1221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom/* asn1t.h */ 2221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom/* Written by Dr Stephen N Henson (steve@openssl.org) for the OpenSSL 3221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom * project 2006. 4221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom */ 5e45f106cb6b47af1f21efe76e933bdea2f5dd1caNagendra Modadugu/* ==================================================================== 6221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom * Copyright (c) 2006 The OpenSSL Project. All rights reserved. 7e45f106cb6b47af1f21efe76e933bdea2f5dd1caNagendra Modadugu * 8e45f106cb6b47af1f21efe76e933bdea2f5dd1caNagendra Modadugu * Redistribution and use in source and binary forms, with or without 9e45f106cb6b47af1f21efe76e933bdea2f5dd1caNagendra Modadugu * modification, are permitted provided that the following conditions 10e45f106cb6b47af1f21efe76e933bdea2f5dd1caNagendra Modadugu * are met: 11e45f106cb6b47af1f21efe76e933bdea2f5dd1caNagendra Modadugu * 12e45f106cb6b47af1f21efe76e933bdea2f5dd1caNagendra Modadugu * 1. Redistributions of source code must retain the above copyright 13e45f106cb6b47af1f21efe76e933bdea2f5dd1caNagendra Modadugu * notice, this list of conditions and the following disclaimer. 14e45f106cb6b47af1f21efe76e933bdea2f5dd1caNagendra Modadugu * 15e45f106cb6b47af1f21efe76e933bdea2f5dd1caNagendra Modadugu * 2. Redistributions in binary form must reproduce the above copyright 16e45f106cb6b47af1f21efe76e933bdea2f5dd1caNagendra Modadugu * notice, this list of conditions and the following disclaimer in 17e45f106cb6b47af1f21efe76e933bdea2f5dd1caNagendra Modadugu * the documentation and/or other materials provided with the 18e45f106cb6b47af1f21efe76e933bdea2f5dd1caNagendra Modadugu * distribution. 19e45f106cb6b47af1f21efe76e933bdea2f5dd1caNagendra Modadugu * 20e45f106cb6b47af1f21efe76e933bdea2f5dd1caNagendra Modadugu * 3. All advertising materials mentioning features or use of this 21e45f106cb6b47af1f21efe76e933bdea2f5dd1caNagendra Modadugu * software must display the following acknowledgment: 22e45f106cb6b47af1f21efe76e933bdea2f5dd1caNagendra Modadugu * "This product includes software developed by the OpenSSL Project 23e45f106cb6b47af1f21efe76e933bdea2f5dd1caNagendra Modadugu * for use in the OpenSSL Toolkit. (http://www.OpenSSL.org/)" 24e45f106cb6b47af1f21efe76e933bdea2f5dd1caNagendra Modadugu * 25e45f106cb6b47af1f21efe76e933bdea2f5dd1caNagendra Modadugu * 4. The names "OpenSSL Toolkit" and "OpenSSL Project" must not be used to 26e45f106cb6b47af1f21efe76e933bdea2f5dd1caNagendra Modadugu * endorse or promote products derived from this software without 27e45f106cb6b47af1f21efe76e933bdea2f5dd1caNagendra Modadugu * prior written permission. For written permission, please contact 28e45f106cb6b47af1f21efe76e933bdea2f5dd1caNagendra Modadugu * licensing@OpenSSL.org. 29e45f106cb6b47af1f21efe76e933bdea2f5dd1caNagendra Modadugu * 30e45f106cb6b47af1f21efe76e933bdea2f5dd1caNagendra Modadugu * 5. Products derived from this software may not be called "OpenSSL" 31e45f106cb6b47af1f21efe76e933bdea2f5dd1caNagendra Modadugu * nor may "OpenSSL" appear in their names without prior written 32e45f106cb6b47af1f21efe76e933bdea2f5dd1caNagendra Modadugu * permission of the OpenSSL Project. 33e45f106cb6b47af1f21efe76e933bdea2f5dd1caNagendra Modadugu * 34e45f106cb6b47af1f21efe76e933bdea2f5dd1caNagendra Modadugu * 6. Redistributions of any form whatsoever must retain the following 35e45f106cb6b47af1f21efe76e933bdea2f5dd1caNagendra Modadugu * acknowledgment: 36e45f106cb6b47af1f21efe76e933bdea2f5dd1caNagendra Modadugu * "This product includes software developed by the OpenSSL Project 37e45f106cb6b47af1f21efe76e933bdea2f5dd1caNagendra Modadugu * for use in the OpenSSL Toolkit (http://www.OpenSSL.org/)" 38e45f106cb6b47af1f21efe76e933bdea2f5dd1caNagendra Modadugu * 39e45f106cb6b47af1f21efe76e933bdea2f5dd1caNagendra Modadugu * THIS SOFTWARE IS PROVIDED BY THE OpenSSL PROJECT ``AS IS'' AND ANY 40e45f106cb6b47af1f21efe76e933bdea2f5dd1caNagendra Modadugu * EXPRESSED OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE 41e45f106cb6b47af1f21efe76e933bdea2f5dd1caNagendra Modadugu * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR 42e45f106cb6b47af1f21efe76e933bdea2f5dd1caNagendra Modadugu * PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL THE OpenSSL PROJECT OR 43e45f106cb6b47af1f21efe76e933bdea2f5dd1caNagendra Modadugu * ITS CONTRIBUTORS BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, 44e45f106cb6b47af1f21efe76e933bdea2f5dd1caNagendra Modadugu * SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT 45e45f106cb6b47af1f21efe76e933bdea2f5dd1caNagendra Modadugu * NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; 46e45f106cb6b47af1f21efe76e933bdea2f5dd1caNagendra Modadugu * LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) 47e45f106cb6b47af1f21efe76e933bdea2f5dd1caNagendra Modadugu * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, 48e45f106cb6b47af1f21efe76e933bdea2f5dd1caNagendra Modadugu * STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) 49e45f106cb6b47af1f21efe76e933bdea2f5dd1caNagendra Modadugu * ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED 50e45f106cb6b47af1f21efe76e933bdea2f5dd1caNagendra Modadugu * OF THE POSSIBILITY OF SUCH DAMAGE. 51e45f106cb6b47af1f21efe76e933bdea2f5dd1caNagendra Modadugu * ==================================================================== 52e45f106cb6b47af1f21efe76e933bdea2f5dd1caNagendra Modadugu * 53e45f106cb6b47af1f21efe76e933bdea2f5dd1caNagendra Modadugu * This product includes cryptographic software written by Eric Young 54e45f106cb6b47af1f21efe76e933bdea2f5dd1caNagendra Modadugu * (eay@cryptsoft.com). This product includes software written by Tim 55e45f106cb6b47af1f21efe76e933bdea2f5dd1caNagendra Modadugu * Hudson (tjh@cryptsoft.com). 56e45f106cb6b47af1f21efe76e933bdea2f5dd1caNagendra Modadugu * 57e45f106cb6b47af1f21efe76e933bdea2f5dd1caNagendra Modadugu */ 58e45f106cb6b47af1f21efe76e933bdea2f5dd1caNagendra Modadugu 59221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom/* Internal ASN1 structures and functions: not for application use */ 60221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom 61221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom/* ASN1 print context structure */ 62e45f106cb6b47af1f21efe76e933bdea2f5dd1caNagendra Modadugu 63221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstromstruct asn1_pctx_st 64e45f106cb6b47af1f21efe76e933bdea2f5dd1caNagendra Modadugu { 65221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom unsigned long flags; 66221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom unsigned long nm_flags; 67221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom unsigned long cert_flags; 68221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom unsigned long oid_flags; 69221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom unsigned long str_flags; 70221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom } /* ASN1_PCTX */; 71221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom 72221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom/* ASN1 public key method structure */ 73e45f106cb6b47af1f21efe76e933bdea2f5dd1caNagendra Modadugu 74221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstromstruct evp_pkey_asn1_method_st 75e45f106cb6b47af1f21efe76e933bdea2f5dd1caNagendra Modadugu { 76221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom int pkey_id; 77221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom int pkey_base_id; 78221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom unsigned long pkey_flags; 79e45f106cb6b47af1f21efe76e933bdea2f5dd1caNagendra Modadugu 80221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom char *pem_str; 81221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom char *info; 82e45f106cb6b47af1f21efe76e933bdea2f5dd1caNagendra Modadugu 83221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom int (*pub_decode)(EVP_PKEY *pk, X509_PUBKEY *pub); 84221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom int (*pub_encode)(X509_PUBKEY *pub, const EVP_PKEY *pk); 85221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom int (*pub_cmp)(const EVP_PKEY *a, const EVP_PKEY *b); 86221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom int (*pub_print)(BIO *out, const EVP_PKEY *pkey, int indent, 87221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom ASN1_PCTX *pctx); 88e45f106cb6b47af1f21efe76e933bdea2f5dd1caNagendra Modadugu 89221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom int (*priv_decode)(EVP_PKEY *pk, PKCS8_PRIV_KEY_INFO *p8inf); 90221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom int (*priv_encode)(PKCS8_PRIV_KEY_INFO *p8, const EVP_PKEY *pk); 91221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom int (*priv_print)(BIO *out, const EVP_PKEY *pkey, int indent, 92221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom ASN1_PCTX *pctx); 93e45f106cb6b47af1f21efe76e933bdea2f5dd1caNagendra Modadugu 94221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom int (*pkey_size)(const EVP_PKEY *pk); 95221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom int (*pkey_bits)(const EVP_PKEY *pk); 96e45f106cb6b47af1f21efe76e933bdea2f5dd1caNagendra Modadugu 97221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom int (*param_decode)(EVP_PKEY *pkey, 98221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom const unsigned char **pder, int derlen); 99221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom int (*param_encode)(const EVP_PKEY *pkey, unsigned char **pder); 100221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom int (*param_missing)(const EVP_PKEY *pk); 101221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom int (*param_copy)(EVP_PKEY *to, const EVP_PKEY *from); 102221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom int (*param_cmp)(const EVP_PKEY *a, const EVP_PKEY *b); 103221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom int (*param_print)(BIO *out, const EVP_PKEY *pkey, int indent, 104221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom ASN1_PCTX *pctx); 105392aa7cc7d2b122614c5393c3e357da07fd07af3Brian Carlstrom int (*sig_print)(BIO *out, 106392aa7cc7d2b122614c5393c3e357da07fd07af3Brian Carlstrom const X509_ALGOR *sigalg, const ASN1_STRING *sig, 107392aa7cc7d2b122614c5393c3e357da07fd07af3Brian Carlstrom int indent, ASN1_PCTX *pctx); 108392aa7cc7d2b122614c5393c3e357da07fd07af3Brian Carlstrom 109e45f106cb6b47af1f21efe76e933bdea2f5dd1caNagendra Modadugu 110221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom void (*pkey_free)(EVP_PKEY *pkey); 111221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom int (*pkey_ctrl)(EVP_PKEY *pkey, int op, long arg1, void *arg2); 112221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom 113221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom /* Legacy functions for old PEM */ 114221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom 115221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom int (*old_priv_decode)(EVP_PKEY *pkey, 116221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom const unsigned char **pder, int derlen); 117221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom int (*old_priv_encode)(const EVP_PKEY *pkey, unsigned char **pder); 118392aa7cc7d2b122614c5393c3e357da07fd07af3Brian Carlstrom /* Custom ASN1 signature verification */ 119392aa7cc7d2b122614c5393c3e357da07fd07af3Brian Carlstrom int (*item_verify)(EVP_MD_CTX *ctx, const ASN1_ITEM *it, void *asn, 120392aa7cc7d2b122614c5393c3e357da07fd07af3Brian Carlstrom X509_ALGOR *a, ASN1_BIT_STRING *sig, 121392aa7cc7d2b122614c5393c3e357da07fd07af3Brian Carlstrom EVP_PKEY *pkey); 122392aa7cc7d2b122614c5393c3e357da07fd07af3Brian Carlstrom int (*item_sign)(EVP_MD_CTX *ctx, const ASN1_ITEM *it, void *asn, 123392aa7cc7d2b122614c5393c3e357da07fd07af3Brian Carlstrom X509_ALGOR *alg1, X509_ALGOR *alg2, 124392aa7cc7d2b122614c5393c3e357da07fd07af3Brian Carlstrom ASN1_BIT_STRING *sig); 125221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom 126221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom } /* EVP_PKEY_ASN1_METHOD */; 127221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom 128221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom/* Method to handle CRL access. 129221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom * In general a CRL could be very large (several Mb) and can consume large 130221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom * amounts of resources if stored in memory by multiple processes. 131221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom * This method allows general CRL operations to be redirected to more 132221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom * efficient callbacks: for example a CRL entry database. 133221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom */ 134221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom 135221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom#define X509_CRL_METHOD_DYNAMIC 1 136221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom 137221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstromstruct x509_crl_method_st 138e45f106cb6b47af1f21efe76e933bdea2f5dd1caNagendra Modadugu { 139221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom int flags; 140221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom int (*crl_init)(X509_CRL *crl); 141221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom int (*crl_free)(X509_CRL *crl); 142221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom int (*crl_lookup)(X509_CRL *crl, X509_REVOKED **ret, 143221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom ASN1_INTEGER *ser, X509_NAME *issuer); 144221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom int (*crl_verify)(X509_CRL *crl, EVP_PKEY *pk); 145221304ee937bc0910948a8be1320cb8cc4eb6d36Brian Carlstrom }; 146