openCryptoki is a PKCS#11 Cryptographic Token Interface Standard
implementation.  It includes drivers and libraries to enable IBM cryptographic
hardware such as Trusted Computing Platform (TPM) cryptographic devices as well
as a software token for testing.
This package contains the daemon.


Install Howto

  1. Update the package index:
    # sudo apt-get update
  2. Install opencryptoki deb package:
    # sudo apt-get install opencryptoki




2017-06-27 - Paulo Vital <>
opencryptoki (3.7.0+dfsg-4) unstable; urgency=medium
* Fix broken links for libopencryptoki0. Closes: #866152, 640812
* Change to compat level 10.
* Update debian/rules with compat level 10 changes.
2017-06-20 - Paulo Vital <>
opencryptoki (3.7.0+dfsg-3) unstable; urgency=medium
* Add libitm1 as build dependency to restrict arch. Closes: #865315
2017-06-19 - Paulo Vital <>
opencryptoki (3.7.0+dfsg-2) unstable; urgency=medium
* Drop /etc/pkcs11 symlink. Closes: #864052
* Enable Hardening
* Update Standards-Version to 4.0.0
* Fix quilt-patch-missing-description in systemd-targets.patch
* Fix misspelling word in usr/lib/pkcs11/api/api_interfaces.c
* Overrides Lintian possible-gpl-code-linked-with-openssl since the
GPL code of the package is the debian files only.
* experimental-to-unstable
2017-05-26 - Paulo Vital <>
opencryptoki (3.7.0+dfsg-1) experimental; urgency=medium
* New upstream release.
* Updated debian/watch and script to get releases from git repository.
* Removed pacthes already applied upstream.
2017-03-09 - Paulo Vital <>
opencryptoki (3.6.2+dfsg-2) experimental; urgency=medium
* Add support to MultiArch (debhelper >=9)
* Fixed errors from Lintian
* New maintainer. Closes: #543925
2017-02-21 - Dimitri John Ledkov <>
opencryptoki (3.6.2+dfsg-1) experimental; urgency=medium
* New upstream release LP: #1666502
2017-01-03 - Dimitri John Ledkov <>
opencryptoki (3.6.1+dfsg-1) unstable; urgency=medium
* New upstream release.
* Drop cherry-picked patches, included in this release.
* Upload to unstable. Closes: #845729
2016-12-14 - Dimitri John Ledkov <>
opencryptoki (3.6+dfsg-2) experimental; urgency=medium
* Cherry-pick upstream patches for openssl 1.1 compat.
2016-11-28 - Dimitri John Ledkov <>
opencryptoki (3.6+dfsg-1) experimental; urgency=medium
* QA upload.
* New upstream release
* Refresh patches
* Set standards version to 3.9.8
2016-08-16 - Dimitri John Ledkov <>
opencryptoki (3.5+dfsg-2) unstable; urgency=medium
* QA upload.
* Updated systemd-tmpfiles debian/opencryptoki.tmpfiles snippet to
create TOK_OBJ per-token subdirectories with correct
permissions. Upstream should probably ship tmpfiles snippet. LP:
* Import upstream patches to create/validate lock & lib directories for
all tokens. LP: #1594386

