2 * Copyright 2001-2010 Internet2
4 * Licensed under the Apache License, Version 2.0 (the "License");
5 * you may not use this file except in compliance with the License.
6 * You may obtain a copy of the License at
8 * http://www.apache.org/licenses/LICENSE-2.0
10 * Unless required by applicable law or agreed to in writing, software
11 * distributed under the License is distributed on an "AS IS" BASIS,
12 * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
13 * See the License for the specific language governing permissions and
14 * limitations under the License.
18 * @file xmltooling/security/X509Credential.h
20 * Wraps an X.509-based Credential.
23 #if !defined(__xmltooling_x509cred_h__) && !defined(XMLTOOLING_NO_XMLSEC)
24 #define __xmltooling_x509cred_h__
26 #include <xmltooling/security/Credential.h>
30 namespace xmltooling {
32 class XMLTOOL_API XSECCryptoX509CRL;
35 * Wraps an X.509-based Credential.
37 class XMLTOOL_API X509Credential : public virtual Credential
43 virtual ~X509Credential();
46 * Bitmask constants for limiting resolution process inside a CredentialResolver.
54 * Bitmask of supported KeyInfo content to generate.
57 KEYINFO_X509_CERTIFICATE = 4,
58 KEYINFO_X509_SUBJECTNAME = 8,
59 KEYINFO_X509_ISSUERSERIAL = 16,
60 KEYINFO_X509_DIGEST = 32
64 * Gets an immutable collection of certificates in the entity's trust chain. The entity certificate is contained
65 * within this list. No specific ordering of the certificates is guaranteed.
67 * @return a certificate chain
69 virtual const std::vector<XSECCryptoX509*>& getEntityCertificateChain() const=0;
74 * Gets a CRL associated with the credential.
76 * @return CRL associated with the credential
78 virtual XSECCryptoX509CRL* getCRL() const=0;
81 * Gets an immutable collection of all CRLs associated with the credential.
83 * @return CRLs associated with the credential
85 virtual const std::vector<XSECCryptoX509CRL*>& getCRLs() const=0;
89 * Gets the subject name of the first certificate in the chain.
91 * @return the Subject DN
93 virtual const char* getSubjectName() const=0;
96 * Gets the issuer name of the first certificate in the chain.
98 * @return the Issuer DN
100 virtual const char* getIssuerName() const=0;
103 * Gets the serial number of the first certificate in the chain.
105 * @return the serial number
107 virtual const char* getSerialNumber() const=0;
110 * Extracts properties like issuer and subject from the first certificate in the chain.
112 virtual void extract()=0;
116 #endif /* __xmltooling_x509cred_h__ */