2 * Copyright 2001-2009 Internet2
4 * Licensed under the Apache License, Version 2.0 (the "License");
5 * you may not use this file except in compliance with the License.
6 * You may obtain a copy of the License at
8 * http://www.apache.org/licenses/LICENSE-2.0
10 * Unless required by applicable law or agreed to in writing, software
11 * distributed under the License is distributed on an "AS IS" BASIS,
12 * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
13 * See the License for the specific language governing permissions and
14 * limitations under the License.
18 * @file xmltooling/security/X509Credential.h
20 * Wraps an X.509-based Credential.
23 #if !defined(__xmltooling_x509cred_h__) && !defined(XMLTOOLING_NO_XMLSEC)
24 #define __xmltooling_x509cred_h__
26 #include <xmltooling/security/Credential.h>
30 namespace xmltooling {
32 class XMLTOOL_API XSECCryptoX509CRL;
35 * Wraps an X.509-based Credential.
37 class XMLTOOL_API X509Credential : public virtual Credential
43 virtual ~X509Credential();
46 * Bitmask constants for limiting resolution process inside a CredentialResolver.
54 * Bitmask of supported KeyInfo content to generate.
57 KEYINFO_X509_CERTIFICATE = 4,
58 KEYINFO_X509_SUBJECTNAME = 8,
59 KEYINFO_X509_ISSUERSERIAL = 16
63 * Gets an immutable collection of certificates in the entity's trust chain. The entity certificate is contained
64 * within this list. No specific ordering of the certificates is guaranteed.
66 * @return a certificate chain
68 virtual const std::vector<XSECCryptoX509*>& getEntityCertificateChain() const=0;
73 * Gets a CRL associated with the credential.
75 * @return CRL associated with the credential
77 virtual XSECCryptoX509CRL* getCRL() const=0;
80 * Gets an immutable collection of all CRLs associated with the credential.
82 * @return CRLs associated with the credential
84 virtual const std::vector<XSECCryptoX509CRL*>& getCRLs() const=0;
88 * Gets the subject name of the first certificate in the chain.
90 * @return the Subject DN
92 virtual const char* getSubjectName() const=0;
95 * Gets the issuer name of the first certificate in the chain.
97 * @return the Issuer DN
99 virtual const char* getIssuerName() const=0;
102 * Gets the serial number of the first certificate in the chain.
104 * @return the serial number
106 virtual const char* getSerialNumber() const=0;
109 * Extracts properties like issuer and subject from the first certificate in the chain.
111 virtual void extract()=0;
115 #endif /* __xmltooling_x509cred_h__ */