2 * Copyright (C) 2002 Travis Michielsen
3 * Copyright (C) 2004-2005 Juan Lang
5 * This library is free software; you can redistribute it and/or
6 * modify it under the terms of the GNU Lesser General Public
7 * License as published by the Free Software Foundation; either
8 * version 2.1 of the License, or (at your option) any later version.
10 * This library is distributed in the hope that it will be useful,
11 * but WITHOUT ANY WARRANTY; without even the implied warranty of
12 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU
13 * Lesser General Public License for more details.
15 * You should have received a copy of the GNU Lesser General Public
16 * License along with this library; if not, write to the Free Software
17 * Foundation, Inc., 59 Temple Place, Suite 330, Boston, MA 02111-1307 USA
20 #ifndef __WINE_WINCRYPT_H
21 #define __WINE_WINCRYPT_H
27 /* some typedefs for function parameters */
28 typedef unsigned int ALG_ID;
29 typedef unsigned long HCRYPTPROV;
30 typedef unsigned long HCRYPTKEY;
31 typedef unsigned long HCRYPTHASH;
32 typedef void *HCERTSTORE;
33 typedef void *HCRYPTMSG;
37 typedef struct _PROV_ENUMALGS {
44 typedef struct _PROV_ENUMALGS_EX {
56 #define SCHANNEL_MAC_KEY 0
57 #define SCHANNEL_ENC_KEY 1
59 typedef struct _SCHANNEL_ALG {
65 } SCHANNEL_ALG, *PSCHANNEL_ALG;
67 typedef struct _HMAC_INFO {
73 } HMAC_INFO, *PHMAC_INFO;
75 typedef struct _CRYPTOAPI_BLOB {
78 } CRYPT_INTEGER_BLOB, *PCRYPT_INTEGER_BLOB,
79 CRYPT_UINT_BLOB, *PCRYPT_UINT_BLOB,
80 CRYPT_OBJID_BLOB, *PCRYPT_OBJID_BLOB,
81 CERT_NAME_BLOB, *PCERT_NAME_BLOB,
82 CERT_RDN_VALUE_BLOB, *PCERT_RDN_VALUE_BLOB,
83 CERT_BLOB, *PCERT_BLOB,
85 DATA_BLOB, *PDATA_BLOB,
86 CRYPT_DATA_BLOB, *PCRYPT_DATA_BLOB,
87 CRYPT_HASH_BLOB, *PCRYPT_HASH_BLOB,
88 CRYPT_DIGEST_BLOB, *PCRYPT_DIGEST_BLOB,
89 CRYPT_DER_BLOB, *PCRYPT_DER_BLOB,
90 CRYPT_ATTR_BLOB, *PCRYPT_ATTR_BLOB;
92 typedef struct _CRYPTPROTECT_PROMPTSTRUCT{
97 } CRYPTPROTECT_PROMPTSTRUCT, *PCRYPTPROTECT_PROMPTSTRUCT;
99 typedef struct _CRYPT_ALGORITHM_IDENTIFIER {
101 CRYPT_OBJID_BLOB Parameters;
102 } CRYPT_ALGORITHM_IDENTIFIER, *PCRYPT_ALGORITHM_IDENTIFIER;
104 typedef struct _CRYPT_ATTRIBUTE_TYPE_VALUE {
106 CRYPT_OBJID_BLOB Value;
107 } CRYPT_ATTRIBUTE_TYPE_VALUE, *PCRYPT_ATTRIBUTE_TYPE_VALUE;
109 typedef struct _PUBLICKEYSTRUC {
114 } BLOBHEADER, PUBLICKEYSTRUC;
116 typedef struct _RSAPUBKEY {
122 typedef struct _CRYPT_BIT_BLOB {
126 } CRYPT_BIT_BLOB, *PCRYPT_BIT_BLOB;
128 typedef struct _CERT_PUBLIC_KEY_INFO {
129 CRYPT_ALGORITHM_IDENTIFIER Algorithm;
130 CRYPT_BIT_BLOB PublicKey;
131 } CERT_PUBLIC_KEY_INFO, *PCERT_PUBLIC_KEY_INFO;
133 typedef struct _CERT_EXTENSION {
136 CRYPT_OBJID_BLOB Value;
137 } CERT_EXTENSION, *PCERT_EXTENSION;
139 typedef struct _CERT_EXTENSIONS {
141 PCERT_EXTENSION rgExtension;
142 } CERT_EXTENSIONS, *PCERT_EXTENSIONS;
144 typedef struct _CERT_INFO {
146 CRYPT_INTEGER_BLOB SerialNumber;
147 CRYPT_ALGORITHM_IDENTIFIER SignatureAlgorithm;
148 CERT_NAME_BLOB Issuer;
151 CERT_NAME_BLOB Subject;
152 CERT_PUBLIC_KEY_INFO SubjectPublicKeyInfo;
153 CRYPT_BIT_BLOB IssuerUniqueId;
154 CRYPT_BIT_BLOB SubjectUniqueId;
156 PCERT_EXTENSION rgExtension;
157 } CERT_INFO, *PCERT_INFO;
159 typedef struct _CERT_RDN_ATTR {
162 CERT_RDN_VALUE_BLOB Value;
163 } CERT_RDN_ATTR, *PCERT_RDN_ATTR;
165 typedef struct _CERT_RDN {
167 PCERT_RDN_ATTR rgRDNAttr;
168 } CERT_RDN, *PCERT_RDN;
170 typedef struct _CERT_NAME_INFO {
173 } CERT_NAME_INFO, *PCERT_NAME_INFO;
175 typedef struct _CERT_NAME_VALUE {
177 CERT_RDN_VALUE_BLOB Value;
178 } CERT_NAME_VALUE, *PCERT_NAME_VALUE;
180 typedef struct _CERT_ENCRYPTED_PRIVATE_KEY_INFO {
181 CRYPT_ALGORITHM_IDENTIFIER EncryptionAlgorithm;
182 CRYPT_DATA_BLOB EncryptedPrivateKey;
183 } CERT_ENCRYPTED_PRIVATE_KEY_INFO, *PCERT_ENCRYPTED_PRIVATE_KEY_INFO;
185 typedef struct _CERT_AUTHORITY_KEY_ID_INFO {
186 CRYPT_DATA_BLOB KeyId;
187 CERT_NAME_BLOB CertIssuer;
188 CRYPT_INTEGER_BLOB CertSerialNumber;
189 } CERT_AUTHORITY_KEY_ID_INFO, *PCERT_AUTHORITY_KEY_ID_INFO;
191 typedef struct _CERT_PRIVATE_KEY_VALIDITY {
194 } CERT_PRIVATE_KEY_VALIDITY, *PCERT_PRIVATE_KEY_VALIDITY;
196 typedef struct _CERT_KEY_ATTRIBUTES_INFO {
197 CRYPT_DATA_BLOB KeyId;
198 CRYPT_BIT_BLOB IntendedKeyUsage;
199 PCERT_PRIVATE_KEY_VALIDITY pPrivateKeyUsagePeriod;
200 } CERT_KEY_ATTRIBUTES_INFO, *PCERT_KEY_ATTRIBUTES_INFO;
203 #define CERT_DIGITAL_SIGNATURE_KEY_USAGE 0x80
204 #define CERT_NON_REPUDIATION_KEY_USAGE 0x40
205 #define CERT_KEY_ENCIPHERMENT_KEY_USAGE 0x20
206 #define CERT_DATA_ENCIPHERMENT_KEY_USAGE 0x10
207 #define CERT_KEY_AGREEMENT_KEY_USAGE 0x80
208 #define CERT_KEY_CERT_SIGN_KEY_USAGE 0x40
209 #define CERT_OFFLINE_CRL_SIGN_KEY_USAGE 0x20
210 #define CERT_CRL_SIGN_KEY_USAGE 0x10
211 #define CERT_ENCIPHER_ONLY_KEY_USAGE 0x01
213 #define CERT_DECIPHER_ONLY_KEY_USAGE 0x80
215 typedef struct _CERT_POLICY_ID {
216 DWORD cCertPolicyElementId;
217 LPSTR *rgbszCertPolicyElementId;
218 } CERT_POLICY_ID, *PCERT_POLICY_ID;
220 typedef struct _CERT_KEY_USAGE_RESTRICTION_INFO {
222 PCERT_POLICY_ID rgCertPolicyId;
223 CRYPT_BIT_BLOB RestrictedKeyUsage;
224 } CERT_KEY_USAGE_RESTRICTION_INFO, *PCERT_KEY_USAGE_RESTRICTION_INFO;
226 typedef struct _CERT_OTHER_NAME {
228 CRYPT_OBJID_BLOB Value;
229 } CERT_OTHER_NAME, *PCERT_OTHER_NAME;
231 typedef struct _CERT_ALT_NAME_ENTRY {
232 DWORD dwAltNameChoice;
234 PCERT_OTHER_NAME pOtherName;
235 LPWSTR pwszRfc822Name;
237 CERT_NAME_BLOB DirectoryName;
239 CRYPT_DATA_BLOB IPaddress;
240 LPSTR pszRegisteredID;
242 } CERT_ALT_NAME_ENTRY, *PCERT_ALT_NAME_ENTRY;
244 #define CERT_ALT_NAME_OTHER_NAME 1
245 #define CERT_ALT_NAME_RFC822_NAME 2
246 #define CERT_ALT_NAME_DNS_NAME 3
247 #define CERT_ALT_NAME_X400_ADDRESS 4
248 #define CERT_ALT_NAME_DIRECTORY_NAME 5
249 #define CERT_ALT_NAME_EDI_PARTY_NAME 6
250 #define CERT_ALT_NAME_URL 7
251 #define CERT_ALT_NAME_IP_ADDRESS 8
252 #define CERT_ALT_NAME_REGISTERED_ID 9
254 typedef struct _CERT_ALT_NAME_INFO {
256 PCERT_ALT_NAME_ENTRY rgAltEntry;
257 } CERT_ALT_NAME_INFO, *PCERT_ALT_NAME_INFO;
259 #define CERT_ALT_NAME_ENTRY_ERR_INDEX_MASK 0xff
260 #define CERT_ALT_NAME_ENTRY_ERR_INDEX_SHIFT 16
261 #define CERT_ALT_NAME_VALUE_ERR_INDEX_MASK 0x0000ffff
262 #define CERT_ALT_NAME_VALUE_ERR_INDEX_SHIFT 0
263 #define GET_CERT_ALT_NAME_ENTRY_ERR_INDEX(x) \
264 (((x) >> CERT_ALT_NAME_ENTRY_ERR_INDEX_SHIFT) & \
265 CERT_ALT_NAME_ENTRY_ERR_INDEX_MASK)
266 #define GET_CERT_ALT_NAME_VALUE_ERR_INDEX(x) \
267 ((x) & CERT_ALT_NAME_VALUE_ERR_INDEX_MASK)
269 typedef struct _CERT_BASIC_CONSTRAINTS_INFO {
270 CRYPT_BIT_BLOB SubjectType;
271 BOOL fPathLenConstraint;
272 DWORD dwPathLenConstraint;
273 DWORD cSubtreesConstraint;
274 CERT_NAME_BLOB *rgSubtreesConstraint;
275 } CERT_BASIC_CONSTRAINTS_INFO, *PCERT_BASIC_CONSTRAINTS_INFO;
277 #define CERT_CA_SUBJECT_FLAG 0x80
278 #define CERT_END_ENTITY_SUBJECT_FLAG 0x40
280 typedef struct _CERT_BASIC_CONSTRAINTS2_INFO {
282 BOOL fPathLenConstraint;
283 DWORD dwPathLenConstraint;
284 } CERT_BASIC_CONSTRAINTS2_INFO, *PCERT_BASIC_CONSTRAINTS2_INFO;
286 typedef struct _CERT_POLICY_QUALIFIER_INFO {
287 LPSTR pszPolicyQualifierId;
288 CRYPT_OBJID_BLOB Qualifier;
289 } CERT_POLICY_QUALIFIER_INFO, *PCERT_POLICY_QUALIFIER_INFO;
291 typedef struct _CERT_POLICY_INFO {
292 LPSTR pszPolicyIdentifier;
293 DWORD cPolicyQualifier;
294 CERT_POLICY_QUALIFIER_INFO *rgPolicyQualifier;
295 } CERT_POLICY_INFO, *PCERT_POLICY_INFO;
297 typedef struct _CERT_POLICIES_INFO {
299 CERT_POLICY_INFO *rgPolicyInfo;
300 } CERT_POLICIES_INFO, *PCERT_POLICIES_INFO;
302 typedef struct _CERT_POLICY_QUALIFIER_NOTICE_REFERENCE {
303 LPSTR pszOrganization;
304 DWORD cNoticeNumbers;
305 int *rgNoticeNumbers;
306 } CERT_POLICY_QUALIFIER_NOTICE_REFERENCE,
307 *PCERT_POLICY_QUALIFIER_NOTICE_REFERENCE;
309 typedef struct _CERT_POLICY_QUALIFIER_USER_NOTICE {
310 CERT_POLICY_QUALIFIER_NOTICE_REFERENCE *pNoticeReference;
311 LPWSTR pszDisplayText;
312 } CERT_POLICY_QUALIFIER_USER_NOTICE, *PCERT_POLICY_QUALIFIER_USER_NOTICE;
314 typedef struct _CPS_URLS {
316 CRYPT_ALGORITHM_IDENTIFIER *pAlgorithm;
317 CRYPT_DATA_BLOB *pDigest;
318 } CPS_URLS, *PCPS_URLS;
320 typedef struct _CERT_POLICY95_QUALIFIER1 {
321 LPWSTR pszPracticesReference;
322 LPSTR pszNoticeIdentifier;
323 LPSTR pszNSINoticeIdentifier;
326 } CERT_POLICY95_QUALIFIER1, *PCERT_POLICY95_QUALIFIER1;
328 typedef struct _CERT_POLICY_MAPPING {
329 LPSTR pszIssuerDomainPolicy;
330 LPSTR pszSubjectDomainPolicy;
331 } CERT_POLICY_MAPPING, *PCERT_POLICY_MAPPING;
333 typedef struct _CERT_POLICY_MAPPINGS_INFO {
334 DWORD cPolicyMapping;
335 PCERT_POLICY_MAPPING rgPolicyMapping;
336 } CERT_POLICY_MAPPINGS_INFO, *PCERT_POLICY_MAPPINGS_INFO;
338 typedef struct _CERT_POLICY_CONSTRAINTS_INFO {
339 BOOL fRequireExplicitPolicy;
340 DWORD dwRequireExplicitPolicySkipCerts;
341 BOOL fInhibitPolicyMapping;
342 DWORD dwInhibitPolicyMappingSkipCerts;
343 } CERT_POLICY_CONSTRAINTS_INFO, *PCERT_POLICY_CONSTRAINTS_INFO;
345 typedef struct _CRYPT_CONTENT_INFO_SEQUENCE_OF_ANY {
348 PCRYPT_DER_BLOB rgValue;
349 } CRYPT_CONTENT_INFO_SEQUENCE_OF_ANY, *PCRYPT_CONTENT_INFO_SEQUENCE_OF_ANY;
351 typedef struct _CRYPT_CONTENT_INFO {
353 CRYPT_DER_BLOB Content;
354 } CRYPT_CONTENT_INFO, *PCRYPT_CONTENT_INFO;
356 typedef struct _CRYPT_SEQUENCE_OF_ANY {
358 PCRYPT_DER_BLOB rgValue;
359 } CRYPT_SEQUENCE_OF_ANY, *PCRYPT_SEQUENCE_OF_ANY;
361 typedef struct _CERT_AUTHORITY_KEY_ID2_INFO {
362 CRYPT_DATA_BLOB KeyId;
363 CERT_ALT_NAME_INFO AuthorityCertIssuer;
364 CRYPT_INTEGER_BLOB AuthorityCertSerialNumber;
365 } CERT_AUTHORITY_KEY_ID2_INFO, *PCERT_AUTHORITY_KEY_ID2_INFO;
367 typedef struct _CERT_ACCESS_DESCRIPTION {
368 LPSTR pszAccessMethod;
369 CERT_ALT_NAME_ENTRY AccessLocation;
370 } CERT_ACCESS_DESCRIPTION, *PCERT_ACCESS_DESCRIPTION;
372 typedef struct _CERT_AUTHORITY_INFO_ACCESS {
374 PCERT_ACCESS_DESCRIPTION rgAccDescr;
375 } CERT_AUTHORITY_INFO_ACCESS, *PCERT_AUTHORITY_INFO_ACCESS;
377 typedef struct _CERT_CONTEXT {
378 DWORD dwCertEncodingType;
381 PCERT_INFO pCertInfo;
382 HCERTSTORE hCertStore;
383 } CERT_CONTEXT, *PCERT_CONTEXT;
384 typedef const CERT_CONTEXT *PCCERT_CONTEXT;
386 typedef struct _CRL_ENTRY {
387 CRYPT_INTEGER_BLOB SerialNumber;
388 FILETIME RevocationDate;
390 PCERT_EXTENSION rgExtension;
391 } CRL_ENTRY, *PCRL_ENTRY;
393 typedef struct _CRL_INFO {
395 CRYPT_ALGORITHM_IDENTIFIER SignatureAlgorithm;
396 CERT_NAME_BLOB Issuer;
400 PCRL_ENTRY rgCRLEntry;
402 PCERT_EXTENSION rgExtension;
403 } CRL_INFO, *PCRL_INFO;
405 typedef struct _CRYPT_ATTRIBUTE {
408 PCRYPT_DATA_BLOB rgValue;
409 } CRYPT_ATTRIBUTE, *PCRYPT_ATTRIBUTE;
411 typedef struct _CRYPT_ATTRIBUTES {
413 PCRYPT_ATTRIBUTE rgAttr;
414 } CRYPT_ATTRIBUTES, *PCRYPT_ATTRIBUTES;
416 typedef struct _CERT_REQUEST_INFO {
418 CERT_NAME_BLOB Subject;
419 CERT_PUBLIC_KEY_INFO SubjectPublicKeyInfo;
421 PCRYPT_ATTRIBUTE rgAttribute;
422 } CERT_REQUEST_INFO, *PCERT_REQUEST_INFO;
424 typedef struct _CERT_KEYGEN_REQUEST_INFO {
426 CERT_PUBLIC_KEY_INFO SubjectPubliceKeyInfo;
427 LPWSTR pwszChallengeString;
428 } CERT_KEYGEN_REQUEST_INFO, *PCERT_KEYGEN_REQUEST_INFO;
430 typedef struct _CERT_SIGNED_CONTENT_INFO {
431 CRYPT_DER_BLOB ToBeSigned;
432 CRYPT_ALGORITHM_IDENTIFIER SignatureAlgorithm;
433 CRYPT_BIT_BLOB Signature;
434 } CERT_SIGNED_CONTENT_INFO, *PCERT_SIGNED_CONTENT_INFO;
436 typedef struct _CRL_CONTEXT {
437 DWORD dwCertEncodingType;
441 HCERTSTORE hCertStore;
442 } CRL_CONTEXT, *PCRL_CONTEXT;
443 typedef const CRL_CONTEXT *PCCRL_CONTEXT;
445 typedef struct _VTableProvStruc {
447 FARPROC pFuncVerifyImage;
448 FARPROC pFuncReturnhWnd;
453 } VTableProvStruc, *PVTableProvStruc;
455 typedef struct _CERT_PRIVATE_KEY_INFO {
457 CRYPT_ALGORITHM_IDENTIFIER Algorithm;
458 CRYPT_DER_BLOB PrivateKey;
459 PCRYPT_ATTRIBUTES pAttributes;
460 } CERT_PRIVATE_KEY_INFO, *PCERT_PRIVATE_KEY_INFO;
462 typedef struct _CTL_USAGE {
463 DWORD cUsageIdentifier;
464 LPSTR *rgpszUsageIdentifier;
465 } CTL_USAGE, *PCTL_USAGE, CERT_ENHKEY_USAGE, *PCERT_ENHKEY_USAGE;
467 typedef struct _CTL_ENTRY {
468 CRYPT_DATA_BLOB SubjectIdentifier;
470 PCRYPT_ATTRIBUTE rgAttribute;
471 } CTL_ENTRY, *PCTL_ENTRY;
473 typedef struct _CTL_INFO {
475 CTL_USAGE SubjectUsage;
476 CRYPT_DATA_BLOB ListIdentifier;
477 CRYPT_INTEGER_BLOB SequenceNumber;
480 CRYPT_ALGORITHM_IDENTIFIER SubjectAlgorithm;
482 PCTL_ENTRY rgCTLEntry;
484 PCERT_EXTENSION rgExtension;
485 } CTL_INFO, *PCTL_INFO;
487 typedef struct _CTL_CONTEXT {
488 DWORD dwMsgAndCertEncodingType;
492 HCERTSTORE hCertStore;
496 } CTL_CONTEXT, *PCTL_CONTEXT;
497 typedef const CTL_CONTEXT *PCCTL_CONTEXT;
499 typedef struct _CRYPT_TIME_STAMP_REQUEST_INFO {
500 LPSTR pszTimeStampAlgorithm;
501 LPSTR pszContentType;
502 CRYPT_OBJID_BLOB Content;
504 PCRYPT_ATTRIBUTE rgAttribute;
505 } CRYPT_TIME_STAMP_REQUEST_INFO, *PCRYPT_TIME_STAMP_REQUEST_INFO;
507 typedef struct _CRYPT_ENROLLMENT_NAME_VALUE_PAIR {
510 } CRYPT_ENROLLMENT_NAME_VALUE_PAIR, *PCRYPT_ENROLLMENT_NAME_VALUE_PAIR;
512 typedef struct _CMSG_SIGNER_INFO {
514 CERT_NAME_BLOB Issuer;
515 CRYPT_INTEGER_BLOB SerialNumber;
516 CRYPT_ALGORITHM_IDENTIFIER HashAlgorithm;
517 CRYPT_ALGORITHM_IDENTIFIER HashEncryptionAlgorithm;
518 CRYPT_DATA_BLOB EncryptedHash;
519 CRYPT_ATTRIBUTES AuthAttrs;
520 CRYPT_ATTRIBUTES UnauthAttrs;
521 } CMSG_SIGNER_INFO, *PCMSG_SIGNER_INFO;
523 typedef struct _CERT_REVOCATION_CRL_INFO {
525 PCCRL_CONTEXT pBaseCrlContext;
526 PCCRL_CONTEXT pDeltaCrlContext;
527 PCRL_ENTRY pCrlEntry;
529 } CERT_REVOCATION_CRL_INFO, *PCERT_REVOCATION_CRL_INFO;
531 typedef struct _CERT_REVOCATION_INFO {
533 DWORD dwRevocationResult;
534 LPCSTR pszRevocationOid;
535 LPVOID pvOidSpecificInfo;
536 BOOL fHasFreshnessTime;
537 DWORD dwFreshnessTime;
538 PCERT_REVOCATION_CRL_INFO pCrlInfo;
539 } CERT_REVOCATION_INFO, *PCERT_REVOCATION_INFO;
541 typedef struct _CERT_TRUST_LIST_INFO {
543 PCTL_ENTRY pCtlEntry;
544 PCCTL_CONTEXT pCtlContext;
545 } CERT_TRUST_LIST_INFO, *PCERT_TRUST_LIST_INFO;
547 typedef struct _CERT_TRUST_STATUS {
550 } CERT_TRUST_STATUS, *PCERT_TRUST_STATUS;
552 typedef struct _CERT_CHAIN_ELEMENT {
554 PCCERT_CONTEXT pCertContext;
555 CERT_TRUST_STATUS TrustStatus;
556 PCERT_REVOCATION_INFO pRevocationInfo;
557 PCERT_ENHKEY_USAGE pIssuanceUsage;
558 PCERT_ENHKEY_USAGE pApplicationUsage;
559 LPCWSTR pwszExtendedErrorInfo;
560 } CERT_CHAIN_ELEMENT, *PCERT_CHAIN_ELEMENT;
562 typedef struct _CERT_SIMPLE_CHAIN {
564 CERT_TRUST_STATUS TrustStatus;
566 PCERT_CHAIN_ELEMENT *rgpElement;
567 PCERT_TRUST_LIST_INFO pTrustListInfo;
568 BOOL fHasRevocationFreshnessTime;
569 DWORD dwRevocationFreshnessTime;
570 } CERT_SIMPLE_CHAIN, *PCERT_SIMPLE_CHAIN;
572 typedef struct _CERT_CHAIN_CONTEXT CERT_CHAIN_CONTEXT, *PCERT_CHAIN_CONTEXT;
573 typedef const CERT_CHAIN_CONTEXT *PCCERT_CHAIN_CONTEXT;
575 struct _CERT_CHAIN_CONTEXT {
577 CERT_TRUST_STATUS TrustStatus;
579 PCERT_SIMPLE_CHAIN *rgpChain;
580 DWORD cLowerQualityChainContext;
581 PCCERT_CHAIN_CONTEXT *rgbLowerQualityChainContext;
582 BOOL fHasRevocationFreshnessTime;
583 DWORD dwRevocationFreshnessTime;
586 typedef struct _CERT_CHAIN_POLICY_PARA {
589 void *pvExtraPolicyPara;
590 } CERT_CHAIN_POLICY_PARA, *PCERT_CHAIN_POLICY_PARA;
592 typedef struct _CERT_CHAIN_POLICY_STATUS {
597 void *pvExtraPolicyStatus;
598 } CERT_CHAIN_POLICY_STATUS, *PCERT_CHAIN_POLICY_STATUS;
600 typedef struct _CERT_SYSTEM_STORE_INFO {
602 } CERT_SYSTEM_STORE_INFO, *PCERT_SYSTEM_STORE_INFO;
604 typedef struct _CERT_PHYSICAL_STORE_INFO {
606 LPSTR pszOpenStoreProvider;
607 DWORD dwOpenEncodingType;
609 CRYPT_DATA_BLOB OpenParameters;
612 } CERT_PHYSICAL_STORE_INFO, *PCERT_PHYSICAL_STORE_INFO;
614 typedef struct _CERT_SYSTEM_STORE_RELOCATE_PARA {
621 LPCSTR pszSystemStore;
622 LPCWSTR pwszSystemStore;
624 } CERT_SYSTEM_STORE_RELOCATE_PARA, *PCERT_SYSTEM_STORE_RELOCATE_PARA;
626 typedef BOOL (WINAPI *PFN_CERT_ENUM_SYSTEM_STORE_LOCATION)(
627 LPCWSTR pwszStoreLocation, DWORD dwFlags, void *pvReserved, void *pvArg);
629 typedef BOOL (WINAPI *PFN_CERT_ENUM_SYSTEM_STORE)(const void *pvSystemStore,
630 DWORD dwFlags, PCERT_SYSTEM_STORE_INFO pStoreInfo, void *pvReserved,
633 typedef BOOL (WINAPI *PFN_CERT_ENUM_PHYSICAL_STORE)(const void *pvSystemStore,
634 DWORD dwFlags, LPCWSTR pwszStoreName, PCERT_PHYSICAL_STORE_INFO pStoreInfo,
635 void *pvReserved, void *pvArg);
637 /* Encode/decode object */
638 typedef LPVOID (WINAPI *PFN_CRYPT_ALLOC)(size_t cbsize);
639 typedef VOID (WINAPI *PFN_CRYPT_FREE)(LPVOID pv);
641 typedef struct _CRYPT_ENCODE_PARA {
643 PFN_CRYPT_ALLOC pfnAlloc;
644 PFN_CRYPT_FREE pfnFree;
645 } CRYPT_ENCODE_PARA, *PCRYPT_ENCODE_PARA;
647 typedef struct _CRYPT_DECODE_PARA {
649 PFN_CRYPT_ALLOC pfnAlloc;
650 PFN_CRYPT_FREE pfnFree;
651 } CRYPT_DECODE_PARA, *PCRYPT_DECODE_PARA;
655 #define GET_ALG_CLASS(x) (x & (7 << 13))
656 #define GET_ALG_TYPE(x) (x & (15 << 9))
657 #define GET_ALG_SID(x) (x & (511))
659 /* Algorithm Classes */
660 #define ALG_CLASS_ANY (0)
661 #define ALG_CLASS_SIGNATURE (1 << 13)
662 #define ALG_CLASS_MSG_ENCRYPT (2 << 13)
663 #define ALG_CLASS_DATA_ENCRYPT (3 << 13)
664 #define ALG_CLASS_HASH (4 << 13)
665 #define ALG_CLASS_KEY_EXCHANGE (5 << 13)
666 /* Algorithm types */
667 #define ALG_TYPE_ANY (0)
668 #define ALG_TYPE_DSS (1 << 9)
669 #define ALG_TYPE_RSA (2 << 9)
670 #define ALG_TYPE_BLOCK (3 << 9)
671 #define ALG_TYPE_STREAM (4 << 9)
672 #define ALG_TYPE_DH (5 << 9)
673 #define ALG_TYPE_SECURECHANNEL (6 << 9)
676 #define ALG_SID_ANY (0)
678 #define ALG_SID_RSA_ANY 0
679 #define ALG_SID_RSA_PKCS 1
680 #define ALG_SID_RSA_MSATWORK 2
681 #define ALG_SID_RSA_ENTRUST 3
682 #define ALG_SID_RSA_PGP 4
684 #define ALG_SID_DSS_ANY 0
685 #define ALG_SID_DSS_PKCS 1
686 #define ALG_SID_DSS_DMS 2
689 #define ALG_SID_DES 1
690 #define ALG_SID_3DES 3
691 #define ALG_SID_DESX 4
692 #define ALG_SID_IDEA 5
693 #define ALG_SID_CAST 6
694 #define ALG_SID_SAFERSK64 7
695 #define ALG_SID_SAFERSK128 8
696 #define ALG_SID_3DES_112 9
697 /* Diffie-Hellmans SIDs */
698 #define ALG_SID_DH_SANDF 1
699 #define ALG_SID_DH_EPHEM 2
700 #define ALG_SID_AGREED_KEY_ANY 3
701 #define ALG_SID_KEA 4
703 #define ALG_SID_RC4 1
704 #define ALG_SID_RC2 2
705 #define ALG_SID_SEAL 2
707 #define ALG_SID_MD2 1
708 #define ALG_SID_MD4 2
709 #define ALG_SID_MD5 3
710 #define ALG_SID_SHA 4
711 #define ALG_SID_SHA1 CALG_SHA
712 #define ALG_SID_MAC 5
713 #define ALG_SID_RIPEMD 6
714 #define ALG_SID_RIPEMD160 7
715 #define ALG_SID_SSL3SHAMD5 8
716 #define ALG_SID_HMAC 9
717 #define ALG_SID_TLS1PRF 10
719 #define ALG_SID_SSL3_MASTER 1
720 #define ALG_SID_SCHANNEL_MASTER_HASH 2
721 #define ALG_SID_SCHANNEL_MAC_KEY 3
722 #define ALG_SID_PCT1_MASTER 4
723 #define ALG_SID_SSL2_MASTER 5
724 #define ALG_SID_TLS1_MASTER 6
725 #define ALG_SID_SCHANNEL_ENC_KEY 7
727 /* Algorithm Definitions */
728 #define CALG_MD2 (ALG_CLASS_HASH | ALG_TYPE_ANY | ALG_SID_MD2)
729 #define CALG_MD4 (ALG_CLASS_HASH | ALG_TYPE_ANY | ALG_SID_MD4)
730 #define CALG_MD5 (ALG_CLASS_HASH | ALG_TYPE_ANY | ALG_SID_MD5)
731 #define CALG_SHA (ALG_CLASS_HASH | ALG_TYPE_ANY | ALG_SID_SHA)
732 #define CALG_SHA1 CALG_SHA
733 #define CALG_MAC (ALG_CLASS_HASH | ALG_TYPE_ANY | ALG_SID_MAC)
734 #define CALG_SSL3_SHAMD5 (ALG_CLASS_HASH | ALG_TYPE_ANY | ALG_SID_SSL3SHAMD5)
735 #define CALG_HMAC (ALG_CLASS_HASH | ALG_TYPE_ANY | ALG_SID_HMAC)
736 #define CALG_TLS1PRF (ALG_CLASS_HASH | ALG_TYPE_ANY | ALG_SID_TLS1PRF)
737 #define CALG_RSA_SIGN (ALG_CLASS_SIGNATURE | ALG_TYPE_RSA | ALG_SID_RSA_ANY)
738 #define CALG_DSS_SIGN (ALG_CLASS_SIGNATURE | ALG_TYPE_DSS | ALG_SID_DSS_ANY)
739 #define CALG_DH_SF (ALG_CLASS_KEY_EXCHANGE | ALG_TYPE_DH | ALG_SID_DH_SANDF)
740 #define CALG_DH_EPHEM (ALG_CLASS_KEY_EXCHANGE | ALG_TYPE_DH | ALG_SID_DH_EPHEM)
741 #define CALG_RSA_KEYX (ALG_CLASS_KEY_EXCHANGE | ALG_TYPE_RSA | ALG_SID_RSA_ANY)
742 #define CALG_DES (ALG_CLASS_DATA_ENCRYPT | ALG_TYPE_BLOCK | ALG_SID_DES)
743 #define CALG_RC2 (ALG_CLASS_DATA_ENCRYPT | ALG_TYPE_BLOCK | ALG_SID_RC2)
744 #define CALG_3DES (ALG_CLASS_DATA_ENCRYPT | ALG_TYPE_BLOCK | ALG_SID_3DES)
745 #define CALG_3DES_112 (ALG_CLASS_DATA_ENCRYPT | ALG_TYPE_BLOCK | ALG_SID_3DES_112)
746 #define CALG_RC4 (ALG_CLASS_DATA_ENCRYPT | ALG_TYPE_STREAM | ALG_SID_RC4)
747 #define CALG_SEAL (ALG_CLASS_DATA_ENCRYPT | ALG_TYPE_STREAM | ALG_SID_SEAL)
748 #define CALG_SSL3_MASTER (ALG_CLASS_MSG_ENCRYPT | ALG_TYPE_SECURECHANNEL | ALG_SID_SSL3_MASTER)
749 #define CALG_SCHANNEL_MASTER_HASH (ALG_CLASS_MSG_ENCRYPT | ALG_TYPE_SECURECHANNEL | ALG_SID_SCHANNEL_MASTER_HASH)
750 #define CALG_SCHANNEL_MAC_KEY (ALG_CLASS_MSG_ENCRYPT | ALG_TYPE_SECURECHANNEL | ALG_SID_SCHANNEL_MAC_KEY)
751 #define CALG_SCHANNEL_ENC_KEY (ALG_CLASS_MSG_ENCRYPT | ALG_TYPE_SECURECHANNEL | ALG_SID_SCHANNEL_ENC_KEY)
752 #define CALG_PCT1_MASTER (ALG_CLASS_MSG_ENCRYPT | ALG_TYPE_SECURECHANNEL | ALG_SID_PCT1_MASTER)
753 #define CALG_SSL2_MASTER (ALG_CLASS_MSG_ENCRYPT | ALG_TYPE_SECURECHANNEL | ALG_SID_SSL2_MASTER)
754 #define CALG_TLS1_MASTER (ALG_CLASS_MSG_ENCRYPT | ALG_TYPE_SECURECHANNEL | ALG_SID_TLS1_MASTER)
757 #define CRYPT_FLAG_PCT1 0x0001
758 #define CRYPT_FLAG_SSL2 0x0002
759 #define CRYPT_FLAG_SSL3 0x0004
760 #define CRYPT_FLAG_TLS1 0x0008
761 #define CRYPT_FLAG_IPSEC 0x0010
762 #define CRYPT_FLAG_SIGNING 0x0020
765 #define MS_DEF_PROV_A "Microsoft Base Cryptographic Provider v1.0"
766 #if defined(__GNUC__)
767 # define MS_DEF_PROV_W (const WCHAR []){ 'M','i','c','r','o','s','o','f','t',' ', \
768 'B','a','s','e',' ','C','r','y','p','t','o','g','r','a','p','h','i','c',' ', \
769 'P','r','o','v','i','d','e','r',' ','v','1','.','0',0 }
770 #elif defined(_MSC_VER)
771 # define MS_DEF_PROV_W L"Microsoft Base Cryptographic Provider v1.0"
773 static const WCHAR MS_DEF_PROV_W[] = { 'M','i','c','r','o','s','o','f','t',' ',
774 'B','a','s','e',' ','C','r','y','p','t','o','g','r','a','p','h','i','c',' ',
775 'P','r','o','v','i','d','e','r',' ','v','1','.','0',0 };
777 #define MS_DEF_PROV WINELIB_NAME_AW(MS_DEF_PROV_)
779 #define MS_ENHANCED_PROV_A "Microsoft Enhanced Cryptographic Provider v1.0"
780 #if defined(__GNUC__)
781 # define MS_ENHANCED_PROV_W (const WCHAR []){ 'M','i','c','r','o','s','o','f','t',' ', \
782 'E','n','h','a','n','c','e','d',' ','C','r','y','p','t','o','g','r','a','p','h','i','c',' ', \
783 'P','r','o','v','i','d','e','r',' ','v','1','.','0',0 }
784 #elif defined(_MSC_VER)
785 # define MS_ENHANCED_PROV_W L"Microsoft Enhanced Cryptographic Provider v1.0"
787 static const WCHAR MS_ENHANCED_PROV_W[] = { 'M','i','c','r','o','s','o','f','t',' ',
788 'E','n','h','a','n','c','e','d',' ','C','r','y','p','t','o','g','r','a','p','h','i','c',' ',
789 'P','r','o','v','i','d','e','r',' ','v','1','.','0',0 };
791 #define MS_ENHANCED_PROV WINELIB_NAME_AW(MS_ENHANCED_PROV_)
793 #define MS_STRONG_PROV_A "Microsoft Strong Cryptographic Provider"
794 #if defined(__GNUC__)
795 # define MS_STRONG_PROV_W (const WCHAR []){ 'M','i','c','r','o','s','o','f','t',' ', \
796 'S','t','r','o','n','g',' ','C','r','y','p','t','o','g','r','a','p','h','i','c',' ', \
797 'P','r','o','v','i','d','e','r',0 }
798 #elif defined(_MSC_VER)
799 # define MS_STRONG_PROV_W L"Microsoft Strong Cryptographic Provider"
801 static const WCHAR MS_STRONG_PROV_W[] = { 'M','i','c','r','o','s','o','f','t',' ',
802 'S','t','r','o','n','g',' ','C','r','y','p','t','o','g','r','a','p','h','i','c',' ',
803 'P','r','o','v','i','d','e','r',0 };
805 #define MS_STRONG_PROV WINELIB_NAME_AW(MS_STRONG_PROV_)
807 #define MS_DEF_RSA_SIG_PROV_A "Microsoft RSA Signature Cryptographic Provider"
808 #if defined(__GNUC__)
809 # define MS_DEF_RSA_SIG_PROV_W (const WCHAR []){ 'M','i','c','r','o','s','o','f','t',' ', \
810 'R','S','A',' ','S','i','g','n','a','t','u','r','e',' ', \
811 'C','r','y','p','t','o','g','r','a','p','h','i','c',' ','P','r','o','v','i','d','e','r',0 }
812 #elif defined(_MSC_VER)
813 # define MS_DEF_RSA_SIG_PROV_W L"Microsoft RSA Signature Cryptographic Provider"
815 static const WCHAR MS_DEF_RSA_SIG_PROV_W[] = { 'M','i','c','r','o','s','o','f','t',' ',
816 'R','S','A',' ','S','i','g','n','a','t','u','r','e',' ',
817 'C','r','y','p','t','o','g','r','a','p','h','i','c',' ','P','r','o','v','i','d','e','r',0 };
819 #define MS_DEF_RSA_SIG_PROV WINELIB_NAME_AW(MS_DEF_RSA_SIG_PROV_)
821 #define MS_DEF_RSA_SCHANNEL_PROV_A "Microsoft RSA SChannel Cryptographic Provider"
822 #if defined(__GNUC__)
823 # define MS_DEF_RSA_SCHANNEL_PROV_W (const WCHAR []){ 'M','i','c','r','o','s','o','f','t',' ', \
824 'R','S','A',' ','S','C','h','a','n','n','e','l',' ', \
825 'C','r','y','p','t','o','g','r','a','p','h','i','c',' ','P','r','o','v','i','d','e','r',0 }
826 #elif defined(_MSC_VER)
827 # define MS_DEF_RSA_SCHANNEL_PROV_W L"Microsoft RSA SChannel Cryptographic Provider"
829 static const WCHAR MS_DEF_RSA_SCHANNEL_PROV_W[] = { 'M','i','c','r','o','s','o','f','t',' ',
830 'R','S','A',' ','S','C','h','a','n','n','e','l',' ',
831 'C','r','y','p','t','o','g','r','a','p','h','i','c',' ','P','r','o','v','i','d','e','r',0 };
833 #define MS_DEF_RSA_SCHANNEL_PROV WINELIB_NAME_AW(MS_DEF_RSA_SCHANNEL_PROV_)
835 #define MS_DEF_DSS_PROV_A "Microsoft Base DSS Cryptographic Provider"
836 #if defined(__GNUC__)
837 # define MS_DEF_DSS_PROV_W (const WCHAR []){ 'M','i','c','r','o','s','o','f','t',' ', \
838 'B','a','s','e',' ','D','S','S',' ', \
839 'C','r','y','p','t','o','g','r','a','p','h','i','c',' ','P','r','o','v','i','d','e','r',0 }
840 #elif defined(_MSC_VER)
841 # define MS_DEF_DSS_PROV_W L"Microsoft Base DSS Cryptographic Provider"
843 static const WCHAR MS_DEF_DSS_PROV_W[] = { 'M','i','c','r','o','s','o','f','t',' ',
844 'B','a','s','e',' ','D','S','S',' ',
845 'C','r','y','p','t','o','g','r','a','p','h','i','c',' ','P','r','o','v','i','d','e','r',0 };
847 #define MS_DEF_DSS_PROV WINELIB_NAME_AW(MS_DEF_DSS_PROV_)
849 #define MS_DEF_DSS_DH_PROV_A "Microsoft Base DSS and Diffie-Hellman Cryptographic Provider"
850 #if defined(__GNUC__)
851 # define MS_DEF_DSS_DH_PROV_W (const WCHAR []){ 'M','i','c','r','o','s','o','f','t',' ', \
852 'B','a','s','e',' ','D','S','S',' ','a','n','d',' ', \
853 'D','i','f','f','i','e','-','H','e','l','l','m','a','n',' ', \
854 'C','r','y','p','t','o','g','r','a','p','h','i','c',' ','P','r','o','v','i','d','e','r',0 }
855 #elif defined(_MSC_VER)
856 # define MS_DEF_DSS_DH_PROV_W L"Microsoft Base DSS and Diffie-Hellman Cryptographic Provider"
858 static const WCHAR MS_DEF_DSS_DH_PROV_W[] = { 'M','i','c','r','o','s','o','f','t',' ',
859 'B','a','s','e',' ','D','S','S',' ','a','n','d',' ',
860 'D','i','f','f','i','e','-','H','e','l','l','m','a','n',' ',
861 'C','r','y','p','t','o','g','r','a','p','h','i','c',' ','P','r','o','v','i','d','e','r',0 };
863 #define MS_DEF_DSS_DH_PROV WINELIB_NAME_AW(MS_DEF_DSS_DH_PROV_)
865 #define MS_ENH_DSS_DH_PROV_A "Microsoft Enhanced DSS and Diffie-Hellman Cryptographic Provider"
866 #if defined(__GNUC__)
867 # define MS_ENH_DSS_DH_PROV_W (const WCHAR []){ 'M','i','c','r','o','s','o','f','t',' ', \
868 'E','n','h','a','n','c','e','d',' ','D','S','S',' ','a','n','d',' ', \
869 'D','i','f','f','i','e','-','H','e','l','l','m','a','n',' ', \
870 'C','r','y','p','t','o','g','r','a','p','h','i','c',' ','P','r','o','v','i','d','e','r',0 }
871 #elif defined(_MSC_VER)
872 # define MS_ENH_DSS_DH_PROV_W L"Microsoft Enhanced DSS and Diffie-Hellman Cryptographic Provider"
874 static const WCHAR MS_ENH_DSS_DH_PROV_W[] = { 'M','i','c','r','o','s','o','f','t',' ',
875 'E','n','h','a','n','c','e','d',' ','D','S','S',' ','a','n','d',' ',
876 'D','i','f','f','i','e','-','H','e','l','l','m','a','n',' ',
877 'C','r','y','p','t','o','g','r','a','p','h','i','c',' ','P','r','o','v','i','d','e','r',0 };
879 #define MS_ENH_DSS_DH_PROV WINELIB_NAME_AW(MS_ENH_DSS_DH_PROV_)
881 #define MS_DEF_DH_SCHANNEL_PROV_A "Microsoft DH SChannel Cryptographic Provider"
882 #if defined(__GNUC__)
883 # define MS_DEF_DH_SCHANNEL_PROV_W (const WCHAR []){ 'M','i','c','r','o','s','o','f','t',' ', \
884 'D','H',' ','S','C','h','a','n','n','e','l',' ', \
885 'C','r','y','p','t','o','g','r','a','p','h','i','c',' ','P','r','o','v','i','d','e','r',0 }
886 #elif defined(_MSC_VER)
887 # define MS_DEF_DH_SCHANNEL_PROV_W L"Microsoft DH SChannel Cryptographic Provider"
889 static const WCHAR MS_DEF_DH_SCHANNEL_PROV_W[] = { 'M','i','c','r','o','s','o','f','t',' ',
890 'D','H',' ','S','C','h','a','n','n','e','l',' ',
891 'C','r','y','p','t','o','g','r','a','p','h','i','c',' ','P','r','o','v','i','d','e','r',0 };
893 #define MS_DEF_DH_SCHANNEL_PROV WINELIB_NAME_AW(MS_DEF_DH_SCHANNEL_PROV_)
895 #define MS_SCARD_PROV_A "Microsoft Base Smart Card Cryptographic Provider"
896 #if defined(__GNUC__)
897 # define MS_SCARD_PROV_W (const WCHAR []){ 'M','i','c','r','o','s','o','f','t',' ', \
898 'B','a','s','e',' ','S','m','a','r','t',' ','C','a','r','d',' ', \
899 'C','r','y','p','t','o','g','r','a','p','h','i','c',' ','P','r','o','v','i','d','e','r',0 }
900 #elif defined(_MSC_VER)
901 # define MS_SCARD_PROV_W L"Microsoft Base Smart Card Cryptographic Provider"
903 static const WCHAR MS_SCARD_PROV_W[] = { 'M','i','c','r','o','s','o','f','t',' ',
904 'B','a','s','e',' ','S','m','a','r','t',' ','C','a','r','d',' ',
905 'C','r','y','p','t','o','g','r','a','p','h','i','c',' ','P','r','o','v','i','d','e','r',0 };
907 #define MS_SCARD_PROV WINELIB_NAME_AW(MS_SCARD_PROV_)
910 #define AT_KEYEXCHANGE 1
911 #define AT_SIGNATURE 2
914 #define PROV_RSA_FULL 1
915 #define PROV_RSA_SIG 2
917 #define PROV_FORTEZZA 4
918 #define PROV_MS_EXCHANGE 5
920 #define PROV_RSA_SCHANNEL 12
921 #define PROV_DSS_DH 13
922 #define PROV_EC_ECDSA_SIG 14
923 #define PROV_EC_ECNRA_SIG 15
924 #define PROV_EC_ECDSA_FULL 16
925 #define PROV_EC_ECNRA_FULL 17
926 #define PROV_DH_SCHANNEL 18
927 #define PROV_SPYRUS_LYNKS 20
929 #define PROV_INTEL_SEC 22
930 #define PROV_REPLACE_OWF 23
931 #define PROV_RSA_AES 24
935 /* Provider Parameters */
936 #define PP_ENUMALGS 1
937 #define PP_ENUMCONTAINERS 2
941 #define PP_CONTAINER 6
943 #define CRYPT_FIRST 1
946 #define CRYPT_IMPL_HARDWARE 1
947 #define CRYPT_IMPL_SOFTWARE 2
948 #define CRYPT_IMPL_MIXED 3
949 #define CRYPT_IMPL_UNKNOWN 4
951 /* CryptAcquireContext */
952 #define CRYPT_VERIFYCONTEXT 0xF0000000
953 #define CRYPT_NEWKEYSET 0x00000008
954 #define CRYPT_DELETEKEYSET 0x00000010
955 #define CRYPT_MACHINE_KEYSET 0x00000020
956 #define CRYPT_SILENT 0x00000040
958 /* Crypt{Get|Set}Provider */
959 #define CRYPT_MACHINE_DEFAULT 0x00000001
960 #define CRYPT_USER_DEFAULT 0x00000002
961 #define CRYPT_DELETE_DEFAULT 0x00000004
963 /* Crypt{Get/Set}ProvParam */
964 #define PP_CLIENT_HWND 1
965 #define PP_ENUMALGS 1
966 #define PP_ENUMCONTAINERS 2
970 #define PP_CONTAINER 6
971 #define PP_CHANGE_PASSWORD 7
972 #define PP_KEYSET_SEC_DESCR 8
973 #define PP_KEY_TYPE_SUBTYPE 10
974 #define PP_CONTEXT_INFO 11
975 #define PP_KEYEXCHANGE_KEYSIZE 12
976 #define PP_SIGNATURE_KEYSIZE 13
977 #define PP_KEYEXCHANGE_ALG 14
978 #define PP_SIGNATURE_ALG 15
979 #define PP_PROVTYPE 16
980 #define PP_KEYSTORAGE 17
981 #define PP_SYM_KEYSIZE 19
982 #define PP_SESSION_KEYSIZE 20
983 #define PP_UI_PROMPT 21
984 #define PP_ENUMALGS_EX 22
985 #define PP_DELETEKEY 24
986 #define PP_ENUMMANDROOTS 25
987 #define PP_ENUMELECTROOTS 26
988 #define PP_KEYSET_TYPE 27
989 #define PP_ADMIN_PIN 31
990 #define PP_KEYEXCHANGE_PIN 32
991 #define PP_SIGNATURE_PIN 33
992 #define PP_SIG_KEYSIZE_INC 34
993 #define PP_KEYX_KEYSIZE_INC 35
994 #define PP_UNIQUE_CONTAINER 36
995 #define PP_SGC_INFO 37
996 #define PP_USE_HARDWARE_RNG 38
997 #define PP_KEYSPEC 39
998 #define PP_ENUMEX_SIGNING_PROT 40
1000 /* Crypt{Get/Set}KeyParam */
1003 #define KP_PADDING 3
1005 #define KP_MODE_BITS 5
1006 #define KP_PERMISSIONS 6
1008 #define KP_BLOCKLEN 8
1010 #define KP_SALT_EX 10
1019 #define KP_EFFECTIVE_KEYLEN 19
1020 #define KP_SCHANNEL_ALG 20
1021 #define KP_CLIENT_RANDOM 21
1022 #define KP_SERVER_RANDOM 22
1024 #define KP_PRECOMP_MD5 24
1025 #define KP_PRECOMP_SHA 25
1026 #define KP_CERTIFICATE 26
1027 #define KP_CLEAR_KEY 27
1028 #define KP_PUB_EX_LEN 28
1029 #define KP_PUB_EX_VAL 29
1030 #define KP_KEYVAL 30
1031 #define KP_ADMIN_PIN 31
1032 #define KP_KEYEXCHANGE_PIN 32
1033 #define KP_SIGNATURE_PIN 33
1034 #define KP_PREHASH 34
1036 /* CryptSignHash/CryptVerifySignature */
1037 #define CRYPT_NOHASHOID 0x00000001
1038 #define CRYPT_TYPE2_FORMAT 0x00000002
1039 #define CRYPT_X931_FORMAT 0x00000004
1041 /* Crypt{Get,Set}HashParam */
1042 #define HP_ALGID 0x0001
1043 #define HP_HASHVAL 0x0002
1044 #define HP_HASHSIZE 0x0004
1045 #define HP_HMAC_INFO 0x0005
1046 #define HP_TLS1PRF_LABEL 0x0006
1047 #define HP_TLS1PRF_SEED 0x0007
1049 /* Crypt{Get,Set}KeyParam */
1050 #define CRYPT_MODE_CBC 1
1051 #define CRYPT_MODE_ECB 2
1052 #define CRYPT_MODE_OFB 3
1053 #define CRYPT_MODE_CFB 4
1055 #define CRYPT_ENCRYPT 0x0001
1056 #define CRYPT_DECRYPT 0x0002
1057 #define CRYPT_EXPORT 0x0004
1058 #define CRYPT_READ 0x0008
1059 #define CRYPT_WRITE 0x0010
1060 #define CRYPT_MAC 0x0020
1063 #define CRYPT_EXPORTABLE 0x00000001
1064 #define CRYPT_USER_PROTECTED 0x00000002
1065 #define CRYPT_CREATE_SALT 0x00000004
1066 #define CRYPT_UPDATE_KEY 0x00000008
1067 #define CRYPT_NO_SALT 0x00000010
1068 #define CRYPT_PREGEN 0x00000040
1069 #define CRYPT_SERVER 0x00000400
1070 #define CRYPT_ARCHIVABLE 0x00004000
1072 /* CryptExportKey */
1073 #define CRYPT_SSL2_FALLBACK 0x00000002
1074 #define CRYPT_DESTROYKEY 0x00000004
1075 #define CRYPT_OAEP 0x00000040
1077 /* CryptHashSessionKey */
1078 #define CRYPT_LITTLE_ENDIAN 0x00000001
1080 /* Crypt{Protect,Unprotect}Data PROMPTSTRUCT flags */
1081 #define CRYPTPROTECT_PROMPT_ON_PROTECT 0x0001
1082 #define CRYPTPROTECT_PROMPT_ON_UNPROTECT 0x0002
1083 /* Crypt{Protect,Unprotect}Data flags */
1084 #define CRYPTPROTECT_UI_FORBIDDEN 0x0001
1085 #define CRYPTPROTECT_LOCAL_MACHINE 0x0004
1086 #define CRYPTPROTECT_AUDIT 0x0010
1087 #define CRYPTPROTECT_VERIFY_PROTECTION 0x0040
1090 #define SIMPLEBLOB 0x1
1091 #define PUBLICKEYBLOB 0x6
1092 #define PRIVATEKEYBLOB 0x7
1093 #define PLAINTEXTKEYBLOB 0x8
1094 #define OPAQUEKEYBLOB 0x9
1095 #define PUBLICKEYBLOBEX 0xA
1096 #define SYMMETRICWRAPKEYBLOB 0xB
1098 #define CUR_BLOB_VERSION 2
1100 /* cert store provider types */
1101 #define CERT_STORE_PROV_MSG ((LPCSTR)1)
1102 #define CERT_STORE_PROV_MEMORY ((LPCSTR)2)
1103 #define CERT_STORE_PROV_FILE ((LPCSTR)3)
1104 #define CERT_STORE_PROV_REG ((LPCSTR)4)
1105 #define CERT_STORE_PROV_PKCS7 ((LPCSTR)5)
1106 #define CERT_STORE_PROV_SERIALIZED ((LPCSTR)6)
1107 #define CERT_STORE_PROV_FILENAME_A ((LPCSTR)7)
1108 #define CERT_STORE_PROV_FILENAME_W ((LPCSTR)8)
1109 #define CERT_STORE_PROV_SYSTEM_A ((LPCSTR)9)
1110 #define CERT_STORE_PROV_SYSTEM_W ((LPCSTR)10)
1111 #define CERT_STORE_PROV_SYSTEM CERT_STORE_PROV_SYSTEM_W
1112 #define CERT_STORE_PROV_COLLECTION ((LPCSTR)11)
1113 #define CERT_STORE_PROV_SYSTEM_REGISTRY_A ((LPCSTR)12)
1114 #define CERT_STORE_PROV_SYSTEM_REGISTRY_W ((LPCSTR)13)
1115 #define CERT_STORE_PROV_SYSTEM_REGISTRY CERT_STORE_PROV_SYSTEM_REGISTRY_W
1116 #define CERT_STORE_PROV_PHYSICAL_W ((LPCSTR)14)
1117 #define CERT_STORE_PROV_PHYSICAL CERT_STORE_PROV_PHYSICAL_W
1118 #define CERT_STORE_PROV_SMART_CARD_W ((LPCSTR)15)
1119 #define CERT_STORE_PROV_SMART_CARD CERT_STORE_PROV_SMART_CARD_W
1120 #define CERT_STORE_PROV_LDAP_W ((LPCSTR)16)
1121 #define CERT_STORE_PROV_LDAP CERT_STORE_PROV_LDAP_W
1123 #define sz_CERT_STORE_PROV_MEMORY "Memory"
1124 #define sz_CERT_STORE_PROV_FILENAME_W "File"
1125 #define sz_CERT_STORE_PROV_FILENAME sz_CERT_STORE_PROV_FILENAME_W
1126 #define sz_CERT_STORE_PROV_SYSTEM_W "System"
1127 #define sz_CERT_STORE_PROV_SYSTEM sz_CERT_STORE_PROV_SYSTEM_W
1128 #define sz_CERT_STORE_PROV_PKCS7 "PKCS7"
1129 #define sz_CERT_STORE_PROV_SERIALIZED "Serialized"
1130 #define sz_CERT_STORE_PROV_COLLECTION "Collection"
1131 #define sz_CERT_STORE_PROV_SYSTEM_REGISTRY_W "SystemRegistry"
1132 #define sz_CERT_STORE_PROV_SYSTEM_REGISTRY sz_CERT_STORE_PROV_SYSTEM_REGISTRY_W
1133 #define sz_CERT_STORE_PROV_PHYSICAL_W "Physical"
1134 #define sz_CERT_STORE_PROV_PHYSICAL sz_CERT_STORE_PROV_PHYSICAL_W
1135 #define sz_CERT_STORE_PROV_SMART_CARD_W "SmartCard"
1136 #define sz_CERT_STORE_PROV_SMART_CARD sz_CERT_STORE_PROV_SMART_CARD_W
1137 #define sz_CERT_STORE_PROV_LDAP_W "Ldap"
1138 #define sz_CERT_STORE_PROV_LDAP sz_CERT_STORE_PROV_LDAP_W
1140 /* types for CertOpenStore dwEncodingType */
1141 #define CERT_ENCODING_TYPE_MASK 0x0000ffff
1142 #define CMSG_ENCODING_TYPE_MASK 0xffff0000
1143 #define GET_CERT_ENCODING_TYPE(x) ((x) & CERT_ENCODING_TYPE_MASK)
1144 #define GET_CMSG_ENCODING_TYPE(x) ((x) & CMSG_ENCODING_TYPE_MASK)
1146 #define CRYPT_ASN_ENCODING 0x00000001
1147 #define CRYPT_NDR_ENCODING 0x00000002
1148 #define X509_ASN_ENCODING 0x00000001
1149 #define X509_NDR_ENCODING 0x00000002
1150 #define PKCS_7_ASN_ENCODING 0x00010000
1151 #define PKCS_7_NDR_ENCODING 0x00020000
1153 /* system store locations */
1154 #define CERT_SYSTEM_STORE_LOCATION_MASK 0x00ff0000
1155 #define CERT_SYSTEM_STORE_LOCATION_SHIFT 16
1157 /* system store location ids */
1159 #define CERT_SYSTEM_STORE_CURRENT_USER_ID 1
1161 #define CERT_SYSTEM_STORE_LOCAL_MACHINE_ID 2
1162 /* hklm\Software\Microsoft\Cryptography\Services */
1163 #define CERT_SYSTEM_STORE_CURRENT_SERVICE_ID 4
1164 #define CERT_SYSTEM_STORE_SERVICES_ID 5
1166 #define CERT_SYSTEM_STORE_USERS_ID 6
1167 /* hkcu\Software\Microsoft\Policies\Microsoft\SystemCertificates */
1168 #define CERT_SYSTEM_STORE_CURRENT_USER_GROUP_POLICY_ID 7
1169 /* hklm\Software\Microsoft\Policies\Microsoft\SystemCertificates */
1170 #define CERT_SYSTEM_STORE_LOCAL_MACHINE_GROUP_POLICY_ID 8
1171 /* hklm\Software\Microsoft\EnterpriseCertificates */
1172 #define CERT_SYSTEM_STORE_LOCAL_MACHINE_ENTERPRISE_ID 9
1174 /* system store location values */
1175 #define CERT_SYSTEM_STORE_CURRENT_USER \
1176 (CERT_SYSTEM_STORE_CURRENT_USER_ID << CERT_SYSTEM_STORE_LOCATION_SHIFT)
1177 #define CERT_SYSTEM_STORE_LOCAL_MACHINE \
1178 (CERT_SYSTEM_STORE_LOCAL_MACHINE_ID << CERT_SYSTEM_STORE_LOCATION_SHIFT)
1179 #define CERT_SYSTEM_STORE_CURRENT_SERVICE \
1180 (CERT_SYSTEM_STORE_CURRENT_SERVICE_ID << CERT_SYSTEM_STORE_LOCATION_SHIFT)
1181 #define CERT_SYSTEM_STORE_SERVICE \
1182 (CERT_SYSTEM_STORE_SERVICES_ID << CERT_SYSTEM_STORE_LOCATION_SHIFT)
1183 #define CERT_SYSTEM_STORE_USERS \
1184 (CERT_SYSTEM_STORE_USERS_ID << CERT_SYSTEM_STORE_LOCATION_SHIFT)
1185 #define CERT_SYSTEM_STORE_CURRENT_USER_GROUP_POLICY \
1186 (CERT_SYSTEM_STORE_CURRENT_USER_GROUP_POLICY_ID << CERT_SYSTEM_STORE_LOCATION_SHIFT)
1187 #define CERT_SYSTEM_STORE_LOCAL_MACHINE_GROUP_POLICY \
1188 (CERT_SYSTEM_STORE_LOCAL_MACHINE_GROUP_POLICY_ID << CERT_SYSTEM_STORE_LOCATION_SHIFT)
1189 #define CERT_SYSTEM_STORE_LOCAL_MACHINE_ENTERPRISE \
1190 (CERT_SYSTEM_STORE_LOCAL_MACHINE_ENTERPRISE_ID << CERT_SYSTEM_STORE_LOCATION_SHIFT)
1192 /* flags for CertOpenStore dwFlags */
1193 #define CERT_STORE_NO_CRYPT_RELEASE_FLAG 0x00000001
1194 #define CERT_STORE_SET_LOCALIZED_NAME_FLAG 0x00000002
1195 #define CERT_STORE_DEFER_CLOSE_UNTIL_LAST_FREE_FLAG 0x00000004
1196 #define CERT_STORE_DELETE_FLAG 0x00000010
1197 #define CERT_STORE_UNSAFE_PHYSICAL_FLAG 0x00000020
1198 #define CERT_STORE_SHARE_STORE_FLAG 0x00000040
1199 #define CERT_STORE_SHARE_CONTEXT_FLAG 0x00000080
1200 #define CERT_STORE_MANIFOLD_FLAG 0x00000100
1201 #define CERT_STORE_ENUM_ARCHIVED_FLAG 0x00000200
1202 #define CERT_STORE_UPDATE_KEYID_FLAG 0x00000400
1203 #define CERT_STORE_BACKUP_RESTORE_FLAG 0x00000800
1204 #define CERT_STORE_MAXIMUM_ALLOWED_FLAG 0x00001000
1205 #define CERT_STORE_CREATE_NEW_FLAG 0x00002000
1206 #define CERT_STORE_OPEN_EXISTING_FLAG 0x00004000
1207 #define CERT_STORE_READONLY_FLAG 0x00008000
1209 /* physical store dwFlags, also used by CertAddStoreToCollection as
1212 #define CERT_PHYSICAL_STORE_ADD_ENABLE_FLAG 0x1
1213 #define CERT_PHYSICAL_STORE_OPEN_DISABLE_FLAG 0x2
1214 #define CERT_PHYSICAL_STORE_REMOVE_OPEN_DISABLE_FLAG 0x4
1215 #define CERT_PHYSICAL_STORE_INSERT_COMPUTER_NAME_ENABLE_FLAG 0x8
1217 /* dwFlag values for CertEnumPhysicalStore callback */
1218 #define CERT_PHYSICAL_STORE_PREDEFINED_ENUM_FLAG 0x1
1220 /* predefined store names */
1221 #if defined(__GNUC__)
1222 # define CERT_PHYSICAL_STORE_DEFAULT_NAME (const WCHAR[])\
1223 {'.','D','e','f','a','u','l','t','0'}
1224 # define CERT_PHYSICAL_STORE_GROUP_POLICY_NAME (const WCHAR[])\
1225 {'.','G','r','o','u','p','P','o','l','i','c','y',0}
1226 # define CERT_PHYSICAL_STORE_LOCAL_MACHINE_NAME (const WCHAR[])\
1227 {'.','L','o','c','a','l','M','a','c','h','i','n','e',0}
1228 # define CERT_PHYSICAL_STORE_DS_USER_CERTIFICATE_NAME (const WCHAR[])\
1229 {'.','U','s','e','r','C','e','r','t','i','f','i','c','a','t','e',0}
1230 # define CERT_PHYSICAL_STORE_LOCAL_MACHINE_GROUP_POLICY_NAME (const WCHAR[])\
1231 {'.','L','o','c','a','l','M','a','c','h','i','n','e','G','r','o','u','p',\
1232 'P','o','l','i','c','y',0}
1233 # define CERT_PHYSICAL_STORE_ENTERPRISE_NAME (const WCHAR[])\
1234 {'.','E','n','t','e','r','p','r','i','s','e',0}
1235 # define CERT_PHYSICAL_STORE_AUTH_ROOT_NAME (const WCHAR[])\
1236 {'.','A','u','t','h','R','o','o','t',0}
1237 #elif defined(_MSC_VER)
1238 # define CERT_PHYSICAL_STORE_DEFAULT_NAME \
1240 # define CERT_PHYSICAL_STORE_GROUP_POLICY_NAME \
1242 # define CERT_PHYSICAL_STORE_LOCAL_MACHINE_NAME \
1244 # define CERT_PHYSICAL_STORE_DS_USER_CERTIFICATE_NAME \
1246 # define CERT_PHYSICAL_STORE_LOCAL_MACHINE_GROUP_POLICY_NAME \
1247 L".LocalMachineGroupPolicy"
1248 # define CERT_PHYSICAL_STORE_ENTERPRISE_NAME \
1250 # define CERT_PHYSICAL_STORE_AUTH_ROOT_NAME \
1253 static const WCHAR CERT_PHYSICAL_STORE_DEFAULT_NAME[] =
1254 {'.','D','e','f','a','u','l','t','0'};
1255 static const WCHAR CERT_PHYSICAL_STORE_GROUP_POLICY_NAME[] =
1256 {'.','G','r','o','u','p','P','o','l','i','c','y',0};
1257 static const WCHAR CERT_PHYSICAL_STORE_LOCAL_MACHINE_NAME[] =
1258 {'.','L','o','c','a','l','M','a','c','h','i','n','e',0};
1259 static const WCHAR CERT_PHYSICAL_STORE_DS_USER_CERTIFICATE_NAME[] =
1260 {'.','U','s','e','r','C','e','r','t','i','f','i','c','a','t','e',0};
1261 static const WCHAR CERT_PHYSICAL_STORE_LOCAL_MACHINE_GROUP_POLICY_NAME[] =
1262 {'.','L','o','c','a','l','M','a','c','h','i','n','e','G','r','o','u','p',
1263 'P','o','l','i','c','y',0};
1264 static const WCHAR CERT_PHYSICAL_STORE_ENTERPRISE_NAME[] =
1265 {'.','E','n','t','e','r','p','r','i','s','e',0};
1266 static const WCHAR CERT_PHYSICAL_STORE_AUTH_ROOT_NAME[] =
1267 {'.','A','u','t','h','R','o','o','t',0};
1270 /* cert system store flags */
1271 #define CERT_SYSTEM_STORE_MASK 0xffff0000
1272 #define CERT_SYSTEM_STORE_RELOCATE_FLAG 0x80000000
1274 /* CertFindChainInStore dwFindType types */
1275 #define CERT_CHAIN_FIND_BY_ISSUER 1
1277 /* CERT_INFO versions/flags */
1281 #define CERT_INFO_VERSION_FLAG 1
1282 #define CERT_INFO_SERIAL_NUMBER_FLAG 2
1283 #define CERT_INFO_SIGNATURE_ALGORITHM_FLAG 3
1284 #define CERT_INFO_ISSUER_FLAG 4
1285 #define CERT_INFO_NOT_BEFORE_FLAG 5
1286 #define CERT_INFO_NOT_AFTER_FLAG 6
1287 #define CERT_INFO_SUBJECT_FLAG 7
1288 #define CERT_INFO_SUBJECT_PUBLIC_KEY_INFO_FLAG 8
1289 #define CERT_INFO_ISSUER_UNIQUE_ID_FLAG 9
1290 #define CERT_INFO_SUBJECT_UNIQUE_ID_FLAG 10
1291 #define CERT_INFO_EXTENSION_FLAG 11
1293 /* CERT_REQUEST_INFO versions */
1294 #define CERT_REQUEST_V1 0
1296 /* CERT_KEYGEN_REQUEST_INFO versions */
1297 #define CERT_KEYGEN_REQUEST_V1 0
1306 /* Certificate, CRL, CTL property IDs */
1307 #define CERT_KEY_PROV_HANDLE_PROP_ID 1
1308 #define CERT_KEY_PROV_INFO_PROP_ID 2
1309 #define CERT_SHA1_HASH_PROP_ID 3
1310 #define CERT_HASH_PROP_ID CERT_SHA1_HASH_PROP_ID
1311 #define CERT_MD5_HASH_PROP_ID 4
1312 #define CERT_KEY_CONTEXT_PROP_ID 5
1313 #define CERT_KEY_SPEC_PROP_ID 6
1314 #define CERT_IE30_RESERVED_PROP_ID 7
1315 #define CERT_PUBKEY_HASH_RESERVED_PROP_ID 8
1316 #define CERT_ENHKEY_USAGE_PROP_ID 9
1317 #define CERT_CTL_USAGE_PROP_ID CERT_ENHKEY_USAGE_PROP_ID
1318 #define CERT_NEXT_UPDATE_LOCATION_PROP_ID 10
1319 #define CERT_FRIENDLY_NAME_PROP_ID 11
1320 #define CERT_PVK_FILE_PROP_ID 12
1321 #define CERT_DESCRIPTION_PROP_ID 13
1322 #define CERT_ACCESS_STATE_PROP_ID 14
1323 #define CERT_SIGNATURE_HASH_PROP_ID 15
1324 #define CERT_SMART_CARD_DATA_PROP_ID 16
1325 #define CERT_EFS_PROP_ID 17
1326 #define CERT_FORTEZZA_DATA_PROP 18
1327 #define CERT_ARCHIVED_PROP_ID 19
1328 #define CERT_KEY_IDENTIFIER_PROP_ID 20
1329 #define CERT_AUTO_ENROLL_PROP_ID 21
1330 #define CERT_PUBKEY_ALG_PARA_PROP_ID 22
1331 #define CERT_CROSS_CERT_DIST_POINTS_PROP_ID 23
1332 #define CERT_ISSUER_PUBLIC_KEY_MD5_HASH_PROP_ID 24
1333 #define CERT_SUBJECT_PUBLIC_KEY_MD5_HASH_PROP_ID 25
1334 #define CERT_ENROLLMENT_PROP_ID 26
1335 #define CERT_DATE_STAMP_PROP_ID 27
1336 #define CERT_ISSUER_SERIAL_NUMBER_MD5_HASH_PROP_ID 28
1337 #define CERT_SUBJECT_NAME_MD5_HASH_PROP_ID 29
1338 #define CERT_EXTENDED_ERROR_INFO_PROP_ID 30
1346 #define CERT_RENEWAL_PROP_ID 64
1347 #define CERT_ARCHIVED_KEY_HASH_PROP_ID 65
1348 #define CERT_AUTO_ENROLL_RETRY_PROP_ID 66
1349 #define CERT_AIA_URL_RETRIEVED_PROP_ID 67
1350 #define CERT_FIRST_RESERVED_PROP_ID 68
1351 #define CERT_LAST_RESERVED_PROP_ID 0x00007fff
1352 #define CERT_FIRST_USER_PROP_ID 0x00008000
1353 #define CERT_LAST_USER_PROP_ID 0x0000ffff
1355 #define IS_CERT_HASH_PROP_ID(x) \
1356 ((x) == CERT_SHA1_HASH_PROP_ID || (x) == CERT_MD5_HASH_PROP_ID || \
1357 (x) == CERT_SIGNATURE_HASH_PROP_ID)
1359 #define IS_PUBKEY_HASH_PROP_ID(x) \
1360 ((x) == CERT_ISSUER_PUBLIC_KEY_MD5_HASH_PROP_ID || \
1361 (x) == CERT_SUBJECT_PUBLIC_KEY_MD5_HASH_PROP_ID)
1363 #define IS_CHAIN_HASH_PROP_ID(x) \
1364 ((x) == CERT_ISSUER_PUBLIC_KEY_MD5_HASH_PROP_ID || \
1365 (x) == CERT_SUBJECT_PUBLIC_KEY_MD5_HASH_PROP_ID || \
1366 (x) == CERT_ISSUER_SERIAL_NUMBER_MD5_HASH_PROP_ID || \
1367 (x) == CERT_SUBJECT_NAME_MD5_HASH_PROP_ID)
1369 /* CERT_RDN attribute dwValueType types */
1370 #define CERT_RDN_TYPE_MASK 0x000000ff
1371 #define CERT_RDN_ANY_TYPE 0
1372 #define CERT_RDN_ENCODED_BLOB 1
1373 #define CERT_RDN_OCTET_STRING 2
1374 #define CERT_RDN_NUMERIC_STRING 3
1375 #define CERT_RDN_PRINTABLE_STRING 4
1376 #define CERT_RDN_TELETEX_STRING 5
1377 #define CERT_RDN_T61_STRING 5
1378 #define CERT_RDN_VIDEOTEX_STRING 6
1379 #define CERT_RDN_IA5_STRING 7
1380 #define CERT_RDN_GRAPHIC_STRING 8
1381 #define CERT_RDN_VISIBLE_STRING 9
1382 #define CERT_RDN_ISO646_STRING 9
1383 #define CERT_RDN_GENERAL_STRING 10
1384 #define CERT_RDN_UNIVERSAL_STRING 11
1385 #define CERT_RDN_INT4_STRING 11
1386 #define CERT_RDN_BMP_STRING 12
1387 #define CERT_RDN_UNICODE_STRING 12
1388 #define CERT_RDN_UTF8_STRING 13
1390 /* CERT_RDN attribute dwValueType flags */
1391 #define CERT_RDN_FLAGS_MASK 0xff000000
1392 #define CERT_RDN_ENABLE_T61_UNICODE_FLAG 0x80000000
1393 #define CERT_RDN_DISABLE_CHECK_TYPE_FLAG 0x4000000
1394 #define CERT_RDN_ENABLE_UTF8_UNICODE_FLAG 0x2000000
1395 #define CERT_RDN_DISABLE_IE4_UTF8_FLAG 0x0100000
1397 #define IS_CERT_RDN_CHAR_STRING(x) \
1398 (((x) & CERT_RDN_TYPE_MASK) >= CERT_RDN_NUMERIC_STRING)
1400 /* CRL reason codes */
1401 #define CRL_REASON_UNSPECIFIED 0
1402 #define CRL_REASON_KEY_COMPROMISE 1
1403 #define CRL_REASON_CA_COMPROMISE 2
1404 #define CRL_REASON_AFFILIATION_CHANGED 3
1405 #define CRL_REASON_SUPERSEDED 4
1406 #define CRL_REASON_CESSATION_OF_OPERATION 5
1407 #define CRL_REASON_CERTIFICATE_HOLD 6
1408 #define CRL_REASON_REMOVE_FROM_CRL 8
1411 #define szOID_RSA "1.2.840.113549"
1412 #define szOID_PKCS "1.2.840.113549.1"
1413 #define szOID_RSA_HASH "1.2.840.113549.2"
1414 #define szOID_RSA_ENCRYPT "1.2.840.113549.3"
1415 #define szOID_PKCS_1 "1.2.840.113549.1.1"
1416 #define szOID_PKCS_2 "1.2.840.113549.1.2"
1417 #define szOID_PKCS_3 "1.2.840.113549.1.3"
1418 #define szOID_PKCS_4 "1.2.840.113549.1.4"
1419 #define szOID_PKCS_5 "1.2.840.113549.1.5"
1420 #define szOID_PKCS_6 "1.2.840.113549.1.6"
1421 #define szOID_PKCS_7 "1.2.840.113549.1.7"
1422 #define szOID_PKCS_8 "1.2.840.113549.1.8"
1423 #define szOID_PKCS_9 "1.2.840.113549.1.9"
1424 #define szOID_PKCS_10 "1.2.840.113549.1.10"
1425 #define szOID_PKCS_11 "1.2.840.113549.1.12"
1426 #define szOID_RSA_RSA "1.2.840.113549.1.1.1"
1427 #define CERT_RSA_PUBLIC_KEY_OBJID szOID_RSA_RSA
1428 #define CERT_DEFAULT_OID_PUBLIC_KEY_SIGN szOID_RSA_RSA
1429 #define CERT_DEFAULT_OID_PUBLIC_KEY_XCHG szOID_RSA_RSA
1430 #define szOID_RSA_MD2RSA "1.2.840.113549.1.1.2"
1431 #define szOID_RSA_MD4RSA "1.2.840.113549.1.1.3"
1432 #define szOID_RSA_MD5RSA "1.2.840.113549.1.1.4"
1433 #define szOID_RSA_SHA1RSA "1.2.840.113549.1.1.5"
1434 #define szOID_RSA_SET0AEP_RSA "1.2.840.113549.1.1.6"
1435 #define szOID_RSA_DH "1.2.840.113549.1.3.1"
1436 #define szOID_RSA_data "1.2.840.113549.1.7.1"
1437 #define szOID_RSA_signedData "1.2.840.113549.1.7.2"
1438 #define szOID_RSA_envelopedData "1.2.840.113549.1.7.3"
1439 #define szOID_RSA_signEnvData "1.2.840.113549.1.7.4"
1440 #define szOID_RSA_digestedData "1.2.840.113549.1.7.5"
1441 #define szOID_RSA_hashedData "1.2.840.113549.1.7.5"
1442 #define szOID_RSA_encryptedData "1.2.840.113549.1.7.6"
1443 #define szOID_RSA_emailAddr "1.2.840.113549.1.9.1"
1444 #define szOID_RSA_unstructName "1.2.840.113549.1.9.2"
1445 #define szOID_RSA_contentType "1.2.840.113549.1.9.3"
1446 #define szOID_RSA_messageDigest "1.2.840.113549.1.9.4"
1447 #define szOID_RSA_signingTime "1.2.840.113549.1.9.5"
1448 #define szOID_RSA_counterSign "1.2.840.113549.1.9.6"
1449 #define szOID_RSA_challengePwd "1.2.840.113549.1.9.7"
1450 #define szOID_RSA_unstructAddr "1.2.840.113549.1.9.9"
1451 #define szOID_RSA_extCertAttrs "1.2.840.113549.1.9.9"
1452 #define szOID_RSA_certExtensions "1.2.840.113549.1.9.14"
1453 #define szOID_RSA_SMIMECapabilities "1.2.840.113549.1.9.15"
1454 #define szOID_RSA_preferSignedData "1.2.840.113549.1.9.15.1"
1455 #define szOID_RSA_SMIMEalg "1.2.840.113549.1.9.16.3"
1456 #define szOID_RSA_SMIMEalgESDH "1.2.840.113549.1.9.16.3.5"
1457 #define szOID_RSA_SMIMEalgCMS3DESwrap "1.2.840.113549.1.9.16.3.6"
1458 #define szOID_RSA_SMIMEalgCMSRC2wrap "1.2.840.113549.1.9.16.3.7"
1459 #define szOID_RSA_MD2 "1.2.840.113549.2.2"
1460 #define szOID_RSA_MD4 "1.2.840.113549.2.4"
1461 #define szOID_RSA_MD5 "1.2.840.113549.2.5"
1462 #define szOID_RSA_RC2CBC "1.2.840.113549.3.2"
1463 #define szOID_RSA_RC4 "1.2.840.113549.3.4"
1464 #define szOID_RSA_DES_EDE3_CBC "1.2.840.113549.3.7"
1465 #define szOID_RSA_RC5_CBCPad "1.2.840.113549.3.9"
1466 #define szOID_ANSI_X942 "1.2.840.10046"
1467 #define szOID_ANSI_X942_DH "1.2.840.10046.2.1"
1468 #define szOID_X957 "1.2.840.10040"
1469 #define szOID_X957_DSA "1.2.840.10040.4.1"
1470 #define szOID_X957_SHA1DSA "1.2.840.10040.4.3"
1471 #define szOID_DS "2.5"
1472 #define szOID_DSALG "2.5.8"
1473 #define szOID_DSALG_CRPT "2.5.8.1"
1474 #define szOID_DSALG_HASH "2.5.8.2"
1475 #define szOID_DSALG_SIGN "2.5.8.3"
1476 #define szOID_DSALG_RSA "2.5.8.1.1"
1477 #define szOID_OIW "1.3.14"
1478 #define szOID_OIWSEC "1.3.14.3.2"
1479 #define szOID_OIWSEC_md4RSA "1.3.14.3.2.2"
1480 #define szOID_OIWSEC_md5RSA "1.3.14.3.2.3"
1481 #define szOID_OIWSEC_md4RSA2 "1.3.14.3.2.4"
1482 #define szOID_OIWSEC_desECB "1.3.14.3.2.6"
1483 #define szOID_OIWSEC_desCBC "1.3.14.3.2.7"
1484 #define szOID_OIWSEC_desOFB "1.3.14.3.2.8"
1485 #define szOID_OIWSEC_desCFB "1.3.14.3.2.9"
1486 #define szOID_OIWSEC_desMAC "1.3.14.3.2.10"
1487 #define szOID_OIWSEC_rsaSign "1.3.14.3.2.11"
1488 #define szOID_OIWSEC_dsa "1.3.14.3.2.12"
1489 #define szOID_OIWSEC_shaDSA "1.3.14.3.2.13"
1490 #define szOID_OIWSEC_mdc2RSA "1.3.14.3.2.14"
1491 #define szOID_OIWSEC_shaRSA "1.3.14.3.2.15"
1492 #define szOID_OIWSEC_dhCommMod "1.3.14.3.2.16"
1493 #define szOID_OIWSEC_desEDE "1.3.14.3.2.17"
1494 #define szOID_OIWSEC_sha "1.3.14.3.2.18"
1495 #define szOID_OIWSEC_mdc2 "1.3.14.3.2.19"
1496 #define szOID_OIWSEC_dsaComm "1.3.14.3.2.20"
1497 #define szOID_OIWSEC_dsaCommSHA "1.3.14.3.2.21"
1498 #define szOID_OIWSEC_rsaXchg "1.3.14.3.2.22"
1499 #define szOID_OIWSEC_keyHashSeal "1.3.14.3.2.23"
1500 #define szOID_OIWSEC_md2RSASign "1.3.14.3.2.24"
1501 #define szOID_OIWSEC_md5RSASign "1.3.14.3.2.25"
1502 #define szOID_OIWSEC_sha1 "1.3.14.3.2.26"
1503 #define szOID_OIWSEC_dsaSHA1 "1.3.14.3.2.27"
1504 #define szOID_OIWSEC_dsaCommSHA1 "1.3.14.3.2.28"
1505 #define szOID_OIWSEC_sha1RSASign "1.3.14.3.2.29"
1506 #define szOID_OIWDIR "1.3.14.7.2"
1507 #define szOID_OIWDIR_CRPT "1.3.14.7.2.1"
1508 #define szOID_OIWDIR_HASH "1.3.14.7.2.2"
1509 #define szOID_OIWDIR_SIGN "1.3.14.7.2.3"
1510 #define szOID_OIWDIR_md2 "1.3.14.7.2.2.1"
1511 #define szOID_OIWDIR_md2RSA "1.3.14.7.2.3.1"
1512 #define szOID_INFOSEC "2.16.840.1.101.2.1"
1513 #define szOID_INFOSEC_sdnsSignature "2.16.840.1.101.2.1.1.1"
1514 #define szOID_INFOSEC_mosaicSignature "2.16.840.1.101.2.1.1.2"
1515 #define szOID_INFOSEC_sdnsConfidentiality "2.16.840.1.101.2.1.1.3"
1516 #define szOID_INFOSEC_mosaicConfidentiality "2.16.840.1.101.2.1.1.4"
1517 #define szOID_INFOSEC_sdnsIntegrity "2.16.840.1.101.2.1.1.5"
1518 #define szOID_INFOSEC_mosaicIntegrity "2.16.840.1.101.2.1.1.6"
1519 #define szOID_INFOSEC_sdnsTokenProtection "2.16.840.1.101.2.1.1.7"
1520 #define szOID_INFOSEC_mosaicTokenProtection "2.16.840.1.101.2.1.1.8"
1521 #define szOID_INFOSEC_sdnsKeyManagement "2.16.840.1.101.2.1.1.9"
1522 #define szOID_INFOSEC_mosaicKeyManagement "2.16.840.1.101.2.1.1.10"
1523 #define szOID_INFOSEC_sdnsKMandSig "2.16.840.1.101.2.1.1.11"
1524 #define szOID_INFOSEC_mosaicKMandSig "2.16.840.1.101.2.1.1.12"
1525 #define szOID_INFOSEC_SuiteASignature "2.16.840.1.101.2.1.1.13"
1526 #define szOID_INFOSEC_SuiteAConfidentiality "2.16.840.1.101.2.1.1.14"
1527 #define szOID_INFOSEC_SuiteAIntegrity "2.16.840.1.101.2.1.1.15"
1528 #define szOID_INFOSEC_SuiteATokenProtection "2.16.840.1.101.2.1.1.16"
1529 #define szOID_INFOSEC_SuiteAKeyManagement "2.16.840.1.101.2.1.1.17"
1530 #define szOID_INFOSEC_SuiteAKMandSig "2.16.840.1.101.2.1.1.18"
1531 #define szOID_INFOSEC_mosaicUpdatedSig "2.16.840.1.101.2.1.1.19"
1532 #define szOID_INFOSEC_mosaicKMandUpdSig "2.16.840.1.101.2.1.1.20"
1533 #define szOID_INFOSEC_mosaicUpdateInteg "2.16.840.1.101.2.1.1.21"
1534 #define szOID_COMMON_NAME "2.5.4.3"
1535 #define szOID_SUR_NAME "2.5.4.4"
1536 #define szOID_DEVICE_SERIAL_NUMBER "2.5.4.5"
1537 #define szOID_COUNTRY_NAME "2.5.4.6"
1538 #define szOID_LOCALITY_NAME "2.5.4.7"
1539 #define szOID_STATE_OR_PROVINCE_NAME "2.5.4.8"
1540 #define szOID_STREET_ADDRESS "2.5.4.9"
1541 #define szOID_ORGANIZATION_NAME "2.5.4.10"
1542 #define szOID_ORGANIZATIONAL_UNIT_NAME "2.5.4.11"
1543 #define szOID_TITLE "2.5.4.12"
1544 #define szOID_DESCRIPTION "2.5.4.13"
1545 #define szOID_SEARCH_GUIDE "2.5.4.14"
1546 #define szOID_BUSINESS_CATEGORY "2.5.4.15"
1547 #define szOID_POSTAL_ADDRESS "2.5.4.16"
1548 #define szOID_POSTAL_CODE "2.5.4.17"
1549 #define szOID_POST_OFFICE_BOX "2.5.4.18"
1550 #define szOID_PHYSICAL_DELIVERY_OFFICE_NAME "2.5.4.19"
1551 #define szOID_TELEPHONE_NUMBER "2.5.4.20"
1552 #define szOID_TELEX_NUMBER "2.5.4.21"
1553 #define szOID_TELETEXT_TERMINAL_IDENTIFIER "2.5.4.22"
1554 #define szOID_FACSIMILE_TELEPHONE_NUMBER "2.5.4.23"
1555 #define szOID_X21_ADDRESS "2.5.4.24"
1556 #define szOID_INTERNATIONAL_ISDN_NUMBER "2.5.4.25"
1557 #define szOID_REGISTERED_ADDRESS "2.5.4.26"
1558 #define szOID_DESTINATION_INDICATOR "2.5.4.27"
1559 #define szOID_PREFERRED_DELIVERY_METHOD "2.5.4.28"
1560 #define szOID_PRESENTATION_ADDRESS "2.5.4.29"
1561 #define szOID_SUPPORTED_APPLICATION_CONTEXT "2.5.4.30"
1562 #define szOID_MEMBER "2.5.4.31"
1563 #define szOID_OWNER "2.5.4.32"
1564 #define szOID_ROLE_OCCUPANT "2.5.4.33"
1565 #define szOID_SEE_ALSO "2.5.4.34"
1566 #define szOID_USER_PASSWORD "2.5.4.35"
1567 #define szOID_USER_CERTIFICATE "2.5.4.36"
1568 #define szOID_CA_CERTIFICATE "2.5.4.37"
1569 #define szOID_AUTHORITY_REVOCATION_LIST "2.5.4.38"
1570 #define szOID_CERTIFICATE_REVOCATION_LIST "2.5.4.39"
1571 #define szOID_CROSS_CERTIFICATE_PAIR "2.5.4.40"
1572 #define szOID_GIVEN_NAME "2.5.4.42"
1573 #define szOID_INITIALS "2.5.4.43"
1574 #define szOID_DN_QUALIFIER "2.5.4.46"
1575 #define szOID_AUTHORITY_KEY_IDENTIFIER "2.5.29.1"
1576 #define szOID_KEY_ATTRIBUTES "2.5.29.2"
1577 #define szOID_CERT_POLICIES_95 "2.5.29.3"
1578 #define szOID_KEY_USAGE_RESTRICTION "2.5.29.4"
1579 #define szOID_LEGACY_POLICY_MAPPINGS "2.5.29.5"
1580 #define szOID_SUBJECT_ALT_NAME "2.5.29.7"
1581 #define szOID_ISSUER_ALT_NAME "2.5.29.8"
1582 #define szOID_SUBJECT_DIR_ATTRS "2.5.29.9"
1583 #define szOID_BASIC_CONSTRAINTS "2.5.29.10"
1584 #define szOID_SUBJECT_KEY_IDENTIFIER "2.5.29.14"
1585 #define szOID_KEY_USAGE "2.5.29.15"
1586 #define szOID_PRIVATEKEY_USAGE_PERIOD "2.5.29.16"
1587 #define szOID_SUBJECT_ALT_NAME2 "2.5.29.17"
1588 #define szOID_ISSUER_ALT_NAME2 "2.5.29.18"
1589 #define szOID_BASIC_CONSTRAINTS2 "2.5.29.19"
1590 #define szOID_CRL_NUMBER "2.5.29.20"
1591 #define szOID_CRL_REASON_CODE "2.5.29.21"
1592 #define szOID_REASON_CODE_HOLD "2.5.29.23"
1593 #define szOID_DELTA_CRL_INDICATOR "2.5.29.27"
1594 #define szOID_ISSUING_DIST_POINT "2.5.29.28"
1595 #define szOID_NAME_CONSTRAINTS "2.5.29.30"
1596 #define szOID_CRL_DIST_POINTS "2.5.29.31"
1597 #define szOID_CERT_POLICIES "2.5.29.32"
1598 #define szOID_ANY_CERT_POLICY "2.5.29.32.0"
1599 #define szOID_POLICY_MAPPINGS "2.5.29.33"
1600 #define szOID_AUTHORITY_KEY_IDENTIFIER2 "2.5.29.35"
1601 #define szOID_POLICY_CONSTRAINTS "2.5.29.36"
1602 #define szOID_ENHANCED_KEY_USAGE "2.5.29.37"
1603 #define szOID_FRESHEST_CRL "2.5.29.46"
1604 #define szOID_DOMAIN_COMPONENT "0.9.2342.19200300.100.1.25"
1605 #define szOID_PKCS_12_FRIENDLY_NAME_ATTR "1.2.840.113549.1.9.20"
1606 #define szOID_PKCS_12_LOCAL_KEY_ID "1.2.840.113549.1.9.21"
1607 #define szOID_CERT_EXTENSIONS "1.3.6.1.4.1.311.2.1.14"
1608 #define szOID_NEXT_UPDATE_LOCATION "1.3.6.1.4.1.311.10.2"
1609 #define szOID_REMOVE_CERTIFICATE "1.3.6.1.4.1.311.10.8.1"
1610 #define szOID_CROSS_CERT_DIST_POINTS "1.3.6.1.4.1.311.10.9.1"
1611 #define szOID_CTL "1.3.6.1.4.1.311.10.10.1"
1612 #define szOID_SORTED_CTL "1.3.6.1.4.1.311.10.10.1.1"
1613 #define szOID_ANY_APPLICATION_POLICY "1.3.6.1.4.1.311.10.12.1"
1614 #define szOID_RENEWAL_CERTIFICATE "1.3.6.1.4.1.311.13.1"
1615 #define szOID_ENROLLMENT_NAME_VALUE_PAIR "1.3.6.1.4.1.311.13.2.1"
1616 #define szOID_ENROLLMENT_CSP_PROVIDER "1.3.6.1.4.1.311.13.2.2"
1617 #define szOID_OS_VERSION "1.3.6.1.4.1.311.13.2.3"
1618 #define szOID_PKCS_12_KEY_PROVIDER_NAME_ATTR "1.3.6.1.4.1.311.17.1"
1619 #define szOID_LOCAL_MACHINE_KEYSET "1.3.6.1.4.1.311.17.2"
1620 #define szOID_AUTO_ENROLL_CTL_USAGE "1.3.6.1.4.1.311.20.1"
1621 #define szOID_ENROLL_CERTTYPE_EXTENSION "1.3.6.1.4.1.311.20.2"
1622 #define szOID_ENROLLMENT_AGENT "1.3.6.1.4.1.311.20.2.1"
1623 #define szOID_CERT_MANIFOLD "1.3.6.1.4.1.311.20.3"
1624 #define szOID_CERTSRV_PREVIOUS_CERT_HASH "1.3.6.1.4.1.311.21.2"
1625 #define szOID_CRL_VIRTUAL_BASE "1.3.6.1.4.1.311.21.3"
1626 #define szOID_CRL_NEXT_PUBLISH "1.3.6.1.4.1.311.21.4"
1627 #define szOID_KP_CA_EXCHANGE "1.3.6.1.4.1.311.21.5"
1628 #define szOID_KP_KEY_RECOVERY_AGENT "1.3.6.1.4.1.311.21.6"
1629 #define szOID_CERTIFICATE_TEMPLATE "1.3.6.1.4.1.311.21.7"
1630 #define szOID_ENTERPRISE_OID_ROOT "1.3.6.1.4.1.311.21.8"
1631 #define szOID_RDN_DUMMY_SIGNER "1.3.6.1.4.1.311.21.9"
1632 #define szOID_APPLICATION_CERT_POLICIES "1.3.6.1.4.1.311.21.10"
1633 #define szOID_APPLICATION_POLICY_MAPPINGS "1.3.6.1.4.1.311.21.11"
1634 #define szOID_APPLICATION_POLICY_CONSTRAINTS "1.3.6.1.4.1.311.21.12"
1635 #define szOID_ARCHIVED_KEY_ATTR "1.3.6.1.4.1.311.21.13"
1636 #define szOID_CRL_SELF_CDP "1.3.6.1.4.1.311.21.14"
1637 #define szOID_REQUIRE_CERT_CHAIN_POLICY "1.3.6.1.4.1.311.21.15"
1638 #define szOID_ARCHIVED_KEY_CERT_HASH "1.3.6.1.4.1.311.21.16"
1639 #define szOID_ISSUED_CERT_HASH "1.3.6.1.4.1.311.21.17"
1640 #define szOID_DS_EMAIL_REPLICATION "1.3.6.1.4.1.311.21.19"
1641 #define szOID_REQUEST_CLIENT_INFO "1.3.6.1.4.1.311.21.20"
1642 #define szOID_ENCRYPTED_KEY_HASH "1.3.6.1.4.1.311.21.21"
1643 #define szOID_CERTSRV_CROSSCA_VERSION "1.3.6.1.4.1.311.21.22"
1644 #define szOID_KEYID_RDN "1.3.6.1.4.1.311.10.7.1"
1645 #define szOID_PKIX "1.3.6.1.5.5.7"
1646 #define szOID_PKIX_PE "1.3.6.1.5.5.7.1"
1647 #define szOID_AUTHORITY_INFO_ACCESS "1.3.6.1.5.5.7.1.1"
1648 #define szOID_PKIX_POLICY_QUALIFIER_CPS "1.3.6.1.5.5.7.2.1"
1649 #define szOID_PKIX_POLICY_QUALIFIER_USERNOTICE "1.3.6.1.5.5.7.2.2"
1650 #define szOID_PKIX_KP "1.3.6.1.5.5.7.3"
1651 #define szOID_PKIX_KP_SERVER_AUTH "1.3.6.1.5.5.7.3.1"
1652 #define szOID_PKIX_KP_CLIENT_AUTH "1.3.6.1.5.5.7.3.2"
1653 #define szOID_PKIX_KP_CODE_SIGNING "1.3.6.1.5.5.7.3.3"
1654 #define szOID_PKIX_KP_EMAIL_PROTECTION "1.3.6.1.5.5.7.3.4"
1655 #define szOID_PKIX_KP_IPSEC_END_SYSTEM "1.3.6.1.5.5.7.3.5"
1656 #define szOID_PKIX_KP_IPSEC_TUNNEL "1.3.6.1.5.5.7.3.6"
1657 #define szOID_PKIX_KP_IPSEC_USER "1.3.6.1.5.5.7.3.7"
1658 #define szOID_PKIX_KP_TIMESTAMP_SIGNING "1.3.6.1.5.5.7.3.8"
1659 #define szOID_IPSEC_KP_IKE_INTERMEDIATE "1.3.6.1.5.5.8.2.2"
1661 #ifndef szOID_SERIALIZED
1662 #define szOID_SERIALIZED "1.3.6.1.4.1.311.10.3.3.1"
1665 #ifndef szOID_NT_PRINCIPAL_NAME
1666 #define szOID_NT_PRINCIPAL_NAME "1.3.6.1.4.1.311.20.2.3"
1669 #ifndef szOID_CERTSRV_CA_VERSION
1670 #define szOID_CERTSRV_CA_VERSION "1.3.6.1.4.1.311.21.1"
1673 #ifndef szOID_PRODUCT_UPDATE
1674 #define szOID_PRODUCT_UPDATE "1.3.6.1.4.1.311.31.1"
1677 #define CRYPT_ENCODE_DECODE_NONE 0
1678 #define X509_CERT ((LPCSTR)1)
1679 #define X509_CERT_TO_BE_SIGNED ((LPCSTR)2)
1680 #define X509_CERT_CRL_TO_BE_SIGNED ((LPCSTR)3)
1681 #define X509_CERT_REQUEST_TO_BE_SIGNED ((LPCSTR)4)
1682 #define X509_EXTENSIONS ((LPCSTR)5)
1683 #define X509_NAME_VALUE ((LPCSTR)6)
1684 #define X509_ANY_STRING X509_NAME_VALUE
1685 #define X509_NAME ((LPCSTR)7)
1686 #define X509_PUBLIC_KEY_INFO ((LPCSTR)8)
1687 #define X509_AUTHORITY_KEY_ID ((LPCSTR)9)
1688 #define X509_KEY_ATTRIBUTES ((LPCSTR)10)
1689 #define X509_KEY_USAGE_RESTRICTION ((LPCSTR)11)
1690 #define X509_ALTERNATE_NAME ((LPCSTR)12)
1691 #define X509_BASIC_CONSTRAINTS ((LPCSTR)13)
1692 #define X509_KEY_USAGE ((LPCSTR)14)
1693 #define X509_BASIC_CONSTRAINTS2 ((LPCSTR)15)
1694 #define X509_CERT_POLICIES ((LPCSTR)16)
1695 #define PKCS_UTC_TIME ((LPCSTR)17)
1696 #define PKCS_TIME_REQUEST ((LPCSTR)18)
1697 #define RSA_CSP_PUBLICKEYBLOB ((LPCSTR)19)
1698 #define X509_UNICODE_NAME ((LPCSTR)20)
1699 #define X509_KEYGEN_REQUEST_TO_BE_SIGNED ((LPCSTR)21)
1700 #define PKCS_ATTRIBUTE ((LPCSTR)22)
1701 #define PKCS_CONTENT_INFO_SEQUENCE_OF_ANY ((LPCSTR)23)
1702 #define X509_UNICODE_NAME_VALUE ((LPCSTR)24)
1703 #define X509_UNICODE_ANY_STRING X509_UNICODE_NAME_VALUE
1704 #define X509_OCTET_STRING ((LPCSTR)25)
1705 #define X509_BITS ((LPCSTR)26)
1706 #define X509_INTEGER ((LPCSTR)27)
1707 #define X509_MULTI_BYTE_INTEGER ((LPCSTR)28)
1708 #define X509_ENUMERATED ((LPCSTR)29)
1709 #define X509_CRL_REASON_CODE X509_ENUMERATED
1710 #define X509_CHOICE_OF_TIME ((LPCSTR)30)
1711 #define X509_AUTHORITY_KEY_ID2 ((LPCSTR)31)
1712 #define X509_AUTHORITY_INFO_ACCESS ((LPCSTR)32)
1713 #define PKCS_CONTENT_INFO ((LPCSTR)33)
1714 #define X509_SEQUENCE_OF_ANY ((LPCSTR)34)
1715 #define X509_CRL_DIST_POINTS ((LPCSTR)35)
1716 #define X509_ENHANCED_KEY_USAGE ((LPCSTR)36)
1717 #define PKCS_CTL ((LPCSTR)37)
1718 #define X509_MULTI_BYTE_UINT ((LPCSTR)38)
1719 #define X509_DSS_PUBLICKEY X509_MULTI_BYTE_UINT
1720 #define X509_DSS_PARAMETERS ((LPCSTR)39)
1721 #define X509_DSS_SIGNATURE ((LPCSTR)40)
1722 #define PKCS_RC2_CBC_PARAMETERS ((LPCSTR)41)
1723 #define PKCS_SMIME_CAPABILITIES ((LPCSTR)42)
1724 #define PKCS_RSA_PRIVATE_KEY ((LPCSTR)43)
1725 #define PKCS_PRIVATE_KEY_INFO ((LPCSTR)44)
1726 #define PKCS_ENCRYPTED_PRIVATE_KEY_INFO ((LPCSTR)45)
1727 #define X509_PKIX_POLICY_QUALIFIER_USERNOTICE ((LPCSTR)46)
1728 #define X509_DH_PUBLICKEY X509_MULTI_BYTE_UINT
1729 #define X509_DH_PARAMETERS ((LPCSTR)47)
1730 #define PKCS_ATTRIBUTES ((LPCSTR)48)
1731 #define PKCS_SORTED_CTL ((LPCSTR)49)
1732 #define X942_DH_PARAMETERS ((LPCSTR)50)
1733 #define X509_BITS_WITHOUT_TRAILING_ZEROES ((LPCSTR)51)
1734 #define X942_OTHER_INFO ((LPCSTR)52)
1735 #define X509_CERT_PAIR ((LPCSTR)53)
1736 #define X509_ISSUING_DIST_POINT ((LPCSTR)54)
1737 #define X509_NAME_CONSTRAINTS ((LPCSTR)55)
1738 #define X509_POLICY_MAPPINGS ((LPCSTR)56)
1739 #define X509_POLICY_CONSTRAINTS ((LPCSTR)57)
1740 #define X509_CROSS_CERT_DIST_POINTS ((LPCSTR)58)
1741 #define CMC_DATA ((LPCSTR)59)
1742 #define CMC_RESPONSE ((LPCSTR)60)
1743 #define CMC_STATUS ((LPCSTR)61)
1744 #define CMC_ADD_EXTENSIONS ((LPCSTR)62)
1745 #define CMC_ADD_ATTRIBUTES ((LPCSTR)63)
1746 #define X509_CERTIFICATE_TEMPLATE ((LPCSTR)64)
1747 #define PKCS7_SIGNER_INFO ((LPCSTR)500)
1748 #define CMS_SIGNER_INFO ((LPCSTR)501)
1750 /* encode/decode flags */
1751 #define CRYPT_ENCODE_NO_SIGNATURE_BYTE_REVERSAL_FLAG 0x00008
1752 #define CRYPT_ENCODE_ALLOC_FLAG 0x08000
1753 #define CRYPT_SORTED_CTL_ENCODE_HASHED_SUBJECT_IDENTIFIER_FLAG 0x10000
1754 #define CRYPT_UNICODE_NAME_ENCODE_ENABLE_T61_UNICODE_FLAG \
1755 CERT_RDN_ENABLE_T61_UNICODE_FLAG
1756 #define CRYPT_UNICODE_NAME_ENCODE_ENABLE_UTF8_UNICODE_FLAG \
1757 CERT_RDN_ENABLE_UTF8_UNICODE_FLAG
1758 #define CRYPT_UNICODE_NAME_ENCODE_DISABLE_CHECK_TYPE_FLAG \
1759 CERT_RDN_DISABLE_CHECK_TYPE_FLAG
1761 #define CRYPT_DECODE_NOCOPY_FLAG 0x00001
1762 #define CRYPT_DECODE_TO_BE_SIGNED_FLAG 0x00002
1763 #define CRYPT_DECODE_SHARE_OID_STRING_FLAG 0x00004
1764 #define CRYPT_DECODE_NO_SIGNATURE_BYTE_REVERSAL_FLAG 0x00008
1765 #define CRYPT_DECODE_ALLOC_FLAG 0x08000
1766 #define CRYPT_UNICODE_NAME_DECODE_DISABLE_IE4_UTF8_FLAG \
1767 CERT_RDN_DISABLE_IE4_UTF8_FLAG
1769 /* function declarations */
1771 BOOL WINAPI CryptAcquireContextA(HCRYPTPROV *phProv, LPCSTR pszContainer,
1772 LPCSTR pszProvider, DWORD dwProvType,
1774 BOOL WINAPI CryptAcquireContextW (HCRYPTPROV *phProv, LPCWSTR pszContainer,
1775 LPCWSTR pszProvider, DWORD dwProvType, DWORD dwFlags);
1776 #define CryptAcquireContext WINELIB_NAME_AW(CryptAcquireContext)
1777 BOOL WINAPI CryptGenRandom (HCRYPTPROV hProv, DWORD dwLen, BYTE *pbBuffer);
1778 BOOL WINAPI CryptContextAddRef (HCRYPTPROV hProv, DWORD *pdwReserved, DWORD dwFlags);
1779 BOOL WINAPI CryptCreateHash (HCRYPTPROV hProv, ALG_ID Algid, HCRYPTKEY hKey,
1780 DWORD dwFlags, HCRYPTHASH *phHash);
1781 BOOL WINAPI CryptDecrypt (HCRYPTKEY hKey, HCRYPTHASH hHash, BOOL Final,
1782 DWORD dwFlags, BYTE *pbData, DWORD *pdwDataLen);
1783 BOOL WINAPI CryptDeriveKey (HCRYPTPROV hProv, ALG_ID Algid, HCRYPTHASH hBaseData,
1784 DWORD dwFlags, HCRYPTKEY *phKey);
1785 BOOL WINAPI CryptDestroyHash (HCRYPTHASH hHash);
1786 BOOL WINAPI CryptDestroyKey (HCRYPTKEY hKey);
1787 BOOL WINAPI CryptDuplicateKey (HCRYPTKEY hKey, DWORD *pdwReserved, DWORD dwFlags, HCRYPTKEY *phKey);
1788 BOOL WINAPI CryptDuplicateHash (HCRYPTHASH hHash, DWORD *pdwReserved,
1789 DWORD dwFlags, HCRYPTHASH *phHash);
1790 BOOL WINAPI CryptEncrypt (HCRYPTKEY hKey, HCRYPTHASH hHash, BOOL Final,
1791 DWORD dwFlags, BYTE *pbData, DWORD *pdwDataLen, DWORD dwBufLen);
1792 BOOL WINAPI CryptEnumProvidersA (DWORD dwIndex, DWORD *pdwReserved,
1793 DWORD dwFlags, DWORD *pdwProvType, LPSTR pszProvName, DWORD *pcbProvName);
1794 BOOL WINAPI CryptEnumProvidersW (DWORD dwIndex, DWORD *pdwReserved,
1795 DWORD dwFlags, DWORD *pdwProvType, LPWSTR pszProvName, DWORD *pcbProvName);
1796 #define CryptEnumProviders WINELIB_NAME_AW(CryptEnumProviders)
1797 BOOL WINAPI CryptEnumProviderTypesA (DWORD dwIndex, DWORD *pdwReserved,
1798 DWORD dwFlags, DWORD *pdwProvType, LPSTR pszTypeName, DWORD *pcbTypeName);
1799 BOOL WINAPI CryptEnumProviderTypesW (DWORD dwIndex, DWORD *pdwReserved,
1800 DWORD dwFlags, DWORD *pdwProvType, LPWSTR pszTypeName, DWORD *pcbTypeName);
1801 #define CryptEnumProviderTypes WINELIB_NAME_AW(CryptEnumProviderTypes)
1802 BOOL WINAPI CryptExportKey (HCRYPTKEY hKey, HCRYPTKEY hExpKey, DWORD dwBlobType,
1803 DWORD dwFlags, BYTE *pbData, DWORD *pdwDataLen);
1804 BOOL WINAPI CryptGenKey (HCRYPTPROV hProv, ALG_ID Algid, DWORD dwFlags, HCRYPTKEY *phKey);
1805 BOOL WINAPI CryptGetKeyParam (HCRYPTKEY hKey, DWORD dwParam, BYTE *pbData,
1806 DWORD *pdwDataLen, DWORD dwFlags);
1807 BOOL WINAPI CryptGetHashParam (HCRYPTHASH hHash, DWORD dwParam, BYTE *pbData,
1808 DWORD *pdwDataLen, DWORD dwFlags);
1809 BOOL WINAPI CryptGetProvParam (HCRYPTPROV hProv, DWORD dwParam, BYTE *pbData,
1810 DWORD *pdwDataLen, DWORD dwFlags);
1811 BOOL WINAPI CryptGetDefaultProviderA (DWORD dwProvType, DWORD *pdwReserved,
1812 DWORD dwFlags, LPSTR pszProvName, DWORD *pcbProvName);
1813 BOOL WINAPI CryptGetDefaultProviderW (DWORD dwProvType, DWORD *pdwReserved,
1814 DWORD dwFlags, LPWSTR pszProvName, DWORD *pcbProvName);
1815 #define CryptGetDefaultProvider WINELIB_NAME_AW(CryptGetDefaultProvider)
1816 BOOL WINAPI CryptGetUserKey (HCRYPTPROV hProv, DWORD dwKeySpec, HCRYPTKEY *phUserKey);
1817 BOOL WINAPI CryptHashData (HCRYPTHASH hHash, const BYTE *pbData, DWORD dwDataLen, DWORD dwFlags);
1818 BOOL WINAPI CryptHashSessionKey (HCRYPTHASH hHash, HCRYPTKEY hKey, DWORD dwFlags);
1819 BOOL WINAPI CryptImportKey (HCRYPTPROV hProv, BYTE *pbData, DWORD dwDataLen,
1820 HCRYPTKEY hPubKey, DWORD dwFlags, HCRYPTKEY *phKey);
1821 BOOL WINAPI CryptReleaseContext (HCRYPTPROV hProv, DWORD dwFlags);
1822 BOOL WINAPI CryptSetHashParam (HCRYPTHASH hHash, DWORD dwParam, BYTE *pbData, DWORD dwFlags);
1823 BOOL WINAPI CryptSetKeyParam (HCRYPTKEY hKey, DWORD dwParam, BYTE *pbData, DWORD dwFlags);
1824 BOOL WINAPI CryptSetProviderA (LPCSTR pszProvName, DWORD dwProvType);
1825 BOOL WINAPI CryptSetProviderW (LPCWSTR pszProvName, DWORD dwProvType);
1826 #define CryptSetProvider WINELIB_NAME_AW(CryptSetProvider)
1827 BOOL WINAPI CryptSetProviderExA (LPCSTR pszProvName, DWORD dwProvType, DWORD *pdwReserved, DWORD dwFlags);
1828 BOOL WINAPI CryptSetProviderExW (LPCWSTR pszProvName, DWORD dwProvType, DWORD *pdwReserved, DWORD dwFlags);
1829 #define CryptSetProviderEx WINELIB_NAME_AW(CryptSetProviderEx)
1830 BOOL WINAPI CryptSetProvParam (HCRYPTPROV hProv, DWORD dwParam, BYTE *pbData, DWORD dwFlags);
1831 BOOL WINAPI CryptSignHashA (HCRYPTHASH hHash, DWORD dwKeySpec, LPCSTR sDescription,
1832 DWORD dwFlags, BYTE *pbSignature, DWORD *pdwSigLen);
1833 BOOL WINAPI CryptSignHashW (HCRYPTHASH hHash, DWORD dwKeySpec, LPCWSTR sDescription,
1834 DWORD dwFlags, BYTE *pbSignature, DWORD *pdwSigLen);
1835 #define CryptSignHash WINELIB_NAME_AW(CryptSignHash)
1836 BOOL WINAPI CryptVerifySignatureA (HCRYPTHASH hHash, BYTE *pbSignature, DWORD dwSigLen,
1837 HCRYPTKEY hPubKey, LPCSTR sDescription, DWORD dwFlags);
1838 BOOL WINAPI CryptVerifySignatureW (HCRYPTHASH hHash, BYTE *pbSignature, DWORD dwSigLen,
1839 HCRYPTKEY hPubKey, LPCWSTR sDescription, DWORD dwFlags);
1840 #define CryptVerifySignature WINELIB_NAME_AW(CryptVerifySignature)
1842 /* crypt32.dll functions */
1843 BOOL WINAPI CryptRegisterOIDFunction(DWORD,LPCSTR,LPCSTR,LPCWSTR,LPCSTR);
1844 BOOL WINAPI CryptGetOIDFunctionValue(DWORD dwEncodingType, LPCSTR pszFuncName,
1845 LPCSTR pszOID, LPCWSTR szValueName, DWORD *pdwValueType,
1846 BYTE *pbValueData, DWORD *pcbValueData);
1847 BOOL WINAPI CryptSetOIDFunctionValue(DWORD dwEncodingType, LPCSTR pszFuncName,
1848 LPCSTR pszOID, LPCWSTR pwszValueName, DWORD dwValueType,
1849 const BYTE *pbValueData, DWORD cbValueData);
1850 BOOL WINAPI CryptUnregisterOIDFunction(DWORD,LPCSTR,LPCSTR);
1852 LPCSTR WINAPI CertAlgIdToOID(DWORD dwAlgId);
1853 DWORD WINAPI CertOIDToAlgId(LPCSTR pszObjId);
1855 /* cert store functions */
1856 HCERTSTORE WINAPI CertOpenStore(LPCSTR lpszStoreProvider, DWORD dwEncodingType,
1857 HCRYPTPROV hCryptProv, DWORD dwFlags, const void *pvPara);
1859 HCERTSTORE WINAPI CertOpenSystemStoreA(HCRYPTPROV hProv,
1860 LPCSTR szSubSystemProtocol);
1861 HCERTSTORE WINAPI CertOpenSystemStoreW(HCRYPTPROV hProv,
1862 LPCWSTR szSubSystemProtocol);
1863 #define CertOpenSystemStore WINELIB_NAME_AW(CertOpenSystemStore)
1865 PCCERT_CONTEXT WINAPI CertEnumCertificatesInStore(HCERTSTORE hCertStore, PCCERT_CONTEXT pPrev);
1867 BOOL WINAPI CertEnumSystemStoreLocation(DWORD dwFlags, void *pvArg,
1868 PFN_CERT_ENUM_SYSTEM_STORE_LOCATION pfnEnum);
1870 BOOL WINAPI CertEnumSystemStore(DWORD dwFlags, void *pvSystemStoreLocationPara,
1871 void *pvArg, PFN_CERT_ENUM_SYSTEM_STORE pfnEnum);
1873 BOOL WINAPI CertEnumPhysicalStore(const void *pvSystemStore, DWORD dwFlags,
1874 void *pvArg, PFN_CERT_ENUM_PHYSICAL_STORE pfnEnum);
1876 BOOL WINAPI CertSaveStore(HCERTSTORE hCertStore, DWORD dwMsgAndCertEncodingType,
1877 DWORD dwSaveAs, DWORD dwSaveTo, void* pvSaveToPara, DWORD dwFlags);
1879 PCCRL_CONTEXT WINAPI CertCreateCRLContext( DWORD dwCertEncodingType,
1880 const BYTE* pbCrlEncoded, DWORD cbCrlEncoded);
1882 BOOL WINAPI CertAddStoreToCollection(HCERTSTORE hCollectionStore,
1883 HCERTSTORE hSiblingStore, DWORD dwUpdateFlags, DWORD dwPriority);
1885 void WINAPI CertRemoveStoreFromCollection(HCERTSTORE hCollectionStore,
1886 HCERTSTORE hSiblingStore);
1888 PCCERT_CHAIN_CONTEXT WINAPI CertFindChainInStore(HCERTSTORE hCertStore,
1889 DWORD dwCertEncodingType, DWORD dwFindFlags, DWORD dwFindType,
1890 const void *pvFindPara, PCCERT_CHAIN_CONTEXT pPrevChainContext);
1892 BOOL WINAPI CertVerifyCertificateChainPolicy(LPCSTR szPolicyOID,
1893 PCCERT_CHAIN_CONTEXT pChainContext, PCERT_CHAIN_POLICY_PARA pPolicyPara,
1894 PCERT_CHAIN_POLICY_STATUS pPolicyStatus);
1896 BOOL WINAPI CertCloseStore( HCERTSTORE hCertStore, DWORD dwFlags );
1898 BOOL WINAPI CertFreeCertificateContext( PCCERT_CONTEXT pCertContext );
1900 BOOL WINAPI CertFreeCRLContext( PCCRL_CONTEXT pCrlContext );
1902 BOOL WINAPI CertAddCRLContextToStore( HCERTSTORE hCertStore,
1903 PCCRL_CONTEXT pCrlContext, DWORD dwAddDisposition,
1904 PCCRL_CONTEXT *ppStoreContext );
1906 PCCERT_CONTEXT WINAPI CertFindCertificateInStore( HCERTSTORE hCertStore,
1907 DWORD dwCertEncodingType, DWORD dwFindFlags, DWORD dwFindType,
1908 const void *pvFindPara, PCCERT_CONTEXT pPrevCertContext );
1910 BOOL WINAPI CryptEncodeObject(DWORD dwCertEncodingType, LPCSTR lpszStructType,
1911 const void *pvStructInfo, BYTE *pbEncoded, DWORD *pcbEncoded);
1912 BOOL WINAPI CryptEncodeObjectEx(DWORD dwCertEncodingType, LPCSTR lpszStructType,
1913 const void *pvStructInfo, DWORD dwFlags, PCRYPT_ENCODE_PARA pEncodePara,
1914 void *pvEncoded, DWORD *pcbEncoded);
1916 BOOL WINAPI CryptDecodeObject(DWORD dwCertEncodingType, LPCSTR lpszStructType,
1917 const BYTE *pbEncoded, DWORD cbEncoded, DWORD dwFlags, void *pvStructInfo,
1918 DWORD *pcbStructInfo);
1919 BOOL WINAPI CryptDecodeObjectEx(DWORD dwCertEncodingType, LPCSTR lpszStructType,
1920 const BYTE *pbEncoded, DWORD cbEncoded, DWORD dwFlags,
1921 PCRYPT_DECODE_PARA pDecodePara, void *pvStructInfo, DWORD *pcbStructInfo);
1923 PCRYPT_ATTRIBUTE WINAPI CertFindAttribute(LPCSTR pszObjId, DWORD cAttr,
1924 CRYPT_ATTRIBUTE rgAttr[]);
1925 PCERT_EXTENSION WINAPI CertFindExtension(LPCSTR pszObjId, DWORD cExtensions,
1926 CERT_EXTENSION rgExtensions[]);
1927 PCERT_RDN_ATTR WINAPI CertFindRDNAttr(LPCSTR pszObjId, PCERT_NAME_INFO pName);
1929 LONG WINAPI CertVerifyTimeValidity(LPFILETIME pTimeToVerify,
1930 PCERT_INFO pCertInfo);
1932 BOOL WINAPI CryptProtectData( DATA_BLOB* pDataIn, LPCWSTR szDataDescr,
1933 DATA_BLOB* pOptionalEntropy, PVOID pvReserved,
1934 CRYPTPROTECT_PROMPTSTRUCT* pPromptStruct, DWORD dwFlags, DATA_BLOB* pDataOut );
1936 BOOL WINAPI CryptUnprotectData( DATA_BLOB* pDataIn, LPWSTR* ppszDataDescr,
1937 DATA_BLOB* pOptionalEntropy, PVOID pvReserved,
1938 CRYPTPROTECT_PROMPTSTRUCT* pPromptStruct, DWORD dwFlags, DATA_BLOB* pDataOut );