Blame view

crypto/asymmetric_keys/x509_akid.asn1 1.01 KB
b92e6570a   David Howells   X.509: Extract bo...
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
  -- X.509 AuthorityKeyIdentifier
  -- rfc5280 section 4.2.1.1
  
  AuthorityKeyIdentifier ::= SEQUENCE {
  	keyIdentifier			[0] IMPLICIT KeyIdentifier		OPTIONAL,
  	authorityCertIssuer		[1] IMPLICIT GeneralNames		OPTIONAL,
  	authorityCertSerialNumber	[2] IMPLICIT CertificateSerialNumber	OPTIONAL
  	}
  
  KeyIdentifier ::= OCTET STRING ({ x509_akid_note_kid })
  
  CertificateSerialNumber ::= INTEGER ({ x509_akid_note_serial })
  
  GeneralNames ::= SEQUENCE OF GeneralName
  
  GeneralName ::= CHOICE {
  	otherName			[0] ANY,
  	rfc822Name			[1] IA5String,
  	dNSName				[2] IA5String,
  	x400Address			[3] ANY,
  	directoryName			[4] Name ({ x509_akid_note_name }),
  	ediPartyName			[5] ANY,
  	uniformResourceIdentifier	[6] IA5String,
  	iPAddress			[7] OCTET STRING,
  	registeredID			[8] OBJECT IDENTIFIER
  	}
  
  Name ::= SEQUENCE OF RelativeDistinguishedName
  
  RelativeDistinguishedName ::= SET OF AttributeValueAssertion
  
  AttributeValueAssertion ::= SEQUENCE {
  	attributeType		OBJECT IDENTIFIER ({ x509_note_OID }),
  	attributeValue		ANY ({ x509_extract_name_segment })
  	}