Release Notes

4.2.2 - add Java API signHashedData

2020/06/24

java

  • Include signHashedData with key handle method;

4.2.1 - fix multipart decrypt

2020/06/18

libclient

  • fix multipart decrypt error;

4.2.0 - use SHA256 in authenticode signature

2020/06/02

libclient

  • fix EC key size in bits

csp

  • Include add/remove container APIs;

  • Increase max container count;

  • use SHA256 in authenticode (old Windows versions have no support)

general

  • use SHA256 in authenticode

4.1.6 - Review PIX request lock

2020/04/29

libclient

  • improve locking for pix apis

  • use pix catalog v1.4 default signature

4.1.5 - new hash and hmac functions for java and .net

2020/04/23

libclient

  • Fix get host by name handling;

  • Improve logs in pix request;

  • Include SHA3 docs;

  • Change PIX sign default to RNS;

dotnet

  • Include new PIX POST errors;

  • Fix SignPIX flag name;

  • Include new HASH and HMAC abstractions;

java

  • Include new PIX POST errors;

  • Include new HASH and HMAC abstractions;

4.1.4 - Release PIX DICT APIs

2020/04/12

libclient

  • Include PIX HTTP connection refresh hsm objects configuration;

  • Include PIX DICT sign;/verify;

  • Include RNS (Relative Namespace) flag in sign XML;

  • Include RNS (Relative Namespace) flag in PIX sign/verify;

  • Implement PIX PUT;

java

  • Include PIX DICT sign;/verify;

  • Include RNS (Relative Namespace) flag in sign XML;

  • Include RNS (Relative Namespace) flag in PIX sign/verify;

  • Implement PIX PUT;

.net

  • Include PIX DICT sign;/verify;

  • Include RNS (Relative Namespace) flag in sign XML;

  • Include RNS (Relative Namespace) flag in PIX sign/verify;

  • Implement PIX PUT;

jca

  • Remove ECDH output key at object finalization;

4.1.3 - Revised OATH APIs

2020/03/26

libclient

  • Include FQN autodetect in sign/verify XML;

  • Include PIX request HSM/HTTP session details;

hsmcon

  • Fix invalid object name in export file;

.net

  • dotnet - Include DSignXml2

  • Include window param in OATHCheck

  • Include function GetNextOTP

  • Include GetHSMDate function

java

  • dotnet - Include DSignXml2

4.1.2 - Revised Pix Logs and return code

2020/03/18

libclient

  • Rename strings from SPI to PIX;

  • Specialize PIX Request error codes;

  • Improve PIX request logs;

  • Fix ignored request header in PIX request job;

.net

  • dotnet - Rename strings from SPI to PIX;

java

  • dotnet - Rename strings from SPI to PIX;

4.1.1 - Fix Assembly PIX GET, add GCM mode

2020/03/04

liblient

  • Fix OATH blob size check;

  • Include mode GCM to symmetric encryption operations;

assembly

  • Include no body handling for PIX GET;

4.1.0 - PIX Request API

2020/02/28

libclient

  • Implement API for PIX HTTP Requests (POST, GET, DELETE)

java

  • Implement API for PIX HTTP Requests (POST, GET, DELETE)

assembly

  • Implement API for PIX HTTP Requests (POST, GET, DELETE)

4.0.9 - SPI JWS Sign/Check

2020/02/14

libclient

  • add APIs for SPI Sign/Check JWS

java

  • add APIs for SPI Sign/Check JWS

  • include ECCDHwithSHA256KDF option for use in JCA;

.net

  • add APIs for SPI Sign/Check JWS

4.0.8 - SPI Sign/Verify

2020/02/05

libclient

  • add APIs for Sign/Verify XML Dsig ISO 20.002

  • deprecate DSignXml

  • add DSignXml2

java

  • add APIs for Sign/Verify XML Dsig ISO 20.002

.net

  • add APIs for Sign/Verify XML Dsig ISO 20.002

hsmcon

  • fix access denied when recovering Restricted Mode using ordinary user

4.0.7 - Fix hsmcon for Restricted Modes

2020/01/27

libclient

  • Update asymmetric key import/export standards;

  • Fix remove temporary key in destroy key;

  • Fix invalid key validity check order;

  • Include OATH blob v2 support;

hsmcon

  • Fix key size FQN len;

  • Fix GetInfo when mode is RM2/RM1;

pkcs#11

  • Remove temporary objects when closing session;

  • Include treatment for CKA_VALUE_LEN searches;

jca

  • Fix loaded state;

4.0.6 - minor fixes

2019/12/03

libcliente

  • fix invalid before date conversion;

  • fix connected user errors;

  • remove socket buffer;

pkcs #11

  • pkcs11 - Improve error handling in sign/verify;

4.0.5 - new search functions

2019/11/29

libclient

  • remove support for gzip compression in XML Sign

assembly

  • include ListCertAssociations abstraction;

  • add new search function;

java

  • fix J_DEncrypt;;

4.0.4 - OTP lookahead check

2019/10/31

libclient

  • include lookahead windows parameter in OTP check;

  • include log debug env var support;

  • add SPB ANY flag in operations;

  • include certificate autodetection in SPB activation;

  • fix missing SSL_SHA1_MD5 algorithm for legacy sign operation;

pkcs#11

  • fix invalid use of lock handle in finalize;

  • include log debug env var support;

csp

  • include log debug env var support;

jca

  • include log debug env var support;

  • implement get modulus;

  • fix compatibility issues with Java 10/11;

assemlby

  • new function to get data hash value;

  • add SPB ANY flag in operations;

hsmcon

  • include option to associate certificate and private key in import;

4.0.3 - New ECC signature options

2019/09/12

pkcs#11

  • include sign ECC legacy signature

  • include ECC signature X9.62 env var option;

java

  • Implement get random;

  • Implement ECDH x9.63;

4.0.2 - Curves ECX

2019/09/02

libclient

  • support ECX curves Ed25519 and Ed448

  • support EdDSA and XECDH

hsmcon

  • support ECX curves

4.0.1 - support for new restricted modes

2019/08/23

libclient

  • suppor for new Restricted Modes

  • support for firmware 4.x

  • include X9.62 EC_POINT public key extraction

  • implement offline signature verification

pkcs11

  • Implement CKA_EC_POINT;

3.2.18 - change Access Token APIs

2019/07/29

libclient

  • update Access Token API and structures;

  • implement new API DManageATokenCache;

java

  • update Access Token funcionality

Please note: there are important changes about use of Access Token API. Read the API documentation. If you have further questions contact manufacturer support.

3.2.17 - fix JCA

2019/06/25

jca

  • fix invalid RSA encryption ops

3.2.16 - ECDH Key Generation

2019/06/20

libclient

  • add ECDH key generation with KDF X9.63

3.2.15 - assembly activate and import CIP certificates

2019/05/31

assembly

  • Update SPBActivateCertificate and SPBImportCertificate for CIP certificates

3.2.14 - API to get next otp value

2019/05/28

libclient

  • add API to get next otp value, OATHGetNextOTP (depends on firmware version)

hsmcon

  • disable SLP in AIX builds

java

  • add API to get next otp value

3.2.12 - Update assembly SPB API

2019/05/15

assembly

  • Update SPBImportCertificate and SPBActivateCertificate

  • Fix function GetMapInfo

3.2.11 - update crypto library

2019/05/03

libclient

  • update crypto library

java

  • change release files permissions

  • include HSM stat info

hsmcon

  • include CIP option in SPB menu

3.2.10 - fix user name in sessions monitor

2019/03/14

hsmcon

  • fix monitor sessions truncated user name

  • fix monitor sessions user output

  • hardware log option

3.2.9 - SHA224

2019/02/28

libclient

  • include SHA224

  • include PKCS1.5 padding SHA224 OID support

  • fix invalid options in Mod_Stat_Get_Info

  • fix invalid offline hash return size value

  • fix wrap sym key invalid data size

  • fix invalid session key handle

java

  • include new J_DGetHsmInfo overloads

  • fix return data type of GetHSMInfo

  • include SHA224 support

  • include SHA224withRSA support

assembly

  • include DGetHsmInfo API in DinamoApi

  • include GetHSMCounterInfo method in DinamoClient

  • include DGenerateDUKPT in DinamoApi

  • include DGenerateBDKName in DinamoAPI

  • include gen BDK name and gen DUKPT abstractions

msi

  • move jni dll to system folder

3.2.8 - Improve J_DGetUserParameter

2019/02/14

java

  • Improve J_DGetUserParameter method

  • Include block/unblock abstractions

  • Include invalid login attempts abstractions

3.2.7 - change linux binary permissions

2018/12/11

libclient

  • linux permissions changed (other, group)

  • deprecate API ListObjsFilter

pkcs#11

  • fix treatment in C_Logout