ocsp_asn.c revision 296341
110618Svlivanov/* ocsp_asn.c */
212209Skshefov/*
310618Svlivanov * Written by Dr Stephen N Henson (steve@openssl.org) for the OpenSSL project
410618Svlivanov * 2000.
510618Svlivanov */
610618Svlivanov/* ====================================================================
710618Svlivanov * Copyright (c) 2000 The OpenSSL Project.  All rights reserved.
810618Svlivanov *
910618Svlivanov * Redistribution and use in source and binary forms, with or without
1010618Svlivanov * modification, are permitted provided that the following conditions
1110618Svlivanov * are met:
1210618Svlivanov *
1310618Svlivanov * 1. Redistributions of source code must retain the above copyright
1410618Svlivanov *    notice, this list of conditions and the following disclaimer.
1510618Svlivanov *
1610618Svlivanov * 2. Redistributions in binary form must reproduce the above copyright
1710618Svlivanov *    notice, this list of conditions and the following disclaimer in
1810618Svlivanov *    the documentation and/or other materials provided with the
1910618Svlivanov *    distribution.
2010618Svlivanov *
2110618Svlivanov * 3. All advertising materials mentioning features or use of this
2210618Svlivanov *    software must display the following acknowledgment:
2310618Svlivanov *    "This product includes software developed by the OpenSSL Project
2410618Svlivanov *    for use in the OpenSSL Toolkit. (http://www.OpenSSL.org/)"
2513901Salanb *
2613901Salanb * 4. The names "OpenSSL Toolkit" and "OpenSSL Project" must not be used to
2713901Salanb *    endorse or promote products derived from this software without
2810618Svlivanov *    prior written permission. For written permission, please contact
2910618Svlivanov *    licensing@OpenSSL.org.
3010618Svlivanov *
3112209Skshefov * 5. Products derived from this software may not be called "OpenSSL"
3210618Svlivanov *    nor may "OpenSSL" appear in their names without prior written
3310618Svlivanov *    permission of the OpenSSL Project.
3410618Svlivanov *
3510618Svlivanov * 6. Redistributions of any form whatsoever must retain the following
3613901Salanb *    acknowledgment:
3712209Skshefov *    "This product includes software developed by the OpenSSL Project
3813901Salanb *    for use in the OpenSSL Toolkit (http://www.OpenSSL.org/)"
3913901Salanb *
4014357Salanb * THIS SOFTWARE IS PROVIDED BY THE OpenSSL PROJECT ``AS IS'' AND ANY
4113901Salanb * EXPRESSED OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
4210618Svlivanov * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR
4310618Svlivanov * PURPOSE ARE DISCLAIMED.  IN NO EVENT SHALL THE OpenSSL PROJECT OR
4410618Svlivanov * ITS CONTRIBUTORS BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL,
4513901Salanb * SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT
4610618Svlivanov * NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES;
4710618Svlivanov * LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
4810618Svlivanov * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT,
4910618Svlivanov * STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE)
5010618Svlivanov * ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED
5110618Svlivanov * OF THE POSSIBILITY OF SUCH DAMAGE.
5210618Svlivanov * ====================================================================
5310618Svlivanov *
5412209Skshefov * This product includes cryptographic software written by Eric Young
5512209Skshefov * (eay@cryptsoft.com).  This product includes software written by Tim
5612209Skshefov * Hudson (tjh@cryptsoft.com).
5712209Skshefov *
5810618Svlivanov */
5910618Svlivanov#include <openssl/asn1.h>
6010618Svlivanov#include <openssl/asn1t.h>
6110618Svlivanov#include <openssl/ocsp.h>
6210618Svlivanov
6310618SvlivanovASN1_SEQUENCE(OCSP_SIGNATURE) = {
6410618Svlivanov        ASN1_SIMPLE(OCSP_SIGNATURE, signatureAlgorithm, X509_ALGOR),
6510618Svlivanov        ASN1_SIMPLE(OCSP_SIGNATURE, signature, ASN1_BIT_STRING),
6610618Svlivanov        ASN1_EXP_SEQUENCE_OF_OPT(OCSP_SIGNATURE, certs, X509, 0)
6713901Salanb} ASN1_SEQUENCE_END(OCSP_SIGNATURE)
6810618Svlivanov
6910618SvlivanovIMPLEMENT_ASN1_FUNCTIONS(OCSP_SIGNATURE)
7010618Svlivanov
7110618SvlivanovASN1_SEQUENCE(OCSP_CERTID) = {
7210618Svlivanov        ASN1_SIMPLE(OCSP_CERTID, hashAlgorithm, X509_ALGOR),
7310618Svlivanov        ASN1_SIMPLE(OCSP_CERTID, issuerNameHash, ASN1_OCTET_STRING),
7410618Svlivanov        ASN1_SIMPLE(OCSP_CERTID, issuerKeyHash, ASN1_OCTET_STRING),
7510618Svlivanov        ASN1_SIMPLE(OCSP_CERTID, serialNumber, ASN1_INTEGER)
7610618Svlivanov} ASN1_SEQUENCE_END(OCSP_CERTID)
7710618Svlivanov
7810618SvlivanovIMPLEMENT_ASN1_FUNCTIONS(OCSP_CERTID)
7910618Svlivanov
8010618SvlivanovASN1_SEQUENCE(OCSP_ONEREQ) = {
8110618Svlivanov        ASN1_SIMPLE(OCSP_ONEREQ, reqCert, OCSP_CERTID),
8210618Svlivanov        ASN1_EXP_SEQUENCE_OF_OPT(OCSP_ONEREQ, singleRequestExtensions, X509_EXTENSION, 0)
8310618Svlivanov} ASN1_SEQUENCE_END(OCSP_ONEREQ)
8410618Svlivanov
8510618SvlivanovIMPLEMENT_ASN1_FUNCTIONS(OCSP_ONEREQ)
8610618Svlivanov
8710618SvlivanovASN1_SEQUENCE(OCSP_REQINFO) = {
8810618Svlivanov        ASN1_EXP_OPT(OCSP_REQINFO, version, ASN1_INTEGER, 0),
8910618Svlivanov        ASN1_EXP_OPT(OCSP_REQINFO, requestorName, GENERAL_NAME, 1),
9010618Svlivanov        ASN1_SEQUENCE_OF(OCSP_REQINFO, requestList, OCSP_ONEREQ),
9110618Svlivanov        ASN1_EXP_SEQUENCE_OF_OPT(OCSP_REQINFO, requestExtensions, X509_EXTENSION, 2)
9210618Svlivanov} ASN1_SEQUENCE_END(OCSP_REQINFO)
9310618Svlivanov
9410618SvlivanovIMPLEMENT_ASN1_FUNCTIONS(OCSP_REQINFO)
9510618Svlivanov
9610618SvlivanovASN1_SEQUENCE(OCSP_REQUEST) = {
9710618Svlivanov        ASN1_SIMPLE(OCSP_REQUEST, tbsRequest, OCSP_REQINFO),
9810618Svlivanov        ASN1_EXP_OPT(OCSP_REQUEST, optionalSignature, OCSP_SIGNATURE, 0)
9910618Svlivanov} ASN1_SEQUENCE_END(OCSP_REQUEST)
10010618Svlivanov
10110618SvlivanovIMPLEMENT_ASN1_FUNCTIONS(OCSP_REQUEST)
10210618Svlivanov
10310618Svlivanov/* OCSP_RESPONSE templates */
10410618Svlivanov
10510618SvlivanovASN1_SEQUENCE(OCSP_RESPBYTES) = {
10610618Svlivanov            ASN1_SIMPLE(OCSP_RESPBYTES, responseType, ASN1_OBJECT),
10710618Svlivanov            ASN1_SIMPLE(OCSP_RESPBYTES, response, ASN1_OCTET_STRING)
10810618Svlivanov} ASN1_SEQUENCE_END(OCSP_RESPBYTES)
10910618Svlivanov
11010618SvlivanovIMPLEMENT_ASN1_FUNCTIONS(OCSP_RESPBYTES)
11110618Svlivanov
11210618SvlivanovASN1_SEQUENCE(OCSP_RESPONSE) = {
11310618Svlivanov        ASN1_SIMPLE(OCSP_RESPONSE, responseStatus, ASN1_ENUMERATED),
11410618Svlivanov        ASN1_EXP_OPT(OCSP_RESPONSE, responseBytes, OCSP_RESPBYTES, 0)
11510618Svlivanov} ASN1_SEQUENCE_END(OCSP_RESPONSE)
11610618Svlivanov
11713901SalanbIMPLEMENT_ASN1_FUNCTIONS(OCSP_RESPONSE)
11810618Svlivanov
11910618SvlivanovASN1_CHOICE(OCSP_RESPID) = {
12010618Svlivanov           ASN1_EXP(OCSP_RESPID, value.byName, X509_NAME, 1),
12110618Svlivanov           ASN1_EXP(OCSP_RESPID, value.byKey, ASN1_OCTET_STRING, 2)
12210618Svlivanov} ASN1_CHOICE_END(OCSP_RESPID)
12310618Svlivanov
12410618SvlivanovIMPLEMENT_ASN1_FUNCTIONS(OCSP_RESPID)
12510618Svlivanov
12610618SvlivanovASN1_SEQUENCE(OCSP_REVOKEDINFO) = {
12710618Svlivanov        ASN1_SIMPLE(OCSP_REVOKEDINFO, revocationTime, ASN1_GENERALIZEDTIME),
12810618Svlivanov        ASN1_EXP_OPT(OCSP_REVOKEDINFO, revocationReason, ASN1_ENUMERATED, 0)
12910618Svlivanov} ASN1_SEQUENCE_END(OCSP_REVOKEDINFO)
13010618Svlivanov
13110618SvlivanovIMPLEMENT_ASN1_FUNCTIONS(OCSP_REVOKEDINFO)
13210618Svlivanov
13310618SvlivanovASN1_CHOICE(OCSP_CERTSTATUS) = {
13410618Svlivanov        ASN1_IMP(OCSP_CERTSTATUS, value.good, ASN1_NULL, 0),
13510618Svlivanov        ASN1_IMP(OCSP_CERTSTATUS, value.revoked, OCSP_REVOKEDINFO, 1),
13610618Svlivanov        ASN1_IMP(OCSP_CERTSTATUS, value.unknown, ASN1_NULL, 2)
13710618Svlivanov} ASN1_CHOICE_END(OCSP_CERTSTATUS)
13810618Svlivanov
13910618SvlivanovIMPLEMENT_ASN1_FUNCTIONS(OCSP_CERTSTATUS)
14010618Svlivanov
14110618SvlivanovASN1_SEQUENCE(OCSP_SINGLERESP) = {
14210618Svlivanov           ASN1_SIMPLE(OCSP_SINGLERESP, certId, OCSP_CERTID),
14310618Svlivanov           ASN1_SIMPLE(OCSP_SINGLERESP, certStatus, OCSP_CERTSTATUS),
14410618Svlivanov           ASN1_SIMPLE(OCSP_SINGLERESP, thisUpdate, ASN1_GENERALIZEDTIME),
14510618Svlivanov           ASN1_EXP_OPT(OCSP_SINGLERESP, nextUpdate, ASN1_GENERALIZEDTIME, 0),
14610618Svlivanov           ASN1_EXP_SEQUENCE_OF_OPT(OCSP_SINGLERESP, singleExtensions, X509_EXTENSION, 1)
14710618Svlivanov} ASN1_SEQUENCE_END(OCSP_SINGLERESP)
14810618Svlivanov
14910618SvlivanovIMPLEMENT_ASN1_FUNCTIONS(OCSP_SINGLERESP)
15010618Svlivanov
15110618SvlivanovASN1_SEQUENCE(OCSP_RESPDATA) = {
15210618Svlivanov           ASN1_EXP_OPT(OCSP_RESPDATA, version, ASN1_INTEGER, 0),
15310618Svlivanov           ASN1_SIMPLE(OCSP_RESPDATA, responderId, OCSP_RESPID),
15410618Svlivanov           ASN1_SIMPLE(OCSP_RESPDATA, producedAt, ASN1_GENERALIZEDTIME),
15510618Svlivanov           ASN1_SEQUENCE_OF(OCSP_RESPDATA, responses, OCSP_SINGLERESP),
15610618Svlivanov           ASN1_EXP_SEQUENCE_OF_OPT(OCSP_RESPDATA, responseExtensions, X509_EXTENSION, 1)
15710618Svlivanov} ASN1_SEQUENCE_END(OCSP_RESPDATA)
15810618Svlivanov
15910618SvlivanovIMPLEMENT_ASN1_FUNCTIONS(OCSP_RESPDATA)
16010618Svlivanov
16110618SvlivanovASN1_SEQUENCE(OCSP_BASICRESP) = {
16210618Svlivanov           ASN1_SIMPLE(OCSP_BASICRESP, tbsResponseData, OCSP_RESPDATA),
16310618Svlivanov           ASN1_SIMPLE(OCSP_BASICRESP, signatureAlgorithm, X509_ALGOR),
16410618Svlivanov           ASN1_SIMPLE(OCSP_BASICRESP, signature, ASN1_BIT_STRING),
16510618Svlivanov           ASN1_EXP_SEQUENCE_OF_OPT(OCSP_BASICRESP, certs, X509, 0)
16610618Svlivanov} ASN1_SEQUENCE_END(OCSP_BASICRESP)
16710618Svlivanov
16810618SvlivanovIMPLEMENT_ASN1_FUNCTIONS(OCSP_BASICRESP)
16910618Svlivanov
17010618SvlivanovASN1_SEQUENCE(OCSP_CRLID) = {
17110618Svlivanov           ASN1_EXP_OPT(OCSP_CRLID, crlUrl, ASN1_IA5STRING, 0),
17210618Svlivanov           ASN1_EXP_OPT(OCSP_CRLID, crlNum, ASN1_INTEGER, 1),
17310618Svlivanov           ASN1_EXP_OPT(OCSP_CRLID, crlTime, ASN1_GENERALIZEDTIME, 2)
17410618Svlivanov} ASN1_SEQUENCE_END(OCSP_CRLID)
17510618Svlivanov
17610618SvlivanovIMPLEMENT_ASN1_FUNCTIONS(OCSP_CRLID)
17710618Svlivanov
17810618SvlivanovASN1_SEQUENCE(OCSP_SERVICELOC) = {
17910618Svlivanov        ASN1_SIMPLE(OCSP_SERVICELOC, issuer, X509_NAME),
18010618Svlivanov        ASN1_SEQUENCE_OF_OPT(OCSP_SERVICELOC, locator, ACCESS_DESCRIPTION)
18110618Svlivanov} ASN1_SEQUENCE_END(OCSP_SERVICELOC)
18210618Svlivanov
18310618SvlivanovIMPLEMENT_ASN1_FUNCTIONS(OCSP_SERVICELOC)
18410618Svlivanov