You can not select more than 25 topics Topics must start with a chinese character,a letter or number, can include dashes ('-') and can be up to 35 characters long.

x509.h 68 kB

12345678910111213141516171819202122232425262728293031323334353637383940414243444546474849505152535455565758596061626364656667686970717273747576777879808182838485868788899091929394959697989910010110210310410510610710810911011111211311411511611711811912012112212312412512612712812913013113213313413513613713813914014114214314414514614714814915015115215315415515615715815916016116216316416516616716816917017117217317417517617717817918018118218318418518618718818919019119219319419519619719819920020120220320420520620720820921021121221321421521621721821922022122222322422522622722822923023123223323423523623723823924024124224324424524624724824925025125225325425525625725825926026126226326426526626726826927027127227327427527627727827928028128228328428528628728828929029129229329429529629729829930030130230330430530630730830931031131231331431531631731831932032132232332432532632732832933033133233333433533633733833934034134234334434534634734834935035135235335435535635735835936036136236336436536636736836937037137237337437537637737837938038138238338438538638738838939039139239339439539639739839940040140240340440540640740840941041141241341441541641741841942042142242342442542642742842943043143243343443543643743843944044144244344444544644744844945045145245345445545645745845946046146246346446546646746846947047147247347447547647747847948048148248348448548648748848949049149249349449549649749849950050150250350450550650750850951051151251351451551651751851952052152252352452552652752852953053153253353453553653753853954054154254354454554654754854955055155255355455555655755855956056156256356456556656756856957057157257357457557657757857958058158258358458558658758858959059159259359459559659759859960060160260360460560660760860961061161261361461561661761861962062162262362462562662762862963063163263363463563663763863964064164264364464564664764864965065165265365465565665765865966066166266366466566666766866967067167267367467567667767867968068168268368468568668768868969069169269369469569669769869970070170270370470570670770870971071171271371471571671771871972072172272372472572672772872973073173273373473573673773873974074174274374474574674774874975075175275375475575675775875976076176276376476576676776876977077177277377477577677777877978078178278378478578678778878979079179279379479579679779879980080180280380480580680780880981081181281381481581681781881982082182282382482582682782882983083183283383483583683783883984084184284384484584684784884985085185285385485585685785885986086186286386486586686786886987087187287387487587687787887988088188288388488588688788888989089189289389489589689789889990090190290390490590690790890991091191291391491591691791891992092192292392492592692792892993093193293393493593693793893994094194294394494594694794894995095195295395495595695795895996096196296396496596696796896997097197297397497597697797897998098198298398498598698798898999099199299399499599699799899910001001100210031004100510061007100810091010101110121013101410151016101710181019102010211022102310241025102610271028102910301031103210331034103510361037103810391040104110421043104410451046104710481049105010511052105310541055105610571058105910601061106210631064106510661067106810691070107110721073107410751076107710781079108010811082108310841085108610871088108910901091109210931094109510961097109810991100110111021103
  1. /*
  2. * WARNING: do not edit!
  3. * Generated by makefile from include\openssl\x509.h.in
  4. *
  5. * Copyright 1995-2022 The OpenSSL Project Authors. All Rights Reserved.
  6. * Copyright (c) 2002, Oracle and/or its affiliates. All rights reserved
  7. *
  8. * Licensed under the Apache License 2.0 (the "License"). You may not use
  9. * this file except in compliance with the License. You can obtain a copy
  10. * in the file LICENSE in the source distribution or at
  11. * https://www.openssl.org/source/license.html
  12. */
  13. #ifndef OPENSSL_X509_H
  14. #define OPENSSL_X509_H
  15. #pragma once
  16. #include <openssl/macros.h>
  17. #ifndef OPENSSL_NO_DEPRECATED_3_0
  18. #define HEADER_X509_H
  19. #endif
  20. #include <openssl/e_os2.h>
  21. #include <openssl/types.h>
  22. #include <openssl/symhacks.h>
  23. #include <openssl/buffer.h>
  24. #include <openssl/evp.h>
  25. #include <openssl/bio.h>
  26. #include <openssl/asn1.h>
  27. #include <openssl/safestack.h>
  28. #include <openssl/ec.h>
  29. #ifndef OPENSSL_NO_DEPRECATED_1_1_0
  30. #include <openssl/rsa.h>
  31. #include <openssl/dsa.h>
  32. #include <openssl/dh.h>
  33. #endif
  34. #include <openssl/sha.h>
  35. #include <openssl/x509err.h>
  36. #ifdef __cplusplus
  37. extern "C"
  38. {
  39. #endif
  40. /* Needed stacks for types defined in other headers */
  41. SKM_DEFINE_STACK_OF_INTERNAL(X509_NAME, X509_NAME, X509_NAME)
  42. #define sk_X509_NAME_num(sk) OPENSSL_sk_num(ossl_check_const_X509_NAME_sk_type(sk))
  43. #define sk_X509_NAME_value(sk, idx) ((X509_NAME*)OPENSSL_sk_value(ossl_check_const_X509_NAME_sk_type(sk), (idx)))
  44. #define sk_X509_NAME_new(cmp) ((STACK_OF(X509_NAME)*)OPENSSL_sk_new(ossl_check_X509_NAME_compfunc_type(cmp)))
  45. #define sk_X509_NAME_new_null() ((STACK_OF(X509_NAME)*)OPENSSL_sk_new_null())
  46. #define sk_X509_NAME_new_reserve(cmp, n) ((STACK_OF(X509_NAME)*)OPENSSL_sk_new_reserve(ossl_check_X509_NAME_compfunc_type(cmp), (n)))
  47. #define sk_X509_NAME_reserve(sk, n) OPENSSL_sk_reserve(ossl_check_X509_NAME_sk_type(sk), (n))
  48. #define sk_X509_NAME_free(sk) OPENSSL_sk_free(ossl_check_X509_NAME_sk_type(sk))
  49. #define sk_X509_NAME_zero(sk) OPENSSL_sk_zero(ossl_check_X509_NAME_sk_type(sk))
  50. #define sk_X509_NAME_delete(sk, i) ((X509_NAME*)OPENSSL_sk_delete(ossl_check_X509_NAME_sk_type(sk), (i)))
  51. #define sk_X509_NAME_delete_ptr(sk, ptr) ((X509_NAME*)OPENSSL_sk_delete_ptr(ossl_check_X509_NAME_sk_type(sk), ossl_check_X509_NAME_type(ptr)))
  52. #define sk_X509_NAME_push(sk, ptr) OPENSSL_sk_push(ossl_check_X509_NAME_sk_type(sk), ossl_check_X509_NAME_type(ptr))
  53. #define sk_X509_NAME_unshift(sk, ptr) OPENSSL_sk_unshift(ossl_check_X509_NAME_sk_type(sk), ossl_check_X509_NAME_type(ptr))
  54. #define sk_X509_NAME_pop(sk) ((X509_NAME*)OPENSSL_sk_pop(ossl_check_X509_NAME_sk_type(sk)))
  55. #define sk_X509_NAME_shift(sk) ((X509_NAME*)OPENSSL_sk_shift(ossl_check_X509_NAME_sk_type(sk)))
  56. #define sk_X509_NAME_pop_free(sk, freefunc) OPENSSL_sk_pop_free(ossl_check_X509_NAME_sk_type(sk), ossl_check_X509_NAME_freefunc_type(freefunc))
  57. #define sk_X509_NAME_insert(sk, ptr, idx) OPENSSL_sk_insert(ossl_check_X509_NAME_sk_type(sk), ossl_check_X509_NAME_type(ptr), (idx))
  58. #define sk_X509_NAME_set(sk, idx, ptr) ((X509_NAME*)OPENSSL_sk_set(ossl_check_X509_NAME_sk_type(sk), (idx), ossl_check_X509_NAME_type(ptr)))
  59. #define sk_X509_NAME_find(sk, ptr) OPENSSL_sk_find(ossl_check_X509_NAME_sk_type(sk), ossl_check_X509_NAME_type(ptr))
  60. #define sk_X509_NAME_find_ex(sk, ptr) OPENSSL_sk_find_ex(ossl_check_X509_NAME_sk_type(sk), ossl_check_X509_NAME_type(ptr))
  61. #define sk_X509_NAME_find_all(sk, ptr, pnum) OPENSSL_sk_find_all(ossl_check_X509_NAME_sk_type(sk), ossl_check_X509_NAME_type(ptr), pnum)
  62. #define sk_X509_NAME_sort(sk) OPENSSL_sk_sort(ossl_check_X509_NAME_sk_type(sk))
  63. #define sk_X509_NAME_is_sorted(sk) OPENSSL_sk_is_sorted(ossl_check_const_X509_NAME_sk_type(sk))
  64. #define sk_X509_NAME_dup(sk) ((STACK_OF(X509_NAME)*)OPENSSL_sk_dup(ossl_check_const_X509_NAME_sk_type(sk)))
  65. #define sk_X509_NAME_deep_copy(sk, copyfunc, freefunc) ((STACK_OF(X509_NAME)*)OPENSSL_sk_deep_copy(ossl_check_const_X509_NAME_sk_type(sk), ossl_check_X509_NAME_copyfunc_type(copyfunc), ossl_check_X509_NAME_freefunc_type(freefunc)))
  66. #define sk_X509_NAME_set_cmp_func(sk, cmp) ((sk_X509_NAME_compfunc)OPENSSL_sk_set_cmp_func(ossl_check_X509_NAME_sk_type(sk), ossl_check_X509_NAME_compfunc_type(cmp)))
  67. SKM_DEFINE_STACK_OF_INTERNAL(X509, X509, X509)
  68. #define sk_X509_num(sk) OPENSSL_sk_num(ossl_check_const_X509_sk_type(sk))
  69. #define sk_X509_value(sk, idx) ((X509*)OPENSSL_sk_value(ossl_check_const_X509_sk_type(sk), (idx)))
  70. #define sk_X509_new(cmp) ((STACK_OF(X509)*)OPENSSL_sk_new(ossl_check_X509_compfunc_type(cmp)))
  71. #define sk_X509_new_null() ((STACK_OF(X509)*)OPENSSL_sk_new_null())
  72. #define sk_X509_new_reserve(cmp, n) ((STACK_OF(X509)*)OPENSSL_sk_new_reserve(ossl_check_X509_compfunc_type(cmp), (n)))
  73. #define sk_X509_reserve(sk, n) OPENSSL_sk_reserve(ossl_check_X509_sk_type(sk), (n))
  74. #define sk_X509_free(sk) OPENSSL_sk_free(ossl_check_X509_sk_type(sk))
  75. #define sk_X509_zero(sk) OPENSSL_sk_zero(ossl_check_X509_sk_type(sk))
  76. #define sk_X509_delete(sk, i) ((X509*)OPENSSL_sk_delete(ossl_check_X509_sk_type(sk), (i)))
  77. #define sk_X509_delete_ptr(sk, ptr) ((X509*)OPENSSL_sk_delete_ptr(ossl_check_X509_sk_type(sk), ossl_check_X509_type(ptr)))
  78. #define sk_X509_push(sk, ptr) OPENSSL_sk_push(ossl_check_X509_sk_type(sk), ossl_check_X509_type(ptr))
  79. #define sk_X509_unshift(sk, ptr) OPENSSL_sk_unshift(ossl_check_X509_sk_type(sk), ossl_check_X509_type(ptr))
  80. #define sk_X509_pop(sk) ((X509*)OPENSSL_sk_pop(ossl_check_X509_sk_type(sk)))
  81. #define sk_X509_shift(sk) ((X509*)OPENSSL_sk_shift(ossl_check_X509_sk_type(sk)))
  82. #define sk_X509_pop_free(sk, freefunc) OPENSSL_sk_pop_free(ossl_check_X509_sk_type(sk), ossl_check_X509_freefunc_type(freefunc))
  83. #define sk_X509_insert(sk, ptr, idx) OPENSSL_sk_insert(ossl_check_X509_sk_type(sk), ossl_check_X509_type(ptr), (idx))
  84. #define sk_X509_set(sk, idx, ptr) ((X509*)OPENSSL_sk_set(ossl_check_X509_sk_type(sk), (idx), ossl_check_X509_type(ptr)))
  85. #define sk_X509_find(sk, ptr) OPENSSL_sk_find(ossl_check_X509_sk_type(sk), ossl_check_X509_type(ptr))
  86. #define sk_X509_find_ex(sk, ptr) OPENSSL_sk_find_ex(ossl_check_X509_sk_type(sk), ossl_check_X509_type(ptr))
  87. #define sk_X509_find_all(sk, ptr, pnum) OPENSSL_sk_find_all(ossl_check_X509_sk_type(sk), ossl_check_X509_type(ptr), pnum)
  88. #define sk_X509_sort(sk) OPENSSL_sk_sort(ossl_check_X509_sk_type(sk))
  89. #define sk_X509_is_sorted(sk) OPENSSL_sk_is_sorted(ossl_check_const_X509_sk_type(sk))
  90. #define sk_X509_dup(sk) ((STACK_OF(X509)*)OPENSSL_sk_dup(ossl_check_const_X509_sk_type(sk)))
  91. #define sk_X509_deep_copy(sk, copyfunc, freefunc) ((STACK_OF(X509)*)OPENSSL_sk_deep_copy(ossl_check_const_X509_sk_type(sk), ossl_check_X509_copyfunc_type(copyfunc), ossl_check_X509_freefunc_type(freefunc)))
  92. #define sk_X509_set_cmp_func(sk, cmp) ((sk_X509_compfunc)OPENSSL_sk_set_cmp_func(ossl_check_X509_sk_type(sk), ossl_check_X509_compfunc_type(cmp)))
  93. SKM_DEFINE_STACK_OF_INTERNAL(X509_REVOKED, X509_REVOKED, X509_REVOKED)
  94. #define sk_X509_REVOKED_num(sk) OPENSSL_sk_num(ossl_check_const_X509_REVOKED_sk_type(sk))
  95. #define sk_X509_REVOKED_value(sk, idx) ((X509_REVOKED*)OPENSSL_sk_value(ossl_check_const_X509_REVOKED_sk_type(sk), (idx)))
  96. #define sk_X509_REVOKED_new(cmp) ((STACK_OF(X509_REVOKED)*)OPENSSL_sk_new(ossl_check_X509_REVOKED_compfunc_type(cmp)))
  97. #define sk_X509_REVOKED_new_null() ((STACK_OF(X509_REVOKED)*)OPENSSL_sk_new_null())
  98. #define sk_X509_REVOKED_new_reserve(cmp, n) ((STACK_OF(X509_REVOKED)*)OPENSSL_sk_new_reserve(ossl_check_X509_REVOKED_compfunc_type(cmp), (n)))
  99. #define sk_X509_REVOKED_reserve(sk, n) OPENSSL_sk_reserve(ossl_check_X509_REVOKED_sk_type(sk), (n))
  100. #define sk_X509_REVOKED_free(sk) OPENSSL_sk_free(ossl_check_X509_REVOKED_sk_type(sk))
  101. #define sk_X509_REVOKED_zero(sk) OPENSSL_sk_zero(ossl_check_X509_REVOKED_sk_type(sk))
  102. #define sk_X509_REVOKED_delete(sk, i) ((X509_REVOKED*)OPENSSL_sk_delete(ossl_check_X509_REVOKED_sk_type(sk), (i)))
  103. #define sk_X509_REVOKED_delete_ptr(sk, ptr) ((X509_REVOKED*)OPENSSL_sk_delete_ptr(ossl_check_X509_REVOKED_sk_type(sk), ossl_check_X509_REVOKED_type(ptr)))
  104. #define sk_X509_REVOKED_push(sk, ptr) OPENSSL_sk_push(ossl_check_X509_REVOKED_sk_type(sk), ossl_check_X509_REVOKED_type(ptr))
  105. #define sk_X509_REVOKED_unshift(sk, ptr) OPENSSL_sk_unshift(ossl_check_X509_REVOKED_sk_type(sk), ossl_check_X509_REVOKED_type(ptr))
  106. #define sk_X509_REVOKED_pop(sk) ((X509_REVOKED*)OPENSSL_sk_pop(ossl_check_X509_REVOKED_sk_type(sk)))
  107. #define sk_X509_REVOKED_shift(sk) ((X509_REVOKED*)OPENSSL_sk_shift(ossl_check_X509_REVOKED_sk_type(sk)))
  108. #define sk_X509_REVOKED_pop_free(sk, freefunc) OPENSSL_sk_pop_free(ossl_check_X509_REVOKED_sk_type(sk), ossl_check_X509_REVOKED_freefunc_type(freefunc))
  109. #define sk_X509_REVOKED_insert(sk, ptr, idx) OPENSSL_sk_insert(ossl_check_X509_REVOKED_sk_type(sk), ossl_check_X509_REVOKED_type(ptr), (idx))
  110. #define sk_X509_REVOKED_set(sk, idx, ptr) ((X509_REVOKED*)OPENSSL_sk_set(ossl_check_X509_REVOKED_sk_type(sk), (idx), ossl_check_X509_REVOKED_type(ptr)))
  111. #define sk_X509_REVOKED_find(sk, ptr) OPENSSL_sk_find(ossl_check_X509_REVOKED_sk_type(sk), ossl_check_X509_REVOKED_type(ptr))
  112. #define sk_X509_REVOKED_find_ex(sk, ptr) OPENSSL_sk_find_ex(ossl_check_X509_REVOKED_sk_type(sk), ossl_check_X509_REVOKED_type(ptr))
  113. #define sk_X509_REVOKED_find_all(sk, ptr, pnum) OPENSSL_sk_find_all(ossl_check_X509_REVOKED_sk_type(sk), ossl_check_X509_REVOKED_type(ptr), pnum)
  114. #define sk_X509_REVOKED_sort(sk) OPENSSL_sk_sort(ossl_check_X509_REVOKED_sk_type(sk))
  115. #define sk_X509_REVOKED_is_sorted(sk) OPENSSL_sk_is_sorted(ossl_check_const_X509_REVOKED_sk_type(sk))
  116. #define sk_X509_REVOKED_dup(sk) ((STACK_OF(X509_REVOKED)*)OPENSSL_sk_dup(ossl_check_const_X509_REVOKED_sk_type(sk)))
  117. #define sk_X509_REVOKED_deep_copy(sk, copyfunc, freefunc) ((STACK_OF(X509_REVOKED)*)OPENSSL_sk_deep_copy(ossl_check_const_X509_REVOKED_sk_type(sk), ossl_check_X509_REVOKED_copyfunc_type(copyfunc), ossl_check_X509_REVOKED_freefunc_type(freefunc)))
  118. #define sk_X509_REVOKED_set_cmp_func(sk, cmp) ((sk_X509_REVOKED_compfunc)OPENSSL_sk_set_cmp_func(ossl_check_X509_REVOKED_sk_type(sk), ossl_check_X509_REVOKED_compfunc_type(cmp)))
  119. SKM_DEFINE_STACK_OF_INTERNAL(X509_CRL, X509_CRL, X509_CRL)
  120. #define sk_X509_CRL_num(sk) OPENSSL_sk_num(ossl_check_const_X509_CRL_sk_type(sk))
  121. #define sk_X509_CRL_value(sk, idx) ((X509_CRL*)OPENSSL_sk_value(ossl_check_const_X509_CRL_sk_type(sk), (idx)))
  122. #define sk_X509_CRL_new(cmp) ((STACK_OF(X509_CRL)*)OPENSSL_sk_new(ossl_check_X509_CRL_compfunc_type(cmp)))
  123. #define sk_X509_CRL_new_null() ((STACK_OF(X509_CRL)*)OPENSSL_sk_new_null())
  124. #define sk_X509_CRL_new_reserve(cmp, n) ((STACK_OF(X509_CRL)*)OPENSSL_sk_new_reserve(ossl_check_X509_CRL_compfunc_type(cmp), (n)))
  125. #define sk_X509_CRL_reserve(sk, n) OPENSSL_sk_reserve(ossl_check_X509_CRL_sk_type(sk), (n))
  126. #define sk_X509_CRL_free(sk) OPENSSL_sk_free(ossl_check_X509_CRL_sk_type(sk))
  127. #define sk_X509_CRL_zero(sk) OPENSSL_sk_zero(ossl_check_X509_CRL_sk_type(sk))
  128. #define sk_X509_CRL_delete(sk, i) ((X509_CRL*)OPENSSL_sk_delete(ossl_check_X509_CRL_sk_type(sk), (i)))
  129. #define sk_X509_CRL_delete_ptr(sk, ptr) ((X509_CRL*)OPENSSL_sk_delete_ptr(ossl_check_X509_CRL_sk_type(sk), ossl_check_X509_CRL_type(ptr)))
  130. #define sk_X509_CRL_push(sk, ptr) OPENSSL_sk_push(ossl_check_X509_CRL_sk_type(sk), ossl_check_X509_CRL_type(ptr))
  131. #define sk_X509_CRL_unshift(sk, ptr) OPENSSL_sk_unshift(ossl_check_X509_CRL_sk_type(sk), ossl_check_X509_CRL_type(ptr))
  132. #define sk_X509_CRL_pop(sk) ((X509_CRL*)OPENSSL_sk_pop(ossl_check_X509_CRL_sk_type(sk)))
  133. #define sk_X509_CRL_shift(sk) ((X509_CRL*)OPENSSL_sk_shift(ossl_check_X509_CRL_sk_type(sk)))
  134. #define sk_X509_CRL_pop_free(sk, freefunc) OPENSSL_sk_pop_free(ossl_check_X509_CRL_sk_type(sk), ossl_check_X509_CRL_freefunc_type(freefunc))
  135. #define sk_X509_CRL_insert(sk, ptr, idx) OPENSSL_sk_insert(ossl_check_X509_CRL_sk_type(sk), ossl_check_X509_CRL_type(ptr), (idx))
  136. #define sk_X509_CRL_set(sk, idx, ptr) ((X509_CRL*)OPENSSL_sk_set(ossl_check_X509_CRL_sk_type(sk), (idx), ossl_check_X509_CRL_type(ptr)))
  137. #define sk_X509_CRL_find(sk, ptr) OPENSSL_sk_find(ossl_check_X509_CRL_sk_type(sk), ossl_check_X509_CRL_type(ptr))
  138. #define sk_X509_CRL_find_ex(sk, ptr) OPENSSL_sk_find_ex(ossl_check_X509_CRL_sk_type(sk), ossl_check_X509_CRL_type(ptr))
  139. #define sk_X509_CRL_find_all(sk, ptr, pnum) OPENSSL_sk_find_all(ossl_check_X509_CRL_sk_type(sk), ossl_check_X509_CRL_type(ptr), pnum)
  140. #define sk_X509_CRL_sort(sk) OPENSSL_sk_sort(ossl_check_X509_CRL_sk_type(sk))
  141. #define sk_X509_CRL_is_sorted(sk) OPENSSL_sk_is_sorted(ossl_check_const_X509_CRL_sk_type(sk))
  142. #define sk_X509_CRL_dup(sk) ((STACK_OF(X509_CRL)*)OPENSSL_sk_dup(ossl_check_const_X509_CRL_sk_type(sk)))
  143. #define sk_X509_CRL_deep_copy(sk, copyfunc, freefunc) ((STACK_OF(X509_CRL)*)OPENSSL_sk_deep_copy(ossl_check_const_X509_CRL_sk_type(sk), ossl_check_X509_CRL_copyfunc_type(copyfunc), ossl_check_X509_CRL_freefunc_type(freefunc)))
  144. #define sk_X509_CRL_set_cmp_func(sk, cmp) ((sk_X509_CRL_compfunc)OPENSSL_sk_set_cmp_func(ossl_check_X509_CRL_sk_type(sk), ossl_check_X509_CRL_compfunc_type(cmp)))
  145. /* Flags for X509_get_signature_info() */
  146. /* Signature info is valid */
  147. #define X509_SIG_INFO_VALID 0x1
  148. /* Signature is suitable for TLS use */
  149. #define X509_SIG_INFO_TLS 0x2
  150. #define X509_FILETYPE_PEM 1
  151. #define X509_FILETYPE_ASN1 2
  152. #define X509_FILETYPE_DEFAULT 3
  153. #define X509v3_KU_DIGITAL_SIGNATURE 0x0080
  154. #define X509v3_KU_NON_REPUDIATION 0x0040
  155. #define X509v3_KU_KEY_ENCIPHERMENT 0x0020
  156. #define X509v3_KU_DATA_ENCIPHERMENT 0x0010
  157. #define X509v3_KU_KEY_AGREEMENT 0x0008
  158. #define X509v3_KU_KEY_CERT_SIGN 0x0004
  159. #define X509v3_KU_CRL_SIGN 0x0002
  160. #define X509v3_KU_ENCIPHER_ONLY 0x0001
  161. #define X509v3_KU_DECIPHER_ONLY 0x8000
  162. #define X509v3_KU_UNDEF 0xffff
  163. struct X509_algor_st
  164. {
  165. ASN1_OBJECT* algorithm;
  166. ASN1_TYPE* parameter;
  167. } /* X509_ALGOR */;
  168. typedef STACK_OF(X509_ALGOR) X509_ALGORS;
  169. typedef struct X509_val_st
  170. {
  171. ASN1_TIME* notBefore;
  172. ASN1_TIME* notAfter;
  173. } X509_VAL;
  174. typedef struct X509_sig_st X509_SIG;
  175. typedef struct X509_name_entry_st X509_NAME_ENTRY;
  176. SKM_DEFINE_STACK_OF_INTERNAL(X509_NAME_ENTRY, X509_NAME_ENTRY, X509_NAME_ENTRY)
  177. #define sk_X509_NAME_ENTRY_num(sk) OPENSSL_sk_num(ossl_check_const_X509_NAME_ENTRY_sk_type(sk))
  178. #define sk_X509_NAME_ENTRY_value(sk, idx) ((X509_NAME_ENTRY*)OPENSSL_sk_value(ossl_check_const_X509_NAME_ENTRY_sk_type(sk), (idx)))
  179. #define sk_X509_NAME_ENTRY_new(cmp) ((STACK_OF(X509_NAME_ENTRY)*)OPENSSL_sk_new(ossl_check_X509_NAME_ENTRY_compfunc_type(cmp)))
  180. #define sk_X509_NAME_ENTRY_new_null() ((STACK_OF(X509_NAME_ENTRY)*)OPENSSL_sk_new_null())
  181. #define sk_X509_NAME_ENTRY_new_reserve(cmp, n) ((STACK_OF(X509_NAME_ENTRY)*)OPENSSL_sk_new_reserve(ossl_check_X509_NAME_ENTRY_compfunc_type(cmp), (n)))
  182. #define sk_X509_NAME_ENTRY_reserve(sk, n) OPENSSL_sk_reserve(ossl_check_X509_NAME_ENTRY_sk_type(sk), (n))
  183. #define sk_X509_NAME_ENTRY_free(sk) OPENSSL_sk_free(ossl_check_X509_NAME_ENTRY_sk_type(sk))
  184. #define sk_X509_NAME_ENTRY_zero(sk) OPENSSL_sk_zero(ossl_check_X509_NAME_ENTRY_sk_type(sk))
  185. #define sk_X509_NAME_ENTRY_delete(sk, i) ((X509_NAME_ENTRY*)OPENSSL_sk_delete(ossl_check_X509_NAME_ENTRY_sk_type(sk), (i)))
  186. #define sk_X509_NAME_ENTRY_delete_ptr(sk, ptr) ((X509_NAME_ENTRY*)OPENSSL_sk_delete_ptr(ossl_check_X509_NAME_ENTRY_sk_type(sk), ossl_check_X509_NAME_ENTRY_type(ptr)))
  187. #define sk_X509_NAME_ENTRY_push(sk, ptr) OPENSSL_sk_push(ossl_check_X509_NAME_ENTRY_sk_type(sk), ossl_check_X509_NAME_ENTRY_type(ptr))
  188. #define sk_X509_NAME_ENTRY_unshift(sk, ptr) OPENSSL_sk_unshift(ossl_check_X509_NAME_ENTRY_sk_type(sk), ossl_check_X509_NAME_ENTRY_type(ptr))
  189. #define sk_X509_NAME_ENTRY_pop(sk) ((X509_NAME_ENTRY*)OPENSSL_sk_pop(ossl_check_X509_NAME_ENTRY_sk_type(sk)))
  190. #define sk_X509_NAME_ENTRY_shift(sk) ((X509_NAME_ENTRY*)OPENSSL_sk_shift(ossl_check_X509_NAME_ENTRY_sk_type(sk)))
  191. #define sk_X509_NAME_ENTRY_pop_free(sk, freefunc) OPENSSL_sk_pop_free(ossl_check_X509_NAME_ENTRY_sk_type(sk), ossl_check_X509_NAME_ENTRY_freefunc_type(freefunc))
  192. #define sk_X509_NAME_ENTRY_insert(sk, ptr, idx) OPENSSL_sk_insert(ossl_check_X509_NAME_ENTRY_sk_type(sk), ossl_check_X509_NAME_ENTRY_type(ptr), (idx))
  193. #define sk_X509_NAME_ENTRY_set(sk, idx, ptr) ((X509_NAME_ENTRY*)OPENSSL_sk_set(ossl_check_X509_NAME_ENTRY_sk_type(sk), (idx), ossl_check_X509_NAME_ENTRY_type(ptr)))
  194. #define sk_X509_NAME_ENTRY_find(sk, ptr) OPENSSL_sk_find(ossl_check_X509_NAME_ENTRY_sk_type(sk), ossl_check_X509_NAME_ENTRY_type(ptr))
  195. #define sk_X509_NAME_ENTRY_find_ex(sk, ptr) OPENSSL_sk_find_ex(ossl_check_X509_NAME_ENTRY_sk_type(sk), ossl_check_X509_NAME_ENTRY_type(ptr))
  196. #define sk_X509_NAME_ENTRY_find_all(sk, ptr, pnum) OPENSSL_sk_find_all(ossl_check_X509_NAME_ENTRY_sk_type(sk), ossl_check_X509_NAME_ENTRY_type(ptr), pnum)
  197. #define sk_X509_NAME_ENTRY_sort(sk) OPENSSL_sk_sort(ossl_check_X509_NAME_ENTRY_sk_type(sk))
  198. #define sk_X509_NAME_ENTRY_is_sorted(sk) OPENSSL_sk_is_sorted(ossl_check_const_X509_NAME_ENTRY_sk_type(sk))
  199. #define sk_X509_NAME_ENTRY_dup(sk) ((STACK_OF(X509_NAME_ENTRY)*)OPENSSL_sk_dup(ossl_check_const_X509_NAME_ENTRY_sk_type(sk)))
  200. #define sk_X509_NAME_ENTRY_deep_copy(sk, copyfunc, freefunc) ((STACK_OF(X509_NAME_ENTRY)*)OPENSSL_sk_deep_copy(ossl_check_const_X509_NAME_ENTRY_sk_type(sk), ossl_check_X509_NAME_ENTRY_copyfunc_type(copyfunc), ossl_check_X509_NAME_ENTRY_freefunc_type(freefunc)))
  201. #define sk_X509_NAME_ENTRY_set_cmp_func(sk, cmp) ((sk_X509_NAME_ENTRY_compfunc)OPENSSL_sk_set_cmp_func(ossl_check_X509_NAME_ENTRY_sk_type(sk), ossl_check_X509_NAME_ENTRY_compfunc_type(cmp)))
  202. #define X509_EX_V_NETSCAPE_HACK 0x8000
  203. #define X509_EX_V_INIT 0x0001
  204. typedef struct X509_extension_st X509_EXTENSION;
  205. SKM_DEFINE_STACK_OF_INTERNAL(X509_EXTENSION, X509_EXTENSION, X509_EXTENSION)
  206. #define sk_X509_EXTENSION_num(sk) OPENSSL_sk_num(ossl_check_const_X509_EXTENSION_sk_type(sk))
  207. #define sk_X509_EXTENSION_value(sk, idx) ((X509_EXTENSION*)OPENSSL_sk_value(ossl_check_const_X509_EXTENSION_sk_type(sk), (idx)))
  208. #define sk_X509_EXTENSION_new(cmp) ((STACK_OF(X509_EXTENSION)*)OPENSSL_sk_new(ossl_check_X509_EXTENSION_compfunc_type(cmp)))
  209. #define sk_X509_EXTENSION_new_null() ((STACK_OF(X509_EXTENSION)*)OPENSSL_sk_new_null())
  210. #define sk_X509_EXTENSION_new_reserve(cmp, n) ((STACK_OF(X509_EXTENSION)*)OPENSSL_sk_new_reserve(ossl_check_X509_EXTENSION_compfunc_type(cmp), (n)))
  211. #define sk_X509_EXTENSION_reserve(sk, n) OPENSSL_sk_reserve(ossl_check_X509_EXTENSION_sk_type(sk), (n))
  212. #define sk_X509_EXTENSION_free(sk) OPENSSL_sk_free(ossl_check_X509_EXTENSION_sk_type(sk))
  213. #define sk_X509_EXTENSION_zero(sk) OPENSSL_sk_zero(ossl_check_X509_EXTENSION_sk_type(sk))
  214. #define sk_X509_EXTENSION_delete(sk, i) ((X509_EXTENSION*)OPENSSL_sk_delete(ossl_check_X509_EXTENSION_sk_type(sk), (i)))
  215. #define sk_X509_EXTENSION_delete_ptr(sk, ptr) ((X509_EXTENSION*)OPENSSL_sk_delete_ptr(ossl_check_X509_EXTENSION_sk_type(sk), ossl_check_X509_EXTENSION_type(ptr)))
  216. #define sk_X509_EXTENSION_push(sk, ptr) OPENSSL_sk_push(ossl_check_X509_EXTENSION_sk_type(sk), ossl_check_X509_EXTENSION_type(ptr))
  217. #define sk_X509_EXTENSION_unshift(sk, ptr) OPENSSL_sk_unshift(ossl_check_X509_EXTENSION_sk_type(sk), ossl_check_X509_EXTENSION_type(ptr))
  218. #define sk_X509_EXTENSION_pop(sk) ((X509_EXTENSION*)OPENSSL_sk_pop(ossl_check_X509_EXTENSION_sk_type(sk)))
  219. #define sk_X509_EXTENSION_shift(sk) ((X509_EXTENSION*)OPENSSL_sk_shift(ossl_check_X509_EXTENSION_sk_type(sk)))
  220. #define sk_X509_EXTENSION_pop_free(sk, freefunc) OPENSSL_sk_pop_free(ossl_check_X509_EXTENSION_sk_type(sk), ossl_check_X509_EXTENSION_freefunc_type(freefunc))
  221. #define sk_X509_EXTENSION_insert(sk, ptr, idx) OPENSSL_sk_insert(ossl_check_X509_EXTENSION_sk_type(sk), ossl_check_X509_EXTENSION_type(ptr), (idx))
  222. #define sk_X509_EXTENSION_set(sk, idx, ptr) ((X509_EXTENSION*)OPENSSL_sk_set(ossl_check_X509_EXTENSION_sk_type(sk), (idx), ossl_check_X509_EXTENSION_type(ptr)))
  223. #define sk_X509_EXTENSION_find(sk, ptr) OPENSSL_sk_find(ossl_check_X509_EXTENSION_sk_type(sk), ossl_check_X509_EXTENSION_type(ptr))
  224. #define sk_X509_EXTENSION_find_ex(sk, ptr) OPENSSL_sk_find_ex(ossl_check_X509_EXTENSION_sk_type(sk), ossl_check_X509_EXTENSION_type(ptr))
  225. #define sk_X509_EXTENSION_find_all(sk, ptr, pnum) OPENSSL_sk_find_all(ossl_check_X509_EXTENSION_sk_type(sk), ossl_check_X509_EXTENSION_type(ptr), pnum)
  226. #define sk_X509_EXTENSION_sort(sk) OPENSSL_sk_sort(ossl_check_X509_EXTENSION_sk_type(sk))
  227. #define sk_X509_EXTENSION_is_sorted(sk) OPENSSL_sk_is_sorted(ossl_check_const_X509_EXTENSION_sk_type(sk))
  228. #define sk_X509_EXTENSION_dup(sk) ((STACK_OF(X509_EXTENSION)*)OPENSSL_sk_dup(ossl_check_const_X509_EXTENSION_sk_type(sk)))
  229. #define sk_X509_EXTENSION_deep_copy(sk, copyfunc, freefunc) ((STACK_OF(X509_EXTENSION)*)OPENSSL_sk_deep_copy(ossl_check_const_X509_EXTENSION_sk_type(sk), ossl_check_X509_EXTENSION_copyfunc_type(copyfunc), ossl_check_X509_EXTENSION_freefunc_type(freefunc)))
  230. #define sk_X509_EXTENSION_set_cmp_func(sk, cmp) ((sk_X509_EXTENSION_compfunc)OPENSSL_sk_set_cmp_func(ossl_check_X509_EXTENSION_sk_type(sk), ossl_check_X509_EXTENSION_compfunc_type(cmp)))
  231. typedef STACK_OF(X509_EXTENSION) X509_EXTENSIONS;
  232. typedef struct x509_attributes_st X509_ATTRIBUTE;
  233. SKM_DEFINE_STACK_OF_INTERNAL(X509_ATTRIBUTE, X509_ATTRIBUTE, X509_ATTRIBUTE)
  234. #define sk_X509_ATTRIBUTE_num(sk) OPENSSL_sk_num(ossl_check_const_X509_ATTRIBUTE_sk_type(sk))
  235. #define sk_X509_ATTRIBUTE_value(sk, idx) ((X509_ATTRIBUTE*)OPENSSL_sk_value(ossl_check_const_X509_ATTRIBUTE_sk_type(sk), (idx)))
  236. #define sk_X509_ATTRIBUTE_new(cmp) ((STACK_OF(X509_ATTRIBUTE)*)OPENSSL_sk_new(ossl_check_X509_ATTRIBUTE_compfunc_type(cmp)))
  237. #define sk_X509_ATTRIBUTE_new_null() ((STACK_OF(X509_ATTRIBUTE)*)OPENSSL_sk_new_null())
  238. #define sk_X509_ATTRIBUTE_new_reserve(cmp, n) ((STACK_OF(X509_ATTRIBUTE)*)OPENSSL_sk_new_reserve(ossl_check_X509_ATTRIBUTE_compfunc_type(cmp), (n)))
  239. #define sk_X509_ATTRIBUTE_reserve(sk, n) OPENSSL_sk_reserve(ossl_check_X509_ATTRIBUTE_sk_type(sk), (n))
  240. #define sk_X509_ATTRIBUTE_free(sk) OPENSSL_sk_free(ossl_check_X509_ATTRIBUTE_sk_type(sk))
  241. #define sk_X509_ATTRIBUTE_zero(sk) OPENSSL_sk_zero(ossl_check_X509_ATTRIBUTE_sk_type(sk))
  242. #define sk_X509_ATTRIBUTE_delete(sk, i) ((X509_ATTRIBUTE*)OPENSSL_sk_delete(ossl_check_X509_ATTRIBUTE_sk_type(sk), (i)))
  243. #define sk_X509_ATTRIBUTE_delete_ptr(sk, ptr) ((X509_ATTRIBUTE*)OPENSSL_sk_delete_ptr(ossl_check_X509_ATTRIBUTE_sk_type(sk), ossl_check_X509_ATTRIBUTE_type(ptr)))
  244. #define sk_X509_ATTRIBUTE_push(sk, ptr) OPENSSL_sk_push(ossl_check_X509_ATTRIBUTE_sk_type(sk), ossl_check_X509_ATTRIBUTE_type(ptr))
  245. #define sk_X509_ATTRIBUTE_unshift(sk, ptr) OPENSSL_sk_unshift(ossl_check_X509_ATTRIBUTE_sk_type(sk), ossl_check_X509_ATTRIBUTE_type(ptr))
  246. #define sk_X509_ATTRIBUTE_pop(sk) ((X509_ATTRIBUTE*)OPENSSL_sk_pop(ossl_check_X509_ATTRIBUTE_sk_type(sk)))
  247. #define sk_X509_ATTRIBUTE_shift(sk) ((X509_ATTRIBUTE*)OPENSSL_sk_shift(ossl_check_X509_ATTRIBUTE_sk_type(sk)))
  248. #define sk_X509_ATTRIBUTE_pop_free(sk, freefunc) OPENSSL_sk_pop_free(ossl_check_X509_ATTRIBUTE_sk_type(sk), ossl_check_X509_ATTRIBUTE_freefunc_type(freefunc))
  249. #define sk_X509_ATTRIBUTE_insert(sk, ptr, idx) OPENSSL_sk_insert(ossl_check_X509_ATTRIBUTE_sk_type(sk), ossl_check_X509_ATTRIBUTE_type(ptr), (idx))
  250. #define sk_X509_ATTRIBUTE_set(sk, idx, ptr) ((X509_ATTRIBUTE*)OPENSSL_sk_set(ossl_check_X509_ATTRIBUTE_sk_type(sk), (idx), ossl_check_X509_ATTRIBUTE_type(ptr)))
  251. #define sk_X509_ATTRIBUTE_find(sk, ptr) OPENSSL_sk_find(ossl_check_X509_ATTRIBUTE_sk_type(sk), ossl_check_X509_ATTRIBUTE_type(ptr))
  252. #define sk_X509_ATTRIBUTE_find_ex(sk, ptr) OPENSSL_sk_find_ex(ossl_check_X509_ATTRIBUTE_sk_type(sk), ossl_check_X509_ATTRIBUTE_type(ptr))
  253. #define sk_X509_ATTRIBUTE_find_all(sk, ptr, pnum) OPENSSL_sk_find_all(ossl_check_X509_ATTRIBUTE_sk_type(sk), ossl_check_X509_ATTRIBUTE_type(ptr), pnum)
  254. #define sk_X509_ATTRIBUTE_sort(sk) OPENSSL_sk_sort(ossl_check_X509_ATTRIBUTE_sk_type(sk))
  255. #define sk_X509_ATTRIBUTE_is_sorted(sk) OPENSSL_sk_is_sorted(ossl_check_const_X509_ATTRIBUTE_sk_type(sk))
  256. #define sk_X509_ATTRIBUTE_dup(sk) ((STACK_OF(X509_ATTRIBUTE)*)OPENSSL_sk_dup(ossl_check_const_X509_ATTRIBUTE_sk_type(sk)))
  257. #define sk_X509_ATTRIBUTE_deep_copy(sk, copyfunc, freefunc) ((STACK_OF(X509_ATTRIBUTE)*)OPENSSL_sk_deep_copy(ossl_check_const_X509_ATTRIBUTE_sk_type(sk), ossl_check_X509_ATTRIBUTE_copyfunc_type(copyfunc), ossl_check_X509_ATTRIBUTE_freefunc_type(freefunc)))
  258. #define sk_X509_ATTRIBUTE_set_cmp_func(sk, cmp) ((sk_X509_ATTRIBUTE_compfunc)OPENSSL_sk_set_cmp_func(ossl_check_X509_ATTRIBUTE_sk_type(sk), ossl_check_X509_ATTRIBUTE_compfunc_type(cmp)))
  259. typedef struct X509_req_info_st X509_REQ_INFO;
  260. typedef struct X509_req_st X509_REQ;
  261. typedef struct x509_cert_aux_st X509_CERT_AUX;
  262. typedef struct x509_cinf_st X509_CINF;
  263. /* Flags for X509_print_ex() */
  264. #define X509_FLAG_COMPAT 0
  265. #define X509_FLAG_NO_HEADER 1L
  266. #define X509_FLAG_NO_VERSION (1L << 1)
  267. #define X509_FLAG_NO_SERIAL (1L << 2)
  268. #define X509_FLAG_NO_SIGNAME (1L << 3)
  269. #define X509_FLAG_NO_ISSUER (1L << 4)
  270. #define X509_FLAG_NO_VALIDITY (1L << 5)
  271. #define X509_FLAG_NO_SUBJECT (1L << 6)
  272. #define X509_FLAG_NO_PUBKEY (1L << 7)
  273. #define X509_FLAG_NO_EXTENSIONS (1L << 8)
  274. #define X509_FLAG_NO_SIGDUMP (1L << 9)
  275. #define X509_FLAG_NO_AUX (1L << 10)
  276. #define X509_FLAG_NO_ATTRIBUTES (1L << 11)
  277. #define X509_FLAG_NO_IDS (1L << 12)
  278. #define X509_FLAG_EXTENSIONS_ONLY_KID (1L << 13)
  279. /* Flags specific to X509_NAME_print_ex() */
  280. /* The field separator information */
  281. #define XN_FLAG_SEP_MASK (0xf << 16)
  282. #define XN_FLAG_COMPAT 0 /* Traditional; use old X509_NAME_print */
  283. #define XN_FLAG_SEP_COMMA_PLUS (1 << 16) /* RFC2253 ,+ */
  284. #define XN_FLAG_SEP_CPLUS_SPC (2 << 16) /* ,+ spaced: more readable */
  285. #define XN_FLAG_SEP_SPLUS_SPC (3 << 16) /* ;+ spaced */
  286. #define XN_FLAG_SEP_MULTILINE (4 << 16) /* One line per field */
  287. #define XN_FLAG_DN_REV (1 << 20) /* Reverse DN order */
  288. /* How the field name is shown */
  289. #define XN_FLAG_FN_MASK (0x3 << 21)
  290. #define XN_FLAG_FN_SN 0 /* Object short name */
  291. #define XN_FLAG_FN_LN (1 << 21) /* Object long name */
  292. #define XN_FLAG_FN_OID (2 << 21) /* Always use OIDs */
  293. #define XN_FLAG_FN_NONE (3 << 21) /* No field names */
  294. #define XN_FLAG_SPC_EQ (1 << 23) /* Put spaces round '=' */
  295. /*
  296. * This determines if we dump fields we don't recognise: RFC2253 requires
  297. * this.
  298. */
  299. #define XN_FLAG_DUMP_UNKNOWN_FIELDS (1 << 24)
  300. #define XN_FLAG_FN_ALIGN (1 << 25) /* Align field names to 20 \
  301. * characters */
  302. /* Complete set of RFC2253 flags */
  303. #define XN_FLAG_RFC2253 (ASN1_STRFLGS_RFC2253 | XN_FLAG_SEP_COMMA_PLUS | XN_FLAG_DN_REV | XN_FLAG_FN_SN | XN_FLAG_DUMP_UNKNOWN_FIELDS)
  304. /* readable oneline form */
  305. #define XN_FLAG_ONELINE (ASN1_STRFLGS_RFC2253 | ASN1_STRFLGS_ESC_QUOTE | XN_FLAG_SEP_CPLUS_SPC | XN_FLAG_SPC_EQ | XN_FLAG_FN_SN)
  306. /* readable multiline form */
  307. #define XN_FLAG_MULTILINE (ASN1_STRFLGS_ESC_CTRL | ASN1_STRFLGS_ESC_MSB | XN_FLAG_SEP_MULTILINE | XN_FLAG_SPC_EQ | XN_FLAG_FN_LN | XN_FLAG_FN_ALIGN)
  308. typedef struct X509_crl_info_st X509_CRL_INFO;
  309. typedef struct private_key_st
  310. {
  311. int version;
  312. /* The PKCS#8 data types */
  313. X509_ALGOR* enc_algor;
  314. ASN1_OCTET_STRING* enc_pkey; /* encrypted pub key */
  315. /* When decrypted, the following will not be NULL */
  316. EVP_PKEY* dec_pkey;
  317. /* used to encrypt and decrypt */
  318. int key_length;
  319. char* key_data;
  320. int key_free; /* true if we should auto free key_data */
  321. /* expanded version of 'enc_algor' */
  322. EVP_CIPHER_INFO cipher;
  323. } X509_PKEY;
  324. typedef struct X509_info_st
  325. {
  326. X509* x509;
  327. X509_CRL* crl;
  328. X509_PKEY* x_pkey;
  329. EVP_CIPHER_INFO enc_cipher;
  330. int enc_len;
  331. char* enc_data;
  332. } X509_INFO;
  333. SKM_DEFINE_STACK_OF_INTERNAL(X509_INFO, X509_INFO, X509_INFO)
  334. #define sk_X509_INFO_num(sk) OPENSSL_sk_num(ossl_check_const_X509_INFO_sk_type(sk))
  335. #define sk_X509_INFO_value(sk, idx) ((X509_INFO*)OPENSSL_sk_value(ossl_check_const_X509_INFO_sk_type(sk), (idx)))
  336. #define sk_X509_INFO_new(cmp) ((STACK_OF(X509_INFO)*)OPENSSL_sk_new(ossl_check_X509_INFO_compfunc_type(cmp)))
  337. #define sk_X509_INFO_new_null() ((STACK_OF(X509_INFO)*)OPENSSL_sk_new_null())
  338. #define sk_X509_INFO_new_reserve(cmp, n) ((STACK_OF(X509_INFO)*)OPENSSL_sk_new_reserve(ossl_check_X509_INFO_compfunc_type(cmp), (n)))
  339. #define sk_X509_INFO_reserve(sk, n) OPENSSL_sk_reserve(ossl_check_X509_INFO_sk_type(sk), (n))
  340. #define sk_X509_INFO_free(sk) OPENSSL_sk_free(ossl_check_X509_INFO_sk_type(sk))
  341. #define sk_X509_INFO_zero(sk) OPENSSL_sk_zero(ossl_check_X509_INFO_sk_type(sk))
  342. #define sk_X509_INFO_delete(sk, i) ((X509_INFO*)OPENSSL_sk_delete(ossl_check_X509_INFO_sk_type(sk), (i)))
  343. #define sk_X509_INFO_delete_ptr(sk, ptr) ((X509_INFO*)OPENSSL_sk_delete_ptr(ossl_check_X509_INFO_sk_type(sk), ossl_check_X509_INFO_type(ptr)))
  344. #define sk_X509_INFO_push(sk, ptr) OPENSSL_sk_push(ossl_check_X509_INFO_sk_type(sk), ossl_check_X509_INFO_type(ptr))
  345. #define sk_X509_INFO_unshift(sk, ptr) OPENSSL_sk_unshift(ossl_check_X509_INFO_sk_type(sk), ossl_check_X509_INFO_type(ptr))
  346. #define sk_X509_INFO_pop(sk) ((X509_INFO*)OPENSSL_sk_pop(ossl_check_X509_INFO_sk_type(sk)))
  347. #define sk_X509_INFO_shift(sk) ((X509_INFO*)OPENSSL_sk_shift(ossl_check_X509_INFO_sk_type(sk)))
  348. #define sk_X509_INFO_pop_free(sk, freefunc) OPENSSL_sk_pop_free(ossl_check_X509_INFO_sk_type(sk), ossl_check_X509_INFO_freefunc_type(freefunc))
  349. #define sk_X509_INFO_insert(sk, ptr, idx) OPENSSL_sk_insert(ossl_check_X509_INFO_sk_type(sk), ossl_check_X509_INFO_type(ptr), (idx))
  350. #define sk_X509_INFO_set(sk, idx, ptr) ((X509_INFO*)OPENSSL_sk_set(ossl_check_X509_INFO_sk_type(sk), (idx), ossl_check_X509_INFO_type(ptr)))
  351. #define sk_X509_INFO_find(sk, ptr) OPENSSL_sk_find(ossl_check_X509_INFO_sk_type(sk), ossl_check_X509_INFO_type(ptr))
  352. #define sk_X509_INFO_find_ex(sk, ptr) OPENSSL_sk_find_ex(ossl_check_X509_INFO_sk_type(sk), ossl_check_X509_INFO_type(ptr))
  353. #define sk_X509_INFO_find_all(sk, ptr, pnum) OPENSSL_sk_find_all(ossl_check_X509_INFO_sk_type(sk), ossl_check_X509_INFO_type(ptr), pnum)
  354. #define sk_X509_INFO_sort(sk) OPENSSL_sk_sort(ossl_check_X509_INFO_sk_type(sk))
  355. #define sk_X509_INFO_is_sorted(sk) OPENSSL_sk_is_sorted(ossl_check_const_X509_INFO_sk_type(sk))
  356. #define sk_X509_INFO_dup(sk) ((STACK_OF(X509_INFO)*)OPENSSL_sk_dup(ossl_check_const_X509_INFO_sk_type(sk)))
  357. #define sk_X509_INFO_deep_copy(sk, copyfunc, freefunc) ((STACK_OF(X509_INFO)*)OPENSSL_sk_deep_copy(ossl_check_const_X509_INFO_sk_type(sk), ossl_check_X509_INFO_copyfunc_type(copyfunc), ossl_check_X509_INFO_freefunc_type(freefunc)))
  358. #define sk_X509_INFO_set_cmp_func(sk, cmp) ((sk_X509_INFO_compfunc)OPENSSL_sk_set_cmp_func(ossl_check_X509_INFO_sk_type(sk), ossl_check_X509_INFO_compfunc_type(cmp)))
  359. /*
  360. * The next 2 structures and their 8 routines are used to manipulate Netscape's
  361. * spki structures - useful if you are writing a CA web page
  362. */
  363. typedef struct Netscape_spkac_st
  364. {
  365. X509_PUBKEY* pubkey;
  366. ASN1_IA5STRING* challenge; /* challenge sent in atlas >= PR2 */
  367. } NETSCAPE_SPKAC;
  368. typedef struct Netscape_spki_st
  369. {
  370. NETSCAPE_SPKAC* spkac; /* signed public key and challenge */
  371. X509_ALGOR sig_algor;
  372. ASN1_BIT_STRING* signature;
  373. } NETSCAPE_SPKI;
  374. /* Netscape certificate sequence structure */
  375. typedef struct Netscape_certificate_sequence
  376. {
  377. ASN1_OBJECT* type;
  378. STACK_OF(X509) * certs;
  379. } NETSCAPE_CERT_SEQUENCE;
  380. /*- Unused (and iv length is wrong)
  381. typedef struct CBCParameter_st
  382. {
  383. unsigned char iv[8];
  384. } CBC_PARAM;
  385. */
  386. /* Password based encryption structure */
  387. typedef struct PBEPARAM_st
  388. {
  389. ASN1_OCTET_STRING* salt;
  390. ASN1_INTEGER* iter;
  391. } PBEPARAM;
  392. /* Password based encryption V2 structures */
  393. typedef struct PBE2PARAM_st
  394. {
  395. X509_ALGOR* keyfunc;
  396. X509_ALGOR* encryption;
  397. } PBE2PARAM;
  398. typedef struct PBKDF2PARAM_st
  399. {
  400. /* Usually OCTET STRING but could be anything */
  401. ASN1_TYPE* salt;
  402. ASN1_INTEGER* iter;
  403. ASN1_INTEGER* keylength;
  404. X509_ALGOR* prf;
  405. } PBKDF2PARAM;
  406. #ifndef OPENSSL_NO_SCRYPT
  407. typedef struct SCRYPT_PARAMS_st
  408. {
  409. ASN1_OCTET_STRING* salt;
  410. ASN1_INTEGER* costParameter;
  411. ASN1_INTEGER* blockSize;
  412. ASN1_INTEGER* parallelizationParameter;
  413. ASN1_INTEGER* keyLength;
  414. } SCRYPT_PARAMS;
  415. #endif
  416. #ifdef __cplusplus
  417. }
  418. #endif
  419. #include <openssl/x509_vfy.h>
  420. #include <openssl/pkcs7.h>
  421. #ifdef __cplusplus
  422. extern "C"
  423. {
  424. #endif
  425. #define X509_EXT_PACK_UNKNOWN 1
  426. #define X509_EXT_PACK_STRING 2
  427. #define X509_extract_key(x) X509_get_pubkey(x) /*****/
  428. #define X509_REQ_extract_key(a) X509_REQ_get_pubkey(a)
  429. #define X509_name_cmp(a, b) X509_NAME_cmp((a), (b))
  430. void X509_CRL_set_default_method(const X509_CRL_METHOD* meth);
  431. X509_CRL_METHOD* X509_CRL_METHOD_new(int (*crl_init)(X509_CRL* crl), int (*crl_free)(X509_CRL* crl), int (*crl_lookup)(X509_CRL* crl, X509_REVOKED** ret, const ASN1_INTEGER* serial, const X509_NAME* issuer), int (*crl_verify)(X509_CRL* crl, EVP_PKEY* pk));
  432. void X509_CRL_METHOD_free(X509_CRL_METHOD* m);
  433. void X509_CRL_set_meth_data(X509_CRL* crl, void* dat);
  434. void* X509_CRL_get_meth_data(X509_CRL* crl);
  435. const char* X509_verify_cert_error_string(long n);
  436. int X509_verify(X509* a, EVP_PKEY* r);
  437. int X509_self_signed(X509* cert, int verify_signature);
  438. int X509_REQ_verify_ex(X509_REQ* a, EVP_PKEY* r, OSSL_LIB_CTX* libctx, const char* propq);
  439. int X509_REQ_verify(X509_REQ* a, EVP_PKEY* r);
  440. int X509_CRL_verify(X509_CRL* a, EVP_PKEY* r);
  441. int NETSCAPE_SPKI_verify(NETSCAPE_SPKI* a, EVP_PKEY* r);
  442. NETSCAPE_SPKI* NETSCAPE_SPKI_b64_decode(const char* str, int len);
  443. char* NETSCAPE_SPKI_b64_encode(NETSCAPE_SPKI* x);
  444. EVP_PKEY* NETSCAPE_SPKI_get_pubkey(NETSCAPE_SPKI* x);
  445. int NETSCAPE_SPKI_set_pubkey(NETSCAPE_SPKI* x, EVP_PKEY* pkey);
  446. int NETSCAPE_SPKI_print(BIO* out, NETSCAPE_SPKI* spki);
  447. int X509_signature_dump(BIO* bp, const ASN1_STRING* sig, int indent);
  448. int X509_signature_print(BIO* bp, const X509_ALGOR* alg, const ASN1_STRING* sig);
  449. int X509_sign(X509* x, EVP_PKEY* pkey, const EVP_MD* md);
  450. int X509_sign_ctx(X509* x, EVP_MD_CTX* ctx);
  451. int X509_REQ_sign(X509_REQ* x, EVP_PKEY* pkey, const EVP_MD* md);
  452. int X509_REQ_sign_ctx(X509_REQ* x, EVP_MD_CTX* ctx);
  453. int X509_CRL_sign(X509_CRL* x, EVP_PKEY* pkey, const EVP_MD* md);
  454. int X509_CRL_sign_ctx(X509_CRL* x, EVP_MD_CTX* ctx);
  455. int NETSCAPE_SPKI_sign(NETSCAPE_SPKI* x, EVP_PKEY* pkey, const EVP_MD* md);
  456. int X509_pubkey_digest(const X509* data, const EVP_MD* type, unsigned char* md, unsigned int* len);
  457. int X509_digest(const X509* data, const EVP_MD* type, unsigned char* md, unsigned int* len);
  458. ASN1_OCTET_STRING* X509_digest_sig(const X509* cert, EVP_MD** md_used, int* md_is_fallback);
  459. int X509_CRL_digest(const X509_CRL* data, const EVP_MD* type, unsigned char* md, unsigned int* len);
  460. int X509_REQ_digest(const X509_REQ* data, const EVP_MD* type, unsigned char* md, unsigned int* len);
  461. int X509_NAME_digest(const X509_NAME* data, const EVP_MD* type, unsigned char* md, unsigned int* len);
  462. X509* X509_load_http(const char* url, BIO* bio, BIO* rbio, int timeout);
  463. X509_CRL* X509_CRL_load_http(const char* url, BIO* bio, BIO* rbio, int timeout);
  464. #ifndef OPENSSL_NO_DEPRECATED_3_0
  465. #include <openssl/http.h> /* OSSL_HTTP_REQ_CTX_nbio_d2i */
  466. #define X509_http_nbio(rctx, pcert) \
  467. OSSL_HTTP_REQ_CTX_nbio_d2i(rctx, pcert, ASN1_ITEM_rptr(X509))
  468. #define X509_CRL_http_nbio(rctx, pcrl) \
  469. OSSL_HTTP_REQ_CTX_nbio_d2i(rctx, pcrl, ASN1_ITEM_rptr(X509_CRL))
  470. #endif
  471. #ifndef OPENSSL_NO_STDIO
  472. X509* d2i_X509_fp(FILE* fp, X509** x509);
  473. int i2d_X509_fp(FILE* fp, const X509* x509);
  474. X509_CRL* d2i_X509_CRL_fp(FILE* fp, X509_CRL** crl);
  475. int i2d_X509_CRL_fp(FILE* fp, const X509_CRL* crl);
  476. X509_REQ* d2i_X509_REQ_fp(FILE* fp, X509_REQ** req);
  477. int i2d_X509_REQ_fp(FILE* fp, const X509_REQ* req);
  478. #ifndef OPENSSL_NO_DEPRECATED_3_0
  479. OSSL_DEPRECATEDIN_3_0 RSA* d2i_RSAPrivateKey_fp(FILE* fp, RSA** rsa);
  480. OSSL_DEPRECATEDIN_3_0 int i2d_RSAPrivateKey_fp(FILE* fp, const RSA* rsa);
  481. OSSL_DEPRECATEDIN_3_0 RSA* d2i_RSAPublicKey_fp(FILE* fp, RSA** rsa);
  482. OSSL_DEPRECATEDIN_3_0 int i2d_RSAPublicKey_fp(FILE* fp, const RSA* rsa);
  483. OSSL_DEPRECATEDIN_3_0 RSA* d2i_RSA_PUBKEY_fp(FILE* fp, RSA** rsa);
  484. OSSL_DEPRECATEDIN_3_0 int i2d_RSA_PUBKEY_fp(FILE* fp, const RSA* rsa);
  485. #endif
  486. #ifndef OPENSSL_NO_DEPRECATED_3_0
  487. #ifndef OPENSSL_NO_DSA
  488. OSSL_DEPRECATEDIN_3_0 DSA* d2i_DSA_PUBKEY_fp(FILE* fp, DSA** dsa);
  489. OSSL_DEPRECATEDIN_3_0 int i2d_DSA_PUBKEY_fp(FILE* fp, const DSA* dsa);
  490. OSSL_DEPRECATEDIN_3_0 DSA* d2i_DSAPrivateKey_fp(FILE* fp, DSA** dsa);
  491. OSSL_DEPRECATEDIN_3_0 int i2d_DSAPrivateKey_fp(FILE* fp, const DSA* dsa);
  492. #endif
  493. #endif
  494. #ifndef OPENSSL_NO_DEPRECATED_3_0
  495. #ifndef OPENSSL_NO_EC
  496. OSSL_DEPRECATEDIN_3_0 EC_KEY* d2i_EC_PUBKEY_fp(FILE* fp, EC_KEY** eckey);
  497. OSSL_DEPRECATEDIN_3_0 int i2d_EC_PUBKEY_fp(FILE* fp, const EC_KEY* eckey);
  498. OSSL_DEPRECATEDIN_3_0 EC_KEY* d2i_ECPrivateKey_fp(FILE* fp, EC_KEY** eckey);
  499. OSSL_DEPRECATEDIN_3_0 int i2d_ECPrivateKey_fp(FILE* fp, const EC_KEY* eckey);
  500. #endif /* OPENSSL_NO_EC */
  501. #endif /* OPENSSL_NO_DEPRECATED_3_0 */
  502. X509_SIG* d2i_PKCS8_fp(FILE* fp, X509_SIG** p8);
  503. int i2d_PKCS8_fp(FILE* fp, const X509_SIG* p8);
  504. X509_PUBKEY* d2i_X509_PUBKEY_fp(FILE* fp, X509_PUBKEY** xpk);
  505. int i2d_X509_PUBKEY_fp(FILE* fp, const X509_PUBKEY* xpk);
  506. PKCS8_PRIV_KEY_INFO* d2i_PKCS8_PRIV_KEY_INFO_fp(FILE* fp, PKCS8_PRIV_KEY_INFO** p8inf);
  507. int i2d_PKCS8_PRIV_KEY_INFO_fp(FILE* fp, const PKCS8_PRIV_KEY_INFO* p8inf);
  508. int i2d_PKCS8PrivateKeyInfo_fp(FILE* fp, const EVP_PKEY* key);
  509. int i2d_PrivateKey_fp(FILE* fp, const EVP_PKEY* pkey);
  510. EVP_PKEY* d2i_PrivateKey_ex_fp(FILE* fp, EVP_PKEY** a, OSSL_LIB_CTX* libctx, const char* propq);
  511. EVP_PKEY* d2i_PrivateKey_fp(FILE* fp, EVP_PKEY** a);
  512. int i2d_PUBKEY_fp(FILE* fp, const EVP_PKEY* pkey);
  513. EVP_PKEY* d2i_PUBKEY_fp(FILE* fp, EVP_PKEY** a);
  514. #endif
  515. X509* d2i_X509_bio(BIO* bp, X509** x509);
  516. int i2d_X509_bio(BIO* bp, const X509* x509);
  517. X509_CRL* d2i_X509_CRL_bio(BIO* bp, X509_CRL** crl);
  518. int i2d_X509_CRL_bio(BIO* bp, const X509_CRL* crl);
  519. X509_REQ* d2i_X509_REQ_bio(BIO* bp, X509_REQ** req);
  520. int i2d_X509_REQ_bio(BIO* bp, const X509_REQ* req);
  521. #ifndef OPENSSL_NO_DEPRECATED_3_0
  522. OSSL_DEPRECATEDIN_3_0 RSA* d2i_RSAPrivateKey_bio(BIO* bp, RSA** rsa);
  523. OSSL_DEPRECATEDIN_3_0 int i2d_RSAPrivateKey_bio(BIO* bp, const RSA* rsa);
  524. OSSL_DEPRECATEDIN_3_0 RSA* d2i_RSAPublicKey_bio(BIO* bp, RSA** rsa);
  525. OSSL_DEPRECATEDIN_3_0 int i2d_RSAPublicKey_bio(BIO* bp, const RSA* rsa);
  526. OSSL_DEPRECATEDIN_3_0 RSA* d2i_RSA_PUBKEY_bio(BIO* bp, RSA** rsa);
  527. OSSL_DEPRECATEDIN_3_0 int i2d_RSA_PUBKEY_bio(BIO* bp, const RSA* rsa);
  528. #endif
  529. #ifndef OPENSSL_NO_DEPRECATED_3_0
  530. #ifndef OPENSSL_NO_DSA
  531. OSSL_DEPRECATEDIN_3_0 DSA* d2i_DSA_PUBKEY_bio(BIO* bp, DSA** dsa);
  532. OSSL_DEPRECATEDIN_3_0 int i2d_DSA_PUBKEY_bio(BIO* bp, const DSA* dsa);
  533. OSSL_DEPRECATEDIN_3_0 DSA* d2i_DSAPrivateKey_bio(BIO* bp, DSA** dsa);
  534. OSSL_DEPRECATEDIN_3_0 int i2d_DSAPrivateKey_bio(BIO* bp, const DSA* dsa);
  535. #endif
  536. #endif
  537. #ifndef OPENSSL_NO_DEPRECATED_3_0
  538. #ifndef OPENSSL_NO_EC
  539. OSSL_DEPRECATEDIN_3_0 EC_KEY* d2i_EC_PUBKEY_bio(BIO* bp, EC_KEY** eckey);
  540. OSSL_DEPRECATEDIN_3_0 int i2d_EC_PUBKEY_bio(BIO* bp, const EC_KEY* eckey);
  541. OSSL_DEPRECATEDIN_3_0 EC_KEY* d2i_ECPrivateKey_bio(BIO* bp, EC_KEY** eckey);
  542. OSSL_DEPRECATEDIN_3_0 int i2d_ECPrivateKey_bio(BIO* bp, const EC_KEY* eckey);
  543. #endif /* OPENSSL_NO_EC */
  544. #endif /* OPENSSL_NO_DEPRECATED_3_0 */
  545. X509_SIG* d2i_PKCS8_bio(BIO* bp, X509_SIG** p8);
  546. int i2d_PKCS8_bio(BIO* bp, const X509_SIG* p8);
  547. X509_PUBKEY* d2i_X509_PUBKEY_bio(BIO* bp, X509_PUBKEY** xpk);
  548. int i2d_X509_PUBKEY_bio(BIO* bp, const X509_PUBKEY* xpk);
  549. PKCS8_PRIV_KEY_INFO* d2i_PKCS8_PRIV_KEY_INFO_bio(BIO* bp, PKCS8_PRIV_KEY_INFO** p8inf);
  550. int i2d_PKCS8_PRIV_KEY_INFO_bio(BIO* bp, const PKCS8_PRIV_KEY_INFO* p8inf);
  551. int i2d_PKCS8PrivateKeyInfo_bio(BIO* bp, const EVP_PKEY* key);
  552. int i2d_PrivateKey_bio(BIO* bp, const EVP_PKEY* pkey);
  553. EVP_PKEY* d2i_PrivateKey_ex_bio(BIO* bp, EVP_PKEY** a, OSSL_LIB_CTX* libctx, const char* propq);
  554. EVP_PKEY* d2i_PrivateKey_bio(BIO* bp, EVP_PKEY** a);
  555. int i2d_PUBKEY_bio(BIO* bp, const EVP_PKEY* pkey);
  556. EVP_PKEY* d2i_PUBKEY_bio(BIO* bp, EVP_PKEY** a);
  557. DECLARE_ASN1_DUP_FUNCTION(X509)
  558. DECLARE_ASN1_DUP_FUNCTION(X509_ALGOR)
  559. DECLARE_ASN1_DUP_FUNCTION(X509_ATTRIBUTE)
  560. DECLARE_ASN1_DUP_FUNCTION(X509_CRL)
  561. DECLARE_ASN1_DUP_FUNCTION(X509_EXTENSION)
  562. DECLARE_ASN1_DUP_FUNCTION(X509_PUBKEY)
  563. DECLARE_ASN1_DUP_FUNCTION(X509_REQ)
  564. DECLARE_ASN1_DUP_FUNCTION(X509_REVOKED)
  565. int X509_ALGOR_set0(X509_ALGOR* alg, ASN1_OBJECT* aobj, int ptype, void* pval);
  566. void X509_ALGOR_get0(const ASN1_OBJECT** paobj, int* pptype, const void** ppval, const X509_ALGOR* algor);
  567. void X509_ALGOR_set_md(X509_ALGOR* alg, const EVP_MD* md);
  568. int X509_ALGOR_cmp(const X509_ALGOR* a, const X509_ALGOR* b);
  569. int X509_ALGOR_copy(X509_ALGOR* dest, const X509_ALGOR* src);
  570. DECLARE_ASN1_DUP_FUNCTION(X509_NAME)
  571. DECLARE_ASN1_DUP_FUNCTION(X509_NAME_ENTRY)
  572. int X509_cmp_time(const ASN1_TIME* s, time_t* t);
  573. int X509_cmp_current_time(const ASN1_TIME* s);
  574. int X509_cmp_timeframe(const X509_VERIFY_PARAM* vpm, const ASN1_TIME* start, const ASN1_TIME* end);
  575. ASN1_TIME* X509_time_adj(ASN1_TIME* s, long adj, time_t* t);
  576. ASN1_TIME* X509_time_adj_ex(ASN1_TIME* s, int offset_day, long offset_sec, time_t* t);
  577. ASN1_TIME* X509_gmtime_adj(ASN1_TIME* s, long adj);
  578. const char* X509_get_default_cert_area(void);
  579. const char* X509_get_default_cert_dir(void);
  580. const char* X509_get_default_cert_file(void);
  581. const char* X509_get_default_cert_dir_env(void);
  582. const char* X509_get_default_cert_file_env(void);
  583. const char* X509_get_default_private_dir(void);
  584. X509_REQ* X509_to_X509_REQ(X509* x, EVP_PKEY* pkey, const EVP_MD* md);
  585. X509* X509_REQ_to_X509(X509_REQ* r, int days, EVP_PKEY* pkey);
  586. DECLARE_ASN1_FUNCTIONS(X509_ALGOR)
  587. DECLARE_ASN1_ENCODE_FUNCTIONS(X509_ALGORS, X509_ALGORS, X509_ALGORS)
  588. DECLARE_ASN1_FUNCTIONS(X509_VAL)
  589. DECLARE_ASN1_FUNCTIONS(X509_PUBKEY)
  590. X509_PUBKEY* X509_PUBKEY_new_ex(OSSL_LIB_CTX* libctx, const char* propq);
  591. int X509_PUBKEY_set(X509_PUBKEY** x, EVP_PKEY* pkey);
  592. EVP_PKEY* X509_PUBKEY_get0(const X509_PUBKEY* key);
  593. EVP_PKEY* X509_PUBKEY_get(const X509_PUBKEY* key);
  594. int X509_get_pubkey_parameters(EVP_PKEY* pkey, STACK_OF(X509) * chain);
  595. long X509_get_pathlen(X509* x);
  596. DECLARE_ASN1_ENCODE_FUNCTIONS_only(EVP_PKEY, PUBKEY)
  597. EVP_PKEY* d2i_PUBKEY_ex(EVP_PKEY** a, const unsigned char** pp, long length, OSSL_LIB_CTX* libctx, const char* propq);
  598. #ifndef OPENSSL_NO_DEPRECATED_3_0
  599. DECLARE_ASN1_ENCODE_FUNCTIONS_only_attr(OSSL_DEPRECATEDIN_3_0, RSA, RSA_PUBKEY)
  600. #endif
  601. #ifndef OPENSSL_NO_DEPRECATED_3_0
  602. #ifndef OPENSSL_NO_DSA
  603. DECLARE_ASN1_ENCODE_FUNCTIONS_only_attr(OSSL_DEPRECATEDIN_3_0, DSA, DSA_PUBKEY)
  604. #endif
  605. #endif
  606. #ifndef OPENSSL_NO_DEPRECATED_3_0
  607. #ifndef OPENSSL_NO_EC
  608. DECLARE_ASN1_ENCODE_FUNCTIONS_only_attr(OSSL_DEPRECATEDIN_3_0, EC_KEY, EC_PUBKEY)
  609. #endif
  610. #endif
  611. DECLARE_ASN1_FUNCTIONS(X509_SIG) void X509_SIG_get0(const X509_SIG* sig, const X509_ALGOR** palg, const ASN1_OCTET_STRING** pdigest);
  612. void X509_SIG_getm(X509_SIG* sig, X509_ALGOR** palg, ASN1_OCTET_STRING** pdigest);
  613. DECLARE_ASN1_FUNCTIONS(X509_REQ_INFO)
  614. DECLARE_ASN1_FUNCTIONS(X509_REQ)
  615. X509_REQ* X509_REQ_new_ex(OSSL_LIB_CTX* libctx, const char* propq);
  616. DECLARE_ASN1_FUNCTIONS(X509_ATTRIBUTE)
  617. X509_ATTRIBUTE* X509_ATTRIBUTE_create(int nid, int atrtype, void* value);
  618. DECLARE_ASN1_FUNCTIONS(X509_EXTENSION)
  619. DECLARE_ASN1_ENCODE_FUNCTIONS(X509_EXTENSIONS, X509_EXTENSIONS, X509_EXTENSIONS)
  620. DECLARE_ASN1_FUNCTIONS(X509_NAME_ENTRY)
  621. DECLARE_ASN1_FUNCTIONS(X509_NAME)
  622. int X509_NAME_set(X509_NAME** xn, const X509_NAME* name);
  623. DECLARE_ASN1_FUNCTIONS(X509_CINF)
  624. DECLARE_ASN1_FUNCTIONS(X509)
  625. X509* X509_new_ex(OSSL_LIB_CTX* libctx, const char* propq);
  626. DECLARE_ASN1_FUNCTIONS(X509_CERT_AUX)
  627. #define X509_get_ex_new_index(l, p, newf, dupf, freef) \
  628. CRYPTO_get_ex_new_index(CRYPTO_EX_INDEX_X509, l, p, newf, dupf, freef)
  629. int X509_set_ex_data(X509* r, int idx, void* arg);
  630. void* X509_get_ex_data(const X509* r, int idx);
  631. DECLARE_ASN1_ENCODE_FUNCTIONS_only(X509, X509_AUX)
  632. int i2d_re_X509_tbs(X509* x, unsigned char** pp);
  633. int X509_SIG_INFO_get(const X509_SIG_INFO* siginf, int* mdnid, int* pknid, int* secbits, uint32_t* flags);
  634. void X509_SIG_INFO_set(X509_SIG_INFO* siginf, int mdnid, int pknid, int secbits, uint32_t flags);
  635. int X509_get_signature_info(X509* x, int* mdnid, int* pknid, int* secbits, uint32_t* flags);
  636. void X509_get0_signature(const ASN1_BIT_STRING** psig, const X509_ALGOR** palg, const X509* x);
  637. int X509_get_signature_nid(const X509* x);
  638. void X509_set0_distinguishing_id(X509* x, ASN1_OCTET_STRING* d_id);
  639. ASN1_OCTET_STRING* X509_get0_distinguishing_id(X509* x);
  640. void X509_REQ_set0_distinguishing_id(X509_REQ* x, ASN1_OCTET_STRING* d_id);
  641. ASN1_OCTET_STRING* X509_REQ_get0_distinguishing_id(X509_REQ* x);
  642. int X509_alias_set1(X509* x, const unsigned char* name, int len);
  643. int X509_keyid_set1(X509* x, const unsigned char* id, int len);
  644. unsigned char* X509_alias_get0(X509* x, int* len);
  645. unsigned char* X509_keyid_get0(X509* x, int* len);
  646. DECLARE_ASN1_FUNCTIONS(X509_REVOKED)
  647. DECLARE_ASN1_FUNCTIONS(X509_CRL_INFO)
  648. DECLARE_ASN1_FUNCTIONS(X509_CRL)
  649. X509_CRL* X509_CRL_new_ex(OSSL_LIB_CTX* libctx, const char* propq);
  650. int X509_CRL_add0_revoked(X509_CRL* crl, X509_REVOKED* rev);
  651. int X509_CRL_get0_by_serial(X509_CRL* crl, X509_REVOKED** ret, const ASN1_INTEGER* serial);
  652. int X509_CRL_get0_by_cert(X509_CRL* crl, X509_REVOKED** ret, X509* x);
  653. X509_PKEY* X509_PKEY_new(void);
  654. void X509_PKEY_free(X509_PKEY* a);
  655. DECLARE_ASN1_FUNCTIONS(NETSCAPE_SPKI)
  656. DECLARE_ASN1_FUNCTIONS(NETSCAPE_SPKAC)
  657. DECLARE_ASN1_FUNCTIONS(NETSCAPE_CERT_SEQUENCE)
  658. X509_INFO* X509_INFO_new(void);
  659. void X509_INFO_free(X509_INFO* a);
  660. char* X509_NAME_oneline(const X509_NAME* a, char* buf, int size);
  661. #ifndef OPENSSL_NO_DEPRECATED_3_0
  662. OSSL_DEPRECATEDIN_3_0
  663. int ASN1_verify(i2d_of_void* i2d, X509_ALGOR* algor1, ASN1_BIT_STRING* signature, char* data, EVP_PKEY* pkey);
  664. OSSL_DEPRECATEDIN_3_0
  665. int ASN1_digest(i2d_of_void* i2d, const EVP_MD* type, char* data, unsigned char* md, unsigned int* len);
  666. OSSL_DEPRECATEDIN_3_0
  667. int ASN1_sign(i2d_of_void* i2d, X509_ALGOR* algor1, X509_ALGOR* algor2, ASN1_BIT_STRING* signature, char* data, EVP_PKEY* pkey, const EVP_MD* type);
  668. #endif
  669. int ASN1_item_digest(const ASN1_ITEM* it, const EVP_MD* type, void* data, unsigned char* md, unsigned int* len);
  670. int ASN1_item_verify(const ASN1_ITEM* it, const X509_ALGOR* alg, const ASN1_BIT_STRING* signature, const void* data, EVP_PKEY* pkey);
  671. int ASN1_item_verify_ctx(const ASN1_ITEM* it, const X509_ALGOR* alg, const ASN1_BIT_STRING* signature, const void* data, EVP_MD_CTX* ctx);
  672. int ASN1_item_sign(const ASN1_ITEM* it, X509_ALGOR* algor1, X509_ALGOR* algor2, ASN1_BIT_STRING* signature, const void* data, EVP_PKEY* pkey, const EVP_MD* md);
  673. int ASN1_item_sign_ctx(const ASN1_ITEM* it, X509_ALGOR* algor1, X509_ALGOR* algor2, ASN1_BIT_STRING* signature, const void* data, EVP_MD_CTX* ctx);
  674. #define X509_VERSION_1 0
  675. #define X509_VERSION_2 1
  676. #define X509_VERSION_3 2
  677. long X509_get_version(const X509* x);
  678. int X509_set_version(X509* x, long version);
  679. int X509_set_serialNumber(X509* x, ASN1_INTEGER* serial);
  680. ASN1_INTEGER* X509_get_serialNumber(X509* x);
  681. const ASN1_INTEGER* X509_get0_serialNumber(const X509* x);
  682. int X509_set_issuer_name(X509* x, const X509_NAME* name);
  683. X509_NAME* X509_get_issuer_name(const X509* a);
  684. int X509_set_subject_name(X509* x, const X509_NAME* name);
  685. X509_NAME* X509_get_subject_name(const X509* a);
  686. const ASN1_TIME* X509_get0_notBefore(const X509* x);
  687. ASN1_TIME* X509_getm_notBefore(const X509* x);
  688. int X509_set1_notBefore(X509* x, const ASN1_TIME* tm);
  689. const ASN1_TIME* X509_get0_notAfter(const X509* x);
  690. ASN1_TIME* X509_getm_notAfter(const X509* x);
  691. int X509_set1_notAfter(X509* x, const ASN1_TIME* tm);
  692. int X509_set_pubkey(X509* x, EVP_PKEY* pkey);
  693. int X509_up_ref(X509* x);
  694. int X509_get_signature_type(const X509* x);
  695. #ifndef OPENSSL_NO_DEPRECATED_1_1_0
  696. #define X509_get_notBefore X509_getm_notBefore
  697. #define X509_get_notAfter X509_getm_notAfter
  698. #define X509_set_notBefore X509_set1_notBefore
  699. #define X509_set_notAfter X509_set1_notAfter
  700. #endif
  701. /*
  702. * This one is only used so that a binary form can output, as in
  703. * i2d_X509_PUBKEY(X509_get_X509_PUBKEY(x), &buf)
  704. */
  705. X509_PUBKEY* X509_get_X509_PUBKEY(const X509* x);
  706. const STACK_OF(X509_EXTENSION) * X509_get0_extensions(const X509* x);
  707. void X509_get0_uids(const X509* x, const ASN1_BIT_STRING** piuid, const ASN1_BIT_STRING** psuid);
  708. const X509_ALGOR* X509_get0_tbs_sigalg(const X509* x);
  709. EVP_PKEY* X509_get0_pubkey(const X509* x);
  710. EVP_PKEY* X509_get_pubkey(X509* x);
  711. ASN1_BIT_STRING* X509_get0_pubkey_bitstr(const X509* x);
  712. #define X509_REQ_VERSION_1 0
  713. long X509_REQ_get_version(const X509_REQ* req);
  714. int X509_REQ_set_version(X509_REQ* x, long version);
  715. X509_NAME* X509_REQ_get_subject_name(const X509_REQ* req);
  716. int X509_REQ_set_subject_name(X509_REQ* req, const X509_NAME* name);
  717. void X509_REQ_get0_signature(const X509_REQ* req, const ASN1_BIT_STRING** psig, const X509_ALGOR** palg);
  718. void X509_REQ_set0_signature(X509_REQ* req, ASN1_BIT_STRING* psig);
  719. int X509_REQ_set1_signature_algo(X509_REQ* req, X509_ALGOR* palg);
  720. int X509_REQ_get_signature_nid(const X509_REQ* req);
  721. int i2d_re_X509_REQ_tbs(X509_REQ* req, unsigned char** pp);
  722. int X509_REQ_set_pubkey(X509_REQ* x, EVP_PKEY* pkey);
  723. EVP_PKEY* X509_REQ_get_pubkey(X509_REQ* req);
  724. EVP_PKEY* X509_REQ_get0_pubkey(X509_REQ* req);
  725. X509_PUBKEY* X509_REQ_get_X509_PUBKEY(X509_REQ* req);
  726. int X509_REQ_extension_nid(int nid);
  727. int* X509_REQ_get_extension_nids(void);
  728. void X509_REQ_set_extension_nids(int* nids);
  729. STACK_OF(X509_EXTENSION) * X509_REQ_get_extensions(X509_REQ* req);
  730. int X509_REQ_add_extensions_nid(X509_REQ* req, const STACK_OF(X509_EXTENSION) * exts, int nid);
  731. int X509_REQ_add_extensions(X509_REQ* req, const STACK_OF(X509_EXTENSION) * ext);
  732. int X509_REQ_get_attr_count(const X509_REQ* req);
  733. int X509_REQ_get_attr_by_NID(const X509_REQ* req, int nid, int lastpos);
  734. int X509_REQ_get_attr_by_OBJ(const X509_REQ* req, const ASN1_OBJECT* obj, int lastpos);
  735. X509_ATTRIBUTE* X509_REQ_get_attr(const X509_REQ* req, int loc);
  736. X509_ATTRIBUTE* X509_REQ_delete_attr(X509_REQ* req, int loc);
  737. int X509_REQ_add1_attr(X509_REQ* req, X509_ATTRIBUTE* attr);
  738. int X509_REQ_add1_attr_by_OBJ(X509_REQ* req, const ASN1_OBJECT* obj, int type, const unsigned char* bytes, int len);
  739. int X509_REQ_add1_attr_by_NID(X509_REQ* req, int nid, int type, const unsigned char* bytes, int len);
  740. int X509_REQ_add1_attr_by_txt(X509_REQ* req, const char* attrname, int type, const unsigned char* bytes, int len);
  741. #define X509_CRL_VERSION_1 0
  742. #define X509_CRL_VERSION_2 1
  743. int X509_CRL_set_version(X509_CRL* x, long version);
  744. int X509_CRL_set_issuer_name(X509_CRL* x, const X509_NAME* name);
  745. int X509_CRL_set1_lastUpdate(X509_CRL* x, const ASN1_TIME* tm);
  746. int X509_CRL_set1_nextUpdate(X509_CRL* x, const ASN1_TIME* tm);
  747. int X509_CRL_sort(X509_CRL* crl);
  748. int X509_CRL_up_ref(X509_CRL* crl);
  749. #ifndef OPENSSL_NO_DEPRECATED_1_1_0
  750. #define X509_CRL_set_lastUpdate X509_CRL_set1_lastUpdate
  751. #define X509_CRL_set_nextUpdate X509_CRL_set1_nextUpdate
  752. #endif
  753. long X509_CRL_get_version(const X509_CRL* crl);
  754. const ASN1_TIME* X509_CRL_get0_lastUpdate(const X509_CRL* crl);
  755. const ASN1_TIME* X509_CRL_get0_nextUpdate(const X509_CRL* crl);
  756. #ifndef OPENSSL_NO_DEPRECATED_1_1_0
  757. OSSL_DEPRECATEDIN_1_1_0 ASN1_TIME* X509_CRL_get_lastUpdate(X509_CRL* crl);
  758. OSSL_DEPRECATEDIN_1_1_0 ASN1_TIME* X509_CRL_get_nextUpdate(X509_CRL* crl);
  759. #endif
  760. X509_NAME* X509_CRL_get_issuer(const X509_CRL* crl);
  761. const STACK_OF(X509_EXTENSION) * X509_CRL_get0_extensions(const X509_CRL* crl);
  762. STACK_OF(X509_REVOKED) * X509_CRL_get_REVOKED(X509_CRL* crl);
  763. void X509_CRL_get0_signature(const X509_CRL* crl, const ASN1_BIT_STRING** psig, const X509_ALGOR** palg);
  764. int X509_CRL_get_signature_nid(const X509_CRL* crl);
  765. int i2d_re_X509_CRL_tbs(X509_CRL* req, unsigned char** pp);
  766. const ASN1_INTEGER* X509_REVOKED_get0_serialNumber(const X509_REVOKED* x);
  767. int X509_REVOKED_set_serialNumber(X509_REVOKED* x, ASN1_INTEGER* serial);
  768. const ASN1_TIME* X509_REVOKED_get0_revocationDate(const X509_REVOKED* x);
  769. int X509_REVOKED_set_revocationDate(X509_REVOKED* r, ASN1_TIME* tm);
  770. const STACK_OF(X509_EXTENSION) *
  771. X509_REVOKED_get0_extensions(const X509_REVOKED* r);
  772. X509_CRL* X509_CRL_diff(X509_CRL* base, X509_CRL* newer, EVP_PKEY* skey, const EVP_MD* md, unsigned int flags);
  773. int X509_REQ_check_private_key(X509_REQ* x509, EVP_PKEY* pkey);
  774. int X509_check_private_key(const X509* x509, const EVP_PKEY* pkey);
  775. int X509_chain_check_suiteb(int* perror_depth, X509* x, STACK_OF(X509) * chain, unsigned long flags);
  776. int X509_CRL_check_suiteb(X509_CRL* crl, EVP_PKEY* pk, unsigned long flags);
  777. STACK_OF(X509) * X509_chain_up_ref(STACK_OF(X509) * chain);
  778. int X509_issuer_and_serial_cmp(const X509* a, const X509* b);
  779. unsigned long X509_issuer_and_serial_hash(X509* a);
  780. int X509_issuer_name_cmp(const X509* a, const X509* b);
  781. unsigned long X509_issuer_name_hash(X509* a);
  782. int X509_subject_name_cmp(const X509* a, const X509* b);
  783. unsigned long X509_subject_name_hash(X509* x);
  784. #ifndef OPENSSL_NO_MD5
  785. unsigned long X509_issuer_name_hash_old(X509* a);
  786. unsigned long X509_subject_name_hash_old(X509* x);
  787. #endif
  788. #define X509_ADD_FLAG_DEFAULT 0
  789. #define X509_ADD_FLAG_UP_REF 0x1
  790. #define X509_ADD_FLAG_PREPEND 0x2
  791. #define X509_ADD_FLAG_NO_DUP 0x4
  792. #define X509_ADD_FLAG_NO_SS 0x8
  793. int X509_add_cert(STACK_OF(X509) * sk, X509* cert, int flags);
  794. int X509_add_certs(STACK_OF(X509) * sk, STACK_OF(X509) * certs, int flags);
  795. int X509_cmp(const X509* a, const X509* b);
  796. int X509_NAME_cmp(const X509_NAME* a, const X509_NAME* b);
  797. #ifndef OPENSSL_NO_DEPRECATED_3_0
  798. #define X509_NAME_hash(x) X509_NAME_hash_ex(x, NULL, NULL, NULL)
  799. OSSL_DEPRECATEDIN_3_0 int X509_certificate_type(const X509* x, const EVP_PKEY* pubkey);
  800. #endif
  801. unsigned long X509_NAME_hash_ex(const X509_NAME* x, OSSL_LIB_CTX* libctx, const char* propq, int* ok);
  802. unsigned long X509_NAME_hash_old(const X509_NAME* x);
  803. int X509_CRL_cmp(const X509_CRL* a, const X509_CRL* b);
  804. int X509_CRL_match(const X509_CRL* a, const X509_CRL* b);
  805. int X509_aux_print(BIO* out, X509* x, int indent);
  806. #ifndef OPENSSL_NO_STDIO
  807. int X509_print_ex_fp(FILE* bp, X509* x, unsigned long nmflag, unsigned long cflag);
  808. int X509_print_fp(FILE* bp, X509* x);
  809. int X509_CRL_print_fp(FILE* bp, X509_CRL* x);
  810. int X509_REQ_print_fp(FILE* bp, X509_REQ* req);
  811. int X509_NAME_print_ex_fp(FILE* fp, const X509_NAME* nm, int indent, unsigned long flags);
  812. #endif
  813. int X509_NAME_print(BIO* bp, const X509_NAME* name, int obase);
  814. int X509_NAME_print_ex(BIO* out, const X509_NAME* nm, int indent, unsigned long flags);
  815. int X509_print_ex(BIO* bp, X509* x, unsigned long nmflag, unsigned long cflag);
  816. int X509_print(BIO* bp, X509* x);
  817. int X509_ocspid_print(BIO* bp, X509* x);
  818. int X509_CRL_print_ex(BIO* out, X509_CRL* x, unsigned long nmflag);
  819. int X509_CRL_print(BIO* bp, X509_CRL* x);
  820. int X509_REQ_print_ex(BIO* bp, X509_REQ* x, unsigned long nmflag, unsigned long cflag);
  821. int X509_REQ_print(BIO* bp, X509_REQ* req);
  822. int X509_NAME_entry_count(const X509_NAME* name);
  823. int X509_NAME_get_text_by_NID(const X509_NAME* name, int nid, char* buf, int len);
  824. int X509_NAME_get_text_by_OBJ(const X509_NAME* name, const ASN1_OBJECT* obj, char* buf, int len);
  825. /*
  826. * NOTE: you should be passing -1, not 0 as lastpos. The functions that use
  827. * lastpos, search after that position on.
  828. */
  829. int X509_NAME_get_index_by_NID(const X509_NAME* name, int nid, int lastpos);
  830. int X509_NAME_get_index_by_OBJ(const X509_NAME* name, const ASN1_OBJECT* obj, int lastpos);
  831. X509_NAME_ENTRY* X509_NAME_get_entry(const X509_NAME* name, int loc);
  832. X509_NAME_ENTRY* X509_NAME_delete_entry(X509_NAME* name, int loc);
  833. int X509_NAME_add_entry(X509_NAME* name, const X509_NAME_ENTRY* ne, int loc, int set);
  834. int X509_NAME_add_entry_by_OBJ(X509_NAME* name, const ASN1_OBJECT* obj, int type, const unsigned char* bytes, int len, int loc, int set);
  835. int X509_NAME_add_entry_by_NID(X509_NAME* name, int nid, int type, const unsigned char* bytes, int len, int loc, int set);
  836. X509_NAME_ENTRY* X509_NAME_ENTRY_create_by_txt(X509_NAME_ENTRY** ne, const char* field, int type, const unsigned char* bytes, int len);
  837. X509_NAME_ENTRY* X509_NAME_ENTRY_create_by_NID(X509_NAME_ENTRY** ne, int nid, int type, const unsigned char* bytes, int len);
  838. int X509_NAME_add_entry_by_txt(X509_NAME* name, const char* field, int type, const unsigned char* bytes, int len, int loc, int set);
  839. X509_NAME_ENTRY* X509_NAME_ENTRY_create_by_OBJ(X509_NAME_ENTRY** ne, const ASN1_OBJECT* obj, int type, const unsigned char* bytes, int len);
  840. int X509_NAME_ENTRY_set_object(X509_NAME_ENTRY* ne, const ASN1_OBJECT* obj);
  841. int X509_NAME_ENTRY_set_data(X509_NAME_ENTRY* ne, int type, const unsigned char* bytes, int len);
  842. ASN1_OBJECT* X509_NAME_ENTRY_get_object(const X509_NAME_ENTRY* ne);
  843. ASN1_STRING* X509_NAME_ENTRY_get_data(const X509_NAME_ENTRY* ne);
  844. int X509_NAME_ENTRY_set(const X509_NAME_ENTRY* ne);
  845. int X509_NAME_get0_der(const X509_NAME* nm, const unsigned char** pder, size_t* pderlen);
  846. int X509v3_get_ext_count(const STACK_OF(X509_EXTENSION) * x);
  847. int X509v3_get_ext_by_NID(const STACK_OF(X509_EXTENSION) * x, int nid, int lastpos);
  848. int X509v3_get_ext_by_OBJ(const STACK_OF(X509_EXTENSION) * x, const ASN1_OBJECT* obj, int lastpos);
  849. int X509v3_get_ext_by_critical(const STACK_OF(X509_EXTENSION) * x, int crit, int lastpos);
  850. X509_EXTENSION* X509v3_get_ext(const STACK_OF(X509_EXTENSION) * x, int loc);
  851. X509_EXTENSION* X509v3_delete_ext(STACK_OF(X509_EXTENSION) * x, int loc);
  852. STACK_OF(X509_EXTENSION) * X509v3_add_ext(STACK_OF(X509_EXTENSION) * *x, X509_EXTENSION* ex, int loc);
  853. int X509_get_ext_count(const X509* x);
  854. int X509_get_ext_by_NID(const X509* x, int nid, int lastpos);
  855. int X509_get_ext_by_OBJ(const X509* x, const ASN1_OBJECT* obj, int lastpos);
  856. int X509_get_ext_by_critical(const X509* x, int crit, int lastpos);
  857. X509_EXTENSION* X509_get_ext(const X509* x, int loc);
  858. X509_EXTENSION* X509_delete_ext(X509* x, int loc);
  859. int X509_add_ext(X509* x, X509_EXTENSION* ex, int loc);
  860. void* X509_get_ext_d2i(const X509* x, int nid, int* crit, int* idx);
  861. int X509_add1_ext_i2d(X509* x, int nid, void* value, int crit, unsigned long flags);
  862. int X509_CRL_get_ext_count(const X509_CRL* x);
  863. int X509_CRL_get_ext_by_NID(const X509_CRL* x, int nid, int lastpos);
  864. int X509_CRL_get_ext_by_OBJ(const X509_CRL* x, const ASN1_OBJECT* obj, int lastpos);
  865. int X509_CRL_get_ext_by_critical(const X509_CRL* x, int crit, int lastpos);
  866. X509_EXTENSION* X509_CRL_get_ext(const X509_CRL* x, int loc);
  867. X509_EXTENSION* X509_CRL_delete_ext(X509_CRL* x, int loc);
  868. int X509_CRL_add_ext(X509_CRL* x, X509_EXTENSION* ex, int loc);
  869. void* X509_CRL_get_ext_d2i(const X509_CRL* x, int nid, int* crit, int* idx);
  870. int X509_CRL_add1_ext_i2d(X509_CRL* x, int nid, void* value, int crit, unsigned long flags);
  871. int X509_REVOKED_get_ext_count(const X509_REVOKED* x);
  872. int X509_REVOKED_get_ext_by_NID(const X509_REVOKED* x, int nid, int lastpos);
  873. int X509_REVOKED_get_ext_by_OBJ(const X509_REVOKED* x, const ASN1_OBJECT* obj, int lastpos);
  874. int X509_REVOKED_get_ext_by_critical(const X509_REVOKED* x, int crit, int lastpos);
  875. X509_EXTENSION* X509_REVOKED_get_ext(const X509_REVOKED* x, int loc);
  876. X509_EXTENSION* X509_REVOKED_delete_ext(X509_REVOKED* x, int loc);
  877. int X509_REVOKED_add_ext(X509_REVOKED* x, X509_EXTENSION* ex, int loc);
  878. void* X509_REVOKED_get_ext_d2i(const X509_REVOKED* x, int nid, int* crit, int* idx);
  879. int X509_REVOKED_add1_ext_i2d(X509_REVOKED* x, int nid, void* value, int crit, unsigned long flags);
  880. X509_EXTENSION* X509_EXTENSION_create_by_NID(X509_EXTENSION** ex, int nid, int crit, ASN1_OCTET_STRING* data);
  881. X509_EXTENSION* X509_EXTENSION_create_by_OBJ(X509_EXTENSION** ex, const ASN1_OBJECT* obj, int crit, ASN1_OCTET_STRING* data);
  882. int X509_EXTENSION_set_object(X509_EXTENSION* ex, const ASN1_OBJECT* obj);
  883. int X509_EXTENSION_set_critical(X509_EXTENSION* ex, int crit);
  884. int X509_EXTENSION_set_data(X509_EXTENSION* ex, ASN1_OCTET_STRING* data);
  885. ASN1_OBJECT* X509_EXTENSION_get_object(X509_EXTENSION* ex);
  886. ASN1_OCTET_STRING* X509_EXTENSION_get_data(X509_EXTENSION* ne);
  887. int X509_EXTENSION_get_critical(const X509_EXTENSION* ex);
  888. int X509at_get_attr_count(const STACK_OF(X509_ATTRIBUTE) * x);
  889. int X509at_get_attr_by_NID(const STACK_OF(X509_ATTRIBUTE) * x, int nid, int lastpos);
  890. int X509at_get_attr_by_OBJ(const STACK_OF(X509_ATTRIBUTE) * sk, const ASN1_OBJECT* obj, int lastpos);
  891. X509_ATTRIBUTE* X509at_get_attr(const STACK_OF(X509_ATTRIBUTE) * x, int loc);
  892. X509_ATTRIBUTE* X509at_delete_attr(STACK_OF(X509_ATTRIBUTE) * x, int loc);
  893. STACK_OF(X509_ATTRIBUTE) * X509at_add1_attr(STACK_OF(X509_ATTRIBUTE) * *x, X509_ATTRIBUTE* attr);
  894. STACK_OF(X509_ATTRIBUTE) * X509at_add1_attr_by_OBJ(STACK_OF(X509_ATTRIBUTE) * *x, const ASN1_OBJECT* obj, int type, const unsigned char* bytes, int len);
  895. STACK_OF(X509_ATTRIBUTE) * X509at_add1_attr_by_NID(STACK_OF(X509_ATTRIBUTE) * *x, int nid, int type, const unsigned char* bytes, int len);
  896. STACK_OF(X509_ATTRIBUTE) * X509at_add1_attr_by_txt(STACK_OF(X509_ATTRIBUTE) * *x, const char* attrname, int type, const unsigned char* bytes, int len);
  897. void* X509at_get0_data_by_OBJ(const STACK_OF(X509_ATTRIBUTE) * x, const ASN1_OBJECT* obj, int lastpos, int type);
  898. X509_ATTRIBUTE* X509_ATTRIBUTE_create_by_NID(X509_ATTRIBUTE** attr, int nid, int atrtype, const void* data, int len);
  899. X509_ATTRIBUTE* X509_ATTRIBUTE_create_by_OBJ(X509_ATTRIBUTE** attr, const ASN1_OBJECT* obj, int atrtype, const void* data, int len);
  900. X509_ATTRIBUTE* X509_ATTRIBUTE_create_by_txt(X509_ATTRIBUTE** attr, const char* atrname, int type, const unsigned char* bytes, int len);
  901. int X509_ATTRIBUTE_set1_object(X509_ATTRIBUTE* attr, const ASN1_OBJECT* obj);
  902. int X509_ATTRIBUTE_set1_data(X509_ATTRIBUTE* attr, int attrtype, const void* data, int len);
  903. void* X509_ATTRIBUTE_get0_data(X509_ATTRIBUTE* attr, int idx, int atrtype, void* data);
  904. int X509_ATTRIBUTE_count(const X509_ATTRIBUTE* attr);
  905. ASN1_OBJECT* X509_ATTRIBUTE_get0_object(X509_ATTRIBUTE* attr);
  906. ASN1_TYPE* X509_ATTRIBUTE_get0_type(X509_ATTRIBUTE* attr, int idx);
  907. int EVP_PKEY_get_attr_count(const EVP_PKEY* key);
  908. int EVP_PKEY_get_attr_by_NID(const EVP_PKEY* key, int nid, int lastpos);
  909. int EVP_PKEY_get_attr_by_OBJ(const EVP_PKEY* key, const ASN1_OBJECT* obj, int lastpos);
  910. X509_ATTRIBUTE* EVP_PKEY_get_attr(const EVP_PKEY* key, int loc);
  911. X509_ATTRIBUTE* EVP_PKEY_delete_attr(EVP_PKEY* key, int loc);
  912. int EVP_PKEY_add1_attr(EVP_PKEY* key, X509_ATTRIBUTE* attr);
  913. int EVP_PKEY_add1_attr_by_OBJ(EVP_PKEY* key, const ASN1_OBJECT* obj, int type, const unsigned char* bytes, int len);
  914. int EVP_PKEY_add1_attr_by_NID(EVP_PKEY* key, int nid, int type, const unsigned char* bytes, int len);
  915. int EVP_PKEY_add1_attr_by_txt(EVP_PKEY* key, const char* attrname, int type, const unsigned char* bytes, int len);
  916. /* lookup a cert from a X509 STACK */
  917. X509* X509_find_by_issuer_and_serial(STACK_OF(X509) * sk, const X509_NAME* name, const ASN1_INTEGER* serial);
  918. X509* X509_find_by_subject(STACK_OF(X509) * sk, const X509_NAME* name);
  919. DECLARE_ASN1_FUNCTIONS(PBEPARAM)
  920. DECLARE_ASN1_FUNCTIONS(PBE2PARAM)
  921. DECLARE_ASN1_FUNCTIONS(PBKDF2PARAM)
  922. #ifndef OPENSSL_NO_SCRYPT
  923. DECLARE_ASN1_FUNCTIONS(SCRYPT_PARAMS)
  924. #endif
  925. int PKCS5_pbe_set0_algor(X509_ALGOR* algor, int alg, int iter, const unsigned char* salt, int saltlen);
  926. int PKCS5_pbe_set0_algor_ex(X509_ALGOR* algor, int alg, int iter, const unsigned char* salt, int saltlen, OSSL_LIB_CTX* libctx);
  927. X509_ALGOR* PKCS5_pbe_set(int alg, int iter, const unsigned char* salt, int saltlen);
  928. X509_ALGOR* PKCS5_pbe_set_ex(int alg, int iter, const unsigned char* salt, int saltlen, OSSL_LIB_CTX* libctx);
  929. X509_ALGOR* PKCS5_pbe2_set(const EVP_CIPHER* cipher, int iter, unsigned char* salt, int saltlen);
  930. X509_ALGOR* PKCS5_pbe2_set_iv(const EVP_CIPHER* cipher, int iter, unsigned char* salt, int saltlen, unsigned char* aiv, int prf_nid);
  931. X509_ALGOR* PKCS5_pbe2_set_iv_ex(const EVP_CIPHER* cipher, int iter, unsigned char* salt, int saltlen, unsigned char* aiv, int prf_nid, OSSL_LIB_CTX* libctx);
  932. #ifndef OPENSSL_NO_SCRYPT
  933. X509_ALGOR* PKCS5_pbe2_set_scrypt(const EVP_CIPHER* cipher, const unsigned char* salt, int saltlen, unsigned char* aiv, uint64_t N, uint64_t r, uint64_t p);
  934. #endif
  935. X509_ALGOR* PKCS5_pbkdf2_set(int iter, unsigned char* salt, int saltlen, int prf_nid, int keylen);
  936. X509_ALGOR* PKCS5_pbkdf2_set_ex(int iter, unsigned char* salt, int saltlen, int prf_nid, int keylen, OSSL_LIB_CTX* libctx);
  937. /* PKCS#8 utilities */
  938. DECLARE_ASN1_FUNCTIONS(PKCS8_PRIV_KEY_INFO)
  939. EVP_PKEY* EVP_PKCS82PKEY(const PKCS8_PRIV_KEY_INFO* p8);
  940. EVP_PKEY* EVP_PKCS82PKEY_ex(const PKCS8_PRIV_KEY_INFO* p8, OSSL_LIB_CTX* libctx, const char* propq);
  941. PKCS8_PRIV_KEY_INFO* EVP_PKEY2PKCS8(const EVP_PKEY* pkey);
  942. int PKCS8_pkey_set0(PKCS8_PRIV_KEY_INFO* priv, ASN1_OBJECT* aobj, int version, int ptype, void* pval, unsigned char* penc, int penclen);
  943. int PKCS8_pkey_get0(const ASN1_OBJECT** ppkalg, const unsigned char** pk, int* ppklen, const X509_ALGOR** pa, const PKCS8_PRIV_KEY_INFO* p8);
  944. const STACK_OF(X509_ATTRIBUTE) *
  945. PKCS8_pkey_get0_attrs(const PKCS8_PRIV_KEY_INFO* p8);
  946. int PKCS8_pkey_add1_attr(PKCS8_PRIV_KEY_INFO* p8, X509_ATTRIBUTE* attr);
  947. int PKCS8_pkey_add1_attr_by_NID(PKCS8_PRIV_KEY_INFO* p8, int nid, int type, const unsigned char* bytes, int len);
  948. int PKCS8_pkey_add1_attr_by_OBJ(PKCS8_PRIV_KEY_INFO* p8, const ASN1_OBJECT* obj, int type, const unsigned char* bytes, int len);
  949. int X509_PUBKEY_set0_param(X509_PUBKEY* pub, ASN1_OBJECT* aobj, int ptype, void* pval, unsigned char* penc, int penclen);
  950. int X509_PUBKEY_get0_param(ASN1_OBJECT** ppkalg, const unsigned char** pk, int* ppklen, X509_ALGOR** pa, const X509_PUBKEY* pub);
  951. int X509_PUBKEY_eq(const X509_PUBKEY* a, const X509_PUBKEY* b);
  952. #ifdef __cplusplus
  953. }
  954. #endif
  955. #endif