wintrust: In recent SDKs, WinVerifyTrust()'s last parameter is a void pointer.
[wine] / include / wincrypt.h
1 /*
2  * Copyright (C) 2002 Travis Michielsen
3  * Copyright (C) 2004-2005 Juan Lang
4  *
5  * This library is free software; you can redistribute it and/or
6  * modify it under the terms of the GNU Lesser General Public
7  * License as published by the Free Software Foundation; either
8  * version 2.1 of the License, or (at your option) any later version.
9  *
10  * This library is distributed in the hope that it will be useful,
11  * but WITHOUT ANY WARRANTY; without even the implied warranty of
12  * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the GNU
13  * Lesser General Public License for more details.
14  *
15  * You should have received a copy of the GNU Lesser General Public
16  * License along with this library; if not, write to the Free Software
17  * Foundation, Inc., 51 Franklin St, Fifth Floor, Boston, MA 02110-1301, USA
18  */
19
20 #ifndef __WINE_WINCRYPT_H
21 #define __WINE_WINCRYPT_H
22
23 #ifdef __cplusplus
24 extern "C" {
25 #endif
26
27 /* some typedefs for function parameters */
28 typedef unsigned int ALG_ID;
29 typedef unsigned long HCRYPTPROV;
30 typedef unsigned long HCRYPTKEY;
31 typedef unsigned long HCRYPTHASH;
32 typedef void *HCERTSTORE;
33 typedef void *HCRYPTMSG;
34 typedef void *HCERTSTOREPROV;
35 typedef void *HCRYPTOIDFUNCSET;
36 typedef void *HCRYPTOIDFUNCADDR;
37
38 /* CSP Structs */
39
40 typedef struct _PROV_ENUMALGS {
41   ALG_ID aiAlgid;
42   DWORD  dwBitLen;
43   DWORD  dwNameLen;
44   CHAR   szName[20];
45 } PROV_ENUMALGS;
46
47 typedef struct _PROV_ENUMALGS_EX {
48   ALG_ID aiAlgid;
49   DWORD  dwDefaultLen;
50   DWORD  dwMinLen;
51   DWORD  dwMaxLen;
52   DWORD  dwProtocols;
53   DWORD  dwNameLen;
54   CHAR   szName[20];
55   DWORD  dwLongNameLen;
56   CHAR   szLongName[40];
57 } PROV_ENUMALGS_EX;
58
59 #define SCHANNEL_MAC_KEY 0
60 #define SCHANNEL_ENC_KEY 1
61
62 typedef struct _SCHANNEL_ALG {
63   DWORD  dwUse;
64   ALG_ID Algid;
65   DWORD  cBits;
66   DWORD  dwFlags;
67   DWORD  dwReserved;
68 } SCHANNEL_ALG, *PSCHANNEL_ALG;
69
70 typedef struct _HMAC_INFO {
71   ALG_ID HashAlgid;
72   BYTE*  pbInnerString;
73   DWORD  cbInnerString;
74   BYTE*  pbOuterString;
75   DWORD  cbOuterString;
76 } HMAC_INFO, *PHMAC_INFO;
77                 
78 typedef struct _CRYPTOAPI_BLOB {
79   DWORD    cbData;
80   BYTE*    pbData;
81 } CRYPT_INTEGER_BLOB,  *PCRYPT_INTEGER_BLOB,
82   CRYPT_UINT_BLOB,     *PCRYPT_UINT_BLOB,
83   CRYPT_OBJID_BLOB,    *PCRYPT_OBJID_BLOB,
84   CERT_NAME_BLOB,      *PCERT_NAME_BLOB,
85   CERT_RDN_VALUE_BLOB, *PCERT_RDN_VALUE_BLOB,
86   CERT_BLOB,           *PCERT_BLOB,
87   CRL_BLOB,            *PCRL_BLOB,
88   DATA_BLOB,           *PDATA_BLOB,
89   CRYPT_DATA_BLOB,     *PCRYPT_DATA_BLOB,
90   CRYPT_HASH_BLOB,     *PCRYPT_HASH_BLOB,
91   CRYPT_DIGEST_BLOB,   *PCRYPT_DIGEST_BLOB,
92   CRYPT_DER_BLOB,      *PCRYPT_DER_BLOB,
93   CRYPT_ATTR_BLOB,     *PCRYPT_ATTR_BLOB;
94
95 typedef struct _CRYPTPROTECT_PROMPTSTRUCT{
96   DWORD   cbSize;
97   DWORD   dwPromptFlags;
98   HWND    hwndApp;
99   LPCWSTR szPrompt;
100 } CRYPTPROTECT_PROMPTSTRUCT, *PCRYPTPROTECT_PROMPTSTRUCT;
101
102 typedef struct _CRYPT_ALGORITHM_IDENTIFIER {
103   LPSTR            pszObjId;
104   CRYPT_OBJID_BLOB Parameters;
105 } CRYPT_ALGORITHM_IDENTIFIER, *PCRYPT_ALGORITHM_IDENTIFIER;
106
107 typedef struct _CRYPT_ATTRIBUTE_TYPE_VALUE {
108   LPSTR               pszObjId;
109   CRYPT_OBJID_BLOB    Value;
110 } CRYPT_ATTRIBUTE_TYPE_VALUE, *PCRYPT_ATTRIBUTE_TYPE_VALUE;
111
112 typedef struct _PUBLICKEYSTRUC {
113     BYTE   bType;
114     BYTE   bVersion;
115     WORD   reserved;
116     ALG_ID aiKeyAlg;
117 } BLOBHEADER, PUBLICKEYSTRUC;
118
119 typedef struct _RSAPUBKEY {
120     DWORD   magic;
121     DWORD   bitlen;
122     DWORD   pubexp;
123 } RSAPUBKEY;
124
125 typedef struct _CRYPT_BIT_BLOB {
126     DWORD cbData;
127     BYTE  *pbData;
128     DWORD cUnusedBits;
129 } CRYPT_BIT_BLOB, *PCRYPT_BIT_BLOB;
130
131 typedef struct _CRYPT_KEY_PROV_PARAM {
132     DWORD dwParam;
133     BYTE *pbData;
134     DWORD cbData;
135     DWORD dwFlags;
136 } CRYPT_KEY_PROV_PARAM, *PCRYPT_KEY_PROV_PARAM;
137
138 typedef struct _CRYPT_KEY_PROV_INFO {
139     LPWSTR                pwszContainerName;
140     LPWSTR                pwszProvName;
141     DWORD                 dwProvType;
142     DWORD                 dwFlags;
143     DWORD                 cProvParam;
144     PCRYPT_KEY_PROV_PARAM rgProvParam;
145     DWORD                 dwKeySpec;
146 } CRYPT_KEY_PROV_INFO, *PCRYPT_KEY_PROV_INFO;
147
148 typedef struct _CERT_KEY_CONTEXT {
149     DWORD      cbSize;
150     HCRYPTPROV hCryptProv;
151     DWORD      dwKeySpec;
152 } CERT_KEY_CONTEXT, *PCERT_KEY_CONTEXT;
153
154 typedef struct _CERT_PUBLIC_KEY_INFO {
155     CRYPT_ALGORITHM_IDENTIFIER Algorithm;
156     CRYPT_BIT_BLOB             PublicKey;
157 } CERT_PUBLIC_KEY_INFO, *PCERT_PUBLIC_KEY_INFO;
158
159 typedef struct _CERT_EXTENSION {
160     LPSTR               pszObjId;
161     BOOL                fCritical;
162     CRYPT_OBJID_BLOB    Value;
163 } CERT_EXTENSION, *PCERT_EXTENSION;
164
165 typedef struct _CERT_EXTENSIONS {
166     DWORD           cExtension;
167     PCERT_EXTENSION rgExtension;
168 } CERT_EXTENSIONS, *PCERT_EXTENSIONS;
169
170 typedef struct _CERT_INFO {
171     DWORD                      dwVersion;
172     CRYPT_INTEGER_BLOB         SerialNumber;
173     CRYPT_ALGORITHM_IDENTIFIER SignatureAlgorithm;
174     CERT_NAME_BLOB             Issuer;
175     FILETIME                   NotBefore;
176     FILETIME                   NotAfter;
177     CERT_NAME_BLOB             Subject;
178     CERT_PUBLIC_KEY_INFO       SubjectPublicKeyInfo;
179     CRYPT_BIT_BLOB             IssuerUniqueId;
180     CRYPT_BIT_BLOB             SubjectUniqueId;
181     DWORD                      cExtension;
182     PCERT_EXTENSION            rgExtension;
183 } CERT_INFO, *PCERT_INFO;
184
185 typedef struct _CERT_RDN_ATTR {
186     LPSTR               pszObjId;
187     DWORD               dwValueType;
188     CERT_RDN_VALUE_BLOB Value;
189 } CERT_RDN_ATTR, *PCERT_RDN_ATTR;
190
191 typedef struct _CERT_RDN {
192     DWORD          cRDNAttr;
193     PCERT_RDN_ATTR rgRDNAttr;
194 } CERT_RDN, *PCERT_RDN;
195
196 typedef struct _CERT_NAME_INFO {
197     DWORD     cRDN;
198     PCERT_RDN rgRDN;
199 } CERT_NAME_INFO, *PCERT_NAME_INFO;
200
201 typedef struct _CERT_NAME_VALUE {
202     DWORD               dwValueType;
203     CERT_RDN_VALUE_BLOB Value;
204 } CERT_NAME_VALUE, *PCERT_NAME_VALUE;
205
206 typedef struct _CERT_ENCRYPTED_PRIVATE_KEY_INFO {
207     CRYPT_ALGORITHM_IDENTIFIER EncryptionAlgorithm;
208     CRYPT_DATA_BLOB            EncryptedPrivateKey;
209 } CERT_ENCRYPTED_PRIVATE_KEY_INFO, *PCERT_ENCRYPTED_PRIVATE_KEY_INFO;
210
211 typedef struct _CERT_AUTHORITY_KEY_ID_INFO {
212     CRYPT_DATA_BLOB    KeyId;
213     CERT_NAME_BLOB     CertIssuer;
214     CRYPT_INTEGER_BLOB CertSerialNumber;
215 } CERT_AUTHORITY_KEY_ID_INFO, *PCERT_AUTHORITY_KEY_ID_INFO;
216
217 typedef struct _CERT_PRIVATE_KEY_VALIDITY {
218     FILETIME NotBefore;
219     FILETIME NotAfter;
220 } CERT_PRIVATE_KEY_VALIDITY, *PCERT_PRIVATE_KEY_VALIDITY;
221
222 typedef struct _CERT_KEY_ATTRIBUTES_INFO {
223     CRYPT_DATA_BLOB            KeyId;
224     CRYPT_BIT_BLOB             IntendedKeyUsage;
225     PCERT_PRIVATE_KEY_VALIDITY pPrivateKeyUsagePeriod;
226 } CERT_KEY_ATTRIBUTES_INFO, *PCERT_KEY_ATTRIBUTES_INFO;
227
228 /* byte 0 */
229 #define CERT_DIGITAL_SIGNATURE_KEY_USAGE 0x80
230 #define CERT_NON_REPUDIATION_KEY_USAGE   0x40
231 #define CERT_KEY_ENCIPHERMENT_KEY_USAGE  0x20
232 #define CERT_DATA_ENCIPHERMENT_KEY_USAGE 0x10
233 #define CERT_KEY_AGREEMENT_KEY_USAGE     0x80
234 #define CERT_KEY_CERT_SIGN_KEY_USAGE     0x40
235 #define CERT_OFFLINE_CRL_SIGN_KEY_USAGE  0x20
236 #define CERT_CRL_SIGN_KEY_USAGE          0x10
237 #define CERT_ENCIPHER_ONLY_KEY_USAGE     0x01
238 /* byte 1 */
239 #define CERT_DECIPHER_ONLY_KEY_USAGE     0x80
240
241 typedef struct _CERT_POLICY_ID {
242     DWORD  cCertPolicyElementId;
243     LPSTR *rgbszCertPolicyElementId;
244 } CERT_POLICY_ID, *PCERT_POLICY_ID;
245
246 typedef struct _CERT_KEY_USAGE_RESTRICTION_INFO {
247     DWORD           cCertPolicyId;
248     PCERT_POLICY_ID rgCertPolicyId;
249     CRYPT_BIT_BLOB  RestrictedKeyUsage;
250 } CERT_KEY_USAGE_RESTRICTION_INFO, *PCERT_KEY_USAGE_RESTRICTION_INFO;
251
252 typedef struct _CERT_OTHER_NAME {
253     LPSTR            pszObjId;
254     CRYPT_OBJID_BLOB Value;
255 } CERT_OTHER_NAME, *PCERT_OTHER_NAME;
256
257 typedef struct _CERT_ALT_NAME_ENTRY {
258     DWORD dwAltNameChoice;
259     union {
260         PCERT_OTHER_NAME pOtherName;
261         LPWSTR           pwszRfc822Name;
262         LPWSTR           pwszDNSName;
263         CERT_NAME_BLOB   DirectoryName;
264         LPWSTR           pwszURL;
265         CRYPT_DATA_BLOB  IPAddress;
266         LPSTR            pszRegisteredID;
267     } DUMMYUNIONNAME;
268 } CERT_ALT_NAME_ENTRY, *PCERT_ALT_NAME_ENTRY;
269
270 #define CERT_ALT_NAME_OTHER_NAME     1
271 #define CERT_ALT_NAME_RFC822_NAME    2
272 #define CERT_ALT_NAME_DNS_NAME       3
273 #define CERT_ALT_NAME_X400_ADDRESS   4
274 #define CERT_ALT_NAME_DIRECTORY_NAME 5
275 #define CERT_ALT_NAME_EDI_PARTY_NAME 6
276 #define CERT_ALT_NAME_URL            7
277 #define CERT_ALT_NAME_IP_ADDRESS     8
278 #define CERT_ALT_NAME_REGISTERED_ID  9
279
280 typedef struct _CERT_ALT_NAME_INFO {
281     DWORD                cAltEntry;
282     PCERT_ALT_NAME_ENTRY rgAltEntry;
283 } CERT_ALT_NAME_INFO, *PCERT_ALT_NAME_INFO;
284
285 #define CERT_ALT_NAME_ENTRY_ERR_INDEX_MASK  0xff
286 #define CERT_ALT_NAME_ENTRY_ERR_INDEX_SHIFT 16
287 #define CERT_ALT_NAME_VALUE_ERR_INDEX_MASK  0x0000ffff
288 #define CERT_ALT_NAME_VALUE_ERR_INDEX_SHIFT 0
289 #define GET_CERT_ALT_NAME_ENTRY_ERR_INDEX(x) \
290  (((x) >> CERT_ALT_NAME_ENTRY_ERR_INDEX_SHIFT) & \
291   CERT_ALT_NAME_ENTRY_ERR_INDEX_MASK)
292 #define GET_CERT_ALT_NAME_VALUE_ERR_INDEX(x) \
293  ((x) & CERT_ALT_NAME_VALUE_ERR_INDEX_MASK)
294
295 typedef struct _CERT_BASIC_CONSTRAINTS_INFO {
296     CRYPT_BIT_BLOB  SubjectType;
297     BOOL            fPathLenConstraint;
298     DWORD           dwPathLenConstraint;
299     DWORD           cSubtreesConstraint;
300     CERT_NAME_BLOB *rgSubtreesConstraint;
301 } CERT_BASIC_CONSTRAINTS_INFO, *PCERT_BASIC_CONSTRAINTS_INFO;
302
303 #define CERT_CA_SUBJECT_FLAG         0x80
304 #define CERT_END_ENTITY_SUBJECT_FLAG 0x40
305
306 typedef struct _CERT_BASIC_CONSTRAINTS2_INFO {
307     BOOL  fCA;
308     BOOL  fPathLenConstraint;
309     DWORD dwPathLenConstraint;
310 } CERT_BASIC_CONSTRAINTS2_INFO, *PCERT_BASIC_CONSTRAINTS2_INFO;
311
312 typedef struct _CERT_POLICY_QUALIFIER_INFO {
313     LPSTR            pszPolicyQualifierId;
314     CRYPT_OBJID_BLOB Qualifier;
315 } CERT_POLICY_QUALIFIER_INFO, *PCERT_POLICY_QUALIFIER_INFO;
316
317 typedef struct _CERT_POLICY_INFO {
318     LPSTR                       pszPolicyIdentifier;
319     DWORD                       cPolicyQualifier;
320     CERT_POLICY_QUALIFIER_INFO *rgPolicyQualifier;
321 } CERT_POLICY_INFO, *PCERT_POLICY_INFO;
322
323 typedef struct _CERT_POLICIES_INFO {
324     DWORD             cPolicyInfo;
325     CERT_POLICY_INFO *rgPolicyInfo;
326 } CERT_POLICIES_INFO, *PCERT_POLICIES_INFO;
327
328 typedef struct _CERT_POLICY_QUALIFIER_NOTICE_REFERENCE {
329     LPSTR pszOrganization;
330     DWORD cNoticeNumbers;
331     int  *rgNoticeNumbers;
332 } CERT_POLICY_QUALIFIER_NOTICE_REFERENCE,
333  *PCERT_POLICY_QUALIFIER_NOTICE_REFERENCE;
334
335 typedef struct _CERT_POLICY_QUALIFIER_USER_NOTICE {
336     CERT_POLICY_QUALIFIER_NOTICE_REFERENCE *pNoticeReference;
337     LPWSTR                                  pszDisplayText;
338 } CERT_POLICY_QUALIFIER_USER_NOTICE, *PCERT_POLICY_QUALIFIER_USER_NOTICE;
339
340 typedef struct _CPS_URLS {
341     LPWSTR                      pszURL;
342     CRYPT_ALGORITHM_IDENTIFIER *pAlgorithm;
343     CRYPT_DATA_BLOB            *pDigest;
344 } CPS_URLS, *PCPS_URLS;
345
346 typedef struct _CERT_POLICY95_QUALIFIER1 {
347     LPWSTR    pszPracticesReference;
348     LPSTR     pszNoticeIdentifier;
349     LPSTR     pszNSINoticeIdentifier;
350     DWORD     cCPSURLs;
351     CPS_URLS *rgCPSURLs;
352 } CERT_POLICY95_QUALIFIER1, *PCERT_POLICY95_QUALIFIER1;
353
354 typedef struct _CERT_POLICY_MAPPING {
355     LPSTR pszIssuerDomainPolicy;
356     LPSTR pszSubjectDomainPolicy;
357 } CERT_POLICY_MAPPING, *PCERT_POLICY_MAPPING;
358
359 typedef struct _CERT_POLICY_MAPPINGS_INFO {
360     DWORD                cPolicyMapping;
361     PCERT_POLICY_MAPPING rgPolicyMapping;
362 } CERT_POLICY_MAPPINGS_INFO, *PCERT_POLICY_MAPPINGS_INFO;
363
364 typedef struct _CERT_POLICY_CONSTRAINTS_INFO {
365     BOOL  fRequireExplicitPolicy;
366     DWORD dwRequireExplicitPolicySkipCerts;
367     BOOL  fInhibitPolicyMapping;
368     DWORD dwInhibitPolicyMappingSkipCerts;
369 } CERT_POLICY_CONSTRAINTS_INFO, *PCERT_POLICY_CONSTRAINTS_INFO;
370
371 typedef struct _CRYPT_CONTENT_INFO_SEQUENCE_OF_ANY {
372     LPSTR           pszObjId;
373     DWORD           cValue;
374     PCRYPT_DER_BLOB rgValue;
375 } CRYPT_CONTENT_INFO_SEQUENCE_OF_ANY, *PCRYPT_CONTENT_INFO_SEQUENCE_OF_ANY;
376
377 typedef struct _CRYPT_CONTENT_INFO {
378     LPSTR          pszObjId;
379     CRYPT_DER_BLOB Content;
380 } CRYPT_CONTENT_INFO, *PCRYPT_CONTENT_INFO;
381
382 typedef struct _CRYPT_SEQUENCE_OF_ANY {
383     DWORD           cValue;
384     PCRYPT_DER_BLOB rgValue;
385 } CRYPT_SEQUENCE_OF_ANY, *PCRYPT_SEQUENCE_OF_ANY;
386
387 typedef struct _CERT_AUTHORITY_KEY_ID2_INFO {
388     CRYPT_DATA_BLOB    KeyId;
389     CERT_ALT_NAME_INFO AuthorityCertIssuer;
390     CRYPT_INTEGER_BLOB AuthorityCertSerialNumber;
391 } CERT_AUTHORITY_KEY_ID2_INFO, *PCERT_AUTHORITY_KEY_ID2_INFO;
392
393 typedef struct _CERT_ACCESS_DESCRIPTION {
394     LPSTR               pszAccessMethod;
395     CERT_ALT_NAME_ENTRY AccessLocation;
396 } CERT_ACCESS_DESCRIPTION, *PCERT_ACCESS_DESCRIPTION;
397
398 typedef struct _CERT_AUTHORITY_INFO_ACCESS {
399     DWORD                    cAccDescr;
400     PCERT_ACCESS_DESCRIPTION rgAccDescr;
401 } CERT_AUTHORITY_INFO_ACCESS, *PCERT_AUTHORITY_INFO_ACCESS;
402
403 typedef struct _CERT_CONTEXT {
404     DWORD      dwCertEncodingType;
405     BYTE       *pbCertEncoded;
406     DWORD      cbCertEncoded;
407     PCERT_INFO pCertInfo;
408     HCERTSTORE hCertStore;
409 } CERT_CONTEXT, *PCERT_CONTEXT;
410 typedef const CERT_CONTEXT *PCCERT_CONTEXT;
411
412 typedef struct _CRL_ENTRY {
413     CRYPT_INTEGER_BLOB SerialNumber;
414     FILETIME           RevocationDate;
415     DWORD              cExtension;
416     PCERT_EXTENSION    rgExtension;
417 } CRL_ENTRY, *PCRL_ENTRY;
418
419 typedef struct _CRL_INFO {
420     DWORD           dwVersion;
421     CRYPT_ALGORITHM_IDENTIFIER SignatureAlgorithm;
422     CERT_NAME_BLOB  Issuer;
423     FILETIME        ThisUpdate;
424     FILETIME        NextUpdate;
425     DWORD           cCRLEntry;
426     PCRL_ENTRY      rgCRLEntry;
427     DWORD           cExtension;
428     PCERT_EXTENSION rgExtension;
429 } CRL_INFO, *PCRL_INFO;
430
431 typedef struct _CRL_DIST_POINT_NAME {
432     DWORD dwDistPointNameChoice;
433     union {
434         CERT_ALT_NAME_INFO FullName;
435     } DUMMYUNIONNAME;
436 } CRL_DIST_POINT_NAME, *PCRL_DIST_POINT_NAME;
437
438 #define CRL_DIST_POINT_NO_NAME         0
439 #define CRL_DIST_POINT_FULL_NAME       1
440 #define CRL_DIST_POINT_ISSUER_RDN_NAME 2
441
442 typedef struct _CRL_DIST_POINT {
443     CRL_DIST_POINT_NAME DistPointName;
444     CRYPT_BIT_BLOB      ReasonFlags;
445     CERT_ALT_NAME_INFO  CRLIssuer;
446 } CRL_DIST_POINT, *PCRL_DIST_POINT;
447
448 #define CRL_REASON_UNUSED_FLAG                 0x80
449 #define CRL_REASON_KEY_COMPROMISE_FLAG         0x40
450 #define CRL_REASON_CA_COMPROMISE_FLAG          0x20
451 #define CRL_REASON_AFFILIATION_CHANGED_FLAG    0x10
452 #define CRL_REASON_SUPERSEDED_FLAG             0x08
453 #define CRL_REASON_CESSATION_OF_OPERATION_FLAG 0x04
454 #define CRL_REASON_CERTIFICATE_HOLD_FLAG       0x02
455
456 typedef struct _CRL_DIST_POINTS_INFO {
457     DWORD           cDistPoint;
458     PCRL_DIST_POINT rgDistPoint;
459 } CRL_DIST_POINTS_INFO, *PCRL_DIST_POINTS_INFO;
460
461 #define CRL_DIST_POINT_ERR_INDEX_MASK  0x7f
462 #define CRL_DIST_POINT_ERR_INDEX_SHIFT 24
463 #define GET_CRL_DIST_POINT_ERR_INDEX(x) \
464  (((x) >> CRL_DIST_POINT_ERR_INDEX_SHIFT) & CRL_DIST_POINT_ERR_INDEX_MASK)
465
466 #define CRL_DIST_POINT_ERR_CRL_ISSUER_BIT 0x80000000L
467 #define IS_CRL_DIST_POINT_ERR_CRL_ISSUER(x) \
468  ((x) & CRL_DIST_POINT_ERR_CRL_ISSUER_BIT)
469
470 typedef struct _CROSS_CERT_DIST_POINTS_INFO {
471     DWORD               dwSyncDeltaTime;
472     DWORD               cDistPoint;
473     PCERT_ALT_NAME_INFO rgDistPoint;
474 } CROSS_CERT_DIST_POINTS_INFO, *PCROSS_CERT_DIST_POINTS_INFO;
475
476 #define CROSS_CERT_DIST_POINT_ERR_INDEX_MASK  0xff
477 #define CROSS_CERT_DIST_POINT_ERR_INDEX_SHIFT 24
478 #define GET_CROSS_CERT_DIST_POINT_ERR_INDEX(x) \
479  (((x) >> CROSS_CERT_DIST_POINT_ERR_INDEX_SHIFT) & \
480  CROSS_CERT_DIST_POINT_ERR_INDEX_MASK)
481
482 typedef struct _CERT_PAIR {
483     CERT_BLOB Forward;
484     CERT_BLOB Reverse;
485 } CERT_PAIR, *PCERT_PAIR;
486
487 typedef struct _CRL_ISSUING_DIST_POINT {
488     CRL_DIST_POINT_NAME DistPointName;
489     BOOL                fOnlyContainsUserCerts;
490     BOOL                fOnlyContainsCACerts;
491     CRYPT_BIT_BLOB      OnlySomeReasonFlags;
492     BOOL                fIndirectCRL;
493 } CRL_ISSUING_DIST_POINT, *PCRL_ISSUING_DIST_POINT;
494
495 typedef struct _CERT_GENERAL_SUBTREE {
496     CERT_ALT_NAME_ENTRY Base;
497     DWORD               dwMinimum;
498     BOOL                fMaximum;
499     DWORD               dwMaximum;
500 } CERT_GENERAL_SUBTREE, *PCERT_GENERAL_SUBTREE;
501
502 typedef struct _CERT_NAME_CONSTRAINTS_INFO {
503     DWORD                 cPermittedSubtree;
504     PCERT_GENERAL_SUBTREE rgPermittedSubtree;
505     DWORD                 cExcludedSubtree;
506     PCERT_GENERAL_SUBTREE rgExcludedSubtree;
507 } CERT_NAME_CONSTRAINTS_INFO, *PCERT_NAME_CONSTRAINTS_INFO;
508
509 #define CERT_EXCLUDED_SUBTREE_BIT 0x80000000L
510 #define IS_CERT_EXCLUDED_SUBTREE(x) ((x) & CERT_EXCLUDED_SUBTREE_BIT)
511
512 typedef struct _CRYPT_ATTRIBUTE {
513     LPSTR            pszObjId;
514     DWORD            cValue;
515     PCRYPT_DATA_BLOB rgValue;
516 } CRYPT_ATTRIBUTE, *PCRYPT_ATTRIBUTE;
517
518 typedef struct _CRYPT_ATTRIBUTES {
519     DWORD            cAttr;
520     PCRYPT_ATTRIBUTE rgAttr;
521 } CRYPT_ATTRIBUTES, *PCRYPT_ATTRIBUTES;
522
523 typedef struct _CERT_REQUEST_INFO {
524     DWORD                dwVersion;
525     CERT_NAME_BLOB       Subject;
526     CERT_PUBLIC_KEY_INFO SubjectPublicKeyInfo;
527     DWORD                cAttribute;
528     PCRYPT_ATTRIBUTE     rgAttribute;
529 } CERT_REQUEST_INFO, *PCERT_REQUEST_INFO;
530
531 typedef struct _CERT_KEYGEN_REQUEST_INFO {
532     DWORD                dwVersion;
533     CERT_PUBLIC_KEY_INFO SubjectPubliceKeyInfo;
534     LPWSTR               pwszChallengeString;
535 } CERT_KEYGEN_REQUEST_INFO, *PCERT_KEYGEN_REQUEST_INFO;
536
537 typedef struct _CERT_SIGNED_CONTENT_INFO {
538     CRYPT_DER_BLOB             ToBeSigned;
539     CRYPT_ALGORITHM_IDENTIFIER SignatureAlgorithm;
540     CRYPT_BIT_BLOB             Signature;
541 } CERT_SIGNED_CONTENT_INFO, *PCERT_SIGNED_CONTENT_INFO;
542
543 typedef struct _CRL_CONTEXT {
544     DWORD      dwCertEncodingType;
545     BYTE      *pbCrlEncoded;
546     DWORD      cbCrlEncoded;
547     PCRL_INFO  pCrlInfo;
548     HCERTSTORE hCertStore;
549 } CRL_CONTEXT, *PCRL_CONTEXT;
550 typedef const CRL_CONTEXT *PCCRL_CONTEXT;
551
552 typedef struct _VTableProvStruc {
553     DWORD    Version;
554     FARPROC  pFuncVerifyImage;
555     FARPROC  pFuncReturnhWnd;
556     DWORD    dwProvType;
557     BYTE    *pbContextInfo;
558     DWORD    cbContextInfo;
559     LPSTR    pszProvName;
560 } VTableProvStruc, *PVTableProvStruc;
561
562 typedef struct _CERT_PRIVATE_KEY_INFO {
563     DWORD                      Version;
564     CRYPT_ALGORITHM_IDENTIFIER Algorithm;
565     CRYPT_DER_BLOB             PrivateKey;
566     PCRYPT_ATTRIBUTES          pAttributes;
567 } CERT_PRIVATE_KEY_INFO, *PCERT_PRIVATE_KEY_INFO;
568
569 typedef struct _CTL_USAGE {
570     DWORD  cUsageIdentifier;
571     LPSTR *rgpszUsageIdentifier;
572 } CTL_USAGE, *PCTL_USAGE, CERT_ENHKEY_USAGE, *PCERT_ENHKEY_USAGE;
573
574 typedef struct _CTL_ENTRY {
575     CRYPT_DATA_BLOB  SubjectIdentifier;
576     DWORD            cAttribute;
577     PCRYPT_ATTRIBUTE rgAttribute;
578 } CTL_ENTRY, *PCTL_ENTRY;
579
580 typedef struct _CTL_INFO {
581     DWORD                      dwVersion;
582     CTL_USAGE                  SubjectUsage;
583     CRYPT_DATA_BLOB            ListIdentifier;
584     CRYPT_INTEGER_BLOB         SequenceNumber;
585     FILETIME                   ThisUpdate;
586     FILETIME                   NextUpdate;
587     CRYPT_ALGORITHM_IDENTIFIER SubjectAlgorithm;
588     DWORD                      cCTLEntry;
589     PCTL_ENTRY                 rgCTLEntry;
590     DWORD                      cExtension;
591     PCERT_EXTENSION            rgExtension;
592 } CTL_INFO, *PCTL_INFO;
593
594 typedef struct _CTL_CONTEXT {
595     DWORD      dwMsgAndCertEncodingType;
596     BYTE      *pbCtlEncoded;
597     DWORD      cbCtlEncoded;
598     PCTL_INFO  pCtlInfo;
599     HCERTSTORE hCertStore;
600     HCRYPTMSG  hCryptMsg;
601     BYTE      *pbCtlContext;
602     DWORD      cbCtlContext;
603 } CTL_CONTEXT, *PCTL_CONTEXT;
604 typedef const CTL_CONTEXT *PCCTL_CONTEXT;
605
606 typedef struct _CRYPT_TIME_STAMP_REQUEST_INFO {
607     LPSTR            pszTimeStampAlgorithm;
608     LPSTR            pszContentType;
609     CRYPT_OBJID_BLOB Content;
610     DWORD            cAttribute;
611     PCRYPT_ATTRIBUTE rgAttribute;
612 } CRYPT_TIME_STAMP_REQUEST_INFO, *PCRYPT_TIME_STAMP_REQUEST_INFO;
613
614 typedef struct _CRYPT_ENROLLMENT_NAME_VALUE_PAIR {
615     LPWSTR pwszName;
616     LPWSTR pwszValue;
617 } CRYPT_ENROLLMENT_NAME_VALUE_PAIR, *PCRYPT_ENROLLMENT_NAME_VALUE_PAIR;
618
619 typedef struct _CMSG_SIGNER_INFO {
620     DWORD                      dwVersion;
621     CERT_NAME_BLOB             Issuer;
622     CRYPT_INTEGER_BLOB         SerialNumber;
623     CRYPT_ALGORITHM_IDENTIFIER HashAlgorithm;
624     CRYPT_ALGORITHM_IDENTIFIER HashEncryptionAlgorithm;
625     CRYPT_DATA_BLOB            EncryptedHash;
626     CRYPT_ATTRIBUTES           AuthAttrs;
627     CRYPT_ATTRIBUTES           UnauthAttrs;
628 } CMSG_SIGNER_INFO, *PCMSG_SIGNER_INFO;
629
630 typedef struct _CERT_REVOCATION_CRL_INFO {
631     DWORD         cbSize;
632     PCCRL_CONTEXT pBaseCrlContext;
633     PCCRL_CONTEXT pDeltaCrlContext;
634     PCRL_ENTRY    pCrlEntry;
635     BOOL          fDeltaCrlEntry;
636 } CERT_REVOCATION_CRL_INFO, *PCERT_REVOCATION_CRL_INFO;
637
638 typedef struct _CERT_REVOCATION_INFO {
639     DWORD                     cbSize;
640     DWORD                     dwRevocationResult;
641     LPCSTR                    pszRevocationOid;
642     LPVOID                    pvOidSpecificInfo;
643     BOOL                      fHasFreshnessTime;
644     DWORD                     dwFreshnessTime;
645     PCERT_REVOCATION_CRL_INFO pCrlInfo;
646 } CERT_REVOCATION_INFO, *PCERT_REVOCATION_INFO;
647
648 typedef struct _CERT_REVOCATION_PARA {
649     DWORD                     cbSize;
650     PCCERT_CONTEXT            pIssuerCert;
651     DWORD                     cCertStore;
652     HCERTSTORE               *rgCertStore;
653     HCERTSTORE                hCrlStore;
654     LPFILETIME                pftTimeToUse;
655 #ifdef CERT_REVOCATION_PARA_HAS_EXTRA_FIELDS
656     DWORD                     dwUrlRetrievalTimeout;
657     BOOL                      fCheckFreshnessTime;
658     DWORD                     dwFreshnessTime;
659     LPFILETIME                pftCurrentTime;
660     PCERT_REVOCATION_CRL_INFO pCrlInfo;
661 #endif
662 } CERT_REVOCATION_PARA, *PCERT_REVOCATION_PARA;
663
664 #define CERT_CONTEXT_REVOCATION_TYPE 1
665 #define CERT_VERIFY_REV_CHAIN_FLAG                0x00000001
666 #define CERT_VERIFY_CACHE_ONLY_BASED_REVOCATION   0x00000002
667 #define CERT_VERIFY_REV_ACCUMULATIVE_TIMEOUT_FLAG 0x00000004
668
669 typedef struct _CTL_VERIFY_USAGE_PARA {
670     DWORD           cbSize;
671     CRYPT_DATA_BLOB ListIdentifier;
672     DWORD           cCtlStore;
673     HCERTSTORE     *rghCtlStore;
674     DWORD           cSignerStore;
675     HCERTSTORE     *rghSignerStore;
676 } CTL_VERIFY_USAGE_PARA, *PCTL_VERIFY_USAGE_PARA;
677
678 typedef struct _CTL_VERIFY_USAGE_STATUS {
679     DWORD           cbSize;
680     DWORD           dwError;
681     DWORD           dwFlags;
682     PCCTL_CONTEXT  *ppCtl;
683     DWORD           dwCtlEntryIndex;
684     PCCERT_CONTEXT *ppSigner;
685     DWORD           dwSignerIndex;
686 } CTL_VERIFY_USAGE_STATUS, *PCTL_VERIFY_USAGE_STATUS;
687
688 #define CERT_VERIFY_INHIBIT_CTL_UPDATE_FLAG 0x1
689 #define CERT_VERIFY_TRUSTED_SIGNERS_FLAG    0x2
690 #define CERT_VERIFY_NO_TIME_CHECK_FLAG      0x4
691 #define CERT_VERIFY_ALLOW_MORE_USAGE_FLAG   0x8
692 #define CERT_VERIFY_UPDATED_CTL_FLAG        0x1
693
694 typedef struct _CERT_REVOCATION_STATUS {
695     DWORD cbSize;
696     DWORD dwIndex;
697     DWORD dwError;
698     DWORD dwReason;
699     BOOL  fHasFreshnessTime;
700     DWORD dwFreshnessTime;
701 } CERT_REVOCATION_STATUS, *PCERT_REVOCATION_STATUS;
702
703 typedef struct _CERT_TRUST_LIST_INFO {
704     DWORD         cbSize;
705     PCTL_ENTRY    pCtlEntry;
706     PCCTL_CONTEXT pCtlContext;
707 } CERT_TRUST_LIST_INFO, *PCERT_TRUST_LIST_INFO;
708
709 #define CERT_TRUST_NO_ERROR                          0x00000000
710 #define CERT_TRUST_IS_NOT_TIME_VALID                 0x00000001
711 #define CERT_TRUST_IS_NOT_TIME_NESTED                0x00000002
712 #define CERT_TRUST_IS_REVOKED                        0x00000004
713 #define CERT_TRUST_IS_NOT_SIGNATURE_VALID            0x00000008
714 #define CERT_TRUST_IS_NOT_VALID_FOR_USAGE            0x00000010
715 #define CERT_TRUST_IS_UNTRUSTED_ROOT                 0x00000020
716 #define CERT_TRUST_REVOCATION_STATUS_UNKNOWN         0x00000040
717 #define CERT_TRUST_IS_CYCLIC                         0x00000080
718 #define CERT_TRUST_INVALID_EXTENSION                 0x00000100
719 #define CERT_TRUST_INVALID_POLICY_CONSTRAINTS        0x00000200
720 #define CERT_TRUST_INVALID_BASIC_CONSTRAINTS         0x00000400
721 #define CERT_TRUST_INVALID_NAME_CONSTRAINTS          0x00000800
722 #define CERT_TRUST_HAS_NOT_SUPPORTED_NAME_CONSTRAINT 0x00001000
723 #define CERT_TRUST_HAS_NOT_DEFINED_NAME_CONSTRAINT   0x00002000
724 #define CERT_TRUST_HAS_NOT_PERMITTED_NAME_CONSTRAINT 0x00004000
725 #define CERT_TRUST_HAS_EXCLUDED_NAME_CONSTRAINT      0x00008000
726 #define CERT_TRUST_IS_OFFLINE_REVOCATION             0x01000000
727 #define CERT_TRUST_NO_ISSUANCE_CHAIN_POLICY          0x02000000
728
729 #define CERT_TRUST_IS_PARTIAL_CHAIN                  0x00001000
730 #define CERT_TRUST_CTL_IS_NOT_TIME_VALID             0x00002000
731 #define CERT_TRUST_CTL_IS_NOT_SIGNATURE_VALID        0x00004000
732 #define CERT_TRUST_CTL_IS_NOT_VALID_FOR_USAGE        0x00008000
733
734 #define CERT_TRUST_HAS_EXACT_MATCH_ISSUER            0x00000001
735 #define CERT_TRUST_HAS_KEY_MATCH_ISSUER              0x00000002
736 #define CERT_TRUST_HAS_NAME_MATCH_ISSUER             0x00000004
737 #define CERT_TRUST_IS_SELF_SIGNED                    0x00000008
738
739 #define CERT_TRUST_HAS_PREFERRED_ISSUER              0x00000100
740 #define CERT_TRUST_HAS_ISSUANCE_CHAIN_POLICY         0x00000200
741 #define CERT_TRUST_HAS_VALID_NAME_CONSTRAINTS        0x00000400
742
743 #define CERT_TRUST_IS_COMPLEX_CHAIN                  0x00010000
744
745 typedef struct _CERT_TRUST_STATUS {
746     DWORD dwErrorStatus;
747     DWORD dwInfoStatus;
748 } CERT_TRUST_STATUS, *PCERT_TRUST_STATUS;
749
750 typedef struct _CERT_CHAIN_ELEMENT {
751     DWORD                 cbSize;
752     PCCERT_CONTEXT        pCertContext;
753     CERT_TRUST_STATUS     TrustStatus;
754     PCERT_REVOCATION_INFO pRevocationInfo;
755     PCERT_ENHKEY_USAGE    pIssuanceUsage;
756     PCERT_ENHKEY_USAGE    pApplicationUsage;
757     LPCWSTR               pwszExtendedErrorInfo;
758 } CERT_CHAIN_ELEMENT, *PCERT_CHAIN_ELEMENT;
759
760 typedef struct _CERT_SIMPLE_CHAIN {
761     DWORD                 cbSize;
762     CERT_TRUST_STATUS     TrustStatus;
763     DWORD                 cElement;
764     PCERT_CHAIN_ELEMENT  *rgpElement;
765     PCERT_TRUST_LIST_INFO pTrustListInfo;
766     BOOL                  fHasRevocationFreshnessTime;
767     DWORD                 dwRevocationFreshnessTime;
768 } CERT_SIMPLE_CHAIN, *PCERT_SIMPLE_CHAIN;
769
770 typedef struct _CERT_CHAIN_CONTEXT CERT_CHAIN_CONTEXT, *PCERT_CHAIN_CONTEXT;
771 typedef const CERT_CHAIN_CONTEXT *PCCERT_CHAIN_CONTEXT;
772
773 struct _CERT_CHAIN_CONTEXT {
774     DWORD                 cbSize;
775     CERT_TRUST_STATUS     TrustStatus;
776     DWORD                 cChain;
777     PCERT_SIMPLE_CHAIN   *rgpChain;
778     DWORD                 cLowerQualityChainContext;
779     PCCERT_CHAIN_CONTEXT *rgbLowerQualityChainContext;
780     BOOL                  fHasRevocationFreshnessTime;
781     DWORD                 dwRevocationFreshnessTime;
782 };
783
784 typedef struct _CERT_CHAIN_POLICY_PARA {
785     DWORD cbSize;
786     DWORD dwFlags;
787     void *pvExtraPolicyPara;
788 } CERT_CHAIN_POLICY_PARA, *PCERT_CHAIN_POLICY_PARA;
789
790 typedef struct _CERT_CHAIN_POLICY_STATUS {
791     DWORD cbSize;
792     DWORD dwError;
793     LONG  lChainIndex;
794     LONG  lElementIndex;
795     void *pvExtraPolicyStatus;
796 } CERT_CHAIN_POLICY_STATUS, *PCERT_CHAIN_POLICY_STATUS;
797
798 #define CERT_CHAIN_POLICY_BASE              ((LPCSTR)1)
799 #define CERT_CHAIN_POLICY_AUTHENTICODE      ((LPCSTR)2)
800 #define CERT_CHAIN_POLICY_AUTHENTICODE_TS   ((LPCSTR)3)
801 #define CERT_CHAIN_POLICY_SSL               ((LPCSTR)4)
802 #define CERT_CHAIN_POLICY_BASIC_CONSTRAINTS ((LPCSTR)5)
803 #define CERT_CHAIN_POLICY_NT_AUTH           ((LPCSTR)6)
804 #define CERT_CHAIN_POLICY_MICROSOFT_ROOT    ((LPCSTR)7)
805
806 typedef struct _AUTHENTICODE_EXTRA_CERT_CHAIN_POLICY_PARA {
807     DWORD             cbSize;
808     DWORD             dwRegPolicySettings;
809     PCMSG_SIGNER_INFO pSignerInfo;
810 } AUTHENTICODE_EXTRA_CERT_CHAIN_POLICY_PARA,
811  *PAUTHENTICODE_EXTRA_CERT_CHAIN_POLICY_PARA;
812
813 typedef struct _AUTHENTICODE_EXTRA_CERT_CHAIN_POLICY_STATUS {
814     DWORD cbSize;
815     BOOL  fCommercial;
816 } AUTHENTICODE_EXTRA_CERT_CHAIN_POLICY_STATUS,
817  *PAUTHENTICODE_EXTRA_CERT_CHAIN_POLICY_STATUS;
818
819 typedef struct _AUTHENTICODE_TS_EXTRA_CERT_CHAIN_POLICY_PARA {
820     DWORD cbSize;
821     DWORD dwRegPolicySettings;
822     BOOL  fCommercial;
823 } AUTHENTICODE_TS_EXTRA_CERT_CHAIN_POLICY_PARA,
824  *PAUTHENTICODE_TS_EXTRA_CERT_CHAIN_POLICY_PARA;
825
826 typedef struct _HTTPSPolicyCallbackData {
827     union {
828         DWORD cbStruct;
829         DWORD cbSize;
830     } DUMMYUNIONNAME;
831     DWORD  dwAuthType;
832     DWORD  fdwChecks;
833     WCHAR *pwszServerName;
834 } HTTPSPolicyCallbackData, *PHTTPSPolicyCallbackData;
835
836 #define BASIC_CONSTRAINTS_CERT_CHAIN_POLICY_CA_FLAG         0x80000000
837 #define BASIC_CONSTRAINTS_CERT_CHAIN_POLICY_END_ENTITY_FLAG 0x40000000
838
839 #define MICROSOFT_ROOT_CERT_CHAIN_POLICY_ENABLE_TEST_ROOT_FLAG 0x00010000
840
841 #define USAGE_MATCH_TYPE_AND 0x00000000
842 #define USAGE_MATCH_TYPE_OR  0x00000001
843
844 typedef struct _CERT_USAGE_MATCH {
845     DWORD             dwType;
846     CERT_ENHKEY_USAGE Usage;
847 } CERT_USAGE_MATCH, *PCERT_USAGE_MATCH;
848
849 typedef struct _CTL_USAGE_MATCH {
850     DWORD     dwType;
851     CTL_USAGE Usage;
852 } CTL_USAGE_MATCH, *PCTL_USAGE_MATCH;
853
854 #define CERT_CHAIN_REVOCATION_CHECK_END_CERT           0x10000000
855 #define CERT_CHAIN_REVOCATION_CHECK_CHAIN              0x20000000
856 #define CERT_CHAIN_REVOCATION_CHECK_CHAIN_EXCLUDE_ROOT 0x40000000
857 #define CERT_CHAIN_REVOCATION_CHECK_CACHE_ONLY         0x80000000
858
859 #define CERT_CHAIN_REVOCATION_ACCUMULATIVE_TIMEOUT     0x08000000
860
861 #define CERT_CHAIN_DISABLE_PASS1_QUALITY_FILTERING     0x00000040
862 #define CERT_CHAIN_RETURN_LOWER_QUALITY_CONTEXTS       0x00000080
863 #define CERT_CHAIN_DISABLE_AUTH_ROOT_AUTO_UPDATE       0x00000100
864 #define CERT_CHAIN_TIMESTAMP_TIME                      0x00000200
865
866 typedef struct _CERT_CHAIN_PARA {
867     DWORD            cbSize;
868     CERT_USAGE_MATCH RequestedUsage;
869 #ifdef CERT_CHAIN_PARA_HAS_EXTRA_FIELDS
870     CERT_USAGE_MATCH RequestedIssuancePolicy;
871     DWORD            dwUrlRetrievalTimeout;
872     BOOL             fCheckRevocationFreshnessTime;
873     DWORD            dwRevocationFreshnessTime;
874 #endif
875 } CERT_CHAIN_PARA, *PCERT_CHAIN_PARA;
876
877 typedef struct _CERT_SYSTEM_STORE_INFO {
878     DWORD cbSize;
879 } CERT_SYSTEM_STORE_INFO, *PCERT_SYSTEM_STORE_INFO;
880
881 typedef struct _CERT_PHYSICAL_STORE_INFO {
882     DWORD           cbSize;
883     LPSTR           pszOpenStoreProvider;
884     DWORD           dwOpenEncodingType;
885     DWORD           dwOpenFlags;
886     CRYPT_DATA_BLOB OpenParameters;
887     DWORD           dwFlags;
888     DWORD           dwPriority;
889 } CERT_PHYSICAL_STORE_INFO, *PCERT_PHYSICAL_STORE_INFO;
890
891 typedef struct _CERT_SYSTEM_STORE_RELOCATE_PARA {
892     union {
893         HKEY  hKeyBase;
894         VOID *pvBase;
895     } DUMMYUNIONNAME;
896     union {
897         void   *pvSystemStore;
898         LPCSTR  pszSystemStore;
899         LPCWSTR pwszSystemStore;
900     } DUMMYUNIONNAME2;
901 } CERT_SYSTEM_STORE_RELOCATE_PARA, *PCERT_SYSTEM_STORE_RELOCATE_PARA;
902
903 typedef BOOL (WINAPI *PFN_CERT_ENUM_SYSTEM_STORE_LOCATION)(
904  LPCWSTR pwszStoreLocation, DWORD dwFlags, void *pvReserved, void *pvArg);
905
906 typedef BOOL (WINAPI *PFN_CERT_ENUM_SYSTEM_STORE)(const void *pvSystemStore,
907  DWORD dwFlags, PCERT_SYSTEM_STORE_INFO pStoreInfo, void *pvReserved,
908  void *pvArg);
909
910 typedef BOOL (WINAPI *PFN_CERT_ENUM_PHYSICAL_STORE)(const void *pvSystemStore,
911  DWORD dwFlags, LPCWSTR pwszStoreName, PCERT_PHYSICAL_STORE_INFO pStoreInfo,
912  void *pvReserved, void *pvArg);
913
914 /* Encode/decode object */
915 typedef LPVOID (WINAPI *PFN_CRYPT_ALLOC)(size_t cbsize);
916 typedef VOID   (WINAPI *PFN_CRYPT_FREE)(LPVOID pv);
917
918 typedef struct _CRYPT_ENCODE_PARA {
919     DWORD           cbSize;
920     PFN_CRYPT_ALLOC pfnAlloc;
921     PFN_CRYPT_FREE  pfnFree;
922 } CRYPT_ENCODE_PARA, *PCRYPT_ENCODE_PARA;
923
924 typedef struct _CRYPT_DECODE_PARA {
925     DWORD           cbSize;
926     PFN_CRYPT_ALLOC pfnAlloc;
927     PFN_CRYPT_FREE  pfnFree;
928 } CRYPT_DECODE_PARA, *PCRYPT_DECODE_PARA;
929
930 typedef struct _CERT_STORE_PROV_INFO {
931     DWORD             cbSize;
932     DWORD             cStoreProvFunc;
933     void            **rgpvStoreProvFunc;
934     HCERTSTOREPROV    hStoreProv;
935     DWORD             dwStoreProvFlags;
936     HCRYPTOIDFUNCADDR hStoreProvFuncAddr2;
937 } CERT_STORE_PROV_INFO, *PCERT_STORE_PROV_INFO;
938
939 typedef BOOL (WINAPI *PFN_CERT_DLL_OPEN_STORE_PROV_FUNC)(
940  LPCSTR lpszStoreProvider, DWORD dwEncodingType, HCRYPTPROV hCryptProv,
941  DWORD dwFlags, const void *pvPara, HCERTSTORE hCertStore,
942  PCERT_STORE_PROV_INFO pStoreProvInfo);
943
944 typedef void (WINAPI *PFN_CERT_STORE_PROV_CLOSE)(HCERTSTOREPROV hStoreProv,
945  DWORD dwFlags);
946
947 typedef BOOL (WINAPI *PFN_CERT_STORE_PROV_READ_CERT)(HCERTSTOREPROV hStoreProv,
948  PCCERT_CONTEXT pStoreCertContext, DWORD dwFlags,
949  PCCERT_CONTEXT *ppProvCertContext);
950
951 typedef BOOL (WINAPI *PFN_CERT_STORE_PROV_WRITE_CERT)(HCERTSTOREPROV hStoreProv,
952  PCCERT_CONTEXT pCertContext, DWORD dwFlags);
953
954 typedef BOOL (WINAPI *PFN_CERT_STORE_PROV_DELETE_CERT)(
955  HCERTSTOREPROV hStoreProv, PCCERT_CONTEXT pCertContext, DWORD dwFlags);
956
957 typedef BOOL (WINAPI *PFN_CERT_STORE_PROV_SET_CERT_PROPERTY)(
958  HCERTSTOREPROV hStoreProv, PCCERT_CONTEXT pCertContext, DWORD dwPropId,
959  DWORD dwFlags, const void *pvData);
960
961 typedef BOOL (WINAPI *PFN_CERT_STORE_PROV_READ_CRL)(HCERTSTOREPROV hStoreProv,
962  PCCRL_CONTEXT pStoreCrlContext, DWORD dwFlags,
963  PCCRL_CONTEXT *ppProvCrlContext);
964
965 typedef BOOL (WINAPI *PFN_CERT_STORE_PROV_WRITE_CRL)(HCERTSTOREPROV hStoreProv,
966  PCCRL_CONTEXT pCrlContext, DWORD dwFlags);
967
968 typedef BOOL (WINAPI *PFN_CERT_STORE_PROV_DELETE_CRL)(HCERTSTOREPROV hStoreProv,
969  PCCRL_CONTEXT pCrlContext, DWORD dwFlags);
970
971 typedef BOOL (WINAPI *PFN_CERT_STORE_PROV_SET_CRL_PROPERTY)(
972  HCERTSTOREPROV hStoreProv, PCCRL_CONTEXT pCrlContext, DWORD dwPropId,
973  DWORD dwFlags, const void *pvData);
974
975 typedef BOOL (WINAPI *PFN_CERT_STORE_PROV_READ_CTL)(HCERTSTOREPROV hStoreProv,
976  PCCTL_CONTEXT pStoreCtlContext, DWORD dwFlags,
977  PCCTL_CONTEXT *ppProvCtlContext);
978
979 typedef BOOL (WINAPI *PFN_CERT_STORE_PROV_WRITE_CTL)(HCERTSTOREPROV hStoreProv,
980  PCCTL_CONTEXT pCtlContext, DWORD dwFlags);
981
982 typedef BOOL (WINAPI *PFN_CERT_STORE_PROV_DELETE_CTL)(
983  HCERTSTOREPROV hStoreProv, PCCTL_CONTEXT pCtlContext, DWORD dwFlags);
984
985 typedef BOOL (WINAPI *PFN_CERT_STORE_PROV_SET_CTL_PROPERTY)(
986  HCERTSTOREPROV hStoreProv, PCCTL_CONTEXT pCtlContext, DWORD dwPropId,
987  DWORD dwFlags, const void *pvData);
988
989 typedef BOOL (WINAPI *PFN_CERT_STORE_PROV_CONTROL)(HCERTSTOREPROV hStoreProv,
990  DWORD dwFlags, DWORD dwCtrlType, void const *pvCtrlPara);
991
992 typedef struct _CERT_STORE_PROV_FIND_INFO {
993     DWORD       cbSize;
994     DWORD       dwMsgAndCertEncodingType;
995     DWORD       dwFindFlags;
996     DWORD       dwFindType;
997     const void *pvFindPara;
998 } CERT_STORE_PROV_FIND_INFO, *PCERT_STORE_PROV_FIND_INFO;
999 typedef const CERT_STORE_PROV_FIND_INFO CCERT_STORE_PROV_FIND_INFO,
1000  *PCCERT_STORE_PROV_FIND_INFO;
1001
1002 typedef BOOL (WINAPI *PFN_CERT_STORE_PROV_FIND_CERT)(HCERTSTOREPROV hStoreProv,
1003  PCCERT_STORE_PROV_FIND_INFO pFindInfo, PCCERT_CONTEXT pPrevCertContext,
1004  DWORD dwFlags, void **ppvStoreProvFindInfo, PCCERT_CONTEXT *ppProvCertContext);
1005
1006 typedef BOOL (WINAPI *PFN_CERT_STORE_PROV_FREE_FIND_CERT)(
1007  HCERTSTOREPROV hStoreProv, PCCERT_CONTEXT pCertContext,
1008  void *pvStoreProvFindInfo, DWORD dwFlags);
1009
1010 typedef BOOL (WINAPI *PFN_CERT_STORE_PROV_GET_CERT_PROPERTY)(
1011  HCERTSTOREPROV hStoreProv, PCCERT_CONTEXT pCertContext, DWORD dwPropId,
1012  DWORD dwFlags, void *pvData, DWORD *pcbData);
1013
1014 typedef BOOL (WINAPI *PFN_CERT_STORE_PROV_FIND_CRL)(HCERTSTOREPROV hStoreProv,
1015  PCCERT_STORE_PROV_FIND_INFO pFindInfo, PCCRL_CONTEXT pPrevCrlContext,
1016  DWORD dwFlags, void **ppvStoreProvFindInfo, PCCRL_CONTEXT *ppProvCrlContext);
1017
1018 typedef BOOL (WINAPI *PFN_CERT_STORE_PROV_FREE_FIND_CRL)(
1019  HCERTSTOREPROV hStoreProv, PCCRL_CONTEXT pCrlContext,
1020  void *pvStoreProvFindInfo, DWORD dwFlags);
1021
1022 typedef BOOL (WINAPI *PFN_CERT_STORE_PROV_GET_CRL_PROPERTY)(
1023  HCERTSTOREPROV hStoreProv, PCCRL_CONTEXT pCrlContext, DWORD dwPropId,
1024  DWORD dwFlags, void *pvData, DWORD *pcbData);
1025
1026 typedef BOOL (WINAPI *PFN_CERT_STORE_PROV_FIND_CTL)(HCERTSTOREPROV hStoreProv,
1027  PCCTL_CONTEXT pCtlContext, void *pvStoreProvFindInfo, DWORD dwFlags);
1028
1029 typedef BOOL (WINAPI *PFN_CERT_STORE_PROV_GET_CTL_PROPERTY)(
1030  HCERTSTOREPROV hStoreProv, PCCTL_CONTEXT pCtlContext, DWORD dwPropId,
1031  DWORD dwFlags, void *pvData);
1032
1033 typedef struct _CERT_CREATE_CONTEXT_PARA {
1034     DWORD          cbSize;
1035     PFN_CRYPT_FREE pfnFree;
1036     void          *pvFree;
1037 } CERT_CREATE_CONTEXT_PARA, *PCERT_CREATE_CONTEXT_PARA;
1038
1039 typedef struct _CRYPT_OID_FUNC_ENTRY {
1040     LPCSTR pszOID;
1041     void  *pvFuncAddr;
1042 } CRYPT_OID_FUNC_ENTRY, *PCRYPT_OID_FUNC_ENTRY;
1043
1044 typedef BOOL (WINAPI *PFN_CRYPT_ENUM_OID_FUNC)(DWORD dwEncodingType,
1045  LPCSTR pszFuncName, LPCSTR pszOID, DWORD cValue, const DWORD rgdwValueType[],
1046  LPCWSTR const rgpwszValueName[], const BYTE * const rgpbValueData[],
1047  const DWORD rgcbValueData[], void *pvArg);
1048
1049 #define CRYPT_MATCH_ANY_ENCODING_TYPE 0xffffffff
1050
1051 typedef struct _CRYPT_OID_INFO {
1052     DWORD   cbSize;
1053     LPCSTR  pszOID;
1054     LPCWSTR pwszName;
1055     DWORD   dwGroupId;
1056     union {
1057         DWORD  dwValue;
1058         ALG_ID Algid;
1059         DWORD  dwLength;
1060     } DUMMYUNIONNAME;
1061     CRYPT_DATA_BLOB ExtraInfo;
1062 } CRYPT_OID_INFO, *PCRYPT_OID_INFO;
1063 typedef const CRYPT_OID_INFO CCRYPT_OID_INFO, *PCCRYPT_OID_INFO;
1064
1065 typedef BOOL (WINAPI *PFN_CRYPT_ENUM_OID_INFO)(PCCRYPT_OID_INFO pInfo,
1066  void *pvArg);
1067
1068 typedef struct _CRYPT_SIGN_MESSAGE_PARA {
1069     DWORD                      cbSize;
1070     DWORD                      dwMsgEncodingType;
1071     PCCERT_CONTEXT             pSigningCert;
1072     CRYPT_ALGORITHM_IDENTIFIER HashAlgorithm;
1073     void *                     pvHashAuxInfo;
1074     DWORD                      cMsgCert;
1075     PCCERT_CONTEXT            *rgpMsgCert;
1076     DWORD                      cMsgCrl;
1077     PCCRL_CONTEXT             *rgpMsgCrl;
1078     DWORD                      cAuthAttr;
1079     PCRYPT_ATTRIBUTE           rgAuthAttr;
1080     DWORD                      cUnauthAttr;
1081     PCRYPT_ATTRIBUTE           rgUnauthAttr;
1082     DWORD                      dwFlags;
1083     DWORD                      dwInnerContentType;
1084 #ifdef CRYPT_SIGN_MESSAGE_PARA_HAS_CMS_FIELDS
1085     CRYPT_ALGORITHM_IDENTIFIER HashEncryptionAlgorithm;
1086     void *                     pvHashEncryptionAuxInfo;
1087 #endif
1088 } CRYPT_SIGN_MESSAGE_PARA, *PCRYPT_SIGN_MESSAGE_PARA;
1089
1090 #define CRYPT_MESSAGE_BARE_CONTENT_OUT_FLAG         0x00000001
1091 #define CRYPT_MESSAGE_ENCAPSULATED_CONTENT_OUT_FLAG 0x00000002
1092 #define CRYPT_MESSAGE_KEYID_SIGNER_FLAG             0x00000004
1093 #define CRYPT_MESSAGE_SILENT_KEYSET_FLAG            0x00000008
1094
1095 typedef PCCERT_CONTEXT (WINAPI *PFN_CRYPT_GET_SIGNER_CERTIFICATE)(void *pvArg,
1096  DWORD dwCertEncodingType, PCERT_INFO pSignerId, HCERTSTORE hMsgCertStore);
1097
1098 typedef struct _CRYPT_VERIFY_MESSAGE_PARA {
1099     DWORD                            cbSize;
1100     DWORD                            dwMsgAndCertEncodingType;
1101     HCRYPTPROV                       hCryptProv;
1102     PFN_CRYPT_GET_SIGNER_CERTIFICATE pfnGetSignerCertificate;
1103     void *                           pvGetArg;
1104 } CRYPT_VERIFY_MESSAGE_PARA, *PCRYPT_VERIFY_MESSAGE_PARA;
1105
1106 typedef struct _CRYPT_ENCRYPT_MESSAGE_PARA {
1107     DWORD                      cbSize;
1108     DWORD                      dwMsgEncodingType;
1109     HCRYPTPROV                 hCryptProv;
1110     CRYPT_ALGORITHM_IDENTIFIER ContentEncryptionAlgorithm;
1111     void *                     pvEncryptionAuxInfo;
1112     DWORD                      dwFlags;
1113     DWORD                      dwInnerContentType;
1114 } CRYPT_ENCRYPT_MESSAGE_PARA, *PCRYPT_ENCRYPT_MESSAGE_PARA;
1115
1116 #define CRYPT_MESSAGE_KEYID_RECIPIENT_FLAG 0x00000004
1117
1118 typedef struct _CRYPT_DECRYPT_MESSAGE_PARA {
1119     DWORD       cbSize;
1120     DWORD       dwMsgAndCertEncodingType;
1121     DWORD       cCertStore;
1122     HCERTSTORE *rghCertStore;
1123 #ifdef CRYPT_DECRYPT_MESSAGE_PARA_HAS_EXTRA_FIELDS
1124     DWORD       dwFlags;
1125 #endif
1126 } CRYPT_DECRYPT_MESSAGE_PARA, *PCRYPT_DECRYPT_MESSAGE_PARA;
1127
1128 typedef struct _CRYPT_HASH_MESSAGE_PARA {
1129     DWORD                      cbSize;
1130     DWORD                      dwMsgEncodingType;
1131     HCRYPTPROV                 hCryptProv;
1132     CRYPT_ALGORITHM_IDENTIFIER HashAlgorithm;
1133     void *                     pvHashAuxInfo;
1134 } CRYPT_HASH_MESSAGE_PARA, *PCRYPT_HASH_MESSAGE_PARA;
1135
1136 typedef struct _CRYPT_KEY_SIGN_MESSAGE_PARA {
1137     DWORD                      cbSize;
1138     DWORD                      dwMsgAndCertEncodingType;
1139     HCRYPTPROV                 hCryptProv;
1140     DWORD                      dwKeySpec;
1141     CRYPT_ALGORITHM_IDENTIFIER HashAlgorithm;
1142     void *                     pvHashAuxInfo;
1143 } CRYPT_KEY_SIGN_MESSAGE_PARA, *PCRYPT_KEY_SIGN_MESSAGE_PARA;
1144
1145 typedef struct _CRYPT_KEY_VERIFY_MESSAGE_PARA {
1146     DWORD      cbSize;
1147     DWORD      dwMsgEncodingType;
1148     HCRYPTPROV hCryptProv;
1149 } CRYPT_KEY_VERIFY_MESSAGE_PARA, *PCRYPT_KEY_VERIFY_MESSAGE_PARA;
1150
1151 typedef struct _CRYPT_URL_ARRAY {
1152     DWORD   cUrl;
1153     LPWSTR *rgwszUrl;
1154 } CRYPT_URL_ARRAY, *PCRYPT_URL_ARRAY;
1155
1156 typedef struct _CRYPT_URL_INFO {
1157     DWORD  cbSize;
1158     DWORD  dwSyncDeltaTime;
1159     DWORD  cGroup;
1160     DWORD *rgcGroupEntry;
1161 } CRYPT_URL_INFO, *PCRYPT_URL_INFO;
1162
1163 /* OID group IDs */
1164 #define CRYPT_HASH_ALG_OID_GROUP_ID     1
1165 #define CRYPT_ENCRYPT_ALG_OID_GROUP_ID  2
1166 #define CRYPT_PUBKEY_ALG_OID_GROUP_ID   3
1167 #define CRYPT_SIGN_ALG_OID_GROUP_ID     4
1168 #define CRYPT_RDN_ATTR_OID_GROUP_ID     5
1169 #define CRYPT_EXT_OR_ATTR_OID_GROUP_ID  6
1170 #define CRYPT_ENHKEY_USAGE_OID_GROUP_ID 7
1171 #define CRYPT_POLICY_OID_GROUP_ID       8
1172 #define CRYPT_TEMPLATE_OID_GROUP_ID     9
1173 #define CRYPT_LAST_OID_GROUP_ID         9
1174
1175 #define CRYPT_FIRST_ALG_OID_GROUP_ID CRYPT_HASH_ALG_OID_GROUP_ID
1176 #define CRYPT_LAST_ALG_OID_GROUP_ID  CRYPT_SIGN_ALG_OID_GROUP_ID
1177
1178 #define CRYPT_OID_INHIBIT_SIGNATURE_FORMAT_FLAG  0x1
1179 #define CRYPT_OID_USE_PUBKEY_PARA_FOR_PKCS7_FLAG 0x2
1180 #define CRYPT_OID_NO_NULL_ALGORITHM_PARA_FLAG    0x4
1181
1182 #define CRYPT_OID_INFO_OID_KEY   1
1183 #define CRYPT_OID_INFO_NAME_KEY  2
1184 #define CRYPT_OID_INFO_ALGID_KEY 3
1185 #define CRYPT_OID_INFO_SIGN_KEY  4
1186
1187 /* Algorithm IDs */
1188
1189 #define GET_ALG_CLASS(x)                (x & (7 << 13))
1190 #define GET_ALG_TYPE(x)                 (x & (15 << 9))
1191 #define GET_ALG_SID(x)                  (x & (511))
1192
1193 /* Algorithm Classes */
1194 #define ALG_CLASS_ANY                   (0)
1195 #define ALG_CLASS_SIGNATURE             (1 << 13)
1196 #define ALG_CLASS_MSG_ENCRYPT           (2 << 13)
1197 #define ALG_CLASS_DATA_ENCRYPT          (3 << 13)
1198 #define ALG_CLASS_HASH                  (4 << 13)
1199 #define ALG_CLASS_KEY_EXCHANGE          (5 << 13)
1200 /* Algorithm types */
1201 #define ALG_TYPE_ANY                    (0)
1202 #define ALG_TYPE_DSS                    (1 << 9)
1203 #define ALG_TYPE_RSA                    (2 << 9)
1204 #define ALG_TYPE_BLOCK                  (3 << 9)
1205 #define ALG_TYPE_STREAM                 (4 << 9)
1206 #define ALG_TYPE_DH                     (5 << 9)
1207 #define ALG_TYPE_SECURECHANNEL          (6 << 9)
1208
1209 /* SIDs */
1210 #define ALG_SID_ANY                     (0)
1211 /* RSA SIDs */
1212 #define ALG_SID_RSA_ANY                 0
1213 #define ALG_SID_RSA_PKCS                1
1214 #define ALG_SID_RSA_MSATWORK            2
1215 #define ALG_SID_RSA_ENTRUST             3
1216 #define ALG_SID_RSA_PGP                 4
1217 /* DSS SIDs */
1218 #define ALG_SID_DSS_ANY                 0
1219 #define ALG_SID_DSS_PKCS                1
1220 #define ALG_SID_DSS_DMS                 2
1221
1222 /* DES SIDs */
1223 #define ALG_SID_DES                     1
1224 #define ALG_SID_3DES                    3
1225 #define ALG_SID_DESX                    4
1226 #define ALG_SID_IDEA                    5
1227 #define ALG_SID_CAST                    6
1228 #define ALG_SID_SAFERSK64               7
1229 #define ALG_SID_SAFERSK128              8
1230 #define ALG_SID_3DES_112                9
1231 /* Diffie-Hellmans SIDs */
1232 #define ALG_SID_DH_SANDF                1
1233 #define ALG_SID_DH_EPHEM                2
1234 #define ALG_SID_AGREED_KEY_ANY          3
1235 #define ALG_SID_KEA                     4
1236 /* RC2 SIDs */
1237 #define ALG_SID_RC4                     1
1238 #define ALG_SID_RC2                     2
1239 #define ALG_SID_SEAL                    2
1240 /* Hash SIDs */
1241 #define ALG_SID_MD2                     1
1242 #define ALG_SID_MD4                     2
1243 #define ALG_SID_MD5                     3
1244 #define ALG_SID_SHA                     4
1245 #define ALG_SID_SHA1                    CALG_SHA
1246 #define ALG_SID_MAC                     5
1247 #define ALG_SID_RIPEMD                  6
1248 #define ALG_SID_RIPEMD160               7
1249 #define ALG_SID_SSL3SHAMD5              8
1250 #define ALG_SID_HMAC                    9
1251 #define ALG_SID_TLS1PRF                10
1252 /* SCHANNEL SIDs */
1253 #define ALG_SID_SSL3_MASTER             1
1254 #define ALG_SID_SCHANNEL_MASTER_HASH    2
1255 #define ALG_SID_SCHANNEL_MAC_KEY        3
1256 #define ALG_SID_PCT1_MASTER             4
1257 #define ALG_SID_SSL2_MASTER             5
1258 #define ALG_SID_TLS1_MASTER             6
1259 #define ALG_SID_SCHANNEL_ENC_KEY        7
1260 #define ALG_SID_EXAMPLE                80
1261
1262 /* Algorithm Definitions */
1263 #define CALG_MD2                  (ALG_CLASS_HASH         | ALG_TYPE_ANY           | ALG_SID_MD2)
1264 #define CALG_MD4                  (ALG_CLASS_HASH         | ALG_TYPE_ANY           | ALG_SID_MD4)
1265 #define CALG_MD5                  (ALG_CLASS_HASH         | ALG_TYPE_ANY           | ALG_SID_MD5)
1266 #define CALG_SHA                  (ALG_CLASS_HASH         | ALG_TYPE_ANY           | ALG_SID_SHA)
1267 #define CALG_SHA1 CALG_SHA
1268 #define CALG_MAC                  (ALG_CLASS_HASH         | ALG_TYPE_ANY           | ALG_SID_MAC)
1269 #define CALG_SSL3_SHAMD5          (ALG_CLASS_HASH         | ALG_TYPE_ANY           | ALG_SID_SSL3SHAMD5)
1270 #define CALG_HMAC                 (ALG_CLASS_HASH         | ALG_TYPE_ANY           | ALG_SID_HMAC)
1271 #define CALG_TLS1PRF              (ALG_CLASS_HASH         | ALG_TYPE_ANY           | ALG_SID_TLS1PRF)
1272 #define CALG_RSA_SIGN             (ALG_CLASS_SIGNATURE    | ALG_TYPE_RSA           | ALG_SID_RSA_ANY)
1273 #define CALG_DSS_SIGN             (ALG_CLASS_SIGNATURE    | ALG_TYPE_DSS           | ALG_SID_DSS_ANY)
1274 #define CALG_NO_SIGN              (ALG_CLASS_SIGNATURE    | ALG_TYPE_ANY           | ALG_SID_ANY)
1275 #define CALG_DH_SF                (ALG_CLASS_KEY_EXCHANGE | ALG_TYPE_DH            | ALG_SID_DH_SANDF)
1276 #define CALG_DH_EPHEM             (ALG_CLASS_KEY_EXCHANGE | ALG_TYPE_DH            | ALG_SID_DH_EPHEM)
1277 #define CALG_RSA_KEYX             (ALG_CLASS_KEY_EXCHANGE | ALG_TYPE_RSA           | ALG_SID_RSA_ANY)
1278 #define CALG_DES                  (ALG_CLASS_DATA_ENCRYPT | ALG_TYPE_BLOCK         | ALG_SID_DES)
1279 #define CALG_RC2                  (ALG_CLASS_DATA_ENCRYPT | ALG_TYPE_BLOCK         | ALG_SID_RC2)
1280 #define CALG_3DES                 (ALG_CLASS_DATA_ENCRYPT | ALG_TYPE_BLOCK         | ALG_SID_3DES)
1281 #define CALG_3DES_112             (ALG_CLASS_DATA_ENCRYPT | ALG_TYPE_BLOCK         | ALG_SID_3DES_112)
1282 #define CALG_RC4                  (ALG_CLASS_DATA_ENCRYPT | ALG_TYPE_STREAM        | ALG_SID_RC4)
1283 #define CALG_SEAL                 (ALG_CLASS_DATA_ENCRYPT | ALG_TYPE_STREAM        | ALG_SID_SEAL)
1284 #define CALG_SSL3_MASTER          (ALG_CLASS_MSG_ENCRYPT  | ALG_TYPE_SECURECHANNEL | ALG_SID_SSL3_MASTER)
1285 #define CALG_SCHANNEL_MASTER_HASH (ALG_CLASS_MSG_ENCRYPT  | ALG_TYPE_SECURECHANNEL | ALG_SID_SCHANNEL_MASTER_HASH)
1286 #define CALG_SCHANNEL_MAC_KEY     (ALG_CLASS_MSG_ENCRYPT  | ALG_TYPE_SECURECHANNEL | ALG_SID_SCHANNEL_MAC_KEY)
1287 #define CALG_SCHANNEL_ENC_KEY     (ALG_CLASS_MSG_ENCRYPT  | ALG_TYPE_SECURECHANNEL | ALG_SID_SCHANNEL_ENC_KEY)
1288 #define CALG_PCT1_MASTER          (ALG_CLASS_MSG_ENCRYPT  | ALG_TYPE_SECURECHANNEL | ALG_SID_PCT1_MASTER)
1289 #define CALG_SSL2_MASTER          (ALG_CLASS_MSG_ENCRYPT  | ALG_TYPE_SECURECHANNEL | ALG_SID_SSL2_MASTER)
1290 #define CALG_TLS1_MASTER          (ALG_CLASS_MSG_ENCRYPT  | ALG_TYPE_SECURECHANNEL | ALG_SID_TLS1_MASTER)
1291
1292 /* Protocol Flags */
1293 #define CRYPT_FLAG_PCT1    0x0001
1294 #define CRYPT_FLAG_SSL2    0x0002
1295 #define CRYPT_FLAG_SSL3    0x0004
1296 #define CRYPT_FLAG_TLS1    0x0008
1297 #define CRYPT_FLAG_IPSEC   0x0010
1298 #define CRYPT_FLAG_SIGNING 0x0020
1299
1300 /* Provider names */
1301 #define MS_DEF_PROV_A                            "Microsoft Base Cryptographic Provider v1.0"
1302 #if defined(__GNUC__)
1303 # define MS_DEF_PROV_W (const WCHAR []){ 'M','i','c','r','o','s','o','f','t',' ', \
1304         'B','a','s','e',' ','C','r','y','p','t','o','g','r','a','p','h','i','c',' ', \
1305         'P','r','o','v','i','d','e','r',' ','v','1','.','0',0 }
1306 #elif defined(_MSC_VER)
1307 # define MS_DEF_PROV_W      L"Microsoft Base Cryptographic Provider v1.0"
1308 #else
1309 static const WCHAR MS_DEF_PROV_W[] =             { 'M','i','c','r','o','s','o','f','t',' ',
1310         'B','a','s','e',' ','C','r','y','p','t','o','g','r','a','p','h','i','c',' ',
1311         'P','r','o','v','i','d','e','r',' ','v','1','.','0',0 };
1312 #endif
1313 #define MS_DEF_PROV                              WINELIB_NAME_AW(MS_DEF_PROV_)
1314
1315 #define MS_ENHANCED_PROV_A                       "Microsoft Enhanced Cryptographic Provider v1.0"
1316 #if defined(__GNUC__)
1317 # define MS_ENHANCED_PROV_W (const WCHAR []){ 'M','i','c','r','o','s','o','f','t',' ', \
1318         'E','n','h','a','n','c','e','d',' ','C','r','y','p','t','o','g','r','a','p','h','i','c',' ', \
1319         'P','r','o','v','i','d','e','r',' ','v','1','.','0',0 }
1320 #elif defined(_MSC_VER)
1321 # define MS_ENHANCED_PROV_W     L"Microsoft Enhanced Cryptographic Provider v1.0"
1322 #else
1323 static const WCHAR MS_ENHANCED_PROV_W[] =        { 'M','i','c','r','o','s','o','f','t',' ',
1324         'E','n','h','a','n','c','e','d',' ','C','r','y','p','t','o','g','r','a','p','h','i','c',' ',
1325         'P','r','o','v','i','d','e','r',' ','v','1','.','0',0 };
1326 #endif
1327 #define MS_ENHANCED_PROV                         WINELIB_NAME_AW(MS_ENHANCED_PROV_)
1328
1329 #define MS_STRONG_PROV_A                         "Microsoft Strong Cryptographic Provider"
1330 #if defined(__GNUC__)
1331 # define MS_STRONG_PROV_W (const WCHAR []){ 'M','i','c','r','o','s','o','f','t',' ', \
1332         'S','t','r','o','n','g',' ','C','r','y','p','t','o','g','r','a','p','h','i','c',' ', \
1333         'P','r','o','v','i','d','e','r',0 }
1334 #elif defined(_MSC_VER)
1335 # define MS_STRONG_PROV_W     L"Microsoft Strong Cryptographic Provider"
1336 #else
1337 static const WCHAR MS_STRONG_PROV_W[] =          { 'M','i','c','r','o','s','o','f','t',' ',
1338         'S','t','r','o','n','g',' ','C','r','y','p','t','o','g','r','a','p','h','i','c',' ',
1339         'P','r','o','v','i','d','e','r',0 };
1340 #endif
1341 #define MS_STRONG_PROV                           WINELIB_NAME_AW(MS_STRONG_PROV_)
1342
1343 #define MS_DEF_RSA_SIG_PROV_A                    "Microsoft RSA Signature Cryptographic Provider"
1344 #if defined(__GNUC__)
1345 # define MS_DEF_RSA_SIG_PROV_W (const WCHAR []){ 'M','i','c','r','o','s','o','f','t',' ', \
1346         'R','S','A',' ','S','i','g','n','a','t','u','r','e',' ', \
1347         'C','r','y','p','t','o','g','r','a','p','h','i','c',' ','P','r','o','v','i','d','e','r',0 }
1348 #elif defined(_MSC_VER)
1349 # define MS_DEF_RSA_SIG_PROV_W      L"Microsoft RSA Signature Cryptographic Provider"
1350 #else
1351 static const WCHAR MS_DEF_RSA_SIG_PROV_W[] =     { 'M','i','c','r','o','s','o','f','t',' ',
1352         'R','S','A',' ','S','i','g','n','a','t','u','r','e',' ',
1353         'C','r','y','p','t','o','g','r','a','p','h','i','c',' ','P','r','o','v','i','d','e','r',0 };
1354 #endif
1355 #define MS_DEF_RSA_SIG_PROV                      WINELIB_NAME_AW(MS_DEF_RSA_SIG_PROV_)
1356
1357 #define MS_DEF_RSA_SCHANNEL_PROV_A               "Microsoft RSA SChannel Cryptographic Provider"
1358 #if defined(__GNUC__)
1359 # define MS_DEF_RSA_SCHANNEL_PROV_W (const WCHAR []){ 'M','i','c','r','o','s','o','f','t',' ', \
1360         'R','S','A',' ','S','C','h','a','n','n','e','l',' ', \
1361         'C','r','y','p','t','o','g','r','a','p','h','i','c',' ','P','r','o','v','i','d','e','r',0 }
1362 #elif defined(_MSC_VER)
1363 # define MS_DEF_RSA_SCHANNEL_PROV_W     L"Microsoft RSA SChannel Cryptographic Provider"
1364 #else
1365 static const WCHAR MS_DEF_RSA_SCHANNEL_PROV_W[] = { 'M','i','c','r','o','s','o','f','t',' ',
1366         'R','S','A',' ','S','C','h','a','n','n','e','l',' ',
1367         'C','r','y','p','t','o','g','r','a','p','h','i','c',' ','P','r','o','v','i','d','e','r',0 };
1368 #endif
1369 #define MS_DEF_RSA_SCHANNEL_PROV                 WINELIB_NAME_AW(MS_DEF_RSA_SCHANNEL_PROV_)
1370
1371 #define MS_DEF_DSS_PROV_A                        "Microsoft Base DSS Cryptographic Provider"
1372 #if defined(__GNUC__)
1373 # define MS_DEF_DSS_PROV_W (const WCHAR []){ 'M','i','c','r','o','s','o','f','t',' ', \
1374         'B','a','s','e',' ','D','S','S',' ', \
1375         'C','r','y','p','t','o','g','r','a','p','h','i','c',' ','P','r','o','v','i','d','e','r',0 }
1376 #elif defined(_MSC_VER)
1377 # define MS_DEF_DSS_PROV_W     L"Microsoft Base DSS Cryptographic Provider"
1378 #else
1379 static const WCHAR MS_DEF_DSS_PROV_W[] =         { 'M','i','c','r','o','s','o','f','t',' ',
1380         'B','a','s','e',' ','D','S','S',' ',
1381         'C','r','y','p','t','o','g','r','a','p','h','i','c',' ','P','r','o','v','i','d','e','r',0 };
1382 #endif
1383 #define MS_DEF_DSS_PROV                          WINELIB_NAME_AW(MS_DEF_DSS_PROV_)
1384
1385 #define MS_DEF_DSS_DH_PROV_A                     "Microsoft Base DSS and Diffie-Hellman Cryptographic Provider"
1386 #if defined(__GNUC__)
1387 # define MS_DEF_DSS_DH_PROV_W (const WCHAR []){ 'M','i','c','r','o','s','o','f','t',' ', \
1388         'B','a','s','e',' ','D','S','S',' ','a','n','d',' ', \
1389         'D','i','f','f','i','e','-','H','e','l','l','m','a','n',' ', \
1390         'C','r','y','p','t','o','g','r','a','p','h','i','c',' ','P','r','o','v','i','d','e','r',0 }
1391 #elif defined(_MSC_VER)
1392 # define MS_DEF_DSS_DH_PROV_W     L"Microsoft Base DSS and Diffie-Hellman Cryptographic Provider"
1393 #else
1394 static const WCHAR MS_DEF_DSS_DH_PROV_W[] =      { 'M','i','c','r','o','s','o','f','t',' ',
1395         'B','a','s','e',' ','D','S','S',' ','a','n','d',' ',
1396         'D','i','f','f','i','e','-','H','e','l','l','m','a','n',' ',
1397         'C','r','y','p','t','o','g','r','a','p','h','i','c',' ','P','r','o','v','i','d','e','r',0 };
1398 #endif
1399 #define MS_DEF_DSS_DH_PROV                       WINELIB_NAME_AW(MS_DEF_DSS_DH_PROV_)
1400
1401 #define MS_ENH_DSS_DH_PROV_A                     "Microsoft Enhanced DSS and Diffie-Hellman Cryptographic Provider"
1402 #if defined(__GNUC__)
1403 # define MS_ENH_DSS_DH_PROV_W (const WCHAR []){ 'M','i','c','r','o','s','o','f','t',' ', \
1404         'E','n','h','a','n','c','e','d',' ','D','S','S',' ','a','n','d',' ', \
1405         'D','i','f','f','i','e','-','H','e','l','l','m','a','n',' ', \
1406         'C','r','y','p','t','o','g','r','a','p','h','i','c',' ','P','r','o','v','i','d','e','r',0 }
1407 #elif defined(_MSC_VER)
1408 # define MS_ENH_DSS_DH_PROV_W     L"Microsoft Enhanced DSS and Diffie-Hellman Cryptographic Provider"
1409 #else
1410 static const WCHAR MS_ENH_DSS_DH_PROV_W[] =      { 'M','i','c','r','o','s','o','f','t',' ',
1411         'E','n','h','a','n','c','e','d',' ','D','S','S',' ','a','n','d',' ',
1412         'D','i','f','f','i','e','-','H','e','l','l','m','a','n',' ',
1413         'C','r','y','p','t','o','g','r','a','p','h','i','c',' ','P','r','o','v','i','d','e','r',0 };
1414 #endif
1415 #define MS_ENH_DSS_DH_PROV                       WINELIB_NAME_AW(MS_ENH_DSS_DH_PROV_)
1416
1417 #define MS_DEF_DH_SCHANNEL_PROV_A                "Microsoft DH SChannel Cryptographic Provider"
1418 #if defined(__GNUC__)
1419 # define MS_DEF_DH_SCHANNEL_PROV_W (const WCHAR []){ 'M','i','c','r','o','s','o','f','t',' ', \
1420         'D','H',' ','S','C','h','a','n','n','e','l',' ', \
1421         'C','r','y','p','t','o','g','r','a','p','h','i','c',' ','P','r','o','v','i','d','e','r',0 }
1422 #elif defined(_MSC_VER)
1423 # define MS_DEF_DH_SCHANNEL_PROV_W     L"Microsoft DH SChannel Cryptographic Provider"
1424 #else
1425 static const WCHAR MS_DEF_DH_SCHANNEL_PROV_W[] = { 'M','i','c','r','o','s','o','f','t',' ',
1426         'D','H',' ','S','C','h','a','n','n','e','l',' ',
1427         'C','r','y','p','t','o','g','r','a','p','h','i','c',' ','P','r','o','v','i','d','e','r',0 };
1428 #endif
1429 #define MS_DEF_DH_SCHANNEL_PROV                  WINELIB_NAME_AW(MS_DEF_DH_SCHANNEL_PROV_)
1430
1431 #define MS_SCARD_PROV_A                          "Microsoft Base Smart Card Cryptographic Provider"
1432 #if defined(__GNUC__)
1433 # define MS_SCARD_PROV_W (const WCHAR []){ 'M','i','c','r','o','s','o','f','t',' ', \
1434         'B','a','s','e',' ','S','m','a','r','t',' ','C','a','r','d',' ', \
1435         'C','r','y','p','t','o','g','r','a','p','h','i','c',' ','P','r','o','v','i','d','e','r',0 }
1436 #elif defined(_MSC_VER)
1437 # define MS_SCARD_PROV_W     L"Microsoft Base Smart Card Cryptographic Provider"
1438 #else
1439 static const WCHAR MS_SCARD_PROV_W[] =           { 'M','i','c','r','o','s','o','f','t',' ',
1440         'B','a','s','e',' ','S','m','a','r','t',' ','C','a','r','d',' ',
1441         'C','r','y','p','t','o','g','r','a','p','h','i','c',' ','P','r','o','v','i','d','e','r',0 };
1442 #endif
1443 #define MS_SCARD_PROV                            WINELIB_NAME_AW(MS_SCARD_PROV_)
1444
1445 /* Key Specs*/
1446 #define AT_KEYEXCHANGE          1
1447 #define AT_SIGNATURE            2
1448
1449 /* Provider Types */
1450 #define PROV_RSA_FULL             1
1451 #define PROV_RSA_SIG              2
1452 #define PROV_DSS                  3
1453 #define PROV_FORTEZZA             4
1454 #define PROV_MS_EXCHANGE          5
1455 #define PROV_SSL                  6
1456 #define PROV_RSA_SCHANNEL         12
1457 #define PROV_DSS_DH               13
1458 #define PROV_EC_ECDSA_SIG         14
1459 #define PROV_EC_ECNRA_SIG         15
1460 #define PROV_EC_ECDSA_FULL        16
1461 #define PROV_EC_ECNRA_FULL        17
1462 #define PROV_DH_SCHANNEL          18
1463 #define PROV_SPYRUS_LYNKS         20
1464 #define PROV_RNG                  21
1465 #define PROV_INTEL_SEC            22
1466 #define PROV_REPLACE_OWF          23
1467 #define PROV_RSA_AES              24
1468
1469 /* FLAGS Section */
1470
1471 /* Provider Parameters */
1472 #define PP_ENUMALGS             1
1473 #define PP_ENUMCONTAINERS       2
1474 #define PP_IMPTYPE              3
1475 #define PP_NAME                 4
1476 #define PP_VERSION              5
1477 #define PP_CONTAINER            6
1478
1479 #define CRYPT_FIRST             1
1480 #define CRYPT_NEXT              2
1481
1482 #define CRYPT_IMPL_HARDWARE     1
1483 #define CRYPT_IMPL_SOFTWARE     2
1484 #define CRYPT_IMPL_MIXED        3
1485 #define CRYPT_IMPL_UNKNOWN      4
1486
1487 /* CryptAcquireContext */
1488 #define CRYPT_VERIFYCONTEXT       0xF0000000
1489 #define CRYPT_NEWKEYSET           0x00000008
1490 #define CRYPT_DELETEKEYSET        0x00000010
1491 #define CRYPT_MACHINE_KEYSET      0x00000020
1492 #define CRYPT_SILENT              0x00000040
1493
1494 /* Crypt{Get|Set}Provider */
1495 #define CRYPT_MACHINE_DEFAULT     0x00000001
1496 #define CRYPT_USER_DEFAULT        0x00000002
1497 #define CRYPT_DELETE_DEFAULT      0x00000004
1498
1499 /* Crypt{Get/Set}ProvParam */
1500 #define PP_CLIENT_HWND          1
1501 #define PP_ENUMALGS             1
1502 #define PP_ENUMCONTAINERS       2
1503 #define PP_IMPTYPE              3
1504 #define PP_NAME                 4
1505 #define PP_VERSION              5
1506 #define PP_CONTAINER            6
1507 #define PP_CHANGE_PASSWORD      7
1508 #define PP_KEYSET_SEC_DESCR     8
1509 #define PP_KEY_TYPE_SUBTYPE     10
1510 #define PP_CONTEXT_INFO         11
1511 #define PP_KEYEXCHANGE_KEYSIZE  12
1512 #define PP_SIGNATURE_KEYSIZE    13
1513 #define PP_KEYEXCHANGE_ALG      14
1514 #define PP_SIGNATURE_ALG        15
1515 #define PP_PROVTYPE             16
1516 #define PP_KEYSTORAGE           17
1517 #define PP_SYM_KEYSIZE          19
1518 #define PP_SESSION_KEYSIZE      20
1519 #define PP_UI_PROMPT            21
1520 #define PP_ENUMALGS_EX          22
1521 #define PP_DELETEKEY            24
1522 #define PP_ENUMMANDROOTS        25
1523 #define PP_ENUMELECTROOTS       26
1524 #define PP_KEYSET_TYPE          27
1525 #define PP_ADMIN_PIN            31
1526 #define PP_KEYEXCHANGE_PIN      32
1527 #define PP_SIGNATURE_PIN        33
1528 #define PP_SIG_KEYSIZE_INC      34
1529 #define PP_KEYX_KEYSIZE_INC     35
1530 #define PP_UNIQUE_CONTAINER     36
1531 #define PP_SGC_INFO             37
1532 #define PP_USE_HARDWARE_RNG     38
1533 #define PP_KEYSPEC              39
1534 #define PP_ENUMEX_SIGNING_PROT  40
1535
1536 /* Crypt{Get/Set}KeyParam */
1537 #define KP_IV                   1
1538 #define KP_SALT                 2
1539 #define KP_PADDING              3
1540 #define KP_MODE                 4
1541 #define KP_MODE_BITS            5
1542 #define KP_PERMISSIONS          6
1543 #define KP_ALGID                7
1544 #define KP_BLOCKLEN             8
1545 #define KP_KEYLEN               9
1546 #define KP_SALT_EX              10
1547 #define KP_P                    11
1548 #define KP_G                    12
1549 #define KP_Q                    13
1550 #define KP_X                    14
1551 #define KP_Y                    15
1552 #define KP_RA                   16
1553 #define KP_RB                   17
1554 #define KP_INFO                 18
1555 #define KP_EFFECTIVE_KEYLEN     19
1556 #define KP_SCHANNEL_ALG         20
1557 #define KP_CLIENT_RANDOM        21
1558 #define KP_SERVER_RANDOM        22
1559 #define KP_RP                   23
1560 #define KP_PRECOMP_MD5          24
1561 #define KP_PRECOMP_SHA          25
1562 #define KP_CERTIFICATE          26
1563 #define KP_CLEAR_KEY            27
1564 #define KP_PUB_EX_LEN           28
1565 #define KP_PUB_EX_VAL           29
1566 #define KP_KEYVAL               30
1567 #define KP_ADMIN_PIN            31
1568 #define KP_KEYEXCHANGE_PIN      32
1569 #define KP_SIGNATURE_PIN        33
1570 #define KP_PREHASH              34
1571
1572 /* CryptSignHash/CryptVerifySignature */
1573 #define CRYPT_NOHASHOID         0x00000001
1574 #define CRYPT_TYPE2_FORMAT      0x00000002
1575 #define CRYPT_X931_FORMAT       0x00000004
1576
1577 /* Crypt{Get,Set}HashParam */
1578 #define HP_ALGID                0x0001
1579 #define HP_HASHVAL              0x0002
1580 #define HP_HASHSIZE             0x0004
1581 #define HP_HMAC_INFO            0x0005
1582 #define HP_TLS1PRF_LABEL        0x0006
1583 #define HP_TLS1PRF_SEED         0x0007
1584
1585 /* Crypt{Get,Set}KeyParam */
1586 #define CRYPT_MODE_CBC          1
1587 #define CRYPT_MODE_ECB          2
1588 #define CRYPT_MODE_OFB          3
1589 #define CRYPT_MODE_CFB          4
1590
1591 #define CRYPT_ENCRYPT           0x0001 
1592 #define CRYPT_DECRYPT           0x0002
1593 #define CRYPT_EXPORT            0x0004
1594 #define CRYPT_READ              0x0008
1595 #define CRYPT_WRITE             0x0010
1596 #define CRYPT_MAC               0x0020
1597
1598 /* Crypt*Key */
1599 #define CRYPT_EXPORTABLE        0x00000001
1600 #define CRYPT_USER_PROTECTED    0x00000002
1601 #define CRYPT_CREATE_SALT       0x00000004
1602 #define CRYPT_UPDATE_KEY        0x00000008
1603 #define CRYPT_NO_SALT           0x00000010
1604 #define CRYPT_PREGEN            0x00000040
1605 #define CRYPT_SERVER            0x00000400
1606 #define CRYPT_ARCHIVABLE        0x00004000
1607
1608 /* CryptExportKey */
1609 #define CRYPT_SSL2_FALLBACK     0x00000002
1610 #define CRYPT_DESTROYKEY        0x00000004
1611 #define CRYPT_OAEP              0x00000040
1612
1613 /* CryptHashSessionKey */
1614 #define CRYPT_LITTLE_ENDIAN     0x00000001
1615
1616 /* Crypt{Protect,Unprotect}Data PROMPTSTRUCT flags */
1617 #define CRYPTPROTECT_PROMPT_ON_PROTECT    0x0001
1618 #define CRYPTPROTECT_PROMPT_ON_UNPROTECT  0x0002
1619 /* Crypt{Protect,Unprotect}Data flags */
1620 #define CRYPTPROTECT_UI_FORBIDDEN       0x0001
1621 #define CRYPTPROTECT_LOCAL_MACHINE      0x0004
1622 #define CRYPTPROTECT_AUDIT              0x0010
1623 #define CRYPTPROTECT_VERIFY_PROTECTION  0x0040
1624
1625 /* Blob Types */
1626 #define SIMPLEBLOB              0x1
1627 #define PUBLICKEYBLOB           0x6
1628 #define PRIVATEKEYBLOB          0x7
1629 #define PLAINTEXTKEYBLOB        0x8
1630 #define OPAQUEKEYBLOB           0x9
1631 #define PUBLICKEYBLOBEX         0xA
1632 #define SYMMETRICWRAPKEYBLOB    0xB
1633
1634 #define CUR_BLOB_VERSION        2
1635
1636 /* cert store provider types */
1637 #define CERT_STORE_PROV_MSG                  ((LPCSTR)1)
1638 #define CERT_STORE_PROV_MEMORY               ((LPCSTR)2)
1639 #define CERT_STORE_PROV_FILE                 ((LPCSTR)3)
1640 #define CERT_STORE_PROV_REG                  ((LPCSTR)4)
1641 #define CERT_STORE_PROV_PKCS7                ((LPCSTR)5)
1642 #define CERT_STORE_PROV_SERIALIZED           ((LPCSTR)6)
1643 #define CERT_STORE_PROV_FILENAME_A           ((LPCSTR)7)
1644 #define CERT_STORE_PROV_FILENAME_W           ((LPCSTR)8)
1645 #define CERT_STORE_PROV_SYSTEM_A             ((LPCSTR)9)
1646 #define CERT_STORE_PROV_SYSTEM_W             ((LPCSTR)10)
1647 #define CERT_STORE_PROV_SYSTEM               CERT_STORE_PROV_SYSTEM_W
1648 #define CERT_STORE_PROV_COLLECTION           ((LPCSTR)11)
1649 #define CERT_STORE_PROV_SYSTEM_REGISTRY_A    ((LPCSTR)12)
1650 #define CERT_STORE_PROV_SYSTEM_REGISTRY_W    ((LPCSTR)13)
1651 #define CERT_STORE_PROV_SYSTEM_REGISTRY      CERT_STORE_PROV_SYSTEM_REGISTRY_W
1652 #define CERT_STORE_PROV_PHYSICAL_W           ((LPCSTR)14)
1653 #define CERT_STORE_PROV_PHYSICAL             CERT_STORE_PROV_PHYSICAL_W
1654 #define CERT_STORE_PROV_SMART_CARD_W         ((LPCSTR)15)
1655 #define CERT_STORE_PROV_SMART_CARD           CERT_STORE_PROV_SMART_CARD_W
1656 #define CERT_STORE_PROV_LDAP_W               ((LPCSTR)16)
1657 #define CERT_STORE_PROV_LDAP                 CERT_STORE_PROV_LDAP_W
1658
1659 #define sz_CERT_STORE_PROV_MEMORY            "Memory"
1660 #define sz_CERT_STORE_PROV_FILENAME_W        "File"
1661 #define sz_CERT_STORE_PROV_FILENAME          sz_CERT_STORE_PROV_FILENAME_W
1662 #define sz_CERT_STORE_PROV_SYSTEM_W          "System"
1663 #define sz_CERT_STORE_PROV_SYSTEM            sz_CERT_STORE_PROV_SYSTEM_W
1664 #define sz_CERT_STORE_PROV_PKCS7             "PKCS7"
1665 #define sz_CERT_STORE_PROV_SERIALIZED        "Serialized"
1666 #define sz_CERT_STORE_PROV_COLLECTION        "Collection"
1667 #define sz_CERT_STORE_PROV_SYSTEM_REGISTRY_W "SystemRegistry"
1668 #define sz_CERT_STORE_PROV_SYSTEM_REGISTRY   sz_CERT_STORE_PROV_SYSTEM_REGISTRY_W
1669 #define sz_CERT_STORE_PROV_PHYSICAL_W        "Physical"
1670 #define sz_CERT_STORE_PROV_PHYSICAL          sz_CERT_STORE_PROV_PHYSICAL_W
1671 #define sz_CERT_STORE_PROV_SMART_CARD_W      "SmartCard"
1672 #define sz_CERT_STORE_PROV_SMART_CARD        sz_CERT_STORE_PROV_SMART_CARD_W
1673 #define sz_CERT_STORE_PROV_LDAP_W            "Ldap"
1674 #define sz_CERT_STORE_PROV_LDAP              sz_CERT_STORE_PROV_LDAP_W
1675
1676 /* types for CertOpenStore dwEncodingType */
1677 #define CERT_ENCODING_TYPE_MASK 0x0000ffff
1678 #define CMSG_ENCODING_TYPE_MASK 0xffff0000
1679 #define GET_CERT_ENCODING_TYPE(x) ((x) & CERT_ENCODING_TYPE_MASK)
1680 #define GET_CMSG_ENCODING_TYPE(x) ((x) & CMSG_ENCODING_TYPE_MASK)
1681
1682 #define CRYPT_ASN_ENCODING  0x00000001
1683 #define CRYPT_NDR_ENCODING  0x00000002
1684 #define X509_ASN_ENCODING   0x00000001
1685 #define X509_NDR_ENCODING   0x00000002
1686 #define PKCS_7_ASN_ENCODING 0x00010000
1687 #define PKCS_7_NDR_ENCODING 0x00020000
1688
1689 /* system store locations */
1690 #define CERT_SYSTEM_STORE_LOCATION_MASK  0x00ff0000
1691 #define CERT_SYSTEM_STORE_LOCATION_SHIFT 16
1692
1693 /* system store location ids */
1694 /* hkcu */
1695 #define CERT_SYSTEM_STORE_CURRENT_USER_ID               1
1696 /* hklm */
1697 #define CERT_SYSTEM_STORE_LOCAL_MACHINE_ID              2
1698 /* hklm\Software\Microsoft\Cryptography\Services */
1699 #define CERT_SYSTEM_STORE_CURRENT_SERVICE_ID            4
1700 #define CERT_SYSTEM_STORE_SERVICES_ID                   5
1701 /* HKEY_USERS */
1702 #define CERT_SYSTEM_STORE_USERS_ID                      6
1703 /* hkcu\Software\Policies\Microsoft\SystemCertificates */
1704 #define CERT_SYSTEM_STORE_CURRENT_USER_GROUP_POLICY_ID  7
1705 /* hklm\Software\Policies\Microsoft\SystemCertificates */
1706 #define CERT_SYSTEM_STORE_LOCAL_MACHINE_GROUP_POLICY_ID 8
1707 /* hklm\Software\Microsoft\EnterpriseCertificates */
1708 #define CERT_SYSTEM_STORE_LOCAL_MACHINE_ENTERPRISE_ID   9
1709
1710 /* system store location values */
1711 #define CERT_SYSTEM_STORE_CURRENT_USER \
1712  (CERT_SYSTEM_STORE_CURRENT_USER_ID << CERT_SYSTEM_STORE_LOCATION_SHIFT)
1713 #define CERT_SYSTEM_STORE_LOCAL_MACHINE \
1714  (CERT_SYSTEM_STORE_LOCAL_MACHINE_ID << CERT_SYSTEM_STORE_LOCATION_SHIFT)
1715 #define CERT_SYSTEM_STORE_CURRENT_SERVICE \
1716  (CERT_SYSTEM_STORE_CURRENT_SERVICE_ID << CERT_SYSTEM_STORE_LOCATION_SHIFT)
1717 #define CERT_SYSTEM_STORE_SERVICES \
1718  (CERT_SYSTEM_STORE_SERVICES_ID << CERT_SYSTEM_STORE_LOCATION_SHIFT)
1719 #define CERT_SYSTEM_STORE_USERS \
1720  (CERT_SYSTEM_STORE_USERS_ID << CERT_SYSTEM_STORE_LOCATION_SHIFT)
1721 #define CERT_SYSTEM_STORE_CURRENT_USER_GROUP_POLICY \
1722  (CERT_SYSTEM_STORE_CURRENT_USER_GROUP_POLICY_ID << CERT_SYSTEM_STORE_LOCATION_SHIFT)
1723 #define CERT_SYSTEM_STORE_LOCAL_MACHINE_GROUP_POLICY \
1724  (CERT_SYSTEM_STORE_LOCAL_MACHINE_GROUP_POLICY_ID << CERT_SYSTEM_STORE_LOCATION_SHIFT)
1725 #define CERT_SYSTEM_STORE_LOCAL_MACHINE_ENTERPRISE \
1726  (CERT_SYSTEM_STORE_LOCAL_MACHINE_ENTERPRISE_ID << CERT_SYSTEM_STORE_LOCATION_SHIFT)
1727
1728 #if defined(__GNUC__)
1729 #define CERT_LOCAL_MACHINE_SYSTEM_STORE_REGPATH (const WCHAR[])\
1730  {'S','o','f','t','w','a','r','e','\\','M','i','c','r','o','s','o','f','t',\
1731   '\\','S','y','s','t','e','m','C','e','r','t','i','f','i','c','a','t','e','s',\
1732   0 }
1733 #define CERT_GROUP_POLICY_SYSTEM_STORE_REGPATH (const WCHAR[])\
1734  {'S','o','f','t','w','a','r','e','\\','P','o','l','i','c','i','e','s','\\',\
1735   'M','i','c','r','o','s','o','f','t','\\','S','y','s','t','e','m','C','e','r',\
1736   't','i','f','i','c','a','t','e','s',0 }
1737 #elif defined(_MSC_VER)
1738 #define CERT_LOCAL_MACHINE_SYSTEM_STORE_REGPATH \
1739  L"Software\\Microsoft\\SystemCertificates"
1740 #define CERT_GROUP_POLICY_SYSTEM_STORE_REGPATH \
1741  L"Software\\Policies\\Microsoft\\SystemCertificates"
1742 #else
1743 static const WCHAR CERT_LOCAL_MACHINE_SYSTEM_STORE_REGPATH[] = 
1744  {'S','o','f','t','w','a','r','e','\\','M','i','c','r','o','s','o','f','t','\\',
1745   'S','y','s','t','e','m','C','e','r','t','i','f','i','c','a','t','e','s',0 };
1746 static const WCHAR CERT_GROUP_POLICY_SYSTEM_STORE_REGPATH[] = 
1747  {'S','o','f','t','w','a','r','e','\\','P','o','l','i','c','i','e','s','\\',
1748   'M','i','c','r','o','s','o','f','t','\\','S','y','s','t','e','m','C','e','r',
1749   't','i','f','i','c','a','t','e','s',0 };
1750 #endif
1751
1752 #if defined(__GNUC__)
1753 #define CERT_EFSBLOB_REGPATH (const WCHAR[])\
1754 {'S','o','f','t','w','a','r','e','\\','P','o','l','i','c','i','e','s','\\',\
1755  'M','i','c','r','o','s','o','f','t','\\','S','y','s','t','e','m','C','e','r',\
1756  't','i','f','i','c','a','t','e','s','\\','E','F','S',0 }
1757 #define CERT_EFSBLOB_VALUE_NAME (const WCHAR[]) {'E','F','S','B','l','o','b',0 }
1758 #elif defined(_MSC_VER)
1759 #define CERT_EFSBLOB_REGPATH CERT_GROUP_POLICY_SYSTEM_STORE_REGPATH L"\\EFS"
1760 #define CERT_EFSBLOB_VALUE_NAME L"EFSBlob"
1761 #else
1762 static const WCHAR CERT_EFSBLOB_REGPATH[] =
1763  {'S','o','f','t','w','a','r','e','\\','P','o','l','i','c','i','e','s','\\',
1764   'M','i','c','r','o','s','o','f','t','\\','S','y','s','t','e','m','C','e','r',
1765   't','i','f','i','c','a','t','e','s','\\','E','F','S',0 };
1766 static const CERT_EFSBLOB_VALUE_NAME[] = { 'E','F','S','B','l','o','b',0 };
1767 #endif
1768
1769 #if defined(__GNUC__)
1770 #define CERT_PROT_ROOT_FLAGS_REGPATH (const WCHAR[])\
1771 {'\\','R','o','o','t','\\','P','r','o','t','e','c','t','e','d','R','o','o','t',\
1772  's',0 }
1773 #define CERT_PROT_ROOT_FLAGS_VALUE_NAME (const WCHAR[])\
1774 {'F','l','a','g','s',0 }
1775 #elif defined(_MSC_VER)
1776 #define CERT_PROT_ROOT_FLAGS_REGPATH L"\\Root\\ProtectedRoots"
1777 #define CERT_PROT_ROOT_FLAGS_VALUE_NAME L"Flags"
1778 #else
1779 static const WCHAR CERT_PROT_ROOT_FLAGS_REGPATH[] =
1780  { '\\','R','o','o','t','\\','P','r','o','t','e','c','t','e','d','R','o','o',
1781    't','s',0 };
1782 static const WCHAR CERT_PROT_ROOT_FLAGS_VALUE_NAME[] = {'F','l','a','g','s',0 };
1783 #endif
1784
1785 #define CERT_PROT_ROOT_DISABLE_CURRENT_USER_FLAG                0x01
1786 #define CERT_PROT_ROOT_INHIBIT_ADD_AT_INIT_FLAG                 0x02
1787 #define CERT_PROT_ROOT_INHIBIT_PURGE_LM_FLAG                    0x04
1788 #define CERT_PROT_ROOT_DISABLE_LM_AUTH_FLAG                     0x08
1789 #define CERT_PROT_ROOT_DISABLE_NT_AUTH_REQUIRED_FLAG            0x10
1790 #define CERT_PROT_ROOT_DISABLE_NOT_DEFINED_NAME_CONSTRAINT_FLAG 0x20
1791
1792 #if defined(__GNUC__)
1793 #define CERT_TRUST_PUB_SAFER_GROUP_POLICY_REGPATH (const WCHAR[])\
1794 {'S','o','f','t','w','a','r','e','\\','P','o','l','i','c','i','e','s','\\',\
1795  'M','i','c','r','o','s','o','f','t','\\','S','y','s','t','e','m','C','e','r',\
1796  't','i','f','i','c','a','t','e','s','\\','T','r','u','s','t','e','d',\
1797  'P','u','b','l','i','s','h','e','r','\\','S','a','f','e','r',0 }
1798 #elif defined(_MSC_VER)
1799 #define CERT_TRUST_PUB_SAFER_GROUP_POLICY_REGPATH \
1800  CERT_GROUP_POLICY_SYSTEM_STORE_REGPATH L"\\TrustedPublisher\\Safer"
1801 #else
1802 static const WCHAR CERT_TRUST_PUB_SAFER_GROUP_POLICY_REGPATH[] =
1803  {'S','o','f','t','w','a','r','e','\\','P','o','l','i','c','i','e','s','\\',
1804   'M','i','c','r','o','s','o','f','t','\\','S','y','s','t','e','m','C','e','r',
1805   't','i','f','i','c','a','t','e','s','\\','T','r','u','s','t','e','d',
1806   'P','u','b','l','i','s','h','e','r','\\','S','a','f','e','r',0 };
1807 #endif
1808
1809 #if defined(__GNUC__)
1810 #define CERT_TRUST_PUB_SAFER_LOCAL_MACHINE_REGPATH (const WCHAR[])\
1811 {'S','o','f','t','w','a','r','e','\\','M','i','c','r','o','s','o','f','t','\\',\
1812  'S','y','s','t','e','m','C','e','r','t','i','f','i','c','a','t','e','s','\\',\
1813  'T','r','u','s','t','e','d','P','u','b','l','i','s','h','e','r','\\',\
1814  'S','a','f','e','r',0 }
1815 #define CERT_TRUST_PUB_AUTHENTICODE_FLAGS_VALUE_NAME (const WCHAR[])\
1816 {'A','u','t','h','e','n','t','i','c','o','d','e','F','l','a','g','s',0 };
1817 #elif defined(_MSC_VER)
1818 #define CERT_TRUST_PUB_SAFER_LOCAL_MACHINE_REGPATH \
1819  CERT_LOCAL_MACHINE_SYSTEM_STORE_REGPATH L"\\TrustedPublisher\\Safer"
1820 #define CERT_TRUST_PUB_SAFER_LOCAL_MACHINE_REGPATH L"AuthenticodeFlags"
1821 #else
1822 static const WCHAR CERT_TRUST_PUB_SAFER_LOCAL_MACHINE_REGPATH[] =
1823  {'S','o','f','t','w','a','r','e','\\','M','i','c','r','o','s','o','f','t','\\',
1824   'S','y','s','t','e','m','C','e','r','t','i','f','i','c','a','t','e','s','\\',
1825   'T','r','u','s','t','e','d','P','u','b','l','i','s','h','e','r','\\',
1826   'S','a','f','e','r',0 };
1827 static const WCHAR CERT_TRUST_PUB_AUTHENTICODE_FLAGS_VALUE_NAME[] =
1828  { 'A','u','t','h','e','n','t','i','c','o','d','e','F','l','a','g','s',0 };
1829 #endif
1830
1831 #define CERT_TRUST_PUB_ALLOW_END_USER_TRUST         0x00000000
1832 #define CERT_TRUST_PUB_ALLOW_MACHINE_ADMIN_TRUST    0x00000001
1833 #define CERT_TRUST_PUB_ALLOW_ENTERPRISE_ADMIN_TRUST 0x00000002
1834 #define CERT_TRUST_PUB_ALLOW_TRUST_MASK             0x00000003
1835 #define CERT_TRUST_PUB_CHECK_PUBLISHER_REV_FLAG     0x00000100
1836 #define CERT_TRUST_PUB_CHECK_TIMESTAMP_REV_FLAG     0x00000200
1837
1838 /* flags for CertOpenStore dwFlags */
1839 #define CERT_STORE_NO_CRYPT_RELEASE_FLAG            0x00000001
1840 #define CERT_STORE_SET_LOCALIZED_NAME_FLAG          0x00000002
1841 #define CERT_STORE_DEFER_CLOSE_UNTIL_LAST_FREE_FLAG 0x00000004
1842 #define CERT_STORE_DELETE_FLAG                      0x00000010
1843 #define CERT_STORE_UNSAFE_PHYSICAL_FLAG             0x00000020
1844 #define CERT_STORE_SHARE_STORE_FLAG                 0x00000040
1845 #define CERT_STORE_SHARE_CONTEXT_FLAG               0x00000080
1846 #define CERT_STORE_MANIFOLD_FLAG                    0x00000100
1847 #define CERT_STORE_ENUM_ARCHIVED_FLAG               0x00000200
1848 #define CERT_STORE_UPDATE_KEYID_FLAG                0x00000400
1849 #define CERT_STORE_BACKUP_RESTORE_FLAG              0x00000800
1850 #define CERT_STORE_MAXIMUM_ALLOWED_FLAG             0x00001000
1851 #define CERT_STORE_CREATE_NEW_FLAG                  0x00002000
1852 #define CERT_STORE_OPEN_EXISTING_FLAG               0x00004000
1853 #define CERT_STORE_READONLY_FLAG                    0x00008000
1854
1855 #define CERT_REGISTRY_STORE_REMOTE_FLAG      0x00010000
1856 #define CERT_REGISTRY_STORE_SERIALIZED_FLAG  0x00020000
1857 #define CERT_REGISTRY_STORE_ROAMING_FLAG     0x00040000
1858 #define CERT_REGISTRY_STORE_MY_IE_DIRTY_FLAG 0x00080000
1859 #define CERT_REGISTRY_STORE_LM_GPT_FLAG      0x01000000
1860 #define CERT_REGISTRY_STORE_CLIENT_GPT_FLAG  0x80000000
1861
1862 #define CERT_FILE_STORE_COMMIT_ENABLE_FLAG 0x00010000
1863
1864 /* dwAddDisposition */
1865 #define CERT_STORE_ADD_NEW                                 1
1866 #define CERT_STORE_ADD_USE_EXISTING                        2
1867 #define CERT_STORE_ADD_REPLACE_EXISTING                    3
1868 #define CERT_STORE_ADD_ALWAYS                              4
1869 #define CERT_STORE_ADD_REPLACE_EXISTING_INHERIT_PROPERTIES 5
1870 #define CERT_STORE_ADD_NEWER                               6
1871 #define CERT_STORE_ADD_NEWER_INHERIT_PROPERTIES            7
1872
1873 /* Installable OID function defs */
1874 #define CRYPT_OID_OPEN_STORE_PROV_FUNC     "CertDllOpenStoreProv"
1875 #define CRYPT_OID_ENCODE_OBJECT_FUNC       "CryptDllEncodeObject"
1876 #define CRYPT_OID_DECODE_OBJECT_FUNC       "CryptDllDecodeObject"
1877 #define CRYPT_OID_ENCODE_OBJECT_EX_FUNC    "CryptDllEncodeObjectEx"
1878 #define CRYPT_OID_DECODE_OBJECT_EX_FUNC    "CryptDllDecodeObjectEx"
1879 #define CRYPT_OID_CREATE_COM_OBJECT_FUNC   "CryptDllCreateComObject"
1880 #define CRYPT_OID_VERIFY_REVOCATION_FUNC   "CertDllVerifyRevocation"
1881 #define CRYPT_OID_VERIFY_CTL_USAGE_FUNC    "CertDllVerifyCTLUsage"
1882 #define CRYPT_OID_FORMAT_OBJECT_FUNC       "CryptDllFormatObject"
1883 #define CRYPT_OID_FIND_OID_INFO_FUNC       "CryptDllFindOIDInfo"
1884 #define CRYPT_OID_FIND_LOCALIZED_NAME_FUNC "CryptDllFindLocalizedName"
1885 #define CRYPT_OID_EXPORT_PUBLIC_KEY_INFO_FUNC  "CryptDllExportPublicKeyInfoEx"
1886 #define CRYPT_OID_IMPORT_PUBLIC_KEY_INFO_FUNC  "CryptDllImportPublicKeyInfoEx"
1887 #define CRYPT_OID_EXPORT_PRIVATE_KEY_INFO_FUNC "CryptDllExportPrivateKeyInfoEx"
1888 #define CRYPT_OID_IMPORT_PRIVATE_KEY_INFO_FUNC "CryptDllImportPrivateKeyInfoEx"
1889 #define CRYPT_OID_VERIFY_CERTIFICATE_CHAIN_POLICY_FUNC \
1890  "CertDllVerifyCertificateChainPolicy"
1891 #define URL_OID_GET_OBJECT_URL_FUNC    "UrlDllGetObjectUrl"
1892 #define TIME_VALID_OID_GET_OBJECT_FUNC "TimeValidDllGetObject"
1893
1894 #define CRYPT_OID_REGPATH "Software\\Microsoft\\Cryptography\\OID"
1895 #define CRYPT_OID_REG_ENCODING_TYPE_PREFIX "EncodingType "
1896 #if defined(__GNUC__)
1897 # define CRYPT_OID_REG_DLL_VALUE_NAME (const WCHAR []){ 'D','l','l',0 }
1898 # define CRYPT_OID_REG_FUNC_NAME_VALUE_NAME \
1899  (const WCHAR []){ 'F','u','n','c','N','a','m','e',0 }
1900 # define CRYPT_OID_REG_FLAGS_VALUE_NAME \
1901  (const WCHAR []){ 'C','r','y','p','t','F','l','a','g','s',0 }
1902 #elif defined(_MSC_VER)
1903 # define CRYPT_OID_REG_DLL_VALUE_NAME       L"Dll"
1904 # define CRYPT_OID_REG_FUNC_NAME_VALUE_NAME L"FuncName"
1905 # define CRYPT_OID_REG_FLAGS_VALUE_NAME     L"CryptFlags"
1906 #else
1907 static const WCHAR CRYPT_OID_REG_DLL_VALUE_NAME[] = { 'D','l','l',0 };
1908 static const WCHAR CRYPT_OID_REG_FUNC_NAME_VALUE_NAME[] =
1909  { 'F','u','n','c','N','a','m','e',0 };
1910 static const WCHAR CRYPT_OID_REG_FLAGS_VALUE_NAME[] =
1911  { 'C','r','y','p','t','F','l','a','g','s',0 };
1912 #endif
1913 #define CRYPT_OID_REG_FUNC_NAME_VALUE_NAME_A "FuncName"
1914 #define CRYPT_DEFAULT_OID                    "DEFAULT"
1915
1916 #define CRYPT_INSTALL_OID_FUNC_BEFORE_FLAG 1
1917
1918 #define CRYPT_GET_INSTALLED_OID_FUNC_FLAG  0x1
1919
1920 #define CRYPT_REGISTER_FIRST_INDEX 0
1921 #define CRYPT_REGISTER_LAST_INDEX  0xffffffff
1922
1923 /* values for CERT_STORE_PROV_INFO's dwStoreProvFlags */
1924 #define CERT_STORE_PROV_EXTERNAL_FLAG        0x1
1925 #define CERT_STORE_PROV_DELETED_FLAG         0x2
1926 #define CERT_STORE_PROV_NO_PERSIST_FLAG      0x4
1927 #define CERT_STORE_PROV_SYSTEM_STORE_FLAG    0x8
1928 #define CERT_STORE_PROV_LM_SYSTEM_STORE_FLAG 0x10
1929
1930 /* function indices */
1931 #define CERT_STORE_PROV_CLOSE_FUNC             0
1932 #define CERT_STORE_PROV_READ_CERT_FUNC         1
1933 #define CERT_STORE_PROV_WRITE_CERT_FUNC        2
1934 #define CERT_STORE_PROV_DELETE_CERT_FUNC       3
1935 #define CERT_STORE_PROV_SET_CERT_PROPERTY_FUNC 4
1936 #define CERT_STORE_PROV_READ_CRL_FUNC          5
1937 #define CERT_STORE_PROV_WRITE_CRL_FUNC         6
1938 #define CERT_STORE_PROV_DELETE_CRL_FUNC        7
1939 #define CERT_STORE_PROV_SET_CRL_PROPERTY_FUNC  8
1940 #define CERT_STORE_PROV_READ_CTL_FUNC          9
1941 #define CERT_STORE_PROV_WRITE_CTL_FUNC         10
1942 #define CERT_STORE_PROV_DELETE_CTL_FUNC        11
1943 #define CERT_STORE_PROV_SET_CTL_PROPERTY_FUNC  12
1944 #define CERT_STORE_PROV_CONTROL_FUNC           13
1945 #define CERT_STORE_PROV_FIND_CERT_FUNC         14
1946 #define CERT_STORE_PROV_FREE_FIND_CERT_FUNC    15
1947 #define CERT_STORE_PROV_GET_CERT_PROPERTY_FUNC 16
1948 #define CERT_STORE_PROV_FIND_CRL_FUNC          17
1949 #define CERT_STORE_PROV_FREE_FIND_CRL_FUNC     18
1950 #define CERT_STORE_PROV_GET_CRL_PROPERTY_FUNC  19
1951 #define CERT_STORE_PROV_FIND_CTL_FUNC          20
1952 #define CERT_STORE_PROV_FREE_FIND_CTL_FUNC     21
1953 #define CERT_STORE_PROV_GET_CTL_PROPERTY_FUNC  22
1954
1955 /* physical store dwFlags, also used by CertAddStoreToCollection as
1956  * dwUpdateFlags
1957  */
1958 #define CERT_PHYSICAL_STORE_ADD_ENABLE_FLAG                  0x1
1959 #define CERT_PHYSICAL_STORE_OPEN_DISABLE_FLAG                0x2
1960 #define CERT_PHYSICAL_STORE_REMOVE_OPEN_DISABLE_FLAG         0x4
1961 #define CERT_PHYSICAL_STORE_INSERT_COMPUTER_NAME_ENABLE_FLAG 0x8
1962
1963 /* dwFlag values for CertEnumPhysicalStore callback */
1964 #define CERT_PHYSICAL_STORE_PREDEFINED_ENUM_FLAG 0x1
1965
1966 /* predefined store names */
1967 #if defined(__GNUC__)
1968 # define CERT_PHYSICAL_STORE_DEFAULT_NAME (const WCHAR[])\
1969  {'.','D','e','f','a','u','l','t','0'}
1970 # define CERT_PHYSICAL_STORE_GROUP_POLICY_NAME (const WCHAR[])\
1971  {'.','G','r','o','u','p','P','o','l','i','c','y',0}
1972 # define CERT_PHYSICAL_STORE_LOCAL_MACHINE_NAME (const WCHAR[])\
1973  {'.','L','o','c','a','l','M','a','c','h','i','n','e',0}
1974 # define CERT_PHYSICAL_STORE_DS_USER_CERTIFICATE_NAME (const WCHAR[])\
1975  {'.','U','s','e','r','C','e','r','t','i','f','i','c','a','t','e',0}
1976 # define CERT_PHYSICAL_STORE_LOCAL_MACHINE_GROUP_POLICY_NAME (const WCHAR[])\
1977  {'.','L','o','c','a','l','M','a','c','h','i','n','e','G','r','o','u','p',\
1978  'P','o','l','i','c','y',0}
1979 # define CERT_PHYSICAL_STORE_ENTERPRISE_NAME (const WCHAR[])\
1980  {'.','E','n','t','e','r','p','r','i','s','e',0}
1981 # define CERT_PHYSICAL_STORE_AUTH_ROOT_NAME (const WCHAR[])\
1982  {'.','A','u','t','h','R','o','o','t',0}
1983 #elif defined(_MSC_VER)
1984 # define CERT_PHYSICAL_STORE_DEFAULT_NAME \
1985  L".Default"
1986 # define CERT_PHYSICAL_STORE_GROUP_POLICY_NAME \
1987  L".GroupPolicy"
1988 # define CERT_PHYSICAL_STORE_LOCAL_MACHINE_NAME \
1989  L".LocalMachine"
1990 # define CERT_PHYSICAL_STORE_DS_USER_CERTIFICATE_NAME \
1991  L".UserCertificate"
1992 # define CERT_PHYSICAL_STORE_LOCAL_MACHINE_GROUP_POLICY_NAME \
1993  L".LocalMachineGroupPolicy"
1994 # define CERT_PHYSICAL_STORE_ENTERPRISE_NAME \
1995  L".Enterprise"
1996 # define CERT_PHYSICAL_STORE_AUTH_ROOT_NAME \
1997  L".AuthRoot"
1998 #else
1999 static const WCHAR CERT_PHYSICAL_STORE_DEFAULT_NAME[] = 
2000  {'.','D','e','f','a','u','l','t','0'};
2001 static const WCHAR CERT_PHYSICAL_STORE_GROUP_POLICY_NAME[] =
2002  {'.','G','r','o','u','p','P','o','l','i','c','y',0};
2003 static const WCHAR CERT_PHYSICAL_STORE_LOCAL_MACHINE_NAME[] =
2004  {'.','L','o','c','a','l','M','a','c','h','i','n','e',0};
2005 static const WCHAR CERT_PHYSICAL_STORE_DS_USER_CERTIFICATE_NAME[] =
2006  {'.','U','s','e','r','C','e','r','t','i','f','i','c','a','t','e',0};
2007 static const WCHAR CERT_PHYSICAL_STORE_LOCAL_MACHINE_GROUP_POLICY_NAME[] =
2008  {'.','L','o','c','a','l','M','a','c','h','i','n','e','G','r','o','u','p',
2009  'P','o','l','i','c','y',0};
2010 static const WCHAR CERT_PHYSICAL_STORE_ENTERPRISE_NAME[] =
2011  {'.','E','n','t','e','r','p','r','i','s','e',0};
2012 static const WCHAR CERT_PHYSICAL_STORE_AUTH_ROOT_NAME[] =
2013  {'.','A','u','t','h','R','o','o','t',0};
2014 #endif
2015
2016 /* cert system store flags */
2017 #define CERT_SYSTEM_STORE_MASK 0xffff0000
2018 #define CERT_SYSTEM_STORE_RELOCATE_FLAG 0x80000000
2019
2020 /* CertFindChainInStore dwFindType types */
2021 #define CERT_CHAIN_FIND_BY_ISSUER 1
2022
2023 /* CERT_INFO versions/flags */
2024 #define CERT_V1 0
2025 #define CERT_V2 1
2026 #define CERT_V3 2
2027 #define CERT_INFO_VERSION_FLAG                 1
2028 #define CERT_INFO_SERIAL_NUMBER_FLAG           2
2029 #define CERT_INFO_SIGNATURE_ALGORITHM_FLAG     3
2030 #define CERT_INFO_ISSUER_FLAG                  4
2031 #define CERT_INFO_NOT_BEFORE_FLAG              5
2032 #define CERT_INFO_NOT_AFTER_FLAG               6
2033 #define CERT_INFO_SUBJECT_FLAG                 7
2034 #define CERT_INFO_SUBJECT_PUBLIC_KEY_INFO_FLAG 8
2035 #define CERT_INFO_ISSUER_UNIQUE_ID_FLAG        9
2036 #define CERT_INFO_SUBJECT_UNIQUE_ID_FLAG       10
2037 #define CERT_INFO_EXTENSION_FLAG               11
2038
2039 /* CERT_REQUEST_INFO versions */
2040 #define CERT_REQUEST_V1 0
2041
2042 /* CERT_KEYGEN_REQUEST_INFO versions */
2043 #define CERT_KEYGEN_REQUEST_V1 0
2044
2045 /* CRL versions */
2046 #define CRL_V1 0
2047 #define CRL_V2 1
2048
2049 /* CTL versions */
2050 #define CTL_V1 0
2051
2052 /* Certificate, CRL, CTL property IDs */
2053 #define CERT_KEY_PROV_HANDLE_PROP_ID               1
2054 #define CERT_KEY_PROV_INFO_PROP_ID                 2
2055 #define CERT_SHA1_HASH_PROP_ID                     3
2056 #define CERT_HASH_PROP_ID                          CERT_SHA1_HASH_PROP_ID
2057 #define CERT_MD5_HASH_PROP_ID                      4
2058 #define CERT_KEY_CONTEXT_PROP_ID                   5
2059 #define CERT_KEY_SPEC_PROP_ID                      6
2060 #define CERT_IE30_RESERVED_PROP_ID                 7
2061 #define CERT_PUBKEY_HASH_RESERVED_PROP_ID          8
2062 #define CERT_ENHKEY_USAGE_PROP_ID                  9
2063 #define CERT_CTL_USAGE_PROP_ID                     CERT_ENHKEY_USAGE_PROP_ID
2064 #define CERT_NEXT_UPDATE_LOCATION_PROP_ID          10
2065 #define CERT_FRIENDLY_NAME_PROP_ID                 11
2066 #define CERT_PVK_FILE_PROP_ID                      12
2067 #define CERT_DESCRIPTION_PROP_ID                   13
2068 #define CERT_ACCESS_STATE_PROP_ID                  14
2069 #define CERT_SIGNATURE_HASH_PROP_ID                15
2070 #define CERT_SMART_CARD_DATA_PROP_ID               16
2071 #define CERT_EFS_PROP_ID                           17
2072 #define CERT_FORTEZZA_DATA_PROP                    18
2073 #define CERT_ARCHIVED_PROP_ID                      19
2074 #define CERT_KEY_IDENTIFIER_PROP_ID                20
2075 #define CERT_AUTO_ENROLL_PROP_ID                   21
2076 #define CERT_PUBKEY_ALG_PARA_PROP_ID               22
2077 #define CERT_CROSS_CERT_DIST_POINTS_PROP_ID        23
2078 #define CERT_ISSUER_PUBLIC_KEY_MD5_HASH_PROP_ID    24
2079 #define CERT_SUBJECT_PUBLIC_KEY_MD5_HASH_PROP_ID   25
2080 #define CERT_ENROLLMENT_PROP_ID                    26
2081 #define CERT_DATE_STAMP_PROP_ID                    27
2082 #define CERT_ISSUER_SERIAL_NUMBER_MD5_HASH_PROP_ID 28
2083 #define CERT_SUBJECT_NAME_MD5_HASH_PROP_ID         29
2084 #define CERT_EXTENDED_ERROR_INFO_PROP_ID           30
2085 /* 31    -- unused?
2086    32    -- cert prop id
2087    33    -- CRL prop id
2088    34    -- CTL prop id
2089    35    -- KeyId prop id
2090    36-63 -- reserved
2091  */
2092 #define CERT_RENEWAL_PROP_ID                       64
2093 #define CERT_ARCHIVED_KEY_HASH_PROP_ID             65
2094 #define CERT_AUTO_ENROLL_RETRY_PROP_ID             66
2095 #define CERT_AIA_URL_RETRIEVED_PROP_ID             67
2096 #define CERT_FIRST_RESERVED_PROP_ID                68
2097 #define CERT_LAST_RESERVED_PROP_ID                 0x00007fff
2098 #define CERT_FIRST_USER_PROP_ID                    0x00008000
2099 #define CERT_LAST_USER_PROP_ID                     0x0000ffff
2100
2101 #define IS_CERT_HASH_PROP_ID(x) \
2102  ((x) == CERT_SHA1_HASH_PROP_ID || (x) == CERT_MD5_HASH_PROP_ID || \
2103   (x) == CERT_SIGNATURE_HASH_PROP_ID)
2104
2105 #define IS_PUBKEY_HASH_PROP_ID(x) \
2106  ((x) == CERT_ISSUER_PUBLIC_KEY_MD5_HASH_PROP_ID || \
2107   (x) == CERT_SUBJECT_PUBLIC_KEY_MD5_HASH_PROP_ID)
2108
2109 #define IS_CHAIN_HASH_PROP_ID(x) \
2110  ((x) == CERT_ISSUER_PUBLIC_KEY_MD5_HASH_PROP_ID || \
2111   (x) == CERT_SUBJECT_PUBLIC_KEY_MD5_HASH_PROP_ID || \
2112   (x) == CERT_ISSUER_SERIAL_NUMBER_MD5_HASH_PROP_ID || \
2113   (x) == CERT_SUBJECT_NAME_MD5_HASH_PROP_ID)
2114
2115 /* access state flags */
2116 #define CERT_ACCESS_STATE_WRITE_PERSIST_FLAG   0x1
2117 #define CERT_ACCESS_STATE_SYSTEM_STORE_FLAG    0x2
2118 #define CERT_ACCESS_STATE_LM_SYSTEM_STORE_FLAG 0x4
2119
2120 /* CERT_RDN attribute dwValueType types */
2121 #define CERT_RDN_TYPE_MASK 0x000000ff
2122 #define CERT_RDN_ANY_TYPE         0
2123 #define CERT_RDN_ENCODED_BLOB     1
2124 #define CERT_RDN_OCTET_STRING     2
2125 #define CERT_RDN_NUMERIC_STRING   3
2126 #define CERT_RDN_PRINTABLE_STRING 4
2127 #define CERT_RDN_TELETEX_STRING   5
2128 #define CERT_RDN_T61_STRING       5
2129 #define CERT_RDN_VIDEOTEX_STRING  6
2130 #define CERT_RDN_IA5_STRING       7
2131 #define CERT_RDN_GRAPHIC_STRING   8
2132 #define CERT_RDN_VISIBLE_STRING   9
2133 #define CERT_RDN_ISO646_STRING    9
2134 #define CERT_RDN_GENERAL_STRING   10
2135 #define CERT_RDN_UNIVERSAL_STRING 11
2136 #define CERT_RDN_INT4_STRING      11
2137 #define CERT_RDN_BMP_STRING       12
2138 #define CERT_RDN_UNICODE_STRING   12
2139 #define CERT_RDN_UTF8_STRING      13
2140
2141 /* CERT_RDN attribute dwValueType flags */
2142 #define CERT_RDN_FLAGS_MASK 0xff000000
2143 #define CERT_RDN_ENABLE_T61_UNICODE_FLAG  0x80000000
2144 #define CERT_RDN_DISABLE_CHECK_TYPE_FLAG  0x4000000
2145 #define CERT_RDN_ENABLE_UTF8_UNICODE_FLAG 0x2000000
2146 #define CERT_RDN_DISABLE_IE4_UTF8_FLAG    0x0100000
2147
2148 #define IS_CERT_RDN_CHAR_STRING(x) \
2149  (((x) & CERT_RDN_TYPE_MASK) >= CERT_RDN_NUMERIC_STRING)
2150
2151 /* CRL reason codes */
2152 #define CRL_REASON_UNSPECIFIED            0
2153 #define CRL_REASON_KEY_COMPROMISE         1
2154 #define CRL_REASON_CA_COMPROMISE          2
2155 #define CRL_REASON_AFFILIATION_CHANGED    3
2156 #define CRL_REASON_SUPERSEDED             4
2157 #define CRL_REASON_CESSATION_OF_OPERATION 5
2158 #define CRL_REASON_CERTIFICATE_HOLD       6
2159 #define CRL_REASON_REMOVE_FROM_CRL        8
2160
2161 /* CertControlStore control types */
2162 #define CERT_STORE_CTRL_RESYNC        1
2163 #define CERT_STORE_CTRL_NOTIFY_CHANGE 2
2164 #define CERT_STORE_CTRL_COMMIT        3
2165 #define CERT_STORE_CTRL_AUTO_RESYNC   4
2166 #define CERT_STORE_CTRL_CANCEL_NOTIFY 5
2167
2168 #define CERT_STORE_CTRL_COMMIT_FORCE_FLAG 0x1
2169 #define CERT_STORE_CTRL_COMMIT_CLEAR_FLAG 0x2
2170
2171 /* cert store properties */
2172 #define CERT_STORE_LOCALIZED_NAME_PROP_ID 0x1000
2173
2174 /* CertCreateContext flags */
2175 #define CERT_CREATE_CONTEXT_NOCOPY_FLAG       0x1
2176 #define CERT_CREATE_CONTEXT_SORTED_FLAG       0x2
2177 #define CERT_CREATE_CONTEXT_NO_HCRYPTMSG_FLAG 0x4
2178 #define CERT_CREATE_CONTEXT_NO_ENTRY_FLAG     0x8
2179
2180 #define CERT_COMPARE_MASK                   0xffff
2181 #define CERT_COMPARE_SHIFT                  16
2182 #define CERT_COMPARE_ANY                    0
2183 #define CERT_COMPARE_SHA1_HASH              1
2184 #define CERT_COMPARE_HASH                   CERT_COMPARE_SHA1_HASH
2185 #define CERT_COMPARE_NAME                   2
2186 #define CERT_COMPARE_ATTR                   3
2187 #define CERT_COMPARE_MD5_HASH               4
2188 #define CERT_COMPARE_PROPERTY               5
2189 #define CERT_COMPARE_PUBLIC_KEY             6
2190 #define CERT_COMPARE_NAME_STR_A             7
2191 #define CERT_COMPARE_NAME_STR_W             8
2192 #define CERT_COMPARE_KEY_SPEC               9
2193 #define CERT_COMPARE_ENHKEY_USAGE           10
2194 #define CERT_COMPARE_CTL_USAGE              CERT_COMPARE_ENHKEY_USAGE
2195 #define CERT_COMPARE_SUBJECT_CERT           11
2196 #define CERT_COMPARE_ISSUER_OF              12
2197 #define CERT_COMPARE_EXISTING               13
2198 #define CERT_COMPARE_SIGNATURE_HASH         14
2199 #define CERT_COMPARE_KEY_IDENTIFIER         15
2200 #define CERT_COMPARE_CERT_ID                16
2201 #define CERT_COMPARE_CROSS_CERT_DIST_POINTS 17
2202 #define CERT_COMPARE_PUBKEY_MD5_HASH        18
2203
2204 /* values of dwFindType for CertFind*InStore */
2205 #define CERT_FIND_ANY \
2206  (CERT_COMPARE_ANY << CERT_COMPARE_SHIFT)
2207 #define CERT_FIND_SHA1_HASH \
2208  (CERT_COMPARE_SHA1_HASH << CERT_COMPARE_SHIFT)
2209 #define CERT_FIND_MD5_HASH \
2210  (CERT_COMPARE_MD5_HASH << CERT_COMPARE_SHIFT)
2211 #define CERT_FIND_SIGNATURE_HASH \
2212  (CERT_COMPARE_SIGNATURE_HASH << CERT_COMPARE_SHIFT)
2213 #define CERT_FIND_KEY_IDENTIFIER \
2214  (CERT_COMPARE_KEY_IDENTIFIER << CERT_COMPARE_SHIFT)
2215 #define CERT_FIND_HASH CERT_FIND_SHA1_HASH
2216 #define CERT_FIND_PROPERTY \
2217  (CERT_COMPARE_PROPERTY << CERT_COMPARE_SHIFT)
2218 #define CERT_FIND_PUBLIC_KEY \
2219  (CERT_COMPARE_PUBLIC_KEY << CERT_COMPARE_SHIFT)
2220 #define CERT_FIND_SUBJECT_NAME \
2221  (CERT_COMPARE_NAME << CERT_COMPARE_SHIFT | CERT_INFO_SUBJECT_FLAG)
2222 #define CERT_FIND_SUBJECT_ATTR \
2223  (CERT_COMPARE_ATTR << CERT_COMPARE_SHIFT | CERT_INFO_SUBJECT_FLAG)
2224 #define CERT_FIND_ISSUER_NAME \
2225  (CERT_COMPARE_NAME << CERT_COMPARE_SHIFT | CERT_INFO_ISSUER_FLAG)
2226 #define CERT_FIND_ISSUER_ATTR \
2227  (CERT_COMPARE_ATTR << CERT_COMPARE_SHIFT | CERT_INFO_ISSUER_FLAG)
2228 #define CERT_FIND_SUBJECT_STR_A \
2229  (CERT_COMPARE_NAME_STR_A << CERT_COMPARE_SHIFT | CERT_INFO_SUBJECT_FLAG)
2230 #define CERT_FIND_SUBJECT_STR_W \
2231  (CERT_COMPARE_NAME_STR_W << CERT_COMPARE_SHIFT | CERT_INFO_SUBJECT_FLAG)
2232 #define CERT_FIND_SUBJECT_STR CERT_FIND_SUBJECT_STR_W
2233 #define CERT_FIND_ISSUER_STR_A \
2234  (CERT_COMPARE_NAME_STR_A << CERT_COMPARE_SHIFT | CERT_INFO_ISSUER_FLAG)
2235 #define CERT_FIND_ISSUER_STR_W \
2236  (CERT_COMPARE_NAME_STR_W << CERT_COMPARE_SHIFT | CERT_INFO_ISSUER_FLAG)
2237 #define CERT_FIND_ISSUER_STR CERT_FIND_ISSUER_STR_W
2238 #define CERT_FIND_KEY_SPEC \
2239  (CERT_COMPARE_KEY_SPEC << CERT_COMPARE_SHIFT)
2240 #define CERT_FIND_ENHKEY_USAGE \
2241  (CERT_COMPARE_ENHKEY_USAGE << CERT_COMPARE_SHIFT)
2242 #define CERT_FIND_CTL_USAGE CERT_FIND_ENHKEY_USAGE
2243 #define CERT_FIND_SUBJECT_CERT \
2244  (CERT_COMPARE_SUBJECT_CERT << CERT_COMPARE_SHIFT)
2245 #define CERT_FIND_ISSUER_OF \
2246  (CERT_COMPARE_ISSUER_OF << CERT_COMPARE_SHIFT)
2247 #define CERT_FIND_EXISTING \
2248  (CERT_COMPARE_EXISTING << CERT_COMPARE_SHIFT)
2249 #define CERT_FIND_CERT_ID \
2250  (CERT_COMPARE_CERT_ID << CERT_COMPARE_SHIFT)
2251 #define CERT_FIND_CROSS_CERT_DIST_POINTS \
2252  (CERT_COMPARE_CROSS_CERT_DIST_POINTS << CERT_COMPARE_SHIFT)
2253 #define CERT_FIND_PUBKEY_MD5_HASH \
2254  (CERT_COMPARE_PUBKEY_MD5_HASH << CERT_COMPARE_SHIFT)
2255
2256 #define CERT_FIND_OPTIONAL_ENHKEY_USAGE_FLAG  0x1
2257 #define CERT_FIND_OPTIONAL_CTL_USAGE_FLAG     0x1
2258 #define CERT_FIND_EXT_ONLY_ENHKEY_USAGE_FLAG  0x2
2259 #define CERT_FIND_EXT_ONLY_CTL_USAGE_FLAG     0x2
2260 #define CERT_FIND_PROP_ONLY_ENHKEY_USAGE_FLAG 0x4
2261 #define CERT_FIND_PROP_ONLY_CTL_USAGE_FLAG    0x4
2262 #define CERT_FIND_NO_ENHKEY_USAGE_FLAG        0x8
2263 #define CERT_FIND_NO_CTL_USAGE_FLAG           0x8
2264 #define CERT_FIND_OR_ENHKEY_USAGE_FLAG        0x10
2265 #define CERT_FIND_OR_CTL_USAGE_FLAG           0x10
2266 #define CERT_FIND_VALID_ENHKEY_USAGE_FLAG     0x20
2267 #define CERT_FIND_VALID_CTL_USAGE_FLAG        0x20
2268
2269 #define CRL_FIND_ANY        0
2270 #define CRL_FIND_ISSUED_BY  1
2271 #define CRL_FIND_EXISTING   2
2272 #define CRL_FIND_ISSUED_FOR 3
2273
2274 #define CRL_FIND_ISSUED_BY_AKI_FLAG       0x1
2275 #define CRL_FIND_ISSUED_BY_SIGNATURE_FLAG 0x2
2276 #define CRL_FIND_ISSUED_BY_DELTA_FLAG     0x4
2277 #define CRL_FIND_ISSUED_BY_BASE_FLAG      0x8
2278
2279 typedef struct _CRL_FIND_ISSUED_FOR_PARA
2280 {
2281     PCCERT_CONTEXT pSubjectCert;
2282     PCCERT_CONTEXT pIssuerCert;
2283 } CRL_FIND_ISSUED_FOR_PARA, *PCRL_FIND_ISSUED_FOR_PARA;
2284
2285 /* PFN_CERT_STORE_PROV_WRITE_CERT dwFlags values */
2286 #define CERT_STORE_PROV_WRITE_ADD_FLAG 0x1
2287
2288 /* CertAddSerializedElementToStore context types */
2289 #define CERT_STORE_CERTIFICATE_CONTEXT 1
2290 #define CERT_STORE_CRL_CONTEXT         2
2291 #define CERT_STORE_CTL_CONTEXT         3
2292 #define CERT_STORE_ALL_CONTEXT_FLAG    ~0U
2293 #define CERT_STORE_CERTIFICATE_CONTEXT_FLAG \
2294                                     (1 << CERT_STORE_CERTIFICATE_CONTEXT)
2295 #define CERT_STORE_CRL_CONTEXT_FLAG (1 << CERT_STORE_CRL_CONTEXT)
2296 #define CERT_STORE_CTL_CONTEXT_FLAG (1 << CERT_STORE_CTL_CONTEXT)
2297
2298 /* CryptBinaryToString/CryptStringToBinary flags */
2299 #define CRYPT_STRING_BASE64HEADER        0x00000000
2300 #define CRYPT_STRING_BASE64              0x00000001
2301 #define CRYPT_STRING_BINARY              0x00000002
2302 #define CRYPT_STRING_BASE64REQUESTHEADER 0x00000003
2303 #define CRYPT_STRING_HEX                 0x00000004
2304 #define CRYPT_STRING_HEXASCII            0x00000005
2305 #define CRYPT_STRING_BASE64_ANY          0x00000006
2306 #define CRYPT_STRING_ANY                 0x00000007
2307 #define CRYPT_STRING_HEX_ANY             0x00000008
2308 #define CRYPT_STRING_BASE64X509CRLHEADER 0x00000009
2309 #define CRYPT_STRING_HEXADDR             0x0000000a
2310 #define CRYPT_STRING_HEXASCIIADDR        0x0000000b
2311 #define CRYPT_STRING_NOCR                0x80000000
2312
2313 /* OIDs */
2314 #define szOID_RSA                           "1.2.840.113549"
2315 #define szOID_PKCS                          "1.2.840.113549.1"
2316 #define szOID_RSA_HASH                      "1.2.840.113549.2"
2317 #define szOID_RSA_ENCRYPT                   "1.2.840.113549.3"
2318 #define szOID_PKCS_1                        "1.2.840.113549.1.1"
2319 #define szOID_PKCS_2                        "1.2.840.113549.1.2"
2320 #define szOID_PKCS_3                        "1.2.840.113549.1.3"
2321 #define szOID_PKCS_4                        "1.2.840.113549.1.4"
2322 #define szOID_PKCS_5                        "1.2.840.113549.1.5"
2323 #define szOID_PKCS_6                        "1.2.840.113549.1.6"
2324 #define szOID_PKCS_7                        "1.2.840.113549.1.7"
2325 #define szOID_PKCS_8                        "1.2.840.113549.1.8"
2326 #define szOID_PKCS_9                        "1.2.840.113549.1.9"
2327 #define szOID_PKCS_10                       "1.2.840.113549.1.10"
2328 #define szOID_PKCS_11                       "1.2.840.113549.1.12"
2329 #define szOID_RSA_RSA                       "1.2.840.113549.1.1.1"
2330 #define CERT_RSA_PUBLIC_KEY_OBJID           szOID_RSA_RSA
2331 #define CERT_DEFAULT_OID_PUBLIC_KEY_SIGN    szOID_RSA_RSA
2332 #define CERT_DEFAULT_OID_PUBLIC_KEY_XCHG    szOID_RSA_RSA
2333 #define szOID_RSA_MD2RSA                    "1.2.840.113549.1.1.2"
2334 #define szOID_RSA_MD4RSA                    "1.2.840.113549.1.1.3"
2335 #define szOID_RSA_MD5RSA                    "1.2.840.113549.1.1.4"
2336 #define szOID_RSA_SHA1RSA                   "1.2.840.113549.1.1.5"
2337 #define szOID_RSA_SET0AEP_RSA               "1.2.840.113549.1.1.6"
2338 #define szOID_RSA_DH                        "1.2.840.113549.1.3.1"
2339 #define szOID_RSA_data                      "1.2.840.113549.1.7.1"
2340 #define szOID_RSA_signedData                "1.2.840.113549.1.7.2"
2341 #define szOID_RSA_envelopedData             "1.2.840.113549.1.7.3"
2342 #define szOID_RSA_signEnvData               "1.2.840.113549.1.7.4"
2343 #define szOID_RSA_digestedData              "1.2.840.113549.1.7.5"
2344 #define szOID_RSA_hashedData                "1.2.840.113549.1.7.5"
2345 #define szOID_RSA_encryptedData             "1.2.840.113549.1.7.6"
2346 #define szOID_RSA_emailAddr                 "1.2.840.113549.1.9.1"
2347 #define szOID_RSA_unstructName              "1.2.840.113549.1.9.2"
2348 #define szOID_RSA_contentType               "1.2.840.113549.1.9.3"
2349 #define szOID_RSA_messageDigest             "1.2.840.113549.1.9.4"
2350 #define szOID_RSA_signingTime               "1.2.840.113549.1.9.5"
2351 #define szOID_RSA_counterSign               "1.2.840.113549.1.9.6"
2352 #define szOID_RSA_challengePwd              "1.2.840.113549.1.9.7"
2353 #define szOID_RSA_unstructAddr              "1.2.840.113549.1.9.9"
2354 #define szOID_RSA_extCertAttrs              "1.2.840.113549.1.9.9"
2355 #define szOID_RSA_certExtensions            "1.2.840.113549.1.9.14"
2356 #define szOID_RSA_SMIMECapabilities         "1.2.840.113549.1.9.15"
2357 #define szOID_RSA_preferSignedData          "1.2.840.113549.1.9.15.1"
2358 #define szOID_RSA_SMIMEalg                  "1.2.840.113549.1.9.16.3"
2359 #define szOID_RSA_SMIMEalgESDH              "1.2.840.113549.1.9.16.3.5"
2360 #define szOID_RSA_SMIMEalgCMS3DESwrap       "1.2.840.113549.1.9.16.3.6"
2361 #define szOID_RSA_SMIMEalgCMSRC2wrap        "1.2.840.113549.1.9.16.3.7"
2362 #define szOID_RSA_MD2                       "1.2.840.113549.2.2"
2363 #define szOID_RSA_MD4                       "1.2.840.113549.2.4"
2364 #define szOID_RSA_MD5                       "1.2.840.113549.2.5"
2365 #define szOID_RSA_RC2CBC                    "1.2.840.113549.3.2"
2366 #define szOID_RSA_RC4                       "1.2.840.113549.3.4"
2367 #define szOID_RSA_DES_EDE3_CBC              "1.2.840.113549.3.7"
2368 #define szOID_RSA_RC5_CBCPad                "1.2.840.113549.3.9"
2369 #define szOID_ANSI_X942                     "1.2.840.10046"
2370 #define szOID_ANSI_X942_DH                  "1.2.840.10046.2.1"
2371 #define szOID_X957                          "1.2.840.10040"
2372 #define szOID_X957_DSA                      "1.2.840.10040.4.1"
2373 #define szOID_X957_SHA1DSA                  "1.2.840.10040.4.3"
2374 #define szOID_DS                            "2.5"
2375 #define szOID_DSALG                         "2.5.8"
2376 #define szOID_DSALG_CRPT                    "2.5.8.1"
2377 #define szOID_DSALG_HASH                    "2.5.8.2"
2378 #define szOID_DSALG_SIGN                    "2.5.8.3"
2379 #define szOID_DSALG_RSA                     "2.5.8.1.1"
2380 #define szOID_OIW                           "1.3.14"
2381 #define szOID_OIWSEC                        "1.3.14.3.2"
2382 #define szOID_OIWSEC_md4RSA                 "1.3.14.3.2.2"
2383 #define szOID_OIWSEC_md5RSA                 "1.3.14.3.2.3"
2384 #define szOID_OIWSEC_md4RSA2                "1.3.14.3.2.4"
2385 #define szOID_OIWSEC_desECB                 "1.3.14.3.2.6"
2386 #define szOID_OIWSEC_desCBC                 "1.3.14.3.2.7"
2387 #define szOID_OIWSEC_desOFB                 "1.3.14.3.2.8"
2388 #define szOID_OIWSEC_desCFB                 "1.3.14.3.2.9"
2389 #define szOID_OIWSEC_desMAC                 "1.3.14.3.2.10"
2390 #define szOID_OIWSEC_rsaSign                "1.3.14.3.2.11"
2391 #define szOID_OIWSEC_dsa                    "1.3.14.3.2.12"
2392 #define szOID_OIWSEC_shaDSA                 "1.3.14.3.2.13"
2393 #define szOID_OIWSEC_mdc2RSA                "1.3.14.3.2.14"
2394 #define szOID_OIWSEC_shaRSA                 "1.3.14.3.2.15"
2395 #define szOID_OIWSEC_dhCommMod              "1.3.14.3.2.16"
2396 #define szOID_OIWSEC_desEDE                 "1.3.14.3.2.17"
2397 #define szOID_OIWSEC_sha                    "1.3.14.3.2.18"
2398 #define szOID_OIWSEC_mdc2                   "1.3.14.3.2.19"
2399 #define szOID_OIWSEC_dsaComm                "1.3.14.3.2.20"
2400 #define szOID_OIWSEC_dsaCommSHA             "1.3.14.3.2.21"
2401 #define szOID_OIWSEC_rsaXchg                "1.3.14.3.2.22"
2402 #define szOID_OIWSEC_keyHashSeal            "1.3.14.3.2.23"
2403 #define szOID_OIWSEC_md2RSASign             "1.3.14.3.2.24"
2404 #define szOID_OIWSEC_md5RSASign             "1.3.14.3.2.25"
2405 #define szOID_OIWSEC_sha1                   "1.3.14.3.2.26"
2406 #define szOID_OIWSEC_dsaSHA1                "1.3.14.3.2.27"
2407 #define szOID_OIWSEC_dsaCommSHA1            "1.3.14.3.2.28"
2408 #define szOID_OIWSEC_sha1RSASign            "1.3.14.3.2.29"
2409 #define szOID_OIWDIR                        "1.3.14.7.2"
2410 #define szOID_OIWDIR_CRPT                   "1.3.14.7.2.1"
2411 #define szOID_OIWDIR_HASH                   "1.3.14.7.2.2"
2412 #define szOID_OIWDIR_SIGN                   "1.3.14.7.2.3"
2413 #define szOID_OIWDIR_md2                    "1.3.14.7.2.2.1"
2414 #define szOID_OIWDIR_md2RSA                 "1.3.14.7.2.3.1"
2415 #define szOID_INFOSEC                       "2.16.840.1.101.2.1"
2416 #define szOID_INFOSEC_sdnsSignature         "2.16.840.1.101.2.1.1.1"
2417 #define szOID_INFOSEC_mosaicSignature       "2.16.840.1.101.2.1.1.2"
2418 #define szOID_INFOSEC_sdnsConfidentiality   "2.16.840.1.101.2.1.1.3"
2419 #define szOID_INFOSEC_mosaicConfidentiality "2.16.840.1.101.2.1.1.4"
2420 #define szOID_INFOSEC_sdnsIntegrity         "2.16.840.1.101.2.1.1.5"
2421 #define szOID_INFOSEC_mosaicIntegrity       "2.16.840.1.101.2.1.1.6"
2422 #define szOID_INFOSEC_sdnsTokenProtection   "2.16.840.1.101.2.1.1.7"
2423 #define szOID_INFOSEC_mosaicTokenProtection "2.16.840.1.101.2.1.1.8"
2424 #define szOID_INFOSEC_sdnsKeyManagement     "2.16.840.1.101.2.1.1.9"
2425 #define szOID_INFOSEC_mosaicKeyManagement   "2.16.840.1.101.2.1.1.10"
2426 #define szOID_INFOSEC_sdnsKMandSig          "2.16.840.1.101.2.1.1.11"
2427 #define szOID_INFOSEC_mosaicKMandSig        "2.16.840.1.101.2.1.1.12"
2428 #define szOID_INFOSEC_SuiteASignature       "2.16.840.1.101.2.1.1.13"
2429 #define szOID_INFOSEC_SuiteAConfidentiality "2.16.840.1.101.2.1.1.14"
2430 #define szOID_INFOSEC_SuiteAIntegrity       "2.16.840.1.101.2.1.1.15"
2431 #define szOID_INFOSEC_SuiteATokenProtection "2.16.840.1.101.2.1.1.16"
2432 #define szOID_INFOSEC_SuiteAKeyManagement   "2.16.840.1.101.2.1.1.17"
2433 #define szOID_INFOSEC_SuiteAKMandSig        "2.16.840.1.101.2.1.1.18"
2434 #define szOID_INFOSEC_mosaicUpdatedSig      "2.16.840.1.101.2.1.1.19"
2435 #define szOID_INFOSEC_mosaicKMandUpdSig     "2.16.840.1.101.2.1.1.20"
2436 #define szOID_INFOSEC_mosaicUpdateInteg     "2.16.840.1.101.2.1.1.21"
2437 #define szOID_COMMON_NAME                   "2.5.4.3"
2438 #define szOID_SUR_NAME                      "2.5.4.4"
2439 #define szOID_DEVICE_SERIAL_NUMBER          "2.5.4.5"
2440 #define szOID_COUNTRY_NAME                  "2.5.4.6"
2441 #define szOID_LOCALITY_NAME                 "2.5.4.7"
2442 #define szOID_STATE_OR_PROVINCE_NAME        "2.5.4.8"
2443 #define szOID_STREET_ADDRESS                "2.5.4.9"
2444 #define szOID_ORGANIZATION_NAME             "2.5.4.10"
2445 #define szOID_ORGANIZATIONAL_UNIT_NAME      "2.5.4.11"
2446 #define szOID_TITLE                         "2.5.4.12"
2447 #define szOID_DESCRIPTION                   "2.5.4.13"
2448 #define szOID_SEARCH_GUIDE                  "2.5.4.14"
2449 #define szOID_BUSINESS_CATEGORY             "2.5.4.15"
2450 #define szOID_POSTAL_ADDRESS                "2.5.4.16"
2451 #define szOID_POSTAL_CODE                   "2.5.4.17"
2452 #define szOID_POST_OFFICE_BOX               "2.5.4.18"
2453 #define szOID_PHYSICAL_DELIVERY_OFFICE_NAME "2.5.4.19"
2454 #define szOID_TELEPHONE_NUMBER              "2.5.4.20"
2455 #define szOID_TELEX_NUMBER                  "2.5.4.21"
2456 #define szOID_TELETEXT_TERMINAL_IDENTIFIER  "2.5.4.22"
2457 #define szOID_FACSIMILE_TELEPHONE_NUMBER    "2.5.4.23"
2458 #define szOID_X21_ADDRESS                   "2.5.4.24"
2459 #define szOID_INTERNATIONAL_ISDN_NUMBER     "2.5.4.25"
2460 #define szOID_REGISTERED_ADDRESS            "2.5.4.26"
2461 #define szOID_DESTINATION_INDICATOR         "2.5.4.27"
2462 #define szOID_PREFERRED_DELIVERY_METHOD     "2.5.4.28"
2463 #define szOID_PRESENTATION_ADDRESS          "2.5.4.29"
2464 #define szOID_SUPPORTED_APPLICATION_CONTEXT "2.5.4.30"
2465 #define szOID_MEMBER                        "2.5.4.31"
2466 #define szOID_OWNER                         "2.5.4.32"
2467 #define szOID_ROLE_OCCUPANT                 "2.5.4.33"
2468 #define szOID_SEE_ALSO                      "2.5.4.34"
2469 #define szOID_USER_PASSWORD                 "2.5.4.35"
2470 #define szOID_USER_CERTIFICATE              "2.5.4.36"
2471 #define szOID_CA_CERTIFICATE                "2.5.4.37"
2472 #define szOID_AUTHORITY_REVOCATION_LIST     "2.5.4.38"
2473 #define szOID_CERTIFICATE_REVOCATION_LIST   "2.5.4.39"
2474 #define szOID_CROSS_CERTIFICATE_PAIR        "2.5.4.40"
2475 #define szOID_GIVEN_NAME                    "2.5.4.42"
2476 #define szOID_INITIALS                      "2.5.4.43"
2477 #define szOID_DN_QUALIFIER                  "2.5.4.46"
2478 #define szOID_AUTHORITY_KEY_IDENTIFIER      "2.5.29.1"
2479 #define szOID_KEY_ATTRIBUTES                "2.5.29.2"
2480 #define szOID_CERT_POLICIES_95              "2.5.29.3"
2481 #define szOID_KEY_USAGE_RESTRICTION         "2.5.29.4"
2482 #define szOID_LEGACY_POLICY_MAPPINGS        "2.5.29.5"
2483 #define szOID_SUBJECT_ALT_NAME              "2.5.29.7"
2484 #define szOID_ISSUER_ALT_NAME               "2.5.29.8"
2485 #define szOID_SUBJECT_DIR_ATTRS             "2.5.29.9"
2486 #define szOID_BASIC_CONSTRAINTS             "2.5.29.10"
2487 #define szOID_SUBJECT_KEY_IDENTIFIER        "2.5.29.14"
2488 #define szOID_KEY_USAGE                     "2.5.29.15"
2489 #define szOID_PRIVATEKEY_USAGE_PERIOD       "2.5.29.16"
2490 #define szOID_SUBJECT_ALT_NAME2             "2.5.29.17"
2491 #define szOID_ISSUER_ALT_NAME2              "2.5.29.18"
2492 #define szOID_BASIC_CONSTRAINTS2            "2.5.29.19"
2493 #define szOID_CRL_NUMBER                    "2.5.29.20"
2494 #define szOID_CRL_REASON_CODE               "2.5.29.21"
2495 #define szOID_REASON_CODE_HOLD              "2.5.29.23"
2496 #define szOID_DELTA_CRL_INDICATOR           "2.5.29.27"
2497 #define szOID_ISSUING_DIST_POINT            "2.5.29.28"
2498 #define szOID_NAME_CONSTRAINTS              "2.5.29.30"
2499 #define szOID_CRL_DIST_POINTS               "2.5.29.31"
2500 #define szOID_CERT_POLICIES                 "2.5.29.32"
2501 #define szOID_ANY_CERT_POLICY               "2.5.29.32.0"
2502 #define szOID_POLICY_MAPPINGS               "2.5.29.33"
2503 #define szOID_AUTHORITY_KEY_IDENTIFIER2     "2.5.29.35"
2504 #define szOID_POLICY_CONSTRAINTS            "2.5.29.36"
2505 #define szOID_ENHANCED_KEY_USAGE            "2.5.29.37"
2506 #define szOID_FRESHEST_CRL                  "2.5.29.46"
2507 #define szOID_DOMAIN_COMPONENT              "0.9.2342.19200300.100.1.25"
2508 #define szOID_PKCS_12_FRIENDLY_NAME_ATTR     "1.2.840.113549.1.9.20"
2509 #define szOID_PKCS_12_LOCAL_KEY_ID           "1.2.840.113549.1.9.21"
2510 #define szOID_CERT_EXTENSIONS                "1.3.6.1.4.1.311.2.1.14"
2511 #define szOID_NEXT_UPDATE_LOCATION           "1.3.6.1.4.1.311.10.2"
2512 #define szOID_KP_CTL_USAGE_SIGNING           "1.3.6.1.4.1.311.10.3.1"
2513 #define szOID_KP_TIME_STAMP_SIGNING          "1.3.6.1.4.1.311.10.3.2"
2514 #ifndef szOID_SERVER_GATED_CRYPTO
2515 #define szOID_SERVER_GATED_CRYPTO            "1.3.6.1.4.1.311.10.3.3"
2516 #endif
2517 #ifndef szOID_SGC_NETSCAPE
2518 #define szOID_SGC_NETSCAPE                   "2.16.840.1.113730.4.1"
2519 #endif
2520 #define szOID_KP_EFS                         "1.3.6.1.4.1.311.10.3.4"
2521 #define szOID_EFS_RECOVERY                   "1.3.6.1.4.1.311.10.3.4.1"
2522 #define szOID_WHQL_CRYPTO                    "1.3.6.1.4.1.311.10.3.5"
2523 #define szOID_NT5_CRYPTO                     "1.3.6.1.4.1.311.10.3.6"
2524 #define szOID_OEM_WHQL_CRYPTO                "1.3.6.1.4.1.311.10.3.7"
2525 #define szOID_EMBEDDED_NT_CRYPTO             "1.3.6.1.4.1.311.10.3.8"
2526 #define szOID_ROOT_LIST_SIGNER               "1.3.6.1.4.1.311.10.3.9"
2527 #define szOID_KP_QUALIFIED_SUBORDINATION     "1.3.6.1.4.1.311.10.3.10"
2528 #define szOID_KP_KEY_RECOVERY                "1.3.6.1.4.1.311.10.3.11"
2529 #define szOID_KP_DOCUMENT_SIGNING            "1.3.6.1.4.1.311.10.3.12"
2530 #define szOID_KP_LIFETIME_SIGNING            "1.3.6.1.4.1.311.10.3.13"
2531 #define szOID_KP_MOBILE_DEVICE_SOFTWARE      "1.3.6.1.4.1.311.10.3.14"
2532 #define szOID_YESNO_TRUST_ATTR               "1.3.6.1.4.1.311.10.4.1"
2533 #ifndef szOID_DRM
2534 #define szOID_DRM                            "1.3.6.1.4.1.311.10.5.1"
2535 #endif
2536 #ifndef szOID_DRM_INDIVIDUALIZATION
2537 #define szOID_DRM_INDIVIDUALIZATION          "1.3.6.1.4.1.311.10.5.2"
2538 #endif
2539 #ifndef szOID_LICENSES
2540 #define szOID_LICENSES                       "1.3.6.1.4.1.311.10.6.1"
2541 #endif
2542 #ifndef szOID_LICENSE_SERVER
2543 #define szOID_LICENSE_SERVER                 "1.3.6.1.4.1.311.10.6.2"
2544 #endif
2545 #define szOID_REMOVE_CERTIFICATE             "1.3.6.1.4.1.311.10.8.1"
2546 #define szOID_CROSS_CERT_DIST_POINTS         "1.3.6.1.4.1.311.10.9.1"
2547 #define szOID_CTL                            "1.3.6.1.4.1.311.10.10.1"
2548 #define szOID_SORTED_CTL                     "1.3.6.1.4.1.311.10.10.1.1"
2549 #define szOID_ANY_APPLICATION_POLICY         "1.3.6.1.4.1.311.10.12.1"
2550 #define szOID_RENEWAL_CERTIFICATE            "1.3.6.1.4.1.311.13.1"
2551 #define szOID_ENROLLMENT_NAME_VALUE_PAIR     "1.3.6.1.4.1.311.13.2.1"
2552 #define szOID_ENROLLMENT_CSP_PROVIDER        "1.3.6.1.4.1.311.13.2.2"
2553 #define szOID_OS_VERSION                     "1.3.6.1.4.1.311.13.2.3"
2554 #define szOID_PKCS_12_KEY_PROVIDER_NAME_ATTR "1.3.6.1.4.1.311.17.1"
2555 #define szOID_LOCAL_MACHINE_KEYSET           "1.3.6.1.4.1.311.17.2"
2556 #define szOID_AUTO_ENROLL_CTL_USAGE          "1.3.6.1.4.1.311.20.1"
2557 #define szOID_ENROLL_CERTTYPE_EXTENSION      "1.3.6.1.4.1.311.20.2"
2558 #define szOID_ENROLLMENT_AGENT               "1.3.6.1.4.1.311.20.2.1"
2559 #define szOID_KP_SMARTCARD_LOGON             "1.3.6.1.4.1.311.20.2.2"
2560 #define szOID_CERT_MANIFOLD                  "1.3.6.1.4.1.311.20.3"
2561 #ifndef szOID_CERTSRV_CA_VERSION
2562 #define szOID_CERTSRV_CA_VERSION             "1.3.6.1.4.1.311.21.1"
2563 #endif
2564 #define szOID_CERTSRV_PREVIOUS_CERT_HASH     "1.3.6.1.4.1.311.21.2"
2565 #define szOID_CRL_VIRTUAL_BASE               "1.3.6.1.4.1.311.21.3"
2566 #define szOID_CRL_NEXT_PUBLISH               "1.3.6.1.4.1.311.21.4"
2567 #define szOID_KP_CA_EXCHANGE                 "1.3.6.1.4.1.311.21.5"
2568 #define szOID_KP_KEY_RECOVERY_AGENT          "1.3.6.1.4.1.311.21.6"
2569 #define szOID_CERTIFICATE_TEMPLATE           "1.3.6.1.4.1.311.21.7"
2570 #define szOID_ENTERPRISE_OID_ROOT            "1.3.6.1.4.1.311.21.8"
2571 #define szOID_RDN_DUMMY_SIGNER               "1.3.6.1.4.1.311.21.9"
2572 #define szOID_APPLICATION_CERT_POLICIES      "1.3.6.1.4.1.311.21.10"
2573 #define szOID_APPLICATION_POLICY_MAPPINGS    "1.3.6.1.4.1.311.21.11"
2574 #define szOID_APPLICATION_POLICY_CONSTRAINTS "1.3.6.1.4.1.311.21.12"
2575 #define szOID_ARCHIVED_KEY_ATTR              "1.3.6.1.4.1.311.21.13"
2576 #define szOID_CRL_SELF_CDP                   "1.3.6.1.4.1.311.21.14"
2577 #define szOID_REQUIRE_CERT_CHAIN_POLICY      "1.3.6.1.4.1.311.21.15"
2578 #define szOID_ARCHIVED_KEY_CERT_HASH         "1.3.6.1.4.1.311.21.16"
2579 #define szOID_ISSUED_CERT_HASH               "1.3.6.1.4.1.311.21.17"
2580 #define szOID_DS_EMAIL_REPLICATION           "1.3.6.1.4.1.311.21.19"
2581 #define szOID_REQUEST_CLIENT_INFO            "1.3.6.1.4.1.311.21.20"
2582 #define szOID_ENCRYPTED_KEY_HASH             "1.3.6.1.4.1.311.21.21"
2583 #define szOID_CERTSRV_CROSSCA_VERSION        "1.3.6.1.4.1.311.21.22"
2584 #define szOID_KEYID_RDN                      "1.3.6.1.4.1.311.10.7.1"
2585 #define szOID_PKIX                           "1.3.6.1.5.5.7"
2586 #define szOID_PKIX_PE                        "1.3.6.1.5.5.7.1"
2587 #define szOID_AUTHORITY_INFO_ACCESS          "1.3.6.1.5.5.7.1.1"
2588 #define szOID_PKIX_POLICY_QUALIFIER_CPS      "1.3.6.1.5.5.7.2.1"
2589 #define szOID_PKIX_POLICY_QUALIFIER_USERNOTICE "1.3.6.1.5.5.7.2.2"
2590 #define szOID_PKIX_KP                        "1.3.6.1.5.5.7.3"
2591 #define szOID_PKIX_KP_SERVER_AUTH            "1.3.6.1.5.5.7.3.1"
2592 #define szOID_PKIX_KP_CLIENT_AUTH            "1.3.6.1.5.5.7.3.2"
2593 #define szOID_PKIX_KP_CODE_SIGNING           "1.3.6.1.5.5.7.3.3"
2594 #define szOID_PKIX_KP_EMAIL_PROTECTION       "1.3.6.1.5.5.7.3.4"
2595 #define szOID_PKIX_KP_IPSEC_END_SYSTEM       "1.3.6.1.5.5.7.3.5"
2596 #define szOID_PKIX_KP_IPSEC_TUNNEL           "1.3.6.1.5.5.7.3.6"
2597 #define szOID_PKIX_KP_IPSEC_USER             "1.3.6.1.5.5.7.3.7"
2598 #define szOID_PKIX_KP_TIMESTAMP_SIGNING      "1.3.6.1.5.5.7.3.8"
2599 #define szOID_PKIX_NO_SIGNATURE              "1.3.6.1.5.5.7.6.2"
2600 #define szOID_CMC                            "1.3.6.1.5.5.7.7"
2601 #define szOID_CMC_STATUS_INFO                "1.3.6.1.5.5.7.7.1"
2602 #define szOID_CMC_IDENTIFICATION             "1.3.6.1.5.5.7.7.2"
2603 #define szOID_CMC_IDENTITY_PROOF             "1.3.6.1.5.5.7.7.3"
2604 #define szOID_CMC_DATA_RETURN                "1.3.6.1.5.5.7.7.4"
2605 #define szOID_CMC_TRANSACTION_ID             "1.3.6.1.5.5.7.7.5"
2606 #define szOID_CMC_SENDER_NONCE               "1.3.6.1.5.5.7.7.6"
2607 #define szOID_CMC_RECIPIENT_NONCE            "1.3.6.1.5.5.7.7.7"
2608 #define szOID_CMC_ADD_EXTENSIONS             "1.3.6.1.5.5.7.7.8"
2609 #define szOID_CMC_ENCRYPTED_POP              "1.3.6.1.5.5.7.7.9"
2610 #define szOID_CMC_DECRYPTED_POP              "1.3.6.1.5.5.7.7.10"
2611 #define szOID_CMC_LRA_POP_WITNESS            "1.3.6.1.5.5.7.7.11"
2612 #define szOID_CMC_GET_CERT                   "1.3.6.1.5.5.7.7.15"
2613 #define szOID_CMC_GET_CRL                    "1.3.6.1.5.5.7.7.16"
2614 #define szOID_CMC_REVOKE_REQUEST             "1.3.6.1.5.5.7.7.17"
2615 #define szOID_CMC_REG_INFO                   "1.3.6.1.5.5.7.7.18"
2616 #define szOID_CMC_RESPONSE_INFO              "1.3.6.1.5.5.7.7.19"
2617 #define szOID_CMC_QUERY_PENDING              "1.3.6.1.5.5.7.7.21"
2618 #define szOID_CMC_ID_POP_LINK_RANDOM         "1.3.6.1.5.5.7.7.22"
2619 #define szOID_CMC_ID_POP_LINK_WITNESS        "1.3.6.1.5.5.7.7.23"
2620 #define szOID_CT_PKI_DATA                    "1.3.6.1.5.5.7.12.2"
2621 #define szOID_CT_PKI_RESPONSE                "1.3.6.1.5.5.7.12.3"
2622 #define szOID_PKIX_ACC_DESCR                 "1.3.6.1.5.5.7.48"
2623 #define szOID_PKIX_OCSP                      "1.3.6.1.5.5.7.48.1"
2624 #define szOID_PKIX_CA_ISSUERS                "1.3.6.1.5.5.7.48.2"
2625 #define szOID_IPSEC_KP_IKE_INTERMEDIATE      "1.3.6.1.5.5.8.2.2"
2626
2627 #ifndef szOID_SERIALIZED
2628 #define szOID_SERIALIZED                     "1.3.6.1.4.1.311.10.3.3.1"
2629 #endif
2630
2631 #define szOID_AUTO_ENROLL_CTL_USAGE          "1.3.6.1.4.1.311.20.1"
2632 #define szOID_ENROLL_CERTTYPE_EXTENSION      "1.3.6.1.4.1.311.20.2"
2633 #define szOID_ENROLLMENT_AGENT               "1.3.6.1.4.1.311.20.2.1"
2634 #ifndef szOID_KP_SMARTCARD_LOGON
2635 #define szOID_KP_SMARTCARD_LOGON             "1.3.6.1.4.1.311.20.2.2"
2636 #endif
2637 #ifndef szOID_NT_PRINCIPAL_NAME
2638 #define szOID_NT_PRINCIPAL_NAME              "1.3.6.1.4.1.311.20.2.3"
2639 #endif
2640 #define szOID_CERT_MANIFOLD                  "1.3.6.1.4.1.311.20.3"
2641
2642 #ifndef szOID_CERTSRV_CA_VERSION
2643 #define szOID_CERTSRV_CA_VERSION             "1.3.6.1.4.1.311.21.1"
2644 #endif
2645
2646 #ifndef szOID_PRODUCT_UPDATE
2647 #define szOID_PRODUCT_UPDATE                 "1.3.6.1.4.1.311.31.1"
2648 #endif
2649
2650 #define szOID_NETSCAPE                       "2.16.840.1.113730"
2651 #define szOID_NETSCAPE_CERT_EXTENSION        "2.16.840.1.113730.1"
2652 #define szOID_NETSCAPE_CERT_TYPE             "2.16.840.1.113730.1.1"
2653 #define szOID_NETSCAPE_BASE_URL              "2.16.840.1.113730.1.2"
2654 #define szOID_NETSCAPE_REVOCATION_URL        "2.16.840.1.113730.1.3"
2655 #define szOID_NETSCAPE_CA_REVOCATION_URL     "2.16.840.1.113730.1.4"
2656 #define szOID_NETSCAPE_CERT_RENEWAL_URL      "2.16.840.1.113730.1.7"
2657 #define szOID_NETSCAPE_CA_POLICY_URL         "2.16.840.1.113730.1.8"
2658 #define szOID_NETSCAPE_SSL_SERVER_NAME       "2.16.840.1.113730.1.12"
2659 #define szOID_NETSCAPE_COMMENT               "2.16.840.1.113730.1.13"
2660
2661 #define CRYPT_ENCODE_DECODE_NONE             0
2662 #define X509_CERT                            ((LPCSTR)1)
2663 #define X509_CERT_TO_BE_SIGNED               ((LPCSTR)2)
2664 #define X509_CERT_CRL_TO_BE_SIGNED           ((LPCSTR)3)
2665 #define X509_CERT_REQUEST_TO_BE_SIGNED       ((LPCSTR)4)
2666 #define X509_EXTENSIONS                      ((LPCSTR)5)
2667 #define X509_NAME_VALUE                      ((LPCSTR)6)
2668 #define X509_ANY_STRING                      X509_NAME_VALUE
2669 #define X509_NAME                            ((LPCSTR)7)
2670 #define X509_PUBLIC_KEY_INFO                 ((LPCSTR)8)
2671 #define X509_AUTHORITY_KEY_ID                ((LPCSTR)9)
2672 #define X509_KEY_ATTRIBUTES                  ((LPCSTR)10)
2673 #define X509_KEY_USAGE_RESTRICTION           ((LPCSTR)11)
2674 #define X509_ALTERNATE_NAME                  ((LPCSTR)12)
2675 #define X509_BASIC_CONSTRAINTS               ((LPCSTR)13)
2676 #define X509_KEY_USAGE                       ((LPCSTR)14)
2677 #define X509_BASIC_CONSTRAINTS2              ((LPCSTR)15)
2678 #define X509_CERT_POLICIES                   ((LPCSTR)16)
2679 #define PKCS_UTC_TIME                        ((LPCSTR)17)
2680 #define PKCS_TIME_REQUEST                    ((LPCSTR)18)
2681 #define RSA_CSP_PUBLICKEYBLOB                ((LPCSTR)19)
2682 #define X509_UNICODE_NAME                    ((LPCSTR)20)
2683 #define X509_KEYGEN_REQUEST_TO_BE_SIGNED     ((LPCSTR)21)
2684 #define PKCS_ATTRIBUTE                       ((LPCSTR)22)
2685 #define PKCS_CONTENT_INFO_SEQUENCE_OF_ANY    ((LPCSTR)23)
2686 #define X509_UNICODE_NAME_VALUE              ((LPCSTR)24)
2687 #define X509_UNICODE_ANY_STRING              X509_UNICODE_NAME_VALUE
2688 #define X509_OCTET_STRING                    ((LPCSTR)25)
2689 #define X509_BITS                            ((LPCSTR)26)
2690 #define X509_INTEGER                         ((LPCSTR)27)
2691 #define X509_MULTI_BYTE_INTEGER              ((LPCSTR)28)
2692 #define X509_ENUMERATED                      ((LPCSTR)29)
2693 #define X509_CRL_REASON_CODE                 X509_ENUMERATED
2694 #define X509_CHOICE_OF_TIME                  ((LPCSTR)30)
2695 #define X509_AUTHORITY_KEY_ID2               ((LPCSTR)31)
2696 #define X509_AUTHORITY_INFO_ACCESS           ((LPCSTR)32)
2697 #define PKCS_CONTENT_INFO                    ((LPCSTR)33)
2698 #define X509_SEQUENCE_OF_ANY                 ((LPCSTR)34)
2699 #define X509_CRL_DIST_POINTS                 ((LPCSTR)35)
2700 #define X509_ENHANCED_KEY_USAGE              ((LPCSTR)36)
2701 #define PKCS_CTL                             ((LPCSTR)37)
2702 #define X509_MULTI_BYTE_UINT                 ((LPCSTR)38)
2703 #define X509_DSS_PUBLICKEY                   X509_MULTI_BYTE_UINT
2704 #define X509_DSS_PARAMETERS                  ((LPCSTR)39)
2705 #define X509_DSS_SIGNATURE                   ((LPCSTR)40)
2706 #define PKCS_RC2_CBC_PARAMETERS              ((LPCSTR)41)
2707 #define PKCS_SMIME_CAPABILITIES              ((LPCSTR)42)
2708 #define PKCS_RSA_PRIVATE_KEY                 ((LPCSTR)43)
2709 #define PKCS_PRIVATE_KEY_INFO                ((LPCSTR)44)
2710 #define PKCS_ENCRYPTED_PRIVATE_KEY_INFO      ((LPCSTR)45)
2711 #define X509_PKIX_POLICY_QUALIFIER_USERNOTICE ((LPCSTR)46)
2712 #define X509_DH_PUBLICKEY                    X509_MULTI_BYTE_UINT
2713 #define X509_DH_PARAMETERS                   ((LPCSTR)47)
2714 #define PKCS_ATTRIBUTES                      ((LPCSTR)48)
2715 #define PKCS_SORTED_CTL                      ((LPCSTR)49)
2716 #define X942_DH_PARAMETERS                   ((LPCSTR)50)
2717 #define X509_BITS_WITHOUT_TRAILING_ZEROES    ((LPCSTR)51)
2718 #define X942_OTHER_INFO                      ((LPCSTR)52)
2719 #define X509_CERT_PAIR                       ((LPCSTR)53)
2720 #define X509_ISSUING_DIST_POINT              ((LPCSTR)54)
2721 #define X509_NAME_CONSTRAINTS                ((LPCSTR)55)
2722 #define X509_POLICY_MAPPINGS                 ((LPCSTR)56)
2723 #define X509_POLICY_CONSTRAINTS              ((LPCSTR)57)
2724 #define X509_CROSS_CERT_DIST_POINTS          ((LPCSTR)58)
2725 #define CMC_DATA                             ((LPCSTR)59)
2726 #define CMC_RESPONSE                         ((LPCSTR)60)
2727 #define CMC_STATUS                           ((LPCSTR)61)
2728 #define CMC_ADD_EXTENSIONS                   ((LPCSTR)62)
2729 #define CMC_ADD_ATTRIBUTES                   ((LPCSTR)63)
2730 #define X509_CERTIFICATE_TEMPLATE            ((LPCSTR)64)
2731 #define PKCS7_SIGNER_INFO                    ((LPCSTR)500)
2732 #define CMS_SIGNER_INFO                      ((LPCSTR)501)
2733
2734 /* encode/decode flags */
2735 #define CRYPT_ENCODE_NO_SIGNATURE_BYTE_REVERSAL_FLAG           0x00008
2736 #define CRYPT_ENCODE_ALLOC_FLAG                                0x08000
2737 #define CRYPT_SORTED_CTL_ENCODE_HASHED_SUBJECT_IDENTIFIER_FLAG 0x10000
2738 #define CRYPT_UNICODE_NAME_ENCODE_ENABLE_T61_UNICODE_FLAG \
2739  CERT_RDN_ENABLE_T61_UNICODE_FLAG
2740 #define CRYPT_UNICODE_NAME_ENCODE_ENABLE_UTF8_UNICODE_FLAG \
2741  CERT_RDN_ENABLE_UTF8_UNICODE_FLAG
2742 #define CRYPT_UNICODE_NAME_ENCODE_DISABLE_CHECK_TYPE_FLAG \
2743  CERT_RDN_DISABLE_CHECK_TYPE_FLAG
2744
2745 #define CRYPT_DECODE_NOCOPY_FLAG                               0x00001
2746 #define CRYPT_DECODE_TO_BE_SIGNED_FLAG                         0x00002
2747 #define CRYPT_DECODE_SHARE_OID_STRING_FLAG                     0x00004
2748 #define CRYPT_DECODE_NO_SIGNATURE_BYTE_REVERSAL_FLAG           0x00008
2749 #define CRYPT_DECODE_ALLOC_FLAG                                0x08000
2750 #define CRYPT_UNICODE_NAME_DECODE_DISABLE_IE4_UTF8_FLAG \
2751  CERT_RDN_DISABLE_IE4_UTF8_FLAG
2752
2753 #define CERT_STORE_SIGNATURE_FLAG     0x00000001
2754 #define CERT_STORE_TIME_VALIDITY_FLAG 0x00000002
2755 #define CERT_STORE_REVOCATION_FLAG    0x00000004
2756 #define CERT_STORE_NO_CRL_FLAG        0x00010000
2757 #define CERT_STORE_NO_ISSUER_FLAG     0x00020000
2758
2759 #define CERT_STORE_BASE_CRL_FLAG  0x00000100
2760 #define CERT_STORE_DELTA_CRL_FLAG 0x00000200
2761
2762 /* subject types for CryptVerifyCertificateSignatureEx */
2763 #define CRYPT_VERIFY_CERT_SIGN_SUBJECT_BLOB 1
2764 #define CRYPT_VERIFY_CERT_SIGN_SUBJECT_CERT 2
2765 #define CRYPT_VERIFY_CERT_SIGN_SUBJECT_CRL  3
2766
2767 /* issuer types for CryptVerifyCertificateSignatureEx */
2768 #define CRYPT_VERIFY_CERT_SIGN_ISSUER_PUBKEY 1
2769 #define CRYPT_VERIFY_CERT_SIGN_ISSUER_CERT   2
2770 #define CRYPT_VERIFY_CERT_SIGN_ISSUER_CHAIN  3
2771 #define CRYPT_VERIFY_CERT_SIGN_ISSUER_NULL   4
2772
2773 #define CRYPT_GET_URL_FROM_PROPERTY         0x00000001
2774 #define CRYPT_GET_URL_FROM_EXTENSION        0x00000002
2775 #define CRYPT_GET_URL_FROM_UNAUTH_ATTRIBUTE 0x00000004
2776 #define CRYPT_GET_URL_FROM_AUTH_ATTRIBUTE   0x00000008
2777
2778 /* Certificate name string types and flags */
2779 #define CERT_SIMPLE_NAME_STR 1
2780 #define CERT_OID_NAME_STR    2
2781 #define CERT_X500_NAME_STR   3
2782 #define CERT_NAME_STR_SEMICOLON_FLAG           0x40000000
2783 #define CERT_NAME_STR_NO_PLUS_FLAG             0x20000000
2784 #define CERT_NAME_STR_NO_QUOTING_FLAG          0x10000000
2785 #define CERT_NAME_STR_CRLF_FLAG                0x08000000
2786 #define CERT_NAME_STR_COMMA_FLAG               0x04000000
2787 #define CERT_NAME_STR_REVERSE_FLAG             0x02000000
2788 #define CERT_NAME_STR_ENABLE_UTF8_UNICODE_FLAG 0x00040000
2789 #define CERT_NAME_STR_ENABLE_T61_UNICODE_FLAG  0x00020000
2790 #define CERT_NAME_STR_DISABLE_IE4_UTF8_FLAG    0x00010000
2791
2792 #define CERT_NAME_EMAIL_TYPE            1
2793 #define CERT_NAME_RDN_TYPE              2
2794 #define CERT_NAME_ATTR_TYPE             3
2795 #define CERT_NAME_SIMPLE_DISPLAY_TYPE   4
2796 #define CERT_NAME_FRIENDLY_DISPLAY_TYPE 5
2797 #define CERT_NAME_DNS_TYPE              6
2798 #define CERT_NAME_URL_TYPE              7
2799 #define CERT_NAME_UPN_TYPE              8
2800
2801 #define CERT_NAME_ISSUER_FLAG           0x00000001
2802 #define CERT_NAME_DISABLE_IE4_UTF8_FLAG 0x00010000
2803
2804 /* CryptFormatObject flags */
2805 #define CRYPT_FORMAT_STR_MULTI_LINE 0x0001
2806 #define CRYPT_FORMAT_STR_NO_HEX     0x0010
2807
2808 #define CRYPT_FORMAT_SIMPLE        0x0001
2809 #define CRYPT_FORMAT_X509          0x0002
2810 #define CRYPT_FORMAT_OID           0x0004
2811 #define CRYPT_FORMAT_RDN_SEMICOLON 0x0100
2812 #define CRYPT_FORMAT_RDN_CRLF      0x0200
2813 #define CRYPT_FORMAT_RDN_UNQUOTE   0x0400
2814 #define CRYPT_FORMAT_RDN_REVERSE   0x0800
2815
2816 #define CRYPT_FORMAT_COMMA     0x1000
2817 #define CRYPT_FORMAT_SEMICOLON CRYPT_FORMAT_RDN_SEMICOLON
2818 #define CRYPT_FORMAT_CRLF      CRYPT_FORMAT_RDN_CRLF
2819
2820 #define CERT_SET_KEY_PROV_HANDLE_PROP_ID 0x00000001
2821 #define CERT_SET_KEY_CONTEXT_PROP_ID     0x00000001
2822
2823 #define CERT_CREATE_SELFSIGN_NO_SIGN     1
2824 #define CERT_CREATE_SELFSIGN_NO_KEY_INFO 2
2825
2826 /* flags for CryptAcquireCertificatePrivateKey */
2827 #define CRYPT_ACQUIRE_CACHE_FLAG         0x00000001
2828 #define CRYPT_ACQUIRE_USE_PROV_INFO_FLAG 0x00000002
2829 #define CRYPT_ACQUIRE_COMPARE_KEY_FLAG   0x00000004
2830 #define CRYPT_ACQUIRE_SILENT_FLAG        0x00000040
2831
2832 /* Chain engines and chains */
2833 typedef HANDLE HCERTCHAINENGINE;
2834 #define HCCE_CURRENT_USER  ((HCERTCHAINENGINE)NULL)
2835 #define HCCE_LOCAL_MACHINE ((HCERTCHAINENGINE)1)
2836
2837 #define CERT_CHAIN_CACHE_END_CERT           0x00000001
2838 #define CERT_CHAIN_THREAD_STORE_SYNC        0x00000002
2839 #define CERT_CHAIN_CACHE_ONLY_URL_RETRIEVAL 0x00000004
2840 #define CERT_CHAIN_USE_LOCAL_MACHINE_STORE  0x00000008
2841 #define CERT_CHAIN_ENABLE_CACHE_AUTO_UPDATE 0x00000010
2842 #define CERT_CHAIN_ENABLE_SHARE_STORE       0x00000020
2843
2844 typedef struct _CERT_CHAIN_ENGINE_CONFIG
2845 {
2846     DWORD       cbSize;
2847     HCERTSTORE  hRestrictedRoot;
2848     HCERTSTORE  hRestrictedTrust;
2849     HCERTSTORE  hRestrictedOther;
2850     DWORD       cAdditionalStore;
2851     HCERTSTORE *rghAdditionalStore;
2852     DWORD       dwFlags;
2853     DWORD       dwUrlRetrievalTimeout;
2854     DWORD       MaximumCachedCertificates;
2855     DWORD       CycleDetectionModulus;
2856 } CERT_CHAIN_ENGINE_CONFIG, *PCERT_CHAIN_ENGINE_CONFIG;
2857
2858 /* function declarations */
2859 /* advapi32.dll */
2860 BOOL WINAPI CryptAcquireContextA(HCRYPTPROV *phProv, LPCSTR pszContainer,
2861                                    LPCSTR pszProvider, DWORD dwProvType,
2862                                    DWORD dwFlags);
2863 BOOL WINAPI CryptAcquireContextW (HCRYPTPROV *phProv, LPCWSTR pszContainer,
2864                 LPCWSTR pszProvider, DWORD dwProvType, DWORD dwFlags);
2865 #define CryptAcquireContext WINELIB_NAME_AW(CryptAcquireContext)
2866 BOOL WINAPI CryptGenRandom (HCRYPTPROV hProv, DWORD dwLen, BYTE *pbBuffer);
2867 BOOL WINAPI CryptContextAddRef (HCRYPTPROV hProv, DWORD *pdwReserved, DWORD dwFlags);
2868 BOOL WINAPI CryptCreateHash (HCRYPTPROV hProv, ALG_ID Algid, HCRYPTKEY hKey,
2869                 DWORD dwFlags, HCRYPTHASH *phHash);
2870 BOOL WINAPI CryptDecrypt (HCRYPTKEY hKey, HCRYPTHASH hHash, BOOL Final,
2871                 DWORD dwFlags, BYTE *pbData, DWORD *pdwDataLen);
2872 BOOL WINAPI CryptDeriveKey (HCRYPTPROV hProv, ALG_ID Algid, HCRYPTHASH hBaseData,
2873                 DWORD dwFlags, HCRYPTKEY *phKey);
2874 BOOL WINAPI CryptDestroyHash (HCRYPTHASH hHash);
2875 BOOL WINAPI CryptDestroyKey (HCRYPTKEY hKey);
2876 BOOL WINAPI CryptDuplicateKey (HCRYPTKEY hKey, DWORD *pdwReserved, DWORD dwFlags, HCRYPTKEY *phKey);
2877 BOOL WINAPI CryptDuplicateHash (HCRYPTHASH hHash, DWORD *pdwReserved,
2878                 DWORD dwFlags, HCRYPTHASH *phHash);
2879 BOOL WINAPI CryptEncrypt (HCRYPTKEY hKey, HCRYPTHASH hHash, BOOL Final,
2880                 DWORD dwFlags, BYTE *pbData, DWORD *pdwDataLen, DWORD dwBufLen);
2881 BOOL WINAPI CryptEnumProvidersA (DWORD dwIndex, DWORD *pdwReserved,
2882                 DWORD dwFlags, DWORD *pdwProvType, LPSTR pszProvName, DWORD *pcbProvName);
2883 BOOL WINAPI CryptEnumProvidersW (DWORD dwIndex, DWORD *pdwReserved,
2884                 DWORD dwFlags, DWORD *pdwProvType, LPWSTR pszProvName, DWORD *pcbProvName);
2885 #define CryptEnumProviders WINELIB_NAME_AW(CryptEnumProviders)
2886 BOOL WINAPI CryptEnumProviderTypesA (DWORD dwIndex, DWORD *pdwReserved,
2887                 DWORD dwFlags, DWORD *pdwProvType, LPSTR pszTypeName, DWORD *pcbTypeName);
2888 BOOL WINAPI CryptEnumProviderTypesW (DWORD dwIndex, DWORD *pdwReserved,
2889                 DWORD dwFlags, DWORD *pdwProvType, LPWSTR pszTypeName, DWORD *pcbTypeName);
2890 #define CryptEnumProviderTypes WINELIB_NAME_AW(CryptEnumProviderTypes)
2891 BOOL WINAPI CryptExportKey (HCRYPTKEY hKey, HCRYPTKEY hExpKey, DWORD dwBlobType,
2892                 DWORD dwFlags, BYTE *pbData, DWORD *pdwDataLen);
2893 BOOL WINAPI CryptGenKey (HCRYPTPROV hProv, ALG_ID Algid, DWORD dwFlags, HCRYPTKEY *phKey);
2894 BOOL WINAPI CryptGetKeyParam (HCRYPTKEY hKey, DWORD dwParam, BYTE *pbData,
2895                 DWORD *pdwDataLen, DWORD dwFlags);
2896 BOOL WINAPI CryptGetHashParam (HCRYPTHASH hHash, DWORD dwParam, BYTE *pbData,
2897                 DWORD *pdwDataLen, DWORD dwFlags);
2898 BOOL WINAPI CryptGetProvParam (HCRYPTPROV hProv, DWORD dwParam, BYTE *pbData,
2899                 DWORD *pdwDataLen, DWORD dwFlags);
2900 BOOL WINAPI CryptGetDefaultProviderA (DWORD dwProvType, DWORD *pdwReserved,
2901                 DWORD dwFlags, LPSTR pszProvName, DWORD *pcbProvName);
2902 BOOL WINAPI CryptGetDefaultProviderW (DWORD dwProvType, DWORD *pdwReserved,
2903                 DWORD dwFlags, LPWSTR pszProvName, DWORD *pcbProvName);
2904 #define CryptGetDefaultProvider WINELIB_NAME_AW(CryptGetDefaultProvider)
2905 BOOL WINAPI CryptGetUserKey (HCRYPTPROV hProv, DWORD dwKeySpec, HCRYPTKEY *phUserKey);
2906 BOOL WINAPI CryptHashData (HCRYPTHASH hHash, const BYTE *pbData, DWORD dwDataLen, DWORD dwFlags);
2907 BOOL WINAPI CryptHashSessionKey (HCRYPTHASH hHash, HCRYPTKEY hKey, DWORD dwFlags);
2908 BOOL WINAPI CryptImportKey (HCRYPTPROV hProv, BYTE *pbData, DWORD dwDataLen,
2909                 HCRYPTKEY hPubKey, DWORD dwFlags, HCRYPTKEY *phKey);
2910 BOOL WINAPI CryptReleaseContext (HCRYPTPROV hProv, DWORD dwFlags);
2911 BOOL WINAPI CryptSetHashParam (HCRYPTHASH hHash, DWORD dwParam, BYTE *pbData, DWORD dwFlags);
2912 BOOL WINAPI CryptSetKeyParam (HCRYPTKEY hKey, DWORD dwParam, BYTE *pbData, DWORD dwFlags);
2913 BOOL WINAPI CryptSetProviderA (LPCSTR pszProvName, DWORD dwProvType);
2914 BOOL WINAPI CryptSetProviderW (LPCWSTR pszProvName, DWORD dwProvType);
2915 #define CryptSetProvider WINELIB_NAME_AW(CryptSetProvider)
2916 BOOL WINAPI CryptSetProviderExA (LPCSTR pszProvName, DWORD dwProvType, DWORD *pdwReserved, DWORD dwFlags);
2917 BOOL WINAPI CryptSetProviderExW (LPCWSTR pszProvName, DWORD dwProvType, DWORD *pdwReserved, DWORD dwFlags);
2918 #define CryptSetProviderEx WINELIB_NAME_AW(CryptSetProviderEx)
2919 BOOL WINAPI CryptSetProvParam (HCRYPTPROV hProv, DWORD dwParam, BYTE *pbData, DWORD dwFlags);
2920 BOOL WINAPI CryptSignHashA (HCRYPTHASH hHash, DWORD dwKeySpec, LPCSTR sDescription,
2921                 DWORD dwFlags, BYTE *pbSignature, DWORD *pdwSigLen);
2922 BOOL WINAPI CryptSignHashW (HCRYPTHASH hHash, DWORD dwKeySpec, LPCWSTR sDescription,
2923                 DWORD dwFlags, BYTE *pbSignature, DWORD *pdwSigLen);
2924 #define CryptSignHash WINELIB_NAME_AW(CryptSignHash)
2925 BOOL WINAPI CryptVerifySignatureA (HCRYPTHASH hHash, BYTE *pbSignature, DWORD dwSigLen,
2926                 HCRYPTKEY hPubKey, LPCSTR sDescription, DWORD dwFlags);
2927 BOOL WINAPI CryptVerifySignatureW (HCRYPTHASH hHash, BYTE *pbSignature, DWORD dwSigLen,
2928                 HCRYPTKEY hPubKey, LPCWSTR sDescription, DWORD dwFlags);
2929 #define CryptVerifySignature WINELIB_NAME_AW(CryptVerifySignature)
2930
2931 /* crypt32.dll functions */
2932 LPVOID WINAPI CryptMemAlloc(ULONG cbSize);
2933 LPVOID WINAPI CryptMemRealloc(LPVOID pv, ULONG cbSize);
2934 VOID   WINAPI CryptMemFree(LPVOID pv);
2935
2936 BOOL WINAPI CryptBinaryToStringA(const BYTE *pbBinary,
2937  DWORD cbBinary, DWORD dwFlags, LPSTR pszString, DWORD *pcchString);
2938 BOOL WINAPI CryptBinaryToStringW(const BYTE *pbBinary,
2939  DWORD cbBinary, DWORD dwFlags, LPWSTR pszString, DWORD *pcchString);
2940 #define CryptBinaryToString WINELIB_NAME_AW(CryptBinaryToString)
2941
2942 BOOL WINAPI CryptStringToBinaryA(LPCSTR pszString,
2943  DWORD cchString, DWORD dwFlags, BYTE *pbBinary, DWORD *pcbBinary,
2944  DWORD *pdwSkip, DWORD *pdwFlags);
2945 BOOL WINAPI CryptStringToBinaryW(LPCWSTR pszString,
2946  DWORD cchString, DWORD dwFlags, BYTE *pbBinary, DWORD *pcbBinary,
2947  DWORD *pdwSkip, DWORD *pdwFlags);
2948 #define CryptStringToBinary WINELIB_NAME_AW(CryptStringToBinary)
2949
2950 BOOL WINAPI CryptRegisterDefaultOIDFunction(DWORD,LPCSTR,DWORD,LPCWSTR);
2951 BOOL WINAPI CryptRegisterOIDFunction(DWORD,LPCSTR,LPCSTR,LPCWSTR,LPCSTR);
2952 BOOL WINAPI CryptGetOIDFunctionValue(DWORD dwEncodingType, LPCSTR pszFuncName,
2953                                      LPCSTR pszOID, LPCWSTR szValueName, DWORD *pdwValueType,
2954                                      BYTE *pbValueData, DWORD *pcbValueData);
2955 BOOL WINAPI CryptSetOIDFunctionValue(DWORD dwEncodingType, LPCSTR pszFuncName,
2956                                      LPCSTR pszOID, LPCWSTR pwszValueName, DWORD dwValueType,
2957                                      const BYTE *pbValueData, DWORD cbValueData);
2958 BOOL WINAPI CryptUnregisterDefaultOIDFunction(DWORD,LPCSTR,LPCWSTR);
2959 BOOL WINAPI CryptUnregisterOIDFunction(DWORD,LPCSTR,LPCSTR);
2960 BOOL WINAPI CryptEnumOIDFunction(DWORD dwEncodingType, LPCSTR pszFuncName,
2961  LPCSTR pszOID, DWORD dwFlags, void *pvArg,
2962  PFN_CRYPT_ENUM_OID_FUNC pfnEnumOIDFunc);
2963 HCRYPTOIDFUNCSET WINAPI CryptInitOIDFunctionSet(LPCSTR,DWORD);
2964 BOOL WINAPI CryptGetDefaultOIDDllList(HCRYPTOIDFUNCSET hFuncSet,
2965  DWORD dwEncodingType, LPWSTR pwszDllList, DWORD *pcchDllList);
2966 BOOL WINAPI CryptGetDefaultOIDFunctionAddress(HCRYPTOIDFUNCSET hFuncSet,
2967  DWORD dwEncodingType, LPCWSTR pwszDll, DWORD dwFlags, void *ppvFuncAddr,
2968  HCRYPTOIDFUNCADDR *phFuncAddr);
2969 BOOL WINAPI CryptGetOIDFunctionAddress(HCRYPTOIDFUNCSET hFuncSet,
2970  DWORD dwEncodingType, LPCSTR pszOID, DWORD dwFlags, void **ppvFuncAddr,
2971  HCRYPTOIDFUNCADDR *phFuncAddr);
2972 BOOL WINAPI CryptFreeOIDFunctionAddress(HCRYPTOIDFUNCADDR hFuncAddr,
2973  DWORD dwFlags);
2974 BOOL WINAPI CryptInstallOIDFunctionAddress(HMODULE hModule,
2975  DWORD dwEncodingType, LPCSTR pszFuncName, DWORD cFuncEntry,
2976  const CRYPT_OID_FUNC_ENTRY rgFuncEntry[], DWORD dwFlags);
2977
2978 BOOL WINAPI CryptEnumOIDInfo(DWORD dwGroupId, DWORD dwFlags, void *pvArg,
2979  PFN_CRYPT_ENUM_OID_INFO pfnEnumOIDInfo);
2980 PCCRYPT_OID_INFO WINAPI CryptFindOIDInfo(DWORD dwKeyType, void *pvKey,
2981  DWORD dwGroupId);
2982 BOOL WINAPI CryptRegisterOIDInfo(PCCRYPT_OID_INFO pInfo, DWORD dwFlags);
2983 BOOL WINAPI CryptUnregisterOIDInfo(PCCRYPT_OID_INFO pInfo);
2984
2985 LPCSTR WINAPI CertAlgIdToOID(DWORD dwAlgId);
2986 DWORD WINAPI CertOIDToAlgId(LPCSTR pszObjId);
2987
2988 /* cert store functions */
2989 HCERTSTORE WINAPI CertOpenStore(LPCSTR lpszStoreProvider, DWORD dwEncodingType,
2990  HCRYPTPROV hCryptProv, DWORD dwFlags, const void *pvPara);
2991
2992 HCERTSTORE WINAPI CertOpenSystemStoreA(HCRYPTPROV hProv,
2993  LPCSTR szSubSystemProtocol);
2994 HCERTSTORE WINAPI CertOpenSystemStoreW(HCRYPTPROV hProv,
2995  LPCWSTR szSubSystemProtocol);
2996 #define CertOpenSystemStore WINELIB_NAME_AW(CertOpenSystemStore)
2997
2998 PCCERT_CONTEXT WINAPI CertEnumCertificatesInStore(HCERTSTORE hCertStore,
2999  PCCERT_CONTEXT pPrev);
3000
3001 PCCRL_CONTEXT WINAPI CertEnumCRLsInStore(HCERTSTORE hCertStore,
3002  PCCRL_CONTEXT pPrev);
3003
3004 PCCTL_CONTEXT WINAPI CertEnumCTLsInStore(HCERTSTORE hCertStore,
3005  PCCTL_CONTEXT pPrev);
3006
3007 BOOL WINAPI CertEnumSystemStoreLocation(DWORD dwFlags, void *pvArg,
3008  PFN_CERT_ENUM_SYSTEM_STORE_LOCATION pfnEnum);
3009
3010 BOOL WINAPI CertEnumSystemStore(DWORD dwFlags, void *pvSystemStoreLocationPara,
3011  void *pvArg, PFN_CERT_ENUM_SYSTEM_STORE pfnEnum);
3012
3013 BOOL WINAPI CertEnumPhysicalStore(const void *pvSystemStore, DWORD dwFlags,
3014  void *pvArg, PFN_CERT_ENUM_PHYSICAL_STORE pfnEnum);
3015
3016 BOOL WINAPI CertSaveStore(HCERTSTORE hCertStore, DWORD dwMsgAndCertEncodingType,
3017              DWORD dwSaveAs, DWORD dwSaveTo, void* pvSaveToPara, DWORD dwFlags);
3018
3019 BOOL WINAPI CertAddStoreToCollection(HCERTSTORE hCollectionStore,
3020  HCERTSTORE hSiblingStore, DWORD dwUpdateFlags, DWORD dwPriority);
3021
3022 void WINAPI CertRemoveStoreFromCollection(HCERTSTORE hCollectionStore,
3023  HCERTSTORE hSiblingStore);
3024
3025 BOOL WINAPI CertCreateCertificateChainEngine(PCERT_CHAIN_ENGINE_CONFIG pConfig,
3026  HCERTCHAINENGINE *phChainEngine);
3027
3028 BOOL WINAPI CertResyncCertificateChainEngine(HCERTCHAINENGINE hChainEngine);
3029
3030 void WINAPI CertFreeCertificateChainEngine(HCERTCHAINENGINE hChainEngine);
3031
3032 BOOL WINAPI CertGetCertificateChain(HCERTCHAINENGINE hChainEngine,
3033  PCCERT_CONTEXT pCertContext, LPFILETIME pTime, HCERTSTORE hAdditionalStore,
3034  PCERT_CHAIN_PARA pChainPara, DWORD dwFlags, LPVOID pvReserved,
3035  PCCERT_CHAIN_CONTEXT *ppChainContext);
3036
3037 PCCERT_CHAIN_CONTEXT WINAPI CertDuplicateCertificateChain(
3038  PCCERT_CHAIN_CONTEXT pChainContext);
3039
3040 void WINAPI CertFreeCertificateChain(PCCERT_CHAIN_CONTEXT pChainContext);
3041
3042 PCCERT_CHAIN_CONTEXT WINAPI CertFindChainInStore(HCERTSTORE hCertStore,
3043  DWORD dwCertEncodingType, DWORD dwFindFlags, DWORD dwFindType,
3044  const void *pvFindPara, PCCERT_CHAIN_CONTEXT pPrevChainContext);
3045
3046 BOOL WINAPI CertVerifyCertificateChainPolicy(LPCSTR szPolicyOID,
3047  PCCERT_CHAIN_CONTEXT pChainContext, PCERT_CHAIN_POLICY_PARA pPolicyPara,
3048  PCERT_CHAIN_POLICY_STATUS pPolicyStatus);
3049
3050 DWORD WINAPI CertEnumCertificateContextProperties(PCCERT_CONTEXT pCertContext,
3051  DWORD dwPropId);
3052
3053 BOOL WINAPI CertGetCertificateContextProperty(PCCERT_CONTEXT pCertContext,
3054  DWORD dwPropId, void *pvData, DWORD *pcbData);
3055
3056 BOOL WINAPI CertSetCertificateContextProperty(PCCERT_CONTEXT pCertContext,
3057  DWORD dwPropId, DWORD dwFlags, const void *pvData);
3058
3059 DWORD WINAPI CertEnumCRLContextProperties(PCCRL_CONTEXT pCRLContext,
3060  DWORD dwPropId);
3061
3062 BOOL WINAPI CertGetCRLContextProperty(PCCRL_CONTEXT pCRLContext,
3063  DWORD dwPropId, void *pvData, DWORD *pcbData);
3064
3065 BOOL WINAPI CertSetCRLContextProperty(PCCRL_CONTEXT pCRLContext,
3066  DWORD dwPropId, DWORD dwFlags, const void *pvData);
3067
3068 DWORD WINAPI CertEnumCTLContextProperties(PCCTL_CONTEXT pCTLContext,
3069  DWORD dwPropId);
3070
3071 BOOL WINAPI CertGetCTLContextProperty(PCCTL_CONTEXT pCTLContext,
3072  DWORD dwPropId, void *pvData, DWORD *pcbData);
3073
3074 BOOL WINAPI CertSetCTLContextProperty(PCCTL_CONTEXT pCTLContext,
3075  DWORD dwPropId, DWORD dwFlags, const void *pvData);
3076
3077 BOOL WINAPI CertGetStoreProperty(HCERTSTORE hCertStore, DWORD dwPropId,
3078  void *pvData, DWORD *pcbData);
3079
3080 BOOL WINAPI CertSetStoreProperty(HCERTSTORE hCertStore, DWORD dwPropId,
3081  DWORD dwFlags, const void *pvData);
3082
3083 BOOL WINAPI CertControlStore(HCERTSTORE hCertStore, DWORD dwFlags,
3084  DWORD dwCtrlType, void const *pvCtrlPara);
3085
3086 HCERTSTORE WINAPI CertDuplicateStore(HCERTSTORE hCertStore);
3087
3088 BOOL WINAPI CertCloseStore( HCERTSTORE hCertStore, DWORD dwFlags );
3089
3090 BOOL WINAPI CertFreeCertificateContext( PCCERT_CONTEXT pCertContext );
3091
3092 BOOL WINAPI CertFreeCRLContext( PCCRL_CONTEXT pCrlContext );
3093
3094 BOOL WINAPI CertFreeCTLContext( PCCTL_CONTEXT pCtlContext );
3095
3096 BOOL WINAPI CertAddCertificateContextToStore(HCERTSTORE hCertStore,
3097  PCCERT_CONTEXT pCertContext, DWORD dwAddDisposition,
3098  PCCERT_CONTEXT *ppStoreContext);
3099
3100 BOOL WINAPI CertAddCRLContextToStore( HCERTSTORE hCertStore,
3101  PCCRL_CONTEXT pCrlContext, DWORD dwAddDisposition,
3102  PCCRL_CONTEXT *ppStoreContext );
3103
3104 BOOL WINAPI CertAddCTLContextToStore( HCERTSTORE hCertStore,
3105  PCCTL_CONTEXT pCtlContext, DWORD dwAddDisposition,
3106  PCCTL_CONTEXT *ppStoreContext );
3107
3108 BOOL WINAPI CertAddCertificateLinkToStore(HCERTSTORE hCertStore,
3109  PCCERT_CONTEXT pCertContext, DWORD dwAddDisposition,
3110  PCCERT_CONTEXT *ppStoreContext);
3111
3112 BOOL WINAPI CertAddCRLLinkToStore(HCERTSTORE hCertStore,
3113  PCCRL_CONTEXT pCrlContext, DWORD dwAddDisposition,
3114  PCCRL_CONTEXT *ppStoreContext);
3115
3116 BOOL WINAPI CertAddCTLLinkToStore(HCERTSTORE hCertStore,
3117  PCCTL_CONTEXT pCtlContext, DWORD dwAddDisposition,
3118  PCCTL_CONTEXT *ppStoreContext);
3119
3120 BOOL WINAPI CertAddEncodedCertificateToStore(HCERTSTORE hCertStore,
3121  DWORD dwCertEncodingType, const BYTE *pbCertEncoded, DWORD cbCertEncoded,
3122  DWORD dwAddDisposition, PCCERT_CONTEXT *ppCertContext);
3123
3124 BOOL WINAPI CertAddEncodedCRLToStore(HCERTSTORE hCertStore,
3125  DWORD dwCertEncodingType, const BYTE *pbCrlEncoded, DWORD cbCrlEncoded,
3126  DWORD dwAddDisposition, PCCRL_CONTEXT *ppCrlContext);
3127
3128 BOOL WINAPI CertAddEncodedCTLToStore(HCERTSTORE hCertStore,
3129  DWORD dwMsgAndCertEncodingType, const BYTE *pbCtlEncoded, DWORD cbCtlEncoded,
3130  DWORD dwAddDisposition, PCCTL_CONTEXT *ppCtlContext);
3131
3132 BOOL WINAPI CertAddSerializedElementToStore(HCERTSTORE hCertStore,
3133  const BYTE *pbElement, DWORD cbElement, DWORD dwAddDisposition, DWORD dwFlags,
3134  DWORD dwContextTypeFlags, DWORD *pdwContentType, const void **ppvContext);
3135
3136 BOOL WINAPI CertCompareCertificate(DWORD dwCertEncodingType,
3137  PCERT_INFO pCertId1, PCERT_INFO pCertId2);
3138 BOOL WINAPI CertCompareCertificateName(DWORD dwCertEncodingType,
3139  PCERT_NAME_BLOB pCertName1, PCERT_NAME_BLOB pCertName2);
3140 BOOL WINAPI CertCompareIntegerBlob(PCRYPT_INTEGER_BLOB pInt1,
3141  PCRYPT_INTEGER_BLOB pInt2);
3142 BOOL WINAPI CertComparePublicKeyInfo(DWORD dwCertEncodingType,
3143  PCERT_PUBLIC_KEY_INFO pPublicKey1, PCERT_PUBLIC_KEY_INFO pPublicKey2);
3144 DWORD WINAPI CertGetPublicKeyLength(DWORD dwCertEncodingType,
3145  PCERT_PUBLIC_KEY_INFO pPublicKey);
3146
3147 const void *CertCreateContext(DWORD dwContextType, DWORD dwEncodingType,
3148  const BYTE *pbEncoded, DWORD cbEncoded, DWORD dwFlags,
3149  PCERT_CREATE_CONTEXT_PARA pCreatePara);
3150
3151 PCCERT_CONTEXT WINAPI CertCreateCertificateContext(DWORD dwCertEncodingType,
3152  const BYTE *pbCertEncoded, DWORD cbCertEncoded);
3153
3154 PCCRL_CONTEXT WINAPI CertCreateCRLContext( DWORD dwCertEncodingType,
3155   const BYTE* pbCrlEncoded, DWORD cbCrlEncoded);
3156
3157 PCCTL_CONTEXT WINAPI CertCreateCTLContext(DWORD dwMsgAndCertEncodingType,
3158  const BYTE *pbCtlEncoded, DWORD cbCtlEncoded);
3159
3160 PCCERT_CONTEXT WINAPI CertCreateSelfSignCertificate(HCRYPTPROV hProv,
3161  PCERT_NAME_BLOB pSubjectIssuerBlob, DWORD dwFlags,
3162  PCRYPT_KEY_PROV_INFO pKeyProvInfo,
3163  PCRYPT_ALGORITHM_IDENTIFIER pSignatureAlgorithm, PSYSTEMTIME pStartTime,
3164  PSYSTEMTIME pEndTime, PCERT_EXTENSIONS pExtensions);
3165
3166 BOOL WINAPI CertDeleteCertificateFromStore(PCCERT_CONTEXT pCertContext);
3167
3168 BOOL WINAPI CertDeleteCRLFromStore(PCCRL_CONTEXT pCrlContext);
3169
3170 BOOL WINAPI CertDeleteCTLFromStore(PCCTL_CONTEXT pCtlContext);
3171
3172 PCCERT_CONTEXT WINAPI CertDuplicateCertificateContext(
3173  PCCERT_CONTEXT pCertContext);
3174
3175 PCCRL_CONTEXT WINAPI CertDuplicateCRLContext(PCCRL_CONTEXT pCrlContext);
3176
3177 PCCTL_CONTEXT WINAPI CertDuplicateCTLContext(PCCTL_CONTEXT pCtlContext);
3178
3179 PCCERT_CONTEXT WINAPI CertFindCertificateInStore( HCERTSTORE hCertStore,
3180  DWORD dwCertEncodingType, DWORD dwFindFlags, DWORD dwFindType,
3181  const void *pvFindPara, PCCERT_CONTEXT pPrevCertContext );
3182
3183 PCCRL_CONTEXT WINAPI CertFindCRLInStore(HCERTSTORE hCertStore,
3184  DWORD dwCertEncodingType, DWORD dwFindFlags, DWORD dwFindType,
3185  const void *pvFindPara, PCCRL_CONTEXT pPrevCrlContext);
3186
3187 PCCTL_CONTEXT WINAPI CertFindCTLInStore(HCERTSTORE hCertStore,
3188  DWORD dwCertEncodingType, DWORD dwFindFlags, DWORD dwFindType,
3189  const void *pvFindPara, PCCTL_CONTEXT pPrevCtlContext);
3190
3191 PCCERT_CONTEXT WINAPI CertGetIssuerCertificateFromStore(HCERTSTORE hCertStore,
3192  PCCERT_CONTEXT pSubjectContext, PCCERT_CONTEXT pPrevIssuerContext,
3193  DWORD *pdwFlags);
3194
3195 PCCERT_CONTEXT WINAPI CertGetSubjectCertificateFromStore(HCERTSTORE hCertStore,
3196  DWORD dwCertEncodingType, PCERT_INFO pCertId);
3197
3198 PCCRL_CONTEXT WINAPI CertGetCRLFromStore(HCERTSTORE hCertStore,
3199  PCCERT_CONTEXT pIssuerContext, PCCRL_CONTEXT pPrevCrlContext, DWORD *pdwFlags);
3200
3201 BOOL WINAPI CertSerializeCertificateStoreElement(PCCERT_CONTEXT pCertContext,
3202  DWORD dwFlags, BYTE *pbElement, DWORD *pcbElement);
3203
3204 BOOL WINAPI CertSerializeCRLStoreElement(PCCRL_CONTEXT pCrlContext,
3205  DWORD dwFlags, BYTE *pbElement, DWORD *pcbElement);
3206
3207 BOOL WINAPI CertSerializeCTLStoreElement(PCCTL_CONTEXT pCtlContext,
3208  DWORD dwFlags, BYTE *pbElement, DWORD *pcbElement);
3209
3210 BOOL WINAPI CertGetEnhancedKeyUsage(PCCERT_CONTEXT pCertContext, DWORD dwFlags,
3211  PCERT_ENHKEY_USAGE pUsage, DWORD *pcbUsage);
3212 BOOL WINAPI CertSetEnhancedKeyUsage(PCCERT_CONTEXT pCertContext,
3213  PCERT_ENHKEY_USAGE pUsage);
3214 BOOL WINAPI CertAddEnhancedKeyUsageIdentifier(PCCERT_CONTEXT pCertContext,
3215  LPCSTR pszUsageIdentifer);
3216 BOOL WINAPI CertRemoveEnhancedKeyUsageIdentifier(PCCERT_CONTEXT pCertContext,
3217  LPCSTR pszUsageIdentifer);
3218 BOOL WINAPI CertGetValidUsages(DWORD cCerts, PCCERT_CONTEXT *rghCerts,
3219  int *cNumOIDs, LPSTR *rghOIDs, DWORD *pcbOIDs);
3220
3221 BOOL WINAPI CryptEncodeObject(DWORD dwCertEncodingType, LPCSTR lpszStructType,
3222  const void *pvStructInfo, BYTE *pbEncoded, DWORD *pcbEncoded);
3223 BOOL WINAPI CryptEncodeObjectEx(DWORD dwCertEncodingType, LPCSTR lpszStructType,
3224  const void *pvStructInfo, DWORD dwFlags, PCRYPT_ENCODE_PARA pEncodePara,
3225  void *pvEncoded, DWORD *pcbEncoded);
3226
3227 BOOL WINAPI CryptDecodeObject(DWORD dwCertEncodingType, LPCSTR lpszStructType,
3228  const BYTE *pbEncoded, DWORD cbEncoded, DWORD dwFlags, void *pvStructInfo,
3229  DWORD *pcbStructInfo);
3230 BOOL WINAPI CryptDecodeObjectEx(DWORD dwCertEncodingType, LPCSTR lpszStructType,
3231  const BYTE *pbEncoded, DWORD cbEncoded, DWORD dwFlags,
3232  PCRYPT_DECODE_PARA pDecodePara, void *pvStructInfo, DWORD *pcbStructInfo);
3233
3234 BOOL WINAPI CryptFormatObject(DWORD dwCertEncodingType, DWORD dwFormatType,
3235  DWORD dwFormatStrType, void *pFormatStruct, LPCSTR lpszStructType,
3236  const BYTE *pbEncoded, DWORD cbEncoded, void *pbFormat, DWORD *pcbFormat);
3237
3238 BOOL WINAPI CryptHashCertificate(HCRYPTPROV hCryptProv, ALG_ID Algid,
3239  DWORD dwFlags, const BYTE *pbEncoded, DWORD cbEncoded, BYTE *pbComputedHash,
3240  DWORD *pcbComputedHash);
3241
3242 BOOL WINAPI CryptHashPublicKeyInfo(HCRYPTPROV hCryptProv, ALG_ID Algid,
3243  DWORD dwFlags, DWORD dwCertEncodingType, PCERT_PUBLIC_KEY_INFO pInfo,
3244  BYTE *pbComputedHash, DWORD *pcbComputedHash);
3245
3246 BOOL WINAPI CryptHashToBeSigned(HCRYPTPROV hCryptProv, DWORD dwCertEncodingType,
3247  const BYTE *pbEncoded, DWORD cbEncoded, BYTE *pbComputedHash,
3248  DWORD *pcbComputedHash);
3249
3250 BOOL WINAPI CryptQueryObject(DWORD dwObjectType, const void* pvObject,
3251  DWORD dwExpectedContentTypeFlags, DWORD dwExpectedFormatTypeFlags,
3252  DWORD dwFlags, DWORD* pdwMsgAndCertEncodingType, DWORD* pdwContentType,
3253  DWORD* pdwFormatType, HCERTSTORE* phCertStore, HCRYPTMSG* phMsg,
3254  const void** ppvContext);
3255
3256 BOOL WINAPI CryptSignCertificate(HCRYPTPROV hCryptProv, DWORD dwKeySpec,
3257  DWORD dwCertEncodingType, const BYTE *pbEncodedToBeSigned,
3258  DWORD cbEncodedToBeSigned, PCRYPT_ALGORITHM_IDENTIFIER pSignatureAlgorithm,
3259  const void *pvHashAuxInfo, BYTE *pbSignature, DWORD *pcbSignature);
3260
3261 BOOL WINAPI CryptSignAndEncodeCertificate(HCRYPTPROV hCryptProv,
3262  DWORD dwKeySpec, DWORD dwCertEncodingType, LPCSTR lpszStructType,
3263  const void *pvStructInfo, PCRYPT_ALGORITHM_IDENTIFIER pSignatureAlgorithm,
3264  const void *pvHashAuxInfo, PBYTE pbEncoded, DWORD *pcbEncoded);
3265
3266 BOOL WINAPI CryptVerifyCertificateSignature(HCRYPTPROV hCryptProv,
3267  DWORD dwCertEncodingType, const BYTE *pbEncoded, DWORD cbEncoded,
3268  PCERT_PUBLIC_KEY_INFO pPublicKey);
3269
3270 BOOL WINAPI CryptVerifyCertificateSignatureEx(HCRYPTPROV hCryptProv,
3271  DWORD dwCertEncodingType, DWORD dwSubjectType, void *pvSubject,
3272  DWORD dwIssuerType, void *pvIssuer, DWORD dwFlags, void *pvReserved);
3273
3274 PCRYPT_ATTRIBUTE WINAPI CertFindAttribute(LPCSTR pszObjId, DWORD cAttr,
3275  CRYPT_ATTRIBUTE rgAttr[]);
3276 PCERT_EXTENSION WINAPI CertFindExtension(LPCSTR pszObjId, DWORD cExtensions,
3277  CERT_EXTENSION rgExtensions[]);
3278 PCERT_RDN_ATTR WINAPI CertFindRDNAttr(LPCSTR pszObjId, PCERT_NAME_INFO pName);
3279
3280 BOOL WINAPI CertIsValidCRLForCertificate(PCCERT_CONTEXT pCert,
3281  PCCRL_CONTEXT pCrl, DWORD dwFlags, void *pvReserved);
3282 BOOL WINAPI CertFindCertificateInCRL(PCCERT_CONTEXT pCert,
3283  PCCRL_CONTEXT pCrlContext, DWORD dwFlags, void *pvReserved,
3284  PCRL_ENTRY *ppCrlEntry);
3285 BOOL WINAPI CertVerifyCRLRevocation(DWORD dwCertEncodingType,
3286  PCERT_INFO pCertId, DWORD cCrlInfo, PCRL_INFO rgpCrlInfo[]);
3287
3288 BOOL WINAPI CertVerifySubjectCertificateContext(PCCERT_CONTEXT pSubject,
3289  PCCERT_CONTEXT pIssuer, DWORD *pdwFlags);
3290
3291 LONG WINAPI CertVerifyCRLTimeValidity(LPFILETIME pTimeToVerify,
3292  PCRL_INFO pCrlInfo);
3293 LONG WINAPI CertVerifyTimeValidity(LPFILETIME pTimeToVerify,
3294  PCERT_INFO pCertInfo);
3295
3296 BOOL WINAPI CertVerifyCTLUsage(DWORD dwEncodingType, DWORD dwSubjectType,
3297  void *pvSubject, PCTL_USAGE pSubjectUsage, DWORD dwFlags,
3298  PCTL_VERIFY_USAGE_PARA pVerifyUsagePara,
3299  PCTL_VERIFY_USAGE_STATUS pVerifyUsageStatus);
3300
3301 BOOL WINAPI CertVerifyRevocation(DWORD dwEncodingType, DWORD dwRevType,
3302  DWORD cContext, void *rgpvContext[], DWORD dwFlags,
3303  PCERT_REVOCATION_PARA pRevPara, PCERT_REVOCATION_STATUS pRevStatus);
3304
3305 BOOL WINAPI CryptExportPublicKeyInfo(HCRYPTPROV hCryptProv, DWORD dwKeySpec,
3306  DWORD dwCertEncodingType, PCERT_PUBLIC_KEY_INFO pInfo, DWORD *pcbInfo);
3307 BOOL WINAPI CryptExportPublicKeyInfoEx(HCRYPTPROV hCryptProv, DWORD dwKeySpec,
3308  DWORD dwCertEncodingType, LPSTR pszPublicKeyObjId, DWORD dwFlags,
3309  void *pvAuxInfo, PCERT_PUBLIC_KEY_INFO pInfo, DWORD *pcbInfo);
3310 BOOL WINAPI CryptImportPublicKeyInfo(HCRYPTPROV hCryptProv,
3311  DWORD dwCertEncodingType, PCERT_PUBLIC_KEY_INFO pInfo, HCRYPTKEY *phKey);
3312 BOOL WINAPI CryptImportPublicKeyInfoEx(HCRYPTPROV hCryptProv,
3313  DWORD dwCertEncodingType, PCERT_PUBLIC_KEY_INFO pInfo, ALG_ID aiKeyAlg,
3314  DWORD dwFlags, void *pvAuxInfo, HCRYPTKEY *phKey);
3315
3316 BOOL WINAPI CryptAcquireCertificatePrivateKey(PCCERT_CONTEXT pCert,
3317  DWORD dwFlags, void *pvReserved, HCRYPTPROV *phCryptProv, DWORD *pdwKeySpec,
3318  BOOL *pfCallerFreeProv);
3319
3320 BOOL WINAPI CryptProtectData( DATA_BLOB* pDataIn, LPCWSTR szDataDescr,
3321  DATA_BLOB* pOptionalEntropy, PVOID pvReserved,
3322  CRYPTPROTECT_PROMPTSTRUCT* pPromptStruct, DWORD dwFlags, DATA_BLOB* pDataOut );
3323
3324 BOOL WINAPI CryptUnprotectData( DATA_BLOB* pDataIn, LPWSTR* ppszDataDescr,
3325  DATA_BLOB* pOptionalEntropy, PVOID pvReserved,
3326  CRYPTPROTECT_PROMPTSTRUCT* pPromptStruct, DWORD dwFlags, DATA_BLOB* pDataOut );
3327
3328 DWORD WINAPI CertGetNameStringA(PCCERT_CONTEXT pCertContext, DWORD dwType,
3329  DWORD dwFlags, void *pvTypePara, LPSTR pszNameString, DWORD cchNameString);
3330 DWORD WINAPI CertGetNameStringW(PCCERT_CONTEXT pCertContext, DWORD dwType,
3331  DWORD dwFlags, void *pvTypePara, LPWSTR pszNameString, DWORD cchNameString);
3332 #define CertGetNameString WINELIB_NAME_AW(CertGetNameString)
3333
3334 DWORD WINAPI CertRDNValueToStrA(DWORD dwValueType, PCERT_RDN_VALUE_BLOB pValue,
3335  LPSTR psz, DWORD csz);
3336 DWORD WINAPI CertRDNValueToStrW(DWORD dwValueType, PCERT_RDN_VALUE_BLOB pValue,
3337  LPWSTR psz, DWORD csz);
3338 #define CertRDNValueToStr WINELIB_NAME_AW(CertRDNValueToStr)
3339
3340 DWORD WINAPI CertNameToStrA(DWORD dwCertEncodingType, PCERT_NAME_BLOB pName,
3341  DWORD dwStrType, LPSTR psz, DWORD csz);
3342 DWORD WINAPI CertNameToStrW(DWORD dwCertEncodingType, PCERT_NAME_BLOB pName,
3343  DWORD dwStrType, LPWSTR psz, DWORD csz);
3344 #define CertNameToStr WINELIB_NAME_AW(CertNameToStr)
3345
3346 BOOL WINAPI CertStrToNameA(DWORD dwCertEncodingType, LPCSTR pszX500,
3347  DWORD dwStrType, void *pvReserved, BYTE *pbEncoded, DWORD *pcbEncoded,
3348  LPCSTR *ppszError);
3349 BOOL WINAPI CertStrToNameW(DWORD dwCertEncodingType, LPCWSTR pszX500,
3350  DWORD dwStrType, void *pvReserved, BYTE *pbEncoded, DWORD *pcbEncoded,
3351  LPCWSTR *ppszError);
3352 #define CertStrToName WINELIB_NAME_AW(CertStrToName)
3353
3354 BOOL WINAPI CryptSignMessage(PCRYPT_SIGN_MESSAGE_PARA pSignPara,
3355  BOOL fDetachedSignature, DWORD cToBeSigned, const BYTE *rgpbToBeSigned[],
3356  DWORD rgcbToBeSigned[], BYTE *pbSignedBlob, DWORD *pcbSignedBlob);
3357 BOOL WINAPI CryptSignMessageWithKey(PCRYPT_KEY_SIGN_MESSAGE_PARA pSignPara,
3358  const BYTE *pbToBeSigned, DWORD cbToBeSigned, BYTE *pbSignedBlob,
3359  DWORD *pcbSignedBlob);
3360
3361 BOOL WINAPI CryptVerifyMessageSignature(PCRYPT_VERIFY_MESSAGE_PARA pVerifyPara,
3362  DWORD dwSignerIndex, const BYTE* pbSignedBlob, DWORD cbSignedBlob,
3363  BYTE* pbDecoded, DWORD* pcbDecoded, PCCERT_CONTEXT* ppSignerCert);
3364 BOOL WINAPI CryptVerifyMessageSignatureWithKey(
3365  PCRYPT_KEY_VERIFY_MESSAGE_PARA pVerifyPara,
3366  PCERT_PUBLIC_KEY_INFO pPublicKeyInfo, const BYTE *pbSignedBlob,
3367  DWORD cbSignedBlob, BYTE *pbDecoded, DWORD *pcbDecoded);
3368
3369 BOOL WINAPI CryptVerifyDetachedMessageSignature(
3370  PCRYPT_VERIFY_MESSAGE_PARA pVerifyPara, DWORD dwSignerIndex,
3371  const BYTE *pbDetachedSignBlob, DWORD cbDetachedSignBlob, DWORD cToBeSigned,
3372  const BYTE *rgpbToBeSigned[], DWORD rgcbToBeSigned[],
3373  PCCERT_CONTEXT *ppSignerCert);
3374 LONG WINAPI CryptGetMessageSignerCount(DWORD dwMsgEncodingType,
3375  const BYTE *pbSignedBlob, DWORD cbSignedBlob);
3376
3377 BOOL WINAPI CryptEncryptMessage(PCRYPT_ENCRYPT_MESSAGE_PARA pEncryptPara,
3378  DWORD cRecipientCert, PCCERT_CONTEXT rgpRecipientCert[],
3379  const BYTE *pbToBeEncrypted, DWORD cbToBeEncrypted, BYTE *pbEncryptedBlob,
3380  DWORD *pcbEncryptedBlob);
3381 BOOL WINAPI CryptDecryptMessage(PCRYPT_DECRYPT_MESSAGE_PARA pDecryptPara,
3382  const BYTE *pbEncryptedBlob, DWORD cbEncryptedBlob, BYTE *pbDecrypted,
3383  DWORD *pcbDecrypted, PCCERT_CONTEXT *ppXchgCert);
3384
3385 BOOL WINAPI CryptSignAndEncryptMessage(PCRYPT_SIGN_MESSAGE_PARA pSignPara,
3386  PCRYPT_ENCRYPT_MESSAGE_PARA pEncryptPara, DWORD cRecipientCert,
3387  PCCERT_CONTEXT rgpRecipientCert[], const BYTE *pbToBeSignedAndEncrypted,
3388  DWORD cbToBeSignedAndEncrypted, BYTE *pbSignedAndEncryptedBlob,
3389  DWORD *pcbSignedAndEncryptedBlob);
3390 BOOL WINAPI CryptDecryptAndVerifyMessageSignature(
3391  PCRYPT_DECRYPT_MESSAGE_PARA pDecryptPara,
3392  PCRYPT_VERIFY_MESSAGE_PARA pVerifyPara, DWORD dwSignerIndex,
3393  const BYTE *pbEncryptedBlob, DWORD cbEncryptedBlob, BYTE *pbDecrypted,
3394  DWORD *pcbDecrypted, PCCERT_CONTEXT *ppXchgCert, PCCERT_CONTEXT *ppSignerCert);
3395
3396 HCERTSTORE WINAPI CryptGetMessageCertificates(DWORD dwMsgAndCertEncodingType,
3397  HCRYPTPROV hCryptProv, DWORD dwFlags, const BYTE *pbSignedBlob,
3398  DWORD cbSignedBlob);
3399
3400 BOOL WINAPI CryptDecodeMessage(DWORD dwMsgTypeFlags,
3401  PCRYPT_DECRYPT_MESSAGE_PARA pDecryptPara,
3402  PCRYPT_VERIFY_MESSAGE_PARA pVerifyPara, DWORD dwSignerIndex,
3403  const BYTE *pbEncodedBlob, DWORD cbEncodedBlob, DWORD dwPrevInnerContentType,
3404  DWORD *pdwMsgType, DWORD *pdwInnerContentType, BYTE *pbDecoded,
3405  DWORD *pcbDecoded, PCCERT_CONTEXT *ppXchgCert, PCCERT_CONTEXT *ppSignerCert);
3406
3407 BOOL WINAPI CryptHashMessage(PCRYPT_HASH_MESSAGE_PARA pHashPara,
3408  BOOL fDetachedHash, DWORD cToBeHashed, const BYTE *rgpbToBeHashed[],
3409  DWORD rgcbToBeHashed[], BYTE *pbHashedBlob, DWORD *pcbHashedBlob,
3410  BYTE *pbComputedHash, DWORD *pcbComputedHash);
3411 BOOL WINAPI CryptVerifyMessageHash(PCRYPT_HASH_MESSAGE_PARA pHashPara,
3412  BYTE *pbHashedBlob, DWORD cbHashedBlob, BYTE *pbToBeHashed,
3413  DWORD *pcbToBeHashed, BYTE *pbComputedHash, DWORD *pcbComputedHash);
3414 BOOL WINAPI CryptVerifyDetachedMessageHash(PCRYPT_HASH_MESSAGE_PARA pHashPara,
3415  BYTE *pbDetachedHashBlob, DWORD cbDetachedHashBlob, DWORD cToBeHashed,
3416  const BYTE *rgpbToBeHashed[], DWORD rgcbToBeHashed[], BYTE *pbComputedHash,
3417  DWORD *pcbComputedHash);
3418
3419 /* cryptnet.dll functions */
3420 BOOL WINAPI CryptGetObjectUrl(LPCSTR pszUrlOid, LPVOID pvPara, DWORD dwFlags,
3421  PCRYPT_URL_ARRAY pUrlArray, DWORD *pcbUrlArray, PCRYPT_URL_INFO pUrlInfo,
3422  DWORD *pcbUrlInfo, LPVOID pvReserved);
3423
3424 #ifdef __cplusplus
3425 }
3426 #endif
3427
3428 #endif