31#if !defined(POLARSSL_CONFIG_FILE)
34#include POLARSSL_CONFIG_FILE
38#if defined(POLARSSL_CIPHER_C)
42#if defined(POLARSSL_MD_C)
46#if defined(POLARSSL_X509_USE_C) || defined(POLARSSL_X509_CREATE_C)
50#define POLARSSL_ERR_OID_NOT_FOUND -0x002E
51#define POLARSSL_ERR_OID_BUF_TOO_SMALL -0x000B
56#define OID_ISO_MEMBER_BODIES "\x2a"
57#define OID_ISO_IDENTIFIED_ORG "\x2b"
58#define OID_ISO_CCITT_DS "\x55"
59#define OID_ISO_ITU_COUNTRY "\x60"
64#define OID_COUNTRY_US "\x86\x48"
65#define OID_ORG_RSA_DATA_SECURITY "\x86\xf7\x0d"
66#define OID_RSA_COMPANY OID_ISO_MEMBER_BODIES OID_COUNTRY_US \
67 OID_ORG_RSA_DATA_SECURITY
68#define OID_ORG_ANSI_X9_62 "\xce\x3d"
69#define OID_ANSI_X9_62 OID_ISO_MEMBER_BODIES OID_COUNTRY_US \
75#define OID_ORG_DOD "\x06"
76#define OID_ORG_OIW "\x0e"
77#define OID_OIW_SECSIG OID_ORG_OIW "\x03"
78#define OID_OIW_SECSIG_ALG OID_OIW_SECSIG "\x02"
79#define OID_OIW_SECSIG_SHA1 OID_OIW_SECSIG_ALG "\x1a"
80#define OID_ORG_CERTICOM "\x81\x04"
81#define OID_CERTICOM OID_ISO_IDENTIFIED_ORG OID_ORG_CERTICOM
82#define OID_ORG_TELETRUST "\x24"
83#define OID_TELETRUST OID_ISO_IDENTIFIED_ORG OID_ORG_TELETRUST
88#define OID_ORGANIZATION "\x01"
89#define OID_ISO_ITU_US_ORG OID_ISO_ITU_COUNTRY OID_COUNTRY_US OID_ORGANIZATION
91#define OID_ORG_GOV "\x65"
92#define OID_GOV OID_ISO_ITU_US_ORG OID_ORG_GOV
94#define OID_ORG_NETSCAPE "\x86\xF8\x42"
95#define OID_NETSCAPE OID_ISO_ITU_US_ORG OID_ORG_NETSCAPE
98#define OID_ID_CE OID_ISO_CCITT_DS "\x1D"
105#define OID_PKIX OID_ISO_IDENTIFIED_ORG OID_ORG_DOD "\x01\x05\x05\x07"
110#define OID_AT OID_ISO_CCITT_DS "\x04"
111#define OID_AT_CN OID_AT "\x03"
112#define OID_AT_SUR_NAME OID_AT "\x04"
113#define OID_AT_SERIAL_NUMBER OID_AT "\x05"
114#define OID_AT_COUNTRY OID_AT "\x06"
115#define OID_AT_LOCALITY OID_AT "\x07"
116#define OID_AT_STATE OID_AT "\x08"
117#define OID_AT_ORGANIZATION OID_AT "\x0A"
118#define OID_AT_ORG_UNIT OID_AT "\x0B"
119#define OID_AT_TITLE OID_AT "\x0C"
120#define OID_AT_POSTAL_ADDRESS OID_AT "\x10"
121#define OID_AT_POSTAL_CODE OID_AT "\x11"
122#define OID_AT_GIVEN_NAME OID_AT "\x2A"
123#define OID_AT_INITIALS OID_AT "\x2B"
124#define OID_AT_GENERATION_QUALIFIER OID_AT "\x2C"
125#define OID_AT_DN_QUALIFIER OID_AT "\x2E"
126#define OID_AT_PSEUDONYM OID_AT "\x41"
128#define OID_DOMAIN_COMPONENT "\x09\x92\x26\x89\x93\xF2\x2C\x64\x01\x19"
133#define OID_AUTHORITY_KEY_IDENTIFIER OID_ID_CE "\x23"
134#define OID_SUBJECT_KEY_IDENTIFIER OID_ID_CE "\x0E"
135#define OID_KEY_USAGE OID_ID_CE "\x0F"
136#define OID_CERTIFICATE_POLICIES OID_ID_CE "\x20"
137#define OID_POLICY_MAPPINGS OID_ID_CE "\x21"
138#define OID_SUBJECT_ALT_NAME OID_ID_CE "\x11"
139#define OID_ISSUER_ALT_NAME OID_ID_CE "\x12"
140#define OID_SUBJECT_DIRECTORY_ATTRS OID_ID_CE "\x09"
141#define OID_BASIC_CONSTRAINTS OID_ID_CE "\x13"
142#define OID_NAME_CONSTRAINTS OID_ID_CE "\x1E"
143#define OID_POLICY_CONSTRAINTS OID_ID_CE "\x24"
144#define OID_EXTENDED_KEY_USAGE OID_ID_CE "\x25"
145#define OID_CRL_DISTRIBUTION_POINTS OID_ID_CE "\x1F"
146#define OID_INIHIBIT_ANYPOLICY OID_ID_CE "\x36"
147#define OID_FRESHEST_CRL OID_ID_CE "\x2E"
152#define OID_NS_CERT OID_NETSCAPE "\x01"
153#define OID_NS_CERT_TYPE OID_NS_CERT "\x01"
154#define OID_NS_BASE_URL OID_NS_CERT "\x02"
155#define OID_NS_REVOCATION_URL OID_NS_CERT "\x03"
156#define OID_NS_CA_REVOCATION_URL OID_NS_CERT "\x04"
157#define OID_NS_RENEWAL_URL OID_NS_CERT "\x07"
158#define OID_NS_CA_POLICY_URL OID_NS_CERT "\x08"
159#define OID_NS_SSL_SERVER_NAME OID_NS_CERT "\x0C"
160#define OID_NS_COMMENT OID_NS_CERT "\x0D"
161#define OID_NS_DATA_TYPE OID_NETSCAPE "\x02"
162#define OID_NS_CERT_SEQUENCE OID_NS_DATA_TYPE "\x05"
167#define OID_PRIVATE_KEY_USAGE_PERIOD OID_ID_CE "\x10"
168#define OID_CRL_NUMBER OID_ID_CE "\x14"
173#define OID_ANY_EXTENDED_KEY_USAGE OID_EXTENDED_KEY_USAGE "\x00"
175#define OID_KP OID_PKIX "\x03"
176#define OID_SERVER_AUTH OID_KP "\x01"
177#define OID_CLIENT_AUTH OID_KP "\x02"
178#define OID_CODE_SIGNING OID_KP "\x03"
179#define OID_EMAIL_PROTECTION OID_KP "\x04"
180#define OID_TIME_STAMPING OID_KP "\x08"
181#define OID_OCSP_SIGNING OID_KP "\x09"
187#define OID_PKCS OID_RSA_COMPANY "\x01"
188#define OID_PKCS1 OID_PKCS "\x01"
189#define OID_PKCS5 OID_PKCS "\x05"
190#define OID_PKCS9 OID_PKCS "\x09"
191#define OID_PKCS12 OID_PKCS "\x0c"
196#define OID_PKCS1_RSA OID_PKCS1 "\x01"
197#define OID_PKCS1_MD2 OID_PKCS1 "\x02"
198#define OID_PKCS1_MD4 OID_PKCS1 "\x03"
199#define OID_PKCS1_MD5 OID_PKCS1 "\x04"
200#define OID_PKCS1_SHA1 OID_PKCS1 "\x05"
201#define OID_PKCS1_SHA224 OID_PKCS1 "\x0e"
202#define OID_PKCS1_SHA256 OID_PKCS1 "\x0b"
203#define OID_PKCS1_SHA384 OID_PKCS1 "\x0c"
204#define OID_PKCS1_SHA512 OID_PKCS1 "\x0d"
206#define OID_RSA_SHA_OBS "\x2B\x0E\x03\x02\x1D"
208#define OID_PKCS9_EMAIL OID_PKCS9 "\x01"
211#define OID_RSASSA_PSS OID_PKCS1 "\x0a"
212#define OID_MGF1 OID_PKCS1 "\x08"
217#define OID_DIGEST_ALG_MD2 OID_RSA_COMPANY "\x02\x02"
218#define OID_DIGEST_ALG_MD4 OID_RSA_COMPANY "\x02\x04"
219#define OID_DIGEST_ALG_MD5 OID_RSA_COMPANY "\x02\x05"
220#define OID_DIGEST_ALG_SHA1 OID_ISO_IDENTIFIED_ORG OID_OIW_SECSIG_SHA1
221#define OID_DIGEST_ALG_SHA224 OID_GOV "\x03\x04\x02\x04"
222#define OID_DIGEST_ALG_SHA256 OID_GOV "\x03\x04\x02\x01"
224#define OID_DIGEST_ALG_SHA384 OID_GOV "\x03\x04\x02\x02"
226#define OID_DIGEST_ALG_SHA512 OID_GOV "\x03\x04\x02\x03"
228#define OID_HMAC_SHA1 OID_RSA_COMPANY "\x02\x07"
233#define OID_DES_CBC OID_ISO_IDENTIFIED_ORG OID_OIW_SECSIG_ALG "\x07"
234#define OID_DES_EDE3_CBC OID_RSA_COMPANY "\x03\x07"
239#define OID_PKCS5_PBKDF2 OID_PKCS5 "\x0c"
240#define OID_PKCS5_PBES2 OID_PKCS5 "\x0d"
241#define OID_PKCS5_PBMAC1 OID_PKCS5 "\x0e"
246#define OID_PKCS5_PBE_MD2_DES_CBC OID_PKCS5 "\x01"
247#define OID_PKCS5_PBE_MD2_RC2_CBC OID_PKCS5 "\x04"
248#define OID_PKCS5_PBE_MD5_DES_CBC OID_PKCS5 "\x03"
249#define OID_PKCS5_PBE_MD5_RC2_CBC OID_PKCS5 "\x06"
250#define OID_PKCS5_PBE_SHA1_DES_CBC OID_PKCS5 "\x0a"
251#define OID_PKCS5_PBE_SHA1_RC2_CBC OID_PKCS5 "\x0b"
256#define OID_PKCS9_CSR_EXT_REQ OID_PKCS9 "\x0e"
261#define OID_PKCS12_PBE OID_PKCS12 "\x01"
263#define OID_PKCS12_PBE_SHA1_RC4_128 OID_PKCS12_PBE "\x01"
264#define OID_PKCS12_PBE_SHA1_RC4_40 OID_PKCS12_PBE "\x02"
265#define OID_PKCS12_PBE_SHA1_DES3_EDE_CBC OID_PKCS12_PBE "\x03"
266#define OID_PKCS12_PBE_SHA1_DES2_EDE_CBC OID_PKCS12_PBE "\x04"
267#define OID_PKCS12_PBE_SHA1_RC2_128_CBC OID_PKCS12_PBE "\x05"
268#define OID_PKCS12_PBE_SHA1_RC2_40_CBC OID_PKCS12_PBE "\x06"
276#define OID_EC_ALG_UNRESTRICTED OID_ANSI_X9_62 "\x02\01"
281#define OID_EC_ALG_ECDH OID_CERTICOM "\x01\x0c"
289#define OID_EC_GRP_SECP192R1 OID_ANSI_X9_62 "\x03\x01\x01"
293#define OID_EC_GRP_SECP224R1 OID_CERTICOM "\x00\x21"
297#define OID_EC_GRP_SECP256R1 OID_ANSI_X9_62 "\x03\x01\x07"
301#define OID_EC_GRP_SECP384R1 OID_CERTICOM "\x00\x22"
305#define OID_EC_GRP_SECP521R1 OID_CERTICOM "\x00\x23"
309#define OID_EC_GRP_SECP192K1 OID_CERTICOM "\x00\x1f"
313#define OID_EC_GRP_SECP224K1 OID_CERTICOM "\x00\x20"
317#define OID_EC_GRP_SECP256K1 OID_CERTICOM "\x00\x0a"
325#define OID_EC_BRAINPOOL_V1 OID_TELETRUST "\x03\x03\x02\x08\x01\x01"
328#define OID_EC_GRP_BP256R1 OID_EC_BRAINPOOL_V1 "\x07"
331#define OID_EC_GRP_BP384R1 OID_EC_BRAINPOOL_V1 "\x0B"
334#define OID_EC_GRP_BP512R1 OID_EC_BRAINPOOL_V1 "\x0D"
342#define OID_ANSI_X9_62_FIELD_TYPE OID_ANSI_X9_62 "\x01"
343#define OID_ANSI_X9_62_PRIME_FIELD OID_ANSI_X9_62_FIELD_TYPE "\x01"
348#define OID_ANSI_X9_62_SIG OID_ANSI_X9_62 "\x04"
349#define OID_ANSI_X9_62_SIG_SHA2 OID_ANSI_X9_62_SIG "\x03"
353#define OID_ECDSA_SHA1 OID_ANSI_X9_62_SIG "\x01"
358#define OID_ECDSA_SHA224 OID_ANSI_X9_62_SIG_SHA2 "\x01"
363#define OID_ECDSA_SHA256 OID_ANSI_X9_62_SIG_SHA2 "\x02"
368#define OID_ECDSA_SHA384 OID_ANSI_X9_62_SIG_SHA2 "\x03"
373#define OID_ECDSA_SHA512 OID_ANSI_X9_62_SIG_SHA2 "\x04"
402#if defined(POLARSSL_X509_USE_C) || defined(POLARSSL_X509_CREATE_C)
445 const char **oid,
size_t *olen );
447#if defined(POLARSSL_ECP_C)
468 const char **oid,
size_t *olen );
471#if defined(POLARSSL_MD_C)
505 const char **oid,
size_t *olen );
539#if defined(POLARSSL_CIPHER_C)
551#if defined(POLARSSL_PKCS12_C)
Configuration options (set of defines)
ecp_group_id
Domain parameters (curve, subgroup and generator) identifiers.
Generic message digest wrapper.
int oid_get_numeric_string(char *buf, size_t size, const asn1_buf *oid)
Translate an ASN.1 OID into its numeric representation (e.g.
int oid_get_oid_by_md(md_type_t md_alg, const char **oid, size_t *olen)
Translate md_type into hash algorithm OID.
int oid_get_ec_grp(const asn1_buf *oid, ecp_group_id *grp_id)
Translate NamedCurve OID into an EC group identifier.
int oid_get_sig_alg_desc(const asn1_buf *oid, const char **desc)
Translate SignatureAlgorithm OID into description.
int oid_get_oid_by_ec_grp(ecp_group_id grp_id, const char **oid, size_t *olen)
Translate EC group identifier into NamedCurve OID.
int oid_get_pk_alg(const asn1_buf *oid, pk_type_t *pk_alg)
Translate PublicKeyAlgorithm OID into pk_type.
int oid_get_sig_alg(const asn1_buf *oid, md_type_t *md_alg, pk_type_t *pk_alg)
Translate SignatureAlgorithm OID into md_type and pk_type.
int oid_get_oid_by_pk_alg(pk_type_t pk_alg, const char **oid, size_t *olen)
Translate pk_type into PublicKeyAlgorithm OID.
int oid_get_cipher_alg(const asn1_buf *oid, cipher_type_t *cipher_alg)
Translate encryption algorithm OID into cipher_type.
int oid_get_oid_by_sig_alg(pk_type_t pk_alg, md_type_t md_alg, const char **oid, size_t *olen)
Translate md_type and pk_type into SignatureAlgorithm OID.
int oid_get_pkcs12_pbe_alg(const asn1_buf *oid, md_type_t *md_alg, cipher_type_t *cipher_alg)
Translate PKCS#12 PBE algorithm OID into md_type and cipher_type.
int oid_get_attr_short_name(const asn1_buf *oid, const char **short_name)
Translate an X.509 attribute type OID into the short name (e.g.
int oid_get_md_alg(const asn1_buf *oid, md_type_t *md_alg)
Translate hash algorithm OID into md_type.
int oid_get_extended_key_usage(const asn1_buf *oid, const char **desc)
Translate Extended Key Usage OID into description.
int oid_get_x509_ext_type(const asn1_buf *oid, int *ext_type)
Translate an X.509 extension OID into local values.
Public Key abstraction layer.
pk_type_t
Public key types.
Type-length-value structure that allows for ASN1 using DER.
Base OID descriptor structure.
X.509 generic defines and structures.