Product release ► EJBCA 3.9.3

21 December 2009 - Stockholm, Sweden

The PrimeKey EJBCA team is happy to announce that EJBCA 3.9.3 has been released! This is a minor release, packed with new minor features and fixes – 42 issues have been resolved.

Development continues beyond this version and all requests from the community [1] are scheduled for EJBCA 3.9.4 or later releases.

More information is available at the project web site [2] and the complete changelog can be viewed in the issue tracker [3].

EJBCA 3.9.3 Release Notes ►

  • New features:

    • Certificate profiles can now specify a different signature algorithm than the CA; useful to start migrating SHA1 CAs to issue SHA256 certificates.
    • Possibility to use part of user data in LDAP DN, but not in certificate DN, when publishing certificate to LDAP.
    • Possibility to set fixed end date of certificates in certificate profile and CA configuration.
    • Possibility to configure several notification services for expiring certificates, notifying at different times, e.g. 30 days, 7 days, etc.
    • GUI improvements to the admin GUI with nicer navigation menu and CSS. Contributed by Linagora, France.
    • Tested with Windows 7.
  • Bug fixes:

    • A regression in 3.9.2 where you could not upload files in the admin GUI, has been fixed.
    • ECC improvements and fixes for CAs and HSMs, CA renew keys, CA import, brainpool curves, explicit ec parameters, clientToolBox etc.
    • Cert-cvc: fixed rare possibility to get bad encoding of EC points in certificates. Contributed by DGBK, Netherlands.
    • CVC CA fixes and improvements for EAC PKI, approvals, import CAs, fix cli info command, .cvcert instead of .crt when downloading certs, etc.
    • EJBCA 3.9.3 no longer publishes certificates for inactive CA services to LDAP.
    • Fix so that renewing CA keys in admin GUI does not reload all CA tokens.
    • Fixed an OutOfMemory error when failing to publish large CRLs with connection closed error.
    • Fixed download issues with IE for exported CA keystores.
  • Several other minor features, fixes and improvements.
     

[1] http://www.primekey.se/Community/
[2] http://www.ejbca.org
[3] http://jira.primekey.se/browse/ECA


For more information, please contact:

Tomas Gustavsson, CTO, PrimeKey Solutions AB, tel.: +46 707 42 10 96, e-mail: tomas@primekey.se

 

EJBCA PKI by PrimeKey

All Releases