Linux workstation

Debian 13 (Trixie) native package

opencryptoki

PKCS#11 implementation (daemon)

Packages / Debian 13 (Trixie) / admin / opencryptoki

[Source: opencryptoki]

Package: opencryptoki (3.23.0+dfsg-0.3+b2)

Maintainers:

Paulo Vital

External Resources:

Homepage: [github.com]

Similar packages:

PKCS#11 implementation (daemon)

Other Packages Related to opencryptoki:

  • dep: [adduser]

    add and remove users and groups

  • dep: [libopencryptoki0] (= 3.23.0+dfsg-0.3+b2)

    PKCS#11 implementation (library)

  • dep: [libc6] (>= 2.38)

    GNU C Library: Shared libraries

  • dep: [libcap2] (>= 1:2.10)

    POSIX 1003.1e capabilities (library)

  • dep: [libldap2] (>= 2.6.2)

    OpenLDAP libraries

  • dep: [libssl3t64] (>= 3.4.0)

    Secure Sockets Layer 工具包 - 共享库

Download opencryptoki

ArchitecturePackage SizeInstalled SizeFiles
amd64434 KiB1.6 MiB[list of files]
arm64385 KiB1.7 MiB[list of files]

Package file paths (59)

Paths come from the repository package-file index for the observed builds. They describe archive/package associations, not every file that will exist on a running system after maintainer scripts, alternatives, generated state, diversions, or installation choices.

  • /etc/init.d/pkcsslotd
  • /etc/opencryptoki/ccatok.conf
  • /etc/opencryptoki/opencryptoki.conf
  • /etc/opencryptoki/p11sak_defined_attrs.conf
  • /etc/opencryptoki/strength.conf
  • /usr/lib/aarch64-linux-gnu/opencryptoki/stdll/libpkcs11_cca.so
  • /usr/lib/aarch64-linux-gnu/opencryptoki/stdll/libpkcs11_icsf.so
  • /usr/lib/aarch64-linux-gnu/opencryptoki/stdll/libpkcs11_sw.so
  • /usr/lib/aarch64-linux-gnu/opencryptoki/stdll/libpkcs11_tpm.so
  • /usr/lib/aarch64-linux-gnu/opencryptoki/stdll/PKCS11_CCA.so
  • /usr/lib/aarch64-linux-gnu/opencryptoki/stdll/PKCS11_ICSF.so
  • /usr/lib/aarch64-linux-gnu/opencryptoki/stdll/PKCS11_SW.so
  • /usr/lib/aarch64-linux-gnu/opencryptoki/stdll/PKCS11_TPM.so
  • /usr/lib/aarch64-linux-gnu/pkcs11/libopencryptoki.so
  • /usr/lib/aarch64-linux-gnu/pkcs11/PKCS11_API.so
  • /usr/lib/systemd/system/pkcsslotd.service
  • /usr/lib/tmpfiles.d/opencryptoki.conf
  • /usr/lib/x86_64-linux-gnu/opencryptoki/stdll/libpkcs11_cca.so
  • /usr/lib/x86_64-linux-gnu/opencryptoki/stdll/libpkcs11_icsf.so
  • /usr/lib/x86_64-linux-gnu/opencryptoki/stdll/libpkcs11_sw.so
  • /usr/lib/x86_64-linux-gnu/opencryptoki/stdll/libpkcs11_tpm.so
  • /usr/lib/x86_64-linux-gnu/opencryptoki/stdll/PKCS11_CCA.so
  • /usr/lib/x86_64-linux-gnu/opencryptoki/stdll/PKCS11_ICSF.so
  • /usr/lib/x86_64-linux-gnu/opencryptoki/stdll/PKCS11_SW.so
  • /usr/lib/x86_64-linux-gnu/opencryptoki/stdll/PKCS11_TPM.so
  • /usr/lib/x86_64-linux-gnu/pkcs11/libopencryptoki.so
  • /usr/lib/x86_64-linux-gnu/pkcs11/PKCS11_API.so
  • /usr/sbin/p11sak
  • /usr/sbin/pkcscca
  • /usr/sbin/pkcsconf
  • /usr/sbin/pkcshsm_mk_change
  • /usr/sbin/pkcsicsf
  • /usr/sbin/pkcsslotd
  • /usr/sbin/pkcsstats
  • /usr/sbin/pkcstok_migrate
  • /usr/share/doc/opencryptoki/changelog.Debian.amd64.gz
  • /usr/share/doc/opencryptoki/changelog.Debian.arm64.gz
  • /usr/share/doc/opencryptoki/changelog.Debian.gz
  • /usr/share/doc/opencryptoki/changelog.gz
  • /usr/share/doc/opencryptoki/copyright
  • /usr/share/doc/opencryptoki/FAQ.gz
  • /usr/share/doc/opencryptoki/policy-example.conf.gz
  • /usr/share/doc/opencryptoki/README.md.gz
  • /usr/share/doc/opencryptoki/strength-example.conf
  • /usr/share/doc/opencryptoki/TODO.Debian
  • /usr/share/lintian/overrides/opencryptoki
  • /usr/share/man/man1/p11sak.1.gz
  • /usr/share/man/man1/pkcscca.1.gz
  • /usr/share/man/man1/pkcsconf.1.gz
  • /usr/share/man/man1/pkcshsm_mk_change.1.gz
  • /usr/share/man/man1/pkcsicsf.1.gz
  • /usr/share/man/man1/pkcsstats.1.gz
  • /usr/share/man/man1/pkcstok_migrate.1.gz
  • /usr/share/man/man5/opencryptoki.conf.5.gz
  • /usr/share/man/man5/p11sak_defined_attrs.conf.5.gz
  • /usr/share/man/man5/policy.conf.5.gz
  • /usr/share/man/man5/strength.conf.5.gz
  • /usr/share/man/man7/opencryptoki.7.gz
  • /usr/share/man/man8/pkcsslotd.8.gz

Field source: Debian 13 (Trixie) main amd64 revision trixie-main-amd64:3ab4e811cf4f3e5a335d382c58cc19d85f1abe7a4ef4689160ca1f637fa0e9b3

Use this package

OpenFactory can boot this operating system in a browser VM, or start a build that includes the native package name from this record.

Versions, suites, and repositories

Each row is recorded package-index metadata for one version, architecture, suite, and repository. Names, URLs, and sizes are source-reported; a link is a potentially mutable retrieval location, not an OpenFactory redistribution claim or proof that OpenFactory retained the artifact bytes.

VersionReleaseArchitectureRepositoryPackage sizeInstalled sizePublisher repository artifact
3.23.0+dfsg-0.3+b2trixie / mainamd64Debian 13 · main · amd64434 KiB1.6 MiBpool/main/o/opencryptoki/opencryptoki_3.23.0+dfsg-0.3+b2_amd64.deb
3.23.0+dfsg-0.3+b2trixie / mainarm64Debian 13 · main · arm64385 KiB1.7 MiBpool/main/o/opencryptoki/opencryptoki_3.23.0+dfsg-0.3+b2_arm64.deb

Field source: Debian 13 (Trixie) main amd64 revision trixie-main-amd64:3ab4e811cf4f3e5a335d382c58cc19d85f1abe7a4ef4689160ca1f637fa0e9b3

Checksums and observation dates

For an APT source, signature verification authenticates the repository metadata chain and the Packages index containing this source-reported artifact digest. It does not certify package safety.

3.23.0+dfsg-0.3+b2 / amd64Observed Sep 1, 2026 to Sep 1, 2026

Verification status: Metadata observed; artifact bytes were not independently fetched or hashed by this catalog import. The digest below is source-reported.

Source-reported sha256: a88dbc61dea654df06d6ab3444883f6b1374f4129563bcd1658fa8562ddce173

After downloading that exact artifact, compare its bytes with the source-reported expected digest:

printf '%s %s\n' 'a88dbc61dea654df06d6ab3444883f6b1374f4129563bcd1658fa8562ddce173' 'opencryptoki_3.23.0+dfsg-0.3+b2_amd64.deb' | sha256sum --check --strict -

A match establishes equality with the repository metadata value. It does not establish safety or catalog-side artifact retrieval.

Field source: Debian 13 (Trixie) main amd64 revision trixie-main-amd64:3ab4e811cf4f3e5a335d382c58cc19d85f1abe7a4ef4689160ca1f637fa0e9b3

3.23.0+dfsg-0.3+b2 / arm64Observed Sep 1, 2026 to Sep 1, 2026

Verification status: Metadata observed; artifact bytes were not independently fetched or hashed by this catalog import. The digest below is source-reported.

Source-reported sha256: e3fb1e26b219a6f3473cfc0ce5ae3af43c3ec20916d567eafd06521d244925ea

After downloading that exact artifact, compare its bytes with the source-reported expected digest:

printf '%s %s\n' 'e3fb1e26b219a6f3473cfc0ce5ae3af43c3ec20916d567eafd06521d244925ea' 'opencryptoki_3.23.0+dfsg-0.3+b2_arm64.deb' | sha256sum --check --strict -

A match establishes equality with the repository metadata value. It does not establish safety or catalog-side artifact retrieval.

Field source: Debian 13 (Trixie) main arm64 revision trixie-main-arm64:753da751bbc7a679f48bd1b623ffd4479cb6861c426118284c76eb82909e4908

Catalog record completeness

The completeness score measures metadata coverage, not software quality, security, compatibility, or suitability.

Summary and description
25/25
Artifact path and source digest
25/25
Dependency metadata
15/15
Package-file index
15/15
Homepage
5/5
License text
0/5
Source package or maintainer
10/10

Recorded total: 95/100

Field source: Debian 13 (Trixie) main amd64 revision trixie-main-amd64:3ab4e811cf4f3e5a335d382c58cc19d85f1abe7a4ef4689160ca1f637fa0e9b3, Debian 13 (Trixie) main arm64 revision trixie-main-arm64:753da751bbc7a679f48bd1b623ffd4479cb6861c426118284c76eb82909e4908. The cross-OS mapping is catalog-derived from the source-reported homepage; it does not establish authorship or publisher identity

Sources and provenance

Field-source links above resolve here. Each source entry names the metadata publisher, trust tier, exact snapshot revision, signature result, and observation time; catalog-derived mappings are labeled separately.

  • Authoritative source; repository metadata signature verified, revision trixie-main-amd64:3ab4e811cf4f3e5a335d382c58cc19d85f1abe7a4ef4689160ca1f637fa0e9b3

    Signature verification covers the configured repository metadata chain. It does not certify that the package is safe or suitable.

    Repository-signature verification record
    Signed-object SHA-256
    98b25b5cd185c59d34aa6e4c3e9b5b8f01bbe9d104fe2dcfbcd30dc0a14a59ed
    Signer fingerprint
    4CB50190207B4758A3F73A796ED0E7B82643E131
    Keyring revision
    debian-archive-keyring.gpg
    SHA-256 506b815cbb32d9b6066b4a2aa524071e071761e7e7f68c3ac74f3061ba852017
    Tool and policy
    gpgv (GnuPG) 2.4.9
    openfactory-software-catalog-signature-v1
    Verification time
    Sep 1, 2026
    Signed Release → package-index hash linkage

    Path: main/binary-amd64/Packages.xz
    Expected SHA-256: 3ab4e811cf4f3e5a335d382c58cc19d85f1abe7a4ef4689160ca1f637fa0e9b3
    Observed SHA-256: 3ab4e811cf4f3e5a335d382c58cc19d85f1abe7a4ef4689160ca1f637fa0e9b3
    Result: match verified

  • Authoritative source; repository metadata signature verified, revision trixie-main-arm64:753da751bbc7a679f48bd1b623ffd4479cb6861c426118284c76eb82909e4908

    Signature verification covers the configured repository metadata chain. It does not certify that the package is safe or suitable.

    Repository-signature verification record
    Signed-object SHA-256
    98b25b5cd185c59d34aa6e4c3e9b5b8f01bbe9d104fe2dcfbcd30dc0a14a59ed
    Signer fingerprint
    4CB50190207B4758A3F73A796ED0E7B82643E131
    Keyring revision
    debian-archive-keyring.gpg
    SHA-256 506b815cbb32d9b6066b4a2aa524071e071761e7e7f68c3ac74f3061ba852017
    Tool and policy
    gpgv (GnuPG) 2.4.9
    openfactory-software-catalog-signature-v1
    Verification time
    Sep 1, 2026
    Signed Release → package-index hash linkage

    Path: main/binary-arm64/Packages.xz
    Expected SHA-256: 753da751bbc7a679f48bd1b623ffd4479cb6861c426118284c76eb82909e4908
    Observed SHA-256: 753da751bbc7a679f48bd1b623ffd4479cb6861c426118284c76eb82909e4908
    Result: match verified