You can not select more than 25 topics Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.
 
 
 

545 lines
15 KiB

<!DOCTYPE html>
<html>
<head>
<meta http-equiv="Content-Type" content="text/html; charset=utf-8">
<meta name="viewport" content="width=device-width, initial-scale=1">
<meta name="theme-color" content="#375EAB">
<title>pkix - The Go Programming Language</title>
<link type="text/css" rel="stylesheet" href="../../../../lib/godoc/style.css">
<link rel="stylesheet" href="../../../../lib/godoc/jquery.treeview.css">
<script type="text/javascript">window.initFuncs = [];</script>
</head>
<body>
<div id='lowframe' style="position: fixed; bottom: 0; left: 0; height: 0; width: 100%; border-top: thin solid grey; background-color: white; overflow: auto;">
...
</div><!-- #lowframe -->
<div id="topbar" class="wide"><div class="container">
<div class="top-heading" id="heading-wide"><a href="http://localhost:6060/">The Go Programming Language</a></div>
<div class="top-heading" id="heading-narrow"><a href="http://localhost:6060/">Go</a></div>
<a href="index.html#" id="menu-button"><span id="menu-button-arrow">&#9661;</span></a>
<form method="GET" action="http://localhost:6060/search">
<div id="menu">
<a href="http://localhost:6060/doc/">Documents</a>
<a href="http://localhost:6060/pkg/">Packages</a>
<a href="http://localhost:6060/project/">The Project</a>
<a href="http://localhost:6060/help/">Help</a>
<a href="http://localhost:6060/blog/">Blog</a>
<input type="text" id="search" name="q" class="inactive" value="Search" placeholder="Search">
</div>
</form>
</div></div>
<div id="page" class="wide">
<div class="container">
<h1>Package pkix</h1>
<div id="nav"></div>
<!--
Copyright 2009 The Go Authors. All rights reserved.
Use of this source code is governed by a BSD-style
license that can be found in the LICENSE file.
-->
<!--
Note: Static (i.e., not template-generated) href and id
attributes start with "pkg-" to make it impossible for
them to conflict with generated attributes (some of which
correspond to Go identifiers).
-->
<script type='text/javascript'>
document.ANALYSIS_DATA = null;
document.CALLGRAPH = null;
</script>
<div id="short-nav">
<dl>
<dd><code>import "crypto/x509/pkix"</code></dd>
</dl>
<dl>
<dd><a href="index.html#pkg-overview" class="overviewLink">Overview</a></dd>
<dd><a href="index.html#pkg-index" class="indexLink">Index</a></dd>
</dl>
</div>
<!-- The package's Name is printed as title by the top-level template -->
<div id="pkg-overview" class="toggleVisible">
<div class="collapsed">
<h2 class="toggleButton" title="Click to show Overview section">Overview ▹</h2>
</div>
<div class="expanded">
<h2 class="toggleButton" title="Click to hide Overview section">Overview ▾</h2>
<p>
Package pkix contains shared, low level structures used for ASN.1 parsing
and serialization of X.509 certificates, CRL and OCSP.
</p>
</div>
</div>
<div id="pkg-index" class="toggleVisible">
<div class="collapsed">
<h2 class="toggleButton" title="Click to show Index section">Index ▹</h2>
</div>
<div class="expanded">
<h2 class="toggleButton" title="Click to hide Index section">Index ▾</h2>
<!-- Table of contents for API; must be named manual-nav to turn off auto nav. -->
<div id="manual-nav">
<dl>
<dd><a href="index.html#AlgorithmIdentifier">type AlgorithmIdentifier</a></dd>
<dd><a href="index.html#AttributeTypeAndValue">type AttributeTypeAndValue</a></dd>
<dd><a href="index.html#AttributeTypeAndValueSET">type AttributeTypeAndValueSET</a></dd>
<dd><a href="index.html#CertificateList">type CertificateList</a></dd>
<dd>&nbsp; &nbsp; <a href="index.html#CertificateList.HasExpired">func (certList *CertificateList) HasExpired(now time.Time) bool</a></dd>
<dd><a href="index.html#Extension">type Extension</a></dd>
<dd><a href="index.html#Name">type Name</a></dd>
<dd>&nbsp; &nbsp; <a href="index.html#Name.FillFromRDNSequence">func (n *Name) FillFromRDNSequence(rdns *RDNSequence)</a></dd>
<dd>&nbsp; &nbsp; <a href="index.html#Name.ToRDNSequence">func (n Name) ToRDNSequence() (ret RDNSequence)</a></dd>
<dd><a href="index.html#RDNSequence">type RDNSequence</a></dd>
<dd><a href="index.html#RelativeDistinguishedNameSET">type RelativeDistinguishedNameSET</a></dd>
<dd><a href="index.html#RevokedCertificate">type RevokedCertificate</a></dd>
<dd><a href="index.html#TBSCertificateList">type TBSCertificateList</a></dd>
</dl>
</div><!-- #manual-nav -->
<h4>Package files</h4>
<p>
<span style="font-size:90%">
<a href="http://localhost:6060/src/crypto/x509/pkix/pkix.go">pkix.go</a>
</span>
</p>
</div><!-- .expanded -->
</div><!-- #pkg-index -->
<div id="pkg-callgraph" class="toggle" style="display: none">
<div class="collapsed">
<h2 class="toggleButton" title="Click to show Internal Call Graph section">Internal call graph ▹</h2>
</div> <!-- .expanded -->
<div class="expanded">
<h2 class="toggleButton" title="Click to hide Internal Call Graph section">Internal call graph ▾</h2>
<p>
In the call graph viewer below, each node
is a function belonging to this package
and its children are the functions it
calls&mdash;perhaps dynamically.
</p>
<p>
The root nodes are the entry points of the
package: functions that may be called from
outside the package.
There may be non-exported or anonymous
functions among them if they are called
dynamically from another package.
</p>
<p>
Click a node to visit that function's source code.
From there you can visit its callers by
clicking its declaring <code>func</code>
token.
</p>
<p>
Functions may be omitted if they were
determined to be unreachable in the
particular programs or tests that were
analyzed.
</p>
<!-- Zero means show all package entry points. -->
<ul style="margin-left: 0.5in" id="callgraph-0" class="treeview"></ul>
</div>
</div> <!-- #pkg-callgraph -->
<h2 id="AlgorithmIdentifier">type <a href="http://localhost:6060/src/crypto/x509/pkix/pkix.go?s=464:577#L7">AlgorithmIdentifier</a></h2>
<pre>type AlgorithmIdentifier struct {
Algorithm <a href="../../../encoding/asn1/index.html">asn1</a>.<a href="../../../encoding/asn1/index.html#ObjectIdentifier">ObjectIdentifier</a>
Parameters <a href="../../../encoding/asn1/index.html">asn1</a>.<a href="../../../encoding/asn1/index.html#RawValue">RawValue</a> `asn1:&#34;optional&#34;`
}</pre>
<p>
AlgorithmIdentifier represents the ASN.1 structure of the same name. See RFC
5280, section 4.1.1.2.
</p>
<h2 id="AttributeTypeAndValue">type <a href="http://localhost:6060/src/crypto/x509/pkix/pkix.go?s=814:899#L18">AttributeTypeAndValue</a></h2>
<pre>type AttributeTypeAndValue struct {
Type <a href="../../../encoding/asn1/index.html">asn1</a>.<a href="../../../encoding/asn1/index.html#ObjectIdentifier">ObjectIdentifier</a>
Value interface{}
}</pre>
<p>
AttributeTypeAndValue mirrors the ASN.1 structure of the same name in
<a href="http://tools.ietf.org/html/rfc5280#section-4.1.2.4">http://tools.ietf.org/html/rfc5280#section-4.1.2.4</a>
</p>
<h2 id="AttributeTypeAndValueSET">type <a href="http://localhost:6060/src/crypto/x509/pkix/pkix.go?s=1029:1144#L25">AttributeTypeAndValueSET</a></h2>
<pre>type AttributeTypeAndValueSET struct {
Type <a href="../../../encoding/asn1/index.html">asn1</a>.<a href="../../../encoding/asn1/index.html#ObjectIdentifier">ObjectIdentifier</a>
Value [][]<a href="index.html#AttributeTypeAndValue">AttributeTypeAndValue</a> `asn1:&#34;set&#34;`
}</pre>
<p>
AttributeTypeAndValueSET represents a set of ASN.1 sequences of
AttributeTypeAndValue sequences from RFC 2986 (PKCS #10).
</p>
<h2 id="CertificateList">type <a href="http://localhost:6060/src/crypto/x509/pkix/pkix.go?s=4967:5112#L155">CertificateList</a></h2>
<pre>type CertificateList struct {
TBSCertList <a href="index.html#TBSCertificateList">TBSCertificateList</a>
SignatureAlgorithm <a href="index.html#AlgorithmIdentifier">AlgorithmIdentifier</a>
SignatureValue <a href="../../../encoding/asn1/index.html">asn1</a>.<a href="../../../encoding/asn1/index.html#BitString">BitString</a>
}</pre>
<p>
CertificateList represents the ASN.1 structure of the same name. See RFC
5280, section 5.1. Use Certificate.CheckCRLSignature to verify the
signature.
</p>
<h3 id="CertificateList.HasExpired">func (*CertificateList) <a href="http://localhost:6060/src/crypto/x509/pkix/pkix.go?s=5185:5248#L162">HasExpired</a></h3>
<pre>func (certList *<a href="index.html#CertificateList">CertificateList</a>) HasExpired(now <a href="../../../time/index.html">time</a>.<a href="../../../time/index.html#Time">Time</a>) <a href="../../../builtin/index.html#bool">bool</a></pre>
<p>
HasExpired reports whether now is past the expiry time of certList.
</p>
<h2 id="Extension">type <a href="http://localhost:6060/src/crypto/x509/pkix/pkix.go?s=1238:1345#L32">Extension</a></h2>
<pre>type Extension struct {
Id <a href="../../../encoding/asn1/index.html">asn1</a>.<a href="../../../encoding/asn1/index.html#ObjectIdentifier">ObjectIdentifier</a>
Critical <a href="../../../builtin/index.html#bool">bool</a> `asn1:&#34;optional&#34;`
Value []<a href="../../../builtin/index.html#byte">byte</a>
}</pre>
<p>
Extension represents the ASN.1 structure of the same name. See RFC
5280, section 4.2.
</p>
<h2 id="Name">type <a href="http://localhost:6060/src/crypto/x509/pkix/pkix.go?s=1652:1951#L42">Name</a></h2>
<pre>type Name struct {
Country, Organization, OrganizationalUnit []<a href="../../../builtin/index.html#string">string</a>
Locality, Province []<a href="../../../builtin/index.html#string">string</a>
StreetAddress, PostalCode []<a href="../../../builtin/index.html#string">string</a>
SerialNumber, CommonName <a href="../../../builtin/index.html#string">string</a>
Names []<a href="index.html#AttributeTypeAndValue">AttributeTypeAndValue</a>
ExtraNames []<a href="index.html#AttributeTypeAndValue">AttributeTypeAndValue</a>
}</pre>
<p>
Name represents an X.509 distinguished name. This only includes the common
elements of a DN. When parsing, all elements are stored in Names and
non-standard elements can be extracted from there. When marshaling, elements
in ExtraNames are appended and override other values with the same OID.
</p>
<h3 id="Name.FillFromRDNSequence">func (*Name) <a href="http://localhost:6060/src/crypto/x509/pkix/pkix.go?s=1953:2006#L52">FillFromRDNSequence</a></h3>
<pre>func (n *<a href="index.html#Name">Name</a>) FillFromRDNSequence(rdns *<a href="index.html#RDNSequence">RDNSequence</a>)</pre>
<h3 id="Name.ToRDNSequence">func (Name) <a href="http://localhost:6060/src/crypto/x509/pkix/pkix.go?s=3790:3837#L120">ToRDNSequence</a></h3>
<pre>func (n <a href="index.html#Name">Name</a>) ToRDNSequence() (ret <a href="index.html#RDNSequence">RDNSequence</a>)</pre>
<h2 id="RDNSequence">type <a href="http://localhost:6060/src/crypto/x509/pkix/pkix.go?s=579:626#L12">RDNSequence</a></h2>
<pre>type RDNSequence []<a href="index.html#RelativeDistinguishedNameSET">RelativeDistinguishedNameSET</a></pre>
<h2 id="RelativeDistinguishedNameSET">type <a href="http://localhost:6060/src/crypto/x509/pkix/pkix.go?s=628:685#L14">RelativeDistinguishedNameSET</a></h2>
<pre>type RelativeDistinguishedNameSET []<a href="index.html#AttributeTypeAndValue">AttributeTypeAndValue</a></pre>
<h2 id="RevokedCertificate">type <a href="http://localhost:6060/src/crypto/x509/pkix/pkix.go?s=5933:6064#L181">RevokedCertificate</a></h2>
<pre>type RevokedCertificate struct {
SerialNumber *<a href="../../../math/big/index.html">big</a>.<a href="../../../math/big/index.html#Int">Int</a>
RevocationTime <a href="../../../time/index.html">time</a>.<a href="../../../time/index.html#Time">Time</a>
Extensions []<a href="index.html#Extension">Extension</a> `asn1:&#34;optional&#34;`
}</pre>
<p>
RevokedCertificate represents the ASN.1 structure of the same name. See RFC
5280, section 5.1.
</p>
<h2 id="TBSCertificateList">type <a href="http://localhost:6060/src/crypto/x509/pkix/pkix.go?s=5406:5830#L168">TBSCertificateList</a></h2>
<pre>type TBSCertificateList struct {
Raw <a href="../../../encoding/asn1/index.html">asn1</a>.<a href="../../../encoding/asn1/index.html#RawContent">RawContent</a>
Version <a href="../../../builtin/index.html#int">int</a> `asn1:&#34;optional,default:1&#34;`
Signature <a href="index.html#AlgorithmIdentifier">AlgorithmIdentifier</a>
Issuer <a href="index.html#RDNSequence">RDNSequence</a>
ThisUpdate <a href="../../../time/index.html">time</a>.<a href="../../../time/index.html#Time">Time</a>
NextUpdate <a href="../../../time/index.html">time</a>.<a href="../../../time/index.html#Time">Time</a> `asn1:&#34;optional&#34;`
RevokedCertificates []<a href="index.html#RevokedCertificate">RevokedCertificate</a> `asn1:&#34;optional&#34;`
Extensions []<a href="index.html#Extension">Extension</a> `asn1:&#34;tag:0,optional,explicit&#34;`
}</pre>
<p>
TBSCertificateList represents the ASN.1 structure of the same name. See RFC
5280, section 5.1.
</p>
<div id="footer">
Build version go1.6.<br>
Except as <a href="https://developers.google.com/site-policies#restrictions">noted</a>,
the content of this page is licensed under the
Creative Commons Attribution 3.0 License,
and code is licensed under a <a href="http://localhost:6060/LICENSE">BSD license</a>.<br>
<a href="http://localhost:6060/doc/tos.html">Terms of Service</a> |
<a href="http://www.google.com/intl/en/policies/privacy/">Privacy Policy</a>
</div>
</div><!-- .container -->
</div><!-- #page -->
<!-- TODO(adonovan): load these from <head> using "defer" attribute? -->
<script type="text/javascript" src="../../../../lib/godoc/jquery.js"></script>
<script type="text/javascript" src="../../../../lib/godoc/jquery.treeview.js"></script>
<script type="text/javascript" src="../../../../lib/godoc/jquery.treeview.edit.js"></script>
<script type="text/javascript" src="../../../../lib/godoc/godocs.js"></script>
</body>
</html>