MainInclusionReportPkcs11Helper

Differences between revisions 7 and 8
Revision 7 as of 2008-07-10 18:56:04
Size: 3416
Editor: cpe-66-68-158-133
Comment: compliance
Revision 8 as of 2008-08-06 16:26:42
Size: 3431
Editor: localhost
Comment: converted to 1.6 markup
Deletions are marked like this. Additions are marked like this.
Line 6: Line 6:
   * source: [http://archive.ubuntu.com/ubuntu/pool/universe/p/pkcs11-helper/]    * source: [[http://archive.ubuntu.com/ubuntu/pool/universe/p/pkcs11-helper/]]
Line 13: Line 13:
  * [http://cve.mitre.org/cgi-bin/cvekey.cgi?keyword=pkcs11 cve entries]
  * [http://secunia.com/search/?search=pkcs11 Secunia history]: ...
  * [[http://cve.mitre.org/cgi-bin/cvekey.cgi?keyword=pkcs11|cve entries]]
  * [[http://secunia.com/search/?search=pkcs11|Secunia history]]: ...
Line 24: Line 24:
  * [http://bugs.debian.org/src:pkcs11-helper Debian bugs]: '''none'''
  * [http://packages.qa.debian.org/p/pkcs11-helper.html Debian activity] is '''calm''' ?
  * [http://www.opensc-project.org/pkcs11-helper/ Upstream activity] is '''calm''' ?
  * [http://www.opensc-project.org/pkcs11-helper/report Upstream bug tracker]: '''none'''
  * [[http://bugs.debian.org/src:pkcs11-helper|Debian bugs]]: '''none'''
  * [[http://packages.qa.debian.org/p/pkcs11-helper.html|Debian activity]] is '''calm''' ?
  * [[http://www.opensc-project.org/pkcs11-helper/|Upstream activity]] is '''calm''' ?
  * [[http://www.opensc-project.org/pkcs11-helper/report|Upstream bug tracker]]: '''none'''
Line 31: Line 31:
  * [http://www.pathname.com/fhs/ FHS], [http://www.de.debian.org/doc/debian-policy/ Debian Policy] compliance ? '''yes'''
  * [http://www.netfort.gr.jp/~dancer/column/libpkg-guide/libpkg-guide.html Debian library packaging guide] standards compliance ?
  * [[http://www.pathname.com/fhs/|FHS]], [[http://www.de.debian.org/doc/debian-policy/|Debian Policy]] compliance ? '''yes'''
  * [[http://www.netfort.gr.jp/~dancer/column/libpkg-guide/libpkg-guide.html|Debian library packaging guide]] standards compliance ?
Line 46: Line 46:
MIR bug: wiki:Bug:247336 MIR bug: Bug:247336

Main Inclusion Report for pkcs11-helper

Requirements

  1. Availability:

  2. Rationale:

  3. Security:

    • cve entries

    • Secunia history: ...

    • Any binaries running as root or suid/sgid? no, this is a library

    • Any daemons? no, this is a library

    • Network activity: does it open any port ? no

    • Does it handle incoming network data ? no

    • Does it directly (not through a library) process binary (video, audio, etc) or structured (PDF, etc) data ? no

    • Any source code review performed ? no

  4. Quality assurance:

    • In what situations does the package not work out of the box without configuration ? none

    • Does the package ask any debconf questions higher than priority 'medium' ? no

    • Debian bugs: none

    • Debian activity is calm ?

    • Upstream activity is calm ?

    • Upstream bug tracker: none

    • Hardware: Does this package deal with hardware and if so how exotic is it ? no

    • Is there a test suite in the upstream source or packaging ? yes Is it enabled to run in the build ?

  5. Standards compliance:

  6. Dependencies:

    • Build-Depends: cdbs (>= 0.4.27-1), debhelper (>= 5), autotools-dev, libssl-dev, pkg-config, doxygen

    • Depends: libpkcs11-helper1 (= ${binary:Version}), libssl-dev
    • Are these all in main ? yes

  7. Background information: Control file says:

    • Description: library that simplifies the interaction with PKCS#11 libpkcs11-helper is a library that simplifies the interaction with PKCS#11 providers for end-user applications. libpkcs11-helper allows using multiple PKCS#11 providers at the same time, enumerating available token certificates, or selecting a certificate directly by serialized id, handling card removal and card insert events, handling card re-insert to a different slot, supporting session expiration and much more all using a simple API. libpkcs11-helper is not designed to manage card content, since object attributes are usually vendor specific, and 99% of application need to access existing objects in order to perform signature and decryption.
    • What do upstream call this software ? pkcs11-helper Has it had different names in the past ? no

Reviewers

MIR bug: 247336

MainInclusionReportPkcs11Helper (last edited 2008-08-06 16:26:42 by localhost)