summaryrefslogtreecommitdiff
path: root/lib/libpkix/pkix_pl_nss/pki/pkix_pl_nameconstraints.h
blob: 2f305ac10a49aaef5377d2f126748a8815e15683 (plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
/* This Source Code Form is subject to the terms of the Mozilla Public
 * License, v. 2.0. If a copy of the MPL was not distributed with this
 * file, You can obtain one at http://mozilla.org/MPL/2.0/. */
/*
 * pkix_pl_nameconstraints.h
 *
 * Name Constraints Object Definitions
 *
 */

#ifndef _PKIX_PL_NAMECONSTRAINTS_H
#define _PKIX_PL_NAMECONSTRAINTS_H

#include "pkix_pl_common.h"

#ifdef __cplusplus
extern "C" {
#endif

struct PKIX_PL_CertNameConstraintsStruct {
        PLArenaPool *arena;
        CERTNameConstraints **nssNameConstraintsList;
        PKIX_UInt32 numNssNameConstraints;
        PKIX_List *permittedList; /* list of PKIX_PL_GeneralName */
        PKIX_List *excludedList; /* list of PKIX_PL_GeneralName */
};

/* see source file for function documentation */

PKIX_Error *pkix_pl_CertNameConstraints_RegisterSelf(void *plContext);

PKIX_Error *pkix_pl_CertNameConstraints_Create(
        CERTCertificate *nssCert,
        PKIX_PL_CertNameConstraints **pNameConstraints,
        void *plContext);

PKIX_Error *
pkix_pl_CertNameConstraints_CreateWithNames(
        PKIX_List *names, /* List of PKIX_PL_GeneralName */
        PKIX_PL_CertNameConstraints **pNameConstraints,
        void *plContext);

PKIX_Error *
pkix_pl_CertNameConstraints_CheckNameSpaceNssNames(
        CERTGeneralName *nssSubjectNames,
        PKIX_PL_CertNameConstraints *nameConstraints,
        PKIX_Boolean *pCheckPass,
        void *plContext);

PKIX_Error *
pkix_pl_CertNameConstraints_CheckNameSpacePkixNames(
        PKIX_List *nameList,
        PKIX_PL_CertNameConstraints *nameConstraints,
        PKIX_Boolean *pCheckPass,
        void *plContext);


PKIX_Error *pkix_pl_CertNameConstraints_Merge(
        PKIX_PL_CertNameConstraints *firstNC,
        PKIX_PL_CertNameConstraints *secondNC,
        PKIX_PL_CertNameConstraints **pMergedNC,
        void *plContext);

#ifdef __cplusplus
}
#endif

#endif /* _PKIX_PL_NAMECONSTRAINTS_H */