Internal Release December 2022
New Features
DSS-825 - Implement internal SNTP client instead of executing the NTP commands in TimeMonitor
DSS-1902 - Support for building on Java 11
DSS-2428 - Add support for specifying RSA public exponent also with P11NG crypto token
DSS-2450 - Add option for MSAuthCode signatures to replace existing signatures
DSS-2469 - Support for running the web tests against a remote SignServer (of any packaging type)
DSS-2478 - GCP KMS PKCS#11 support in SignServer based on P11NG
DSS-2491 - Add support for Ed25519 on Utimaco (HSM custom mode)
DSS-2500 - Add support for SHA384withECDSA and SHA512withECDSA in MRTDSODSigner
DSS-2517 - Rebranded SignServer CE UI theme
Improvements
DSS-1942 - Remove WildFly remoting output from when running AdminCLI
DSS-2289 - Include class name in error message for incorrect time source
DSS-2315 - Update BC deprecated reference
DSS-2383 - Remove worker name from error messages from SODProcessServlet
DSS-2492 - Web UI hardening
DSS-2499 - P11NG-tool uses deprecated "which" command
DSS-2501 - Synchronize default P11 library definitions with EJBCA
DSS-2505 - Add parameter to specify self-signed DN when generating key pair with P11NG-tool
DSS-2507 - Add TRUSTANCHORS property to AdES Signer template
DSS-2508 - Clarify input format for PlainSigner in legacy client-side hashing mode with RSASSA-PKCS1_v1.5
DSS-2511 - Move TimeMonitor Manual into the normal documentation
DSS-2514 - Detection of HSM vendor in P11NG
DSS-2516 - Upgrade BC to 1.72
DSS-2525 - Upgrade dependencies
Bug Fixes
DSS-1681 - Confusing error message with alias selector, noauth and key wrapping
DSS-1811 - SignClient can not be run from directory having a space character in its file name
DSS-1815 - SignDocument Command fails with CLIENTWS & WEBSERVICES protocols if host not specified
DSS-2270 - JWT Authorizer: "Unknown issuer" is incorrectly logged
DSS-2342 - Error 500 when you reload audit log page with empty value for "Displaying results" or "Entries per page"
DSS-2397 - NPE when not specifying signature algorithm and using ECDSA
DSS-2399 - NPE in JwtAuthorizer
DSS-2412- Configuring JwtAuthorizer with public key in PEM format instead of Base64 gives IllegalArgumentException instead of being listed as error
DSS-2455 - Failed key test results rendered as success message instead of failure message
DSS-2483 - EMBED_CRL is in wrong place in the PDF Signer document
DSS-2489 - Transitive dependency on older Bouncy Castle (1.64) not excluded/overridden
DSS-2496 - Can not remove global configuration properties with special characters using delete button
DSS-2503 - P11NG tool fails to generate self-signed cert for ECDSA keypair
DSS-2504 - P11NG-tool gives return code 0 with unknown key algorithm
DSS-2509 - Client HTTP interface relays on platform encoding for data submitted in URL encoded form
DSS-2523 - JArchiveSigner worker template missing in CE