Issues Resolved in 5.11.0

Internal Release December 2022

New Features

DSS-825 - Implement internal SNTP client instead of executing the NTP commands in TimeMonitor

DSS-1902 - Support for building on Java 11

DSS-2428 - Add support for specifying RSA public exponent also with P11NG crypto token

DSS-2450 - Add option for MSAuthCode signatures to replace existing signatures

DSS-2469 - Support for running the web tests against a remote SignServer (of any packaging type)

DSS-2478 - GCP KMS PKCS#11 support in SignServer based on P11NG

DSS-2491 - Add support for Ed25519 on Utimaco (HSM custom mode)

DSS-2500 - Add support for SHA384withECDSA and SHA512withECDSA in MRTDSODSigner

DSS-2517 - Rebranded SignServer CE UI theme

Improvements

DSS-1942 - Remove WildFly remoting output from when running AdminCLI

DSS-2289 - Include class name in error message for incorrect time source

DSS-2315 - Update BC deprecated reference

DSS-2383 - Remove worker name from error messages from SODProcessServlet

DSS-2492 - Web UI hardening

DSS-2499 - P11NG-tool uses deprecated "which" command

DSS-2501 - Synchronize default P11 library definitions with EJBCA

DSS-2505 - Add parameter to specify self-signed DN when generating key pair with P11NG-tool

DSS-2507 - Add TRUSTANCHORS property to AdES Signer template

DSS-2508 - Clarify input format for PlainSigner in legacy client-side hashing mode with RSASSA-PKCS1_v1.5

DSS-2511 - Move TimeMonitor Manual into the normal documentation

DSS-2514 - Detection of HSM vendor in P11NG

DSS-2516 - Upgrade BC to 1.72

DSS-2525 - Upgrade dependencies

Bug Fixes

DSS-1681 - Confusing error message with alias selector, noauth and key wrapping

DSS-1811 - SignClient can not be run from directory having a space character in its file name

DSS-1815 - SignDocument Command fails with CLIENTWS & WEBSERVICES protocols if host not specified

DSS-2270 - JWT Authorizer: "Unknown issuer" is incorrectly logged

DSS-2342 - Error 500 when you reload audit log page with empty value for "Displaying results" or "Entries per page"

DSS-2397 - NPE when not specifying signature algorithm and using ECDSA

DSS-2399 - NPE in JwtAuthorizer

DSS-2412- Configuring JwtAuthorizer with public key in PEM format instead of Base64 gives IllegalArgumentException instead of being listed as error

DSS-2455 - Failed key test results rendered as success message instead of failure message

DSS-2483 - EMBED_CRL is in wrong place in the PDF Signer document

DSS-2489 - Transitive dependency on older Bouncy Castle (1.64) not excluded/overridden

DSS-2496 - Can not remove global configuration properties with special characters using delete button

DSS-2503 - P11NG tool fails to generate self-signed cert for ECDSA keypair

DSS-2504 - P11NG-tool gives return code 0 with unknown key algorithm

DSS-2509 - Client HTTP interface relays on platform encoding for data submitted in URL encoded form

DSS-2523 - JArchiveSigner worker template missing in CE