pki-tps - Certificate System - Token Processing Service

Property Value
Distribution Fedora 27
Repository Fedora x86_64
Package filename pki-tps-10.4.8-5.fc27.x86_64.rpm
Package name pki-tps
Package version 10.4.8
Package release 5.fc27
Package architecture x86_64
Package type rpm
Homepage -
License -
Maintainer -
Download size 729.66 KB
Installed size 1.77 MB
The Token Processing System (TPS) is an optional PKI subsystem that acts
as a Registration Authority (RA) for authenticating and processing
enrollment requests, PIN reset requests, and formatting requests from
the Enterprise Security Client (ESC).
TPS is designed to communicate with tokens that conform to
Global Platform's Open Platform Specification.
TPS communicates over SSL with various PKI backend subsystems (including
the Certificate Authority (CA), the Key Recovery Authority (KRA), and the
Token Key Service (TKS)) to fulfill the user's requests.
TPS also interacts with the token database, an LDAP server that stores
information about individual tokens.
The utility "tpsclient" is a test tool that interacts with TPS.  This
tool is useful to test TPS server configs without risking an actual
smart card.
Certificate System (CS) is an enterprise software system designed
to manage enterprise Public Key Infrastructure (PKI) deployments.
PKI Core contains ALL top-level java-based Tomcat PKI components:
* pki-symkey
* pki-base
* pki-base-python2 (alias for pki-base)
* pki-base-python3
* pki-base-java
* pki-tools
* pki-server
* pki-ca
* pki-kra
* pki-ocsp
* pki-tks
* pki-tps
* pki-javadoc
which comprise the following corresponding PKI subsystems:
* Certificate Authority (CA)
* Key Recovery Authority (KRA)
* Online Certificate Status Protocol (OCSP) Manager
* Token Key Service (TKS)
* Token Processing Service (TPS)
Python clients need only install the pki-base package.  This
package contains the python REST client packages and the client
upgrade framework.
Java clients should install the pki-base-java package.  This package
contains the legacy and REST Java client packages.  These clients
should also consider installing the pki-tools package, which contain
native and Java-based PKI tools and utilities.
Certificate Server instances require the fundamental classes and
modules in pki-base and pki-base-java, as well as the utilities in
pki-tools.  The main server classes are in pki-server, with subsystem
specific Java classes and resources in pki-ca, pki-kra, pki-ocsp etc.
Finally, if Certificate System is being deployed as an individual or
set of standalone rather than embedded server(s)/service(s), it is
strongly recommended (though not explicitly required) to include at
least one PKI Theme package:
* dogtag-pki-theme (Dogtag Certificate System deployments)
* dogtag-pki-server-theme
* redhat-pki-server-theme (Red Hat Certificate System deployments)
* redhat-pki-server-theme
* customized pki theme (Customized Certificate System deployments)
* <customized>-pki-server-theme
NOTE:  As a convenience for standalone deployments, top-level meta
packages may be provided which bind a particular theme to
these certificate server packages.


Package Version Architecture Repository
pki-tps-10.5.12-1.fc27.x86_64.rpm 10.5.12 x86_64 Fedora Updates
pki-tps-10.5.12-1.fc27.i686.rpm 10.5.12 i686 Fedora Updates
pki-tps-10.4.8-5.fc27.i686.rpm 10.4.8 i686 Fedora
pki-tps - - -


Name Value
java-1.8.0-openjdk-headless - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
nss-tools >= 3.28.3
openldap-clients -
pki-server = 10.4.8-5.fc27
pki-symkey = 10.4.8-5.fc27
rtld(GNU_HASH) -
systemd-units -


Name Value - -
pki-tps = 10.4.8-5.fc27
pki-tps(x86-64) = 10.4.8-5.fc27
pki-tps-client -
pki-tps-tomcat -


Name Value
pki-tps-client -
pki-tps-tomcat -


Type URL
Binary Package pki-tps-10.4.8-5.fc27.x86_64.rpm
Source Package pki-core-10.4.8-5.fc27.src.rpm

Install Howto

Install pki-tps rpm package:

# dnf install pki-tps




2017-08-21 - Dogtag Team <> 10.4.8-5
- dogtagpki Pagure Issue #2671 - Access Banner Validation (edewata)
2017-08-03 - Fedora Release Engineering <> - 10.4.8-4
- Rebuilt for
2017-07-27 - Fedora Release Engineering <> - 10.4.8-3
- Rebuilt for
2017-06-19 - Dogtag Team <> 10.4.8-2
- dogtagpki Pagure Issue #2721 - Key recovery using externalReg fails
with java null pointer exception on KRA (vakwetu)
- dogtagpki Pagure Issue #2737 - CMC: check HTTPS client
authentication cert against CMC signer (cfu)
- dogtagpki Pagure Issue #2741 - Unable to find keys in the p12 file
after deleting the any of the subsystem certs from it (ftweedal)
- dogtagpki Pagure Issue #2745 - Platform Dependent Python Import (cheimes)
2017-06-12 - Dogtag Team <> 10.4.8-1
- dogtagpki Pagure Issue #2540 - Creating symmetric key (sharedSecret)
using tkstool is failing when operating system is in FIPS mode. (jmagne)
- dogtagpki Pagure Issue #2617 - Allow CA to process pre-signed CMC
non-signing certificate requests (cfu)
- dogtagpki Pagure Issue #2619 - Allow CA to process pre-signed CMC
revocation non-signing cert requests (cfu)
- dogtagpki Pagure Issue #2643 - Session timeout for PKI console
- dogtagpki Pagure Issue #2719 - change the way aes clients refer to
aes keysets (vakwetu)
- dogtagpki Pagure Issue #2722 - dont reuse IVs in the CMC code
- dogtagpki Pagure Issue #2728 - In keywrap mode, key recovery on
KRA with HSM causes KRA to crash (ftweedal)
2017-06-05 - Dogtag Team <> 10.4.7-1
- Require "selinux-policy-targeted >= 3.13.1-159" as a runtime requirement
- Require "tomcatjss >= 7.2.3" as a build and runtime requirement
- dogtagpki Pagure Issue #1663 - Add SCP03 support (jmagne)
- dogtagpki Pagure Issue #2556 - pkispawn fails to create PKI subsystem
on FIPS enabled system (edewata)
- dogtagpki Pagure Issue #2674 - CA brought down during separate KRA
instance creation (edewata)
- dogtagpki Pagure Issue #2676 - pkispawn fails occasionally with this
- dogtagpki Pagure Issue #2687 - Upgrade script for keepAliveTimeout
parameter (edewata)
- dogtagpki Pagure Issue #2707 - SubCA installation failure with 2 step
installation in fips enabled mode (edewata)
- dogtagpki Pagure Issue #2713 - Build failure due to Pylint issues (cheimes)
- dogtagpki Pagure Issue #2714 - Classpath problem while trying to run pki
CLI (edewata)
- dogtagpki Pagure Issue #2717 - Certificate import using pki
client-cert-import is asking for password when already provided (edewata)
- dogtagpki Pagure Issue #2721 - Key recovery using externalReg fails with
java null pointer exception on KRA (vakwetu)
- dogtagpki Pagure Issue #2726 - client-cert-import --ca-cert should import
CA cert with trust bits "CT,C,C" (edewata)
2017-05-30 - Dogtag Team <> 10.4.6-1
- dogtagpki Pagure Issue #2540 - Creating symmetric key (sharedSecret)
using tkstool is failing when operating system is in FIPS mode. (jmagne)
- dogtagpki Pagure Issue #2651 - Adding CRL_GENERATION audit event.
- dogtagpki Pagure Issue #2660 - CA Server installation with HSM fails
- dogtagpki Pagure Issue #2699 - Enabling all subsystems on startup
- dogtagpki Pagure Issue #2710 - Key recovery on token fails because
key record is not marked encrypted (vakwetu)
- dogtagpki Pagure Issue #2711 - LWCA creation fails (ftweedal)

See Also

Package Description
pki-usgov-dod-cacerts-0.0.6-7.fc27.noarch.rpm A collection of U.S. Government CA Certs that the DOD uses
pkpgcounter-3.50-12.fc27.noarch.rpm Computes number of pages or quantity of ink needed to print documents
pl-7.4.2-3.fc27.i686.rpm SWI-Prolog - Edinburgh compatible Prolog compiler
pl-7.4.2-3.fc27.x86_64.rpm SWI-Prolog - Edinburgh compatible Prolog compiler
pl-compat-yap-devel-7.4.2-3.fc27.i686.rpm Development files building YAP application against SWI Prolog
pl-compat-yap-devel-7.4.2-3.fc27.x86_64.rpm Development files building YAP application against SWI Prolog
pl-devel-7.4.2-3.fc27.i686.rpm Development files for SWI Prolog
pl-devel-7.4.2-3.fc27.x86_64.rpm Development files for SWI Prolog
pl-doc-7.4.2-3.fc27.x86_64.rpm Documentation for SWI Prolog
pl-jpl-7.4.2-3.fc27.x86_64.rpm A bidirectional Prolog/Java interface for SWI Prolog
pl-odbc-7.4.2-3.fc27.x86_64.rpm SWI-Prolog ODBC interface
pl-static-7.4.2-3.fc27.i686.rpm Static library for SWI Prolog
pl-static-7.4.2-3.fc27.x86_64.rpm Static library for SWI Prolog
pl-xpce-7.4.2-3.fc27.x86_64.rpm A toolkit for developing graphical applications in Prolog
plague- Distributed build system for RPMs