Repository navigation
·
49 commits
to main
since this release
Immutable
release. Only release title and notes can be modified.
The 1.5.0 release was yanked but all of it's features (listed below) are included in 1.5.1.
Fixed in 1.5.1
- Add fallback to work more correctly even when installed with an incompatible cryptography version (this applies to users who do not specify the
cryptoextra) (#1205)
Added in 1.5.0
- Post-quantum ML-DSA (ML-DSA-44, ML-DSA-65, ML-DSA-87) support in
CryptoSigner,GCPSigner, andSSlibKey(#1124) - TKeySigner: Support Tillitis TKey hardware token as a ML-DSA-44
signer (URI schemetkey:) (#1149) - CryptoSigner: Support
ecdsa-sha2-nistp384andecdsa-sha2-nistp521
schemes in key generation and signing (#1181) - Named constants for key types and signing schemes in
signermodule (#1137)
Changed in 1.5.0
- HSMSigner: Switch backend library to
python-pkcs11(#1156) - HSMSigner: Allow token login during
import_()(#1109, #1156) - GitHub releases are now immutable (#1098, #1188)
Deprecated in 1.5.0
ecdsa-sha2-nistp256,ecdsa-sha2-nistp384, andecdsa-sha2-nistp521as
keytype values. Useecdsainstead. (#363, #1138)
Removed in 1.5.0
- Drop SHA-224 RSA schemes (
rsassa-pss-sha224andrsa-pkcs1v15-sha224) from
the default verification registry (#1171)