a>
</li>
<li class="file-stats">
<a href="#45ee074c621026b020d1f449c242db4aecbff3c4">
base/console/src/main/java/com/netscape/admin/certsrv/images/notsecure.gif
→
base/console/src/main/resources/com/netscape/admin/certsrv/images/notsecure.gif
</a>
</li>
<li class="file-stats">
<a href="#90fcb91d45759c2bb20a6dc06fe139a42c4c297e">
base/console/src/main/java/com/netscape/admin/certsrv/images/plug.gif
→
base/console/src/main/resources/com/netscape/admin/certsrv/images/plug.gif
</a>
</li>
<li class="file-stats">
<a href="#b14331a5183f168e837c0a5e6a2dd25c9168a1f2">
base/console/src/main/java/com/netscape/admin/certsrv/images/plugin.gif
→
base/console/src/main/resources/com/netscape/admin/certsrv/images/plugin.gif
</a>
</li>
<li class="file-stats">
<a href="#9797f5d63ee7500008f98e3bbc275db129184451">
base/console/src/main/java/com/netscape/admin/certsrv/images/pluginfolder.gif
→
base/console/src/main/resources/com/netscape/admin/certsrv/images/pluginfolder.gif
</a>
</li>
<li class="file-stats">
<a href="#dcffc498bbc7887dfdfeec64322085055055d306">
base/console/src/main/java/com/netscape/admin/certsrv/images/red-ball-small.gif
→
base/console/src/main/resources/com/netscape/admin/certsrv/images/red-ball-small.gif
</a>
</li>
<li class="file-stats">
<a href="#68fd9590f8c889b8b3a3be7fb279c47d4009b11b">
base/console/src/main/java/com/netscape/admin/certsrv/images/rule-16.gif
→
base/console/src/main/resources/com/netscape/admin/certsrv/images/rule-16.gif
</a>
</li>
<li class="file-stats">
<a href="#bdacb635b06c71a85d3e2a73024371271e558dab">
base/console/src/main/java/com/netscape/admin/certsrv/images/ruleDisable-16.gif
→
base/console/src/main/resources/com/netscape/admin/certsrv/images/ruleDisable-16.gif
</a>
</li>
<li class="file-stats">
<a href="#e7136e2b62ff5be2d0866a1186a7c32d78974bfd">
base/console/src/main/java/com/netscape/admin/certsrv/images/ruleplugin-16.gif
→
base/console/src/main/resources/com/netscape/admin/certsrv/images/ruleplugin-16.gif
</a>
</li>
<li class="file-stats">
<a href="#1ab57dbb0607e4b035dfb3488d551c852a3aa386">
base/console/src/main/java/com/netscape/admin/certsrv/images/rulesobj.gif
→
base/console/src/main/resources/com/netscape/admin/certsrv/images/rulesobj.gif
</a>
</li>
<li class="file-stats">
<a href="#b30567f60c650ef5ee6bbf263c01cfd11f48e153">
base/console/src/main/java/com/netscape/admin/certsrv/images/secure.gif
→
base/console/src/main/resources/com/netscape/admin/certsrv/images/secure.gif
</a>
</li>
<li class="file-stats">
<a href="#59ec4db5e66d9a1c1e89177ab506838ccc85f684">
base/console/src/main/java/com/netscape/admin/certsrv/images/servlet-16.gif
→
base/console/src/main/resources/com/netscape/admin/certsrv/images/servlet-16.gif
</a>
</li>
<li class="file-stats">
<a href="#690fd7a18a91e37928cbd70c273b3779edc38492">
base/console/src/main/java/com/netscape/admin/certsrv/images/servlet-plugin-16.gif
→
base/console/src/main/resources/com/netscape/admin/certsrv/images/servlet-plugin-16.gif
</a>
</li>
<li class="file-stats">
<a href="#1db44f2ca14d4451db9936f8337debc6738f36f3">
base/console/src/main/java/com/netscape/admin/certsrv/images/servletobj.gif
→
base/console/src/main/resources/com/netscape/admin/certsrv/images/servletobj.gif
</a>
</li>
<li class="file-stats">
<a href="#c044d5a6816b76217b1655fedf9bbb8c6fa59d3e">
<span class="new-file">
+
base/console/src/main/resources/com/netscape/management/client/ace/ace.properties
</span>
</a>
</li>
<li class="file-stats">
<a href="#5f967acfbbdb39d70c113ac680e2a6c300884619">
<span class="new-file">
+
base/console/src/main/resources/com/netscape/management/client/acleditor/ACLResources.properties
</span>
</a>
</li>
<li class="file-stats">
<a href="#d14766872bdf59ed45c8ae57f30e8e8b7de6bbe5">
themes/dogtag/common-ui/shared/esc/images/HelpButton.gif
→
base/console/src/main/resources/com/netscape/management/client/acleditor/images/allgroup16n.gif
</a>
</li>
<li class="file-stats">
<a href="#1e88cd17bab2c724f351eb4c3b05352c29fc4b49">
themes/dogtag/common-ui/shared/esc/images/OKButton.gif
→
base/console/src/main/resources/com/netscape/management/client/acleditor/images/allhost16n.gif
</a>
</li>
<li class="file-stats">
<a href="#4a59422f03ab2ae565cd2afeefa70ddb99f153dc">
themes/dogtag/common-ui/shared/esc/images/CloseButton.gif
→
base/console/src/main/resources/com/netscape/management/client/acleditor/images/alluser16n.gif
</a>
</li>
<li class="file-stats">
<a href="#d0f87a096c74f993728172936a4067eac53f9be3">
<span class="new-file">
+
base/console/src/main/resources/com/netscape/management/client/alias.properties
</span>
</a>
</li>
<li class="file-stats">
<a href="#c397779c1419738ecff2da22dd42a041a2f91dd1">
<span class="new-file">
+
base/console/src/main/resources/com/netscape/management/client/comm/HttpsChannel.properties
</span>
</a>
</li>
<li class="file-stats">
<a href="#039ee3e7d1009858d07cae13a0fa1948c0e4f1fc">
<span class="new-file">
+
base/console/src/main/resources/com/netscape/management/client/components/Wizard.properties
</span>
</a>
</li>
<li class="file-stats">
<a href="#5467dc9feaa244f38565a5c3855f810261bba27b">
<span class="new-file">
+
base/console/src/main/resources/com/netscape/management/client/components/components.properties
</span>
</a>
</li>
<li class="file-stats">
<a href="#ba7e2315d4a3856d80cff8db6f1d0de99697d14f">
<span class="new-file">
+
base/console/src/main/resources/com/netscape/management/client/components/dirtree.properties
</span>
</a>
</li>
<li class="file-stats">
<a href="#8464577c3abe7ce22b8afbf5806d70ea7da6713c">
<span class="new-file">
+
base/console/src/main/resources/com/netscape/management/client/components/images/ascending.gif
</span>
</a>
</li>
<li class="file-stats">
<a href="#01692797039b2bcda0ad77c15c39a1ec84e6b3b0">
<span class="new-file">
+
base/console/src/main/resources/com/netscape/management/client/components/images/checkHeader.gif
</span>
</a>
</li>
<li class="file-stats">
<a href="#96faef1db2f4686865151abd9bc5564f3f40ad8d">
<span class="new-file">
+
base/console/src/main/resources/com/netscape/management/client/components/images/descending.gif
</span>
</a>
</li>
<li class="file-stats">
<a href="#c477a6560d4f4cdb168dc2e74498679b796de8e1">
<span class="new-file">
+
base/console/src/main/resources/com/netscape/management/client/components/images/downArrow.gif
</span>
</a>
</li>
<li class="file-stats">
<a href="#2b2a6d29a3b3a0851566cb6d802bb059290d480b">
<span class="new-file">
+
base/console/src/main/resources/com/netscape/management/client/components/images/leftArrow.gif
</span>
</a>
</li>
<li class="file-stats">
<a href="#730394ed2cf26c32289b5b525a6a628639fd280c">
<span class="new-file">
+
base/console/src/main/resources/com/netscape/management/client/components/images/moon.gif
</span>
</a>
</li>
<li class="file-stats">
<a href="#bbc068226534c2ff5e6d3c2c9b39255556108a60">
<span class="new-file">
+
base/console/src/main/resources/com/netscape/management/client/components/images/rightArrow.gif
</span>
</a>
</li>
<li class="file-stats">
<a href="#4ff8ff378a45ed8931b6db5d18574c58939e0502">
<span class="new-file">
+
base/console/src/main/resources/com/netscape/management/client/components/images/sun.gif
</span>
</a>
</li>
<li class="file-stats">
<a href="#c4b610e87548f158052269c5004447e689ac756a">
<span class="new-file">
+
base/console/src/main/resources/com/netscape/management/client/components/images/upArrow.gif
</span>
</a>
</li>
<li class="file-stats">
<a href="#4b82d1a64022632ea2aa61f7ff381cd5225526df">
<span class="new-file">
+
base/console/src/main/resources/com/netscape/management/client/console/console.properties
</span>
</a>
</li>
<li class="file-stats">
<a href="#77eb8202746326ec7059b5a9a4e989b170e93027">
<span class="new-file">
+
base/console/src/main/resources/com/netscape/management/client/default.properties
</span>
</a>
</li>
<li class="file-stats">
<a href="#4e8835827c4f5dda48842f3cf20ee6883931ac90">
<span class="new-file">
+
base/console/src/main/resources/com/netscape/management/client/defaultAbout.properties
</span>
</a>
</li>
<li class="file-stats">
<a href="#59dc50746dbabd12b79a818c5f47662229fda2ad">
<span class="new-file">
+
base/console/src/main/resources/com/netscape/management/client/defaultLicense.properties
</span>
</a>
</li>
<li class="file-stats">
<a href="#9123cf106e32997410091dce339e6dd642d153ba">
<span class="new-file">
+
base/console/src/main/resources/com/netscape/management/client/images/ConsoleBanner.gif
</span>
</a>
</li>
<li class="file-stats">
<a href="#6c89be82656eab1d9519160c1f256dd246a8e145">
<span class="new-file">
+
base/console/src/main/resources/com/netscape/management/client/images/OldServer.gif
</span>
</a>
</li>
<li class="file-stats">
<a href="#f7674c3916bc650f494b96b94d5a34f23b092142">
<span class="new-file">
+
base/console/src/main/resources/com/netscape/management/client/images/admin.gif
</span>
</a>
</li>
<li class="file-stats">
<a href="#86b5e90e161ac8de6aa15ddf850c454acd05b594">
<span class="new-file">
+
base/console/src/main/resources/com/netscape/management/client/images/all.gif
</span>
</a>
</li>
<li class="file-stats">
<a href="#60323d4ddb42993ff2ac4ac80036d822de4a1807">
<span class="new-file">
+
base/console/src/main/resources/com/netscape/management/client/images/anyone.gif
</span>
</a>
</li>
<li class="file-stats">
<a href="#6cabd62df1c4e61a6dd263cad3f5ea5eabaa61b5">
<span class="new-file">
+
base/console/src/main/resources/com/netscape/management/client/images/error16.gif
</span>
</a>
</li>
<li class="file-stats">
<a href="#9cd92443b1bb77afc9b7befe335603fb6ffd82ba">
<span class="new-file">
+
base/console/src/main/resources/com/netscape/management/client/images/folder.gif
</span>
</a>
</li>
<li class="file-stats">
<a href="#8e661d2b8bbfcb45732d55cf45096ea5be3b8388">
<span class="new-file">
+
base/console/src/main/resources/com/netscape/management/client/images/group.gif
</span>
</a>
</li>
<li class="file-stats">
<a href="#ee51eecc9a7980dbdfa61c04634d3ec2c6d723ff">
<span class="new-file">
+
base/console/src/main/resources/com/netscape/management/client/images/host.gif
</span>
</a>
</li>
<li class="file-stats">
<a href="#f0dbe1ddd1de8235aec63736d355cc265321124c">
themes/dogtag/common-ui/shared/esc/images/CancelButton.gif
→
base/console/src/main/resources/com/netscape/management/client/images/log.gif
</a>
</li>
<li class="file-stats">
<a href="#5409f6f0108ec9fb3d0bdf0911e6e08afa161bdc">
<span class="new-file">
+
base/console/src/main/resources/com/netscape/management/client/images/logfolder.gif
</span>
</a>
</li>
<li class="file-stats">
<a href="#127dc98307d0e3fae8222d74f8290ff2caa20bcd">
<span class="new-file">
+
base/console/src/main/resources/com/netscape/management/client/images/logo16.gif
</span>
</a>
</li>
<li class="file-stats">
<a href="#e7f8f7ba17208de309f135804d536cc0f3cb1c81">
<span class="new-file">
+
base/console/src/main/resources/com/netscape/management/client/images/logo32.gif
</span>
</a>
</li>
<li class="file-stats">
<a href="#c6e26bfa590e1b44a8fdc0d67dfed0d9e09867f5">
<span class="new-file">
+
base/console/src/main/resources/com/netscape/management/client/images/notsecure.gif
</span>
</a>
</li>
<li class="file-stats">
<a href="#9bfe46c0cdc356c3619b75299a4fc544f05ab2fa">
<span class="new-file">
+
base/console/src/main/resources/com/netscape/management/client/images/ou.gif
</span>
</a>
</li>
<li class="file-stats">
<a href="#6f76412dcdda8ae161b95bf8e83badaa38340c78">
<span class="new-file">
+
base/console/src/main/resources/com/netscape/management/client/images/red-ball-small.gif
</span>
</a>
</li>
<li class="file-stats">
<a href="#fd52128aa4ee4389ef83e315c41c070449165506">
<span class="new-file">
+
base/console/src/main/resources/com/netscape/management/client/images/red-ball.gif
</span>
</a>
</li>
<li class="file-stats">
<a href="#12f072072a295e603ae7c1f4b96860963f73ba08">
<span class="new-file">
+
base/console/src/main/resources/com/netscape/management/client/images/secure.gif
</span>
</a>
</li>
<li class="file-stats">
<a href="#cc5e807abc02a5e9493c3b2d530ce7969c4de978">
<span class="new-file">
+
base/console/src/main/resources/com/netscape/management/client/images/self.gif
</span>
</a>
</li>
<li class="file-stats">
<a href="#8e65160146201cdb2a431fda5beb4bd46292d47c">
<span class="new-file">
+
base/console/src/main/resources/com/netscape/management/client/images/task.gif
</span>
</a>
</li>
<li class="file-stats">
<a href="#9fae97035fd3f1f7f96d6834b20255086fb6d012">
<span class="new-file">
+
base/console/src/main/resources/com/netscape/management/client/images/user.gif
</span>
</a>
</li>
<li class="file-stats">
<a href="#e4fff5cca09d44905440804868da46db03228648">
<span class="new-file">
+
base/console/src/main/resources/com/netscape/management/client/images/warn16.gif
</span>
</a>
</li>
<li class="file-stats">
<a href="#8abbac5e50e973cd6ac4abcfecca727394540137">
<span class="new-file">
+
base/console/src/main/resources/com/netscape/management/client/keycert/CertManagementResource.properties
</span>
</a>
</li>
<li class="file-stats">
<a href="#572d418fbc9a4a9b7b3978259ab002dce5f8cf98">
<span class="new-file">
+
base/console/src/main/resources/com/netscape/management/client/keycert/ChangeKeyPasswordDialogResource.properties
</span>
</a>
</li>
<li class="file-stats">
<a href="#96da079b283ee4f4413f49ecdbc4faa23d02be83">
<span class="new-file">
+
base/console/src/main/resources/com/netscape/management/client/keycert/CipherResource.properties
</span>
</a>
</li>
<li class="file-stats">
<a href="#49c33d8f6265b8c3b4e2dcf9b47569f11ba554aa">
<span class="new-file">
+
base/console/src/main/resources/com/netscape/management/client/keycert/EncryptionPaneResource.properties
</span>
</a>
</li>
<li class="file-stats">
<a href="#5b62a9f9a7f92705a6583f860014a9d1621bd919">
<span class="new-file">
+
base/console/src/main/resources/com/netscape/management/client/keycert/KeyCertTaskInfoResource.properties
</span>
</a>
</li>
<li class="file-stats">
<a href="#58b03830ee60cec8938e1951a10c5fa985c18910">
<span class="new-file">
+
base/console/src/main/resources/com/netscape/management/client/keycert/KeyCertWizardResource.properties
</span>
</a>
</li>
<li class="file-stats">
<a href="#7037af9596b6c105e785deb5c52a78dbabebc188">
<span class="new-file">
+
base/console/src/main/resources/com/netscape/management/client/keycert/PKCS11ManagementResource.properties
</span>
</a>
</li>
<li class="file-stats">
<a href="#5794aee00d90ededef8e1d97833da2cf861a84cc">
<span class="new-file">
+
base/console/src/main/resources/com/netscape/management/client/preferences/preferences.properties
</span>
</a>
</li>
<li class="file-stats">
<a href="#b3d38f7b67dc9d9f3439b016cd4d5bf66c143018">
<span class="new-file">
+
base/console/src/main/resources/com/netscape/management/client/security/KeyCertWizardResource.properties
</span>
</a>
</li>
<li class="file-stats">
<a href="#0afb651f6fadebd942bc647c9656ec2ef244cd35">
<span class="new-file">
+
base/console/src/main/resources/com/netscape/management/client/security/ServerAuthResource.properties
</span>
</a>
</li>
<li class="file-stats">
<a href="#53fde896c2063f853b5aa5cf79c5c2a5cbcdc637">
<span class="new-file">
+
base/console/src/main/resources/com/netscape/management/client/security/securityResource.properties
</span>
</a>
</li>
<li class="file-stats">
<a href="#3d530fc6f85c086d184159f0eb179179c53d73da">
<span class="new-file">
+
base/console/src/main/resources/com/netscape/management/client/topology/images/domain16.gif
</span>
</a>
</li>
<li class="file-stats">
<a href="#882a379b177940b998fa322fb77c01567c8101de">
<span class="new-file">
+
base/console/src/main/resources/com/netscape/management/client/topology/images/failedLoad.gif
</span>
</a>
</li>
<li class="file-stats">
<a href="#2c896ad86f507882993534c3d61271b6fa7a29f8">
<span class="new-file">
+
base/console/src/main/resources/com/netscape/management/client/topology/images/host.gif
</span>
</a>
</li>
<li class="file-stats">
<a href="#8ff11b825359d5d904522a2a7e3ba5bcef062536">
<span class="new-file">
+
base/console/src/main/resources/com/netscape/management/client/topology/images/host16.gif
</span>
</a>
</li>
<li class="file-stats">
<a href="#8fa2a7e43ff0b34b1144565b78d91c0c6e2c22ba">
<span class="new-file">
+
base/console/src/main/resources/com/netscape/management/client/topology/images/load.gif
</span>
</a>
</li>
<li class="file-stats">
<a href="#01a3c74f84f37a89379c45cf42ccdab98baa72b6">
<span class="new-file">
+
base/console/src/main/resources/com/netscape/management/client/topology/images/red-ball-small.gif
</span>
</a>
</li>
<li class="file-stats">
<a href="#0a9301e95706718eaba61e46bbe27c333eb0b5ae">
<span class="new-file">
+
base/console/src/main/resources/com/netscape/management/client/topology/topology.properties
</span>
</a>
</li>
<li class="file-stats">
<a href="#09bb4ce580c98753f58c8217895ebfd2bab11d76">
<span class="new-file">
+
base/console/src/main/resources/com/netscape/management/client/ug/PickerEditorResource.properties
</span>
</a>
</li>
<li class="file-stats">
<a href="#0ffa57384d2e3ddf34327a5f61e0aea7b4f62948">
<span class="new-file">
+
base/console/src/main/resources/com/netscape/management/client/util/default.properties
</span>
</a>
</li>
<li class="file-stats">
<a href="#ba63eb8dd1acf7f2663954cb338d288d949fc858">
<span class="new-file">
+
base/console/src/main/resources/com/netscape/management/nmclf/icons/Computer.gif
</span>
</a>
</li>
<li class="file-stats">
<a href="#f40910ccd6c3738de384c5a8f33c69f966029230">
<span class="new-file">
+
base/console/src/main/resources/com/netscape/management/nmclf/icons/DetailsView.gif
</span>
</a>
</li>
<li class="file-stats">
<a href="#bdeb31451f0e6576cefbb59ed4d14b5149a9ba68">
<span class="new-file">
+
base/console/src/main/resources/com/netscape/management/nmclf/icons/Directory.gif
</span>
</a>
</li>
<li class="file-stats">
<a href="#a623ab177ccf221c35d210123f6871c46a2d17f3">
<span class="new-file">
+
base/console/src/main/resources/com/netscape/management/nmclf/icons/Error.gif
</span>
</a>
</li>
<li class="file-stats">
<a href="#8d2b2c66c4b818c9e287a974bbeada54f892cdf3">
<span class="new-file">
+
base/console/src/main/resources/com/netscape/management/nmclf/icons/File.gif
</span>
</a>
</li>
<li class="file-stats">
<a href="#149fe1478faaef417cb5f1fececb498f57378538">
<span class="new-file">
+
base/console/src/main/resources/com/netscape/management/nmclf/icons/FloppyDrive.gif
</span>
</a>
</li>
<li class="file-stats">
<a href="#a14d2a47bcb769d09dcc63232faae6c987967f92">
<span class="new-file">
+
base/console/src/main/resources/com/netscape/management/nmclf/icons/Folder.gif
</span>
</a>
</li>
<li class="file-stats">
<a href="#c1ddbd3e1dd5df9b9a4863b6ef5ecd8105ec1636">
<span class="new-file">
+
base/console/src/main/resources/com/netscape/management/nmclf/icons/HardDrive.gif
</span>
</a>
</li>
<li class="file-stats">
<a href="#97643ac9f58eb7815615187c956a065214d71857">
<span class="new-file">
+
base/console/src/main/resources/com/netscape/management/nmclf/icons/HomeFolder.gif
</span>
</a>
</li>
<li class="file-stats">
<a href="#d8d4e29e168cac503bf0702f87df55b856832e03">
<span class="new-file">
+
base/console/src/main/resources/com/netscape/management/nmclf/icons/Inform.gif
</span>
</a>
</li>
<li class="file-stats">
<a href="#a22044c0ca8bf86c73e7a704e9e89fb8c25cc235">
<span class="new-file">
+
base/console/src/main/resources/com/netscape/management/nmclf/icons/JavaCup.gif
</span>
</a>
</li>
<li class="file-stats">
<a href="#8a9ff234abad28ddbd7b924237a637ec1dee919c">
<span class="new-file">
+
base/console/src/main/resources/com/netscape/management/nmclf/icons/ListView.gif
</span>
</a>
</li>
<li class="file-stats">
<a href="#db682d22a043def676d2be3e41f187495b60a307">
<span class="new-file">
+
base/console/src/main/resources/com/netscape/management/nmclf/icons/NewFolder.gif
</span>
</a>
</li>
<li class="file-stats">
<a href="#335cf8afad7a196ff5967668d3851d52da97b8cb">
<span class="new-file">
+
base/console/src/main/resources/com/netscape/management/nmclf/icons/Question.gif
</span>
</a>
</li>
<li class="file-stats">
<a href="#39968af83de738894ecf8452cc6d68f87b8c5616">
<span class="new-file">
+
base/console/src/main/resources/com/netscape/management/nmclf/icons/TreeClosed.gif
</span>
</a>
</li>
<li class="file-stats">
<a href="#b4a75e70e5087561f17f67b2a31e69a62f8f9e72">
<span class="new-file">
+
base/console/src/main/resources/com/netscape/management/nmclf/icons/TreeCollapser.gif
</span>
</a>
</li>
<li class="file-stats">
<a href="#f902aab39ce29910e27a65cedff0351112ddca5e">
<span class="new-file">
+
base/console/src/main/resources/com/netscape/management/nmclf/icons/TreeExpander.gif
</span>
</a>
</li>
<li class="file-stats">
<a href="#59e9754b550ba55a950f2f7475055b86c1a6f151">
<span class="new-file">
+
base/console/src/main/resources/com/netscape/management/nmclf/icons/TreeLeaf.gif
</span>
</a>
</li>
<li class="file-stats">
<a href="#626ea71fef44bdd2ea17a810bbd516afe936288f">
<span class="new-file">
+
base/console/src/main/resources/com/netscape/management/nmclf/icons/TreeOpen.gif
</span>
</a>
</li>
<li class="file-stats">
<a href="#cdf94b022c2798748e1a4d67ed6fb2348b0cff39">
<span class="new-file">
+
base/console/src/main/resources/com/netscape/management/nmclf/icons/UpFolder.gif
</span>
</a>
</li>
<li class="file-stats">
<a href="#32fb2e3c4b89db33f82f8b2a42a4308abb7d828c">
<span class="new-file">
+
base/console/src/main/resources/com/netscape/management/nmclf/icons/Warn.gif
</span>
</a>
</li>
<li class="file-stats">
<a href="#dba8534b0a405161a589a94b7633fd18bf2835ce">
<span class="new-file">
+
base/console/src/main/resources/com/netscape/management/nmclf/icons/group.gif
</span>
</a>
</li>
<li class="file-stats">
<a href="#00addac2873becdbefd4d5fcf0c3b316384175ca">
<span class="new-file">
+
base/console/src/main/resources/com/netscape/management/nmclf/icons/group24.gif
</span>
</a>
</li>
<li class="file-stats">
<a href="#571c9ca672c6827f81d291aa70c434e73ea9596a">
<span class="new-file">
+
base/console/src/main/resources/com/netscape/management/nmclf/icons/ou.gif
</span>
</a>
</li>
<li class="file-stats">
<a href="#a0fe9e59decf9d77e20dcf9deba090b55d71ccdc">
<span class="new-file">
+
base/console/src/main/resources/com/netscape/management/nmclf/icons/ou24.gif
</span>
</a>
</li>
<li class="file-stats">
<a href="#e2e97975ac653f05d1895836eb2cd20d192d136f">
<span class="new-file">
+
base/console/src/main/resources/com/netscape/management/nmclf/icons/user.gif
</span>
</a>
</li>
<li class="file-stats">
<a href="#a52893462f0b92bc49d87d59880da3213ff66eab">
<span class="new-file">
+
base/console/src/main/resources/com/netscape/management/nmclf/icons/user24.gif
</span>
</a>
</li>
<li class="file-stats">
<a href="#02e56360595c30a9f7a6a4bfb6276a1062680b4d">
base/est/CMakeLists.txt
</a>
</li>
<li class="file-stats">
<a href="#a68c8ec022f0937d02f4a719fa5bdec3f3a9eeff">
<span class="new-file">
+
base/est/bin/estauthz
</span>
</a>
</li>
<li class="file-stats">
<a href="#7b1ebb840d6816924d24c7e447762412f237052a">
<span class="deleted-file">
−
base/est/conf/realm.conf
</span>
</a>
</li>
<li class="file-stats">
<a href="#8f644f7e1b3bfaada136ac5543deb5c3790599c5">
<span class="new-file">
+
base/est/pom.xml
</span>
</a>
</li>
<li class="file-stats">
<a href="#31cbdf65dcba73dc5fac10d67ad0b9b9942426a1">
<span class="new-file">
+
base/est/shared/CS.cfg
</span>
</a>
</li>
<li class="file-stats">
<a href="#f2b6aeccda01b867825412e08ab4c5092f151be6">
<span class="new-file">
+
base/est/shared/authorizer.conf
</span>
</a>
</li>
<li class="file-stats">
<a href="#e8b721938b34b99645eb937959cc850179275aae">
<span class="new-file">
+
base/est/shared/backend.conf
</span>
</a>
</li>
<li class="file-stats">
<a href="#df8e61a3fd0365586b8cc4d16a5281b673f29924">
<span class="new-file">
+
base/est/shared/realm/ds/create.ldif
</span>
</a>
</li>
<li class="file-stats">
<a href="#19f6b6934b837ca311ecc0f68a952ae9047678eb">
<span class="new-file">
+
base/est/shared/realm/ds/ds.conf
</span>
</a>
</li>
<li class="file-stats">
<a href="#c6e197ed01764edd2a0e1583ddd0397df7c2220b">
<span class="new-file">
+
base/est/shared/realm/in-memory/in-memory.conf
</span>
</a>
</li>
<li class="file-stats">
<a href="#0e8096276fca825d06387471f73eecd059a31dbd">
<span class="new-file">
+
base/est/shared/realm/postgresql/create.sql
</span>
</a>
</li>
<li class="file-stats">
<a href="#43f5312d0cd8fc310064b18ee9e64454fd196d94">
<span class="new-file">
+
base/est/shared/realm/postgresql/postgresql.conf
</span>
</a>
</li>
<li class="file-stats">
<a href="#59c9b156262f627a08b79cca382756346c10f70a">
<span class="new-file">
+
base/est/shared/realm/postgresql/statements.conf
</span>
</a>
</li>
<li class="file-stats">
<a href="#374bf18adcaec339f7d16e670110713cccc441af">
base/est/src/main/java/org/dogtagpki/est/DogtagRABackend.java
</a>
</li>
<li class="file-stats">
<a href="#8565770dd70931c46c053c1bce28ba970b621039">
<span class="deleted-file">
−
base/est/src/main/java/org/dogtagpki/est/ESTApplication.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#f47910e7047025f184d7bca70c4294c590ba8725">
base/est/src/main/java/org/dogtagpki/est/ESTBackend.java
</a>
</li>
<li class="file-stats">
<a href="#19fef28da563f50c1d066460b3b5048dd06beac7">
base/est/src/main/java/org/dogtagpki/est/ESTEngine.java
</a>
</li>
<li class="file-stats">
<a href="#3c8cf57ed5e924bed3b3db79342615e068031e06">
base/est/src/main/java/org/dogtagpki/est/ESTRequestAuthorizer.java
</a>
</li>
<li class="file-stats">
<a href="#b85d29e4a1105579c212d83f5821ccf22d5aee74">
base/est/src/main/java/org/dogtagpki/est/ESTFrontend.java
→
base/est/src/main/java/org/dogtagpki/est/ESTServlet.java
</a>
</li>
<li class="file-stats">
<a href="#199fac899c56f80762e8e892967cc9d9b0394d5a">
base/est/src/main/java/org/dogtagpki/est/ESTWebListener.java
</a>
</li>
<li class="file-stats">
<a href="#20c05b06b9e81e8adba162a9bc3e0337ef25e8b5">
base/est/src/main/java/org/dogtagpki/est/ExternalProcessRequestAuthorizer.java
</a>
</li>
<li class="file-stats">
<a href="#71bbd332c792f92b498046ce2fb22334013d2724">
<span class="deleted-file">
−
base/est/src/main/java/org/dogtagpki/est/HandleBadAcceptHeaderRequestFilter.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#26ad8f288eb9be5303e8b3607db1b12fb5f7b9d4">
<span class="deleted-file">
−
base/est/src/main/java/org/dogtagpki/est/ReformatContentTypeResponseFilter.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#033a0e69707ac60a2a02bb993d021bea512bdd51">
<span class="new-file">
+
base/est/tomcat-10.1/conf/Catalina/localhost/est.xml
</span>
</a>
</li>
<li class="file-stats">
<a href="#1ae5f76958aef9a569bdab7090edf84c06260422">
base/est/webapps/est/WEB-INF/web.xml
</a>
</li>
<li class="file-stats">
<a href="#e28bda17b5fc0de5fc681edd13f8ac0b30cae58b">
base/server/share/webapps/pki/admin/console/config/topmenu.vm
→
base/est/webapps/est/index.jsp
</a>
</li>
<li class="file-stats">
<a href="#db82dd82ee2db2d4ddaf5ecf7a3f6eee2a8facb7">
base/javadoc/CMakeLists.txt
</a>
</li>
<li class="file-stats">
<a href="#4de37ea5683240fe0c66989d535d3384e9c4853f">
base/kra/CMakeLists.txt
</a>
</li>
<li class="file-stats">
<a href="#0a1b7922ae152a8eaf2cce616cf9336e63be4019">
<span class="new-file">
+
base/kra/bin/pki-kra-run
</span>
</a>
</li>
<li class="file-stats">
<a href="#67662cb7d91744dc4cbd803dc2bf552db1f30118">
base/kra/database/ds/create.ldif
</a>
</li>
<li class="file-stats">
<a href="#8d6f3473e1af4a8bd1cfa8ffce6e0aa8f0d56aed">
base/kra/pom.xml
</a>
</li>
<li class="file-stats">
<a href="#19d9afb5d4d9fbd70ed946b3987365bf1267769b">
base/kra/shared/conf/CS.cfg
</a>
</li>
<li class="file-stats">
<a href="#0a47ea25eeef6478f6412927a80fdf77d4dde0a2">
base/kra/shared/webapps/kra/WEB-INF/web.xml
</a>
</li>
<li class="file-stats">
<a href="#6d7f131044fb30416a5df65bd1eae80a493d3995">
base/server/src/main/java/com/netscape/cmscore/cert/CertPrettyPrint.java
→
base/kra/src/main/java/com/netscape/cms/listeners/KRARequestInQListener.java
</a>
</li>
<li class="file-stats">
<a href="#459bf426a998b0e0f690e3ce181af75c87e680a3">
base/common/src/main/java/com/netscape/certsrv/notification/IEmailResolverKeys.java
→
base/kra/src/main/java/com/netscape/cms/servlet/admin/KRAACLAdminServlet.java
</a>
</li>
<li class="file-stats">
<a href="#5b588dd6449e6650c898b3bb409e0843ec28cacd">
base/kra/src/main/java/com/netscape/cms/servlet/admin/KRAAdminServlet.java
</a>
</li>
<li class="file-stats">
<a href="#2de66456c89d8ecb1b5dedbb129b51d984d47667">
<span class="new-file">
+
base/kra/src/main/java/com/netscape/cms/servlet/admin/KRAAuthAdminServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#6b4a7560d5bd7c77b25834031b116c16f1cfc70b">
base/kra/src/main/java/com/netscape/cms/servlet/admin/KRACMSAdminServlet.java
</a>
</li>
<li class="file-stats">
<a href="#9f6bd16c529a44faa8cd88ca59d7b21ac4f3a20d">
<span class="new-file">
+
base/kra/src/main/java/com/netscape/cms/servlet/admin/KRAJobsAdminServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#fb6079c8f7a1394f2e02a1d8ad337cba49c25207">
<span class="new-file">
+
base/kra/src/main/java/com/netscape/cms/servlet/admin/KRALogAdminServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#1f56d7bc7847c524c61768d8f189e54cade5227b">
base/kra/src/main/java/com/netscape/cms/servlet/admin/KRAPolicyAdminServlet.java
</a>
</li>
<li class="file-stats">
<a href="#5014a03e6d76563ea14452df39bc664c0c8b9339">
<span class="new-file">
+
base/kra/src/main/java/com/netscape/cms/servlet/admin/KRAUsrGrpAdminServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#a755afae436b88ec093a36a62e6817ad65cb1553">
<span class="new-file">
+
base/kra/src/main/java/com/netscape/cms/servlet/base/KRADynamicVariables.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#b5638270f34d8549e2117b6f4e92c19753893fc3">
<span class="new-file">
+
base/kra/src/main/java/com/netscape/cms/servlet/base/KRAGrantRecovery.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#4f14873c425e73a91a54c13ab709a2f67576a00d">
<span class="new-file">
+
base/kra/src/main/java/com/netscape/cms/servlet/base/KRAHeaderServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#f7079c7cebf20232a49707df943231e05272c295">
<span class="new-file">
+
base/kra/src/main/java/com/netscape/cms/servlet/base/KRAIndexServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#827b505df77618a84d213b0acec3103f96a423d0">
<span class="new-file">
+
base/kra/src/main/java/com/netscape/cms/servlet/base/KRAListRequests.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#afbb732279919d3932bea7259c87cd96f4abb7f3">
<span class="new-file">
+
base/kra/src/main/java/com/netscape/cms/servlet/base/KRAPortsServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#5345dd3b59a2e42985033e71893710c7598769e8">
<span class="new-file">
+
base/kra/src/main/java/com/netscape/cms/servlet/base/KRASearchKey.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#8c89e25593e14ac5a82df1cd6d7947a0774e7e69">
<span class="new-file">
+
base/kra/src/main/java/com/netscape/cms/servlet/base/KRASearchKeyForRecovery.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#d0e170e988569f4fda1a56ef6607a5bcc9ca951b">
base/kra/src/main/java/com/netscape/cms/servlet/connector/GenerateKeyPairServlet.java
</a>
</li>
<li class="file-stats">
<a href="#531e1d5fce22bc764b0261be97a11b3d0b47e20f">
<span class="new-file">
+
base/kra/src/main/java/com/netscape/cms/servlet/connector/KRAConnectorServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#49730337733f27334b849ab16de9b8a39fa2a88f">
base/kra/src/main/java/com/netscape/cms/servlet/connector/TokenKeyRecoveryServlet.java
</a>
</li>
<li class="file-stats">
<a href="#471129977c3a6a50a7c27c2410c61788bbe403dc">
base/kra/src/main/java/com/netscape/cms/servlet/csadmin/GetTransportCert.java
</a>
</li>
<li class="file-stats">
<a href="#d98430676bc18ddab17b0a94e1c60c79364a16d7">
<span class="new-file">
+
base/kra/src/main/java/com/netscape/cms/servlet/csadmin/KRAAdminUpdateDomainXML.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#7aa1bbadf2f88b68dd57bba728c177790cd69a2f">
<span class="new-file">
+
base/kra/src/main/java/com/netscape/cms/servlet/csadmin/KRADownloadPKCS12.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#c7349ab98a8227ed2bcd83a474da2965fbe15567">
<span class="new-file">
+
base/kra/src/main/java/com/netscape/cms/servlet/csadmin/KRAGetConfigEntries.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#a535f3c910fbd7775dd7738a3f3b5523f3d3990a">
<span class="new-file">
+
base/kra/src/main/java/com/netscape/cms/servlet/csadmin/KRAGetCookie.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#10b5d6963734fb76ade73cef578538c715697d62">
<span class="new-file">
+
base/kra/src/main/java/com/netscape/cms/servlet/csadmin/KRAGetStatus.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#80d85ea4fb54b370a57165abe33fc6b62c0204cc">
<span class="new-file">
+
base/kra/src/main/java/com/netscape/cms/servlet/csadmin/KRAMainPageServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#56cf653d4542e56040dad9d60fcf0022546cb150">
<span class="new-file">
+
base/kra/src/main/java/com/netscape/cms/servlet/csadmin/KRARegisterUser.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#8959670d221c934e1c785657597c1a72a3483d68">
<span class="new-file">
+
base/kra/src/main/java/com/netscape/cms/servlet/csadmin/KRATokenAuthenticate.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#5528c18499b53882a98162a4d35ef59f490644ff">
<span class="new-file">
+
base/kra/src/main/java/com/netscape/cms/servlet/csadmin/KRAUpdateDomainXML.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#841b890991f3c542c3997980cce358e306547124">
base/kra/src/main/java/com/netscape/cms/servlet/csadmin/KRAUpdateNumberRange.java
</a>
</li>
<li class="file-stats">
<a href="#6c1cd153eb371e725b47d36b3d4158e1c3480454">
base/kra/src/main/java/com/netscape/cms/servlet/key/ConfirmRecoverBySerial.java
</a>
</li>
<li class="file-stats">
<a href="#a1773f9d2e4944e87f7d6824c23ad8343a6fb109">
base/kra/src/main/java/com/netscape/cms/servlet/key/DisplayBySerial.java
</a>
</li>
<li class="file-stats">
<a href="#d668cb63f9649025229a7ffa7dca4043ed479828">
base/kra/src/main/java/com/netscape/cms/servlet/key/DisplayBySerialForRecovery.java
</a>
</li>
<li class="file-stats">
<a href="#eaa251f4261c7a958dc0f4e9e3ede3da4c1d02d2">
base/kra/src/main/java/com/netscape/cms/servlet/key/DisplayTransport.java
</a>
</li>
<li class="file-stats">
<a href="#5caa311288fe2dec41d9358ed5ddd6fd8b2d8614">
base/kra/src/main/java/com/netscape/cms/servlet/key/ExamineRecovery.java
</a>
</li>
<li class="file-stats">
<a href="#b49cf7063e2941d7d4a3e339abfd57eed09662fc">
base/kra/src/main/java/com/netscape/cms/servlet/key/GetApprovalStatus.java
</a>
</li>
<li class="file-stats">
<a href="#a87b955f9be8f76ccb976f28045bf512dba538f2">
base/kra/src/main/java/com/netscape/cms/servlet/key/GetAsyncPk12.java
</a>
</li>
<li class="file-stats">
<a href="#c84ddd3d99f5d3796e92009a9f7b88caaec1acfc">
base/kra/src/main/java/com/netscape/cms/servlet/key/GetPk12.java
</a>
</li>
<li class="file-stats">
<a href="#cb30fad0c19cf136851e705497cfd76d7f5897d0">
base/kra/src/main/java/com/netscape/cms/servlet/key/GrantAsyncRecovery.java
</a>
</li>
<li class="file-stats">
<a href="#d233419220d0d8ec0dfa33ddfe73717b340f736a">
base/kra/src/main/java/com/netscape/cms/servlet/key/GrantRecovery.java
</a>
</li>
<li class="file-stats">
<a href="#061c9b647052ce565b0c0bb661a804ae50f542fa">
base/kra/src/main/java/com/netscape/cms/servlet/key/RecoverBySerial.java
</a>
</li>
<li class="file-stats">
<a href="#de66454145c711cecb11cd41b9c96a5e6cd3b542">
base/kra/src/main/java/com/netscape/cms/servlet/key/SrchKey.java
</a>
</li>
<li class="file-stats">
<a href="#644f09c1a551c2bc22e95029fc43a0f510eb8c75">
base/kra/src/main/java/com/netscape/cms/servlet/key/SrchKeyForRecovery.java
</a>
</li>
<li class="file-stats">
<a href="#2dd7cb927355a24f753a9c4357dfb67fad3ba630">
base/kra/src/main/java/com/netscape/cms/servlet/request/KeyProcessReq.java
</a>
</li>
<li class="file-stats">
<a href="#d3feb0b123b49a2b668ca3043b942b3f30635725">
base/kra/src/main/java/com/netscape/cms/servlet/request/KeyQueryReq.java
</a>
</li>
<li class="file-stats">
<a href="#8fad1e3543a86d24d240cd632e0d71c8dd95e957">
base/kra/src/main/java/com/netscape/cms/servlet/request/KeyReqParser.java
</a>
</li>
<li class="file-stats">
<a href="#9bc45408ee990da173574615979df51097a029ab">
base/kra/src/main/java/com/netscape/cmscore/dbs/KeyRecordMapper.java
</a>
</li>
<li class="file-stats">
<a href="#49f3aeb00143b94f0b4f0c84103fcaeda73e4c6a">
base/kra/src/main/java/com/netscape/cmscore/dbs/KeyRepository.java
</a>
</li>
<li class="file-stats">
<a href="#4eb2c93194751ebeeb8f751236fd06a616bb228a">
base/kra/src/main/java/com/netscape/kra/AsymKeyGenService.java
</a>
</li>
<li class="file-stats">
<a href="#8451db28815c6b4bba53100117e25453682a0290">
base/kra/src/main/java/com/netscape/kra/EncryptionUnit.java
</a>
</li>
<li class="file-stats">
<a href="#877192b83e97054112fb54cad3df6aed5aedc25e">
base/kra/src/main/java/com/netscape/kra/EnrollmentService.java
</a>
</li>
<li class="file-stats">
<a href="#53283ce26f8d81e0dd3855c206b9db319ead9df6">
base/kra/src/main/java/com/netscape/kra/KRAService.java
</a>
</li>
<li class="file-stats">
<a href="#3e53f2614baf2e44bb66eef189d8ebcc81c59e10">
base/kra/src/main/java/com/netscape/kra/KeyRecoveryAuthority.java
</a>
</li>
<li class="file-stats">
<a href="#9e42da662dc976699b1274b147e4dc630d10bcbe">
base/kra/src/main/java/com/netscape/kra/NetkeyKeygenService.java
</a>
</li>
<li class="file-stats">
<a href="#20bf8320fcfef1af82c3abaf0fb684e58916d7f6">
base/kra/src/main/java/com/netscape/kra/RecoveryService.java
</a>
</li>
<li class="file-stats">
<a href="#e5b18858844e1e7e81deac0a18df5e40287c7b5f">
base/kra/src/main/java/com/netscape/kra/SecurityDataProcessor.java
</a>
</li>
<li class="file-stats">
<a href="#da6895f5f58abdd80f719f6f7f91826b56f23618">
base/kra/src/main/java/com/netscape/kra/StorageKeyUnit.java
</a>
</li>
<li class="file-stats">
<a href="#f7afe3df38439d2cc961082727044dfa94f88a6e">
base/kra/src/main/java/com/netscape/kra/SymKeyGenService.java
</a>
</li>
<li class="file-stats">
<a href="#1d288b7549798470557402158a7f6dedb965101d">
base/kra/src/main/java/com/netscape/kra/TokenKeyRecoveryService.java
</a>
</li>
<li class="file-stats">
<a href="#96092b12227da024cd202cbb4a3a4be3de7fded1">
base/kra/src/main/java/com/netscape/kra/TransportKeyUnit.java
</a>
</li>
<li class="file-stats">
<a href="#b2f5d305d514c43965c78014ce48c29004e91396">
base/kra/src/main/java/org/dogtagpki/legacy/kra/KRAPolicy.java
</a>
</li>
<li class="file-stats">
<a href="#55bcf333da00cab80f0f2f50cdbaddedd97bd3da">
<span class="new-file">
+
base/kra/src/main/java/org/dogtagpki/legacy/kra/KRAPolicyConfig.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#ea4d7c7dc92852d72f12c55610b352e23153aaf9">
base/kra/src/main/java/org/dogtagpki/server/kra/KRAConfig.java
</a>
</li>
<li class="file-stats">
<a href="#558c69268ebae57b436c12ca3b79b076bf935022">
base/kra/src/main/java/org/dogtagpki/server/kra/KRAEngine.java
</a>
</li>
<li class="file-stats">
<a href="#f0a2c7c3e0d91e231a332ecc17451fd831f4d228">
base/kra/src/main/java/org/dogtagpki/server/kra/KRAWebListener.java
</a>
</li>
<li class="file-stats">
<a href="#896bcc0973268890c02076c879c29fda8c216e24">
base/kra/src/main/java/org/dogtagpki/server/kra/ProofOfArchival.java
</a>
</li>
<li class="file-stats">
<a href="#2761010b5bd32a404089ffda50cbd1b6e2f96623">
base/kra/src/main/java/org/dogtagpki/server/kra/cli/KRACLI.java
</a>
</li>
<li class="file-stats">
<a href="#567f45379451fde61934bff95cc1d131cc11ea48">
<span class="new-file">
+
base/kra/src/main/java/org/dogtagpki/server/kra/cli/KRADBCLI.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#56aecf3e2c65e843f5a444b5468ad69afc9846ea">
<span class="new-file">
+
base/kra/src/main/java/org/dogtagpki/server/kra/cli/KRADBInitCLI.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#e88bdc9f35fc886720b6525919d6c3e688f46d8b">
<span class="new-file">
+
base/kra/src/main/java/org/dogtagpki/server/kra/cli/KRAIdCLI.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#33d7dfaf9b936ee8449488cae99a031d26d4ca4c">
<span class="new-file">
+
base/kra/src/main/java/org/dogtagpki/server/kra/cli/KRAIdGeneratorCLI.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#db8914c2714e44869d5a0ac17e586c85845503ee">
base/kra/src/main/java/org/dogtagpki/server/kra/cli/KRARangeUpdateCLI.java
</a>
</li>
<li class="file-stats">
<a href="#4f208ea3bd6d234f43a50eec548d87fe1e425824">
<span class="new-file">
+
base/kra/src/main/java/org/dogtagpki/server/kra/cli/kraIdGeneratorUpdateCLI.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#aac5092ff74084e15d9087976123ddeb20ee5aa2">
<span class="deleted-file">
−
base/kra/src/main/java/org/dogtagpki/server/kra/rest/KRASecurityDomainService.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#02bf768d290c122c2c78c367634100b1b312ed6e">
<span class="new-file">
+
base/kra/src/main/java/org/dogtagpki/server/kra/rest/base/KeyProcessor.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#c83949603aa1aa187307c0b376ad985a8e7d1599">
<span class="new-file">
+
base/kra/src/main/java/org/dogtagpki/server/kra/rest/base/KeyRequestProcessor.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#fd5002bf9b5368e4222791945aa7aa364aff7d15">
base/kra/src/main/java/org/dogtagpki/server/kra/rest/KRAApplication.java
→
base/kra/src/main/java/org/dogtagpki/server/kra/rest/v1/KRAApplication.java
</a>
</li>
<li class="file-stats">
<a href="#509305fb486a8f8030885d11d8515574bf33bf54">
base/kra/src/main/java/org/dogtagpki/server/rest/KRAInfoService.java
→
base/kra/src/main/java/org/dogtagpki/server/kra/rest/v1/KRAInfoService.java
</a>
</li>
<li class="file-stats">
<a href="#18bcd35dcb3efe3482c7527d301e9a2457f13820">
base/kra/src/main/java/org/dogtagpki/server/kra/rest/KRASystemCertService.java
→
base/kra/src/main/java/org/dogtagpki/server/kra/rest/v1/KRASystemCertService.java
</a>
</li>
<li class="file-stats">
<a href="#04b9f9129fd2768bcf72ba2fa843bd9bdde0538c">
base/kra/src/main/java/com/netscape/cms/servlet/key/KeyRequestDAO.java
→
base/kra/src/main/java/org/dogtagpki/server/kra/rest/v1/KeyRequestDAO.java
</a>
</li>
<li class="file-stats">
<a href="#c26e29402f2fac5602cb6b630d1ec0a9995305bb">
base/kra/src/main/java/org/dogtagpki/server/kra/rest/KeyRequestService.java
→
base/kra/src/main/java/org/dogtagpki/server/kra/rest/v1/KeyRequestService.java
</a>
</li>
<li class="file-stats">
<a href="#31b072b010724dafecb8d2e99f6470519723a252">
base/kra/src/main/java/org/dogtagpki/server/kra/rest/KeyService.java
→
base/kra/src/main/java/org/dogtagpki/server/kra/rest/v1/KeyService.java
</a>
</li>
<li class="file-stats">
<a href="#5ab5ef7146a2d6ee8970f4886b71d6c4ffaa1b01">
<span class="new-file">
+
base/kra/src/main/java/org/dogtagpki/server/kra/rest/v2/KRAAccountServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#2620a0a44fcf831a69aa0ea2107c03a575e69ddf">
<span class="new-file">
+
base/kra/src/main/java/org/dogtagpki/server/kra/rest/v2/KRAAuditServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#6a2bfae639af128ce7c4efd7510d12a0d2ac9873">
<span class="new-file">
+
base/kra/src/main/java/org/dogtagpki/server/kra/rest/v2/KRAGroupServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#52689eaf49e274fb09036cb299b318e9133e5342">
<span class="new-file">
+
base/kra/src/main/java/org/dogtagpki/server/kra/rest/v2/KRAInfoServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#29b8bef7aa49a5d33e5a6215c91927c655dd7848">
<span class="new-file">
+
base/kra/src/main/java/org/dogtagpki/server/kra/rest/v2/KRAJobServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#980e03d8dd79279216c24c0caa9677503b63e9ca">
<span class="new-file">
+
base/kra/src/main/java/org/dogtagpki/server/kra/rest/v2/KRASecurityDomainServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#f5ea6ca566026bdce0b6972b8354a4cc40e4fd0d">
<span class="new-file">
+
base/kra/src/main/java/org/dogtagpki/server/kra/rest/v2/KRASelfTestServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#a61e6460b0d7e8e58d169178e6b1356420f2441e">
<span class="new-file">
+
base/kra/src/main/java/org/dogtagpki/server/kra/rest/v2/KRAServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#012f5ea05313a1e356543811b82e08fc0dce27fd">
<span class="new-file">
+
base/kra/src/main/java/org/dogtagpki/server/kra/rest/v2/KRASystemCertServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#a7ba2a8ca775b2adf799e0ca64f34ee6fd96fc2a">
<span class="new-file">
+
base/kra/src/main/java/org/dogtagpki/server/kra/rest/v2/KRAUserServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#cd29282db846a7994e491d2ea86a95be8bab0f80">
<span class="new-file">
+
base/kra/src/main/java/org/dogtagpki/server/kra/rest/v2/KeyRequestServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#8bc3cfcc9147ad364f3ada30e9fbc230a7c60798">
<span class="new-file">
+
base/kra/src/main/java/org/dogtagpki/server/kra/rest/v2/KeyServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#35b1fe4a6a8ea8be4d4efc782baa5688188eba46">
<span class="new-file">
+
base/kra/src/main/java/org/dogtagpki/server/kra/rest/v2/filters/EmptyACL.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#d52c0e49d131282d8c8c151acd6b905fdc037491">
<span class="new-file">
+
base/kra/src/main/java/org/dogtagpki/server/kra/rest/v2/filters/EmptyAuthMethod.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#67488ff652145ff85fd3297989b067a8ddc20fcc">
<span class="new-file">
+
base/kra/src/main/java/org/dogtagpki/server/kra/rest/v2/filters/KRAAccountACL.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#b976484924c33ec130625c4e9ef02e5953871683">
<span class="new-file">
+
base/kra/src/main/java/org/dogtagpki/server/kra/rest/v2/filters/KRAAccountAuthMethod.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#4bc46f8c2c246097275ddd1d662dce1854a27718">
<span class="new-file">
+
base/kra/src/main/java/org/dogtagpki/server/kra/rest/v2/filters/KRAAuditACL.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#ddd3f1ea638a9bb20e8654ec425735c7ad57ad20">
<span class="new-file">
+
base/kra/src/main/java/org/dogtagpki/server/kra/rest/v2/filters/KRAAuditAuthMethod.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#4346d1fa314159628c6b66c0c1967fa32eb62ebe">
<span class="new-file">
+
base/kra/src/main/java/org/dogtagpki/server/kra/rest/v2/filters/KRAGroupACL.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#945ca52a5f385beec24f01dd93e6ed67dc5ef104">
<span class="new-file">
+
base/kra/src/main/java/org/dogtagpki/server/kra/rest/v2/filters/KRAGroupAuthMethod.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#e91c585f28d24ebb51aadf0cd12ef76bf8266b41">
<span class="new-file">
+
base/kra/src/main/java/org/dogtagpki/server/kra/rest/v2/filters/KRASecurityDomainACL.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#8b045548f16804c8a7073d6ac7538219385be899">
<span class="new-file">
+
base/kra/src/main/java/org/dogtagpki/server/kra/rest/v2/filters/KRASecurityDomainAuthMethod.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#8d2ac14ff066bc855b73850eb67da11d76d4ddd6">
<span class="new-file">
+
base/kra/src/main/java/org/dogtagpki/server/kra/rest/v2/filters/KRASelfTestACL.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#45e4e49930ba36b6d2adf4bf81ec9cc2f51a5617">
<span class="new-file">
+
base/kra/src/main/java/org/dogtagpki/server/kra/rest/v2/filters/KRASelfTestAuthMethod.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#dd88b69622b2126292421cb3428d6d6450f1f35a">
<span class="new-file">
+
base/kra/src/main/java/org/dogtagpki/server/kra/rest/v2/filters/KRAUserACL.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#24592ae54383d8d02c4492815d164d5e42a970bf">
<span class="new-file">
+
base/kra/src/main/java/org/dogtagpki/server/kra/rest/v2/filters/KRAUserAuthMethod.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#9b4ecee0eb7c83f562b707b62baafd559b13a61f">
<span class="new-file">
+
base/kra/src/main/java/org/dogtagpki/server/kra/rest/v2/filters/KeyACL.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#043efa3c5b025fa284198f367924c6c1d54c86b6">
<span class="new-file">
+
base/kra/src/main/java/org/dogtagpki/server/kra/rest/v2/filters/KeyAuthMethod.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#9e668a6f483f12c1f77ad2e68fa3e3e9df35d4c7">
<span class="new-file">
+
base/kra/src/main/java/org/dogtagpki/server/kra/rest/v2/filters/KeyRequestACL.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#6ae3bcf8a1f6f8d4b72aaf541b03bf3ad5df02de">
<span class="new-file">
+
base/kra/src/main/java/org/dogtagpki/server/kra/rest/v2/filters/KeyRequestAuthMethod.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#e09a1cf5fd590be1f214c8dbd03a0a6db71e02ea">
base/kra/src/test/python/drmtest.py
</a>
</li>
<li class="file-stats">
<a href="#668c3eb825ebc022814c00a9a35306d42c2a85a2">
base/kra/src/test/python/drmtest.readme.txt
</a>
</li>
<li class="file-stats">
<a href="#00542f2b8119a2a53be40295622f7ef71faf39fe">
<span class="new-file">
+
base/kra/tomcat-10.1/CMakeLists.txt
</span>
</a>
</li>
<li class="file-stats">
<a href="#e34d9e68133a0ebeb01335672bad2142fe52a091">
<span class="new-file">
+
base/kra/tomcat-10.1/conf/Catalina/localhost/kra.xml
</span>
</a>
</li>
<li class="file-stats">
<a href="#356ca0aa7e96083a1a7f60bf23ce87011780def6">
base/ocsp/CMakeLists.txt
</a>
</li>
<li class="file-stats">
<a href="#dd3ff798983dc0335666f289339d71f24683ba89">
<span class="new-file">
+
base/ocsp/bin/pki-ocsp-run
</span>
</a>
</li>
<li class="file-stats">
<a href="#4bec6c0eb49d0255b76ea4a378231897da180a7c">
base/ocsp/pom.xml
</a>
</li>
<li class="file-stats">
<a href="#191a05f5493e25dc205cac7e802d3b9ab22a6b1c">
base/ocsp/shared/conf/CS.cfg
</a>
</li>
<li class="file-stats">
<a href="#b28bb3bb2816503b09b1e556971ec12d4d58ceda">
base/ocsp/shared/webapps/ocsp/WEB-INF/web.xml
</a>
</li>
<li class="file-stats">
<a href="#e77bd2dab971c6517e3102bb9df3b68a1d3722e9">
<span class="new-file">
+
base/ocsp/src/main/java/com/netscape/cms/ocsp/CRLLdapValidator.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#00c018ce86569146707cc45573b89e398c71943c">
base/ocsp/src/main/java/com/netscape/cms/ocsp/DefStore.java
</a>
</li>
<li class="file-stats">
<a href="#4b9cd2739a0bea26e9a6221a8ae7a0940ab51760">
base/ocsp/src/main/java/com/netscape/cms/ocsp/LDAPStore.java
</a>
</li>
<li class="file-stats">
<a href="#92838eabd956a254cf14bdbba3a551e46047de52">
<span class="new-file">
+
base/ocsp/src/main/java/com/netscape/cms/servlet/admin/OCSPACLAdminServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#4a660466b9c47f2ff14afd388144aa9bf2902ddf">
base/ocsp/src/main/java/com/netscape/cms/servlet/admin/OCSPAdminServlet.java
</a>
</li>
<li class="file-stats">
<a href="#3d5721bce430f47283623dc295afbdb005cd436d">
<span class="new-file">
+
base/ocsp/src/main/java/com/netscape/cms/servlet/admin/OCSPAuthAdminServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#c747f99fe8d85d9056c56c35d39f455f462d2cfd">
base/ocsp/src/main/java/com/netscape/cms/servlet/admin/OCSPCMSAdminServlet.java
</a>
</li>
<li class="file-stats">
<a href="#2d5a30a45611eb28f58c88f2b6493d32a2c7bad2">
<span class="new-file">
+
base/ocsp/src/main/java/com/netscape/cms/servlet/admin/OCSPJobsAdminServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#9218ed72b7eb87067519bcba8c69ab67850b9e46">
<span class="new-file">
+
base/ocsp/src/main/java/com/netscape/cms/servlet/admin/OCSPLogAdminServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#ebd0b818f90a911833c94cf555bce506d3e11697">
<span class="new-file">
+
base/ocsp/src/main/java/com/netscape/cms/servlet/admin/OCSPUsrGrpAdminServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#3ab8eba24ec40aba75451f530bc37adfe8ef6a19">
<span class="new-file">
+
base/ocsp/src/main/java/com/netscape/cms/servlet/base/OCSPHeaderServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#75c07803ce07df54bf78e1056bb1afc0905bc281">
<span class="new-file">
+
base/ocsp/src/main/java/com/netscape/cms/servlet/base/OCSPIndexServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#72ddc3244e266f28717d04d9384f207cefb306fc">
base/common/src/main/java/com/netscape/certsrv/base/ICertPrettyPrint.java
→
base/ocsp/src/main/java/com/netscape/cms/servlet/base/OCSPPortsServlet.java
</a>
</li>
<li class="file-stats">
<a href="#9762fee8455f697a4147147d03445d6e4e3570dc">
<span class="new-file">
+
base/ocsp/src/main/java/com/netscape/cms/servlet/base/OCSPReadAddCAPage.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#4e140ddfecf1a107ca2fdb18ad9992a6801a38df">
<span class="new-file">
+
base/ocsp/src/main/java/com/netscape/cms/servlet/base/OCSPReadAddCRLPage.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#20c16469a45af5d8619438761c08d5caea8a8ef1">
<span class="new-file">
+
base/ocsp/src/main/java/com/netscape/cms/servlet/base/OCSPReadCheckCertPage.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#d404471d1a815dd0cc673e6409c9270ccf1df747">
<span class="new-file">
+
base/ocsp/src/main/java/com/netscape/cms/servlet/csadmin/OCSPAdminUpdateDomainXML.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#f00f91a798b0e8694c3e6983da2684cd879241b5">
base/common/src/main/java/com/netscape/certsrv/base/ICRLPrettyPrint.java
→
base/ocsp/src/main/java/com/netscape/cms/servlet/csadmin/OCSPDownloadPKCS12.java
</a>
</li>
<li class="file-stats">
<a href="#4942706bf2f575d13aacd5fbd94879e1460e9af5">
<span class="new-file">
+
base/ocsp/src/main/java/com/netscape/cms/servlet/csadmin/OCSPGetConfigEntries.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#456b9e0096c755c78d3b4796832561ae388a2c16">
<span class="new-file">
+
base/ocsp/src/main/java/com/netscape/cms/servlet/csadmin/OCSPGetCookie.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#3616002193374d5012ca1fa48e251d0b2280099c">
<span class="new-file">
+
base/ocsp/src/main/java/com/netscape/cms/servlet/csadmin/OCSPGetStatus.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#fa39962d9141ead51d35e40ea40fcea3933f5fb7">
<span class="new-file">
+
base/ocsp/src/main/java/com/netscape/cms/servlet/csadmin/OCSPMainPageServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#86fcbd43cce12b4c00c3f61177b1229b827de05f">
<span class="new-file">
+
base/ocsp/src/main/java/com/netscape/cms/servlet/csadmin/OCSPTokenAuthenticate.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#2f376cb8771e18501868b8d491fa1c0c130ffe54">
<span class="new-file">
+
base/ocsp/src/main/java/com/netscape/cms/servlet/csadmin/OCSPTokenAuthenticateAdmin.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#0e7fdebc3864dcca3d6d41021025bcb650feced4">
<span class="new-file">
+
base/ocsp/src/main/java/com/netscape/cms/servlet/csadmin/OCSPUpdateDomainXML.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#b91d57f90f6102f68398610089d437380e00ae21">
base/ocsp/src/main/java/com/netscape/cms/servlet/ocsp/AddCAServlet.java
</a>
</li>
<li class="file-stats">
<a href="#36d4b82e0da2c64809e70cbd7f397286451d531f">
base/ocsp/src/main/java/com/netscape/cms/servlet/ocsp/AddCRLServlet.java
</a>
</li>
<li class="file-stats">
<a href="#22ceccd9643fb3ee66336a9ea110c5453e938963">
base/ocsp/src/main/java/com/netscape/cms/servlet/ocsp/CheckCertServlet.java
</a>
</li>
<li class="file-stats">
<a href="#70b9093567d1a34d84fc9e6a09703ccb824aae66">
base/ocsp/src/main/java/com/netscape/cms/servlet/ocsp/ListCAServlet.java
</a>
</li>
<li class="file-stats">
<a href="#047ab0c03b2f898a90955e00f7daa5c08609467a">
<span class="new-file">
+
base/ocsp/src/main/java/com/netscape/cms/servlet/ocsp/OCSPGetOCSPInfo.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#b8dfbde25e1eaa86e73d42cc8b7447e0c1f556b5">
<span class="new-file">
+
base/ocsp/src/main/java/com/netscape/cms/servlet/ocsp/OCSPOCSPServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#00f85d2637b4d74e23453dce05e16e275ad51131">
base/ocsp/src/main/java/com/netscape/cms/servlet/ocsp/RemoveCAServlet.java
</a>
</li>
<li class="file-stats">
<a href="#410d2d567245f2d675beadb42782b74d0aa1e14a">
base/ocsp/src/main/java/com/netscape/ocsp/OCSPAuthority.java
</a>
</li>
<li class="file-stats">
<a href="#1f0d6db51289b294ad232bfabf66eeabedf17490">
base/ocsp/src/main/java/com/netscape/ocsp/OCSPSigningUnit.java
</a>
</li>
<li class="file-stats">
<a href="#99a91ae1db4873ceb0e2c8f7f19e19c39b6b4282">
base/ocsp/src/main/java/org/dogtagpki/server/ocsp/OCSPConfig.java
</a>
</li>
<li class="file-stats">
<a href="#3d5db8a2124fe06db088a1cadb90927d48d7ef95">
base/ocsp/src/main/java/org/dogtagpki/server/ocsp/OCSPEngine.java
</a>
</li>
<li class="file-stats">
<a href="#01112e5fa5e0a1d12938e31741c8d5c7b1c53823">
base/ocsp/src/main/java/org/dogtagpki/server/ocsp/OCSPWebListener.java
</a>
</li>
<li class="file-stats">
<a href="#f8d0e6a3e978057eea376701d91ea98881962959">
base/ocsp/src/main/java/org/dogtagpki/server/ocsp/cli/OCSPCLI.java
</a>
</li>
<li class="file-stats">
<a href="#5ee6c08f492adb5d00c787cda31e17499a1571ad">
base/ocsp/src/main/java/org/dogtagpki/server/ocsp/cli/OCSPCRLIssuingPointAddCLI.java
</a>
</li>
<li class="file-stats">
<a href="#d88608d31c3a256c18ef5c6aea0cef508fdac82e">
base/ocsp/src/main/java/org/dogtagpki/server/ocsp/cli/OCSPCRLIssuingPointFindCLI.java
</a>
</li>
<li class="file-stats">
<a href="#14c1a0c36f979480067b5b416636d7ddd0c18259">
<span class="deleted-file">
−
base/ocsp/src/main/java/org/dogtagpki/server/ocsp/rest/OCSPSecurityDomainService.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#ba8d7c23f2dfc2b89af76d6cce69c9cd32ba1992">
base/ocsp/src/main/java/org/dogtagpki/server/ocsp/rest/OCSPApplication.java
→
base/ocsp/src/main/java/org/dogtagpki/server/ocsp/rest/v1/OCSPApplication.java
</a>
</li>
<li class="file-stats">
<a href="#de39b824be4e235b1f95e52a50aef61499f9a722">
<span class="new-file">
+
base/ocsp/src/main/java/org/dogtagpki/server/ocsp/rest/v2/OCSPAccountServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#64f6000ad64512fc4930c39febacc413b8deb39e">
<span class="new-file">
+
base/ocsp/src/main/java/org/dogtagpki/server/ocsp/rest/v2/OCSPAuditServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#44eb8fa881e7d160364625878117a3b67aaf5dbe">
<span class="new-file">
+
base/ocsp/src/main/java/org/dogtagpki/server/ocsp/rest/v2/OCSPGroupServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#70e3c5f1b5f93ab3c9cf3c8d0a3c083758621385">
<span class="new-file">
+
base/ocsp/src/main/java/org/dogtagpki/server/ocsp/rest/v2/OCSPJobServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#7d09f57c6f002e373ef8010172616698ce3e6b5d">
<span class="new-file">
+
base/ocsp/src/main/java/org/dogtagpki/server/ocsp/rest/v2/OCSPSecurityDomainServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#6522477da0c13bc3feb05e7341d1919e8800a9c2">
<span class="new-file">
+
base/ocsp/src/main/java/org/dogtagpki/server/ocsp/rest/v2/OCSPSelfTestServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#1597895fb5d06235e7c026f1c33f23333bd06562">
<span class="new-file">
+
base/ocsp/src/main/java/org/dogtagpki/server/ocsp/rest/v2/OCSPServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#ae53a9c6f91ace0f1bd03936389fe4d28bb44255">
<span class="new-file">
+
base/ocsp/src/main/java/org/dogtagpki/server/ocsp/rest/v2/OCSPUserServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#62c618fda0e2afcd4ce0ca6a3e377bd0a458cb57">
<span class="new-file">
+
base/ocsp/src/main/java/org/dogtagpki/server/ocsp/rest/v2/filters/EmptyACL.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#0597c5bbf3d45e8915063463919648da3004fef8">
<span class="new-file">
+
base/ocsp/src/main/java/org/dogtagpki/server/ocsp/rest/v2/filters/EmptyAuthMethod.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#4e39da220a7bf327e12b7b9e841e20a03588d6ee">
<span class="new-file">
+
base/ocsp/src/main/java/org/dogtagpki/server/ocsp/rest/v2/filters/OCSPAccountACL.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#5671c4dec7d151f7363f5abf1f3f0d39e1fab73a">
<span class="new-file">
+
base/ocsp/src/main/java/org/dogtagpki/server/ocsp/rest/v2/filters/OCSPAccountAuthMethod.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#2d87ed4bcbc90c097de1da4f18a8f96c01f6b479">
<span class="new-file">
+
base/ocsp/src/main/java/org/dogtagpki/server/ocsp/rest/v2/filters/OCSPAuditACL.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#e72488625b3057b370059a91129c629301b84b89">
<span class="new-file">
+
base/ocsp/src/main/java/org/dogtagpki/server/ocsp/rest/v2/filters/OCSPAuditAuthMethod.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#bd9f8b57f6580706338ac26868aa67692115e09e">
<span class="new-file">
+
base/ocsp/src/main/java/org/dogtagpki/server/ocsp/rest/v2/filters/OCSPGroupACL.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#198238cbecece4009e1ab3dcc7b389081bd662dd">
<span class="new-file">
+
base/ocsp/src/main/java/org/dogtagpki/server/ocsp/rest/v2/filters/OCSPGroupAuthMethod.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#1101ba4fa947fa793245383adb9156ec44b33b0f">
<span class="new-file">
+
base/ocsp/src/main/java/org/dogtagpki/server/ocsp/rest/v2/filters/OCSPSecurityDomainACL.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#72346307cc23d438af988a10f929d1917aab15ba">
<span class="new-file">
+
base/ocsp/src/main/java/org/dogtagpki/server/ocsp/rest/v2/filters/OCSPSecurityDomainAuthMethod.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#d06df998e04f4dc62335161bbf3c09291d5418f0">
<span class="new-file">
+
base/ocsp/src/main/java/org/dogtagpki/server/ocsp/rest/v2/filters/OCSPSelfTestACL.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#e9e51d0676376c89dbc7ec2b7496d3a551c5d542">
<span class="new-file">
+
base/ocsp/src/main/java/org/dogtagpki/server/ocsp/rest/v2/filters/OCSPSelfTestAuthMethod.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#f11c2a33ccfa29725fbe14b269a6d5f36e212ea8">
<span class="new-file">
+
base/ocsp/src/main/java/org/dogtagpki/server/ocsp/rest/v2/filters/OCSPUserACL.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#2cd89293fad5d3102c8a65bdfcc0685c3ebca132">
<span class="new-file">
+
base/ocsp/src/main/java/org/dogtagpki/server/ocsp/rest/v2/filters/OCSPUserAuthMethod.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#d30c30ebc6270496c30daf8fca9fdfc4f3b644eb">
<span class="new-file">
+
base/ocsp/tomcat-10.1/CMakeLists.txt
</span>
</a>
</li>
<li class="file-stats">
<a href="#cbc6274dabe4c6c97bad89ff8e6b0109024d827f">
<span class="new-file">
+
base/ocsp/tomcat-10.1/conf/Catalina/localhost/ocsp.xml
</span>
</a>
</li>
<li class="file-stats">
<a href="#6938ebfea762ce0c7ba0c2da2004eb53baa6e9a4">
base/pom.xml
</a>
</li>
<li class="file-stats">
<a href="#dedc7862d44bdd723d60509c448ef3ec34eab095">
<span class="new-file">
+
base/server-webapp/CMakeLists.txt
</span>
</a>
</li>
<li class="file-stats">
<a href="#e983cf1d006d76d0725e57df891006f1f3a9203f">
<span class="new-file">
+
base/server-webapp/LICENSE
</span>
</a>
</li>
<li class="file-stats">
<a href="#bd895ab161c836a68ef3f0d6a0ed6c38baf927c4">
<span class="new-file">
+
base/server-webapp/pom.xml
</span>
</a>
</li>
<li class="file-stats">
<a href="#4658e12329a1aa0a1745a8058273a7246076f820">
<span class="new-file">
+
base/server-webapp/src/main/java/org/dogtagpki/server/PKIEngine.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#d362f68e864bcfb04ddb120c9829b94c224f032f">
<span class="new-file">
+
base/server-webapp/src/main/java/org/dogtagpki/server/PKIServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#ba02028c0758502938d99258c9a317f8a2e77d84">
<span class="new-file">
+
base/server-webapp/src/main/java/org/dogtagpki/server/PKIWebListener.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#e4f2b3157d1192b06fc5ae532a516748054c6540">
base/server/src/main/java/org/dogtagpki/server/rest/AppService.java
→
base/server-webapp/src/main/java/org/dogtagpki/server/rest/v1/AppService.java
</a>
</li>
<li class="file-stats">
<a href="#5f418c541023f7233edc4337f1c259a515f80c5a">
base/server/src/main/java/com/netscape/cmscore/cert/CrlPrettyPrint.java
→
base/server-webapp/src/main/java/org/dogtagpki/server/rest/v1/InfoService.java
</a>
</li>
<li class="file-stats">
<a href="#ca28b11617f50bb1c87dc13cd9771b0f9fee1bbb">
base/server/src/main/java/org/dogtagpki/server/rest/LoginService.java
→
base/server-webapp/src/main/java/org/dogtagpki/server/rest/v1/LoginService.java
</a>
</li>
<li class="file-stats">
<a href="#80a74a8461729e039cdddd09cf23c5ae93f3f551">
base/server/src/main/java/org/dogtagpki/server/rest/PKIApplication.java
→
base/server-webapp/src/main/java/org/dogtagpki/server/rest/v1/PKIApplication.java
</a>
</li>
<li class="file-stats">
<a href="#dec56c8cca8c0f5ee415fd76501f1cc9302c6392">
<span class="new-file">
+
base/server-webapp/src/main/java/org/dogtagpki/server/rest/v2/AppServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#2f6605762e9630317148c910767eb88ad1d863d6">
<span class="new-file">
+
base/server-webapp/src/main/java/org/dogtagpki/server/rest/v2/InfoServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#d77e4973abab7b66e36c2c2f5c03e0f9edf19114">
<span class="new-file">
+
base/server-webapp/src/main/java/org/dogtagpki/server/rest/v2/LoginServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#503ee8f54dd284e23a39c46c1968b3192d480fc5">
<span class="new-file">
+
base/server-webapp/src/main/resources/META-INF/MANIFEST.MF
</span>
</a>
</li>
<li class="file-stats">
<a href="#a6b56d6fabd49e2a7c924ecc4ad4bd2acb99048b">
base/server/share/webapps/ROOT/WEB-INF/web.xml
→
base/server-webapp/webapps/ROOT/WEB-INF/web.xml
</a>
</li>
<li class="file-stats">
<a href="#3a8e7b41536147279a2c2ac49b299a7084911aa8">
base/server/share/webapps/pki/index.jsp
→
base/server-webapp/webapps/ROOT/index.jsp
</a>
</li>
<li class="file-stats">
<a href="#f9c7865d688f717c240b9789373a6ee6c5f58610">
base/acme/webapps/acme/js/jquery-3.5.1.js
→
base/server-webapp/webapps/ROOT/jquery-3.5.1/jquery.min.js
</a>
</li>
<li class="file-stats">
<a href="#9ce3ac299a475dd4319c79412a210d4480cf8bc7">
base/acme/webapps/acme/css/assets/fonts/RedHatDisplay/RedHatDisplay-Medium.woff
→
base/server-webapp/webapps/ROOT/patternfly-4.35.2/assets/fonts/RedHatDisplay/RedHatDisplay-Medium.woff
</a>
</li>
<li class="file-stats">
<a href="#046455bb31a215573c4bf0af421fd4b8bb0beb7a">
base/acme/webapps/acme/css/assets/fonts/RedHatText/RedHatText-Medium.woff
→
base/server-webapp/webapps/ROOT/patternfly-4.35.2/assets/fonts/RedHatText/RedHatText-Medium.woff
</a>
</li>
<li class="file-stats">
<a href="#10b658d324dbea84566236b51ed5f6ca5c1496f2">
base/acme/webapps/acme/css/assets/fonts/RedHatText/RedHatText-Regular.woff
→
base/server-webapp/webapps/ROOT/patternfly-4.35.2/assets/fonts/RedHatText/RedHatText-Regular.woff
</a>
</li>
<li class="file-stats">
<a href="#f4522f8c0c49ef8810a074362a23e05ceff07f2e">
base/acme/webapps/acme/css/assets/fonts/overpass-webfont/overpass-bold.ttf
→
base/server-webapp/webapps/ROOT/patternfly-4.35.2/assets/fonts/overpass-webfont/overpass-bold.ttf
</a>
</li>
<li class="file-stats">
<a href="#630ba8fdaf8f10588d634835d400884bbecdb59f">
base/acme/webapps/acme/css/assets/fonts/overpass-webfont/overpass-bold.woff
→
base/server-webapp/webapps/ROOT/patternfly-4.35.2/assets/fonts/overpass-webfont/overpass-bold.woff
</a>
</li>
<li class="file-stats">
<a href="#a5885d98da79d037406c5d3d700226cbe85c5998">
base/acme/webapps/acme/css/assets/fonts/overpass-webfont/overpass-bold.woff2
→
base/server-webapp/webapps/ROOT/patternfly-4.35.2/assets/fonts/overpass-webfont/overpass-bold.woff2
</a>
</li>
<li class="file-stats">
<a href="#7f0265f3f1f8a0c6f56948cba1246b85a0a98f59">
base/acme/webapps/acme/css/assets/fonts/overpass-webfont/overpass-light.ttf
→
base/server-webapp/webapps/ROOT/patternfly-4.35.2/assets/fonts/overpass-webfont/overpass-light.ttf
</a>
</li>
<li class="file-stats">
<a href="#4763b1cd0e5cb5584a6d4b937ee4698eab16bdf3">
base/acme/webapps/acme/css/assets/fonts/overpass-webfont/overpass-light.woff
→
base/server-webapp/webapps/ROOT/patternfly-4.35.2/assets/fonts/overpass-webfont/overpass-light.woff
</a>
</li>
<li class="file-stats">
<a href="#9794932f7a1c6deeea0cdf0de27653a5a850ab44">
base/acme/webapps/acme/css/assets/fonts/overpass-webfont/overpass-light.woff2
→
base/server-webapp/webapps/ROOT/patternfly-4.35.2/assets/fonts/overpass-webfont/overpass-light.woff2
</a>
</li>
<li class="file-stats">
<a href="#1b20af38710164567be71557b253158bd5501535">
base/acme/webapps/acme/css/assets/fonts/webfonts/fa-solid-900.ttf
→
base/server-webapp/webapps/ROOT/patternfly-4.35.2/assets/fonts/webfonts/fa-solid-900.ttf
</a>
</li>
<li class="file-stats">
<a href="#3edc9db00f097808c3afe1318fe376b0972a15e9">
base/acme/webapps/acme/css/assets/fonts/webfonts/fa-solid-900.woff
→
base/server-webapp/webapps/ROOT/patternfly-4.35.2/assets/fonts/webfonts/fa-solid-900.woff
</a>
</li>
<li class="file-stats">
<a href="#8d89e5d3062727328914cf78c555192ce9dd2138">
base/acme/webapps/acme/css/assets/fonts/webfonts/fa-solid-900.woff2
→
base/server-webapp/webapps/ROOT/patternfly-4.35.2/assets/fonts/webfonts/fa-solid-900.woff2
</a>
</li>
<li class="file-stats">
<a href="#adb182d9ecc924cd70bf614e0964f218ba9491dd">
base/acme/webapps/acme/css/assets/images/img_avatar.svg
→
base/server-webapp/webapps/ROOT/patternfly-4.35.2/assets/images/img_avatar.svg
</a>
</li>
<li class="file-stats">
<a href="#332322e1d931a78bfa0ffaf73379823a08038711">
base/acme/webapps/acme/css/assets/pficon/pficon.ttf
→
base/server-webapp/webapps/ROOT/patternfly-4.35.2/assets/pficon/pficon.ttf
</a>
</li>
<li class="file-stats">
<a href="#45f57a46dfde39b9fff2c9e1f3782c7e5429ff12">
base/acme/webapps/acme/css/assets/pficon/pficon.woff
→
base/server-webapp/webapps/ROOT/patternfly-4.35.2/assets/pficon/pficon.woff
</a>
</li>
<li class="file-stats">
<a href="#11ef3dfb0e2291ce9367bce7c58ec6d6e10ee7bd">
base/acme/webapps/acme/css/assets/pficon/pficon.woff2
→
base/server-webapp/webapps/ROOT/patternfly-4.35.2/assets/pficon/pficon.woff2
</a>
</li>
<li class="file-stats">
<a href="#3228adf2ef4d70cb26cb3322b9c595a7b2a89067">
base/acme/webapps/acme/css/patternfly-4.35.2.css
→
base/server-webapp/webapps/ROOT/patternfly-4.35.2/patternfly.min.css
</a>
</li>
<li class="file-stats">
<a href="#933832770247e9e0a9a45ebaee49c17844cddc27">
base/acme/webapps/acme/css/patternfly.min.css.map
→
base/server-webapp/webapps/ROOT/patternfly-4.35.2/patternfly.min.css.map
</a>
</li>
<li class="file-stats">
<a href="#453d1674c5d354b8fb68f8406762c8a3d44d4ec5">
base/server/share/webapps/pki/WEB-INF/classes/logging.properties
→
base/server-webapp/webapps/pki/WEB-INF/classes/logging.properties
</a>
</li>
<li class="file-stats">
<a href="#d72140d3ae23338e687fa158f3486aa9292bf09e">
base/server/share/webapps/pki/WEB-INF/web.xml
→
base/server-webapp/webapps/pki/WEB-INF/web.xml
</a>
</li>
<li class="file-stats">
<a href="#f7348fd06261d6e29f5e2027048564b1aff0b0d0">
base/server/share/webapps/pki/admin/console/js/misc.js
→
base/server-webapp/webapps/pki/admin/console/js/misc.js
</a>
</li>
<li class="file-stats">
<a href="#944b7ebd28a545eafc2df062f696177e3bd1f63d">
<span class="new-file">
+
base/server-webapp/webapps/pki/index.jsp
</span>
</a>
</li>
<li class="file-stats">
<a href="#d8517378c031083f31aac06f15f7196a84764420">
base/server/share/webapps/pki/js/backbone.js
→
base/server-webapp/webapps/pki/js/backbone.js
</a>
</li>
<li class="file-stats">
<a href="#d72f153661caf952d05a83f3728aaa7726f38a10">
base/server/share/webapps/pki/js/bootstrap.js
→
base/server-webapp/webapps/pki/js/bootstrap.js
</a>
</li>
<li class="file-stats">
<a href="#489f7bb63cd32895fd2d2c8b638dc2a03c5c045e">
base/server/share/webapps/pki/js/jquery.i18n.properties.js
→
base/server-webapp/webapps/pki/js/jquery.i18n.properties.js
</a>
</li>
<li class="file-stats">
<a href="#a556c57be75796087f8d77a7d0aa14e0fc9ed999">
base/server/share/webapps/pki/js/jquery.js
→
base/server-webapp/webapps/pki/js/jquery.js
</a>
</li>
<li class="file-stats">
<a href="#53d1b5402a2c7d1956c260482165eaab3950c254">
base/server/share/webapps/pki/js/patternfly.js
→
base/server-webapp/webapps/pki/js/patternfly.js
</a>
</li>
<li class="file-stats">
<a href="#d7648e66c35015d6cbffc9158f51183dd48a759b">
base/server/share/webapps/pki/js/pki-account.js
→
base/server-webapp/webapps/pki/js/pki-account.js
</a>
</li>
<li class="file-stats">
<a href="#1b6beeddf6fbc862f4c821c7602ef2a48246470b">
base/server/share/webapps/pki/js/pki-app.js
→
base/server-webapp/webapps/pki/js/pki-app.js
</a>
</li>
<li class="file-stats">
<a href="#e174e3b62fb6a00210aaf03714ee36e798333b6d">
base/server/share/webapps/pki/js/pki-audit.js
→
base/server-webapp/webapps/pki/js/pki-audit.js
</a>
</li>
<li class="file-stats">
<a href="#11ebb9e6e957f56a7efe93051cb20d76d1bb1fe0">
base/server/share/webapps/pki/js/pki-banner.js
→
base/server-webapp/webapps/pki/js/pki-banner.js
</a>
</li>
<li class="file-stats">
<a href="#5fdd4738f9680fbb6f8d4ee5aae93b563b458c42">
base/server/share/webapps/pki/js/pki-group.js
→
base/server-webapp/webapps/pki/js/pki-group.js
</a>
</li>
<li class="file-stats">
<a href="#346a3b3afe5f6869b1b6de4bdf9bc48abe0aaf33">
base/server/share/webapps/pki/js/pki-ui.js
→
base/server-webapp/webapps/pki/js/pki-ui.js
</a>
</li>
<li class="file-stats">
<a href="#aa22ef581a4c60e0bd685bc9b498c4d1724f4371">
base/server/share/webapps/pki/js/pki-user.js
→
base/server-webapp/webapps/pki/js/pki-user.js
</a>
</li>
<li class="file-stats">
<a href="#e7b36dd66939431c5ab15abf54abb1c18d44fe0c">
base/server/share/webapps/pki/js/pki.js
→
base/server-webapp/webapps/pki/js/pki.js
</a>
</li>
<li class="file-stats">
<a href="#d8d79dd41a07a08934f8794bca72ca6fd700ad60">
base/server/share/webapps/pki/js/underscore.js
→
base/server-webapp/webapps/pki/js/underscore.js
</a>
</li>
<li class="file-stats">
<a href="#46d1171d836c62a5bd0fdee458c060d77565c951">
base/server/share/webapps/pki/ui/audit.html
→
base/server-webapp/webapps/pki/ui/audit.html
</a>
</li>
<li class="file-stats">
<a href="#24147fd47e01414d2e96efdea89d2996a67f4517">
base/server/share/webapps/pki/ui/group.html
→
base/server-webapp/webapps/pki/ui/group.html
</a>
</li>
<li class="file-stats">
<a href="#a34c7d55970744201b99633638f1735ed378effe">
base/server/share/webapps/pki/ui/groups.html
→
base/server-webapp/webapps/pki/ui/groups.html
</a>
</li>
<li class="file-stats">
<a href="#dd1cbf6fb67905d625785f21940e91f3dcb9305e">
base/server/share/webapps/pki/ui/index.jsp
→
base/server-webapp/webapps/pki/ui/index.jsp
</a>
</li>
<li class="file-stats">
<a href="#d520743243278c6cfa10e9612332549a235fb778">
base/server/share/webapps/pki/ui/user-certs.html
→
base/server-webapp/webapps/pki/ui/user-certs.html
</a>
</li>
<li class="file-stats">
<a href="#ee37aee37c48f47c7c3ed3366c9970df49f0ae17">
base/server/share/webapps/pki/ui/user-roles.html
→
base/server-webapp/webapps/pki/ui/user-roles.html
</a>
</li>
<li class="file-stats">
<a href="#f788623f0170e3218ae1ff0ce1a375e548bab8e5">
base/server/share/webapps/pki/ui/user.html
→
base/server-webapp/webapps/pki/ui/user.html
</a>
</li>
<li class="file-stats">
<a href="#962a0c394a17c2b28024f1e518331b8e7f79e0d7">
base/server/share/webapps/pki/ui/users.html
→
base/server-webapp/webapps/pki/ui/users.html
</a>
</li>
<li class="file-stats">
<a href="#d3188af33f626497aa80ec3ce2cb4a3258878383">
base/server/CMakeLists.txt
</a>
</li>
<li class="file-stats">
<a href="#b35d6948818b3e5d62c8f17c5833e19c1d1d14ad">
base/server/bin/pki-server-run
</a>
</li>
<li class="file-stats">
<a href="#6df4dc323cec9ab0c56cd136da0ccbbbac2c67a0">
base/server/etc/default.cfg
</a>
</li>
<li class="file-stats">
<a href="#898e0b54f1c6a696bae899137f47ab98d936d013">
<span class="new-file">
+
base/server/etc/fapolicy.rules
</span>
</a>
</li>
<li class="file-stats">
<a href="#b517ad8c0ba0b4520677cd16a6704a5bef463cf1">
<span class="new-file">
+
base/server/examples/installation/acme.cfg
</span>
</a>
</li>
<li class="file-stats">
<a href="#30ec3b7501c527e496fef1a899216109662c1231">
<span class="new-file">
+
base/server/examples/installation/ca-clone-pqc.cfg
</span>
</a>
</li>
<li class="file-stats">
<a href="#1f0226eba7e83b756dc2886d2eda0d1ccfa8850c">
<span class="new-file">
+
base/server/examples/installation/ca-clone-w-p12.cfg
</span>
</a>
</li>
<li class="file-stats">
<a href="#f52ee9801414ece96562b39293fd8c78dab2cdc0">
base/server/examples/installation/ca-clone.cfg
</a>
</li>
<li class="file-stats">
<a href="#0b8b038dfc995b8bd34b7bf5e66ee8cb0b6d9e3f">
base/server/examples/installation/ca-ecc.cfg
</a>
</li>
<li class="file-stats">
<a href="#2f40bae296b784c61749a0873c4565feaefef323">
base/server/examples/installation/ca-existing-certs-step1.cfg
</a>
</li>
<li class="file-stats">
<a href="#5661c34ce028b2c5b861aafd36ad7deeffea230e">
base/server/examples/installation/ca-existing-certs-step2.cfg
</a>
</li>
<li class="file-stats">
<a href="#80b4903e6e1140c415f53e83b7ba950218f8af07">
base/server/examples/installation/ca-external-cert-step1.cfg
</a>
</li>
<li class="file-stats">
<a href="#602dc52ecc8c29062a28783270d2934c11c1284c">
base/server/examples/installation/ca-external-cert-step2.cfg
</a>
</li>
<li class="file-stats">
<a href="#ac79f0ca41242d45736a18493d451cc97cf41ee3">
<span class="new-file">
+
base/server/examples/installation/ca-pqc.cfg
</span>
</a>
</li>
<li class="file-stats">
<a href="#3a508e1dbd4dfb99830831a7e28f73967c1247d1">
<span class="new-file">
+
base/server/examples/installation/ca-secure-ds-pqc.cfg
</span>
</a>
</li>
<li class="file-stats">
<a href="#d377d198b1a0485c8b625459d322cec2fafc20ed">
base/server/examples/installation/ca-secure-ds-primary.cfg
</a>
</li>
<li class="file-stats">
<a href="#21ada441c097ca1e16b9ea71f13c0a166378d9d2">
base/server/examples/installation/ca-secure-ds-secondary.cfg
</a>
</li>
<li class="file-stats">
<a href="#6a8da9a451d37108c59ee3dddc8af23a22136535">
base/server/examples/installation/ca-secure-ds.cfg
</a>
</li>
<li class="file-stats">
<a href="#43d467e00699cdddd6b0ef516efe4dd828bc8006">
base/server/examples/installation/ca.cfg
</a>
</li>
<li class="file-stats">
<a href="#29a5c5d9f80993e461d6eb6d1675e30963d74b52">
<span class="new-file">
+
base/server/examples/installation/est-standalone.cfg
</span>
</a>
</li>
<li class="file-stats">
<a href="#85bfc082b357a837468b2019e59131e9764433db">
<span class="new-file">
+
base/server/examples/installation/est.cfg
</span>
</a>
</li>
<li class="file-stats">
<a href="#2242a487195dcbb5ddd844d4ff736004f2f0071c">
<span class="new-file">
+
base/server/examples/installation/kra-ecc.cfg
</span>
</a>
</li>
<li class="file-stats">
<a href="#9130ed467e58a7e5cad57b5b1f70b98bda93f95a">
base/server/examples/installation/kra-external-certs-step1.cfg
</a>
</li>
<li class="file-stats">
<a href="#53c4e168e8c985eec500f0bfad0fe736379af21d">
base/server/examples/installation/kra-external-certs-step2.cfg
</a>
</li>
<li class="file-stats">
<a href="#fbe68b72df8a5ccf7fb7f811bdc68cf90772b94a">
<span class="new-file">
+
base/server/examples/installation/kra-pqc.cfg
</span>
</a>
</li>
<li class="file-stats">
<a href="#fe62e66b5c30964282505605b79441447632157e">
base/server/examples/installation/kra-standalone-step1.cfg
</a>
</li>
<li class="file-stats">
<a href="#9a9ea4c08757e9b7cfd529797226885a2986decf">
base/server/examples/installation/kra-standalone-step2.cfg
</a>
</li>
<li class="file-stats">
<a href="#061884456d29d8c9db596ac40400230994ed0a61">
base/server/examples/installation/ocsp-clone.cfg
</a>
</li>
<li class="file-stats">
<a href="#1b95fef2b3074bc9d678dfc120dba43452871168">
base/server/examples/installation/ocsp-external-certs-step1.cfg
</a>
</li>
<li class="file-stats">
<a href="#38b95b93876baf69abf864f0b33acb00b09ffc96">
base/server/examples/installation/ocsp-external-certs-step2.cfg
</a>
</li>
<li class="file-stats">
<a href="#4c30b4547cc7f8fbc061015e49a1be14a6e1d6ed">
base/server/examples/installation/ocsp-standalone-step1.cfg
</a>
</li>
<li class="file-stats">
<a href="#472381b78ab1d340346bc307074c8a218ebf2241">
base/server/examples/installation/ocsp-standalone-step2.cfg
</a>
</li>
<li class="file-stats">
<a href="#78de46b7b3bc18b94273263a6c5e5b8d7d005046">
base/server/examples/installation/ocsp.cfg
</a>
</li>
<li class="file-stats">
<a href="#815d025c8783d6d750e205e84d3036f8aea88710">
base/server/examples/installation/subca.cfg
</a>
</li>
<li class="file-stats">
<a href="#3bb22004c55ff1bb15d87165523225e98278d387">
base/server/healthcheck/CMakeLists.txt
</a>
</li>
<li class="file-stats">
<a href="#1a306bf4a48a6a96408d7b3a34212ef3bd3dcb76">
<span class="deleted-file">
−
base/server/healthcheck/pki/server/healthcheck/certs/expiration.py
</span>
</a>
</li>
<li class="file-stats">
<a href="#5b5d215b4f78c9fbfa05f2344fe3812aeaa98375">
<span class="new-file">
+
base/server/healthcheck/pki/server/healthcheck/certs/systemcerts.py
</span>
</a>
</li>
<li class="file-stats">
<a href="#9af44ac1d074a26af340016628a48176adb8b896">
<span class="deleted-file">
−
base/server/healthcheck/pki/server/healthcheck/certs/trustflags.py
</span>
</a>
</li>
<li class="file-stats">
<a href="#48a400011aec3b61bbaa8133daddfbc22c30d70d">
<span class="deleted-file">
−
base/server/healthcheck/pki/server/healthcheck/clones/__init__.py
</span>
</a>
</li>
<li class="file-stats">
<a href="#b99ecc63166b1fd7fdb462b121b52b2ea6e995a9">
<span class="deleted-file">
−
base/server/healthcheck/pki/server/healthcheck/clones/connectivity_and_data.py
</span>
</a>
</li>
<li class="file-stats">
<a href="#e34528367492fc62e4fa3f2a5203345a15955e32">
<span class="deleted-file">
−
base/server/healthcheck/pki/server/healthcheck/clones/plugin.py
</span>
</a>
</li>
<li class="file-stats">
<a href="#fa8d0c1893e9226168b2be75d88f80c7ff3c3be9">
base/server/healthcheck/pki/server/healthcheck/meta/connectivity.py
</a>
</li>
<li class="file-stats">
<a href="#86aeeefc45ef2112cb705d20fd94532e29929121">
<span class="deleted-file">
−
base/server/healthcheck/pki/server/healthcheck/meta/csconfig.py
</span>
</a>
</li>
<li class="file-stats">
<a href="#880fe6e3d959a7a6f2cc1fb611e82165123a8fec">
base/server/healthcheck/setup.py
</a>
</li>
<li class="file-stats">
<a href="#e23b15f83b59ff0136a1bb8beb20550e02175715">
<span class="new-file">
+
base/server/mcp/.python-version
</span>
</a>
</li>
<li class="file-stats">
<a href="#076c6e47e4827765edd3fcb8abff125fa2040b73">
<span class="new-file">
+
base/server/mcp/main.py
</span>
</a>
</li>
<li class="file-stats">
<a href="#2f9b0db946e75912ac84092be6aed06733945c98">
<span class="new-file">
+
base/server/mcp/pyproject.toml
</span>
</a>
</li>
<li class="file-stats">
<a href="#41ee628307a0684f2e1b24588f734a5fa882de1d">
base/server/pom.xml
</a>
</li>
<li class="file-stats">
<a href="#c60dc9b36de984f33114150aee09391dadabbaac">
base/server/python/pki/server/__init__.py
</a>
</li>
<li class="file-stats">
<a href="#4c26b515bcbf65805ec9747dd852ea8643b7258c">
base/server/python/pki/server/cli/__init__.py
</a>
</li>
<li class="file-stats">
<a href="#cbd8f323b196954c500e6c1a2a2ace32fd90cef0">
<span class="new-file">
+
base/server/python/pki/server/cli/acl.py
</span>
</a>
</li>
<li class="file-stats">
<a href="#38c64c2fe1e90a619be2572ae39fd9ec53af8b54">
base/server/python/pki/server/cli/acme.py
</a>
</li>
<li class="file-stats">
<a href="#5f828350cfa59f10e5dbb0ca2a91a1223cc6ddef">
base/server/python/pki/server/cli/audit.py
</a>
</li>
<li class="file-stats">
<a href="#0902395bce0fd1308c45bfdafebc6698c531a097">
base/server/python/pki/server/cli/banner.py
</a>
</li>
<li class="file-stats">
<a href="#8f5e79ff75ea89f2961518eb938fb556bd1fc1da">
base/server/python/pki/server/cli/ca.py
</a>
</li>
<li class="file-stats">
<a href="#24456e7a0614cfdc2d312f409167d671aa990ac7">
base/server/python/pki/server/cli/cert.py
</a>
</li>
<li class="file-stats">
<a href="#8c3541b99b5ad1f20f5b6186d53aa3787230c861">
base/server/python/pki/server/cli/config.py
</a>
</li>
<li class="file-stats">
<a href="#76a515ebd8cffe43bc224e0949b1a2b9cebbb635">
base/server/python/pki/server/cli/db.py
</a>
</li>
<li class="file-stats">
<a href="#dddb881c889900c2129c8c8f4330b967086ed12c">
base/server/python/pki/server/cli/est.py
</a>
</li>
<li class="file-stats">
<a href="#23d2deedfd0c73be7b0cac0fed74c7953019a2b8">
base/server/python/pki/server/cli/group.py
</a>
</li>
<li class="file-stats">
<a href="#08ece8c365501bef4484f6aa103b121eccee257e">
base/server/python/pki/server/cli/http.py
</a>
</li>
<li class="file-stats">
<a href="#ad196ca382d3567597b95732256bae5119875003">
<span class="new-file">
+
base/server/python/pki/server/cli/id.py
</span>
</a>
</li>
<li class="file-stats">
<a href="#88fe56cd2f66bb241b4da3de825026690c1f97fd">
base/server/python/pki/server/cli/instance.py
</a>
</li>
<li class="file-stats">
<a href="#24a135f04457979f598631d3e6034af746a0604b">
base/server/python/pki/server/cli/jss.py
</a>
</li>
<li class="file-stats">
<a href="#2faf1c4378da14acebeb744e2d2b14bd75393ae2">
base/server/python/pki/server/cli/kra.py
</a>
</li>
<li class="file-stats">
<a href="#311314398ea276d59fa1e24971a6f15cb059dca7">
base/server/python/pki/server/cli/listener.py
</a>
</li>
<li class="file-stats">
<a href="#0234ba93fe1e75f6abb99520f7e66e9f89690cba">
base/server/python/pki/server/cli/migrate.py
</a>
</li>
<li class="file-stats">
<a href="#9fbda021971f69c8a320264543314c0c44664718">
base/server/python/pki/server/cli/nss.py
</a>
</li>
<li class="file-stats">
<a href="#1e6c215d0ab1c23b056a256bce3cc0cab27c20d8">
base/server/python/pki/server/cli/nuxwdog.py
</a>
</li>
<li class="file-stats">
<a href="#7dcad86e785d445e4f44a353a743c58f510c8876">
base/server/python/pki/server/cli/ocsp.py
</a>
</li>
<li class="file-stats">
<a href="#42b434660b69fd5a9a98eb6f72737ac62d390a56">
base/server/python/pki/server/cli/password.py
</a>
</li>
<li class="file-stats">
<a href="#30b20f016facbd4e9ec2e7bca161b64ec32a65a1">
base/server/python/pki/server/cli/range.py
</a>
</li>
<li class="file-stats">
<a href="#3a0268108328492252e61f9b84b5b3ce806a9be9">
base/server/python/pki/server/cli/sd.py
</a>
</li>
<li class="file-stats">
<a href="#ba5e33a62a94a7c1131649e6de35384fd3298b1c">
base/server/python/pki/server/cli/selftest.py
</a>
</li>
<li class="file-stats">
<a href="#93338f71cd976243d392332e1cb3bb0eaf50bfb6">
base/server/python/pki/server/cli/subsystem.py
</a>
</li>
<li class="file-stats">
<a href="#eee49d90c2470b4ece08416aa955fcc4bc7f5ac7">
base/server/python/pki/server/cli/tks.py
</a>
</li>
<li class="file-stats">
<a href="#4a91980197f9ecbdacb39e6a546ad7b6bb60afd6">
base/server/python/pki/server/cli/tps.py
</a>
</li>
<li class="file-stats">
<a href="#7b06428a24e5934adc619ffb4c401479d8418136">
base/server/python/pki/server/cli/upgrade.py
</a>
</li>
<li class="file-stats">
<a href="#ec56bf73de797fa22c82619a71ce634f376c28e8">
base/server/python/pki/server/cli/user.py
</a>
</li>
<li class="file-stats">
<a href="#a12420a1055c07e53b3d52c519e7e169732e0f09">
base/server/python/pki/server/cli/webapp.py
</a>
</li>
<li class="file-stats">
<a href="#04b750dfab9a26851423fcd4a149c4836bdfb5ba">
base/server/python/pki/server/deployment/__init__.py
</a>
</li>
<li class="file-stats">
<a href="#ee0238fb0e2c2f9ffb7c2d522d3550783ac6183c">
base/server/python/pki/server/deployment/pkiconfig.py
</a>
</li>
<li class="file-stats">
<a href="#cd78ba6e376e08845fa3f518b7e8f902da22781c">
base/server/python/pki/server/deployment/pkihelper.py
</a>
</li>
<li class="file-stats">
<a href="#6775ad10958c8e3e70d382caa6e5a233a390103f">
base/server/python/pki/server/deployment/pkilogging.py
</a>
</li>
<li class="file-stats">
<a href="#aa2f848937bdf9da363552d42004b694a957066d">
base/server/python/pki/server/deployment/pkimessages.py
</a>
</li>
<li class="file-stats">
<a href="#8769165ce523711f625954c227e76115a1a0c46e">
base/server/python/pki/server/deployment/pkiparser.py
</a>
</li>
<li class="file-stats">
<a href="#5e99ce7a97f8222c34161f5b8c4cefea88c047ec">
base/server/python/pki/server/deployment/scriptlets/configuration.py
</a>
</li>
<li class="file-stats">
<a href="#642ce619257098135051631e867255ca6d58552e">
<span class="deleted-file">
−
base/server/python/pki/server/deployment/scriptlets/fapolicy_setup.py
</span>
</a>
</li>
<li class="file-stats">
<a href="#224951740d7faea98a9402ff4b55635bccebde81">
<span class="deleted-file">
−
base/server/python/pki/server/deployment/scriptlets/finalization.py
</span>
</a>
</li>
<li class="file-stats">
<a href="#b86efe51bb837850895bc9f9b6f3629c73792d28">
<span class="deleted-file">
−
base/server/python/pki/server/deployment/scriptlets/infrastructure_layout.py
</span>
</a>
</li>
<li class="file-stats">
<a href="#68ac0e51181749a18c0d015368133041eeb5050e">
<span class="deleted-file">
−
base/server/python/pki/server/deployment/scriptlets/initialization.py
</span>
</a>
</li>
<li class="file-stats">
<a href="#86711012e39e1509c29e31c66a6fcfa987bb54f2">
base/server/python/pki/server/deployment/scriptlets/instance_layout.py
</a>
</li>
<li class="file-stats">
<a href="#131f4978542b15999270dd94e0cb3e27e9f0b2c6">
<span class="deleted-file">
−
base/server/python/pki/server/deployment/scriptlets/keygen.py
</span>
</a>
</li>
<li class="file-stats">
<a href="#f9156742f265ceda809cfbd76a605be52cb500a2">
<span class="deleted-file">
−
base/server/python/pki/server/deployment/scriptlets/security_databases.py
</span>
</a>
</li>
<li class="file-stats">
<a href="#c16e65fe4d9c5858e060f38556cba8489265c84b">
<span class="deleted-file">
−
base/server/python/pki/server/deployment/scriptlets/selinux_setup.py
</span>
</a>
</li>
<li class="file-stats">
<a href="#f51a0d9c9d351b646d9cf4050221c3a883bd9cba">
base/server/python/pki/server/deployment/scriptlets/subsystem_layout.py
</a>
</li>
<li class="file-stats">
<a href="#2bac7f5475cdbe0ea2f6af694ba958f2c8559611">
base/server/python/pki/server/instance.py
</a>
</li>
<li class="file-stats">
<a href="#d577a74d88a9ee09ed4df805abe3c6f22c78b19f">
base/server/python/pki/server/pkidestroy.py
</a>
</li>
<li class="file-stats">
<a href="#1ac7d9671766ba3eccfd309514dc1bb566d5921e">
base/server/python/pki/server/pkiserver.py
</a>
</li>
<li class="file-stats">
<a href="#a249338dba95f974a70832e5a6f186f43dc467c5">
base/server/python/pki/server/pkispawn.py
</a>
</li>
<li class="file-stats">
<a href="#0fe1556ddfbf7261ec96e5c193f6b038cfd9e337">
base/server/python/pki/server/subsystem.py
</a>
</li>
<li class="file-stats">
<a href="#5635f425bc5e06a41390e705dba99a392ed79676">
base/server/python/pki/server/upgrade.py
</a>
</li>
<li class="file-stats">
<a href="#5b9ee6b5317fe4ca4d38394be4f1d51b3cf10f4d">
base/server/sbin/pki-server
</a>
</li>
<li class="file-stats">
<a href="#e8ba7f5bebbe94717d19a894c07cd00d2ca35b7c">
base/server/sbin/pki-server-upgrade
→
base/server/sbin/pki-tomcat-start
</a>
</li>
<li class="file-stats">
<a href="#fcfe58777ca5d1b29d146c4750a4ea2d12342026">
base/server/python/pki/server/deployment/scriptlets/webapp_deployment.py
→
base/server/sbin/pki-tomcat-stop
</a>
</li>
<li class="file-stats">
<a href="#ccf2b6db959c60bcfef067165ba3db1e23134dc8">
base/server/sbin/pkidestroy
</a>
</li>
<li class="file-stats">
<a href="#b3a90794f39d758e2d738d23598b3a4012454076">
base/server/sbin/pkispawn
</a>
</li>
<li class="file-stats">
<a href="#55da024bfd0362dd5c5d31fff828f4f9cf5c433f">
base/server/scripts/operations
</a>
</li>
<li class="file-stats">
<a href="#39e8d942b4fe43f9287165e9aacff9e812521e46">
base/server/scripts/pki-server-nuxwdog
</a>
</li>
<li class="file-stats">
<a href="#fa03afabab25eb0d9f929b3da3ee8f41ef205356">
base/server/scripts/pkidaemon
</a>
</li>
<li class="file-stats">
<a href="#116afc19cb678f37075263f9ca812486d3b7bec4">
base/server/share/conf/logging.properties
</a>
</li>
<li class="file-stats">
<a href="#648d25b07c7bc2f74a33f3fd9f701aad03d83a83">
base/server/share/conf/pki.policy
</a>
</li>
<li class="file-stats">
<a href="#4493a326b927744634d67243d3aeafa8f2d09f20">
base/server/share/conf/tomcat.conf
</a>
</li>
<li class="file-stats">
<a href="#876f26c43e415e563a76beebf278943e3a42f103">
base/server/share/lib/systemd/system/pki-tomcatd-nuxwdog@.service
</a>
</li>
<li class="file-stats">
<a href="#205bfd69bde61e97f92d46cb6cc6a094397b261d">
base/server/share/lib/systemd/system/pki-tomcatd@.service
</a>
</li>
<li class="file-stats">
<a href="#cd3d89b285f8abbc4a95c971a95ec0d0ab1c6bb4">
<span class="deleted-file">
−
base/server/share/webapps/ROOT/index.jsp
</span>
</a>
</li>
<li class="file-stats">
<a href="#d08b05e4932d23bd83a46154e7d755713c51d76a">
<span class="deleted-file">
−
base/server/share/webapps/pki/admin/console/config/adminauthenticatepanel.vm
</span>
</a>
</li>
<li class="file-stats">
<a href="#d9899b63b3dea504103a0afa6bff6a3b9e2a11fa">
<span class="deleted-file">
−
base/server/share/webapps/pki/admin/console/config/adminpanel.vm
</span>
</a>
</li>
<li class="file-stats">
<a href="#38363d148898d67ee000277e00d14bc6386b9baa">
<span class="deleted-file">
−
base/server/share/webapps/pki/admin/console/config/agentauthenticatepanel.vm
</span>
</a>
</li>
<li class="file-stats">
<a href="#9f5b69d50383e3736d54927a80acb3fb87ab9c15">
<span class="deleted-file">
−
base/server/share/webapps/pki/admin/console/config/authdbpanel.vm
</span>
</a>
</li>
<li class="file-stats">
<a href="#362845741ff3255a75faa883b6e9543d3604c9d4">
<span class="deleted-file">
−
base/server/share/webapps/pki/admin/console/config/backupkeycertpanel.vm
</span>
</a>
</li>
<li class="file-stats">
<a href="#7b871ab309f397398931e0cadcb557418e9c86ee">
<span class="deleted-file">
−
base/server/share/webapps/pki/admin/console/config/cainfopanel.vm
</span>
</a>
</li>
<li class="file-stats">
<a href="#cc1c9ef3129e55dc3475135d3cfca7534f76c672">
<span class="deleted-file">
−
base/server/share/webapps/pki/admin/console/config/certchainpanel.vm
</span>
</a>
</li>
<li class="file-stats">
<a href="#e51027fbae91dff3856f8adb5b4695f06c65945f">
<span class="deleted-file">
−
base/server/share/webapps/pki/admin/console/config/certprettyprintpanel.vm
</span>
</a>
</li>
<li class="file-stats">
<a href="#0fe41ae598db5b0e4b2c38cc483a000dcdc335d6">
<span class="deleted-file">
−
base/server/share/webapps/pki/admin/console/config/certrequestpanel.vm
</span>
</a>
</li>
<li class="file-stats">
<a href="#7c989aa440520bde5e857bf6197e1b42d2f9572c">
<span class="deleted-file">
−
base/server/share/webapps/pki/admin/console/config/config_addhsm.vm
</span>
</a>
</li>
<li class="file-stats">
<a href="#4e1fc7894fdb7801817690a2e1e43d848d9b401d">
<span class="deleted-file">
−
base/server/share/webapps/pki/admin/console/config/config_hsmloginpanel.vm
</span>
</a>
</li>
<li class="file-stats">
<a href="#e370b2cb3a234957e9145dcf3590617f2393c99d">
<span class="deleted-file">
−
base/server/share/webapps/pki/admin/console/config/createsubsystempanel.vm
</span>
</a>
</li>
<li class="file-stats">
<a href="#2a2bbc6bba97dabc92e34a604cf2a334aed11fcb">
<span class="deleted-file">
−
base/server/share/webapps/pki/admin/console/config/databasepanel.vm
</span>
</a>
</li>
<li class="file-stats">
<a href="#3f3394a65d1180a157b138d7f4c654464bcb1360">
<span class="deleted-file">
−
base/server/share/webapps/pki/admin/console/config/displaycertchainpanel.vm
</span>
</a>
</li>
<li class="file-stats">
<a href="#a2b5a45ee502e4916a6ce891271be5998418988e">
<span class="deleted-file">
−
base/server/share/webapps/pki/admin/console/config/donepanel.vm
</span>
</a>
</li>
<li class="file-stats">
<a href="#a6ca6d266d0ce319bdd236b023142bb2d34aa4da">
<span class="deleted-file">
−
base/server/share/webapps/pki/admin/console/config/drminfopanel.vm
</span>
</a>
</li>
<li class="file-stats">
<a href="#9b1d4caeac8a5d9e582e42233b52964594faa916">
<span class="deleted-file">
−
base/server/share/webapps/pki/admin/console/config/footer.vm
</span>
</a>
</li>
<li class="file-stats">
<a href="#b2d87f0b955878fc8ab9fb40a2658a2dc26073c3">
<span class="deleted-file">
−
base/server/share/webapps/pki/admin/console/config/header.vm
</span>
</a>
</li>
<li class="file-stats">
<a href="#b6c88447147eb15bd55ce0500ce1939fbb151ae1">
<span class="deleted-file">
−
base/server/share/webapps/pki/admin/console/config/hierarchypanel.vm
</span>
</a>
</li>
<li class="file-stats">
<a href="#44df0cc6e3d5e870c2f443e3fe96a5c0377a14f0">
<span class="deleted-file">
−
base/server/share/webapps/pki/admin/console/config/importadmincertpanel.vm
</span>
</a>
</li>
<li class="file-stats">
<a href="#62baf2d3754326a42368d17b619d6310557801ea">
<span class="deleted-file">
−
base/server/share/webapps/pki/admin/console/config/importcachainpanel.vm
</span>
</a>
</li>
<li class="file-stats">
<a href="#998e64f2cdb5cefdc435cdb33f0a50c8192a7248">
<span class="deleted-file">
−
base/server/share/webapps/pki/admin/console/config/login.vm
</span>
</a>
</li>
<li class="file-stats">
<a href="#5ac4e47bec9e5d8185e9220b568eda24f8db8cbb">
<span class="deleted-file">
−
base/server/share/webapps/pki/admin/console/config/modulepanel.vm
</span>
</a>
</li>
<li class="file-stats">
<a href="#c9b6ddb58cd4df011539d4cee71ed3f61b692f00">
<span class="deleted-file">
−
base/server/share/webapps/pki/admin/console/config/namepanel.vm
</span>
</a>
</li>
<li class="file-stats">
<a href="#bd5f4d9667f83f03d9720c2bd5d5ad9b2d98deaf">
<span class="deleted-file">
−
base/server/share/webapps/pki/admin/console/config/restorekeycertpanel.vm
</span>
</a>
</li>
<li class="file-stats">
<a href="#c9634eb79ff2d9fb71fe2e282fbacbed9b3fb117">
<span class="deleted-file">
−
base/server/share/webapps/pki/admin/console/config/savepkcs12panel.vm
</span>
</a>
</li>
<li class="file-stats">
<a href="#b069ea7418f6d352a997a0861e86d39ba6fbf3d6">
<span class="deleted-file">
−
base/server/share/webapps/pki/admin/console/config/securitydomainloginpanel.vm
</span>
</a>
</li>
<li class="file-stats">
<a href="#13aa3da02544f2be7eb32c7de036cd784a3d9575">
<span class="deleted-file">
−
base/server/share/webapps/pki/admin/console/config/securitydomainpanel.vm
</span>
</a>
</li>
<li class="file-stats">
<a href="#cf766e1e2a555a21f9fbe83321a43f737d610dc4">
<span class="deleted-file">
−
base/server/share/webapps/pki/admin/console/config/sidemenu.vm
</span>
</a>
</li>
<li class="file-stats">
<a href="#59aab771e8c0dab572046b66a9ceeab9311c9114">
<span class="deleted-file">
−
base/server/share/webapps/pki/admin/console/config/sizepanel.vm
</span>
</a>
</li>
<li class="file-stats">
<a href="#ef83c1531ec8efbf6885decdde29b14deed4761c">
<span class="deleted-file">
−
base/server/share/webapps/pki/admin/console/config/tksinfopanel.vm
</span>
</a>
</li>
<li class="file-stats">
<a href="#135c2a039980a68b21efa1601ab52b19403911c9">
<span class="deleted-file">
−
base/server/share/webapps/pki/admin/console/config/welcomepanel.vm
</span>
</a>
</li>
<li class="file-stats">
<a href="#7914e02f438dc0616911bcb6eb7b028feb7a67d3">
<span class="deleted-file">
−
base/server/share/webapps/pki/admin/console/config/wizard.vm
</span>
</a>
</li>
<li class="file-stats">
<a href="#1c381867211c4c919905971b8b98570846fd4979">
<span class="deleted-file">
−
base/server/share/webapps/pki/admin/console/config/xml.vm
</span>
</a>
</li>
<li class="file-stats">
<a href="#7baa98eb2a728556b0e6a9c3a27b6be6eeb916b1">
base/common/src/main/java/com/netscape/certsrv/base/SessionContext.java
→
base/server/src/main/java/com/netscape/certsrv/base/SessionContext.java
</a>
</li>
<li class="file-stats">
<a href="#2ac8a12609614f169cc6a7ae3f0eeb8fdb5ab71f">
<span class="new-file">
+
base/server/src/main/java/com/netscape/certsrv/base/WebAction.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#b17ea3a2e5a1f07eabd1d0c84a2464d1d7a411e6">
base/common/src/main/java/com/netscape/certsrv/base/IAuthInfo.java
→
base/server/src/main/java/com/netscape/certsrv/dbs/DBPagedSearch.java
</a>
</li>
<li class="file-stats">
<a href="#b90e5bd2969cd3d957c14a7c1e8ed39c36682ea1">
base/server/src/main/java/com/netscape/certsrv/dbs/DBVirtualList.java
</a>
</li>
<li class="file-stats">
<a href="#b9e174fa953fbf8361a9a870c494784151edabc6">
base/server/src/main/java/com/netscape/certsrv/ldap/LdapConnFactory.java
</a>
</li>
<li class="file-stats">
<a href="#80c7b55a85c34cefa50036af8860a8c48426d529">
base/server/src/main/java/com/netscape/certsrv/logging/LogEventListener.java
</a>
</li>
<li class="file-stats">
<a href="#422c56c5d7b5ac5d02635f5ca222ef3d41cf1d79">
base/server/src/main/java/com/netscape/certsrv/logging/event/AccessSessionEstablishEvent.java
</a>
</li>
<li class="file-stats">
<a href="#c53446b540875406d40dcdc62070e2ecceba8bf5">
base/server/src/main/java/com/netscape/certsrv/logging/event/AccessSessionTerminatedEvent.java
</a>
</li>
<li class="file-stats">
<a href="#e2d496c2ce6cfd46524d23c3505d62cbd185eedf">
base/server/src/main/java/com/netscape/certsrv/logging/event/ClientAccessSessionEstablishEvent.java
</a>
</li>
<li class="file-stats">
<a href="#f239142ad26ce77a3577b3c2e6b22e66d83c11b5">
base/server/src/main/java/com/netscape/certsrv/logging/event/ClientAccessSessionTerminatedEvent.java
</a>
</li>
<li class="file-stats">
<a href="#867c5c1c16f58cf61c163f4f197f5c5f91e4506f">
base/server/src/main/java/com/netscape/certsrv/ocsp/IOCSPService.java
</a>
</li>
<li class="file-stats">
<a href="#85dea4e5cf860f63909aa6cb1c6c347f7f7640a4">
base/server/src/main/java/com/netscape/certsrv/publish/Mapper.java
</a>
</li>
<li class="file-stats">
<a href="#e265a7e3404445107b3bbea1f11d85d6aea34b26">
base/server/src/main/java/com/netscape/certsrv/publish/Publisher.java
</a>
</li>
<li class="file-stats">
<a href="#6482d738d76f409dc8868f773983262c5226d22f">
base/server/src/main/java/com/netscape/certsrv/request/IPolicy.java
→
base/server/src/main/java/com/netscape/certsrv/request/Policy.java
</a>
</li>
<li class="file-stats">
<a href="#b0a6cdbe7a38ba0a5f61fe54277516b9269d86cb">
base/server/src/main/java/com/netscape/certsrv/request/RequestListener.java
</a>
</li>
<li class="file-stats">
<a href="#df7b68a970aa5d197ae5bebe7b6050ef7a440b68">
base/server/src/main/java/com/netscape/certsrv/security/SigningUnit.java
</a>
</li>
<li class="file-stats">
<a href="#fa54348dfb0627c3f6767211474df0eee441f0df">
base/server/src/main/java/com/netscape/certsrv/usrgrp/CertUserLocator.java
</a>
</li>
<li class="file-stats">
<a href="#a467e625836e487dd6cc6056d056fc36613b79f9">
base/common/src/main/java/com/netscape/certsrv/util/HttpInput.java
→
base/server/src/main/java/com/netscape/certsrv/util/HttpInput.java
</a>
</li>
<li class="file-stats">
<a href="#d5e4852141206036a510cb3e3babdeb0149d54b3">
base/server/src/main/java/com/netscape/cms/authentication/DirBasedAuthentication.java
</a>
</li>
<li class="file-stats">
<a href="#61a72b66f3fa52b4d8cc262731e19e5e3c03aa13">
base/server/src/main/java/com/netscape/cms/authentication/PortalEnroll.java
</a>
</li>
<li class="file-stats">
<a href="#c44ac0144180fee05596917837cc42f6e690c63e">
base/server/src/main/java/com/netscape/cms/authentication/TokenAuthentication.java
</a>
</li>
<li class="file-stats">
<a href="#408da2db5657a92926aba8021c17805416181b02">
base/server/src/main/java/com/netscape/cms/authentication/UidPwdDirAuthentication.java
</a>
</li>
<li class="file-stats">
<a href="#44abf41d36d032f4a778fbaa65f7fc102dce091c">
base/server/src/main/java/com/netscape/cms/authentication/UidPwdPinDirAuthentication.java
</a>
</li>
<li class="file-stats">
<a href="#1a383ff6765b4e1e4d09e8b8d8d84d7fe8e1e32f">
base/server/src/main/java/com/netscape/cms/authentication/UserPwdDirAuthentication.java
</a>
</li>
<li class="file-stats">
<a href="#92c77dabefe7096024e7ac1ba76335920abe9b09">
base/server/src/main/java/com/netscape/cms/authorization/AAclAuthz.java
</a>
</li>
<li class="file-stats">
<a href="#21bf0c4edf1c8bd3d66212b82c68fa8b494e87e8">
base/server/src/main/java/com/netscape/cms/authorization/ACL.java
</a>
</li>
<li class="file-stats">
<a href="#1ea16eb60020167cbd9df1aef3ce562b15105d70">
base/server/src/main/java/com/netscape/cms/authorization/DirAclAuthz.java
</a>
</li>
<li class="file-stats">
<a href="#4f5464830384f7065ba847687698490c6ad0c0ce">
base/server/src/main/java/com/netscape/cms/jobs/Job.java
</a>
</li>
<li class="file-stats">
<a href="#234e12a6d1e655843bb24b06bfa630f5ed66d588">
base/server/src/main/java/com/netscape/cms/jobs/RequestInQueueJob.java
</a>
</li>
<li class="file-stats">
<a href="#75f3de928d1f4c337f3ff08f0c2750ec7310eb77">
base/ca/src/main/java/com/netscape/cms/listeners/RequestInQListener.java
→
base/server/src/main/java/com/netscape/cms/listeners/RequestInQListener.java
</a>
</li>
<li class="file-stats">
<a href="#ac875cd0a87e4734b85cda7f4332a4f9e1321a26">
base/server/src/main/java/com/netscape/cms/logging/LogFile.java
</a>
</li>
<li class="file-stats">
<a href="#7d10beee4fa86f829c66b02afba55d983be558cb">
base/server/src/main/java/com/netscape/cms/password/PasswordChecker.java
</a>
</li>
<li class="file-stats">
<a href="#f40accf49b3ef88412cc1407ca1b7e27160f812d">
base/server/src/main/java/com/netscape/cms/realm/PKILDAPRealm.java
</a>
</li>
<li class="file-stats">
<a href="#614ba660d1474f7ddf40e428acc40dfa747a6978">
base/server/src/main/java/com/netscape/cms/realm/PKIPostgreSQLRealm.java
</a>
</li>
<li class="file-stats">
<a href="#13b70900c8ee64858f943b17269fe96b6e110eb0">
base/server/src/main/java/com/netscape/cms/realm/PKIRealm.java
</a>
</li>
<li class="file-stats">
<a href="#c59944c9ff9f2836856d541fe23a8268946cdd6c">
base/server/src/main/java/com/netscape/cms/realm/RealmCommon.java
</a>
</li>
<li class="file-stats">
<a href="#aed7d34a5cc8838c92648eb6b2d74a47db4ab766">
base/server/src/main/java/com/netscape/cms/selftests/SelfTest.java
</a>
</li>
<li class="file-stats">
<a href="#018a71e344b448f48d36f485e2422e50d2f90269">
<span class="new-file">
+
base/server/src/main/java/com/netscape/cms/selftests/SelfTestPluginConfig.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#cc06fd58b7286c776e6138e304343964d5c3025d">
base/server/src/main/java/com/netscape/cms/servlet/admin/AdminServlet.java
</a>
</li>
<li class="file-stats">
<a href="#240ccf41cc1b039c982554e3a29fe78522230b77">
base/server/src/main/java/com/netscape/cms/servlet/admin/CMSAdminServlet.java
</a>
</li>
<li class="file-stats">
<a href="#4a7ac4e08d32fef333a7cdf282b58026d25555da">
base/server/src/main/java/com/netscape/cms/servlet/admin/GroupMemberProcessor.java
</a>
</li>
<li class="file-stats">
<a href="#e9f634898cb87508ddf098ff95522e29d8c529c3">
base/server/src/main/java/com/netscape/cms/servlet/admin/PolicyAdminServlet.java
</a>
</li>
<li class="file-stats">
<a href="#662b6e55c79323d8f833015df51a2ce2214a3111">
base/server/src/main/java/com/netscape/cms/servlet/admin/UsrGrpAdminServlet.java
</a>
</li>
<li class="file-stats">
<a href="#1925837de1fd1131216f00f67ce4d9e51b0ff31b">
<span class="new-file">
+
base/server/src/main/java/com/netscape/cms/servlet/base/BulkIssuanceProxyServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#b3ca9a7358edd42772734487bc2b8b4d327b4b85">
<span class="new-file">
+
base/server/src/main/java/com/netscape/cms/servlet/base/DoRevokeProxyServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#befd4f8f6268eb9a302b5ab2cb08a6b533ca68cc">
base/server/src/main/java/com/netscape/cms/servlet/base/PKIService.java
</a>
</li>
<li class="file-stats">
<a href="#f21a16d19f33836f52fa16f589aa1e15ca5634f5">
<span class="new-file">
+
base/server/src/main/java/com/netscape/cms/servlet/base/ProfileSubmitProxyServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#a9597df92de1bb479a87113fb2e849c58709b246">
base/server/src/main/java/com/netscape/cms/servlet/base/ProxyServlet.java
</a>
</li>
<li class="file-stats">
<a href="#6414c0bc7ee300ca4167aa6038fff5f84255c0db">
base/server/src/main/java/com/netscape/cms/servlet/cert/RemoteAuthConfig.java
</a>
</li>
<li class="file-stats">
<a href="#85ca0a63dcb066473309d435e552b54423f34c10">
base/server/src/main/java/com/netscape/cms/servlet/connector/CloneServlet.java
</a>
</li>
<li class="file-stats">
<a href="#39abb65ae20343875c7038f0ac3a8362ad0011d7">
base/server/src/main/java/com/netscape/cms/servlet/connector/ConnectorServlet.java
</a>
</li>
<li class="file-stats">
<a href="#5d7154241d29aceeacc8a34a5c166c9dce4b8f40">
<span class="new-file">
+
base/server/src/main/java/com/netscape/cms/servlet/csadmin/CATokenAuthenticate.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#0e97c31bba776cb6591960059d8ed9bb7e53bdb6">
<span class="new-file">
+
base/server/src/main/java/com/netscape/cms/servlet/csadmin/CATokenAuthenticateAdmin.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#0c39e5b76d7a4ac78ace8df740c99e77032611de">
<span class="deleted-file">
−
base/server/src/main/java/com/netscape/cms/servlet/csadmin/ConfigCertApprovalCallback.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#a04c52f4fb956a56218b68ff230c3d2050875328">
<span class="deleted-file">
−
base/server/src/main/java/com/netscape/cms/servlet/csadmin/Configurator.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#bce3b0cfa65f1a21946986f73d19869b583e7a5a">
base/server/src/main/java/com/netscape/cms/servlet/csadmin/GetConfigEntries.java
</a>
</li>
<li class="file-stats">
<a href="#d479eff756dc5e1c1d9338cc1bfe2b3b858ec785">
base/server/src/main/java/com/netscape/cms/servlet/csadmin/GetStatus.java
</a>
</li>
<li class="file-stats">
<a href="#d238cca66475596573aeec21d5682e0cd701fa3d">
<span class="new-file">
+
base/server/src/main/java/com/netscape/cms/servlet/csadmin/KRATokenAuthenticateAdmin.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#fd8f777b68c3ffb31c360a84c845528e5806ad35">
base/server/src/main/java/com/netscape/cms/servlet/csadmin/LDAPConfigurator.java
</a>
</li>
<li class="file-stats">
<a href="#3c06950e5280751a43c9874ccba7c1ee716a2357">
base/server/src/main/java/com/netscape/cms/servlet/csadmin/SecurityDomainProcessor.java
</a>
</li>
<li class="file-stats">
<a href="#2e399d74d97f48c905139dbaf3a7c7d221864691">
base/server/src/main/java/com/netscape/cms/servlet/csadmin/TokenAuthenticate.java
</a>
</li>
<li class="file-stats">
<a href="#deeaf3dd3529cb4c894f63d6988b85ed4487eb60">
base/server/src/main/java/com/netscape/cms/servlet/csadmin/UpdateNumberRange.java
</a>
</li>
<li class="file-stats">
<a href="#4560de1507c61cb3b2239058ed8807f7e8507bdf">
base/server/src/main/java/com/netscape/cms/servlet/key/KeyRecordParser.java
</a>
</li>
<li class="file-stats">
<a href="#f31d3e63656905f2795de4a021b2f1054c66a6dd">
base/server/src/main/java/com/netscape/cms/servlet/ocsp/OCSPServlet.java
</a>
</li>
<li class="file-stats">
<a href="#15c104849b2352a28dbdf79ccc3d3dfe4bb40e88">
base/server/src/main/java/com/netscape/cms/servlet/processors/CMCProcessor.java
</a>
</li>
<li class="file-stats">
<a href="#1edcdc9988879388c563020ab955a0fa341da486">
base/server/src/main/java/com/netscape/cms/servlet/processors/CRMFProcessor.java
</a>
</li>
<li class="file-stats">
<a href="#f54524a01041595fde5cb79ceba3bc6d0dd9a7d4">
base/server/src/main/java/com/netscape/cms/servlet/processors/PKIProcessor.java
</a>
</li>
<li class="file-stats">
<a href="#c6d116351401116e2bf78dfc28f944359855c787">
base/server/src/main/java/com/netscape/cms/servlet/processors/Processor.java
</a>
</li>
<li class="file-stats">
<a href="#1faa475b71ae21821becc0a7ed566811b79ffb8a">
base/server/src/main/java/com/netscape/cms/servlet/request/SearchReqs.java
</a>
</li>
<li class="file-stats">
<a href="#2487ba1180b61afe520b04bdde528e8d921669fe">
base/server/src/main/java/com/netscape/cmscore/apps/CMS.java
</a>
</li>
<li class="file-stats">
<a href="#4334d1ace2d7f8424bc0f061580bbd2ed8f520c3">
base/server/src/main/java/com/netscape/cmscore/apps/CMSEngine.java
</a>
</li>
<li class="file-stats">
<a href="#36d2c6f0032178ded613313675bb4a3b4546b679">
base/server/src/main/java/com/netscape/cmscore/apps/PKIWebListener.java
→
base/server/src/main/java/com/netscape/cmscore/apps/CMSWebListener.java
</a>
</li>
<li class="file-stats">
<a href="#37980a8f9f88bfbf15d28a4d619cc7e6113aac6d">
base/server/src/main/java/com/netscape/cmscore/apps/DatabaseConfig.java
</a>
</li>
<li class="file-stats">
<a href="#325c2f59ade543c699bcdd5e68a96e0bb9b19e06">
base/server/src/main/java/com/netscape/cmscore/apps/EngineConfig.java
</a>
</li>
<li class="file-stats">
<a href="#5096cfbd81e6866e4afb5eacff1c49bc4b61d3b5">
base/server/src/main/java/com/netscape/cmscore/apps/ServerXml.java
→
base/server/src/main/java/com/netscape/cmscore/apps/ServerConfig.java
</a>
</li>
<li class="file-stats">
<a href="#ba3f7dbca64f5d86481312007cb72431d0059735">
<span class="deleted-file">
−
base/server/src/main/java/com/netscape/cmscore/apps/SubsystemInfo.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#4cbbd5d4d20f529371bfb1df0423f7684c0303f4">
base/server/src/main/java/com/netscape/cmscore/apps/SubsystemConfig.java
→
base/server/src/main/java/com/netscape/cmscore/apps/SubsystemInfoConfig.java
</a>
</li>
<li class="file-stats">
<a href="#65a245c5eb9941ef6aa472aca20f6e258efb8aa9">
base/server/src/main/java/com/netscape/cmscore/apps/SubsystemsConfig.java
</a>
</li>
<li class="file-stats">
<a href="#870d02013993146b32d4cb14b744b5fb786edfbc">
base/server/src/main/java/com/netscape/cmscore/authentication/CertUserDBAuthentication.java
</a>
</li>
<li class="file-stats">
<a href="#e0d228f37a4bb922d9ceb69b18f69a941b1be49a">
base/server/src/main/java/com/netscape/cmscore/authentication/NullAuthentication.java
</a>
</li>
<li class="file-stats">
<a href="#7aca19fe935c08c432a65d581c1e78f3757de76c">
base/server/src/main/java/com/netscape/cmscore/authentication/PasswdUserDBAuthentication.java
</a>
</li>
<li class="file-stats">
<a href="#be2ca0d7f3a1be1426c8438b13f677788b9c39cb">
base/server/src/main/java/com/netscape/cmscore/base/ArgBlock.java
</a>
</li>
<li class="file-stats">
<a href="#9bbaeb8804ec1d839fafb598dab4267f2a1fd43c">
base/server/src/main/java/com/netscape/cmscore/base/ConfigStore.java
</a>
</li>
<li class="file-stats">
<a href="#6ad4373954782d307f3905ecf483354de66dc132">
base/server/src/main/java/com/netscape/cmscore/base/FileConfigStorage.java
</a>
</li>
<li class="file-stats">
<a href="#de823a193cd78374bedb9599b721ddfc9e631704">
base/server/src/main/java/com/netscape/cmscore/base/LDAPConfigStorage.java
</a>
</li>
<li class="file-stats">
<a href="#07def3faeb2846adca1c55b5a03b1c80c698dc90">
base/server/src/main/java/com/netscape/cmscore/base/SimpleProperties.java
</a>
</li>
<li class="file-stats">
<a href="#096f9d45739675c0be13056d20b278af25b87dc9">
base/server/src/main/java/com/netscape/cmscore/cert/CertUtils.java
</a>
</li>
<li class="file-stats">
<a href="#3690fdfdd1f9b282a8a9051f1f82dca843607a14">
<span class="deleted-file">
−
base/server/src/main/java/com/netscape/cmscore/cert/ExtPrettyPrint.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#6e2c7f71c24e1f9476417617f5b958553ceb17fe">
<span class="deleted-file">
−
base/server/src/main/java/com/netscape/cmscore/cert/PrettyPrintFormat.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#54c2e9db0a11a169cc0ebc73a0c2a031aaf0ae88">
base/server/src/main/java/com/netscape/cmscore/connector/HttpConnFactory.java
</a>
</li>
<li class="file-stats">
<a href="#42182b24d86e4da96c335ba0bd11173ad433c4bd">
base/server/src/main/java/com/netscape/cmscore/connector/Resender.java
</a>
</li>
<li class="file-stats">
<a href="#b186ac8852678974561e953f038a49d66bae8fd6">
base/server/src/main/java/com/netscape/cmscore/crmf/CRMFParser.java
</a>
</li>
<li class="file-stats">
<a href="#41dfb17a0fb5aef635725607081c9be3ae7565a2">
base/server/src/main/java/com/netscape/cmscore/dbs/CRLIssuingPointRecord.java
</a>
</li>
<li class="file-stats">
<a href="#b3bb7e149e6348aacf755f1c9aea0f68864e7131">
base/server/src/main/java/com/netscape/cmscore/dbs/CertRecord.java
</a>
</li>
<li class="file-stats">
<a href="#0ee2b6057c243efe5893ad577eaa832e28ca138a">
base/server/src/main/java/com/netscape/cmscore/dbs/CertRecordList.java
</a>
</li>
<li class="file-stats">
<a href="#975763f2735067cc7c07da6a34fa081b4415b3c0">
base/server/src/main/java/com/netscape/cmscore/dbs/DBRegistry.java
</a>
</li>
<li class="file-stats">
<a href="#eda87a8e78a1decfbe63be5fcf625f51c03e0bdc">
base/server/src/main/java/com/netscape/cmscore/dbs/DBSSession.java
</a>
</li>
<li class="file-stats">
<a href="#60ec0820a7ea7d1ef7a4fffc25b5fa3562d78f16">
base/server/src/main/java/com/netscape/cmscore/dbs/DBSearchResults.java
</a>
</li>
<li class="file-stats">
<a href="#8abc0514e090becb03fac97a46928ce0ad06d715">
base/server/src/main/java/com/netscape/cmscore/dbs/DBSubsystem.java
</a>
</li>
<li class="file-stats">
<a href="#36d45207fe855611bb33db20dba7c7b46b83b830">
base/server/src/main/java/com/netscape/cmscore/dbs/ElementProcessor.java
</a>
</li>
<li class="file-stats">
<a href="#2a4cd8246ba0782ef091a08c641da84bf491bf01">
base/server/src/main/java/com/netscape/cmscore/dbs/KeyRecord.java
</a>
</li>
<li class="file-stats">
<a href="#c9a5184a8d51a30865ff52dbbd57a5f1945738e0">
base/server/src/main/java/com/netscape/cmscore/dbs/LDAPDatabase.java
</a>
</li>
<li class="file-stats">
<a href="#8978bb1c57951540d11c3855f3d7fc87cb113d4b">
<span class="new-file">
+
base/server/src/main/java/com/netscape/cmscore/dbs/LDAPPagedSearch.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#8ea69c143ac08154b4734209ff3d30256c201aac">
base/server/src/main/java/com/netscape/cmscore/dbs/LDAPRegistry.java
</a>
</li>
<li class="file-stats">
<a href="#46aa03be6cfeb249efb1f7a5f4931cda6ef0d7c4">
base/server/src/main/java/com/netscape/cmscore/dbs/LDAPSession.java
</a>
</li>
<li class="file-stats">
<a href="#6f946a1749c2d5d57e7e47c4bb6337bbb99d8f92">
base/server/src/main/java/com/netscape/cmscore/dbs/LDAPVirtualList.java
</a>
</li>
<li class="file-stats">
<a href="#a7918a44a3c3e309444f86022ea39fd8f904d6d2">
base/server/src/main/java/com/netscape/cmscore/dbs/MetaInfoMapper.java
</a>
</li>
<li class="file-stats">
<a href="#117d39762a443550bef567be2bb4164edf244235">
base/server/src/main/java/com/netscape/cmscore/dbs/ObjectStreamMapper.java
</a>
</li>
<li class="file-stats">
<a href="#2ae9dd9313ec55e4655dfdfbcb5eb99391c9291a">
base/server/src/main/java/com/netscape/cmscore/request/RequestListByStatus.java
→
base/server/src/main/java/com/netscape/cmscore/dbs/RecordPagedList.java
</a>
</li>
<li class="file-stats">
<a href="#453ceefe9cf9b4bef75eb49b2108d34c3a31e907">
base/server/src/main/java/com/netscape/cmscore/dbs/ReplicaIDRepository.java
</a>
</li>
<li class="file-stats">
<a href="#1285a93a08eea19a73ca9cce873fedc43e5f87f2">
base/server/src/main/java/com/netscape/cmscore/dbs/Repository.java
</a>
</li>
<li class="file-stats">
<a href="#e656b6d07b3393e61a59793cb0fb5a573b576541">
base/server/src/main/java/com/netscape/cmscore/dbs/RepositoryRecord.java
</a>
</li>
<li class="file-stats">
<a href="#c87fa49c0cc0af54e8d60716d9a16f0c0d0ddc86">
base/server/src/main/java/com/netscape/cmscore/dbs/RevocationInfoMapper.java
</a>
</li>
<li class="file-stats">
<a href="#ad03692ab27787d9579161d2d1a840d6baa2ac47">
base/server/src/main/java/com/netscape/cmscore/dbs/X500NameMapper.java
</a>
</li>
<li class="file-stats">
<a href="#c458a0a3a2e2726df9114e95457975678dd8fa40">
base/server/src/main/java/com/netscape/cmscore/dbs/X509CertImplMapper.java
</a>
</li>
<li class="file-stats">
<a href="#f081902c0fad270b909e0b3a7cdbd5fc1c1213ef">
base/server/src/main/java/com/netscape/cmscore/ldapconn/LDAPAuthenticationConfig.java
</a>
</li>
<li class="file-stats">
<a href="#dd595ac65769b098a1ac9f0ea6162a4a9964918e">
base/server/src/main/java/com/netscape/cmscore/ldapconn/LDAPConfig.java
</a>
</li>
<li class="file-stats">
<a href="#1114c8feab2a010844502798cf1f08f84f277254">
base/server/src/main/java/com/netscape/cmscore/ldapconn/LDAPConnectionConfig.java
</a>
</li>
<li class="file-stats">
<a href="#897c0c320becd68e6a4aa10ceafc817266345ef6">
base/server/src/main/java/com/netscape/cmscore/ldapconn/LdapAnonConnFactory.java
</a>
</li>
<li class="file-stats">
<a href="#fa97ce87d29b4c7c24b0bfcdd6336a69b95c95f7">
base/server/src/main/java/com/netscape/cmscore/ldapconn/LdapAuthInfo.java
</a>
</li>
<li class="file-stats">
<a href="#d701fb235df2e5f0b35e7ce26ed8f4d861debc27">
base/server/src/main/java/com/netscape/cmscore/ldapconn/LdapBoundConnFactory.java
</a>
</li>
<li class="file-stats">
<a href="#a8e63ac9e16c2257cc53ef20bafbd76741a203ce">
base/server/src/main/java/com/netscape/cmscore/ldapconn/LdapBoundConnection.java
</a>
</li>
<li class="file-stats">
<a href="#ebf8f46e14a53b195798e42b8ee2292c4b713669">
base/server/src/main/java/com/netscape/cmscore/ldapconn/LdapConnInfo.java
</a>
</li>
<li class="file-stats">
<a href="#bea8314a58ccb89523883b3b3b027c400625f04c">
base/server/src/main/java/com/netscape/cmscore/ldapconn/PKISocketFactory.java
</a>
</li>
<li class="file-stats">
<a href="#d4bc416e7c1a952a0b481da5c4cec996764d7ca2">
base/server/src/main/java/com/netscape/cmscore/logging/Auditor.java
</a>
</li>
<li class="file-stats">
<a href="#044168565b9730483bd563a7613d7cb2e5955162">
base/server/src/main/java/com/netscape/cmscore/notification/EmailFormProcessor.java
</a>
</li>
<li class="file-stats">
<a href="#0a30655fe87c183c0261604d732aeefa9327c6ba">
base/server/src/main/java/com/netscape/cmscore/notification/EmailResolverKeys.java
</a>
</li>
<li class="file-stats">
<a href="#8d70990d313e85b884a3cb0dd58c11f6df9a401d">
base/server/src/main/java/com/netscape/cmscore/notification/EmailTemplate.java
</a>
</li>
<li class="file-stats">
<a href="#d0c4cfaaeb5e40ea07d1d4cdfb41b4ef560aeb36">
base/server/src/main/java/com/netscape/cmscore/request/ExtAttrDynMapper.java
</a>
</li>
<li class="file-stats">
<a href="#b0379177267ad6c198f5a4fac654213ea62b93bb">
base/server/src/main/java/com/netscape/cmscore/request/RecoverThread.java
</a>
</li>
<li class="file-stats">
<a href="#f9bce35545f687569c9e50417939eef13f748716">
base/server/src/main/java/com/netscape/cmscore/request/Request.java
</a>
</li>
<li class="file-stats">
<a href="#5d43ee5609bdc10a2c3ce0d6d5def04a12cad456">
base/server/src/main/java/com/netscape/cmscore/request/RequestNotifier.java
</a>
</li>
<li class="file-stats">
<a href="#0a7f340dae1c5a10a5395851d40ec5232a65321e">
base/server/src/main/java/com/netscape/cmscore/request/RequestQueue.java
</a>
</li>
<li class="file-stats">
<a href="#6d1ba5d4e4e91ee150b986c8e36162ba43bef34d">
base/server/src/main/java/com/netscape/cmscore/request/RequestRecord.java
</a>
</li>
<li class="file-stats">
<a href="#5cdebe8789bb6248399a5f2e0a40428d3d4f1093">
base/server/src/main/java/com/netscape/cmscore/request/RequestRepository.java
</a>
</li>
<li class="file-stats">
<a href="#2523b20073e51b920d05f1b6b9037427d8ab7e74">
base/server/src/main/java/com/netscape/cmscore/security/JssSubsystem.java
</a>
</li>
<li class="file-stats">
<a href="#d4ea2f94a29b896a72e52265a2adbda29944ba2c">
base/server/src/main/java/com/netscape/cmscore/security/KeyCertUtil.java
</a>
</li>
<li class="file-stats">
<a href="#857fe070689c20f7afa19b99531d0725a39e23df">
base/server/src/main/java/com/netscape/cmscore/session/LDAPSecurityDomainSessionTable.java
</a>
</li>
<li class="file-stats">
<a href="#29247be32c3cb1863d53938e2e23792d3e6cd528">
base/server/src/main/java/com/netscape/cmscore/session/MemorySecurityDomainSessionTable.java
</a>
</li>
<li class="file-stats">
<a href="#9126a38881ed1fe19f237887fd51795e2b16f9af">
base/server/src/main/java/com/netscape/cmscore/session/SessionTimer.java
</a>
</li>
<li class="file-stats">
<a href="#88bbbedca05ea51487d9a2d02f4a65c3a85192b9">
base/server/src/main/java/com/netscape/cmscore/systemd/SystemdNotifier.java
</a>
</li>
<li class="file-stats">
<a href="#626ca465c29b910f3c17f4412d9ce79ba90fccbd">
base/server/src/main/java/com/netscape/cmscore/usrgrp/CertDNCertUserLocator.java
</a>
</li>
<li class="file-stats">
<a href="#36128313098bf9f3e824daff4b00c91d8b10a29d">
base/server/src/main/java/com/netscape/cmscore/usrgrp/ExactMatchCertUserLocator.java
</a>
</li>
<li class="file-stats">
<a href="#9043402fc5870f22dd3a64c4b83cc3aacbf2a93d">
base/server/src/main/java/com/netscape/cmscore/usrgrp/UGSubsystem.java
</a>
</li>
<li class="file-stats">
<a href="#d671068e65a6decba2a3ae35f842f52e64dde29d">
base/server/src/main/java/com/netscape/cmscore/usrgrp/User.java
</a>
</li>
<li class="file-stats">
<a href="#e80fffe48dc9e5c949e8edbbac70ad2bf3127dbf">
base/server/src/main/java/com/netscape/cmscore/util/Debug.java
</a>
</li>
<li class="file-stats">
<a href="#834fa535574da08ef54203f268b269a5e717679f">
base/server/src/main/java/org/dogtagpki/legacy/core/policy/GenericPolicyProcessor.java
</a>
</li>
<li class="file-stats">
<a href="#164fe47ac83314466b86590e3931994c971805ab">
base/server/src/main/java/org/dogtagpki/legacy/core/policy/JavaScriptRequestProxy.java
</a>
</li>
<li class="file-stats">
<a href="#4927f63ce7727b26b77bf87bfd2e0322d3bec79d">
base/server/src/main/java/org/dogtagpki/legacy/core/policy/PolicyInstance.java
</a>
</li>
<li class="file-stats">
<a href="#0c175886321c12ffbd92cfa33e1453f67551e67f">
base/server/src/main/java/org/dogtagpki/legacy/core/policy/PolicyPredicateParser.java
</a>
</li>
<li class="file-stats">
<a href="#ee041e2be88b607a69a12905a8168045b1040e52">
base/server/src/main/java/org/dogtagpki/legacy/core/policy/PolicySet.java
</a>
</li>
<li class="file-stats">
<a href="#035a0094e7e932e17a22af0ce0f3f753fbc0a9da">
base/server/src/main/java/org/dogtagpki/legacy/core/policy/SimpleExpression.java
</a>
</li>
<li class="file-stats">
<a href="#69a61c20374842b1d9d3d21b3c543d7145f1bfbe">
base/server/src/main/java/org/dogtagpki/legacy/policy/IEnrollmentPolicy.java
→
base/server/src/main/java/org/dogtagpki/legacy/policy/EnrollmentPolicy.java
</a>
</li>
<li class="file-stats">
<a href="#ea2799f5f54c54a88b9097e20ed973dc568bb8df">
<span class="deleted-file">
−
base/server/src/main/java/org/dogtagpki/legacy/policy/IPolicyRule.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#e941656bb1c6cfb8a0cf4af36de0775d18ab14c3">
<span class="deleted-file">
−
base/server/src/main/java/org/dogtagpki/legacy/policy/IPolicySet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#fa732a87714d6cff1452d66470d745472b082123">
base/server/src/main/java/org/dogtagpki/legacy/policy/IPolicyProcessor.java
→
base/server/src/main/java/org/dogtagpki/legacy/policy/PolicyProcessor.java
</a>
</li>
<li class="file-stats">
<a href="#c8f22ba787df3e63f62ccee928eac7efd7820f14">
base/server/src/main/java/org/dogtagpki/legacy/policy/IRenewalPolicy.java
→
base/server/src/main/java/org/dogtagpki/legacy/policy/RenewalPolicy.java
</a>
</li>
<li class="file-stats">
<a href="#72ccf61a51bbd27eeb0a60506a65725672ed2eed">
base/server/src/main/java/org/dogtagpki/legacy/policy/IRevocationPolicy.java
→
base/server/src/main/java/org/dogtagpki/legacy/policy/RevocationPolicy.java
</a>
</li>
<li class="file-stats">
<a href="#e1049c86ba77d850456286f2bac623f56ba98f37">
base/server/src/main/java/org/dogtagpki/legacy/server/policy/APolicyRule.java
→
base/server/src/main/java/org/dogtagpki/legacy/server/policy/PolicyRule.java
</a>
</li>
<li class="file-stats">
<a href="#eed0aa164881e18982663c74a1ed8ca3f06c4740">
base/server/src/main/java/org/dogtagpki/legacy/server/policy/constraints/ManualAuthentication.java
</a>
</li>
<li class="file-stats">
<a href="#76b090121c339b527775206c540299a598a97f84">
base/server/src/main/java/org/dogtagpki/server/PKIClientSocketListener.java
</a>
</li>
<li class="file-stats">
<a href="#673e9c9af375be4d18415bd54b75321fcfbffb81">
base/server/src/main/java/org/dogtagpki/server/PKIServerSocketListener.java
</a>
</li>
<li class="file-stats">
<a href="#1104411aca92929a159e14bf6b832254d8e1ec0b">
base/server/src/main/java/org/dogtagpki/server/authentication/AuthManagerConfig.java
</a>
</li>
<li class="file-stats">
<a href="#7d1cd117de78c9baeb334790dddb6df310319384">
base/server/src/main/java/org/dogtagpki/server/authentication/AuthManagersConfig.java
</a>
</li>
<li class="file-stats">
<a href="#85a3b95d08fdab67b7ff86c2219ba4f64d935795">
base/server/src/main/java/org/dogtagpki/server/authentication/AuthenticationConfig.java
</a>
</li>
<li class="file-stats">
<a href="#8a4be458844601675037f22dfcca5639d230e756">
<span class="new-file">
+
base/server/src/main/java/org/dogtagpki/server/authentication/RevocationCheckingConfig.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#aba1b0b972a3bf8f8ac0f11af7e88d6333358261">
base/server/src/main/java/org/dogtagpki/server/authorization/AuthzManager.java
</a>
</li>
<li class="file-stats">
<a href="#7047fdc672b795cd665494c69fc6ef0e910b2da3">
base/server/src/main/java/org/dogtagpki/server/cli/PKIServerCLI.java
</a>
</li>
<li class="file-stats">
<a href="#811acbb57a8517732fde26650508f144cd693713">
base/server/src/main/java/org/dogtagpki/server/cli/SDCLI.java
</a>
</li>
<li class="file-stats">
<a href="#d3d64336719c9572d604cdf53ebab7687452923e">
base/server/src/main/java/org/dogtagpki/server/cli/SDCreateCLI.java
</a>
</li>
<li class="file-stats">
<a href="#0855448a6fbf5f719c68b42825c56ca18733cc98">
base/server/src/main/java/org/dogtagpki/server/cli/SDSubsystemAddCLI.java
</a>
</li>
<li class="file-stats">
<a href="#8f7d73b48af8724f550f6f73389ac4900e37ab14">
base/server/src/main/java/org/dogtagpki/server/cli/SDSubsystemCLI.java
</a>
</li>
<li class="file-stats">
<a href="#76ee98ea34cd5049b57ee632e100771a9a4ff3d4">
base/server/src/main/java/org/dogtagpki/server/cli/SDSubsystemFindCLI.java
</a>
</li>
<li class="file-stats">
<a href="#4ac7b854ea563c7b9e3d048e20b09cd8db28d281">
base/server/src/main/java/org/dogtagpki/server/cli/SDSubsystemRemoveCLI.java
</a>
</li>
<li class="file-stats">
<a href="#85ecd0636baaeefc2ed7b351d65a99ea3c1a5ec5">
<span class="new-file">
+
base/server/src/main/java/org/dogtagpki/server/cli/SDTypeAddCLI.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#7458946718d931a97d99e0e016ea09161d97dd6f">
<span class="new-file">
+
base/server/src/main/java/org/dogtagpki/server/cli/SDTypeCLI.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#dd48c861089de96e9bffd5d04cd793e8a10d9fc1">
base/server/src/main/java/org/dogtagpki/server/cli/SubsystemCLI.java
→
base/server/src/main/java/org/dogtagpki/server/cli/ServerCommandCLI.java
</a>
</li>
<li class="file-stats">
<a href="#8745071890e018cd9d8aaa205370e4982542a0c3">
<span class="new-file">
+
base/server/src/main/java/org/dogtagpki/server/cli/SubsystemACLAddCLI.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#d981bbc40ff1ae559a16c956b399c8c4c8acb06e">
<span class="new-file">
+
base/server/src/main/java/org/dogtagpki/server/cli/SubsystemACLCLI.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#6739e0cdc8160a0a34b5b4402602f590d62b0885">
<span class="new-file">
+
base/server/src/main/java/org/dogtagpki/server/cli/SubsystemACLDeleteCLI.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#0506e2d879d097f27c2e21909f16c026dd150699">
<span class="new-file">
+
base/server/src/main/java/org/dogtagpki/server/cli/SubsystemACLFindCLI.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#aeb7b408f786e3d8c16ddf7ab45c9a9787b5c48a">
base/server/src/main/java/org/dogtagpki/server/cli/SubsystemDBAccessGrantCLI.java
</a>
</li>
<li class="file-stats">
<a href="#cc641ce1c5ab7620c7ff39178f6efedd91c2d67e">
base/server/src/main/java/org/dogtagpki/server/cli/SubsystemDBAccessRevokeCLI.java
</a>
</li>
<li class="file-stats">
<a href="#da8cecffc9e5141d6cf40a21bd0a623b9911d30f">
base/server/src/main/java/org/dogtagpki/server/cli/SubsystemDBCLI.java
</a>
</li>
<li class="file-stats">
<a href="#091c130b0a48876efe5095f87a258f032d6d36e6">
<span class="new-file">
+
base/server/src/main/java/org/dogtagpki/server/cli/SubsystemDBCreateCLI.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#a419e88e52ac437226bf1b2be3a1e54fbb3c68a8">
base/server/src/main/java/org/dogtagpki/server/cli/SubsystemDBEmptyCLI.java
</a>
</li>
<li class="file-stats">
<a href="#9845fc409d5e18df32a40ab8b609d37588b941ea">
<span class="new-file">
+
base/server/src/main/java/org/dogtagpki/server/cli/SubsystemDBIndexAddCLI.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#eec480319148180c7d9c696b687b9560d6b46778">
<span class="new-file">
+
base/server/src/main/java/org/dogtagpki/server/cli/SubsystemDBIndexCLI.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#6d69a8f87b2d5478b077f923159496db7b2671a8">
<span class="new-file">
+
base/server/src/main/java/org/dogtagpki/server/cli/SubsystemDBIndexRebuildCLI.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#65bb3a86b231f336d6a1f733b54299d381c335d0">
base/server/src/main/java/org/dogtagpki/server/cli/SubsystemDBInfoCLI.java
</a>
</li>
<li class="file-stats">
<a href="#ad24d6364d4b51d4d7bd816d72851cf55ef8ce98">
base/server/src/main/java/org/dogtagpki/server/cli/SubsystemDBInitCLI.java
</a>
</li>
<li class="file-stats">
<a href="#998c3dcbbe10e56064b5011b09d2f6d8a6575bed">
base/server/src/main/java/org/dogtagpki/server/cli/SubsystemDBRemoveCLI.java
</a>
</li>
<li class="file-stats">
<a href="#9f7fb9f316aca843a7fe80db8cecda4b50559b47">
<span class="new-file">
+
base/server/src/main/java/org/dogtagpki/server/cli/SubsystemDBReplicationAgreementAddCLI.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#c4cef01c04a9c8d0637ee214a7f241c64834e5d5">
<span class="new-file">
+
base/server/src/main/java/org/dogtagpki/server/cli/SubsystemDBReplicationAgreementCLI.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#942394c48ab76e82a56b3f3cc6a9e722e09c54d9">
<span class="new-file">
+
base/server/src/main/java/org/dogtagpki/server/cli/SubsystemDBReplicationAgreementInitCLI.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#a5f5801529f641d59d519a42f3bd5f360c87ca78">
base/server/src/main/java/org/dogtagpki/server/cli/SubsystemDBReplicationCLI.java
</a>
</li>
<li class="file-stats">
<a href="#2e59cd87209f2db7d5668cf0f47c2d490cea6ecf">
<span class="new-file">
+
base/server/src/main/java/org/dogtagpki/server/cli/SubsystemDBReplicationEnableCLI.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#c43cc321872a7f4597c0602054d1bb9bc363e88e">
<span class="deleted-file">
−
base/server/src/main/java/org/dogtagpki/server/cli/SubsystemDBReplicationSetupCLI.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#1209d3fc98c0a689d9dc436a527a272471f95bbb">
base/server/src/main/java/org/dogtagpki/server/cli/SubsystemDBUpgradeCLI.java
</a>
</li>
<li class="file-stats">
<a href="#6e75684dc1a586679dc44b2bfe945a2d899094ed">
base/server/src/main/java/org/dogtagpki/server/cli/SubsystemDBVLVAddCLI.java
</a>
</li>
<li class="file-stats">
<a href="#a79ccb2f269c5e23913708451760a5b1924d6ad7">
base/server/src/main/java/org/dogtagpki/server/cli/SubsystemDBVLVDeleteCLI.java
</a>
</li>
<li class="file-stats">
<a href="#5b874c2b0da1a6360de8916c3574d137df95d9ea">
base/server/src/main/java/org/dogtagpki/server/cli/SubsystemDBVLVFindCLI.java
</a>
</li>
<li class="file-stats">
<a href="#8bad3dbca7ed1028b06d0a64f544102bd6fc45a2">
base/server/src/main/java/org/dogtagpki/server/cli/SubsystemDBVLVReindexCLI.java
</a>
</li>
<li class="file-stats">
<a href="#a7d4df82bd2c3d22f3bafae5dac18fd958663403">
<span class="new-file">
+
base/server/src/main/java/org/dogtagpki/server/cli/SubsystemGroupAddCLI.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#342ed4a765ba50d8ce39b563ca749a7c3c902530">
base/server/src/main/java/org/dogtagpki/server/cli/SubsystemGroupCLI.java
</a>
</li>
<li class="file-stats">
<a href="#c53763be47db6da2c8567339af5af1903c4f70c7">
base/server/src/main/java/org/dogtagpki/server/cli/SubsystemGroupFindCLI.java
</a>
</li>
<li class="file-stats">
<a href="#fe022e03b74e30fcf628b68d3e721dfc31e3a8f3">
base/server/src/main/java/org/dogtagpki/server/cli/SubsystemGroupMemberAddCLI.java
</a>
</li>
<li class="file-stats">
<a href="#301f995ea94010e09348b792e361164194dc7738">
base/server/src/main/java/org/dogtagpki/server/cli/SubsystemGroupMemberFindCLI.java
</a>
</li>
<li class="file-stats">
<a href="#19a21f892d9424545f28096468f8687e78e484e0">
base/server/src/main/java/org/dogtagpki/server/cli/SubsystemGroupMemberRemoveCLI.java
</a>
</li>
<li class="file-stats">
<a href="#835174ceedd09f82136c291ac2ea64e14843509f">
<span class="new-file">
+
base/server/src/main/java/org/dogtagpki/server/cli/SubsystemIdGeneratorUpdateCLI.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#0214701da09f5398d56fce903b293030404a383f">
base/server/src/main/java/org/dogtagpki/server/cli/SubsystemRangeUpdateCLI.java
</a>
</li>
<li class="file-stats">
<a href="#9721bfdfa515f7b4f4b662da4cedcb3c767667a6">
base/server/src/main/java/org/dogtagpki/server/cli/SubsystemUserAddCLI.java
</a>
</li>
<li class="file-stats">
<a href="#8dda3518840b8ae7e13c71244b9e243308ea124a">
base/server/src/main/java/org/dogtagpki/server/cli/SubsystemUserCLI.java
</a>
</li>
<li class="file-stats">
<a href="#e49bad46c3daa1e457101130685c379b2e087cb6">
base/server/src/main/java/org/dogtagpki/server/cli/SubsystemUserCertAddCLI.java
</a>
</li>
<li class="file-stats">
<a href="#003df6d1ebb3038f89866a281bb3d212dfee2acf">
base/server/src/main/java/org/dogtagpki/server/cli/SubsystemUserCertCLI.java
</a>
</li>
<li class="file-stats">
<a href="#bf6dc812c7e14d16bd77a70b7db21454343808cb">
base/server/src/main/java/org/dogtagpki/server/cli/SubsystemUserCertFindCLI.java
</a>
</li>
<li class="file-stats">
<a href="#11d3fb5fd9767f3b63e05e03b0bc4ed8871dee98">
<span class="new-file">
+
base/server/src/main/java/org/dogtagpki/server/cli/SubsystemUserCertRemoveCLI.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#27061df1bfe637626bf9dc835664671cd274a34f">
base/server/src/main/java/org/dogtagpki/server/cli/SubsystemUserFindCLI.java
</a>
</li>
<li class="file-stats">
<a href="#76350fbc9f937a093944f79947020effdf3ce1bc">
base/server/src/main/java/org/dogtagpki/server/cli/SubsystemUserModifyCLI.java
</a>
</li>
<li class="file-stats">
<a href="#fef72074b10d560b99470c9bb502bbc9c90ccc54">
base/server/src/main/java/org/dogtagpki/server/cli/SubsystemUserRemoveCLI.java
</a>
</li>
<li class="file-stats">
<a href="#f8b4b47a899776927c48ae85ce1dff23f77dd5b6">
<span class="new-file">
+
base/server/src/main/java/org/dogtagpki/server/cli/SubsystemUserRoleAddCLI.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#f09f16d2f5ed2e5197dfafb3ec5693ebd518a27a">
<span class="new-file">
+
base/server/src/main/java/org/dogtagpki/server/cli/SubsystemUserRoleCLI.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#37a200a1c6f0d12bc77a01a2a864667b1d300670">
<span class="new-file">
+
base/server/src/main/java/org/dogtagpki/server/cli/SubsystemUserRoleFindCLI.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#adf975dc58dcd1c44cdfaca9544a8467e6191da3">
<span class="new-file">
+
base/server/src/main/java/org/dogtagpki/server/cli/SubsystemUserRoleRemoveCLI.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#706dd02c07ddd821c40a332483a2b449c24ead0a">
base/server/src/main/java/org/dogtagpki/server/cli/SubsystemUserShowCLI.java
</a>
</li>
<li class="file-stats">
<a href="#16404f091a0b9f6b10c999c7710ea986f86bbda5">
base/server/src/main/java/org/dogtagpki/server/connector/IRemoteRequest.java
</a>
</li>
<li class="file-stats">
<a href="#ce4233fa4081730b4f4f9898457c8b258d106ab2">
<span class="new-file">
+
base/server/src/main/java/org/dogtagpki/server/rest/base/AccountServletBase.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#083d5f2d0cd4db79e10d038f40296513a96e327a">
<span class="new-file">
+
base/server/src/main/java/org/dogtagpki/server/rest/base/AuditServletBase.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#d7c5498faa010c87dbbc657389cd0eff4b247c2d">
<span class="new-file">
+
base/server/src/main/java/org/dogtagpki/server/rest/base/GroupServletBase.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#2f40ee090b42420d68fd3da6f6d4476c2adeb25e">
<span class="new-file">
+
base/server/src/main/java/org/dogtagpki/server/rest/base/JobServletBase.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#5ec397fcc70dd784667a60ddfec42b640d0eabfb">
<span class="new-file">
+
base/server/src/main/java/org/dogtagpki/server/rest/base/SecurityDomainServletBase.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#a5b89105c0a7fde8c42fcd90fe9d965cf6b0a838">
<span class="new-file">
+
base/server/src/main/java/org/dogtagpki/server/rest/base/SelfTestServletBase.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#e1d67afd33f82e1a8f230dcbe4506aa8938000de">
<span class="new-file">
+
base/server/src/main/java/org/dogtagpki/server/rest/base/UserServletBase.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#b36fe1760a67ccc74eb9f8db6e4cdea1f3cf0122">
base/server/src/main/java/org/dogtagpki/server/rest/ACLInterceptor.java
→
base/server/src/main/java/org/dogtagpki/server/rest/v1/ACLInterceptor.java
</a>
</li>
<li class="file-stats">
<a href="#e9bb6441b430c69bacd087f0f09db905f35fda30">
base/server/src/main/java/org/dogtagpki/server/rest/AccountService.java
→
base/server/src/main/java/org/dogtagpki/server/rest/v1/AccountService.java
</a>
</li>
<li class="file-stats">
<a href="#852f89b6015b3f914229d27f3b6af3ee3d254385">
<span class="new-file">
+
base/server/src/main/java/org/dogtagpki/server/rest/v1/ApiDeprecationFilter.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#01bc0d2dcfcfa2b124b5121badd47bf59127c287">
<span class="new-file">
+
base/server/src/main/java/org/dogtagpki/server/rest/v1/ApiDisabledResource.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#3d8de2ba5f7ba0abe326eeceb34cb01d97976f49">
<span class="new-file">
+
base/server/src/main/java/org/dogtagpki/server/rest/v1/ApiStatusHelper.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#ba101606a3b46e9132cd3285acb773400208dcaf">
base/server/src/main/java/org/dogtagpki/server/rest/AuditService.java
→
base/server/src/main/java/org/dogtagpki/server/rest/v1/AuditService.java
</a>
</li>
<li class="file-stats">
<a href="#e2dc5ccb520318730f0b9c0d1c9d7572de11f78c">
base/server/src/main/java/org/dogtagpki/server/rest/AuthMethodInterceptor.java
→
base/server/src/main/java/org/dogtagpki/server/rest/v1/AuthMethodInterceptor.java
</a>
</li>
<li class="file-stats">
<a href="#c901df05bbdaebbecb60164f3d6b2eb0400dc998">
base/server/src/main/java/com/netscape/cms/servlet/request/CMSRequestDAO.java
→
base/server/src/main/java/org/dogtagpki/server/rest/v1/CMSRequestDAO.java
</a>
</li>
<li class="file-stats">
<a href="#4614a53b398f542641618236630dedd7e29dcea7">
base/server/src/main/java/org/dogtagpki/server/rest/FeatureService.java
→
base/server/src/main/java/org/dogtagpki/server/rest/v1/FeatureService.java
</a>
</li>
<li class="file-stats">
<a href="#536a355e197fcb84e5d9294e7d2873cefc75bbc3">
base/server/src/main/java/org/dogtagpki/server/rest/GroupService.java
→
base/server/src/main/java/org/dogtagpki/server/rest/v1/GroupService.java
</a>
</li>
<li class="file-stats">
<a href="#a38b5293b207d74a8acb5549d0c6ea313b032c33">
base/server/src/main/java/org/dogtagpki/server/rest/JobService.java
→
base/server/src/main/java/org/dogtagpki/server/rest/v1/JobService.java
</a>
</li>
<li class="file-stats">
<a href="#6ff32db3c38a95ed1d6074d991c109fdbc5f2a6f">
base/server/src/main/java/org/dogtagpki/server/rest/MessageFormatInterceptor.java
→
base/server/src/main/java/org/dogtagpki/server/rest/v1/MessageFormatInterceptor.java
</a>
</li>
<li class="file-stats">
<a href="#9a504c74cf20782972852253952a9037cfbfa092">
base/server/src/main/java/org/dogtagpki/server/rest/PKIExceptionMapper.java
→
base/server/src/main/java/org/dogtagpki/server/rest/v1/PKIExceptionMapper.java
</a>
</li>
<li class="file-stats">
<a href="#3926595c0a9b5cb4deb3c94bc5a4e5ec156c9116">
<span class="new-file">
+
base/server/src/main/java/org/dogtagpki/server/rest/v1/RESTMessageV1.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#f1e753f9aef9b05e6919eb71f003e747b03a778f">
base/server/src/main/java/org/dogtagpki/server/rest/SecurityDomainService.java
→
base/server/src/main/java/org/dogtagpki/server/rest/v1/SecurityDomainService.java
</a>
</li>
<li class="file-stats">
<a href="#74125cdb8218ea8dc0e56449fa62c216c3576385">
base/server/src/main/java/org/dogtagpki/server/rest/SelfTestService.java
→
base/server/src/main/java/org/dogtagpki/server/rest/v1/SelfTestService.java
</a>
</li>
<li class="file-stats">
<a href="#ce5d398c4b5f32b41087a242b009a24531aaf23a">
base/server/src/main/java/org/dogtagpki/server/rest/SessionContextInterceptor.java
→
base/server/src/main/java/org/dogtagpki/server/rest/v1/SessionContextInterceptor.java
</a>
</li>
<li class="file-stats">
<a href="#d92a45bd2e50336b82109e03e9185d16cc2b38ab">
base/server/src/main/java/org/dogtagpki/server/rest/UserService.java
→
base/server/src/main/java/org/dogtagpki/server/rest/v1/UserService.java
</a>
</li>
<li class="file-stats">
<a href="#bde512a757819e6774805f32e05a9c5ca7b96ee8">
<span class="new-file">
+
base/server/src/main/java/org/dogtagpki/server/rest/v2/AccountServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#9e4d83d913a48a74092f3c527375370d0c235b83">
<span class="new-file">
+
base/server/src/main/java/org/dogtagpki/server/rest/v2/AuditServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#0b8ea5599fe02d00e60b339dc31f523d515aa1fe">
<span class="new-file">
+
base/server/src/main/java/org/dogtagpki/server/rest/v2/FeatureServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#523dc2651046439905dff76c09062910ef3228c2">
<span class="new-file">
+
base/server/src/main/java/org/dogtagpki/server/rest/v2/GroupServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#b9dc889a1f7eb4765d818c2406f199bdf75f7e6f">
<span class="new-file">
+
base/server/src/main/java/org/dogtagpki/server/rest/v2/JobServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#4477a427e1e72468c6b0ee91bed62349a32a4107">
<span class="new-file">
+
base/server/src/main/java/org/dogtagpki/server/rest/v2/PKIServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#29b1e7998404f630cb031a5d17a533367aa84b72">
<span class="new-file">
+
base/server/src/main/java/org/dogtagpki/server/rest/v2/SecurityDomainServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#990357920eb99901047654a67761c5bd853d1623">
<span class="new-file">
+
base/server/src/main/java/org/dogtagpki/server/rest/v2/SelfTestServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#30af82dc2464bc155062edbf29726d1194373a1e">
<span class="new-file">
+
base/server/src/main/java/org/dogtagpki/server/rest/v2/UserServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#f64599c9b5a0c44a9856d5d79cfa63ef118f492e">
<span class="new-file">
+
base/server/src/main/java/org/dogtagpki/server/rest/v2/filters/ACLFilter.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#11682aab1f48bff3e3d4cb92a0e36f8303672b0d">
<span class="new-file">
+
base/server/src/main/java/org/dogtagpki/server/rest/v2/filters/AccountACL.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#b7fabc0157a5b35217ec9166e7b0ca0debf7332c">
<span class="new-file">
+
base/server/src/main/java/org/dogtagpki/server/rest/v2/filters/AccountAuthMethod.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#c2e45900ad5a6c2cc89f4faec2352369943da37d">
<span class="new-file">
+
base/server/src/main/java/org/dogtagpki/server/rest/v2/filters/AuditACL.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#486a960fad22e918267d77a1ec6bf9882de82236">
<span class="new-file">
+
base/server/src/main/java/org/dogtagpki/server/rest/v2/filters/AuditAuthMethod.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#ece773760a7eb17de6a15cf1c0c6fb8cafecac0a">
<span class="new-file">
+
base/server/src/main/java/org/dogtagpki/server/rest/v2/filters/AuthMethodFilter.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#6c4dc9e0e7d406ad395daea453640ab8b6fe75a2">
<span class="new-file">
+
base/server/src/main/java/org/dogtagpki/server/rest/v2/filters/GroupACL.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#efaac00b8538b3b399427398e61b10d188953ce3">
<span class="new-file">
+
base/server/src/main/java/org/dogtagpki/server/rest/v2/filters/GroupAuthMethod.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#da9f29660a0681256ee2f14b6ddace3431cd622f">
<span class="new-file">
+
base/server/src/main/java/org/dogtagpki/server/rest/v2/filters/SecurityDomainACL.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#b7eea57d37391bbc46dfc938c0436af6d04094a4">
<span class="new-file">
+
base/server/src/main/java/org/dogtagpki/server/rest/v2/filters/SecurityDomainAuthMethod.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#7a1854db693b204c383de50a0ac3f007da4c9375">
<span class="new-file">
+
base/server/src/main/java/org/dogtagpki/server/rest/v2/filters/SelfTestACL.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#eb6f78f5a2256c19f5976bbcd825b359a29c0455">
<span class="new-file">
+
base/server/src/main/java/org/dogtagpki/server/rest/v2/filters/SelfTestAuthMethod.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#f1b6baff3ee3f3e7db313c4395d40e890041cc07">
<span class="new-file">
+
base/server/src/main/java/org/dogtagpki/server/rest/v2/filters/UserACL.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#f08ee5f9efcd5c4df5cd2e0a21cf0500dafd67fa">
<span class="new-file">
+
base/server/src/main/java/org/dogtagpki/server/rest/v2/filters/UserAuthMethod.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#e9a0f6abd2f620b8f9c24d47538f022f5aa504ea">
base/server/src/main/resources/LogMessages.properties
</a>
</li>
<li class="file-stats">
<a href="#d1b79f39ba46914f8268a19b653c69922f69d73d">
base/server/src/main/resources/UserMessages.properties
</a>
</li>
<li class="file-stats">
<a href="#a115227062b735c03506d455f5f576af2967b2ac">
base/server/src/test/java/com/netscape/cmscore/authentication/AuthTokenTest.java
</a>
</li>
<li class="file-stats">
<a href="#33fde958ee37ac2e7c044690c48f0f658da8c689">
base/server/src/test/java/com/netscape/cmscore/dbs/CertRecordListTest.java
</a>
</li>
<li class="file-stats">
<a href="#e7d6df873175487403d908914e16e1ef9c4b7dfc">
base/server/src/test/java/com/netscape/cmscore/dbs/DBRegistryTest.java
</a>
</li>
<li class="file-stats">
<a href="#2a1b89712ad84c8e1215d42d9f01587b91c20b58">
base/server/src/test/java/com/netscape/cmscore/password/PlainPasswordFileTest.java
</a>
</li>
<li class="file-stats">
<a href="#55acd59639a867b494728f9fba3dbbd9a8147381">
base/server/src/test/java/com/netscape/cmscore/request/AgentApprovalsTest.java
</a>
</li>
<li class="file-stats">
<a href="#5c6ddf3b6df583053182bace6b59a3fc74ff29aa">
base/server/src/test/java/com/netscape/cmscore/request/ExtAttrDynMapperTest.java
</a>
</li>
<li class="file-stats">
<a href="#a38e40daa1e304560138b4293b615fe8cb3d841b">
base/server/src/test/java/com/netscape/cmscore/request/ExtDataHashtableTest.java
</a>
</li>
<li class="file-stats">
<a href="#9b24ee54328e40aabc4aac4479b420a8f2871682">
base/server/src/test/java/com/netscape/cmscore/request/RequestQueueTest.java
</a>
</li>
<li class="file-stats">
<a href="#ed33345211d8462fd73f993e394f6826c654baed">
base/server/src/test/java/com/netscape/cmscore/request/RequestRecordTest.java
</a>
</li>
<li class="file-stats">
<a href="#f1e3fa76782c4898e1f3d8df043d9658c6ceaa95">
base/server/src/test/java/com/netscape/cmscore/request/RequestTest.java
</a>
</li>
<li class="file-stats">
<a href="#6018cc9ba5c02c4645b62cd4978101444c3996c7">
base/server/src/test/java/com/netscape/cmscore/test/CMSBaseTestCase.java
→
base/server/src/test/java/com/netscape/cmscore/test/CMSBaseTestHelper.java
</a>
</li>
<li class="file-stats">
<a href="#9c3f8e7d4bc65506ddb31502adba4fab84ab27a5">
base/server/upgrade/10.0.1/02-CloningInterfaceChanges.py
</a>
</li>
<li class="file-stats">
<a href="#fc1e2b82ada2594331f4b08a6a8ad42d0b02ed1e">
base/server/upgrade/10.0.1/03-AddRestServlet.py
</a>
</li>
<li class="file-stats">
<a href="#04c8601f3dc5f8bc0886f6d54b21a7725c2944fa">
base/server/upgrade/10.0.99/04-FixLogFileOwnership.py
</a>
</li>
<li class="file-stats">
<a href="#cfa4def6c3c9d87a92a1cb93f46ee77e4eddd47a">
base/server/upgrade/10.10.0/02-FixMissingCertAndRequestData.py
</a>
</li>
<li class="file-stats">
<a href="#8625a2925c9ce6ca1822f1c1af5625fa73ecb456">
base/server/upgrade/10.10.2/01-AddProfileCaAuditSigningCert.py
</a>
</li>
<li class="file-stats">
<a href="#d3a67ecf1921301972987b42b367db91fc0aff4f">
base/server/upgrade/10.11.0/06-UpdateJavaHome.py
</a>
</li>
<li class="file-stats">
<a href="#a17ca303ef67660116cff6895ec93b5c92169f51">
base/server/upgrade/10.2.4/02-FixNuxwdogListenerClass.py
</a>
</li>
<li class="file-stats">
<a href="#d287fd921979c9898da903c1747f95b4023b939e">
base/server/upgrade/10.2.6/01-RemoveInaccessableURLsFromServerXML.py
</a>
</li>
<li class="file-stats">
<a href="#d5cf61bc1122a25f70ce49528c86ba124fcd1860">
base/server/upgrade/10.7.0/01-UpdateAuditEvents.py
</a>
</li>
<li class="file-stats">
<a href="#fd3c79523f43e6b05df75fd960b79b3086bd1fad">
base/server/upgrade/10.7.0/02-UpdateNetscapeSecurityClasses.py
</a>
</li>
<li class="file-stats">
<a href="#41995e52fb0c67959a6553c4c31992b2d33c4f8f">
base/server/upgrade/10.7.1/01-RemoveResteasyPath.py
</a>
</li>
<li class="file-stats">
<a href="#37921d12981d286f2a9c80739013306f4256ea91">
base/server/upgrade/10.8.0/01-FixCommonFolder.py
</a>
</li>
<li class="file-stats">
<a href="#1960abedf99278400dc18ddc088f13334021862f">
base/server/upgrade/10.8.0/03-FixDefaultTomcatFiles.py
</a>
</li>
<li class="file-stats">
<a href="#7f6394dd1bbc3d82f6160addce900dbf018b1c13">
base/server/upgrade/10.8.0/04-RemoveUserDatabase.py
</a>
</li>
<li class="file-stats">
<a href="#3a41c90695a1e8fc01dc33ff3bdfd48cd01c8943">
base/server/upgrade/10.8.3/01-FixECAdminCertProfile.py
</a>
</li>
<li class="file-stats">
<a href="#bee772b4360a344ad4bca4c18049c98721ff365a">
base/server/upgrade/10.9.0/02-AddACMEServerCertProfile.py
</a>
</li>
<li class="file-stats">
<a href="#9fa9af300c343b95dfd99d83e355d1c88ad6d04e">
base/server/upgrade/10.9.0/03-DisableOpenJDKFIPS.py
</a>
</li>
<li class="file-stats">
<a href="#e8d6bf41692216d6deae6e44edf40dae99885bf4">
base/server/upgrade/10.9.0/04-AddMissingCertProfiles.py
</a>
</li>
<li class="file-stats">
<a href="#8e14048bbb2a44e3b1bf0bf41a5a419d6302da55">
<span class="new-file">
+
base/server/upgrade/11.10.0/01-FixPerms.py
</span>
</a>
</li>
<li class="file-stats">
<a href="#0eaae8c53e78ac8990937b31edb54ff0b1e9a5fb">
<span class="new-file">
+
base/server/upgrade/11.10.0/02-AddAJPPacketSize.py
</span>
</a>
</li>
<li class="file-stats">
<a href="#7a99b7175c158091e57e85269bf886f5a0e4772c">
base/server/upgrade/11.3.0/01-FixSSKDirUserCertProfileAuth.py
</a>
</li>
<li class="file-stats">
<a href="#51c98c4c76277fe34a7d12b9cfc81960616e21f3">
base/server/upgrade/11.4.0/01-RelocateCMCAuth.py
</a>
</li>
<li class="file-stats">
<a href="#dc4fa0f230fe9ff58ddbd333dca3f32d672730f3">
<span class="new-file">
+
base/server/upgrade/11.5.0/01-RemoveUnusedParams.py
</span>
</a>
</li>
<li class="file-stats">
<a href="#c2e8ed4e706c6b22a23ac75f9cac1df60af72dbb">
<span class="new-file">
+
base/server/upgrade/11.5.0/02-DropTomcatJSSDependency.py
</span>
</a>
</li>
<li class="file-stats">
<a href="#a823b42d342777d9dd0e995c1788f41f853f56e2">
<span class="new-file">
+
base/server/upgrade/11.5.0/03-FixSignedAuditParams.py
</span>
</a>
</li>
<li class="file-stats">
<a href="#9ba56fb0b105cc55c791ec3f637282a1665e266d">
<span class="new-file">
+
base/server/upgrade/11.5.0/04-RemoveCertCSRfromConfig.py
</span>
</a>
</li>
<li class="file-stats">
<a href="#c7a475e7a8dd8d72375070699b2ac4f61098b068">
<span class="new-file">
+
base/server/upgrade/11.6.0/01-CleanUpSubsystemConfig.py
</span>
</a>
</li>
<li class="file-stats">
<a href="#7970e8fb7b1e3044af5da2be9ff05f29a36316bf">
<span class="new-file">
+
base/server/upgrade/11.6.0/02-AddSerialNumberUpdateJob.py
</span>
</a>
</li>
<li class="file-stats">
<a href="#6adb53a4ad6de8b47fca445b53b8ae3e4b0d239b">
<span class="new-file">
+
base/server/upgrade/11.6.0/03-ConfigurePasswordPolicyConstraints.py
</span>
</a>
</li>
<li class="file-stats">
<a href="#5341784723bb0435ac7c8b5be7d7a21ce044ceec">
<span class="new-file">
+
base/server/upgrade/11.7.0/01-ConfigureOCSPByName.py
</span>
</a>
</li>
<li class="file-stats">
<a href="#fe2cca726e574e3e79d2643f013b6d69afe79991">
<span class="new-file">
+
base/server/upgrade/11.7.0/02-EnableURLRewrite.py
</span>
</a>
</li>
<li class="file-stats">
<a href="#d054f3d582e29028f8d5c6b31a23e2a604be01f0">
<span class="new-file">
+
base/server/upgrade/11.8.0/01-DisableJavaSecurityManager.py
</span>
</a>
</li>
<li class="file-stats">
<a href="#5830388d49128caaef4ab0c89de69b4ce0665b1c">
<span class="new-file">
+
base/server/upgrade/11.9.0/01-EnableEST.py
</span>
</a>
</li>
<li class="file-stats">
<a href="#9d958a0ddf936817a01feda41006bb3ffb22f388">
<span class="new-file">
+
base/server/upgrade/11.9.0/02-EnableESTFullCMC.py
</span>
</a>
</li>
<li class="file-stats">
<a href="#705dca540cdbadf42bbe53586fc22505c429992c">
<span class="new-file">
+
base/server/upgrade/11.9.0/03-UpdateConfJavaVersion.py
</span>
</a>
</li>
<li class="file-stats">
<a href="#b5f54176128195555ff292b1a8d43ec42f69708a">
<span class="new-file">
+
base/server/upgrade/11.9.0/04-UpdateMLDSAProfiles.py
</span>
</a>
</li>
<li class="file-stats">
<a href="#4d677d858c203b0e238bec9ef7e7d427131404c0">
<span class="new-file">
+
base/server/upgrade/11.9.0/05-UpdateJDKFIPS.py
</span>
</a>
</li>
<li class="file-stats">
<a href="#f2d26d19547e49cf53cb4ec7a4e6fe5a83c4961f">
<span class="new-file">
+
base/server/upgrade/11.9.0/06-UpdateConfigurationPermission.py
</span>
</a>
</li>
<li class="file-stats">
<a href="#0514c2959f561392a7c86a8ba239c6159314394c">
base/tks/CMakeLists.txt
</a>
</li>
<li class="file-stats">
<a href="#13f31b0287a50139e4a0d3cc6ba5c00d66e09b99">
<span class="new-file">
+
base/tks/bin/pki-tks-run
</span>
</a>
</li>
<li class="file-stats">
<a href="#e7ebf77d8324cc12e8954ffd27b3dc9c443cbde2">
base/tks/pom.xml
</a>
</li>
<li class="file-stats">
<a href="#472d5b2eb0841d8e04a08bc5173a3c976ce5abb5">
base/tks/shared/conf/CS.cfg
</a>
</li>
<li class="file-stats">
<a href="#dd405c5f01268471be3e2e64a4e810eeef61d4d0">
base/tks/shared/webapps/tks/WEB-INF/web.xml
</a>
</li>
<li class="file-stats">
<a href="#7d354d25d1ee0cdcef8960f11f59e20dc4d36260">
<span class="new-file">
+
base/tks/src/main/java/com/netscape/cms/servlet/admin/TKSACLAdminServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#fd8de479cec50898895bd6029692c94e2f91d366">
<span class="new-file">
+
base/tks/src/main/java/com/netscape/cms/servlet/admin/TKSAuthAdminServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#ab52e8d5a8d878e54118431265080055a9497880">
base/tks/src/main/java/com/netscape/cms/servlet/admin/TKSCMSAdminServlet.java
</a>
</li>
<li class="file-stats">
<a href="#d524eff1032ff6aab51a2aa7d0f0e5201ad3c361">
<span class="new-file">
+
base/tks/src/main/java/com/netscape/cms/servlet/admin/TKSJobsAdminServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#afef951dee9cb83b616e3f54cfd9598e05d20e65">
<span class="new-file">
+
base/tks/src/main/java/com/netscape/cms/servlet/admin/TKSLogAdminServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#06b6b4a0c2b94d6deb73719a985789949943aa52">
<span class="new-file">
+
base/tks/src/main/java/com/netscape/cms/servlet/admin/TKSUsrGrpAdminServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#6522ad693de0319909c6054ecf442896bc7b4ae3">
<span class="new-file">
+
base/tks/src/main/java/com/netscape/cms/servlet/base/TKSPortsServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#0eabcfbd33a0a6e5be3ec491e4c6a166b681a8f8">
base/tks/src/main/java/com/netscape/cms/servlet/csadmin/ImportTransportCert.java
</a>
</li>
<li class="file-stats">
<a href="#06415241849e9d83b241608775ecc39ac294ec08">
<span class="new-file">
+
base/tks/src/main/java/com/netscape/cms/servlet/csadmin/TKSDownloadPKCS12.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#9b53acae8a7fd79ff57ae547ed8aa32c67f46ee2">
<span class="new-file">
+
base/tks/src/main/java/com/netscape/cms/servlet/csadmin/TKSGetConfigEntries.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#a90e470a8c5a68a99c3ef359de5499db85b4b1d4">
<span class="new-file">
+
base/tks/src/main/java/com/netscape/cms/servlet/csadmin/TKSGetStatus.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#5fbff556ba49b257b8ada97333366058677ee140">
<span class="new-file">
+
base/tks/src/main/java/com/netscape/cms/servlet/csadmin/TKSMainPageServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#3e5396c2b3a395843ffb768560779bcc1023f4c6">
<span class="new-file">
+
base/tks/src/main/java/com/netscape/cms/servlet/csadmin/TKSRegisterUser.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#25fc659ed1e1752c13df9d1e23a7f5e939ce80be">
base/tks/src/main/java/org/dogtagpki/server/tks/TKSEngineConfig.java
</a>
</li>
<li class="file-stats">
<a href="#e76bb42047214d39b14b6d42e4ff54a98462012c">
base/tks/src/main/java/org/dogtagpki/server/tks/TKSWebListener.java
</a>
</li>
<li class="file-stats">
<a href="#b0a9c58c9d1616f908cfa5a8a8552ebbe1d29a82">
base/tks/src/main/java/org/dogtagpki/server/tks/cli/TKSCLI.java
</a>
</li>
<li class="file-stats">
<a href="#5331d520aa99b504cd798cad8ab07d753810da90">
<span class="new-file">
+
base/tks/src/main/java/org/dogtagpki/server/tks/rest/base/TPSConnectorProcessor.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#9cf5b58cba16bc8296dd2572a2ae1ec18f66390b">
base/tks/src/main/java/org/dogtagpki/server/tks/rest/TKSApplication.java
→
base/tks/src/main/java/org/dogtagpki/server/tks/rest/v1/TKSApplication.java
</a>
</li>
<li class="file-stats">
<a href="#dc1e2ebe95219ffe982a7860bbd6cd1a2b3e2321">
base/tks/src/main/java/org/dogtagpki/server/tks/rest/TPSConnectorService.java
→
base/tks/src/main/java/org/dogtagpki/server/tks/rest/v1/TPSConnectorService.java
</a>
</li>
<li class="file-stats">
<a href="#158558493758e9ae97fbc7b83eec4e66cc6cdb4b">
<span class="new-file">
+
base/tks/src/main/java/org/dogtagpki/server/tks/rest/v2/TKSAccountServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#e356238f2dcc988cb2e101858e0f74591f6e9080">
<span class="new-file">
+
base/tks/src/main/java/org/dogtagpki/server/tks/rest/v2/TKSAuditServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#fadd625f01db7cc5358c0cce1cc2af2c6cd4c07e">
<span class="new-file">
+
base/tks/src/main/java/org/dogtagpki/server/tks/rest/v2/TKSGroupServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#0686e381a4d07a8aa3b092eac3c7d56ee92aba2d">
<span class="new-file">
+
base/tks/src/main/java/org/dogtagpki/server/tks/rest/v2/TKSJobServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#8231f5f38621b72117a1a700e4d788d1875e8016">
<span class="new-file">
+
base/tks/src/main/java/org/dogtagpki/server/tks/rest/v2/TKSSelfTestServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#f7758987eab11c398578d556ef685aceaa89d80d">
<span class="new-file">
+
base/tks/src/main/java/org/dogtagpki/server/tks/rest/v2/TKSServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#0164d6f483eaf7c959414be64ebcea3db3ca8ec2">
<span class="new-file">
+
base/tks/src/main/java/org/dogtagpki/server/tks/rest/v2/TKSUserServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#840ad1f527c4ac63367a8dd7cbcf851613634c04">
<span class="new-file">
+
base/tks/src/main/java/org/dogtagpki/server/tks/rest/v2/TPSConnectorServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#456ff9c22aff21ff56250193c4951b4c90e5621c">
<span class="new-file">
+
base/tks/src/main/java/org/dogtagpki/server/tks/rest/v2/filters/EmptyACL.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#80c2aac03cf7280653d049b5aa2524c48d81f265">
<span class="new-file">
+
base/tks/src/main/java/org/dogtagpki/server/tks/rest/v2/filters/EmptyAuthMethod.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#7560b57a7134243e39e90c8c2120dca8ea1ee575">
<span class="new-file">
+
base/tks/src/main/java/org/dogtagpki/server/tks/rest/v2/filters/TKSAccountACL.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#e197295a37515d07598ae53bb512394f8f391e5b">
<span class="new-file">
+
base/tks/src/main/java/org/dogtagpki/server/tks/rest/v2/filters/TKSAccountAuthMethod.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#0e838384a5f62702a8d9fb04e56ff80d676c59af">
<span class="new-file">
+
base/tks/src/main/java/org/dogtagpki/server/tks/rest/v2/filters/TKSAuditACL.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#9980568acc5cb24dc6853382d38b0e7bb7f65436">
<span class="new-file">
+
base/tks/src/main/java/org/dogtagpki/server/tks/rest/v2/filters/TKSAuditAuthMethod.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#bb58e8823fb4d25c35535032f09b0f796719020a">
<span class="new-file">
+
base/tks/src/main/java/org/dogtagpki/server/tks/rest/v2/filters/TKSGroupACL.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#7369c0b24244857a27c717055737a36eca60cb11">
<span class="new-file">
+
base/tks/src/main/java/org/dogtagpki/server/tks/rest/v2/filters/TKSGroupAuthMethod.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#6472c4cb46603b31e11d5b54edbf11260b663002">
<span class="new-file">
+
base/tks/src/main/java/org/dogtagpki/server/tks/rest/v2/filters/TKSSelfTestACL.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#d1d2c90a966fa9e83e18928bd22dba12abef6372">
<span class="new-file">
+
base/tks/src/main/java/org/dogtagpki/server/tks/rest/v2/filters/TKSSelfTestAuthMethod.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#415eb885e4d15144d2e9e675e44a929bb124b19e">
<span class="new-file">
+
base/tks/src/main/java/org/dogtagpki/server/tks/rest/v2/filters/TKSUserACL.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#2c4659c5f1d3d69d4fc186801f6581adc12ec174">
<span class="new-file">
+
base/tks/src/main/java/org/dogtagpki/server/tks/rest/v2/filters/TKSUserAuthMethod.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#c40593e2525aee1fd9b038b5353cb5c1b7621f2d">
<span class="new-file">
+
base/tks/src/main/java/org/dogtagpki/server/tks/rest/v2/filters/TPSConnectorACL.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#a259cdecd2d1983cd45584491a43b39bf4927074">
<span class="new-file">
+
base/tks/src/main/java/org/dogtagpki/server/tks/rest/v2/filters/TPSConnectorAuthMethod.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#a123fe0f0409a3d314638b529c8fd27400364fcc">
base/tks/src/main/java/org/dogtagpki/server/tks/servlet/NistSP800_108KDF.java
</a>
</li>
<li class="file-stats">
<a href="#a58df44160ab088167aea743366f514dc78c06dd">
base/tks/src/main/java/org/dogtagpki/server/tks/servlet/SecureChannelProtocol.java
</a>
</li>
<li class="file-stats">
<a href="#312b7d1f20b18a5c762aa61107272b32ac5f5e51">
<span class="new-file">
+
base/tks/src/main/java/org/dogtagpki/server/tks/servlet/TKSCreateKeySetData.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#6f595f6c24e27cb2c5dc644e2748d107ce45efcd">
<span class="new-file">
+
base/tks/src/main/java/org/dogtagpki/server/tks/servlet/TKSEncryptData.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#be7b21036e6d28751908bc7c965432c8a97328bd">
<span class="new-file">
+
base/tks/src/main/java/org/dogtagpki/server/tks/servlet/TKSRandomData.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#53ddda1eb333140350aa7f0a077fd348182fa101">
<span class="new-file">
+
base/tks/src/main/java/org/dogtagpki/server/tks/servlet/TKSSessionKey.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#225f0367a7056370601c4ae3d37fe927d41b87e3">
base/tks/src/main/java/org/dogtagpki/server/tks/servlet/TokenServlet.java
</a>
</li>
<li class="file-stats">
<a href="#b7e83e25301c0f6cf43cf3c3ebab9254f04099ce">
<span class="new-file">
+
base/tks/tomcat-10.1/CMakeLists.txt
</span>
</a>
</li>
<li class="file-stats">
<a href="#87b385209501299259db3d118cd6b5f4a927b027">
<span class="new-file">
+
base/tks/tomcat-10.1/conf/Catalina/localhost/tks.xml
</span>
</a>
</li>
<li class="file-stats">
<a href="#8a87a4e1ccc18100023b4dce18e923b2d32d59b0">
<span class="new-file">
+
base/tomcat-10.1/CMakeLists.txt
</span>
</a>
</li>
<li class="file-stats">
<a href="#fc801e66a121cff2fc9485e5317706da9571b2b3">
<span class="new-file">
+
base/tomcat-10.1/conf/Catalina/localhost/ROOT.xml
</span>
</a>
</li>
<li class="file-stats">
<a href="#47c0b222610b938774196b88d87efc4d6248b41b">
<span class="new-file">
+
base/tomcat-10.1/conf/Catalina/localhost/pki.xml
</span>
</a>
</li>
<li class="file-stats">
<a href="#2edf31d734f56e4a28c44cead8b0d63f9f48052d">
<span class="new-file">
+
base/tomcat-10.1/conf/Catalina/localhost/rewrite.config
</span>
</a>
</li>
<li class="file-stats">
<a href="#924e1f78887bad7be8284971e79eb69ac55cc805">
<span class="new-file">
+
base/tomcat-10.1/conf/catalina.properties
</span>
</a>
</li>
<li class="file-stats">
<a href="#e011f0338307d1a16fd2626f12788ba14ca78dfb">
<span class="new-file">
+
base/tomcat-10.1/pom.xml
</span>
</a>
</li>
<li class="file-stats">
<a href="#8552ad01e49215bccb6893801373f874432fa969">
<span class="new-file">
+
base/tomcat-10.1/src/main/java/com/netscape/cms/tomcat/AbstractPKIAuthenticator.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#9de2ee6271b6df28add406e7cfaf0b95baf02c06">
<span class="new-file">
+
base/tomcat-10.1/src/main/java/com/netscape/cms/tomcat/ExternalAuthenticationValve.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#7339eb87414c63b9631cec832193dbf137c161be">
base/tomcat/src/main/java/com/netscape/cms/tomcat/ExternalPrincipal.java
→
base/tomcat-10.1/src/main/java/com/netscape/cms/tomcat/ExternalPrincipal.java
</a>
</li>
<li class="file-stats">
<a href="#c5161bf5f2bb8179af25999f71e061ea4f1dcee0">
base/tomcat/src/main/java/com/netscape/cms/tomcat/PKIListener.java
→
base/tomcat-10.1/src/main/java/com/netscape/cms/tomcat/PKIListener.java
</a>
</li>
<li class="file-stats">
<a href="#e5370c8ba1a1719f056e914b84428e0664848200">
<span class="new-file">
+
base/tomcat-10.1/src/main/java/com/netscape/cms/tomcat/ProxyRealm.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#9046f26ab8b18de8d9e0297af69bbe642245dad5">
base/common/src/main/java/com/netscape/certsrv/notification/IEmailTemplate.java
→
base/tomcat-10.1/src/main/java/com/netscape/cms/tomcat/SSLAuthenticatorWithFallback.java
</a>
</li>
<li class="file-stats">
<a href="#4a7fcc90ccae0f6654a59731847878c56e34ddf6">
<span class="new-file">
+
base/tomcat-10.1/src/main/resources/META-INF/MANIFEST.MF
</span>
</a>
</li>
<li class="file-stats">
<a href="#d60e2c1b9fa56fcdf9a02a699230fcb86deb45f4">
base/tomcat-9.0/CMakeLists.txt
</a>
</li>
<li class="file-stats">
<a href="#3d6a0992c5f9d66699668fb7ef9a8a9159b6fc09">
base/tomcat-9.0/conf/Catalina/localhost/rewrite.config
</a>
</li>
<li class="file-stats">
<a href="#024d646102f5ea42ce4ff45850ab1542be9a5920">
base/tomcat-9.0/pom.xml
</a>
</li>
<li class="file-stats">
<a href="#7d7c2d6b078277816f7ee9616965e17e89bea4b9">
base/tomcat/src/main/java/com/netscape/cms/tomcat/AbstractPKIAuthenticator.java
→
base/tomcat-9.0/src/main/java/com/netscape/cms/tomcat/AbstractPKIAuthenticator.java
</a>
</li>
<li class="file-stats">
<a href="#77ccad62bc8c4fb97800178dd87982a942026cb3">
base/tomcat/src/main/java/com/netscape/cms/tomcat/ExternalAuthenticationValve.java
→
base/tomcat-9.0/src/main/java/com/netscape/cms/tomcat/ExternalAuthenticationValve.java
</a>
</li>
<li class="file-stats">
<a href="#227dc361ff430a00443af5b5054dfebaf8164912">
<span class="new-file">
+
base/tomcat-9.0/src/main/java/com/netscape/cms/tomcat/ExternalPrincipal.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#891dcd4fd902ca429a261b518754f0d1a2d80083">
<span class="new-file">
+
base/tomcat-9.0/src/main/java/com/netscape/cms/tomcat/PKIListener.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#ecddc40f16ba5a451a5fcc905130bf4638146b88">
base/tomcat-9.0/src/main/java/com/netscape/cms/tomcat/ProxyRealm.java
</a>
</li>
<li class="file-stats">
<a href="#c8b66827cc8d3bb32e333f326466367c6c4dc139">
base/tomcat-9.0/src/main/resources/META-INF/MANIFEST.MF
</a>
</li>
<li class="file-stats">
<a href="#d1aec83754ff2739f0137bb0ce9171f6c21deebe">
<span class="new-file">
+
base/tomcat/CMakeLists.txt
</span>
</a>
</li>
<li class="file-stats">
<a href="#6a21308cf8e9a15d9dc2cad19405f3e2d2d6a526">
base/tomcat/pom.xml
</a>
</li>
<li class="file-stats">
<a href="#fe5d0a6a5730aa535480cf409fc8e108fde4cc34">
base/tomcat/src/main/java/com/netscape/cms/tomcat/NuxwdogPasswordStore.java
</a>
</li>
<li class="file-stats">
<a href="#f802999530154b88ce9b9bc94baa7f65eea0ed95">
<span class="new-file">
+
base/tomcat/src/main/resources/META-INF/MANIFEST.MF
</span>
</a>
</li>
<li class="file-stats">
<a href="#e0c1957399b5fed98b26828ee103dd7a7b764621">
base/tools/CMakeLists.txt
</a>
</li>
<li class="file-stats">
<a href="#ff99cfb40f5c07c58df11d3cf00493cafaa67038">
base/tools/bin/pki
</a>
</li>
<li class="file-stats">
<a href="#68d5cf74f4c10aa8e17753558723bf26e55c0e7c">
<span class="new-file">
+
base/tools/bin/revoker
</span>
</a>
</li>
<li class="file-stats">
<a href="#4602bccbc1e8827996bcf07fb5c1e8fe6f9144b2">
<span class="new-file">
+
base/tools/build-hsm-compat-verify.sh
</span>
</a>
</li>
<li class="file-stats">
<a href="#b5917b09f01a854e7410c66332f61084df6d224a">
<span class="new-file">
+
base/tools/build-kratool.sh
</span>
</a>
</li>
<li class="file-stats">
<a href="#caa80bc684f2c70382570683458a47185ded2cc2">
<span class="new-file">
+
base/tools/examples/certs/device.conf
</span>
</a>
</li>
<li class="file-stats">
<a href="#2b0ef76397e8040b60c1343bd7d14714ededd3ff">
<span class="new-file">
+
base/tools/examples/cmc/testuser-cmc-revocation-request.cfg
</span>
</a>
</li>
<li class="file-stats">
<a href="#601fde5a4283493260e4c04a7cc4a6274a9f7b84">
<span class="new-file">
+
base/tools/examples/cmc/testuser-cmc-revocation-submit.cfg
</span>
</a>
</li>
<li class="file-stats">
<a href="#953ac33ac4043fded83159e35f63516be5d3f32e">
<span class="new-file">
+
base/tools/hsm-compat-verify-pom.xml
</span>
</a>
</li>
<li class="file-stats">
<a href="#36c6d29dab7b5b0689d5ae7786a63405f10a7e49">
<span class="new-file">
+
base/tools/kratool-pom.xml
</span>
</a>
</li>
<li class="file-stats">
<a href="#fe070cc290e2f8271c2222996abde931fa573ca7">
<span class="new-file">
+
base/tools/pki-hsm-compat-verify.spec
</span>
</a>
</li>
<li class="file-stats">
<a href="#0bf196b63e7c11745cfe5e75913a42640e6d9fd1">
<span class="new-file">
+
base/tools/pki-kratool.spec
</span>
</a>
</li>
<li class="file-stats">
<a href="#377f46f55c3c4cb8982eb108aef85dc794bac141">
base/tools/pom.xml
</a>
</li>
<li class="file-stats">
<a href="#22017d642b0aab1f4716b2d9f2caf2d3a0d72951">
base/tools/src/main/java/com/netscape/cmstools/AtoB.java
</a>
</li>
<li class="file-stats">
<a href="#a0d604d8bc8b0e93a305a9a8cc5261fb1e59ff44">
base/tools/src/main/java/com/netscape/cmstools/CMCRequest.java
</a>
</li>
<li class="file-stats">
<a href="#52fc2ac0168038952c1096c4ef59852c1d1d6085">
base/tools/src/main/java/com/netscape/cmstools/CRMFPopClient.java
</a>
</li>
<li class="file-stats">
<a href="#2082a46befacb10f64abcebca1eba035be48635f">
<span class="new-file">
+
base/tools/src/main/java/com/netscape/cmstools/CryptoToolsUtil.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#e39826aa476b6f8df9d5831e24ce22b5c93e089e">
base/tools/src/main/java/com/netscape/cmstools/HttpClient.java
</a>
</li>
<li class="file-stats">
<a href="#b3b9a23311fb7e400f0b8157bb1eca3599d1c5b5">
base/tools/src/main/java/com/netscape/cmstools/KRATool.java
</a>
</li>
<li class="file-stats">
<a href="#cfedcf388cb2c3cf744f9df49cfdf61ff377b0d1">
base/tools/src/main/java/com/netscape/cmstools/OCSPClient.java
</a>
</li>
<li class="file-stats">
<a href="#82161204ef2c3373cf77505996615b1d64535a22">
base/tools/src/main/java/com/netscape/cmstools/PKCS10Client.java
</a>
</li>
<li class="file-stats">
<a href="#792af26ffdc6965b39dd527ffd364951101d9516">
base/tools/src/main/java/com/netscape/cmstools/PKCS12Export.java
</a>
</li>
<li class="file-stats">
<a href="#86b10aa880021858a5f2a29982e91c12a31e1c35">
base/tools/src/main/java/com/netscape/cmstools/acme/ACMEDisableCLI.java
</a>
</li>
<li class="file-stats">
<a href="#1afccf3b1e2955302fbc26cdaa39cf934aa9d22d">
base/tools/src/main/java/com/netscape/cmstools/acme/ACMEEnableCLI.java
</a>
</li>
<li class="file-stats">
<a href="#53630d13fbde63f2fdd09dc767ffe3398ad5269b">
base/tools/src/main/java/com/netscape/cmstools/acme/ACMEInfoCLI.java
</a>
</li>
<li class="file-stats">
<a href="#fb8383e0eb69d73944523596b18eb52dd3f7052a">
base/tools/src/main/java/com/netscape/cmstools/authority/AuthorityCLI.java
</a>
</li>
<li class="file-stats">
<a href="#a53a6e4ae602f09e9f32e7c26c21c080a9c26bc0">
base/tools/src/main/java/com/netscape/cmstools/authority/AuthorityCreateCLI.java
</a>
</li>
<li class="file-stats">
<a href="#26100022f7ef756ae1cf17f447463e107f41d6d5">
base/tools/src/main/java/com/netscape/cmstools/authority/AuthorityDisableCLI.java
</a>
</li>
<li class="file-stats">
<a href="#49ad3569f00909b432e5fc70984ce59a936622bf">
base/tools/src/main/java/com/netscape/cmstools/authority/AuthorityEnableCLI.java
</a>
</li>
<li class="file-stats">
<a href="#476c2e973f2245b138a4edd16d8f1d56b517906a">
base/tools/src/main/java/com/netscape/cmstools/authority/AuthorityFindCLI.java
</a>
</li>
<li class="file-stats">
<a href="#05b43d3033aab4da9d5c363c34ec84768e6890d2">
base/tools/src/main/java/com/netscape/cmstools/authority/AuthorityKeyExportCLI.java
</a>
</li>
<li class="file-stats">
<a href="#d063a7dd773a48fcb1a0df13fe09b043db89caf6">
base/tools/src/main/java/com/netscape/cmstools/authority/AuthorityRemoveCLI.java
</a>
</li>
<li class="file-stats">
<a href="#3b314003427b3017121c648865c731fa423986b1">
base/tools/src/main/java/com/netscape/cmstools/authority/AuthorityShowCLI.java
</a>
</li>
<li class="file-stats">
<a href="#64e858f22cee5f1a17b556deedf3219a018d5312">
base/tools/src/main/java/com/netscape/cmstools/ca/CACLI.java
</a>
</li>
<li class="file-stats">
<a href="#70bdb045c15fee76e5d563e43eddc1a953f21e96">
<span class="new-file">
+
base/tools/src/main/java/com/netscape/cmstools/ca/CACRLCLI.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#e8db13754d5cc911963b65b87c6eaac2e404124f">
<span class="new-file">
+
base/tools/src/main/java/com/netscape/cmstools/ca/CACRLUpdateCLI.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#c66c1a46d3f2937878ad028fd3445cd0e156bebf">
base/tools/src/main/java/com/netscape/cmstools/ca/CACertCLI.java
</a>
</li>
<li class="file-stats">
<a href="#95048e607f85c34466ae78eb4bd22e3e7b1bda91">
base/tools/src/main/java/com/netscape/cmstools/ca/CACertExportCLI.java
</a>
</li>
<li class="file-stats">
<a href="#957998deb2192145d6ac2ec0b4b691d6e2889108">
base/tools/src/main/java/com/netscape/cmstools/ca/CACertFindCLI.java
</a>
</li>
<li class="file-stats">
<a href="#cd5ec1b3f7d68306592f2be2bd1be86b699c4e7e">
base/tools/src/main/java/com/netscape/cmstools/ca/CACertHoldCLI.java
</a>
</li>
<li class="file-stats">
<a href="#5d7c4aa3f50cbb49f292b668be9d3cb053832b68">
<span class="new-file">
+
base/tools/src/main/java/com/netscape/cmstools/ca/CACertIssueCLI.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#4b91f3ae4cdc2d64c6bbb2397cafcf14dc59a6a6">
base/tools/src/main/java/com/netscape/cmstools/ca/CACertReleaseHoldCLI.java
</a>
</li>
<li class="file-stats">
<a href="#58f6c0cd85def03d37a6824517d30fbe87c37f92">
base/tools/src/main/java/com/netscape/cmstools/ca/CACertRequestActionCLI.java
</a>
</li>
<li class="file-stats">
<a href="#acd3175c5fc26ac9607eb2c103754bb504411647">
base/tools/src/main/java/com/netscape/cmstools/ca/CACertRequestCLI.java
</a>
</li>
<li class="file-stats">
<a href="#3398e25567298b32fb5bc7628c93efa247af9917">
base/tools/src/main/java/com/netscape/cmstools/ca/CACertRequestFindCLI.java
</a>
</li>
<li class="file-stats">
<a href="#9190963f24915596f0f08693666c13c9dddb9bd3">
base/tools/src/main/java/com/netscape/cmstools/ca/CACertRequestProfileFindCLI.java
</a>
</li>
<li class="file-stats">
<a href="#f06de0c6af8ebb8e221df7d37d17984b6580c0ab">
base/tools/src/main/java/com/netscape/cmstools/ca/CACertRequestProfileShowCLI.java
</a>
</li>
<li class="file-stats">
<a href="#e3c28ffff122574e1cf488b6e23705b9bcca2cb5">
base/tools/src/main/java/com/netscape/cmstools/ca/CACertRequestReviewCLI.java
</a>
</li>
<li class="file-stats">
<a href="#64e0e79304bfcd1f56d1fe07f6ec422caeea9202">
base/tools/src/main/java/com/netscape/cmstools/ca/CACertRequestShowCLI.java
</a>
</li>
<li class="file-stats">
<a href="#910024a9aeeb5282c754c731cc9c6f4aae56e6d1">
base/tools/src/main/java/com/netscape/cmstools/ca/CACertRequestSubmitCLI.java
</a>
</li>
<li class="file-stats">
<a href="#a25d395aba8c09b1e01e7104fe5cb51afaf42d6f">
base/tools/src/main/java/com/netscape/cmstools/ca/CACertRevokeCLI.java
</a>
</li>
<li class="file-stats">
<a href="#3244f31d87879f6bd9f5da2511b4b4d54444ef2a">
base/tools/src/main/java/com/netscape/cmstools/ca/CACertShowCLI.java
</a>
</li>
<li class="file-stats">
<a href="#3574c40f2c8ca52c0894fb0a2bbf0a229181aa23">
base/tools/src/main/java/com/netscape/cmstools/ca/CACertSigningExportCLI.java
</a>
</li>
<li class="file-stats">
<a href="#bd6be6ddb58d932898ce4b9b0eb42976be948a2a">
base/tools/src/main/java/com/netscape/cmstools/ca/CACertSigningShowCLI.java
</a>
</li>
<li class="file-stats">
<a href="#b3b5697a3102813a2ac75001ea6d732115348aec">
base/tools/src/main/java/com/netscape/cmstools/ca/CACertStatusCLI.java
</a>
</li>
<li class="file-stats">
<a href="#f09f547bd322af5db238889d38fadb2b69e10d94">
base/tools/src/main/java/com/netscape/cmstools/ca/CACertSubsystemExportCLI.java
</a>
</li>
<li class="file-stats">
<a href="#9c57cae61cf6feb7201af98e2ed4feb2969527ba">
base/tools/src/main/java/com/netscape/cmstools/ca/CACertSubsystemShowCLI.java
</a>
</li>
<li class="file-stats">
<a href="#9c1ea12e4d54d21aab888c31cde839941cfc1c43">
base/tools/src/main/java/com/netscape/cmstools/ca/CACertTransportExportCLI.java
</a>
</li>
<li class="file-stats">
<a href="#40b032b18f16e329c627db1a50b63744cdfd7faa">
base/tools/src/main/java/com/netscape/cmstools/ca/CACertTransportShowCLI.java
</a>
</li>
<li class="file-stats">
<a href="#ad59220c8865f27b782d09fcb7321ec4e749a762">
base/tools/src/main/java/com/netscape/cmstools/ca/PublisherOCSPAddCLI.java
</a>
</li>
<li class="file-stats">
<a href="#86aad06304f85cb4d20c3141c9a41b1727082581">
base/tools/src/main/java/com/netscape/cmstools/cli/InfoCLI.java
</a>
</li>
<li class="file-stats">
<a href="#39b690ec9f89bc22add3549d1033313a6351e2ad">
base/tools/src/main/java/com/netscape/cmstools/cli/MainCLI.java
</a>
</li>
<li class="file-stats">
<a href="#41afa4e13a4ffcab22573823bad9d90b65c76763">
<span class="new-file">
+
base/tools/src/main/java/com/netscape/cmstools/cli/PasswordCLI.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#65e04d7ed34ca65eadb0c03599aab344787ff995">
<span class="new-file">
+
base/tools/src/main/java/com/netscape/cmstools/cli/PasswordGenerateCLI.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#d1a9e7a169bf0631bb3dbeee87389b60e0e449aa">
<span class="deleted-file">
−
base/tools/src/main/java/com/netscape/cmstools/cli/ProxyCLI.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#275c14df100a57bc1fea770fea28b91b1c60b1a8">
base/tools/src/main/java/com/netscape/cmstools/cli/SubsystemCLI.java
</a>
</li>
<li class="file-stats">
<a href="#e6e2abfd51d53f897b7c9d5a91f1331c364b22ed">
<span class="new-file">
+
base/tools/src/main/java/com/netscape/cmstools/cli/SubsystemCommandCLI.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#2484ab2f7a60c9525d50d13ddd49552bc93a3d4d">
base/tools/src/main/java/com/netscape/cmstools/client/ClientCertFindCLI.java
</a>
</li>
<li class="file-stats">
<a href="#eec445dbccb689a2cfc72c93eff1d75a51f368ed">
base/tools/src/main/java/com/netscape/cmstools/client/ClientCertImportCLI.java
</a>
</li>
<li class="file-stats">
<a href="#a769bb81df06c3f93f558a2118c74c68c8075cd2">
base/tools/src/main/java/com/netscape/cmstools/client/ClientCertModifyCLI.java
</a>
</li>
<li class="file-stats">
<a href="#2d227a63563988654fb8d3fcc4a79e8d3a469051">
base/tools/src/main/java/com/netscape/cmstools/client/ClientCertRemoveCLI.java
</a>
</li>
<li class="file-stats">
<a href="#655677678d813de637f8d9b54f45f199310bf906">
base/tools/src/main/java/com/netscape/cmstools/client/ClientCertRequestCLI.java
</a>
</li>
<li class="file-stats">
<a href="#e36adb3678547b90ca66bb7a85bf89430881ccc4">
base/tools/src/main/java/com/netscape/cmstools/client/ClientCertShowCLI.java
</a>
</li>
<li class="file-stats">
<a href="#05f597f218fe63e524d0518953562c7c0996ec3a">
base/tools/src/main/java/com/netscape/cmstools/client/ClientCertValidateCLI.java
</a>
</li>
<li class="file-stats">
<a href="#350297c4a43604fbb31e96112076b00a46f274ba">
base/tools/src/main/java/com/netscape/cmstools/client/ClientInitCLI.java
</a>
</li>
<li class="file-stats">
<a href="#ac59757a39a744638dae42727765efebb1a43990">
base/tools/src/main/java/com/netscape/cmstools/config/ConfigCLI.java
</a>
</li>
<li class="file-stats">
<a href="#2b72775acc6ee0d818209b3cdb34e78c18b810ad">
base/tools/src/main/java/com/netscape/cmstools/config/ConfigExportCLI.java
</a>
</li>
<li class="file-stats">
<a href="#a226712588d17f747679a657ce0f49a1575c7cd1">
base/tools/src/main/java/com/netscape/cmstools/feature/FeatureCLI.java
</a>
</li>
<li class="file-stats">
<a href="#8c7d82b43d73f526435519fe6da2b54c5f836932">
base/tools/src/main/java/com/netscape/cmstools/feature/FeatureFindCLI.java
</a>
</li>
<li class="file-stats">
<a href="#5ae75975ae62fe7b14323b8b2e079941ca8e46c3">
base/tools/src/main/java/com/netscape/cmstools/feature/FeatureShowCLI.java
</a>
</li>
<li class="file-stats">
<a href="#1365d91793727d1de2776db8e9eb0cdceda8fe7c">
base/tools/src/main/java/com/netscape/cmstools/group/GroupAddCLI.java
</a>
</li>
<li class="file-stats">
<a href="#287e85d1eeb659aa1e774758cf4452444ee34f40">
base/tools/src/main/java/com/netscape/cmstools/group/GroupCLI.java
</a>
</li>
<li class="file-stats">
<a href="#6c1184a54f7b0cc7eda71d47609fbd9c721febbc">
base/tools/src/main/java/com/netscape/cmstools/group/GroupFindCLI.java
</a>
</li>
<li class="file-stats">
<a href="#27ccb87963dd317cb326c47972c8de015452f369">
base/tools/src/main/java/com/netscape/cmstools/group/GroupMemberAddCLI.java
</a>
</li>
<li class="file-stats">
<a href="#08529a88cd2ffa988c5c3a147839231c860bfdd8">
base/tools/src/main/java/com/netscape/cmstools/group/GroupMemberCLI.java
</a>
</li>
<li class="file-stats">
<a href="#536543c74c17c77a302b0c2528143b805fd39d78">
base/tools/src/main/java/com/netscape/cmstools/group/GroupMemberFindCLI.java
</a>
</li>
<li class="file-stats">
<a href="#50b57b71199e39c28642c1c1e591c662ca281098">
base/tools/src/main/java/com/netscape/cmstools/group/GroupMemberRemoveCLI.java
</a>
</li>
<li class="file-stats">
<a href="#e199f055a55e4cfd3489e0e06a44f83eff1563fd">
base/tools/src/main/java/com/netscape/cmstools/group/GroupMemberShowCLI.java
</a>
</li>
<li class="file-stats">
<a href="#d725f3f142650e307923a810c5303760c3f88b28">
base/tools/src/main/java/com/netscape/cmstools/group/GroupModifyCLI.java
</a>
</li>
<li class="file-stats">
<a href="#4e03768ca09840ef39c2f7b829980fd8b88ab30d">
base/tools/src/main/java/com/netscape/cmstools/group/GroupRemoveCLI.java
</a>
</li>
<li class="file-stats">
<a href="#1ac4823ac16c971df1d6f304e04f7620362b0713">
base/tools/src/main/java/com/netscape/cmstools/group/GroupShowCLI.java
</a>
</li>
<li class="file-stats">
<a href="#88d0821854ea4c75d72be5a1846ed7d0db6ef7bc">
<span class="new-file">
+
base/tools/src/main/java/com/netscape/cmstools/hsmCompatVerifyClnt.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#cc84d7f0ae8251f0a181916038621408b6e1ce2d">
<span class="new-file">
+
base/tools/src/main/java/com/netscape/cmstools/hsmCompatVerifyServ.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#d6dba41e263797f51eca51eb9b7004c90446e01f">
base/tools/src/main/java/com/netscape/cmstools/job/JobCLI.java
</a>
</li>
<li class="file-stats">
<a href="#24026e6002b5a03923eb7ec873288c7243d41285">
base/tools/src/main/java/com/netscape/cmstools/job/JobFindCLI.java
</a>
</li>
<li class="file-stats">
<a href="#ef81e557ad302b5c00435c16045fe216b17b4804">
base/tools/src/main/java/com/netscape/cmstools/job/JobShowCLI.java
</a>
</li>
<li class="file-stats">
<a href="#7e14139e6d8f2ce4ea1a381765d37cecb17863a9">
base/tools/src/main/java/com/netscape/cmstools/job/JobStartCLI.java
</a>
</li>
<li class="file-stats">
<a href="#0390f6e48cddf84e259f82fc91f07601cc07d2fe">
base/tools/src/main/java/com/netscape/cmstools/kra/KRACLI.java
</a>
</li>
<li class="file-stats">
<a href="#7b51a0a88c9085118837e4a8de2f5226477e60ef">
base/tools/src/main/java/com/netscape/cmstools/kra/KRACertCLI.java
</a>
</li>
<li class="file-stats">
<a href="#849f2930478c432904330004a3c58531e8d08759">
base/tools/src/main/java/com/netscape/cmstools/kra/KRACertTransportExportCLI.java
</a>
</li>
<li class="file-stats">
<a href="#e48bc6e552093953b0757c5d085702aa3f4b3b9b">
base/tools/src/main/java/com/netscape/cmstools/kra/KRACertTransportShowCLI.java
</a>
</li>
<li class="file-stats">
<a href="#c7ed325e6922fb06e01c04b9482cc2b582f49d8c">
base/tools/src/main/java/com/netscape/cmstools/kra/KRAKeyArchiveCLI.java
</a>
</li>
<li class="file-stats">
<a href="#d4af6f89f55d1708993a45f7573b8a7893fd40cd">
base/tools/src/main/java/com/netscape/cmstools/kra/KRAKeyCLI.java
</a>
</li>
<li class="file-stats">
<a href="#2dd9fe32b9c27763da8220d6879d68559fd72fa1">
base/tools/src/main/java/com/netscape/cmstools/kra/KRAKeyFindCLI.java
</a>
</li>
<li class="file-stats">
<a href="#07e8b2666555934325d0a2a688a9cba9afa66d46">
base/tools/src/main/java/com/netscape/cmstools/kra/KRAKeyGenerateCLI.java
</a>
</li>
<li class="file-stats">
<a href="#59ff95bb3f7b6ec672ed0c8b1afc1f2a586c2f8a">
base/tools/src/main/java/com/netscape/cmstools/kra/KRAKeyModifyCLI.java
</a>
</li>
<li class="file-stats">
<a href="#75f9ddb62fe3dfb728d818d535acaa135f530276">
base/tools/src/main/java/com/netscape/cmstools/kra/KRAKeyRecoverCLI.java
</a>
</li>
<li class="file-stats">
<a href="#557b98c9bd6a9f519f8b7dabde9d8d17ccec286c">
base/tools/src/main/java/com/netscape/cmstools/kra/KRAKeyRequestFindCLI.java
</a>
</li>
<li class="file-stats">
<a href="#933c4f8a8c016795bd67890ef70e9e4f82e64ac2">
base/tools/src/main/java/com/netscape/cmstools/kra/KRAKeyRequestReviewCLI.java
</a>
</li>
<li class="file-stats">
<a href="#79db8c1c84156896bc7ff1d1267b785c73895895">
base/tools/src/main/java/com/netscape/cmstools/kra/KRAKeyRequestShowCLI.java
</a>
</li>
<li class="file-stats">
<a href="#5104fa00a3e55257ed3018f704d40a3c01fc6fa1">
base/tools/src/main/java/com/netscape/cmstools/kra/KRAKeyRetrieveCLI.java
</a>
</li>
<li class="file-stats">
<a href="#3ff6af1f3830ee2efaa7445a42f7a0cd44f7d5a2">
base/tools/src/main/java/com/netscape/cmstools/kra/KRAKeyShowCLI.java
</a>
</li>
<li class="file-stats">
<a href="#429358b9ee73dddd5bb3b40a3605a9f54900fb03">
base/tools/src/main/java/com/netscape/cmstools/kra/KRAKeyTemplateFindCLI.java
</a>
</li>
<li class="file-stats">
<a href="#91a3e88617a97dd56c9c20b4884ee9883bab39df">
base/tools/src/main/java/com/netscape/cmstools/kra/KRAKeyTemplateShowCLI.java
</a>
</li>
<li class="file-stats">
<a href="#d688a121485b950040a43543c93b9717e4a81991">
base/tools/src/main/java/com/netscape/cmstools/logging/ActivityCLI.java
</a>
</li>
<li class="file-stats">
<a href="#03c3df61625b34dcad1c9e4cc4bea75f09fd39fe">
base/tools/src/main/java/com/netscape/cmstools/logging/ActivityFindCLI.java
</a>
</li>
<li class="file-stats">
<a href="#ea8f757c71b52f7332ae24655171cac87bdf8315">
base/tools/src/main/java/com/netscape/cmstools/logging/ActivityShowCLI.java
</a>
</li>
<li class="file-stats">
<a href="#00f50ac5b5f50c553c19b14af18af41404d82736">
base/tools/src/main/java/com/netscape/cmstools/logging/AuditCLI.java
</a>
</li>
<li class="file-stats">
<a href="#dbd732cdcb4194b86f6d0749d54bfb3adc00ab56">
base/tools/src/main/java/com/netscape/cmstools/logging/AuditFileFindCLI.java
</a>
</li>
<li class="file-stats">
<a href="#41c934e58a4e35e87c49a3b1879757c245b1f460">
base/tools/src/main/java/com/netscape/cmstools/logging/AuditFileRetrieveCLI.java
</a>
</li>
<li class="file-stats">
<a href="#52222d2a7400c99b6983a0f413f78d673a915564">
base/tools/src/main/java/com/netscape/cmstools/logging/AuditModifyCLI.java
</a>
</li>
<li class="file-stats">
<a href="#05e82d837bbc72ad0445ba77f3f95fabae8da9b0">
base/tools/src/main/java/com/netscape/cmstools/logging/AuditShowCLI.java
</a>
</li>
<li class="file-stats">
<a href="#077280f9c516880867b61efa517155779441433f">
base/tools/src/main/java/com/netscape/cmstools/nss/NSSCertCLI.java
</a>
</li>
<li class="file-stats">
<a href="#f290a00a18e680e263648e22b04dd33f288f53d8">
base/tools/src/main/java/com/netscape/cmstools/nss/NSSCertExportCLI.java
</a>
</li>
<li class="file-stats">
<a href="#d5293cf79e6bb3947b62f30192464e214e284f01">
base/tools/src/main/java/com/netscape/cmstools/nss/NSSCertFindCLI.java
</a>
</li>
<li class="file-stats">
<a href="#b4bac53615be4d14979e4a7027543e916e5e1775">
base/tools/src/main/java/com/netscape/cmstools/nss/NSSCertImportCLI.java
</a>
</li>
<li class="file-stats">
<a href="#24cecdfea4bb128cbd2ef49e8971f6653511d90d">
<span class="new-file">
+
base/tools/src/main/java/com/netscape/cmstools/nss/NSSCertInfo.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#322dfcabf717c1fb2d9cd62b74220406b0e30c50">
base/tools/src/main/java/com/netscape/cmstools/nss/NSSCertIssueCLI.java
</a>
</li>
<li class="file-stats">
<a href="#3c35772fe410259eac306d4c31810c1639a1ca8e">
<span class="new-file">
+
base/tools/src/main/java/com/netscape/cmstools/nss/NSSCertModifyCLI.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#15491f5f18faed96b6b6c6b1eaec9be30849b8a7">
<span class="new-file">
+
base/tools/src/main/java/com/netscape/cmstools/nss/NSSCertRemoveCLI.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#bd5b6be1c7fb18b63288bb08531b9286a7b668a9">
base/tools/src/main/java/com/netscape/cmstools/nss/NSSCertRequestCLI.java
</a>
</li>
<li class="file-stats">
<a href="#ee1372bde94dbe5f80206bf51aed37234743db67">
base/tools/src/main/java/com/netscape/cmstools/nss/NSSCertShowCLI.java
</a>
</li>
<li class="file-stats">
<a href="#e5a25c61f6544c76292547f7855a8d956e2855e6">
<span class="new-file">
+
base/tools/src/main/java/com/netscape/cmstools/nss/NSSCertVerifyCLI.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#5ed44b3b636dae2295852cb4c7250b8aa605d7ca">
base/tools/src/main/java/com/netscape/cmstools/nss/NSSCreateCLI.java
</a>
</li>
<li class="file-stats">
<a href="#dd1d11f2e588a836b7c55425998cb8605ed56cd6">
base/tools/src/main/java/com/netscape/cmstools/nss/NSSKeyCLI.java
</a>
</li>
<li class="file-stats">
<a href="#7e39c809154af61aa2cfc5b5186c8eae4f44c791">
base/tools/src/main/java/com/netscape/cmstools/nss/NSSKeyCreateCLI.java
</a>
</li>
<li class="file-stats">
<a href="#35c191a2af4242f03cf1dc715f483e3719e07c79">
base/tools/src/main/java/com/netscape/cmstools/nss/NSSKeyExportCLI.java
</a>
</li>
<li class="file-stats">
<a href="#506cb494d48688e10c058b698b7b71062669e500">
base/tools/src/main/java/com/netscape/cmstools/nss/NSSKeyFindCLI.java
</a>
</li>
<li class="file-stats">
<a href="#e9e5dd638d3ec91d08ccd5920f4dd22144b29246">
base/tools/src/main/java/com/netscape/cmstools/nss/NSSKeyImportCLI.java
</a>
</li>
<li class="file-stats">
<a href="#c6fa33a54a1888d994d90b7e1feaa267730334ce">
<span class="new-file">
+
base/tools/src/main/java/com/netscape/cmstools/nss/NSSKeyRemoveCLI.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#aa0f93d89ce526a007d416035dfb4abaf1ab1ee3">
<span class="new-file">
+
base/tools/src/main/java/com/netscape/cmstools/nss/NSSKeyShowCLI.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#d851c89505290390d81fe3de5bcfac641e961cca">
base/tools/src/main/java/com/netscape/cmstools/nss/NSSRemoveCLI.java
</a>
</li>
<li class="file-stats">
<a href="#246b39367b7d98aa1faa82402c39715cf9fe0db7">
base/tools/src/main/java/com/netscape/cmstools/ocsp/OCSPCLI.java
</a>
</li>
<li class="file-stats">
<a href="#d38c332ff67dcb0acf4a1b9c94b6a3fe5cae5d81">
<span class="new-file">
+
base/tools/src/main/java/com/netscape/cmstools/ocsp/OCSPCertCLI.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#231a4978b09bdd4b318f373b001b6680cd1e3933">
<span class="new-file">
+
base/tools/src/main/java/com/netscape/cmstools/ocsp/OCSPCertVerifyCLI.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#6572aaf706f72118b2c0cee9de3bbbdfbe180d08">
base/tools/src/main/java/com/netscape/cmstools/pkcs11/PKCS11CertExportCLI.java
</a>
</li>
<li class="file-stats">
<a href="#14698fd693f5299d14a13090f6c4b0a6a29013ee">
base/tools/src/main/java/com/netscape/cmstools/pkcs11/PKCS11KeyCLI.java
</a>
</li>
<li class="file-stats">
<a href="#a629f6a2920d51b28a349b47f559a9bad2450723">
base/tools/src/main/java/com/netscape/cmstools/pkcs12/PKCS12CertAddCLI.java
</a>
</li>
<li class="file-stats">
<a href="#2c2d9f07488c4c504dc971fe6248b0a0b249aa42">
base/tools/src/main/java/com/netscape/cmstools/pkcs12/PKCS12CertExportCLI.java
</a>
</li>
<li class="file-stats">
<a href="#a6c6e31cc84511c43b5a9ec7c697f489466043ab">
base/tools/src/main/java/com/netscape/cmstools/pkcs12/PKCS12CertFindCLI.java
</a>
</li>
<li class="file-stats">
<a href="#e89f5ca59d9fe4b6bfcb9136a2c859db67e62c5f">
base/tools/src/main/java/com/netscape/cmstools/pkcs12/PKCS12CertImportCLI.java
</a>
</li>
<li class="file-stats">
<a href="#488a10ba17ecae0a6958e6f81daf485603d633fb">
base/tools/src/main/java/com/netscape/cmstools/pkcs12/PKCS12CertModCLI.java
</a>
</li>
<li class="file-stats">
<a href="#0ed82fa981c40d55b85abc0abfc64260151eb2b7">
base/tools/src/main/java/com/netscape/cmstools/pkcs12/PKCS12CertRemoveCLI.java
</a>
</li>
<li class="file-stats">
<a href="#5613e7c3ae9b385552dfdc617bba6a351d60fff9">
base/tools/src/main/java/com/netscape/cmstools/pkcs12/PKCS12ExportCLI.java
</a>
</li>
<li class="file-stats">
<a href="#bba4c23127696969bf3aa29b0dccc92875d98f9d">
base/tools/src/main/java/com/netscape/cmstools/pkcs12/PKCS12ImportCLI.java
</a>
</li>
<li class="file-stats">
<a href="#2cc2a638c7c75cd996ca0cc2867e88ce723bde9b">
base/tools/src/main/java/com/netscape/cmstools/pkcs12/PKCS12KeyFindCLI.java
</a>
</li>
<li class="file-stats">
<a href="#e032f9d64d7808ba922f62ed756901cdb5390768">
base/tools/src/main/java/com/netscape/cmstools/pkcs12/PKCS12KeyRemoveCLI.java
</a>
</li>
<li class="file-stats">
<a href="#bf1d5551d88c3dd0b3041cbe66fc1a3dcd134db0">
base/tools/src/main/java/com/netscape/cmstools/pkcs7/PKCS7CertExportCLI.java
</a>
</li>
<li class="file-stats">
<a href="#f78452423c3df65a6491fc5e2ea7359065fa24df">
base/tools/src/main/java/com/netscape/cmstools/pkcs7/PKCS7CertFindCLI.java
</a>
</li>
<li class="file-stats">
<a href="#a61e055a6ee93cca3238c5cf7dfb1da4e7ca3962">
base/tools/src/main/java/com/netscape/cmstools/pkcs7/PKCS7CertImportCLI.java
</a>
</li>
<li class="file-stats">
<a href="#24a036335b7870962df050d94aa0709a466a8003">
base/tools/src/main/java/com/netscape/cmstools/pkcs7/PKCS7ExportCLI.java
</a>
</li>
<li class="file-stats">
<a href="#531214ff23e531aa6814a3296d0cf552aaf53b92">
base/tools/src/main/java/com/netscape/cmstools/pkcs7/PKCS7ImportCLI.java
</a>
</li>
<li class="file-stats">
<a href="#bddddbb0b42cc536ab2ffcd052e6abda0cc70374">
base/tools/src/main/java/com/netscape/cmstools/profile/ProfileAddCLI.java
</a>
</li>
<li class="file-stats">
<a href="#73aaa262dc766ecee8984f0d65cf36a9be31ea1d">
base/tools/src/main/java/com/netscape/cmstools/profile/ProfileCLI.java
</a>
</li>
<li class="file-stats">
<a href="#8f48f0ce20af4a438e826711ff2779b51cc0cd9a">
base/tools/src/main/java/com/netscape/cmstools/profile/ProfileDisableCLI.java
</a>
</li>
<li class="file-stats">
<a href="#5c47756632e6634d01db4dd5ccd17dbdad9c18d0">
base/tools/src/main/java/com/netscape/cmstools/profile/ProfileEditCLI.java
</a>
</li>
<li class="file-stats">
<a href="#d63df5d5ae7e7b7c6812055463ad8e3470499fc5">
base/tools/src/main/java/com/netscape/cmstools/profile/ProfileEnableCLI.java
</a>
</li>
<li class="file-stats">
<a href="#b94e3c2f45c9fdaf91a2a13a8c0cb2d4c761619c">
base/tools/src/main/java/com/netscape/cmstools/profile/ProfileFindCLI.java
</a>
</li>
<li class="file-stats">
<a href="#234bb5147d7d727901ccced8f4e88e82eb7c1fb5">
base/tools/src/main/java/com/netscape/cmstools/profile/ProfileModifyCLI.java
</a>
</li>
<li class="file-stats">
<a href="#cd26d28812eaa7d2e6730b6c0657dd75d6a1795e">
base/tools/src/main/java/com/netscape/cmstools/profile/ProfileRemoveCLI.java
</a>
</li>
<li class="file-stats">
<a href="#700cd6773b9e0aceda4e73637dd580ed6bdc0245">
base/tools/src/main/java/com/netscape/cmstools/profile/ProfileShowCLI.java
</a>
</li>
<li class="file-stats">
<a href="#ff8f28b4d85f8b10ff3438d9727dd4ca2d31751c">
base/tools/src/main/java/com/netscape/cmstools/range/RangeRequestCLI.java
</a>
</li>
<li class="file-stats">
<a href="#250f8ae05fe43946a270787cbb5d1cd8bb110031">
base/tools/src/main/java/com/netscape/cmstools/selftests/SelfTestCLI.java
</a>
</li>
<li class="file-stats">
<a href="#bc2d3b067e6e9d1d1f759818c7989f4f37f479ae">
base/tools/src/main/java/com/netscape/cmstools/selftests/SelfTestFindCLI.java
</a>
</li>
<li class="file-stats">
<a href="#03dc915c5a407eb29818cae5cf968e8f8f30269a">
base/tools/src/main/java/com/netscape/cmstools/selftests/SelfTestRunCLI.java
</a>
</li>
<li class="file-stats">
<a href="#806147f1e4fbacdae86b518a1225b4795a6189d8">
base/tools/src/main/java/com/netscape/cmstools/selftests/SelfTestShowCLI.java
</a>
</li>
<li class="file-stats">
<a href="#00e85729b667e47330ba37dc340bcd1d500390cf">
base/tools/src/main/java/com/netscape/cmstools/system/KRAConnectorAddCLI.java
</a>
</li>
<li class="file-stats">
<a href="#286a32c9b07d91758b82d8f68fca66a4ec900934">
base/tools/src/main/java/com/netscape/cmstools/system/KRAConnectorCLI.java
</a>
</li>
<li class="file-stats">
<a href="#5503262d0d765c1e78be3d1f72930318b242992b">
base/tools/src/main/java/com/netscape/cmstools/system/KRAConnectorRemoveCLI.java
</a>
</li>
<li class="file-stats">
<a href="#c942ff54f9b29f5c98e8daa41cc2ebfe72d8f143">
base/tools/src/main/java/com/netscape/cmstools/system/KRAConnectorShowCLI.java
</a>
</li>
<li class="file-stats">
<a href="#baa7f8dd26ca9fbf0f69ecb34afc19dfa1ecb7e7">
<span class="new-file">
+
base/tools/src/main/java/com/netscape/cmstools/system/SDCLI.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#1966521f278aebe09f4c00f086299cac28e37f41">
<span class="new-file">
+
base/tools/src/main/java/com/netscape/cmstools/system/SDJoinCLI.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#5ff1efd916e8968ae04136525a92f5045c73d134">
<span class="new-file">
+
base/tools/src/main/java/com/netscape/cmstools/system/SDLeaveCLI.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#358b5c2e96e1ebc95485fb49921d1dc22cdfa619">
base/tools/src/main/java/com/netscape/cmstools/system/SecurityDomainCLI.java
</a>
</li>
<li class="file-stats">
<a href="#57c226cf0d8468e1d0aed931e00d52d81ebf2f4c">
base/tools/src/main/java/com/netscape/cmstools/system/SecurityDomainHostAddCLI.java
</a>
</li>
<li class="file-stats">
<a href="#7cf370f79458ee1f79eff6e8c11a443a20fdbdeb">
base/tools/src/main/java/com/netscape/cmstools/system/SecurityDomainHostCLI.java
</a>
</li>
<li class="file-stats">
<a href="#4fc41af25cb2b4a5a9ca2748c56c5fd13f77d3e5">
base/tools/src/main/java/com/netscape/cmstools/system/SecurityDomainHostFindCLI.java
</a>
</li>
<li class="file-stats">
<a href="#283fc4d0d9fa4569d34590dd4fc547c4907f806d">
base/tools/src/main/java/com/netscape/cmstools/system/SecurityDomainHostRemoveCLI.java
</a>
</li>
<li class="file-stats">
<a href="#31838201c2e56e342aa14ed66e89e2f349d3fa6e">
base/tools/src/main/java/com/netscape/cmstools/system/SecurityDomainHostShowCLI.java
</a>
</li>
<li class="file-stats">
<a href="#5f3da5f72cc5cc196d6c805510be66edc65b688e">
base/tools/src/main/java/com/netscape/cmstools/system/SecurityDomainJoinCLI.java
</a>
</li>
<li class="file-stats">
<a href="#0e75266d4870059e58bd88ac1fd87fbaf74c1f33">
base/tools/src/main/java/com/netscape/cmstools/system/SecurityDomainLeaveCLI.java
</a>
</li>
<li class="file-stats">
<a href="#a0cd26abc31119c2491855b086a36d301c5bc9e7">
base/tools/src/main/java/com/netscape/cmstools/system/SecurityDomainShowCLI.java
</a>
</li>
<li class="file-stats">
<a href="#e69e84f5e132ba60c1224e71f567a880008cd3d9">
base/tools/src/main/java/com/netscape/cmstools/tks/TKSCLI.java
</a>
</li>
<li class="file-stats">
<a href="#e22c50c8929cf5ce63ee6b75b4c618bf13fbf3f5">
base/tools/src/main/java/com/netscape/cmstools/tks/TKSCertTransportImportCLI.java
</a>
</li>
<li class="file-stats">
<a href="#ddcf45cfb9b5f8d0f2f9f4447a31471b413a9b57">
base/tools/src/main/java/com/netscape/cmstools/tks/TKSKeyCLI.java
</a>
</li>
<li class="file-stats">
<a href="#7ef857d064bf1fb8ce348cd5c8c636b11897009c">
base/tools/src/main/java/com/netscape/cmstools/tks/TKSKeyCreateCLI.java
</a>
</li>
<li class="file-stats">
<a href="#8e1b118494ad511f2d1d49bf3eaebabae3651c21">
base/tools/src/main/java/com/netscape/cmstools/tks/TKSKeyExportCLI.java
</a>
</li>
<li class="file-stats">
<a href="#0d3cb6d252a234901d45f5e653293e9a363d4d44">
base/tools/src/main/java/com/netscape/cmstools/tks/TKSKeyRemoveCLI.java
</a>
</li>
<li class="file-stats">
<a href="#d34f49a44e9be8a60b889d48ca24c3ee98d58a90">
base/tools/src/main/java/com/netscape/cmstools/tks/TKSKeyReplaceCLI.java
</a>
</li>
<li class="file-stats">
<a href="#92d655a5ce39dcc6b9695bced4981e7465009dc6">
base/tools/src/main/java/com/netscape/cmstools/tks/TKSKeyShowCLI.java
</a>
</li>
<li class="file-stats">
<a href="#40b6fc2e5665651dcceca60d662b940b682494df">
base/tools/src/main/java/com/netscape/cmstools/tks/TPSConnectorAddCLI.java
</a>
</li>
<li class="file-stats">
<a href="#bb8c4c21b40b3866660f238139cde703d1892123">
base/tools/src/main/java/com/netscape/cmstools/tks/TPSConnectorCLI.java
</a>
</li>
<li class="file-stats">
<a href="#20fb239382fcdbf7625d5223816c186c89e906b3">
base/tools/src/main/java/com/netscape/cmstools/tks/TPSConnectorFindCLI.java
</a>
</li>
<li class="file-stats">
<a href="#76f7a4d1d6360873808795fdc164053e733569e3">
base/tools/src/main/java/com/netscape/cmstools/tks/TPSConnectorModCLI.java
</a>
</li>
<li class="file-stats">
<a href="#b50313a7863b13b091fe078372c22627e454c31c">
base/tools/src/main/java/com/netscape/cmstools/tks/TPSConnectorRemoveCLI.java
</a>
</li>
<li class="file-stats">
<a href="#fb74ce3a4be2a81ec57ebfd34badbf4134fab61d">
base/tools/src/main/java/com/netscape/cmstools/tks/TPSConnectorShowCLI.java
</a>
</li>
<li class="file-stats">
<a href="#d9575a644337edf3192829c97416c10c52ff5041">
base/tools/src/main/java/com/netscape/cmstools/tps/TPSCLI.java
</a>
</li>
<li class="file-stats">
<a href="#ef5db2f04727dbeab47845e23b6bc2b495da204f">
<span class="new-file">
+
base/tools/src/main/java/com/netscape/cmstools/tps/TPSClientCLI.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#78d1fd3009651abe9d17f3e820a65532bbfc6f55">
base/tools/src/main/java/com/netscape/cmstools/tps/authenticator/AuthenticatorAddCLI.java
</a>
</li>
<li class="file-stats">
<a href="#74926ab356f0078b1c7e04e3ab23fff2a6f03165">
base/tools/src/main/java/com/netscape/cmstools/tps/authenticator/AuthenticatorCLI.java
</a>
</li>
<li class="file-stats">
<a href="#9182543f4525e83240472241f305c3f06abaf4eb">
base/tools/src/main/java/com/netscape/cmstools/tps/authenticator/AuthenticatorFindCLI.java
</a>
</li>
<li class="file-stats">
<a href="#b90efa8bd8f3f2cde8c84c99d4724d785e7018d9">
base/tools/src/main/java/com/netscape/cmstools/tps/authenticator/AuthenticatorModifyCLI.java
</a>
</li>
<li class="file-stats">
<a href="#50c9a271f330ab7b5b09956fbb52f15c2505c4a5">
base/tools/src/main/java/com/netscape/cmstools/tps/authenticator/AuthenticatorRemoveCLI.java
</a>
</li>
<li class="file-stats">
<a href="#f5573ca0a143b889a373677da270ef095a0b67c5">
base/tools/src/main/java/com/netscape/cmstools/tps/authenticator/AuthenticatorShowCLI.java
</a>
</li>
<li class="file-stats">
<a href="#d6a06147352d1d2ae4e403149feca373d7787128">
base/tools/src/main/java/com/netscape/cmstools/tps/cert/TPSCertCLI.java
</a>
</li>
<li class="file-stats">
<a href="#bd1a47b164fd3c2792eee14d9955460c6fe60948">
base/tools/src/main/java/com/netscape/cmstools/tps/cert/TPSCertFindCLI.java
</a>
</li>
<li class="file-stats">
<a href="#139e4f0cb6da7eca4754f9b25439b7d170c76c05">
base/tools/src/main/java/com/netscape/cmstools/tps/cert/TPSCertShowCLI.java
</a>
</li>
<li class="file-stats">
<a href="#ba0700b38f17fb7655fd93c1314eb27d7104bea3">
base/tools/src/main/java/com/netscape/cmstools/tps/config/ConfigModifyCLI.java
</a>
</li>
<li class="file-stats">
<a href="#e01cdd792eaf68058b5df126070943b0a2651769">
base/tools/src/main/java/com/netscape/cmstools/tps/config/ConfigShowCLI.java
</a>
</li>
<li class="file-stats">
<a href="#8a6145d6060fa7bf61ad27222e7a9ec6ebc1085d">
base/tools/src/main/java/com/netscape/cmstools/tps/connector/ConnectorAddCLI.java
</a>
</li>
<li class="file-stats">
<a href="#3195c9d92955d1d20b9858456adaa7370ad524ca">
base/tools/src/main/java/com/netscape/cmstools/tps/connector/ConnectorCLI.java
</a>
</li>
<li class="file-stats">
<a href="#46537aa282e1b71e1d9faf3dfeb122ddd77ec8f1">
base/tools/src/main/java/com/netscape/cmstools/tps/connector/ConnectorFindCLI.java
</a>
</li>
<li class="file-stats">
<a href="#3ff27ec5b2a0a4339bdf548871bcc652a98d1570">
base/tools/src/main/java/com/netscape/cmstools/tps/connector/ConnectorModifyCLI.java
</a>
</li>
<li class="file-stats">
<a href="#03887afdbb9c382bb7c2863171ee80808d0c7090">
base/tools/src/main/java/com/netscape/cmstools/tps/connector/ConnectorRemoveCLI.java
</a>
</li>
<li class="file-stats">
<a href="#7ef7de03f28616b1f1d59f5593ec009bbf77b4b5">
base/tools/src/main/java/com/netscape/cmstools/tps/connector/ConnectorShowCLI.java
</a>
</li>
<li class="file-stats">
<a href="#acb68c5c874e28e618241b398dd803bfa6fb8d91">
base/tools/src/main/java/com/netscape/cmstools/tps/profile/ProfileAddCLI.java
</a>
</li>
<li class="file-stats">
<a href="#197ebb8b59366502a5c5a1f4dce95467bec29131">
base/tools/src/main/java/com/netscape/cmstools/tps/profile/ProfileCLI.java
</a>
</li>
<li class="file-stats">
<a href="#d2432c452679d02a9f1c9703cc0c670005e30846">
base/tools/src/main/java/com/netscape/cmstools/tps/profile/ProfileFindCLI.java
</a>
</li>
<li class="file-stats">
<a href="#216fd86fdfd8ebd7270b8c8b6d1e79a6d4d2097f">
base/tools/src/main/java/com/netscape/cmstools/tps/profile/ProfileMappingAddCLI.java
</a>
</li>
<li class="file-stats">
<a href="#d05f8977f0a1f173b4a23041a9e6528c2a4354f3">
base/tools/src/main/java/com/netscape/cmstools/tps/profile/ProfileMappingCLI.java
</a>
</li>
<li class="file-stats">
<a href="#caa45923cc2a4266af9ad773dea6975af9ee0af4">
base/tools/src/main/java/com/netscape/cmstools/tps/profile/ProfileMappingFindCLI.java
</a>
</li>
<li class="file-stats">
<a href="#9eb1e8998ccfedaacf8363126399203c9d4e79fc">
base/tools/src/main/java/com/netscape/cmstools/tps/profile/ProfileMappingModifyCLI.java
</a>
</li>
<li class="file-stats">
<a href="#b9cf7c26cc74f3acfcb5a7afaa0227cf70bd3bff">
base/tools/src/main/java/com/netscape/cmstools/tps/profile/ProfileMappingRemoveCLI.java
</a>
</li>
<li class="file-stats">
<a href="#28cb2d2a425ec344862d69bed2216af349885cb3">
base/tools/src/main/java/com/netscape/cmstools/tps/profile/ProfileMappingShowCLI.java
</a>
</li>
<li class="file-stats">
<a href="#3154547e9658f7ca7b67477645597f70be1fddc0">
base/tools/src/main/java/com/netscape/cmstools/tps/profile/ProfileModifyCLI.java
</a>
</li>
<li class="file-stats">
<a href="#c7cb8811eb3e89746482ff5c16c35011b3b8c2c5">
base/tools/src/main/java/com/netscape/cmstools/tps/profile/ProfileRemoveCLI.java
</a>
</li>
<li class="file-stats">
<a href="#beb429f3e4beaa2969f9e155ba9c3ffae73b8b64">
base/tools/src/main/java/com/netscape/cmstools/tps/profile/ProfileShowCLI.java
</a>
</li>
<li class="file-stats">
<a href="#af2ad7ba76b24a4208b7318fc821abec307bd274">
base/tools/src/main/java/com/netscape/cmstools/tps/token/TokenAddCLI.java
</a>
</li>
<li class="file-stats">
<a href="#10dcf7811568c28a51d93e3ad9fba2e3d34545a8">
base/tools/src/main/java/com/netscape/cmstools/tps/token/TokenCLI.java
</a>
</li>
<li class="file-stats">
<a href="#aa0b9c127698016873506144f964abba6aa6129f">
base/tools/src/main/java/com/netscape/cmstools/tps/token/TokenFindCLI.java
</a>
</li>
<li class="file-stats">
<a href="#43f3d23b263b0af5eae133ee273216b8a04aa0d8">
base/tools/src/main/java/com/netscape/cmstools/tps/token/TokenModifyCLI.java
</a>
</li>
<li class="file-stats">
<a href="#16da0f4e81d250a707b76bf5eff89af756d8dc53">
base/tools/src/main/java/com/netscape/cmstools/tps/token/TokenRemoveCLI.java
</a>
</li>
<li class="file-stats">
<a href="#b12dcde1600df5880ca500ac151a35ce30a76bd3">
base/tools/src/main/java/com/netscape/cmstools/tps/token/TokenShowCLI.java
</a>
</li>
<li class="file-stats">
<a href="#bc90b259c977ed5ab79f8252c806803ff25957ac">
base/tools/src/main/java/com/netscape/cmstools/user/UserAddCLI.java
</a>
</li>
<li class="file-stats">
<a href="#6d9bb1dd6b129a4e9b4914276e8c0c4d3a9e90b2">
base/tools/src/main/java/com/netscape/cmstools/user/UserCLI.java
</a>
</li>
<li class="file-stats">
<a href="#c5c0d5c28fc2021e6c9790eb89daa6efec63f3c5">
base/tools/src/main/java/com/netscape/cmstools/user/UserCertAddCLI.java
</a>
</li>
<li class="file-stats">
<a href="#24d1d532260a5eb0bb478d09e4583f39c738cafa">
base/tools/src/main/java/com/netscape/cmstools/user/UserCertCLI.java
</a>
</li>
<li class="file-stats">
<a href="#b808171b16681c680e956ef333a230e275b1517a">
base/tools/src/main/java/com/netscape/cmstools/user/UserCertFindCLI.java
</a>
</li>
<li class="file-stats">
<a href="#792f731138674ad56553da6c5da3b0e9d1fbcefd">
base/tools/src/main/java/com/netscape/cmstools/user/UserCertRemoveCLI.java
</a>
</li>
<li class="file-stats">
<a href="#9233a22a87cbafe904297c3134f3b5fa51884967">
base/tools/src/main/java/com/netscape/cmstools/user/UserCertShowCLI.java
</a>
</li>
<li class="file-stats">
<a href="#37695f38c83f7bdbbc4711f0ed09aa93c65db45d">
base/tools/src/main/java/com/netscape/cmstools/user/UserFindCLI.java
</a>
</li>
<li class="file-stats">
<a href="#65033c239de26f746acaaad3197a73a6625ad117">
base/tools/src/main/java/com/netscape/cmstools/user/UserMembershipAddCLI.java
</a>
</li>
<li class="file-stats">
<a href="#7cfd638c28355e45f711f85d7f784205deb2ed13">
base/tools/src/main/java/com/netscape/cmstools/user/UserMembershipCLI.java
</a>
</li>
<li class="file-stats">
<a href="#aa5945260873f48bd0bb35471ec9b0359d3ba027">
base/tools/src/main/java/com/netscape/cmstools/user/UserMembershipFindCLI.java
</a>
</li>
<li class="file-stats">
<a href="#cc4cfecd1c6ac421bbdd4a45fc575ca723a2f1f1">
base/tools/src/main/java/com/netscape/cmstools/user/UserMembershipRemoveCLI.java
</a>
</li>
<li class="file-stats">
<a href="#3f02883216256c6401684cd768a35233afe5a3db">
base/tools/src/main/java/com/netscape/cmstools/user/UserModifyCLI.java
</a>
</li>
<li class="file-stats">
<a href="#83d7a4e710a6c0af008ed1f5b9a1be9c46cce1ef">
base/tools/src/main/java/com/netscape/cmstools/user/UserRemoveCLI.java
</a>
</li>
<li class="file-stats">
<a href="#6876fc945aadd4fb16257917f98feaf40732042b">
base/tools/src/main/java/com/netscape/cmstools/user/UserShowCLI.java
</a>
</li>
<li class="file-stats">
<a href="#43f021f9ecbc870b26e2284f89ab1f33e8f2fb37">
base/tools/src/main/native/bulkissuance/CMakeLists.txt
</a>
</li>
<li class="file-stats">
<a href="#062d0e367803dde341f50973972e2c3657866773">
<span class="deleted-file">
−
base/tools/src/main/native/p12tool/CMakeLists.txt
</span>
</a>
</li>
<li class="file-stats">
<a href="#5785f37bbb094b2eddb9a6443ffdf1976dedd3c0">
<span class="deleted-file">
−
base/tools/src/main/native/p12tool/basicutil.c
</span>
</a>
</li>
<li class="file-stats">
<a href="#4e8885bfe76438695ff6a5298a7955436e467743">
<span class="deleted-file">
−
base/tools/src/main/native/p12tool/basicutil.h
</span>
</a>
</li>
<li class="file-stats">
<a href="#24b83b29dbb3cf20974687c8700fa9219c3e2912">
<span class="deleted-file">
−
base/tools/src/main/native/p12tool/berparse.c
</span>
</a>
</li>
<li class="file-stats">
<a href="#f30cc6d5a3776858f7884c6ca555265080733546">
<span class="deleted-file">
−
base/tools/src/main/native/p12tool/derprint.c
</span>
</a>
</li>
<li class="file-stats">
<a href="#2e718f466930257529943028a3ce6433c5be9dc0">
<span class="deleted-file">
−
base/tools/src/main/native/p12tool/ffs.c
</span>
</a>
</li>
<li class="file-stats">
<a href="#c85f068f99bb56fdc953d5241246b44e5ee3f755">
<span class="deleted-file">
−
base/tools/src/main/native/p12tool/moreoids.c
</span>
</a>
</li>
<li class="file-stats">
<a href="#030115ab2ebc51190dda608e6fe61199063a76fc">
<span class="deleted-file">
−
base/tools/src/main/native/p12tool/p12tool.c
</span>
</a>
</li>
<li class="file-stats">
<a href="#aa02fda622052ce8943a7e946cdf9a7ea53b5182">
<span class="deleted-file">
−
base/tools/src/main/native/p12tool/p12tool.h
</span>
</a>
</li>
<li class="file-stats">
<a href="#73e0a1c6cb4cde62a0557f13374a98a75b747c44">
<span class="deleted-file">
−
base/tools/src/main/native/p12tool/pk11table.c
</span>
</a>
</li>
<li class="file-stats">
<a href="#c9f8d11bbe6aa416c9b5dcdabbd6f479db969eaa">
<span class="deleted-file">
−
base/tools/src/main/native/p12tool/pk11table.h
</span>
</a>
</li>
<li class="file-stats">
<a href="#801fb2a0db79aab27a07e7af081343eb0a37d3b3">
<span class="deleted-file">
−
base/tools/src/main/native/p12tool/pppolicy.c
</span>
</a>
</li>
<li class="file-stats">
<a href="#1399f50805657d3ef98181c219df6881f7491e88">
<span class="deleted-file">
−
base/tools/src/main/native/p12tool/secpwd.c
</span>
</a>
</li>
<li class="file-stats">
<a href="#9654830c845726043b83e0248a36a4a438e5b385">
<span class="deleted-file">
−
base/tools/src/main/native/p12tool/secutil.c
</span>
</a>
</li>
<li class="file-stats">
<a href="#f9b092f610fe4f040e0a17461b7c7232f17667d3">
<span class="deleted-file">
−
base/tools/src/main/native/p12tool/secutil.h
</span>
</a>
</li>
<li class="file-stats">
<a href="#1d701b116fa94b5f09165283950c0b3c4e5a84e0">
<span class="deleted-file">
−
base/tools/src/main/native/p7tool/CMakeLists.txt
</span>
</a>
</li>
<li class="file-stats">
<a href="#fbd7e3fdc4529f51da93f104da290b14a872fa18">
<span class="deleted-file">
−
base/tools/src/main/native/p7tool/NSPRerrs.h
</span>
</a>
</li>
<li class="file-stats">
<a href="#4c73b1e56b4e811d9ef0fa18896055cc6ad69ea4">
<span class="deleted-file">
−
base/tools/src/main/native/p7tool/SECerrs.h
</span>
</a>
</li>
<li class="file-stats">
<a href="#5a4eaee38a6eec4bcfec364da9c41fa542c4a1c0">
<span class="deleted-file">
−
base/tools/src/main/native/p7tool/SSLerrs.h
</span>
</a>
</li>
<li class="file-stats">
<a href="#d7515912aad19e911c385b570a137ed54894d26e">
<span class="deleted-file">
−
base/tools/src/main/native/p7tool/p7tool.c
</span>
</a>
</li>
<li class="file-stats">
<a href="#e8fc6d08f010c098144d453e5f50b963e18e4bac">
<span class="deleted-file">
−
base/tools/src/main/native/p7tool/pppolicy.c
</span>
</a>
</li>
<li class="file-stats">
<a href="#aea3c2e947bf5b812e4cb8fb37e2dbb819bf1cfc">
<span class="deleted-file">
−
base/tools/src/main/native/p7tool/secerror.c
</span>
</a>
</li>
<li class="file-stats">
<a href="#de35d5d5fd989806f267d2f4ea23b5524ca50690">
<span class="deleted-file">
−
base/tools/src/main/native/p7tool/secerror.h
</span>
</a>
</li>
<li class="file-stats">
<a href="#111f1472e24df94c5021b360775378040b067797">
<span class="deleted-file">
−
base/tools/src/main/native/p7tool/secpwd.c
</span>
</a>
</li>
<li class="file-stats">
<a href="#a60a6831019997e398dd9e3c3eff597bf8d9e2ab">
<span class="deleted-file">
−
base/tools/src/main/native/p7tool/secutil.c
</span>
</a>
</li>
<li class="file-stats">
<a href="#6146e63080ccc260bf0827e18ab906f868eca20d">
<span class="deleted-file">
−
base/tools/src/main/native/p7tool/secutil.h
</span>
</a>
</li>
<li class="file-stats">
<a href="#542fc5962a7e488fa4ecb04b7b930452990bccb8">
base/tools/src/main/native/pistool/include/pistool.h
</a>
</li>
<li class="file-stats">
<a href="#72e1921b66f95f6a55c3eba42c36d73bbba12750">
base/tools/src/main/native/pistool/include/secutil.h
</a>
</li>
<li class="file-stats">
<a href="#0d4e2df43df3e84b71e6645ae8298ded1f6854a7">
base/tools/src/main/native/pistool/src/CMakeLists.txt
</a>
</li>
<li class="file-stats">
<a href="#06c5e73bce8e8a34debeb2d9fece1df6d6659785">
base/tools/src/main/native/pistool/src/delete.c
</a>
</li>
<li class="file-stats">
<a href="#08966cb0802ab7d43911ef02649bcbd475e1aa1f">
base/tools/src/main/native/pistool/src/file.c
</a>
</li>
<li class="file-stats">
<a href="#fd9af0d490e8d83f0975ac14edf3cb1b22560e5b">
base/tools/src/main/native/pistool/src/help.c
</a>
</li>
<li class="file-stats">
<a href="#ed75c7c9ac2d1556a866cf5da639e7a552c4b070">
base/tools/src/main/native/pistool/src/key.c
</a>
</li>
<li class="file-stats">
<a href="#1c52d1e3b96de838a64af72d8818fa1627a84e8e">
base/tools/src/main/native/pistool/src/list.c
</a>
</li>
<li class="file-stats">
<a href="#17724d737b28c0c4f5490ff7d36b84be1aaba217">
base/tools/src/main/native/pistool/src/pistool.c
</a>
</li>
<li class="file-stats">
<a href="#e665e034c09447c2bdcbe8d770a8ac708193c9d8">
base/tools/src/main/native/pistool/src/pppolicy.c
</a>
</li>
<li class="file-stats">
<a href="#cda2ff1a8cb2a31bda9fdb33fa74bb9cfb7582a9">
base/tools/src/main/native/pistool/src/secerror.c
</a>
</li>
<li class="file-stats">
<a href="#1bd2058f26912f0505a4a660abb14712d2f2411e">
base/tools/src/main/native/pistool/src/secpwd.c
</a>
</li>
<li class="file-stats">
<a href="#c562fd865fda7064572e6b516e2d8900639d01ff">
base/tools/src/main/native/pistool/src/secutil.c
</a>
</li>
<li class="file-stats">
<a href="#feed2f4c358f2df7eabe1879a0383534ab43f203">
base/tools/src/main/native/pistool/src/util.c
</a>
</li>
<li class="file-stats">
<a href="#fae1d7ac1ea0b8da8b384875ce1c023872734a29">
<span class="deleted-file">
−
base/tools/src/main/native/revoker/CMakeLists.txt
</span>
</a>
</li>
<li class="file-stats">
<a href="#fe5a375b48e0690ed6ea3636cee4e96518845a0f">
<span class="deleted-file">
−
base/tools/src/main/native/revoker/getopt.c
</span>
</a>
</li>
<li class="file-stats">
<a href="#c25ebef552448413d940ef1e6c6801e2bd7e64c4">
<span class="deleted-file">
−
base/tools/src/main/native/revoker/revoker.c
</span>
</a>
</li>
<li class="file-stats">
<a href="#8cf3b5b253e070ba4cca69566e7f75bc32a90c13">
base/tools/src/main/native/setpin/CMakeLists.txt
</a>
</li>
<li class="file-stats">
<a href="#e30f33ebddffce7cde4004ed36d3b86aa5f0b2f9">
base/tools/src/main/native/setpin/b64.c
</a>
</li>
<li class="file-stats">
<a href="#7556ebd5d91338e4ef9cbdd1b2a4b2fac0689185">
base/tools/src/main/native/setpin/options.c
</a>
</li>
<li class="file-stats">
<a href="#4a2699b97d98b09db0598f145e85c0e32969732a">
base/tools/src/main/native/setpin/options.h
</a>
</li>
<li class="file-stats">
<a href="#7a78f82feeb2e1b732293be1224850e3e7e4ab93">
base/tools/src/main/native/setpin/setpin.c
</a>
</li>
<li class="file-stats">
<a href="#49855f2ff3d044735862bdcf1021115e2aa8737a">
base/tools/src/main/native/setpin/setpin_options.c
</a>
</li>
<li class="file-stats">
<a href="#cdf66bfff8f59780bdf8ef8a041803cb79b1b7f4">
base/tools/src/main/native/setpin/setpin_options.h
</a>
</li>
<li class="file-stats">
<a href="#0a34f70965e11673806ef6242c457a1300a6a8c8">
<span class="deleted-file">
−
base/tools/src/main/native/sslget/CMakeLists.txt
</span>
</a>
</li>
<li class="file-stats">
<a href="#f97b2cc2af204f5c5c4a5ff9518c0d38430d4154">
<span class="deleted-file">
−
base/tools/src/main/native/sslget/getopt.c
</span>
</a>
</li>
<li class="file-stats">
<a href="#3bcd7a1faf7dd05588862e5f26920e35b4bfe8fe">
<span class="deleted-file">
−
base/tools/src/main/native/sslget/sslget.c
</span>
</a>
</li>
<li class="file-stats">
<a href="#793072a20b214f37a589ab2fac188e3f6df0d604">
base/tools/src/main/native/tkstool/CMakeLists.txt
</a>
</li>
<li class="file-stats">
<a href="#93e05f3a0b426850374b40538b4028724201a935">
base/tools/src/main/native/tkstool/delete.c
</a>
</li>
<li class="file-stats">
<a href="#81e8a4648c0a5b0b533ab512dc4886aea347d004">
base/tools/src/main/native/tkstool/file.c
</a>
</li>
<li class="file-stats">
<a href="#96da5f663a05f3b2feecb49d403f8c69264167fa">
base/tools/src/main/native/tkstool/help.c
</a>
</li>
<li class="file-stats">
<a href="#4ed201329a6a76a67ffcbdcd36e9bfeabecfb317">
base/tools/src/main/native/tkstool/key.c
</a>
</li>
<li class="file-stats">
<a href="#3698648187498ac2cfc6c4824ffb0f87b4add766">
base/tools/src/main/native/tkstool/list.c
</a>
</li>
<li class="file-stats">
<a href="#0197f8645ba3213dee1a8d912cfa247c9ed49ec7">
base/tools/src/main/native/tkstool/pppolicy.c
</a>
</li>
<li class="file-stats">
<a href="#f01a671a30ceadbc16410328f430dc8fa51b0a41">
base/tools/src/main/native/tkstool/secerror.c
</a>
</li>
<li class="file-stats">
<a href="#0609669d7c7eb7f866e4b57b8e9df75d67b391b8">
base/tools/src/main/native/tkstool/secpwd.c
</a>
</li>
<li class="file-stats">
<a href="#5a2ebdea4a7b3700f3713ca9115f2dfe100f410d">
base/tools/src/main/native/tkstool/secutil.c
</a>
</li>
<li class="file-stats">
<a href="#ef637622aff4411c7b916000ced8964c0cf9276d">
base/tools/src/main/native/tkstool/tkstool.c
</a>
</li>
<li class="file-stats">
<a href="#ef9c897ea3c10bb25df0bf0556199f05a4b176b8">
base/tools/src/main/native/tkstool/util.c
</a>
</li>
<li class="file-stats">
<a href="#2503a03fd4a2d62487718f4da2fdeba472030534">
base/tools/src/main/native/tpsclient/CMakeLists.txt
</a>
</li>
<li class="file-stats">
<a href="#0bd24b7394e7c3af78e63ef68ca8cd6b04bb6ad5">
base/tools/src/main/native/tpsclient/src/CMakeLists.txt
</a>
</li>
<li class="file-stats">
<a href="#ffa0310a144af349e1cdf32967c13de988066e9b">
base/tools/src/main/native/tpsclient/tools/raclient/RA_Client.h
→
base/tools/src/main/native/tpsclient/src/include/main/RA_Client.h
</a>
</li>
<li class="file-stats">
<a href="#33a40a26812b9b1a5df9a6a5a8f4f682f2e2b3c9">
base/tools/src/main/native/tpsclient/tools/raclient/RA_Conn.h
→
base/tools/src/main/native/tpsclient/src/include/main/RA_Conn.h
</a>
</li>
<li class="file-stats">
<a href="#af14b46760bb932bb9528e4f76da070537fc8b1c">
base/tools/src/main/native/tpsclient/tools/raclient/RA_Token.h
→
base/tools/src/main/native/tpsclient/src/include/main/RA_Token.h
</a>
</li>
<li class="file-stats">
<a href="#9a0ad8f4363b38ec8fa3af6bb4c35f9a7e20f94f">
<span class="new-file">
+
base/tools/src/main/native/tpsclient/src/main/RA_Client.cpp
</span>
</a>
</li>
<li class="file-stats">
<a href="#cab6163a80e37b64645878b5c453f88a7ce04b26">
base/tools/src/main/native/tpsclient/tools/raclient/RA_Conn.cpp
→
base/tools/src/main/native/tpsclient/src/main/RA_Conn.cpp
</a>
</li>
<li class="file-stats">
<a href="#377a9d0c11ab33f5190fc3cf09964b8386d0a055">
base/tools/src/main/native/tpsclient/tools/raclient/RA_Token.cpp
→
base/tools/src/main/native/tpsclient/src/main/RA_Token.cpp
</a>
</li>
<li class="file-stats">
<a href="#b7531b664a051905a1fdc494d25df5bd467525a7">
<span class="new-file">
+
base/tools/src/main/native/tpsclient/src/main/TPSClientCLI.cpp
</span>
</a>
</li>
<li class="file-stats">
<a href="#1c107ed4cc9623ed95950e7f371b05e4bd19fb78">
base/tools/src/main/native/tpsclient/src/main/Util.cpp
</a>
</li>
<li class="file-stats">
<a href="#afcad6bf1a1979273677cd680a7b1f91e2581f05">
base/tools/src/main/native/tpsclient/tools/raclient/CMakeLists.txt
</a>
</li>
<li class="file-stats">
<a href="#ad968a6d12f5a04a695ce9e3f9c44c8c32b9ab17">
base/tools/src/main/native/tpsclient/tools/raclient/RA_Client.cpp
→
base/tools/src/main/native/tpsclient/tools/raclient/tpsclient.cpp
</a>
</li>
<li class="file-stats">
<a href="#6780f33b75dc61625d69a3c643c99c3e8547ab2a">
base/tools/src/main/shell/PKICertImport.bash
</a>
</li>
<li class="file-stats">
<a href="#1e81147112990af839854b11ae6746e824487e9a">
<span class="new-file">
+
base/tools/src/main/shell/hsmCompatVerifyClnt.bash
</span>
</a>
</li>
<li class="file-stats">
<a href="#d7de52c44d5d4d6d14bd173c61a227ca8af4f988">
<span class="new-file">
+
base/tools/src/main/shell/hsmCompatVerifyServ.bash
</span>
</a>
</li>
<li class="file-stats">
<a href="#0593f8a6f32cba494ecaddf3e21cfb3dc84900c6">
base/tools/src/test/resources/certs/ca_sub_signing.conf
</a>
</li>
<li class="file-stats">
<a href="#e84e79aa17148282ee1880fc0639333758cf9598">
base/tools/src/test/shell/test_PKICertImport.bash
</a>
</li>
<li class="file-stats">
<a href="#a3068e15105b342db89a06c5b9c0653f4ca2de62">
base/tools/templates/CMakeLists.txt
</a>
</li>
<li class="file-stats">
<a href="#e24175493c4732a67bb8b26029c87b94b431a95b">
base/tools/templates/pki_java_command_wrapper.in
</a>
</li>
<li class="file-stats">
<a href="#a56135a02585836a976be3283b04d8b8f21d66dd">
base/tools/templates/pretty_print_cert_command_wrapper.in
</a>
</li>
<li class="file-stats">
<a href="#e297fd7b06cb63d36363878efe82ce0bc6c7d9ed">
base/tools/templates/pretty_print_crl_command_wrapper.in
</a>
</li>
<li class="file-stats">
<a href="#ce337d29fb66deb8938ca3d5b27bb6be716fc67b">
base/tps/CMakeLists.txt
</a>
</li>
<li class="file-stats">
<a href="#53f4d56139b2df609fc23e000f94332d715e2e5a">
base/tps/auth/ds/example.ldif
</a>
</li>
<li class="file-stats">
<a href="#ed87669092e3f1bc3bbe7307acf2e3aad35f1a84">
base/tps/bin/pki-tps-enroll
</a>
</li>
<li class="file-stats">
<a href="#52894416aa0ab21178c0cdc0c3471b15459007ec">
base/tps/bin/pki-tps-format
</a>
</li>
<li class="file-stats">
<a href="#c4b5a7415bb5db7c5628ab9588747bc7684e9e85">
<span class="new-file">
+
base/tps/bin/pki-tps-pin-reset
</span>
</a>
</li>
<li class="file-stats">
<a href="#0de2f9185d57f0ea38347a00e534d927eb2057aa">
<span class="new-file">
+
base/tps/bin/pki-tps-run
</span>
</a>
</li>
<li class="file-stats">
<a href="#bffda8f4eed1ae0e4979392a2c1c0b3607064ab4">
base/tps/pom.xml
</a>
</li>
<li class="file-stats">
<a href="#f287e1d6ab7e856be10ea3f1ecbc2c78e077633f">
<span class="new-file">
+
base/tps/shared/applets/1.5.65cbf5a6.ijc
</span>
</a>
</li>
<li class="file-stats">
<a href="#244c71fc11abdd4b3cf404bd263ee7b49bb3f37c">
base/tps/shared/conf/CS.cfg
</a>
</li>
<li class="file-stats">
<a href="#29603e041bb58fcc9c774e27ff65a2afd6a0cc10">
base/tps/shared/webapps/tps/WEB-INF/web.xml
</a>
</li>
<li class="file-stats">
<a href="#80bb4e40939a416e36808ab7ab7199a613986d07">
<span class="new-file">
+
base/tps/src/main/java/com/netscape/cms/servlet/admin/TPSLogAdminServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#b01ef82425435f547b94c37ca1fc070a4178abd4">
<span class="new-file">
+
base/tps/src/main/java/com/netscape/cms/servlet/admin/TPSUsrGrpAdminServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#2208fbf8613b2403eb0e5f6c72beda35656d8232">
<span class="new-file">
+
base/tps/src/main/java/com/netscape/cms/servlet/csadmin/TPSGetConfigEntries.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#c997eb74eb0ea510a4b2c4cd3b22ab27bd108512">
<span class="new-file">
+
base/tps/src/main/java/com/netscape/cms/servlet/csadmin/TPSGetStatus.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#38282f27a97db800f870f631348f58c280679297">
base/tps/src/main/java/org/dogtagpki/server/tps/TPSAccountService.java
</a>
</li>
<li class="file-stats">
<a href="#6ba47c31ce63139c3c29eb4a9fe9ed745715f297">
<span class="new-file">
+
base/tps/src/main/java/org/dogtagpki/server/tps/TPSAccountServletBase.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#6cb076f428f0a785535be5279cbdce04c214558a">
base/tps/src/main/java/org/dogtagpki/server/tps/TPSEngine.java
</a>
</li>
<li class="file-stats">
<a href="#36e5d44bba98e758df10028f2df0f413d6df4a93">
base/tps/src/main/java/org/dogtagpki/server/tps/TPSPhoneHome.java
</a>
</li>
<li class="file-stats">
<a href="#72790349d15ab02c7417f580ffbd9fe1489d95b8">
base/tps/src/main/java/org/dogtagpki/server/tps/TPSServlet.java
</a>
</li>
<li class="file-stats">
<a href="#06ae8a0e6f6e70b86b08c16a8337b0c30891b8d2">
base/tps/src/main/java/org/dogtagpki/server/tps/TPSSession.java
</a>
</li>
<li class="file-stats">
<a href="#7c1733b3e6d071861a8a54aa46889d4a2a0bef0c">
base/tps/src/main/java/org/dogtagpki/server/tps/TPSWebListener.java
</a>
</li>
<li class="file-stats">
<a href="#1dbd8b003c90df401f5c2a91a3ba47f0673f9161">
base/tps/src/main/java/org/dogtagpki/server/tps/TokenDB.java
</a>
</li>
<li class="file-stats">
<a href="#284c41ac240f5c334591afde4c3cdcb07470ecc3">
base/tps/src/main/java/org/dogtagpki/server/tps/channel/SecureChannel.java
</a>
</li>
<li class="file-stats">
<a href="#46f87c7ec23abe59ba5a05bf2f7a5c1799bc35d5">
base/tps/src/main/java/org/dogtagpki/server/tps/channel/SecureChannelProtocol.java
</a>
</li>
<li class="file-stats">
<a href="#de1cfbc1edc13405d040566440ae8397d889c366">
base/tps/src/main/java/org/dogtagpki/server/tps/cli/TPSCLI.java
</a>
</li>
<li class="file-stats">
<a href="#4d0e7479118df22d7c994fcaf0bdc12233873b4c">
base/tps/src/main/java/org/dogtagpki/server/tps/cms/CARemoteRequestHandler.java
</a>
</li>
<li class="file-stats">
<a href="#7464174ce92d5d48aaffddd132870e159d034033">
base/tps/src/main/java/org/dogtagpki/server/tps/cms/ConnectionManager.java
</a>
</li>
<li class="file-stats">
<a href="#fc6fc059f1b552f095c80d8858978dc66beb2422">
base/tps/src/main/java/org/dogtagpki/server/tps/cms/KRARemoteRequestHandler.java
</a>
</li>
<li class="file-stats">
<a href="#274f98914629e1479da1cb9a1846badb7afe6974">
base/tps/src/main/java/org/dogtagpki/server/tps/cms/TKSComputeSessionKeyResponse.java
</a>
</li>
<li class="file-stats">
<a href="#f468cca308382ac1c06ad6167e337dd7fe22a121">
base/tps/src/main/java/org/dogtagpki/server/tps/cms/TKSRemoteRequestHandler.java
</a>
</li>
<li class="file-stats">
<a href="#85b6762b82c3830d34f077b735491e6dfd109c6d">
base/tps/src/main/java/org/dogtagpki/server/tps/mapping/BaseMappingResolver.java
</a>
</li>
<li class="file-stats">
<a href="#f246c1a7832fabc5152516f2c3d052c3d94bead8">
base/tps/src/main/java/org/dogtagpki/server/tps/mapping/FilterMappingResolver.java
</a>
</li>
<li class="file-stats">
<a href="#4668fff3542b80fe0d4e36b25918475e342971e7">
base/tps/src/main/java/org/dogtagpki/server/tps/processor/CertEnrollInfo.java
</a>
</li>
<li class="file-stats">
<a href="#c5ba4ed784d3cbdddd5d27b8952650addf4154fe">
base/tps/src/main/java/org/dogtagpki/server/tps/processor/TPSEnrollProcessor.java
</a>
</li>
<li class="file-stats">
<a href="#2ea4540a028caa58a7863dc67cb3feb334559f5b">
base/tps/src/main/java/org/dogtagpki/server/tps/processor/TPSProcessor.java
</a>
</li>
<li class="file-stats">
<a href="#e472ba90e6f54d118630fd945ae228744f2b92d5">
<span class="new-file">
+
base/tps/src/main/java/org/dogtagpki/server/tps/rest/base/AuthenticatorProcessor.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#c7c2f24ede31655c12a013759775496d3dd33f93">
<span class="new-file">
+
base/tps/src/main/java/org/dogtagpki/server/tps/rest/base/ConnectorProcessor.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#cd2ea55c5453710b29185d65f7fd6fff7ad0b09c">
<span class="new-file">
+
base/tps/src/main/java/org/dogtagpki/server/tps/rest/base/ProfileMappingProcessor.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#56b7150ed9634fb165bcc5ac807a2c2400657d62">
<span class="new-file">
+
base/tps/src/main/java/org/dogtagpki/server/tps/rest/base/ProfileProcessor.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#16f5db52a360cccd13b7a78a4f462fafff874229">
<span class="new-file">
+
base/tps/src/main/java/org/dogtagpki/server/tps/rest/base/TPSCertProcessor.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#f961dfa8396edd15edeec247555409e79a87458c">
base/tps/src/main/java/org/dogtagpki/server/tps/rest/ActivityService.java
→
base/tps/src/main/java/org/dogtagpki/server/tps/rest/v1/ActivityService.java
</a>
</li>
<li class="file-stats">
<a href="#69f0e094bf59ac69ca11fb91f7ce57b5a555814b">
base/tps/src/main/java/org/dogtagpki/server/tps/rest/AuthenticatorService.java
→
base/tps/src/main/java/org/dogtagpki/server/tps/rest/v1/AuthenticatorService.java
</a>
</li>
<li class="file-stats">
<a href="#a6b43a14b0041e2f79f69d4bb0727762ae7f0150">
base/tps/src/main/java/org/dogtagpki/server/tps/rest/ConnectorService.java
→
base/tps/src/main/java/org/dogtagpki/server/tps/rest/v1/ConnectorService.java
</a>
</li>
<li class="file-stats">
<a href="#0a6fcd830c36a3f753bcc5dc71cb30593636fb50">
base/tps/src/main/java/org/dogtagpki/server/tps/rest/ProfileMappingService.java
→
base/tps/src/main/java/org/dogtagpki/server/tps/rest/v1/ProfileMappingService.java
</a>
</li>
<li class="file-stats">
<a href="#f78b49d6e63c1e1928d15a739d95ff9a5b0d1890">
base/tps/src/main/java/org/dogtagpki/server/tps/rest/TPSApplication.java
→
base/tps/src/main/java/org/dogtagpki/server/tps/rest/v1/TPSApplication.java
</a>
</li>
<li class="file-stats">
<a href="#e7f0ef0cdfbe9dcf80e64d62d8c9d59d9b8ae3a1">
base/tps/src/main/java/org/dogtagpki/server/tps/rest/TPSCertService.java
→
base/tps/src/main/java/org/dogtagpki/server/tps/rest/v1/TPSCertService.java
</a>
</li>
<li class="file-stats">
<a href="#32bd8ddf2bce12c1a533f0ff380bcb236f23bebd">
base/tps/src/main/java/org/dogtagpki/server/tps/rest/TPSProfileService.java
→
base/tps/src/main/java/org/dogtagpki/server/tps/rest/v1/TPSProfileService.java
</a>
</li>
<li class="file-stats">
<a href="#f58e69acc25660387c40353d102eca40f757abaf">
base/tps/src/main/java/org/dogtagpki/server/tps/rest/TokenService.java
→
base/tps/src/main/java/org/dogtagpki/server/tps/rest/v1/TokenService.java
</a>
</li>
<li class="file-stats">
<a href="#5c2d34dd64e678835a52ebf142006772efabe419">
<span class="new-file">
+
base/tps/src/main/java/org/dogtagpki/server/tps/rest/v2/ActivityServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#c71a71522cf7360bae7908691563baf7e33e983b">
<span class="new-file">
+
base/tps/src/main/java/org/dogtagpki/server/tps/rest/v2/AuthenticatorServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#b66d6b484110f183a378c1aaeaccb8f2d13e6459">
<span class="new-file">
+
base/tps/src/main/java/org/dogtagpki/server/tps/rest/v2/ConfigServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#8a9bc2d51d249c3e6c0ca6a6b4d6b092b5cc3976">
<span class="new-file">
+
base/tps/src/main/java/org/dogtagpki/server/tps/rest/v2/ConnectorServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#d7bb80eaaf049d45ff11cafe27bde0ccec4922a7">
<span class="new-file">
+
base/tps/src/main/java/org/dogtagpki/server/tps/rest/v2/ProfileMappingServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#d74f41044e631c9d810131bff4466030d3927a53">
<span class="new-file">
+
base/tps/src/main/java/org/dogtagpki/server/tps/rest/v2/TPSAccountServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#17e89f412d5e86a9e3a36ed7efb8bf5bac6202ed">
<span class="new-file">
+
base/tps/src/main/java/org/dogtagpki/server/tps/rest/v2/TPSAuditServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#7bca1a4f186a0ed10fb4e66d2656f11a1a0dcd57">
<span class="new-file">
+
base/tps/src/main/java/org/dogtagpki/server/tps/rest/v2/TPSCertServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#5768ea38fc4e0064e0c1876d687a2cf21976657d">
<span class="new-file">
+
base/tps/src/main/java/org/dogtagpki/server/tps/rest/v2/TPSGroupServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#9ac8738fb392186220f7d0047b49d682fbccfefc">
<span class="new-file">
+
base/tps/src/main/java/org/dogtagpki/server/tps/rest/v2/TPSJobServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#1000a3256fdd068b93829fd96f5b29d434a83c14">
<span class="new-file">
+
base/tps/src/main/java/org/dogtagpki/server/tps/rest/v2/TPSProfileServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#9a1e66c5008bcb302e259bc2da9423db4a6a9dda">
<span class="new-file">
+
base/tps/src/main/java/org/dogtagpki/server/tps/rest/v2/TPSSelfTestServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#a4c67c9c5e747f0cbe65ae259ee0c7ba50cf3849">
<span class="new-file">
+
base/tps/src/main/java/org/dogtagpki/server/tps/rest/v2/TPSServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#0514cab222b304a1f3cdf7881fca888daef7f5dd">
<span class="new-file">
+
base/tps/src/main/java/org/dogtagpki/server/tps/rest/v2/TPSUserServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#021b41b501dec4d91ae3722f4a845743599dcf0d">
<span class="new-file">
+
base/tps/src/main/java/org/dogtagpki/server/tps/rest/v2/TokenServlet.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#7d6a15f3351618130ac8225d7d6776a335959dc4">
<span class="new-file">
+
base/tps/src/main/java/org/dogtagpki/server/tps/rest/v2/filters/AuthenticatorACL.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#01be53af94a860041402163f2654c4316d840d80">
<span class="new-file">
+
base/tps/src/main/java/org/dogtagpki/server/tps/rest/v2/filters/AuthenticatorAuthMethod.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#7367b8a1a36e847886d1c700ec517388f803b5f7">
<span class="new-file">
+
base/tps/src/main/java/org/dogtagpki/server/tps/rest/v2/filters/ConfigACL.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#580bdab95372690413e8b677b6256d09b8ba9609">
<span class="new-file">
+
base/tps/src/main/java/org/dogtagpki/server/tps/rest/v2/filters/ConfigAuthMethod.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#450844d193aafc177a32c181cbd88bb195fbf1ce">
<span class="new-file">
+
base/tps/src/main/java/org/dogtagpki/server/tps/rest/v2/filters/ConnectorACL.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#f396d790f873c2971b3da0fbe39020e6361e8596">
<span class="new-file">
+
base/tps/src/main/java/org/dogtagpki/server/tps/rest/v2/filters/ConnectorAuthMethod.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#c54f46aab27745534cf5cdccae00e0538178a7f1">
<span class="new-file">
+
base/tps/src/main/java/org/dogtagpki/server/tps/rest/v2/filters/EmptyACL.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#ac575af6f08d83571ba2328d1f41108eb9b57607">
<span class="new-file">
+
base/tps/src/main/java/org/dogtagpki/server/tps/rest/v2/filters/EmptyAuthMethod.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#cbd42f50edbeebff8469711e75488ee4d98f23c8">
<span class="new-file">
+
base/tps/src/main/java/org/dogtagpki/server/tps/rest/v2/filters/ProfileMappingACL.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#c8a927c506e72d408fa5407ae390504adc3eb96f">
<span class="new-file">
+
base/tps/src/main/java/org/dogtagpki/server/tps/rest/v2/filters/ProfileMappingAuthMethod.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#d51872c45256c2bc4990eef0a3afe0594414cca6">
<span class="new-file">
+
base/tps/src/main/java/org/dogtagpki/server/tps/rest/v2/filters/TPSAccountACL.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#d7691cf995361f39920e89cae29a15ea118eee71">
<span class="new-file">
+
base/tps/src/main/java/org/dogtagpki/server/tps/rest/v2/filters/TPSAccountAuthMethod.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#579977bb88b00ee79fc61dd197d178882780a84b">
<span class="new-file">
+
base/tps/src/main/java/org/dogtagpki/server/tps/rest/v2/filters/TPSAuditACL.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#0f9a4aa4a7b498a8b6bc0338d8547a7aa37186a0">
<span class="new-file">
+
base/tps/src/main/java/org/dogtagpki/server/tps/rest/v2/filters/TPSAuditAuthMethod.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#a72c3417bef8cf1b40ed00a9e7e7a629ddc9d367">
<span class="new-file">
+
base/tps/src/main/java/org/dogtagpki/server/tps/rest/v2/filters/TPSGroupACL.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#dd265c96545ed65cecbfcd60404bd663b246e7e3">
<span class="new-file">
+
base/tps/src/main/java/org/dogtagpki/server/tps/rest/v2/filters/TPSGroupAuthMethod.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#ffb0419ad093d21d86cd8c4bdd2415e06b718083">
<span class="new-file">
+
base/tps/src/main/java/org/dogtagpki/server/tps/rest/v2/filters/TPSProfileACL.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#117e969db9f1465fdf389ee9244f65bc819f32ae">
<span class="new-file">
+
base/tps/src/main/java/org/dogtagpki/server/tps/rest/v2/filters/TPSProfileAuthMethod.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#952aba887f4b19ac65abc5342d9b2d18125103b5">
<span class="new-file">
+
base/tps/src/main/java/org/dogtagpki/server/tps/rest/v2/filters/TPSSelfTestACL.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#d7dcd81f52ba3d3e5e7d022dbd51396b6ee1e298">
<span class="new-file">
+
base/tps/src/main/java/org/dogtagpki/server/tps/rest/v2/filters/TPSSelfTestAuthMethod.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#f7ef6ea814e71080a061c0bcb95d024b7c6b5e8c">
<span class="new-file">
+
base/tps/src/main/java/org/dogtagpki/server/tps/rest/v2/filters/TPSUserACL.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#423995df3342498e08fdfe4dbfaeeda1a210a056">
<span class="new-file">
+
base/tps/src/main/java/org/dogtagpki/server/tps/rest/v2/filters/TPSUserAuthMethod.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#82f3f802fd7caa74ed4dde19cea8c6f88e341b2f">
<span class="new-file">
+
base/tps/src/main/java/org/dogtagpki/server/tps/rest/v2/filters/TokenACL.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#1cd71c815c75570f15ec6f3a8be12a5843b8334d">
<span class="new-file">
+
base/tps/src/main/java/org/dogtagpki/server/tps/rest/v2/filters/TokenAuthMethod.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#51fd6849e25f608561a9406cce292ff28ea737d2">
<span class="new-file">
+
base/tps/tomcat-10.1/CMakeLists.txt
</span>
</a>
</li>
<li class="file-stats">
<a href="#135ac49a938625e0c7a14ef5b990b03e54d3c3be">
<span class="new-file">
+
base/tps/tomcat-10.1/conf/Catalina/localhost/tps.xml
</span>
</a>
</li>
<li class="file-stats">
<a href="#59f81c123b3abbcb97274545796dd18706c3e106">
build.sh
</a>
</li>
<li class="file-stats">
<a href="#780532e42caaaba607d2c566ffebea31f47d7dbf">
cmake/Modules/DefineCompilerFlags.cmake
</a>
</li>
<li class="file-stats">
<a href="#61dac6fa516ad17d751153607cc7aa717d22da6f">
cmake/Modules/DefinePythonSitePackages.cmake
</a>
</li>
<li class="file-stats">
<a href="#f2e9b0e9a2ae73156b37fa699debf4a90ded1c58">
<span class="deleted-file">
−
cmake/Modules/FindMozLDAP.cmake
</span>
</a>
</li>
<li class="file-stats">
<a href="#dd80e68ce435876aa69f84b96a16891577ccc3aa">
cmake/Modules/JUnit.cmake
</a>
</li>
<li class="file-stats">
<a href="#13b10cc98064f78a5d6b0c593bf1aa0fbd5749c0">
cmake/Modules/Java.cmake
</a>
</li>
<li class="file-stats">
<a href="#1e8004df5a7a6e9609983ca25e27b5bfeac52351">
cmake/config.h.in
</a>
</li>
<li class="file-stats">
<a href="#9c96da0e9f91d7d8937b69b524702c106258f0d1">
debian/changelog
</a>
</li>
<li class="file-stats">
<a href="#58ef006ab62b83b4bec5d81fe5b32c3b4c2d1cc2">
debian/control
</a>
</li>
<li class="file-stats">
<a href="#1db9b9a7b10d3f71db4d0cefa08fda13763598b2">
debian/patches/create-target-wants.diff
</a>
</li>
<li class="file-stats">
<a href="#f770436e4016354f1d64bfb87fd334e62824fe39">
debian/patches/debian-support.diff
</a>
</li>
<li class="file-stats">
<a href="#a69ffc2ea879aac8fd7e0af5292421a91ea823ff">
debian/patches/debianize-service-files.diff
</a>
</li>
<li class="file-stats">
<a href="#5a98f3de0cbb11f9d61bcac05138e29242b8fc1c">
debian/patches/fix-hamcrest-jar.diff
</a>
</li>
<li class="file-stats">
<a href="#aaa1ba5a6938ce34d80f2d52bfdee698b3517443">
debian/patches/fix-healthcheck-install.diff
</a>
</li>
<li class="file-stats">
<a href="#11b4d7598fe3fb6f1f471783a3eeb375b4c7a689">
debian/patches/fix-javax-annotations.diff
</a>
</li>
<li class="file-stats">
<a href="#c3749d96ea3d59f803b51c7e67065d21c50efb57">
debian/patches/fix-resteasy-path.diff
</a>
</li>
<li class="file-stats">
<a href="#ce67a8ea47d19eea189dc0128f872aa9c963e05f">
debian/patches/fix-runuser-path.diff
</a>
</li>
<li class="file-stats">
<a href="#4a4924495a50b160aa495228bb734684f36041c5">
debian/patches/fix-tomcat-jars.diff
</a>
</li>
<li class="file-stats">
<a href="#f947d1a643236ac95ed6614734027307ea29da2d">
debian/patches/force-request-timeout-default.diff
</a>
</li>
<li class="file-stats">
<a href="#bc34014ab4b9a49dd7a27bdd8d352912607c3a96">
debian/patches/series
</a>
</li>
<li class="file-stats">
<a href="#4fdfdcaf3e8c71e6518cd3fe0fc245ba29d79cef">
debian/patches/use-root-homedir.diff
</a>
</li>
<li class="file-stats">
<a href="#8756c63497c8dc39f7773438edf53b220c773f67">
debian/rules
</a>
</li>
<li class="file-stats">
<a href="#c37eeb39e25f6245de0224fee2a10373d9c22ba8">
<span class="new-file">
+
docs/README/README-doc-convention.adoc
</span>
</a>
</li>
<li class="file-stats">
<a href="#a23bbc1c202453942bfb0228ed283cd61b681a0f">
<span class="new-file">
+
docs/README/include-cfg.list
</span>
</a>
</li>
<li class="file-stats">
<a href="#c4e85310fae5c6e66ba3b42ce3c9a5d7c3af6dfc">
<span class="new-file">
+
docs/README/include-install.list
</span>
</a>
</li>
<li class="file-stats">
<a href="#dbb5285966cbffb918d59ce19a9fe8e6818508ed">
<span class="new-file">
+
docs/README/others.list
</span>
</a>
</li>
<li class="file-stats">
<a href="#99e6f0a71ed9c601ecd4eee85774277e801e5881">
docs/admin/Nuxwdog.md
</a>
</li>
<li class="file-stats">
<a href="#c83fd80343b7025347b57d6918b5556dbf6c4004">
<span class="deleted-file">
−
docs/admin/Offline_System_Certificate_Renewal.md
</span>
</a>
</li>
<li class="file-stats">
<a href="#8c3ad42303cd175e2b36057fe59add49997229a6">
docs/admin/PKI_Health_Check_Tool.md
</a>
</li>
<li class="file-stats">
<a href="#acbb63c46fd197c3b27e97c91d1d8049216e32c5">
docs/admin/Session_Timeout.md
</a>
</li>
<li class="file-stats">
<a href="#e9f6ade1f47a14924b495a27959fdf1e79990683">
docs/admin/TPS_Token_Lifecycle.md
</a>
</li>
<li class="file-stats">
<a href="#e9e74a1ee878f15eefc6384fc2b4f295c9ee9376">
docs/installation/acme/Configuring_ACME_Database.md
→
docs/admin/acme/Configuring-ACME-Database.adoc
</a>
</li>
<li class="file-stats">
<a href="#51faf7ecdb69cdd43ca4256aa271883f1d46796c">
docs/installation/acme/Configuring_ACME_Issuer.md
→
docs/admin/acme/Configuring-ACME-Issuer.adoc
</a>
</li>
<li class="file-stats">
<a href="#6ddf775590a800ddf4e14e42ff082f6dce33fcb1">
docs/installation/acme/Configuring-ACME-Metadata.adoc
→
docs/admin/acme/Configuring-ACME-Metadata.adoc
</a>
</li>
<li class="file-stats">
<a href="#23fbe1e66e1e6b306423d8d131f323ab3c2c51b6">
docs/installation/acme/Configuring_ACME_Realm.md
→
docs/admin/acme/Configuring-ACME-Realm.adoc
</a>
</li>
<li class="file-stats">
<a href="#875054a56c82162ee4bad1c34e5aad858fa010ee">
<span class="new-file">
+
docs/admin/acme/Configuring-ACME-Responder.adoc
</span>
</a>
</li>
<li class="file-stats">
<a href="#2fc368af3eb39c148540dd5b5c0c389bc83d8255">
docs/installation/acme/Configuring-ACME-with-DS-Database.adoc
→
docs/admin/acme/Configuring-ACME-with-DS-Database.adoc
</a>
</li>
<li class="file-stats">
<a href="#5859d662e4585783273e5908304b352a1d925f46">
docs/installation/acme/Configuring-ACME-with-DS-Realm.adoc
→
docs/admin/acme/Configuring-ACME-with-DS-Realm.adoc
</a>
</li>
<li class="file-stats">
<a href="#e84e73732be1dad778129d7b7b5efede7f3dd769">
docs/installation/acme/Configuring-ACME-with-InMemory-Database.adoc
→
docs/admin/acme/Configuring-ACME-with-InMemory-Database.adoc
</a>
</li>
<li class="file-stats">
<a href="#9fd45f7d3b63ab466366d768647bff52a9ee3796">
docs/installation/acme/Configuring-ACME-with-InMemory-Realm.adoc
→
docs/admin/acme/Configuring-ACME-with-InMemory-Realm.adoc
</a>
</li>
<li class="file-stats">
<a href="#487e0cc86983dbfb6a2789c61648561b06280bac">
docs/installation/acme/Configuring-ACME-with-NSS-Issuer.adoc
→
docs/admin/acme/Configuring-ACME-with-NSS-Issuer.adoc
</a>
</li>
<li class="file-stats">
<a href="#81db31e58cbf87f7a5902a68ca9d8dccb4ec9fad">
docs/installation/acme/Configuring-ACME-with-OpenLDAP-Database.adoc
→
docs/admin/acme/Configuring-ACME-with-OpenLDAP-Database.adoc
</a>
</li>
<li class="file-stats">
<a href="#907c5c6f8207e30078299705956d9d5751fe4b63">
docs/installation/acme/Configuring-ACME-with-PKI-Issuer.adoc
→
docs/admin/acme/Configuring-ACME-with-PKI-Issuer.adoc
</a>
</li>
<li class="file-stats">
<a href="#d2b8a630766180c4cc885b8d4080acad47343389">
docs/installation/acme/Configuring-ACME-with-PostgreSQL-Database.adoc
→
docs/admin/acme/Configuring-ACME-with-PostgreSQL-Database.adoc
</a>
</li>
<li class="file-stats">
<a href="#8d07f35ce7aff7e6a255bc70de5a2d8e6861044c">
docs/installation/acme/Configuring-ACME-with-PostgreSQL-Realm.adoc
→
docs/admin/acme/Configuring-ACME-with-PostgreSQL-Realm.adoc
</a>
</li>
<li class="file-stats">
<a href="#9e0c004d33460f5bcfe4bf9aa350704f404ddb44">
docs/admin/ServerSideKeygen.adoc
→
docs/admin/configuration-for-server-side-keygen.adoc
</a>
</li>
<li class="file-stats">
<a href="#53a4e08ef9aece1b32268f6f83193fd92d7e0672">
<span class="new-file">
+
docs/admin/est/Managing-DS-Realm.adoc
</span>
</a>
</li>
<li class="file-stats">
<a href="#df0d141202f8cf30ed0c5608bec8da785e06471d">
<span class="new-file">
+
docs/admin/est/Managing-PostgreSQL-Realm.adoc
</span>
</a>
</li>
<li class="file-stats">
<a href="#1cccff419fe9ac30fedf6416f186a8441473c65a">
docs/admin/images/Server-SideKeygenEnroll_approval.png
→
docs/admin/images/server-side_keygen_enroll_approval.png
</a>
</li>
<li class="file-stats">
<a href="#49c39ba6aeb029353082e9c5d2e0918c74fe2e7c">
docs/admin/images/Server-SideKeygenEnroll_manual.png
→
docs/admin/images/server-side_keygen_enroll_manual.png
</a>
</li>
<li class="file-stats">
<a href="#2957488e5e149d5de15fb2cf4bd2db4f28f9366f">
docs/admin/images/Server-SideKeygen_LDAP_auth.png
→
docs/admin/images/server-side_keygen_ldap_auth.png
</a>
</li>
<li class="file-stats">
<a href="#46e5aca76d3896ba1755f3c1dfc2c3a9b7ced600">
<span class="new-file">
+
docs/admin/offline-system-certificate-renewal.adoc
</span>
</a>
</li>
<li class="file-stats">
<a href="#17d24a495fae856bdfe0e8573cafa781702eb7c4">
docs/admin/server/Configuring-HTTPS-Connector-with-JKS-File.adoc
</a>
</li>
<li class="file-stats">
<a href="#c73e879ee636578374ef5b75150bba60ed76b5e6">
docs/admin/server/Configuring-HTTPS-Connector-with-NSS-Database.adoc
</a>
</li>
<li class="file-stats">
<a href="#024af6181a4589f7075e362891e97174bdb64d72">
docs/admin/server/Configuring-HTTPS-Connector-with-PEM-Files.adoc
</a>
</li>
<li class="file-stats">
<a href="#73eb10b6748e5675d9981cb1eebdb8b0aa16fd8e">
docs/admin/server/Configuring-HTTPS-Connector-with-PKCS12-File.adoc
</a>
</li>
<li class="file-stats">
<a href="#4efdc495684e554686734401a60ccbd2934ba0ba">
docs/changes/v11.1.0/Server-Changes.adoc
</a>
</li>
<li class="file-stats">
<a href="#5539ea09e4ee19cdd10985d0291234f6fb97a7b5">
<span class="new-file">
+
docs/changes/v11.10.0/API-Changes.adoc
</span>
</a>
</li>
<li class="file-stats">
<a href="#88bcab0052c1f93b7ee0c278fc3d9259d8889db4">
<span class="new-file">
+
docs/changes/v11.10.0/Packaging-Changes.adoc
</span>
</a>
</li>
<li class="file-stats">
<a href="#978c3ea6b9fa9e52c0db0f89e9216df2b78912f2">
<span class="new-file">
+
docs/changes/v11.10.0/Server-Changes.adoc
</span>
</a>
</li>
<li class="file-stats">
<a href="#643882ae58531fc4470e63412557401b2ac7e633">
<span class="new-file">
+
docs/changes/v11.10.0/Tools-Changes.adoc
</span>
</a>
</li>
<li class="file-stats">
<a href="#6542edb6f9d698e278f57d2a69efb8856c246ebe">
<span class="new-file">
+
docs/changes/v11.5.0/Packaging-Changes.adoc
</span>
</a>
</li>
<li class="file-stats">
<a href="#3bb303843df1b6c7f25238be1ea7b5785f35a527">
<span class="new-file">
+
docs/changes/v11.5.0/Server-Changes.adoc
</span>
</a>
</li>
<li class="file-stats">
<a href="#92c40b826b1a07b0885553acb48b8b606bd26414">
<span class="new-file">
+
docs/changes/v11.5.0/Tools-Changes.adoc
</span>
</a>
</li>
<li class="file-stats">
<a href="#5eb28c2121e6da598f546ddd9d72a9ca579f9cc3">
<span class="new-file">
+
docs/changes/v11.6.0/API-Changes.adoc
</span>
</a>
</li>
<li class="file-stats">
<a href="#8f0b63ce8d55edcc4310096d0c69c205070f4886">
<span class="new-file">
+
docs/changes/v11.6.0/Packaging-Changes.adoc
</span>
</a>
</li>
<li class="file-stats">
<a href="#a6d8ddddbfde420b72f3b74d867c9a523a6da2d1">
<span class="new-file">
+
docs/changes/v11.6.0/Server-Changes.adoc
</span>
</a>
</li>
<li class="file-stats">
<a href="#e742a49eb70a3ef33d406315083197580f34d71f">
<span class="new-file">
+
docs/changes/v11.6.0/Tools-Changes.adoc
</span>
</a>
</li>
<li class="file-stats">
<a href="#3411fb361f8a1e04aafdd4c9978075b8080e3b77">
<span class="new-file">
+
docs/changes/v11.7.0/Server-Changes.adoc
</span>
</a>
</li>
<li class="file-stats">
<a href="#d7fa404b06d2914f9fd87b9b257ff414829603b5">
<span class="new-file">
+
docs/changes/v11.7.0/Tools-Changes.adoc
</span>
</a>
</li>
<li class="file-stats">
<a href="#bf2f0401770155b64934f35a88087876d005b2bf">
<span class="new-file">
+
docs/changes/v11.9.0/Server-Changes.adoc
</span>
</a>
</li>
<li class="file-stats">
<a href="#f65643012fd558e5493aa27b1b2e3ffcbd7b3a1f">
<span class="new-file">
+
docs/changes/v11.9.0/Tools-Changes.adoc
</span>
</a>
</li>
<li class="file-stats">
<a href="#4a5bda53b854dee0a08510886434d61dcb148f9f">
<span class="new-file">
+
docs/design/Cert_Enrollment_Profiles/Bootstrap-Profiles.adoc
</span>
</a>
</li>
<li class="file-stats">
<a href="#09d347a28b6f8444b4e5a2e34c0bd8af415d63f3">
<span class="new-file">
+
docs/design/Cert_Enrollment_Profiles/CA-Certificate-Profiles.adoc
</span>
</a>
</li>
<li class="file-stats">
<a href="#bd579592a5485445044aad5ea85793bade198114">
<span class="new-file">
+
docs/design/Cert_Enrollment_Profiles/Certificate-Profiles.adoc
</span>
</a>
</li>
<li class="file-stats">
<a href="#583600011b390bdbb9f0f56bf45820f9bba668e8">
<span class="new-file">
+
docs/dogtagpki-docs-convention-readme.adoc
</span>
</a>
</li>
<li class="file-stats">
<a href="#24a37ea34481199f7d667f65785fc762b869ed4f">
<span class="deleted-file">
−
docs/installation/Installing_ACME_Responder.md
</span>
</a>
</li>
<li class="file-stats">
<a href="#c214c3f272b98be1dc90c0ac609a997a25fe8432">
<span class="deleted-file">
−
docs/installation/Installing_Basic_PKI_Server.md
</span>
</a>
</li>
<li class="file-stats">
<a href="#49599a47d182ff617e6b48584c9607b96bb29eab">
<span class="deleted-file">
−
docs/installation/Installing_CA.md
</span>
</a>
</li>
<li class="file-stats">
<a href="#4c42e13ef6cc5a18762d3f3678ef68918379065a">
<span class="deleted-file">
−
docs/installation/Installing_CA_Clone.md
</span>
</a>
</li>
<li class="file-stats">
<a href="#d2137fbe73c66527dfda0efe9ad1ea724762733d">
<span class="deleted-file">
−
docs/installation/Installing_CA_Clone_with_HSM.md
</span>
</a>
</li>
<li class="file-stats">
<a href="#f1f6b313e8fd911c778a5ad6742f9b4dcb306162">
<span class="deleted-file">
−
docs/installation/Installing_CA_with_Custom_CA_Signing_Key.md
</span>
</a>
</li>
<li class="file-stats">
<a href="#4ab173fc88c3933596c311bf8b3fa87b309ba140">
<span class="deleted-file">
−
docs/installation/Installing_CA_with_ECC.md
</span>
</a>
</li>
<li class="file-stats">
<a href="#23fe1c1c87e2292856c0297d067cf11aa876d8fa">
<span class="deleted-file">
−
docs/installation/Installing_CA_with_Existing_Keys_in_HSM.md
</span>
</a>
</li>
<li class="file-stats">
<a href="#e2cda6adbbdcd20e2229cd05c249c0110261a57e">
<span class="deleted-file">
−
docs/installation/Installing_CA_with_Existing_Keys_in_Internal_Token.md
</span>
</a>
</li>
<li class="file-stats">
<a href="#ac87cabcca1c88857a2b93493d46301fd07b1870">
<span class="deleted-file">
−
docs/installation/Installing_CA_with_External_CA_Signing_Certificate.md
</span>
</a>
</li>
<li class="file-stats">
<a href="#3d2457ee57ab6bd21f26d0ba8cd47faaeae70ff7">
<span class="deleted-file">
−
docs/installation/Installing_CA_with_HSM.md
</span>
</a>
</li>
<li class="file-stats">
<a href="#35724b8013b0a7de155304148e9924aa4a22f14b">
<span class="deleted-file">
−
docs/installation/Installing_CA_with_Secure_Database_Connection.md
</span>
</a>
</li>
<li class="file-stats">
<a href="#a455f8ee4fc3475e4100882f51d74258fe6bd287">
<span class="deleted-file">
−
docs/installation/Installing_KRA.md
</span>
</a>
</li>
<li class="file-stats">
<a href="#679a56112f461e54e586beb84b76248f2ef7b16c">
<span class="deleted-file">
−
docs/installation/Installing_KRA_Clone.md
</span>
</a>
</li>
<li class="file-stats">
<a href="#1a06c74735a30127071e61359b5377d751c8ab64">
<span class="deleted-file">
−
docs/installation/Installing_KRA_Clone_with_HSM.md
</span>
</a>
</li>
<li class="file-stats">
<a href="#a3e466fe47721a8e7e538dd12d40b145f712c93c">
<span class="deleted-file">
−
docs/installation/Installing_KRA_with_Custom_Keys.md
</span>
</a>
</li>
<li class="file-stats">
<a href="#15b952c950b85ca78eb866826766d0a8d6c836ac">
<span class="deleted-file">
−
docs/installation/Installing_KRA_with_ECC.md
</span>
</a>
</li>
<li class="file-stats">
<a href="#dd4c30649ff06996b096c0df59ba7917e431ae22">
<span class="deleted-file">
−
docs/installation/Installing_KRA_with_External_Certificates.md
</span>
</a>
</li>
<li class="file-stats">
<a href="#98ce756fe634269d278ae8d34209f345ad07354c">
<span class="deleted-file">
−
docs/installation/Installing_KRA_with_HSM.md
</span>
</a>
</li>
<li class="file-stats">
<a href="#536dace1db285f30cde3bfdaa214021f6e2f91c9">
<span class="deleted-file">
−
docs/installation/Installing_KRA_with_Secure_Database_Connection.md
</span>
</a>
</li>
<li class="file-stats">
<a href="#59e7cd6da54bbd08387c9d14c7302752d0596635">
<span class="deleted-file">
−
docs/installation/Installing_OCSP.md
</span>
</a>
</li>
<li class="file-stats">
<a href="#9868a6888e773cfd845d5e31795706e28d3244c4">
<span class="deleted-file">
−
docs/installation/Installing_OCSP_Clone.md
</span>
</a>
</li>
<li class="file-stats">
<a href="#4d4ec86794d7f664d493b48725c8bbc48139ef24">
<span class="deleted-file">
−
docs/installation/Installing_OCSP_Clone_with_HSM.md
</span>
</a>
</li>
<li class="file-stats">
<a href="#b379e6232022d1ce50d018c6a35798c2d2568841">
<span class="deleted-file">
−
docs/installation/Installing_OCSP_with_Custom_Keys.md
</span>
</a>
</li>
<li class="file-stats">
<a href="#bcf9d51b8c9bface884160973bb538ddcac7aca0">
<span class="deleted-file">
−
docs/installation/Installing_OCSP_with_ECC.md
</span>
</a>
</li>
<li class="file-stats">
<a href="#4cc76ce9c96d698b1bcf19a94eb3ed2dfdc53339">
<span class="deleted-file">
−
docs/installation/Installing_OCSP_with_External_Certificates.md
</span>
</a>
</li>
<li class="file-stats">
<a href="#77bbe85bb7ccdce5c6934c4797c5e200ee1b8012">
<span class="deleted-file">
−
docs/installation/Installing_OCSP_with_HSM.md
</span>
</a>
</li>
<li class="file-stats">
<a href="#99a928dec2533563f54ab29e6502eca9c8bc6627">
<span class="deleted-file">
−
docs/installation/Installing_OCSP_with_Secure_Database_Connection.md
</span>
</a>
</li>
<li class="file-stats">
<a href="#b955f13c35593297079be6b2232ad801f767fd14">
<span class="deleted-file">
−
docs/installation/Installing_PKI_Server_with_Custom_NSS_Databases.md
</span>
</a>
</li>
<li class="file-stats">
<a href="#e2a1a91493ed9eda651f2facf464b12fcecf5ec7">
<span class="deleted-file">
−
docs/installation/Installing_TKS.md
</span>
</a>
</li>
<li class="file-stats">
<a href="#cbb69f7735bf6461f18f882eadc4c960c4f1a3f6">
<span class="deleted-file">
−
docs/installation/Installing_TKS_with_ECC.md
</span>
</a>
</li>
<li class="file-stats">
<a href="#59bb348ec55a9513843fb429abf622547bb70858">
<span class="deleted-file">
−
docs/installation/Installing_TKS_with_HSM.md
</span>
</a>
</li>
<li class="file-stats">
<a href="#8d46052dbb47d4bff3c5e09b0c7c55b7999ff93c">
<span class="deleted-file">
−
docs/installation/Installing_TKS_with_Secure_Database_Connection.md
</span>
</a>
</li>
<li class="file-stats">
<a href="#e1bb4f14e8b0d618ac6ea6558c5381b609a280dc">
<span class="deleted-file">
−
docs/installation/Installing_TPS.md
</span>
</a>
</li>
<li class="file-stats">
<a href="#c4083ad44f9bae43def28d60b0c0792ca676ec4f">
<span class="deleted-file">
−
docs/installation/Installing_TPS_Clone.md
</span>
</a>
</li>
<li class="file-stats">
<a href="#cfdf779ed215982075d244760269bbe15ca3c670">
<span class="deleted-file">
−
docs/installation/Installing_TPS_with_HSM.md
</span>
</a>
</li>
<li class="file-stats">
<a href="#92b73520f3099e0fb795df04067b34e8504ecb5b">
<span class="deleted-file">
−
docs/installation/Installing_TPS_with_Secure_Database_Connection.md
</span>
</a>
</li>
<li class="file-stats">
<a href="#031eef97fc87d685d86d4d842e997a3ee44a7835">
<span class="deleted-file">
−
docs/installation/acme/Deploying_ACME_on_OpenShift.md
</span>
</a>
</li>
<li class="file-stats">
<a href="#9c887db6d098399b12c26dac1094f794a953f62c">
<span class="deleted-file">
−
docs/installation/acme/Deploying_ACME_on_Podman.md
</span>
</a>
</li>
<li class="file-stats">
<a href="#01318beb466553433e6022e9c0b0106724c44a11">
<span class="deleted-file">
−
docs/installation/acme/Installing_ACME_Responder.md
</span>
</a>
</li>
<li class="file-stats">
<a href="#f1f14126d0ada5807d22638c08e4ba94cf84a233">
<span class="deleted-file">
−
docs/installation/acme/Installing_PKI_ACME_Responder.md
</span>
</a>
</li>
<li class="file-stats">
<a href="#feb8a4c5e93668481a11a1c2f337baa9e31852b9">
<span class="new-file">
+
docs/installation/acme/installing-acme-responder-using-pki-server-acme-cli.adoc
</span>
</a>
</li>
<li class="file-stats">
<a href="#0179686996225334c43742686290465769e0b29a">
<span class="new-file">
+
docs/installation/acme/installing-acme-responder-using-pkispawn.adoc
</span>
</a>
</li>
<li class="file-stats">
<a href="#8ab7c5954c8df7f61b844fb68b09f1ead0fa2644">
<span class="new-file">
+
docs/installation/acme/installing-acme-responder.adoc
</span>
</a>
</li>
<li class="file-stats">
<a href="#4f35eff3df8c1350b80ed855aa66246c84f96228">
docs/installation/ca/Installing_CA_Clone_with_HSM.md
→
docs/installation/ca/installing-ca-clone-with-hsm.adoc
</a>
</li>
<li class="file-stats">
<a href="#da1196c0e7cf94484969bdc69393990fd4964df2">
<span class="new-file">
+
docs/installation/ca/installing-ca-clone-with-ldaps-connection.adoc
</span>
</a>
</li>
<li class="file-stats">
<a href="#20289f6866ff5b2faee2a7724d88d4caadf6ab9e">
docs/installation/ca/Installing_CA_Clone_with_Secure_Database_Connection.md
→
docs/installation/ca/installing-ca-clone-with-ldaps-using-bootstrap-ds-certs.adoc
</a>
</li>
<li class="file-stats">
<a href="#d3fa767eaa2d2f80d03a51417063665d1f0bbda1">
docs/installation/ca/Installing_CA_Clone.md
→
docs/installation/ca/installing-ca-clone.adoc
</a>
</li>
<li class="file-stats">
<a href="#e1ecbe82697d62dfd6df028387a17aa2230f5923">
docs/installation/ca/Installing_CA_with_Custom_CA_Signing_Key.md
→
docs/installation/ca/installing-ca-with-custom-ca-signing-key.adoc
</a>
</li>
<li class="file-stats">
<a href="#6b3b0847963700e0a434b3ea9bb7f05399facc54">
docs/installation/ca/Installing_CA_with_ECC.md
→
docs/installation/ca/installing-ca-with-ecc.adoc
</a>
</li>
<li class="file-stats">
<a href="#05cd07a48fd5f680bc6c642cf8d74523f4f105f6">
docs/installation/ca/Installing_CA_with_Existing_Keys_in_HSM.md
→
docs/installation/ca/installing-ca-with-existing-keys-in-hsm.adoc
</a>
</li>
<li class="file-stats">
<a href="#4a603c078ea362241900935af5f7973375d6eb4d">
docs/installation/ca/Installing_CA_with_Existing_Keys_in_Internal_Token.md
→
docs/installation/ca/installing-ca-with-existing-keys-in-internal-token.adoc
</a>
</li>
<li class="file-stats">
<a href="#9e5172033e298c89f76cf8dac0c00f5a669fd608">
docs/installation/ca/Installing_CA_with_External_CA_Signing_Certificate.md
→
docs/installation/ca/installing-ca-with-external-ca-signing-certificate.adoc
</a>
</li>
<li class="file-stats">
<a href="#cd5773838a9bc829009ec6651b881fa630d1c962">
docs/installation/ca/Installing_CA_with_HSM.md
→
docs/installation/ca/installing-ca-with-hsm.adoc
</a>
</li>
<li class="file-stats">
<a href="#6d1d510f3095d6cc2d8175872cc5cdd0ea60cdc7">
docs/installation/ca/Installing_CA_with_Secure_Database_Connection.md
→
docs/installation/ca/installing-ca-with-ldaps-connection.adoc
</a>
</li>
<li class="file-stats">
<a href="#923b845fcf52e0208e41b4b7b3c7a78dbf35544a">
docs/installation/ca/Installing_CA.md
→
docs/installation/ca/installing-ca-with-pqc.adoc
</a>
</li>
<li class="file-stats">
<a href="#af6e3a8491f3312114389ebe9bb1a022a827facf">
docs/installation/ca/Installing-CA-with-Random-Serial-Numbers-v3.adoc
→
docs/installation/ca/installing-ca-with-random-serial-numbers-v3.adoc
</a>
</li>
<li class="file-stats">
<a href="#a6030055e32cc3c6f87ee4b045302e7ffe8c79d3">
docs/installation/ca/Installing-CA-with-RSA-PSS.adoc
→
docs/installation/ca/installing-ca-with-rsa-pss.adoc
</a>
</li>
<li class="file-stats">
<a href="#ec37ecdae20ff832f87a6f84429d476aa1507da8">
<span class="new-file">
+
docs/installation/ca/installing-ca.adoc
</span>
</a>
</li>
<li class="file-stats">
<a href="#9b12c7ed74fa0639f8db7ce80dc2f374eb793891">
docs/installation/ca/Installing_Subordinate_CA.md
→
docs/installation/ca/installing-subordinate-ca.adoc
</a>
</li>
<li class="file-stats">
<a href="#15b7b8e09cecb64003bd96be02a3fdc39b8025b8">
<span class="deleted-file">
−
docs/installation/est/Installing_EST.md
</span>
</a>
</li>
<li class="file-stats">
<a href="#e3b6c65430b3f9a694fbf55972c06de5927839ac">
<span class="new-file">
+
docs/installation/est/configure-est-realm-db.adoc
</span>
</a>
</li>
<li class="file-stats">
<a href="#b309e2c0a03beb063e69c6d51c4e3a577987545d">
<span class="new-file">
+
docs/installation/est/configuring-est-fullcmc-example.adoc
</span>
</a>
</li>
<li class="file-stats">
<a href="#3eba377cff42a725e5ac385aa44e94959401c813">
<span class="new-file">
+
docs/installation/est/installing-est-pki-server.adoc
</span>
</a>
</li>
<li class="file-stats">
<a href="#5954ccc2f893e3d4769a742005c4b2e77eb2d3f1">
<span class="new-file">
+
docs/installation/est/installing-est-pkispawn.adoc
</span>
</a>
</li>
<li class="file-stats">
<a href="#551683b89e5778c2e00139af2d016615c8484d22">
<span class="new-file">
+
docs/installation/est/installing-est.adoc
</span>
</a>
</li>
<li class="file-stats">
<a href="#f11bfb26dff4c9e1f1ca04b3e8583c18c1a75052">
docs/installation/kra/Installing_KRA_Clone_with_HSM.md
→
docs/installation/kra/installing-kra-clone-with-hsm.adoc
</a>
</li>
<li class="file-stats">
<a href="#fdeb4c4c3eaf18cadd1bb5dff0d28c1fe15d8b32">
docs/installation/kra/Installing_KRA_Clone.md
→
docs/installation/kra/installing-kra-clone.adoc
</a>
</li>
<li class="file-stats">
<a href="#24764324a8e019ab3270cc6409ed1c2be1d5c94b">
docs/installation/kra/Installing_KRA_on_Separate_Instance.md
→
docs/installation/kra/installing-kra-on-separate-instance.adoc
</a>
</li>
<li class="file-stats">
<a href="#da69971886cf2e380deed58a827e68a6d83a58af">
docs/installation/kra/Installing_KRA_with_Custom_Keys.md
→
docs/installation/kra/installing-kra-with-custom-keys.adoc
</a>
</li>
<li class="file-stats">
<a href="#ee74ca250872cb4860826f70dd380e7da18dbe5b">
docs/installation/kra/Installing_KRA_with_ECC.md
→
docs/installation/kra/installing-kra-with-ecc.adoc
</a>
</li>
<li class="file-stats">
<a href="#e3ee4c450336601689c7ebb68626a4538be7d924">
docs/installation/kra/Installing_KRA_with_External_Certificates.md
→
docs/installation/kra/installing-kra-with-external-certificates.adoc
</a>
</li>
<li class="file-stats">
<a href="#e9e6e9c1aa66e090d1c023fe84ce99748fd53da7">
docs/installation/kra/Installing_KRA_with_HSM.md
→
docs/installation/kra/installing-kra-with-hsm.adoc
</a>
</li>
<li class="file-stats">
<a href="#30b87f9240288449991b13749cb3f2ae79b92042">
docs/installation/kra/Installing_KRA_with_Secure_Database_Connection.md
→
docs/installation/kra/installing-kra-with-ldaps-connection.adoc
</a>
</li>
<li class="file-stats">
<a href="#7c24c05756fa588c07e8e0165dd7363883d0f90e">
<span class="new-file">
+
docs/installation/kra/installing-kra-with-pqc.adoc
</span>
</a>
</li>
<li class="file-stats">
<a href="#238fb86250f47a64ee999956164fa6076bf4e3cd">
docs/installation/kra/Installing-KRA-with-Random-Serial-Numbers-v3.adoc
→
docs/installation/kra/installing-kra-with-random-serial-numbers-v3.adoc
</a>
</li>
<li class="file-stats">
<a href="#a1c887ca12a6b222491f48ffed92cd05a18ecdfe">
docs/installation/kra/Installing_KRA.md
→
docs/installation/kra/installing-kra.adoc
</a>
</li>
<li class="file-stats">
<a href="#d75d09e4570cb4398afa012bc711d29c5923387e">
docs/installation/kra/Installing_Standalone_KRA.adoc
→
docs/installation/kra/installing-standalone-kra.adoc
</a>
</li>
<li class="file-stats">
<a href="#077cb67494f7261273860b62ea93712809fb6a89">
docs/installation/ocsp/Installing_OCSP_Clone_with_HSM.md
→
docs/installation/ocsp/installing-ocsp-clone-with-hsm.adoc
</a>
</li>
<li class="file-stats">
<a href="#b8ec2d1e2d4bd0e11858a24bf32aad99303cbf72">
docs/installation/ocsp/Installing_OCSP_Clone.md
→
docs/installation/ocsp/installing-ocsp-clone.adoc
</a>
</li>
<li class="file-stats">
<a href="#a61d6a785831a918bc286ec586ca64d515ed7056">
docs/installation/ocsp/Installing_OCSP_with_Custom_Keys.md
→
docs/installation/ocsp/installing-ocsp-with-custom-keys.adoc
</a>
</li>
<li class="file-stats">
<a href="#b587355f1d73f99f2b317a6b1bd7effd40ec87f5">
docs/installation/ocsp/Installing_OCSP_with_ECC.md
→
docs/installation/ocsp/installing-ocsp-with-ecc.adoc
</a>
</li>
<li class="file-stats">
<a href="#e15fed63d85eed37beffe2a38e1b36500e5381a7">
docs/installation/ocsp/Installing_OCSP_with_External_Certificates.md
→
docs/installation/ocsp/installing-ocsp-with-external-certificates.adoc
</a>
</li>
<li class="file-stats">
<a href="#c1f71035a0a968b5be342e50f14c6cc0f05ec584">
docs/installation/ocsp/Installing_OCSP_with_HSM.md
→
docs/installation/ocsp/installing-ocsp-with-hsm.adoc
</a>
</li>
<li class="file-stats">
<a href="#611a9ffe2d7f0050a2b111e1d04cd439d6741f76">
docs/installation/ocsp/Installing_OCSP_with_Secure_Database_Connection.md
→
docs/installation/ocsp/installing-ocsp-with-ldaps-connection.adoc
</a>
</li>
<li class="file-stats">
<a href="#b062ab3dac4c6d928832fce7bb5b76adf12016e9">
docs/installation/ocsp/Installing_OCSP.md
→
docs/installation/ocsp/installing-ocsp.adoc
</a>
</li>
<li class="file-stats">
<a href="#1bd4f2cb3d1fad64cd99f842c50f9aa27db65197">
docs/installation/ocsp/Installing_Standalone_OCSP.adoc
→
docs/installation/ocsp/installing-standalone-ocsp.adoc
</a>
</li>
<li class="file-stats">
<a href="#8c0104bac9871515e2cb7268a07309337d75f6fe">
<span class="new-file">
+
docs/installation/others/creating-ds-instance.adoc
</span>
</a>
</li>
<li class="file-stats">
<a href="#685eb1125b533d45cd88fef364931b42a0bb5341">
<span class="new-file">
+
docs/installation/others/enabling-ssl-connection-in-ds-with-bootstrap-cert.adoc
</span>
</a>
</li>
<li class="file-stats">
<a href="#c876d4da656d3e33edd2b25f9057783af4f2c962">
<span class="new-file">
+
docs/installation/others/fqdn-configuration.adoc
</span>
</a>
</li>
<li class="file-stats">
<a href="#8482a458592be238d275cd07b6c98a5e85d03e9c">
<span class="new-file">
+
docs/installation/others/getting-ds-cert-issued-by-actual-ca.adoc
</span>
</a>
</li>
<li class="file-stats">
<a href="#82ba275892f6b97367f57d092fc362e82977d35c">
<span class="new-file">
+
docs/installation/others/installation-prerequisites.adoc
</span>
</a>
</li>
<li class="file-stats">
<a href="#6bb5f4da18a5313c11a77a9b23785f2c6c7e927a">
<span class="new-file">
+
docs/installation/others/installing-ds-packages.adoc
</span>
</a>
</li>
<li class="file-stats">
<a href="#9c0ac36a6f50a65c088ee6e59c224f53c2655bc2">
docs/installation/podman/Deploying_PKI_ACME_Responder_on_Podman.md
</a>
</li>
<li class="file-stats">
<a href="#68cdd6acb99e07259e55ad70dc498ec9058df66d">
<span class="deleted-file">
−
docs/installation/server/FQDN_Configuration.adoc
</span>
</a>
</li>
<li class="file-stats">
<a href="#0a31f372cd0a2956be365a2392871144f2a3686c">
<span class="deleted-file">
−
docs/installation/server/Installing_Basic_PKI_Server.md
</span>
</a>
</li>
<li class="file-stats">
<a href="#2e48fb11edce55741f9e7301c6b14af5427dc208">
<span class="new-file">
+
docs/installation/server/installing-basic-pki-server.adoc
</span>
</a>
</li>
<li class="file-stats">
<a href="#43d31efe1cfb92f6eba7c7fc3662a80f937bd6e7">
docs/installation/server/Installing_PKI_Server_with_Custom_NSS_Databases.md
→
docs/installation/server/installing-pki-server-with-custom-nss-databases.adoc
</a>
</li>
<li class="file-stats">
<a href="#7edbb23af758ac2fea9197c018ae457967e7e725">
docs/installation/tks/Installing_TKS_Clone.md
→
docs/installation/tks/installing-tks-clone.adoc
</a>
</li>
<li class="file-stats">
<a href="#7ed3abd554285f974c00c58a9c2dab8a2884cbe4">
docs/installation/tks/Installing_TKS_with_ECC.md
→
docs/installation/tks/installing-tks-with-ecc.adoc
</a>
</li>
<li class="file-stats">
<a href="#11547911a4be0e83852ed699827f67029411b7f1">
docs/installation/tks/Installing_TKS_with_HSM.md
→
docs/installation/tks/installing-tks-with-hsm.adoc
</a>
</li>
<li class="file-stats">
<a href="#1a820b3c9280d37ac8396e092e64661c9711e47b">
docs/installation/tks/Installing_TKS_with_Secure_Database_Connection.md
→
docs/installation/tks/installing-tks-with-ldaps-connection.adoc
</a>
</li>
<li class="file-stats">
<a href="#5673a31a29a13213bb040edc386fa7d6369257d2">
docs/installation/tks/Installing_TKS.md
→
docs/installation/tks/installing-tks.adoc
</a>
</li>
<li class="file-stats">
<a href="#a066b28e174a860821d012add724ea337c7e8fe4">
docs/installation/tps/Installing_TPS_Clone.md
→
docs/installation/tps/installing-tps-clone.adoc
</a>
</li>
<li class="file-stats">
<a href="#274b7835ff544b581811fbc789be2bd17799fff3">
docs/installation/tps/Installing_TPS_with_HSM.md
→
docs/installation/tps/installing-tps-with-hsm.adoc
</a>
</li>
<li class="file-stats">
<a href="#68deb9f9715c42fbfecd88aa1e9a7fb01505d893">
docs/installation/tps/Installing_TPS_with_Secure_Database_Connection.md
→
docs/installation/tps/installing-tps-with-ldaps-connection.adoc
</a>
</li>
<li class="file-stats">
<a href="#a989a7af3c17fa551205ab24bcd17eaf76b69f67">
docs/installation/tps/Installing_TPS.md
→
docs/installation/tps/installing-tps.adoc
</a>
</li>
<li class="file-stats">
<a href="#e8d5956a8ccace87060655894da7ebc2fb4b50f4">
docs/manuals/man1/AuditVerify.1.md
</a>
</li>
<li class="file-stats">
<a href="#3cd37aba788ee29379a139fc938e750e4c2456e4">
docs/manuals/man1/PKCS10Client.1.md
</a>
</li>
<li class="file-stats">
<a href="#37c6bba1b5d83741f0060bbc523f9870e5602865">
docs/manuals/man1/pki-user.1.md
</a>
</li>
<li class="file-stats">
<a href="#0b9015debe59f0e0145c538673299f2d68ea08da">
docs/manuals/man5/pki-server-logging.5.md
</a>
</li>
<li class="file-stats">
<a href="#c1666241543168506aafcc77e5464668a0db353c">
docs/manuals/man5/pki_default.cfg.5.md
</a>
</li>
<li class="file-stats">
<a href="#638f70a619207103826322ca126b8ca1a74d3ffd">
docs/manuals/man8/pki-server-nuxwdog.8.md
</a>
</li>
<li class="file-stats">
<a href="#3b960d21d8ffa11d327acef5dacf93baf798391c">
docs/manuals/man8/pkidestroy.8.md
</a>
</li>
<li class="file-stats">
<a href="#9793dd1547ea34424661d9ddf709809f7cf12b2e">
docs/manuals/man8/pkispawn.8.md
</a>
</li>
<li class="file-stats">
<a href="#e668169eff977c975629fa6d96a7a99610b4b714">
docs/upgrade/README.adoc
</a>
</li>
<li class="file-stats">
<a href="#9e84c14b66eee4958f2edbab96d9411519e8af18">
<span class="new-file">
+
docs/upgrade/v11.9/Upgrading-PKI-Database.adoc
</span>
</a>
</li>
<li class="file-stats">
<a href="#10568f6f8934a52ea1bd84025c146d979c0531ac">
<span class="new-file">
+
docs/upgrade/v11.9/upgrading-est-configuration.adoc
</span>
</a>
</li>
<li class="file-stats">
<a href="#015440366155c150a79f40f17eb5b719952361e8">
<span class="new-file">
+
docs/user/tools/Generating-CSR/Generating-Certificate-Request-with-CRMFPopClient.adoc
</span>
</a>
</li>
<li class="file-stats">
<a href="#1f78882cebe2d794e88e76d10649715949193388">
<span class="new-file">
+
docs/user/tools/Generating-CSR/Generating-Certificate-Request-with-NSS.adoc
</span>
</a>
</li>
<li class="file-stats">
<a href="#77a375c68aa19d1d3ea77320f86a1f7aa7e86b63">
<span class="new-file">
+
docs/user/tools/Generating-CSR/Generating-Certificate-Request-with-OpenSSL.adoc
</span>
</a>
</li>
<li class="file-stats">
<a href="#746c89e7b65e37a73de10abb9688bf5b878f095b">
<span class="new-file">
+
docs/user/tools/Generating-CSR/Generating-Certificate-Request-with-PKCS10Client.adoc
</span>
</a>
</li>
<li class="file-stats">
<a href="#82bc5c307de75465c60726d319ce7b1c7c7dd982">
<span class="new-file">
+
docs/user/tools/Generating-CSR/Generating-Certificate-Request-with-PKI-NSS.adoc
</span>
</a>
</li>
<li class="file-stats">
<a href="#075cbeb9f198caa336ff87e6e544f320567c2c02">
<span class="new-file">
+
docs/user/tools/Generating-CSR/Generating-Certificate-Request.adoc
</span>
</a>
</li>
<li class="file-stats">
<a href="#fccf5639324af22ba8d6bca44b1c7b097e9cded4">
<span class="new-file">
+
docs/user/tools/Getting-KRA-Transport-Certificate.adoc
</span>
</a>
</li>
<li class="file-stats">
<a href="#1ca30ad1f0d7b94f142c75624179fa231833076c">
<span class="new-file">
+
docs/user/tools/PKI-CLI.adoc
</span>
</a>
</li>
<li class="file-stats">
<a href="#4b5d9141b1e3dd6c47f18a46cb91cfd383efb78c">
<span class="new-file">
+
docs/user/tools/PKI-Client-CLI.adoc
</span>
</a>
</li>
<li class="file-stats">
<a href="#cf05803be10a9675c83f85cf0f4fbd75e1cdfd1c">
<span class="new-file">
+
docs/user/tools/PKI-NSS-CLI.adoc
</span>
</a>
</li>
<li class="file-stats">
<a href="#72a53164cd78d4255a69b18412d317d6a882b3d5">
<span class="new-file">
+
docs/user/tools/PKI-NSS-Certificate-CLI.adoc
</span>
</a>
</li>
<li class="file-stats">
<a href="#344120095def907584a357028e4342be4dd5e96a">
<span class="new-file">
+
docs/user/tools/PKI-NSS-Key-CLI.adoc
</span>
</a>
</li>
<li class="file-stats">
<a href="#e395ea9a9a891b7c860c9cbc0f2e3eb00ccdb65a">
<span class="new-file">
+
docs/user/tools/Submitting-Certificate-Request-with-Key-Archival.adoc
</span>
</a>
</li>
<li class="file-stats">
<a href="#e54a64222ef7468b9b7069d8c40b5d0112b56731">
<span class="new-file">
+
docs/user/tools/Submitting-Certificate-Request.adoc
</span>
</a>
</li>
<li class="file-stats">
<a href="#d2d9d6d938aa4717a01a26921aebc36cccd2a89a">
docs/user/tools/Using-PKI-CA-Certificate-CLI.adoc
</a>
</li>
<li class="file-stats">
<a href="#62cca7e310fbc871f9497911d2164958c5f3d4a5">
pki.spec
</a>
</li>
<li class="file-stats">
<a href="#442292b8a7efeabbe4cc176709b833b1792140ec">
pom.xml
</a>
</li>
<li class="file-stats">
<a href="#0c83e4297930063cb9e1eb267ce0c8161085a44d">
tests/README.adoc
</a>
</li>
<li class="file-stats">
<a href="#d4a0af2b6af576bdbc548e2e74d5e181e3572012">
<span class="new-file">
+
tests/ansible/ansible.cfg
</span>
</a>
</li>
<li class="file-stats">
<a href="#961a0400a62a48d3181df3a4be77d3cf2832e3e6">
<span class="new-file">
+
tests/ansible/est/README.md
</span>
</a>
</li>
<li class="file-stats">
<a href="#99d3b2bfe2a198b5ede45f0d14d45bce4d4385e8">
<span class="new-file">
+
tests/ansible/est/defaults/main.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#c84c7a03089d0cfee9c2eeb433a40b91202bd382">
<span class="new-file">
+
tests/ansible/est/handlers/main.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#00e4f3d9d1936e3ba054dbfde824ce386e198e63">
<span class="new-file">
+
tests/ansible/est/meta/main.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#80f8b326768d9a58535cb2fda57f3620dad6d282">
<span class="new-file">
+
tests/ansible/est/tasks/main.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#412eec4afacf377270ecfe5b6c02bf0e71be9978">
<span class="new-file">
+
tests/ansible/est/tests/inventory
</span>
</a>
</li>
<li class="file-stats">
<a href="#dfdb18862d3fcb56ffb77b6589b88078a7af463f">
<span class="new-file">
+
tests/ansible/est/tests/test.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#80817835a296c2e00a605fef21b7920f28e1293f">
<span class="new-file">
+
tests/ansible/est/vars/main.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#1f3c3441aa17d18d89fce9b9e999030206860aed">
<span class="new-file">
+
tests/ansible/ocsp/README.md
</span>
</a>
</li>
<li class="file-stats">
<a href="#caf780f1cb4985aef20e5a8066a2e4a856175e1d">
<span class="new-file">
+
tests/ansible/ocsp/defaults/main.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#ef635b44127dc39f4aed7f728a7b937cf9144921">
<span class="new-file">
+
tests/ansible/ocsp/handlers/main.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#54079a1575e1489a5a59b50221efc6cbaae3afdb">
<span class="new-file">
+
tests/ansible/ocsp/meta/main.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#7fd9c9bb45cf2a8a81cff5a8ef9799fec413afc2">
<span class="new-file">
+
tests/ansible/ocsp/tasks/certificate_self_validation_with_crl.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#421e0d5839e68d74d568e67ee80ea3d604cea74c">
<span class="new-file">
+
tests/ansible/ocsp/tasks/main.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#a04794942fc35fe87506fd68b2a2890cec23416f">
<span class="new-file">
+
tests/ansible/ocsp/tests/inventory
</span>
</a>
</li>
<li class="file-stats">
<a href="#93a9065de0cd351be018eab1788ba99d090545d7">
<span class="new-file">
+
tests/ansible/ocsp/tests/test.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#0f98b0132775539c9392fe11eba0c113e44d87b6">
<span class="new-file">
+
tests/ansible/ocsp/vars/main.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#a56220f89510dcac88d0f33eca0042831414d07a">
<span class="new-file">
+
tests/ansible/pki-playbook.yml
</span>
</a>
</li>
<li class="file-stats">
<a href="#417e6a61a25dccd881f5d3cd8e3ffd902ac0439c">
<span class="new-file">
+
tests/ansible/requirements.txt
</span>
</a>
</li>
<li class="file-stats">
<a href="#c98417d706c045433f4a14001a4fc5564ab8a8f7">
tests/bin/ds-artifacts-save.sh
</a>
</li>
<li class="file-stats">
<a href="#a8df94ba32bd727176d1f093368a13d7ec89c3c2">
tests/bin/ds-container-certs-import.sh
→
tests/bin/ds-certs-import.sh
</a>
</li>
<li class="file-stats">
<a href="#0d3205c12ae986a37a1239edc35f41aeda5144b1">
<span class="deleted-file">
−
tests/bin/ds-container-create.sh
</span>
</a>
</li>
<li class="file-stats">
<a href="#3a202f37d9369983d2502bc07ae7397de735af2a">
<span class="deleted-file">
−
tests/bin/ds-container-remove.sh
</span>
</a>
</li>
<li class="file-stats">
<a href="#c2098b8c76d69be26ec9634614d7e00e5f71f7fd">
<span class="deleted-file">
−
tests/bin/ds-container-start.sh
</span>
</a>
</li>
<li class="file-stats">
<a href="#cbff0b7a9bae236ac9808ba52cc7e28232f6e1fe">
<span class="deleted-file">
−
tests/bin/ds-container-stop.sh
</span>
</a>
</li>
<li class="file-stats">
<a href="#32df0460cf2cf5b92229e700497b87dc238c4dda">
tests/bin/ds-create.sh
</a>
</li>
<li class="file-stats">
<a href="#b0d5cbb1ac6cd3573ea65223e09333c048e736ac">
tests/bin/ds-remove.sh
</a>
</li>
<li class="file-stats">
<a href="#55b5bff8c5d54e23ddff8f412cb89137c7f94934">
<span class="new-file">
+
tests/bin/ds-start.sh
</span>
</a>
</li>
<li class="file-stats">
<a href="#4234907bdb1e4fab4c587518e1c790e76cd91d1a">
<span class="new-file">
+
tests/bin/ds-stop.sh
</span>
</a>
</li>
<li class="file-stats">
<a href="#c36f6841d9b5b4bd44bec9f1534e1e2dc8597438">
<span class="deleted-file">
−
tests/bin/init-workflow.sh
</span>
</a>
</li>
<li class="file-stats">
<a href="#e05882e317a707f0a9e8ddd1beb11bdf57fd6b18">
tests/bin/ipa-artifacts-save.sh
</a>
</li>
<li class="file-stats">
<a href="#cba59dc95c4dd5171e9d18c22c3b67471259801a">
tests/bin/ipa-test.sh
</a>
</li>
<li class="file-stats">
<a href="#0ed823c736dd9f9e910c22c9429955d8e516cab3">
tests/bin/pki-artifacts-save.sh
</a>
</li>
<li class="file-stats">
<a href="#f26b04061bbcac57cfc3f5c08636e43fce3d3616">
<span class="new-file">
+
tests/bin/pki-info.py
</span>
</a>
</li>
<li class="file-stats">
<a href="#a13fb84ecc6130104ee32bbcd314cd4798be1653">
tests/bin/pki-lint
→
tests/bin/python-flake8.sh
</a>
</li>
<li class="file-stats">
<a href="#c061e640743fd475c60f6351ee7739f6a5b33f89">
<span class="new-file">
+
tests/bin/python-lint.sh
</span>
</a>
</li>
<li class="file-stats">
<a href="#fdfdca45963a40219d64fbcda4e25def97ffa796">
<span class="deleted-file">
−
tests/bin/rpminspect.sh
</span>
</a>
</li>
<li class="file-stats">
<a href="#0023652ca2e7f0d52029775e387facd40d321ddf">
tests/bin/runner-init.sh
</a>
</li>
<li class="file-stats">
<a href="#b960b93ee0e659a43ebfe4edae96397e2b1f8527">
<span class="new-file">
+
tests/bin/test-init.sh
</span>
</a>
</li>
<li class="file-stats">
<a href="#9dd3624bca1b4192fb57ffdb05e9d039556707ae">
tests/bin/test-sslserver-cert-ext.sh
</a>
</li>
<li class="file-stats">
<a href="#0022fd4f91364879a3b9ea48bae6e812b312e2d4">
tests/bin/test-sslserver-csr-ext.sh
</a>
</li>
<li class="file-stats">
<a href="#e70dba29c0438d554b62a9ec194fa04c736bfc5a">
tests/ca/bin/ca-agent-cert-create.sh
</a>
</li>
<li class="file-stats">
<a href="#519883b98feaeb0a52c656504a3b3b9985600065">
tests/ca/bin/ca-agent-cert-revoke.sh
</a>
</li>
<li class="file-stats">
<a href="#c3a340f47de7a1537fef98a3e418d8d335e48578">
tests/ca/bin/ca-agent-cert-unrevoke.sh
</a>
</li>
<li class="file-stats">
<a href="#4b3b0370f21f8314d271b56a81b0338d0fb39e1b">
tests/ca/bin/ca-agent-create.sh
</a>
</li>
<li class="file-stats">
<a href="#b889c0239965d5bb9cfa4c28590b6a3ecfc09169">
<span class="new-file">
+
tests/ca/bin/ca-cert-next-range.sh
</span>
</a>
</li>
<li class="file-stats">
<a href="#9e6af4ac89cfa74701a5a2dad1096aa9872da966">
<span class="new-file">
+
tests/ca/bin/ca-cert-range-config.sh
</span>
</a>
</li>
<li class="file-stats">
<a href="#aee2bfd904da238f38474cb5b8f64a39602cfd44">
<span class="new-file">
+
tests/ca/bin/ca-cert-range-objects.sh
</span>
</a>
</li>
<li class="file-stats">
<a href="#5a006cdc5607bf4fe1de5b7cd0b5994ae33b3ea3">
<span class="new-file">
+
tests/ca/bin/ca-replica-next-range.sh
</span>
</a>
</li>
<li class="file-stats">
<a href="#d931dd3b6355f26a431ee8d846ea38d1dd40cd12">
<span class="new-file">
+
tests/ca/bin/ca-replica-range-config.sh
</span>
</a>
</li>
<li class="file-stats">
<a href="#cb09a8d54cd8b7381fcb98ee6e3c8a7685ff158f">
<span class="new-file">
+
tests/ca/bin/ca-replica-range-objects.sh
</span>
</a>
</li>
<li class="file-stats">
<a href="#8f9410852c3e1c4d0768f1492e789a703581da0d">
<span class="new-file">
+
tests/ca/bin/ca-request-next-range.sh
</span>
</a>
</li>
<li class="file-stats">
<a href="#3b211ba9f814ff13e6fb424b1f60ede72aebc317">
<span class="new-file">
+
tests/ca/bin/ca-request-range-config.sh
</span>
</a>
</li>
<li class="file-stats">
<a href="#dd8b7cdb43186d27cd26202a39e93430bb01391a">
<span class="new-file">
+
tests/ca/bin/ca-request-range-objects.sh
</span>
</a>
</li>
<li class="file-stats">
<a href="#f73fc2bbca77633b45e7a4edd222d5e2fc35e446">
<span class="new-file">
+
tests/ca/bin/pki-ca-cert-find.py
</span>
</a>
</li>
<li class="file-stats">
<a href="#3d6c4fb69ec0e5125445b64c3c6ea20bbc74696b">
<span class="new-file">
+
tests/ca/bin/pki-ca-cert-request-find.py
</span>
</a>
</li>
<li class="file-stats">
<a href="#ad5c2e4f72364650a20b176f8adc9f29a931036b">
<span class="new-file">
+
tests/ca/bin/pki-ca-cert-request-template-find.py
</span>
</a>
</li>
<li class="file-stats">
<a href="#17a9ef6188e46f6b38fd17a29eea90dee724ccdd">
<span class="new-file">
+
tests/ca/bin/pki-ca-cert-request-template-show.py
</span>
</a>
</li>
<li class="file-stats">
<a href="#30e2ea7e0d728a85905b96c489fb4bfcc0f3e17f">
<span class="new-file">
+
tests/ca/bin/pki-ca-user-find.py
</span>
</a>
</li>
<li class="file-stats">
<a href="#79dd7a01a05162b0278ae2359396fe85c0aa5807">
<span class="new-file">
+
tests/ca/bin/sslserver-create.sh
</span>
</a>
</li>
<li class="file-stats">
<a href="#908a0989d238edec27e467d18673c7f581be6d29">
tests/ca/bin/test-ca-auditor-cert.sh
</a>
</li>
<li class="file-stats">
<a href="#552dd211435c28dc2197079eea4b6e3d29068d78">
tests/ca/bin/test-ca-auditor-create.sh
</a>
</li>
<li class="file-stats">
<a href="#bd28cdc4fd7be1543ec0d44ef472be614a39819e">
tests/ca/bin/test-ca-auditor-logs.sh
</a>
</li>
<li class="file-stats">
<a href="#96c6cec5c39f5335b96f9fcbd691be8354344047">
tests/ca/bin/test-ca-certs.sh
</a>
</li>
<li class="file-stats">
<a href="#0ec637e8af4800ae9b63f4bab44970046890d56b">
tests/ca/bin/test-ca-signing-cert-ext.sh
</a>
</li>
<li class="file-stats">
<a href="#481bf35b3ccd22a480b724befc2e1448903e5efe">
tests/ca/bin/test-ca-signing-cert.sh
</a>
</li>
<li class="file-stats">
<a href="#5443bf34c4a973997d577e3f81dc84a49b7f48e0">
tests/ca/bin/test-ca-signing-csr-ext.sh
</a>
</li>
<li class="file-stats">
<a href="#e897d2d8d6c3efce0673799c3975294e69c7a5b2">
<span class="new-file">
+
tests/ca/bin/test-ms-subca-signing-cert-ext.sh
</span>
</a>
</li>
<li class="file-stats">
<a href="#1c1f431734b2ec2e402e78e19ff1e002d9ab15d5">
tests/ca/bin/test-subca-signing-cert-ext.sh
</a>
</li>
<li class="file-stats">
<a href="#896c7edc865f5780048ec92468ce817b9e185e1a">
tests/ca/bin/test-subca-signing-csr-ext.sh
</a>
</li>
<li class="file-stats">
<a href="#8175ccb868b7faa1605669b2946e57811aa33c58">
tests/ca/bin/test-subsystem-cert.sh
</a>
</li>
<li class="file-stats">
<a href="#845044ebc42c3d36abd198cf62fac3490eb37333">
tests/dogtag/acceptance/install-tests/ca-installer.sh
</a>
</li>
<li class="file-stats">
<a href="#08ea960debf6238b8d3a9c0f02a0baf2b3788eaa">
tests/dogtag/dev_java_tests/run_junit_tests.sh
</a>
</li>
<li class="file-stats">
<a href="#be5dac82dc5b84738bb8bbab482151bd8657810a">
<span class="deleted-file">
−
tests/dogtag/dev_java_tests/src/BeakerTestSuite.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#cca31046388529d53e7da98b85a29969978203b0">
<span class="deleted-file">
−
tests/dogtag/dev_java_tests/src/com/netscape/beakertests/CATestJunit.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#ea013eb2bdd860892293bf2cebdbd3290a18a402">
<span class="deleted-file">
−
tests/dogtag/dev_java_tests/src/com/netscape/beakertests/PKIJUnitTest.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#848ab16992e2ee617649d21dd4ee16c2f9cd6b46">
<span class="deleted-file">
−
tests/dogtag/dev_java_tests/src/com/netscape/beakertests/PKITestSuite.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#1acfe972dc2c61517e9f840d588ddfb5d395211f">
<span class="deleted-file">
−
tests/dogtag/dev_java_tests/src/com/netscape/beakertests/SampleTest1.java
</span>
</a>
</li>
<li class="file-stats">
<a href="#c12ea5ce10400840cab7174c81aa27330459436c">
tests/dogtag/pytest-ansible/installation/roles/Test_Execution/tasks/configure_shared.yml
</a>
</li>
<li class="file-stats">
<a href="#7a3f4cc1d30efe433b10b2099e61f176cc6cdab5">
tests/dogtag/pytest-ansible/pki/testlib/common/utils.py
</a>
</li>
<li class="file-stats">
<a href="#10a73e275253529e95cfe6d0b53837ad7282d183">
tests/dogtag/pytest-ansible/pytest/banner/test_banner_cli.py
</a>
</li>
<li class="file-stats">
<a href="#afcc739586c4765a698697c2b0f64235b272037b">
tests/dogtag/pytest-ansible/requirements.txt
</a>
</li>
<li class="file-stats">
<a href="#984333bba15b856d6388674f1ea2a20a72a4fdc5">
tests/dogtag/shared/env.sh
</a>
</li>
<li class="file-stats">
<a href="#29dec6285c85847ec06742f876b5a58f9dfef1b1">
tests/dogtag/shared/java/argparser/ArgParser.java
</a>
</li>
<li class="file-stats">
<a href="#95e1b210980714402e448a677c4370d5bb842852">
tests/dogtag/shared/java/common/ComCrypto.java
</a>
</li>
<li class="file-stats">
<a href="#ec27d681f6e622532a743173f2b2194daf2d1785">
tests/dogtag/shared/java/http/HTTPClient.java
</a>
</li>
<li class="file-stats">
<a href="#fd396c9e7d47ad76468ed445949de83d82e71f25">
<span class="new-file">
+
tests/kra/bin/kra-replica-next-range.sh
</span>
</a>
</li>
<li class="file-stats">
<a href="#102941030d9ad738655ddba79a90ddb30a07a6aa">
<span class="new-file">
+
tests/kra/bin/kra-replica-range-config.sh
</span>
</a>
</li>
<li class="file-stats">
<a href="#b749af8b6d5c7a5c855df0736d0bfbaefba698d6">
<span class="new-file">
+
tests/kra/bin/kra-replica-range-objects.sh
</span>
</a>
</li>
<li class="file-stats">
<a href="#19d248fbb60af0f5c40b16b457c1aa19b664496b">
<span class="new-file">
+
tests/kra/bin/pki-kra-key-archive.py
</span>
</a>
</li>
<li class="file-stats">
<a href="#768d3506c001bbbeeee65c7440a7144562a02d46">
<span class="new-file">
+
tests/kra/bin/pki-kra-key-find.py
</span>
</a>
</li>
<li class="file-stats">
<a href="#00e59e8dce9b4d04520a0c2b047a1e29bbc863dc">
<span class="new-file">
+
tests/kra/bin/pki-kra-key-mod.py
</span>
</a>
</li>
<li class="file-stats">
<a href="#7cb0e740daaf7da5a8af303717fe2ad485e8431d">
<span class="new-file">
+
tests/kra/bin/pki-kra-key-request-find.py
</span>
</a>
</li>
<li class="file-stats">
<a href="#e00e120bc97819e7fe148772c7662576f71dcaf3">
<span class="new-file">
+
tests/kra/bin/pki-kra-key-retrieve.py
</span>
</a>
</li>
<li class="file-stats">
<a href="#3dfbe18344970a42680f4cb35aff1f421490ca67">
<span class="new-file">
+
tests/kra/bin/pki-kra-user-find.py
</span>
</a>
</li>
<li class="file-stats">
<a href="#485f96e87b04823a30c2a8772d6932d9842d7a4f">
tests/kra/bin/test-cert-key-archival.sh
</a>
</li>
<li class="file-stats">
<a href="#f086bc4c60fd919c860bdc666388763773f1b736">
tests/pki-rpminspect.yaml
</a>
</li>
<li class="file-stats">
<a href="#1e7417468b6edd5c69dbc59f1b164715fa10cabc">
tests/tox.ini
</a>
</li>
<li class="file-stats">
<a href="#86b07fe1fa6a2e93549fcb9f1f8b120f20f1be2c">
themes/dogtag/CMakeLists.txt
</a>
</li>
<li class="file-stats">
<a href="#484efd8e9316af3f951235415f3efe9e939c6e06">
themes/dogtag/common-ui/CMakeLists.txt
</a>
</li>
<li class="file-stats">
<a href="#9fcc301b264979bb6ebb95e2b9e7a5a684ef11b7">
<span class="deleted-file">
−
themes/dogtag/common-ui/shared/esc/demo/logo.jpg
</span>
</a>
</li>
<li class="file-stats">
<a href="#2eff591eb162362633251fb7b82474028162ff64">
<span class="deleted-file">
−
themes/dogtag/common-ui/shared/esc/demo/style.css
</span>
</a>
</li>
<li class="file-stats">
<a href="#d3f59561b09c852c3d5de5e44f83d09a7caa63d0">
<span class="deleted-file">
−
themes/dogtag/common-ui/shared/esc/home/logo.jpg
</span>
</a>
</li>
<li class="file-stats">
<a href="#2b02ebdadd4c696200cd0a6ff013c9e462a9480f">
<span class="deleted-file">
−
themes/dogtag/common-ui/shared/esc/home/style.css
</span>
</a>
</li>
<li class="file-stats">
<a href="#0e724b0801505f21583124e50d048abd704ce254">
<span class="deleted-file">
−
themes/dogtag/common-ui/shared/esc/images/BannerBackground.gif
</span>
</a>
</li>
<li class="file-stats">
<a href="#91eaaeb602cc05526298d28a28cca5e957bbbde0">
<span class="deleted-file">
−
themes/dogtag/common-ui/shared/esc/images/ContinueButton.gif
</span>
</a>
</li>
<li class="file-stats">
<a href="#cf2e4b7432d433417c747b02f6fd61cb404290e2">
<span class="deleted-file">
−
themes/dogtag/common-ui/shared/esc/images/NetKey-Small.gif
</span>
</a>
</li>
<li class="file-stats">
<a href="#2ccea0692c8e12672dc0ffa41c15ab8ba51bfcfb">
<span class="deleted-file">
−
themes/dogtag/common-ui/shared/esc/images/NetKeyInsert.gif
</span>
</a>
</li>
<li class="file-stats">
<a href="#f730cb2f778dc45052ec9a8c7802307837ba7379">
<span class="deleted-file">
−
themes/dogtag/common-ui/shared/esc/images/NetKeyLogo.gif
</span>
</a>
</li>
<li class="file-stats">
<a href="#770378c6faa18472bc241aeb625e85b6b6f1ca20">
<span class="deleted-file">
−
themes/dogtag/common-ui/shared/esc/images/NetKeyPair.gif
</span>
</a>
</li>
<li class="file-stats">
<a href="#4e73774dd2edc3af18d3a070d4f60fc5847580f4">
<span class="deleted-file">
−
themes/dogtag/common-ui/shared/esc/images/NetKeyProgress.gif
</span>
</a>
</li>
<li class="file-stats">
<a href="#ec79086827c1e7eb91a9a46766d6a6d1529723b5">
<span class="deleted-file">
−
themes/dogtag/common-ui/shared/esc/images/NetKeyQuestionMark.gif
</span>
</a>
</li>
<li class="file-stats">
<a href="#c08df40a2806dd63ae259673f9d2685c7a10f9c6">
<span class="deleted-file">
−
themes/dogtag/common-ui/shared/esc/images/PadLock.gif
</span>
</a>
</li>
<li class="file-stats">
<a href="#4cf15ccb986c5314daae0f8b9fc99e43f2ee1218">
<span class="deleted-file">
−
themes/dogtag/common-ui/shared/esc/images/PurchaseButton.gif
</span>
</a>
</li>
<li class="file-stats">
<a href="#28a943dac839db56088c54fc2e693713b47a4549">
<span class="deleted-file">
−
themes/dogtag/common-ui/shared/esc/images/ReactivateButton.gif
</span>
</a>
</li>
<li class="file-stats">
<a href="#b946d6cfdd37702127ec2e63937b758c3e397a58">
<span class="deleted-file">
−
themes/dogtag/common-ui/shared/esc/images/ReleaseButton.gif
</span>
</a>
</li>
<li class="file-stats">
<a href="#1a3a45baf0602f027a52809adfa3fdab5f1a6047">
<span class="deleted-file">
−
themes/dogtag/common-ui/shared/esc/images/SecureButton.gif
</span>
</a>
</li>
<li class="file-stats">
<a href="#5d98db0693b1a821e300de8e7361b304b8925f34">
<span class="deleted-file">
−
themes/dogtag/common-ui/shared/esc/images/SuspendButton.gif
</span>
</a>
</li>
<li class="file-stats">
<a href="#b51f7c2a46678c2e4e321ffbc011b72b9a6dd17b">
<span class="deleted-file">
−
themes/dogtag/common-ui/shared/esc/images/TryAgainButton.gif
</span>
</a>
</li>
<li class="file-stats">
<a href="#c2b16da0d616d74eb1989b6b6fa048328231674d">
<span class="deleted-file">
−
themes/dogtag/common-ui/shared/esc/images/bg.jpg
</span>
</a>
</li>
<li class="file-stats">
<a href="#a52b08f4e58bca6996efc5097d2f56afdf0e12f0">
<span class="deleted-file">
−
themes/dogtag/common-ui/shared/esc/images/logo.gif
</span>
</a>
</li>
<li class="file-stats">
<a href="#18e001b04098a43d9d5ba6164ebd0db41e0fa5e2">
<span class="deleted-file">
−
themes/dogtag/common-ui/shared/esc/so/images/indicator.gif
</span>
</a>
</li>
<li class="file-stats">
<a href="#2e84da879b6ed04d0fbed86ff7f706838ef35faf">
<span class="deleted-file">
−
themes/dogtag/common-ui/shared/esc/so/images/logo.gif
</span>
</a>
</li>
<li class="file-stats">
<a href="#2c0e2351da2c8c28dc4c32ef1df03e8acd802315">
<span class="deleted-file">
−
themes/dogtag/common-ui/shared/esc/so/logo.jpg
</span>
</a>
</li>
<li class="file-stats">
<a href="#06602e520d06424f71f84f6104a61681f232de1e">
<span class="deleted-file">
−
themes/dogtag/common-ui/shared/esc/so/style.css
</span>
</a>
</li>
<li class="file-stats">
<a href="#37d42932b4539c0c89b38b84182c3e825c27754c">
<span class="deleted-file">
−
themes/dogtag/common-ui/shared/esc/sow/css/style.css
</span>
</a>
</li>
<li class="file-stats">
<a href="#60f757df3980942bb4035711e846daadb30c1b1b">
<span class="deleted-file">
−
themes/dogtag/common-ui/shared/esc/sow/images/indicator.gif
</span>
</a>
</li>
<li class="file-stats">
<a href="#98244e022be9907f99218bfd6d8f9bcfeaff5a9d">
<span class="deleted-file">
−
themes/dogtag/common-ui/shared/esc/sow/images/logo.gif
</span>
</a>
</li>
<li class="file-stats">
<a href="#a816c80d72c99e465bd2dc3adcf6b81313830dd1">
<span class="deleted-file">
−
themes/dogtag/common-ui/shared/esc/sow/logo.jpg
</span>
</a>
</li>
<li class="file-stats">
<a href="#655313b6d5ee37cb60033baab26681913142ecb1">
<span class="deleted-file">
−
themes/dogtag/common-ui/shared/esc/sow/style.css
</span>
</a>
</li>
<li class="file-stats">
<a href="#92f2d3695240173a7c1d83f54b627f620eb20788">
<span class="deleted-file">
−
themes/dogtag/common-ui/shared/esc/style.css
</span>
</a>
</li>
<li class="file-stats">
<a href="#4fe1b95001e6b1bf922c794863c25f629077d450">
<span class="deleted-file">
−
themes/dogtag/common-ui/shared/fonts/fontawesome-webfont.woff
</span>
</a>
</li>
<li class="file-stats">
<a href="#5701bd164a40bd6ab755830eda1a0f6f39c652d8">
themes/dogtag/console-ui/src/CMakeLists.txt
</a>
</li>
<li class="file-stats">
<a href="#49863bd10e2c686d73b873648ae35042df183c36">
tools/update-jquery.sh
</a>
</li>
<li class="file-stats">
<a href="#a229fe0fa97ed4cd492ff5253fdaff7bb8a37ab1">
tools/update-patternfly.sh
</a>
</li>
<li class="file-stats">
<a href="#a91c079915881997214fbfc43d3f3563b6fe7849">
update_version.sh
</a>
</li>
</ul>
<h5 style="margin-top: 10px; margin-bottom: 10px; font-size: .875rem;">
The diff was not included because it is too large.
</h5>
</div>
<div class="footer" style="margin-top: 10px;">
<p style="font-size: small; color: #626168;">
—
<br>
<a href="https://salsa.debian.org/freeipa-team/dogtag-pki/-/compare/a0080a4b75a42868531c929ca9e90e9631dff823...62dd9877126c40909f57358d09ebd9ec44ee357c">View it on GitLab</a>.
<br>
You're receiving this email because of your account on <a target="_blank" rel="noopener noreferrer" href="https://salsa.debian.org">salsa.debian.org</a>. <a href="https://salsa.debian.org/-/profile/notifications" target="_blank" rel="noopener noreferrer" class="mng-notif-link">Manage all notifications</a> · <a href="https://salsa.debian.org/help" target="_blank" rel="noopener noreferrer" class="help-link">Help</a>
<span style="color: transparent; font-size: 0; display: none; overflow: hidden; opacity: 0; width: 0; height: 0; max-width: 0; max-height: 0;">
Notification message regarding https://salsa.debian.org/freeipa-team/dogtag-pki/-/compare/a0080a4b75a42868531c929ca9e90e9631dff823...62dd9877126c40909f57358d09ebd9ec44ee357c at 1790494732
</span>
</p>
</div>
</body>
</html>