Skip to content

Add v11.10.1 changes docs for ml-kem support - #5429

Merged
ladycfu merged 1 commit into
dogtagpki:masterfrom
ladycfu:changes-doc-v11-10-1
Sep 3, 2026
Merged

Add v11.10.1 changes docs for ml-kem support#5429
ladycfu merged 1 commit into
dogtagpki:masterfrom
ladycfu:changes-doc-v11-10-1

Conversation

@ladycfu

@ladycfu ladycfu commented Sep 1, 2026

Copy link
Copy Markdown
Contributor

Add Tools-Changes.adoc and Server-Changes.adoc under docs/changes/v11.10.1/ documenting PQC ml-kem support added in PKI 11.10.1:

  • hsmCompatVerify tools now support ML-DSA/ML-KEM (with focus on ml-kem) workflows
  • KRA supports ML-KEM key archival and recovery via pkispawn and CRMFPopClient

Assisted-by: Claude
IDM-8026

Summary by CodeRabbit

  • New Features
    • Added documentation for ML-KEM support in KRA key archival and recovery workflows.
    • Added a sample post-quantum deployment configuration for KRA.
    • Documented ML-KEM certificate enrollment support through CRMFPopClient.
    • Added documentation for enabling ML-DSA and ML-KEM workflows in HSM compatibility verification tools.

Add Tools-Changes.adoc and Server-Changes.adoc under
docs/changes/v11.10.1/ documenting PQC support added in PKI 11.10.1:
- hsmCompatVerify tools now support ML-DSA/ML-KEM workflows
- KRA supports ML-KEM key archival and recovery via pkispawn and CRMFPopClient

Assisted-by: Claude
IDM-8026
@coderabbitai

coderabbitai Bot commented Sep 1, 2026

Copy link
Copy Markdown

Review Change Stack

No actionable comments were generated in the recent review. 🎉

ℹ️ Recent review info
⚙️ Run configuration

Configuration used: defaults

Review profile: CHILL

Plan: Team

Run ID: c2969428-3908-44e6-91c0-4f54b649ffc9

📥 Commits

Reviewing files that changed from the base of the PR and between b644125 and 48ef25d.

📒 Files selected for processing (2)
  • docs/changes/v11.10.1/Server-Changes.adoc
  • docs/changes/v11.10.1/Tools-Changes.adoc

Included review availability: Your plan provides up to 4 included reviews per hour; 3 remain after this review.


📝 Walkthrough

Walkthrough

The changes add version 11.10.1 documentation for ML-KEM and ML-DSA support in KRA operations and for PQC workflows in HSM compatibility verification tools.

Changes

PQC Documentation

Layer / File(s) Summary
Document PQC support
docs/changes/v11.10.1/Server-Changes.adoc, docs/changes/v11.10.1/Tools-Changes.adoc
Documents ML-KEM certificate support, ML-DSA system certificates, the kra-pqc.cfg sample configuration, ML-KEM enrollment requests, and the --pqc option for HSM compatibility tools.

Estimated code review effort: 1 (Trivial) | ~3 minutes

Merge Risk: ⚪ Minimal · up to 48ef2

This localized documentation change adds ML-KEM support details without changing product behavior; no actionable merge-blocking risk remains after normal checks and review.

🚥 Pre-merge checks | ✅ 5
✅ Passed checks (5 passed)
Check name Status Explanation
Description Check ✅ Passed Check skipped - CodeRabbit’s high-level summary is enabled.
Title check ✅ Passed The title clearly identifies the addition of v11.10.1 change documentation and ML-KEM support, which matches the main changes in the pull request.
Docstring Coverage ✅ Passed No functions found in the changed files to evaluate docstring coverage. Skipping docstring coverage check. Docstring coverage is scoped to functions touched by this diff. Analyzed 0 functions across 0…
Linked Issues check ✅ Passed Check skipped because no linked issues were found for this pull request.
Out of Scope Changes check ✅ Passed Check skipped because no linked issues were found for this pull request.
Full details: Docstring Coverage

Explanation

No functions found in the changed files to evaluate docstring coverage. Skipping docstring coverage check. Docstring coverage is scoped to functions touched by this diff. Analyzed 0 functions across 0 files. (2 skipped: 2 unsupported.)

✨ Finishing Touches 💡 1
🛠️ Fix failing CI checks 💡
  • Create stacked PR
  • Commit on current branch
🧪 Generate unit tests (beta)
  • Create PR with unit tests

Thanks for using CodeRabbit! It's free for OSS, and your support helps us grow. If you like it, consider giving us a shout-out.

❤️ Share

Comment @coderabbitai help to get the list of available commands.

@edewata edewata left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

I think the CRMFPopClient section belongs to the Tools doc since it's part of the pki-tools package, but other than that it LGTM.

@ladycfu
ladycfu merged commit 1332c01 into dogtagpki:master Sep 3, 2026
187 of 207 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants