Sync to trunk (r44371)
[reactos.git] / reactos / include / psdk / wincrypt.h
1 /*
2 * Copyright (C) 2002 Travis Michielsen
3 * Copyright (C) 2004-2005 Juan Lang
4 * Copyright (C) 2007 Vijay Kiran Kamuju
5 *
6 * This library is free software; you can redistribute it and/or
7 * modify it under the terms of the GNU Lesser General Public
8 * License as published by the Free Software Foundation; either
9 * version 2.1 of the License, or (at your option) any later version.
10 *
11 * This library is distributed in the hope that it will be useful,
12 * but WITHOUT ANY WARRANTY; without even the implied warranty of
13 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU
14 * Lesser General Public License for more details.
15 *
16 * You should have received a copy of the GNU Lesser General Public
17 * License along with this library; if not, write to the Free Software
18 * Foundation, Inc., 51 Franklin St, Fifth Floor, Boston, MA 02110-1301, USA
19 */
20
21 #ifndef __WINE_WINCRYPT_H
22 #define __WINE_WINCRYPT_H
23
24 #include <bcrypt.h>
25 /* FIXME: #include <ncrypt.h> */
26
27 #ifdef __cplusplus
28 extern "C" {
29 #endif
30
31 #ifdef _MSC_VER
32 #pragma warning(push)
33 #pragma warning(disable:4201)
34 #endif
35
36 #ifdef _ADVAPI32_
37 # define WINADVAPI
38 #else
39 # define WINADVAPI DECLSPEC_IMPORT
40 #endif
41
42 /* some typedefs for function parameters */
43 typedef unsigned int ALG_ID;
44 typedef ULONG_PTR HCRYPTPROV;
45 typedef ULONG_PTR HCRYPTPROV_OR_NCRYPT_KEY_HANDLE;
46 typedef ULONG_PTR HCRYPTPROV_LEGACY;
47 typedef ULONG_PTR HCRYPTKEY;
48 typedef ULONG_PTR HCRYPTHASH;
49 typedef void *HCERTSTORE;
50 typedef void *HCRYPTMSG;
51 typedef void *HCERTSTOREPROV;
52 typedef void *HCRYPTOIDFUNCSET;
53 typedef void *HCRYPTOIDFUNCADDR;
54 typedef void *HCRYPTDEFAULTCONTEXT;
55
56 /* CSP Structs */
57
58 typedef struct _PROV_ENUMALGS {
59 ALG_ID aiAlgid;
60 DWORD dwBitLen;
61 DWORD dwNameLen;
62 CHAR szName[20];
63 } PROV_ENUMALGS;
64
65 typedef struct _PROV_ENUMALGS_EX {
66 ALG_ID aiAlgid;
67 DWORD dwDefaultLen;
68 DWORD dwMinLen;
69 DWORD dwMaxLen;
70 DWORD dwProtocols;
71 DWORD dwNameLen;
72 CHAR szName[20];
73 DWORD dwLongNameLen;
74 CHAR szLongName[40];
75 } PROV_ENUMALGS_EX;
76
77 #define SCHANNEL_MAC_KEY 0
78 #define SCHANNEL_ENC_KEY 1
79
80 typedef struct _SCHANNEL_ALG {
81 DWORD dwUse;
82 ALG_ID Algid;
83 DWORD cBits;
84 DWORD dwFlags;
85 DWORD dwReserved;
86 } SCHANNEL_ALG, *PSCHANNEL_ALG;
87
88
89 #define CRYPT_IPSEC_HMAC_KEY 0x0100
90
91 typedef struct _HMAC_INFO {
92 ALG_ID HashAlgid;
93 BYTE* pbInnerString;
94 DWORD cbInnerString;
95 BYTE* pbOuterString;
96 DWORD cbOuterString;
97 } HMAC_INFO, *PHMAC_INFO;
98
99 typedef struct _CRYPTOAPI_BLOB {
100 DWORD cbData;
101 BYTE* pbData;
102 } CRYPT_INTEGER_BLOB, *PCRYPT_INTEGER_BLOB,
103 CRYPT_UINT_BLOB, *PCRYPT_UINT_BLOB,
104 CRYPT_OBJID_BLOB, *PCRYPT_OBJID_BLOB,
105 CERT_NAME_BLOB, *PCERT_NAME_BLOB,
106 CERT_RDN_VALUE_BLOB, *PCERT_RDN_VALUE_BLOB,
107 CERT_BLOB, *PCERT_BLOB,
108 CRL_BLOB, *PCRL_BLOB,
109 DATA_BLOB, *PDATA_BLOB,
110 CRYPT_DATA_BLOB, *PCRYPT_DATA_BLOB,
111 CRYPT_HASH_BLOB, *PCRYPT_HASH_BLOB,
112 CRYPT_DIGEST_BLOB, *PCRYPT_DIGEST_BLOB,
113 CRYPT_DER_BLOB, *PCRYPT_DER_BLOB,
114 CRYPT_ATTR_BLOB, *PCRYPT_ATTR_BLOB;
115
116 typedef struct _CRYPTPROTECT_PROMPTSTRUCT{
117 DWORD cbSize;
118 DWORD dwPromptFlags;
119 HWND hwndApp;
120 LPCWSTR szPrompt;
121 } CRYPTPROTECT_PROMPTSTRUCT, *PCRYPTPROTECT_PROMPTSTRUCT;
122
123 typedef struct _CRYPT_ALGORITHM_IDENTIFIER {
124 LPSTR pszObjId;
125 CRYPT_OBJID_BLOB Parameters;
126 } CRYPT_ALGORITHM_IDENTIFIER, *PCRYPT_ALGORITHM_IDENTIFIER;
127
128 typedef struct _CRYPT_ATTRIBUTE_TYPE_VALUE {
129 LPSTR pszObjId;
130 CRYPT_OBJID_BLOB Value;
131 } CRYPT_ATTRIBUTE_TYPE_VALUE, *PCRYPT_ATTRIBUTE_TYPE_VALUE;
132
133 typedef struct _PUBLICKEYSTRUC {
134 BYTE bType;
135 BYTE bVersion;
136 WORD reserved;
137 ALG_ID aiKeyAlg;
138 } BLOBHEADER, PUBLICKEYSTRUC;
139
140 typedef struct _RSAPUBKEY {
141 DWORD magic;
142 DWORD bitlen;
143 DWORD pubexp;
144 } RSAPUBKEY;
145
146 typedef struct _PUBKEY {
147 DWORD magic;
148 DWORD bitlen;
149 } DHPUBKEY, DSSPUBKEY, KEAPUBKEY, TEKPUBKEY;
150
151 typedef struct _DSSSEED {
152 DWORD counter;
153 BYTE seed[20];
154 } DSSSEED;
155
156 typedef struct _PUBKEYVER3 {
157 DWORD magic;
158 DWORD bitlenP;
159 DWORD bitlenQ;
160 DWORD bitlenJ;
161 DSSSEED DSSSeed;
162 } DHPUBKEY_VER3, DSSPUBKEY_VER3;
163
164 typedef struct _PRIVKEYVER3 {
165 DWORD magic;
166 DWORD bitlenP;
167 DWORD bitlenQ;
168 DWORD bitlenJ;
169 DWORD bitlenX;
170 DSSSEED DSSSeed;
171 } DHPRIVKEY_VER3, DSSPRIVKEY_VER3;
172
173 typedef struct _KEY_TYPE_SUBTYPE {
174 DWORD dwKeySpec;
175 GUID Type;
176 GUID SubType;
177 } KEY_TYPE_SUBTYPE, *PKEY_TYPE_SUBTYPE;
178
179 typedef struct _CERT_FORTEZZA_DATA_PROP {
180 unsigned char SerialNumber[8];
181 int CertIndex;
182 unsigned char CertLabel[36];
183 } CERT_FORTEZZA_DATA_PROP;
184
185 typedef struct _CMS_DH_KEY_INFO {
186 DWORD dwVersion;
187 ALG_ID Algid;
188 LPSTR pszContentEncObjId;
189 CRYPT_DATA_BLOB PubInfo;
190 void *pReserved;
191 } CMS_DH_KEY_INFO, *PCMS_DH_KEY_INFO;
192
193 typedef struct _CRYPT_BIT_BLOB {
194 DWORD cbData;
195 BYTE *pbData;
196 DWORD cUnusedBits;
197 } CRYPT_BIT_BLOB, *PCRYPT_BIT_BLOB;
198
199 typedef struct _CRYPT_KEY_PROV_PARAM {
200 DWORD dwParam;
201 BYTE *pbData;
202 DWORD cbData;
203 DWORD dwFlags;
204 } CRYPT_KEY_PROV_PARAM, *PCRYPT_KEY_PROV_PARAM;
205
206 typedef struct _CRYPT_KEY_PROV_INFO {
207 LPWSTR pwszContainerName;
208 LPWSTR pwszProvName;
209 DWORD dwProvType;
210 DWORD dwFlags;
211 DWORD cProvParam;
212 PCRYPT_KEY_PROV_PARAM rgProvParam;
213 DWORD dwKeySpec;
214 } CRYPT_KEY_PROV_INFO, *PCRYPT_KEY_PROV_INFO;
215
216 typedef struct _CERT_KEY_CONTEXT {
217 DWORD cbSize;
218 HCRYPTPROV hCryptProv;
219 DWORD dwKeySpec;
220 } CERT_KEY_CONTEXT, *PCERT_KEY_CONTEXT;
221
222 typedef struct _CERT_PUBLIC_KEY_INFO {
223 CRYPT_ALGORITHM_IDENTIFIER Algorithm;
224 CRYPT_BIT_BLOB PublicKey;
225 } CERT_PUBLIC_KEY_INFO, *PCERT_PUBLIC_KEY_INFO;
226
227 typedef struct _CERT_EXTENSION {
228 LPSTR pszObjId;
229 BOOL fCritical;
230 CRYPT_OBJID_BLOB Value;
231 } CERT_EXTENSION, *PCERT_EXTENSION;
232
233 typedef struct _CERT_EXTENSIONS {
234 DWORD cExtension;
235 PCERT_EXTENSION rgExtension;
236 } CERT_EXTENSIONS, *PCERT_EXTENSIONS;
237
238 typedef struct _CERT_INFO {
239 DWORD dwVersion;
240 CRYPT_INTEGER_BLOB SerialNumber;
241 CRYPT_ALGORITHM_IDENTIFIER SignatureAlgorithm;
242 CERT_NAME_BLOB Issuer;
243 FILETIME NotBefore;
244 FILETIME NotAfter;
245 CERT_NAME_BLOB Subject;
246 CERT_PUBLIC_KEY_INFO SubjectPublicKeyInfo;
247 CRYPT_BIT_BLOB IssuerUniqueId;
248 CRYPT_BIT_BLOB SubjectUniqueId;
249 DWORD cExtension;
250 PCERT_EXTENSION rgExtension;
251 } CERT_INFO, *PCERT_INFO;
252
253 typedef struct _CERT_RDN_ATTR {
254 LPSTR pszObjId;
255 DWORD dwValueType;
256 CERT_RDN_VALUE_BLOB Value;
257 } CERT_RDN_ATTR, *PCERT_RDN_ATTR;
258
259 typedef struct _CERT_RDN {
260 DWORD cRDNAttr;
261 PCERT_RDN_ATTR rgRDNAttr;
262 } CERT_RDN, *PCERT_RDN;
263
264 typedef struct _CERT_NAME_INFO {
265 DWORD cRDN;
266 PCERT_RDN rgRDN;
267 } CERT_NAME_INFO, *PCERT_NAME_INFO;
268
269 typedef struct _CERT_NAME_VALUE {
270 DWORD dwValueType;
271 CERT_RDN_VALUE_BLOB Value;
272 } CERT_NAME_VALUE, *PCERT_NAME_VALUE;
273
274 typedef struct _CERT_ENCRYPTED_PRIVATE_KEY_INFO {
275 CRYPT_ALGORITHM_IDENTIFIER EncryptionAlgorithm;
276 CRYPT_DATA_BLOB EncryptedPrivateKey;
277 } CERT_ENCRYPTED_PRIVATE_KEY_INFO, *PCERT_ENCRYPTED_PRIVATE_KEY_INFO;
278
279 typedef struct _CERT_AUTHORITY_KEY_ID_INFO {
280 CRYPT_DATA_BLOB KeyId;
281 CERT_NAME_BLOB CertIssuer;
282 CRYPT_INTEGER_BLOB CertSerialNumber;
283 } CERT_AUTHORITY_KEY_ID_INFO, *PCERT_AUTHORITY_KEY_ID_INFO;
284
285 typedef struct _CERT_PRIVATE_KEY_VALIDITY {
286 FILETIME NotBefore;
287 FILETIME NotAfter;
288 } CERT_PRIVATE_KEY_VALIDITY, *PCERT_PRIVATE_KEY_VALIDITY;
289
290 typedef struct _CERT_KEY_ATTRIBUTES_INFO {
291 CRYPT_DATA_BLOB KeyId;
292 CRYPT_BIT_BLOB IntendedKeyUsage;
293 PCERT_PRIVATE_KEY_VALIDITY pPrivateKeyUsagePeriod;
294 } CERT_KEY_ATTRIBUTES_INFO, *PCERT_KEY_ATTRIBUTES_INFO;
295
296 /* byte 0 */
297 #define CERT_DIGITAL_SIGNATURE_KEY_USAGE 0x80
298 #define CERT_NON_REPUDIATION_KEY_USAGE 0x40
299 #define CERT_KEY_ENCIPHERMENT_KEY_USAGE 0x20
300 #define CERT_DATA_ENCIPHERMENT_KEY_USAGE 0x10
301 #define CERT_KEY_AGREEMENT_KEY_USAGE 0x08
302 #define CERT_KEY_CERT_SIGN_KEY_USAGE 0x04
303 #define CERT_OFFLINE_CRL_SIGN_KEY_USAGE 0x02
304 #define CERT_CRL_SIGN_KEY_USAGE 0x02
305 #define CERT_ENCIPHER_ONLY_KEY_USAGE 0x01
306 /* byte 1 */
307 #define CERT_DECIPHER_ONLY_KEY_USAGE 0x80
308
309 typedef struct _CERT_POLICY_ID {
310 DWORD cCertPolicyElementId;
311 LPSTR *rgbszCertPolicyElementId;
312 } CERT_POLICY_ID, *PCERT_POLICY_ID;
313
314 typedef struct _CERT_KEY_USAGE_RESTRICTION_INFO {
315 DWORD cCertPolicyId;
316 PCERT_POLICY_ID rgCertPolicyId;
317 CRYPT_BIT_BLOB RestrictedKeyUsage;
318 } CERT_KEY_USAGE_RESTRICTION_INFO, *PCERT_KEY_USAGE_RESTRICTION_INFO;
319
320 typedef struct _CERT_OTHER_NAME {
321 LPSTR pszObjId;
322 CRYPT_OBJID_BLOB Value;
323 } CERT_OTHER_NAME, *PCERT_OTHER_NAME;
324
325 typedef struct _CERT_ALT_NAME_ENTRY {
326 DWORD dwAltNameChoice;
327 union {
328 PCERT_OTHER_NAME pOtherName;
329 LPWSTR pwszRfc822Name;
330 LPWSTR pwszDNSName;
331 CERT_NAME_BLOB DirectoryName;
332 LPWSTR pwszURL;
333 CRYPT_DATA_BLOB IPAddress;
334 LPSTR pszRegisteredID;
335 } DUMMYUNIONNAME;
336 } CERT_ALT_NAME_ENTRY, *PCERT_ALT_NAME_ENTRY;
337
338 #define CERT_ALT_NAME_OTHER_NAME 1
339 #define CERT_ALT_NAME_RFC822_NAME 2
340 #define CERT_ALT_NAME_DNS_NAME 3
341 #define CERT_ALT_NAME_X400_ADDRESS 4
342 #define CERT_ALT_NAME_DIRECTORY_NAME 5
343 #define CERT_ALT_NAME_EDI_PARTY_NAME 6
344 #define CERT_ALT_NAME_URL 7
345 #define CERT_ALT_NAME_IP_ADDRESS 8
346 #define CERT_ALT_NAME_REGISTERED_ID 9
347
348 typedef struct _CERT_ALT_NAME_INFO {
349 DWORD cAltEntry;
350 PCERT_ALT_NAME_ENTRY rgAltEntry;
351 } CERT_ALT_NAME_INFO, *PCERT_ALT_NAME_INFO;
352
353 #define CERT_ALT_NAME_ENTRY_ERR_INDEX_MASK 0xff
354 #define CERT_ALT_NAME_ENTRY_ERR_INDEX_SHIFT 16
355 #define CERT_ALT_NAME_VALUE_ERR_INDEX_MASK 0x0000ffff
356 #define CERT_ALT_NAME_VALUE_ERR_INDEX_SHIFT 0
357 #define GET_CERT_ALT_NAME_ENTRY_ERR_INDEX(x) \
358 (((x) >> CERT_ALT_NAME_ENTRY_ERR_INDEX_SHIFT) & \
359 CERT_ALT_NAME_ENTRY_ERR_INDEX_MASK)
360 #define GET_CERT_ALT_NAME_VALUE_ERR_INDEX(x) \
361 ((x) & CERT_ALT_NAME_VALUE_ERR_INDEX_MASK)
362
363 typedef struct _CERT_BASIC_CONSTRAINTS_INFO {
364 CRYPT_BIT_BLOB SubjectType;
365 BOOL fPathLenConstraint;
366 DWORD dwPathLenConstraint;
367 DWORD cSubtreesConstraint;
368 CERT_NAME_BLOB *rgSubtreesConstraint;
369 } CERT_BASIC_CONSTRAINTS_INFO, *PCERT_BASIC_CONSTRAINTS_INFO;
370
371 #define CERT_CA_SUBJECT_FLAG 0x80
372 #define CERT_END_ENTITY_SUBJECT_FLAG 0x40
373
374 typedef struct _CERT_BASIC_CONSTRAINTS2_INFO {
375 BOOL fCA;
376 BOOL fPathLenConstraint;
377 DWORD dwPathLenConstraint;
378 } CERT_BASIC_CONSTRAINTS2_INFO, *PCERT_BASIC_CONSTRAINTS2_INFO;
379
380 typedef struct _CERT_POLICY_QUALIFIER_INFO {
381 LPSTR pszPolicyQualifierId;
382 CRYPT_OBJID_BLOB Qualifier;
383 } CERT_POLICY_QUALIFIER_INFO, *PCERT_POLICY_QUALIFIER_INFO;
384
385 typedef struct _CERT_POLICY_INFO {
386 LPSTR pszPolicyIdentifier;
387 DWORD cPolicyQualifier;
388 CERT_POLICY_QUALIFIER_INFO *rgPolicyQualifier;
389 } CERT_POLICY_INFO, *PCERT_POLICY_INFO;
390
391 typedef struct _CERT_POLICIES_INFO {
392 DWORD cPolicyInfo;
393 CERT_POLICY_INFO *rgPolicyInfo;
394 } CERT_POLICIES_INFO, *PCERT_POLICIES_INFO;
395
396 typedef struct _CERT_POLICY_QUALIFIER_NOTICE_REFERENCE {
397 LPSTR pszOrganization;
398 DWORD cNoticeNumbers;
399 int *rgNoticeNumbers;
400 } CERT_POLICY_QUALIFIER_NOTICE_REFERENCE,
401 *PCERT_POLICY_QUALIFIER_NOTICE_REFERENCE;
402
403 typedef struct _CERT_POLICY_QUALIFIER_USER_NOTICE {
404 CERT_POLICY_QUALIFIER_NOTICE_REFERENCE *pNoticeReference;
405 LPWSTR pszDisplayText;
406 } CERT_POLICY_QUALIFIER_USER_NOTICE, *PCERT_POLICY_QUALIFIER_USER_NOTICE;
407
408 typedef struct _CPS_URLS {
409 LPWSTR pszURL;
410 CRYPT_ALGORITHM_IDENTIFIER *pAlgorithm;
411 CRYPT_DATA_BLOB *pDigest;
412 } CPS_URLS, *PCPS_URLS;
413
414 typedef struct _CERT_POLICY95_QUALIFIER1 {
415 LPWSTR pszPracticesReference;
416 LPSTR pszNoticeIdentifier;
417 LPSTR pszNSINoticeIdentifier;
418 DWORD cCPSURLs;
419 CPS_URLS *rgCPSURLs;
420 } CERT_POLICY95_QUALIFIER1, *PCERT_POLICY95_QUALIFIER1;
421
422 typedef struct _CERT_POLICY_MAPPING {
423 LPSTR pszIssuerDomainPolicy;
424 LPSTR pszSubjectDomainPolicy;
425 } CERT_POLICY_MAPPING, *PCERT_POLICY_MAPPING;
426
427 typedef struct _CERT_POLICY_MAPPINGS_INFO {
428 DWORD cPolicyMapping;
429 PCERT_POLICY_MAPPING rgPolicyMapping;
430 } CERT_POLICY_MAPPINGS_INFO, *PCERT_POLICY_MAPPINGS_INFO;
431
432 typedef struct _CERT_POLICY_CONSTRAINTS_INFO {
433 BOOL fRequireExplicitPolicy;
434 DWORD dwRequireExplicitPolicySkipCerts;
435 BOOL fInhibitPolicyMapping;
436 DWORD dwInhibitPolicyMappingSkipCerts;
437 } CERT_POLICY_CONSTRAINTS_INFO, *PCERT_POLICY_CONSTRAINTS_INFO;
438
439 typedef struct _CRYPT_CONTENT_INFO_SEQUENCE_OF_ANY {
440 LPSTR pszObjId;
441 DWORD cValue;
442 PCRYPT_DER_BLOB rgValue;
443 } CRYPT_CONTENT_INFO_SEQUENCE_OF_ANY, *PCRYPT_CONTENT_INFO_SEQUENCE_OF_ANY;
444
445 typedef struct _CRYPT_CONTENT_INFO {
446 LPSTR pszObjId;
447 CRYPT_DER_BLOB Content;
448 } CRYPT_CONTENT_INFO, *PCRYPT_CONTENT_INFO;
449
450 typedef struct _CRYPT_SEQUENCE_OF_ANY {
451 DWORD cValue;
452 PCRYPT_DER_BLOB rgValue;
453 } CRYPT_SEQUENCE_OF_ANY, *PCRYPT_SEQUENCE_OF_ANY;
454
455 typedef struct _CERT_AUTHORITY_KEY_ID2_INFO {
456 CRYPT_DATA_BLOB KeyId;
457 CERT_ALT_NAME_INFO AuthorityCertIssuer;
458 CRYPT_INTEGER_BLOB AuthorityCertSerialNumber;
459 } CERT_AUTHORITY_KEY_ID2_INFO, *PCERT_AUTHORITY_KEY_ID2_INFO;
460
461 typedef struct _CERT_ACCESS_DESCRIPTION {
462 LPSTR pszAccessMethod;
463 CERT_ALT_NAME_ENTRY AccessLocation;
464 } CERT_ACCESS_DESCRIPTION, *PCERT_ACCESS_DESCRIPTION;
465
466 typedef struct _CERT_AUTHORITY_INFO_ACCESS {
467 DWORD cAccDescr;
468 PCERT_ACCESS_DESCRIPTION rgAccDescr;
469 } CERT_AUTHORITY_INFO_ACCESS, *PCERT_AUTHORITY_INFO_ACCESS;
470
471 typedef struct _CERT_CONTEXT {
472 DWORD dwCertEncodingType;
473 BYTE *pbCertEncoded;
474 DWORD cbCertEncoded;
475 PCERT_INFO pCertInfo;
476 HCERTSTORE hCertStore;
477 } CERT_CONTEXT, *PCERT_CONTEXT;
478 typedef const CERT_CONTEXT *PCCERT_CONTEXT;
479
480 typedef struct _CRL_ENTRY {
481 CRYPT_INTEGER_BLOB SerialNumber;
482 FILETIME RevocationDate;
483 DWORD cExtension;
484 PCERT_EXTENSION rgExtension;
485 } CRL_ENTRY, *PCRL_ENTRY;
486
487 typedef struct _CRL_INFO {
488 DWORD dwVersion;
489 CRYPT_ALGORITHM_IDENTIFIER SignatureAlgorithm;
490 CERT_NAME_BLOB Issuer;
491 FILETIME ThisUpdate;
492 FILETIME NextUpdate;
493 DWORD cCRLEntry;
494 PCRL_ENTRY rgCRLEntry;
495 DWORD cExtension;
496 PCERT_EXTENSION rgExtension;
497 } CRL_INFO, *PCRL_INFO;
498
499 typedef struct _CRL_DIST_POINT_NAME {
500 DWORD dwDistPointNameChoice;
501 union {
502 CERT_ALT_NAME_INFO FullName;
503 } DUMMYUNIONNAME;
504 } CRL_DIST_POINT_NAME, *PCRL_DIST_POINT_NAME;
505
506 #define CRL_DIST_POINT_NO_NAME 0
507 #define CRL_DIST_POINT_FULL_NAME 1
508 #define CRL_DIST_POINT_ISSUER_RDN_NAME 2
509
510 typedef struct _CRL_DIST_POINT {
511 CRL_DIST_POINT_NAME DistPointName;
512 CRYPT_BIT_BLOB ReasonFlags;
513 CERT_ALT_NAME_INFO CRLIssuer;
514 } CRL_DIST_POINT, *PCRL_DIST_POINT;
515
516 #define CRL_REASON_UNUSED_FLAG 0x80
517 #define CRL_REASON_KEY_COMPROMISE_FLAG 0x40
518 #define CRL_REASON_CA_COMPROMISE_FLAG 0x20
519 #define CRL_REASON_AFFILIATION_CHANGED_FLAG 0x10
520 #define CRL_REASON_SUPERSEDED_FLAG 0x08
521 #define CRL_REASON_CESSATION_OF_OPERATION_FLAG 0x04
522 #define CRL_REASON_CERTIFICATE_HOLD_FLAG 0x02
523
524 typedef struct _CRL_DIST_POINTS_INFO {
525 DWORD cDistPoint;
526 PCRL_DIST_POINT rgDistPoint;
527 } CRL_DIST_POINTS_INFO, *PCRL_DIST_POINTS_INFO;
528
529 #define CRL_DIST_POINT_ERR_INDEX_MASK 0x7f
530 #define CRL_DIST_POINT_ERR_INDEX_SHIFT 24
531 #define GET_CRL_DIST_POINT_ERR_INDEX(x) \
532 (((x) >> CRL_DIST_POINT_ERR_INDEX_SHIFT) & CRL_DIST_POINT_ERR_INDEX_MASK)
533
534 #define CRL_DIST_POINT_ERR_CRL_ISSUER_BIT 0x80000000L
535 #define IS_CRL_DIST_POINT_ERR_CRL_ISSUER(x) \
536 ((x) & CRL_DIST_POINT_ERR_CRL_ISSUER_BIT)
537
538 typedef struct _CROSS_CERT_DIST_POINTS_INFO {
539 DWORD dwSyncDeltaTime;
540 DWORD cDistPoint;
541 PCERT_ALT_NAME_INFO rgDistPoint;
542 } CROSS_CERT_DIST_POINTS_INFO, *PCROSS_CERT_DIST_POINTS_INFO;
543
544 #define CROSS_CERT_DIST_POINT_ERR_INDEX_MASK 0xff
545 #define CROSS_CERT_DIST_POINT_ERR_INDEX_SHIFT 24
546 #define GET_CROSS_CERT_DIST_POINT_ERR_INDEX(x) \
547 (((x) >> CROSS_CERT_DIST_POINT_ERR_INDEX_SHIFT) & \
548 CROSS_CERT_DIST_POINT_ERR_INDEX_MASK)
549
550 typedef struct _CERT_PAIR {
551 CERT_BLOB Forward;
552 CERT_BLOB Reverse;
553 } CERT_PAIR, *PCERT_PAIR;
554
555 typedef struct _CRL_ISSUING_DIST_POINT {
556 CRL_DIST_POINT_NAME DistPointName;
557 BOOL fOnlyContainsUserCerts;
558 BOOL fOnlyContainsCACerts;
559 CRYPT_BIT_BLOB OnlySomeReasonFlags;
560 BOOL fIndirectCRL;
561 } CRL_ISSUING_DIST_POINT, *PCRL_ISSUING_DIST_POINT;
562
563 typedef struct _CERT_GENERAL_SUBTREE {
564 CERT_ALT_NAME_ENTRY Base;
565 DWORD dwMinimum;
566 BOOL fMaximum;
567 DWORD dwMaximum;
568 } CERT_GENERAL_SUBTREE, *PCERT_GENERAL_SUBTREE;
569
570 typedef struct _CERT_NAME_CONSTRAINTS_INFO {
571 DWORD cPermittedSubtree;
572 PCERT_GENERAL_SUBTREE rgPermittedSubtree;
573 DWORD cExcludedSubtree;
574 PCERT_GENERAL_SUBTREE rgExcludedSubtree;
575 } CERT_NAME_CONSTRAINTS_INFO, *PCERT_NAME_CONSTRAINTS_INFO;
576
577 #define CERT_EXCLUDED_SUBTREE_BIT 0x80000000L
578 #define IS_CERT_EXCLUDED_SUBTREE(x) ((x) & CERT_EXCLUDED_SUBTREE_BIT)
579
580 typedef struct _CRYPT_ATTRIBUTE {
581 LPSTR pszObjId;
582 DWORD cValue;
583 PCRYPT_DATA_BLOB rgValue;
584 } CRYPT_ATTRIBUTE, *PCRYPT_ATTRIBUTE;
585
586 typedef struct _CRYPT_ATTRIBUTES {
587 DWORD cAttr;
588 PCRYPT_ATTRIBUTE rgAttr;
589 } CRYPT_ATTRIBUTES, *PCRYPT_ATTRIBUTES;
590
591 typedef struct _CERT_REQUEST_INFO {
592 DWORD dwVersion;
593 CERT_NAME_BLOB Subject;
594 CERT_PUBLIC_KEY_INFO SubjectPublicKeyInfo;
595 DWORD cAttribute;
596 PCRYPT_ATTRIBUTE rgAttribute;
597 } CERT_REQUEST_INFO, *PCERT_REQUEST_INFO;
598
599 typedef struct _CERT_KEYGEN_REQUEST_INFO {
600 DWORD dwVersion;
601 CERT_PUBLIC_KEY_INFO SubjectPubliceKeyInfo;
602 LPWSTR pwszChallengeString;
603 } CERT_KEYGEN_REQUEST_INFO, *PCERT_KEYGEN_REQUEST_INFO;
604
605 typedef struct _CERT_SIGNED_CONTENT_INFO {
606 CRYPT_DER_BLOB ToBeSigned;
607 CRYPT_ALGORITHM_IDENTIFIER SignatureAlgorithm;
608 CRYPT_BIT_BLOB Signature;
609 } CERT_SIGNED_CONTENT_INFO, *PCERT_SIGNED_CONTENT_INFO;
610
611 typedef struct _CRL_CONTEXT {
612 DWORD dwCertEncodingType;
613 BYTE *pbCrlEncoded;
614 DWORD cbCrlEncoded;
615 PCRL_INFO pCrlInfo;
616 HCERTSTORE hCertStore;
617 } CRL_CONTEXT, *PCRL_CONTEXT;
618 typedef const CRL_CONTEXT *PCCRL_CONTEXT;
619
620 #define SORTED_CTL_EXT_FLAGS_OFFSET (0*4)
621 #define SORTED_CTL_EXT_COUNT_OFFSET (1*4)
622 #define SORTED_CTL_EXT_MAX_COLLISION_OFFSET (2*4)
623 #define SORTED_CTL_EXT_HASH_BUCKET_OFFSET (3*4)
624
625 #define SORTED_CTL_EXT_HASHED_SUBJECT_IDENTIFIER_FLAG 0x1
626
627 typedef struct _CERT_DSS_PARAMETERS {
628 CRYPT_UINT_BLOB p;
629 CRYPT_UINT_BLOB q;
630 CRYPT_UINT_BLOB g;
631 } CERT_DSS_PARAMETERS, *PCERT_DSS_PARAMETERS;
632
633 #define CERT_DSS_R_LEN 20
634 #define CERT_DSS_S_LEN 20
635 #define CERT_DSS_SIGNATURE_LEN (CERT_DSS_R_LEN + CERT_DSS_S_LEN)
636
637 #define CERT_MAX_ENCODED_DSS_SIGNATURE_LEN (2 + 2*(2 + 20 +1))
638
639 typedef struct _CERT_DH_PARAMETERS {
640 CRYPT_UINT_BLOB p;
641 CRYPT_UINT_BLOB g;
642 } CERT_DH_PARAMETERS, *PCERT_DH_PARAMETERS;
643
644 typedef struct _CERT_X942_DH_VALIDATION_PARAMS {
645 CRYPT_BIT_BLOB seed;
646 DWORD pgenCounter;
647 } CERT_X942_DH_VALIDATION_PARAMS, *PCERT_X942_DH_VALIDATION_PARAMS;
648
649 typedef struct _CERT_X942_DH_PARAMETERS {
650 CRYPT_UINT_BLOB p;
651 CRYPT_UINT_BLOB g;
652 CRYPT_UINT_BLOB q;
653 CRYPT_UINT_BLOB j;
654 PCERT_X942_DH_VALIDATION_PARAMS pValidationParams;
655 } CERT_X942_DH_PARAMETERS, *PCERT_X942_DH_PARAMETERS;
656
657 #define CRYPT_X942_COUNTER_BYTE_LENGTH 4
658 #define CRYPT_X942_KEY_LENGTH_BYTE_LENGTH 4
659 #define CRYPT_X942_PUB_INFO_BYTE_LENGTH (512/8)
660
661 typedef struct _CRYPT_X942_OTHER_INFO {
662 LPSTR pszContentEncryptionObjId;
663 BYTE rgbCounter[CRYPT_X942_COUNTER_BYTE_LENGTH];
664 BYTE rgbKeyLength[CRYPT_X942_KEY_LENGTH_BYTE_LENGTH];
665 CRYPT_DATA_BLOB PubInfo;
666 } CRYPT_X942_OTHER_INFO, *PCRYPT_X942_OTHER_INFO;
667
668 typedef struct _CRYPT_RC2_CBC_PARAMETERS {
669 DWORD dwVersion;
670 BOOL fIV;
671 BYTE rgbIV[4];
672 } CRYPT_RC2_CBC_PARAMETERS, *PCRYPT_RC2_CBC_PARAMETERS;
673
674 #define CRYPT_RC2_40BIT_VERSION 160
675 #define CRYPT_RC2_56BIT_VERSION 52
676 #define CRYPT_RC2_64BIT_VERSION 120
677 #define CRYPT_RC2_128BIT_VERSION 58
678
679 typedef struct _CRYPT_SMIME_CAPABILITY {
680 LPSTR pszObjId;
681 CRYPT_OBJID_BLOB Parameters;
682 } CRYPT_SMIME_CAPABILITY, *PCRYPT_SMIME_CAPABILITY;
683
684 typedef struct _CRYPT_SMIME_CAPABILITIES {
685 DWORD cCapability;
686 PCRYPT_SMIME_CAPABILITY rgCapability;
687 } CRYPT_SMIME_CAPABILITIES, *PCRYPT_SMIME_CAPABILITIES;
688
689 typedef struct _VTableProvStruc {
690 DWORD Version;
691 FARPROC pFuncVerifyImage;
692 FARPROC pFuncReturnhWnd;
693 DWORD dwProvType;
694 BYTE *pbContextInfo;
695 DWORD cbContextInfo;
696 LPSTR pszProvName;
697 } VTableProvStruc, *PVTableProvStruc;
698
699 typedef struct _CERT_PRIVATE_KEY_INFO {
700 DWORD Version;
701 CRYPT_ALGORITHM_IDENTIFIER Algorithm;
702 CRYPT_DER_BLOB PrivateKey;
703 PCRYPT_ATTRIBUTES pAttributes;
704 } CERT_PRIVATE_KEY_INFO, *PCERT_PRIVATE_KEY_INFO;
705
706 typedef struct _CTL_USAGE {
707 DWORD cUsageIdentifier;
708 LPSTR *rgpszUsageIdentifier;
709 } CTL_USAGE, *PCTL_USAGE, CERT_ENHKEY_USAGE, *PCERT_ENHKEY_USAGE;
710
711 typedef struct _CTL_ENTRY {
712 CRYPT_DATA_BLOB SubjectIdentifier;
713 DWORD cAttribute;
714 PCRYPT_ATTRIBUTE rgAttribute;
715 } CTL_ENTRY, *PCTL_ENTRY;
716
717 typedef struct _CTL_INFO {
718 DWORD dwVersion;
719 CTL_USAGE SubjectUsage;
720 CRYPT_DATA_BLOB ListIdentifier;
721 CRYPT_INTEGER_BLOB SequenceNumber;
722 FILETIME ThisUpdate;
723 FILETIME NextUpdate;
724 CRYPT_ALGORITHM_IDENTIFIER SubjectAlgorithm;
725 DWORD cCTLEntry;
726 PCTL_ENTRY rgCTLEntry;
727 DWORD cExtension;
728 PCERT_EXTENSION rgExtension;
729 } CTL_INFO, *PCTL_INFO;
730
731 typedef struct _CTL_CONTEXT {
732 DWORD dwMsgAndCertEncodingType;
733 BYTE *pbCtlEncoded;
734 DWORD cbCtlEncoded;
735 PCTL_INFO pCtlInfo;
736 HCERTSTORE hCertStore;
737 HCRYPTMSG hCryptMsg;
738 BYTE *pbCtlContext;
739 DWORD cbCtlContext;
740 } CTL_CONTEXT, *PCTL_CONTEXT;
741 typedef const CTL_CONTEXT *PCCTL_CONTEXT;
742
743 typedef struct _CRYPT_TIME_STAMP_REQUEST_INFO {
744 LPSTR pszTimeStampAlgorithm;
745 LPSTR pszContentType;
746 CRYPT_OBJID_BLOB Content;
747 DWORD cAttribute;
748 PCRYPT_ATTRIBUTE rgAttribute;
749 } CRYPT_TIME_STAMP_REQUEST_INFO, *PCRYPT_TIME_STAMP_REQUEST_INFO;
750
751 typedef struct _CRYPT_ENROLLMENT_NAME_VALUE_PAIR {
752 LPWSTR pwszName;
753 LPWSTR pwszValue;
754 } CRYPT_ENROLLMENT_NAME_VALUE_PAIR, *PCRYPT_ENROLLMENT_NAME_VALUE_PAIR;
755
756 typedef struct _CMSG_SIGNER_INFO {
757 DWORD dwVersion;
758 CERT_NAME_BLOB Issuer;
759 CRYPT_INTEGER_BLOB SerialNumber;
760 CRYPT_ALGORITHM_IDENTIFIER HashAlgorithm;
761 CRYPT_ALGORITHM_IDENTIFIER HashEncryptionAlgorithm;
762 CRYPT_DATA_BLOB EncryptedHash;
763 CRYPT_ATTRIBUTES AuthAttrs;
764 CRYPT_ATTRIBUTES UnauthAttrs;
765 } CMSG_SIGNER_INFO, *PCMSG_SIGNER_INFO;
766
767 #define CMSG_VERIFY_SIGNER_PUBKEY 1
768 #define CMSG_VERIFY_SIGNER_CERT 2
769 #define CMSG_VERIFY_SIGNER_CHAIN 3
770 #define CMSG_VERIFY_SIGNER_NULL 4
771
772 typedef struct _CERT_REVOCATION_CRL_INFO {
773 DWORD cbSize;
774 PCCRL_CONTEXT pBaseCrlContext;
775 PCCRL_CONTEXT pDeltaCrlContext;
776 PCRL_ENTRY pCrlEntry;
777 BOOL fDeltaCrlEntry;
778 } CERT_REVOCATION_CRL_INFO, *PCERT_REVOCATION_CRL_INFO;
779
780 typedef struct _CERT_REVOCATION_INFO {
781 DWORD cbSize;
782 DWORD dwRevocationResult;
783 LPCSTR pszRevocationOid;
784 LPVOID pvOidSpecificInfo;
785 BOOL fHasFreshnessTime;
786 DWORD dwFreshnessTime;
787 PCERT_REVOCATION_CRL_INFO pCrlInfo;
788 } CERT_REVOCATION_INFO, *PCERT_REVOCATION_INFO;
789
790 typedef struct _CERT_REVOCATION_PARA {
791 DWORD cbSize;
792 PCCERT_CONTEXT pIssuerCert;
793 DWORD cCertStore;
794 HCERTSTORE *rgCertStore;
795 HCERTSTORE hCrlStore;
796 LPFILETIME pftTimeToUse;
797 #ifdef CERT_REVOCATION_PARA_HAS_EXTRA_FIELDS
798 DWORD dwUrlRetrievalTimeout;
799 BOOL fCheckFreshnessTime;
800 DWORD dwFreshnessTime;
801 LPFILETIME pftCurrentTime;
802 PCERT_REVOCATION_CRL_INFO pCrlInfo;
803 #endif
804 } CERT_REVOCATION_PARA, *PCERT_REVOCATION_PARA;
805
806 #define CERT_CONTEXT_REVOCATION_TYPE 1
807 #define CERT_VERIFY_REV_CHAIN_FLAG 0x00000001
808 #define CERT_VERIFY_CACHE_ONLY_BASED_REVOCATION 0x00000002
809 #define CERT_VERIFY_REV_ACCUMULATIVE_TIMEOUT_FLAG 0x00000004
810
811 typedef struct _CTL_VERIFY_USAGE_PARA {
812 DWORD cbSize;
813 CRYPT_DATA_BLOB ListIdentifier;
814 DWORD cCtlStore;
815 HCERTSTORE *rghCtlStore;
816 DWORD cSignerStore;
817 HCERTSTORE *rghSignerStore;
818 } CTL_VERIFY_USAGE_PARA, *PCTL_VERIFY_USAGE_PARA;
819
820 typedef struct _CTL_VERIFY_USAGE_STATUS {
821 DWORD cbSize;
822 DWORD dwError;
823 DWORD dwFlags;
824 PCCTL_CONTEXT *ppCtl;
825 DWORD dwCtlEntryIndex;
826 PCCERT_CONTEXT *ppSigner;
827 DWORD dwSignerIndex;
828 } CTL_VERIFY_USAGE_STATUS, *PCTL_VERIFY_USAGE_STATUS;
829
830 #define CERT_VERIFY_INHIBIT_CTL_UPDATE_FLAG 0x1
831 #define CERT_VERIFY_TRUSTED_SIGNERS_FLAG 0x2
832 #define CERT_VERIFY_NO_TIME_CHECK_FLAG 0x4
833 #define CERT_VERIFY_ALLOW_MORE_USAGE_FLAG 0x8
834 #define CERT_VERIFY_UPDATED_CTL_FLAG 0x1
835
836 typedef struct _CERT_REVOCATION_STATUS {
837 DWORD cbSize;
838 DWORD dwIndex;
839 DWORD dwError;
840 DWORD dwReason;
841 BOOL fHasFreshnessTime;
842 DWORD dwFreshnessTime;
843 } CERT_REVOCATION_STATUS, *PCERT_REVOCATION_STATUS;
844
845 typedef struct _CERT_TRUST_LIST_INFO {
846 DWORD cbSize;
847 PCTL_ENTRY pCtlEntry;
848 PCCTL_CONTEXT pCtlContext;
849 } CERT_TRUST_LIST_INFO, *PCERT_TRUST_LIST_INFO;
850
851 #define CERT_TRUST_NO_ERROR 0x00000000
852 #define CERT_TRUST_IS_NOT_TIME_VALID 0x00000001
853 #define CERT_TRUST_IS_NOT_TIME_NESTED 0x00000002
854 #define CERT_TRUST_IS_REVOKED 0x00000004
855 #define CERT_TRUST_IS_NOT_SIGNATURE_VALID 0x00000008
856 #define CERT_TRUST_IS_NOT_VALID_FOR_USAGE 0x00000010
857 #define CERT_TRUST_IS_UNTRUSTED_ROOT 0x00000020
858 #define CERT_TRUST_REVOCATION_STATUS_UNKNOWN 0x00000040
859 #define CERT_TRUST_IS_CYCLIC 0x00000080
860 #define CERT_TRUST_INVALID_EXTENSION 0x00000100
861 #define CERT_TRUST_INVALID_POLICY_CONSTRAINTS 0x00000200
862 #define CERT_TRUST_INVALID_BASIC_CONSTRAINTS 0x00000400
863 #define CERT_TRUST_INVALID_NAME_CONSTRAINTS 0x00000800
864 #define CERT_TRUST_HAS_NOT_SUPPORTED_NAME_CONSTRAINT 0x00001000
865 #define CERT_TRUST_HAS_NOT_DEFINED_NAME_CONSTRAINT 0x00002000
866 #define CERT_TRUST_HAS_NOT_PERMITTED_NAME_CONSTRAINT 0x00004000
867 #define CERT_TRUST_HAS_EXCLUDED_NAME_CONSTRAINT 0x00008000
868 #define CERT_TRUST_IS_OFFLINE_REVOCATION 0x01000000
869 #define CERT_TRUST_NO_ISSUANCE_CHAIN_POLICY 0x02000000
870
871 #define CERT_TRUST_IS_PARTIAL_CHAIN 0x00010000
872 #define CERT_TRUST_CTL_IS_NOT_TIME_VALID 0x00020000
873 #define CERT_TRUST_CTL_IS_NOT_SIGNATURE_VALID 0x00040000
874 #define CERT_TRUST_CTL_IS_NOT_VALID_FOR_USAGE 0x00080000
875
876 #define CERT_TRUST_HAS_EXACT_MATCH_ISSUER 0x00000001
877 #define CERT_TRUST_HAS_KEY_MATCH_ISSUER 0x00000002
878 #define CERT_TRUST_HAS_NAME_MATCH_ISSUER 0x00000004
879 #define CERT_TRUST_IS_SELF_SIGNED 0x00000008
880
881 #define CERT_TRUST_HAS_PREFERRED_ISSUER 0x00000100
882 #define CERT_TRUST_HAS_ISSUANCE_CHAIN_POLICY 0x00000200
883 #define CERT_TRUST_HAS_VALID_NAME_CONSTRAINTS 0x00000400
884
885 #define CERT_TRUST_IS_COMPLEX_CHAIN 0x00010000
886
887 typedef struct _CERT_TRUST_STATUS {
888 DWORD dwErrorStatus;
889 DWORD dwInfoStatus;
890 } CERT_TRUST_STATUS, *PCERT_TRUST_STATUS;
891
892 typedef struct _CERT_CHAIN_ELEMENT {
893 DWORD cbSize;
894 PCCERT_CONTEXT pCertContext;
895 CERT_TRUST_STATUS TrustStatus;
896 PCERT_REVOCATION_INFO pRevocationInfo;
897 PCERT_ENHKEY_USAGE pIssuanceUsage;
898 PCERT_ENHKEY_USAGE pApplicationUsage;
899 LPCWSTR pwszExtendedErrorInfo;
900 } CERT_CHAIN_ELEMENT, *PCERT_CHAIN_ELEMENT;
901
902 typedef struct _CERT_SIMPLE_CHAIN {
903 DWORD cbSize;
904 CERT_TRUST_STATUS TrustStatus;
905 DWORD cElement;
906 PCERT_CHAIN_ELEMENT *rgpElement;
907 PCERT_TRUST_LIST_INFO pTrustListInfo;
908 BOOL fHasRevocationFreshnessTime;
909 DWORD dwRevocationFreshnessTime;
910 } CERT_SIMPLE_CHAIN, *PCERT_SIMPLE_CHAIN;
911
912 typedef struct _CERT_CHAIN_CONTEXT CERT_CHAIN_CONTEXT, *PCERT_CHAIN_CONTEXT;
913 typedef const CERT_CHAIN_CONTEXT *PCCERT_CHAIN_CONTEXT;
914
915 struct _CERT_CHAIN_CONTEXT {
916 DWORD cbSize;
917 CERT_TRUST_STATUS TrustStatus;
918 DWORD cChain;
919 PCERT_SIMPLE_CHAIN *rgpChain;
920 DWORD cLowerQualityChainContext;
921 PCCERT_CHAIN_CONTEXT *rgpLowerQualityChainContext;
922 BOOL fHasRevocationFreshnessTime;
923 DWORD dwRevocationFreshnessTime;
924 };
925
926 typedef struct _CERT_CHAIN_POLICY_PARA {
927 DWORD cbSize;
928 DWORD dwFlags;
929 void *pvExtraPolicyPara;
930 } CERT_CHAIN_POLICY_PARA, *PCERT_CHAIN_POLICY_PARA;
931
932 typedef struct _CERT_CHAIN_POLICY_STATUS {
933 DWORD cbSize;
934 DWORD dwError;
935 LONG lChainIndex;
936 LONG lElementIndex;
937 void *pvExtraPolicyStatus;
938 } CERT_CHAIN_POLICY_STATUS, *PCERT_CHAIN_POLICY_STATUS;
939
940 #define CERT_CHAIN_POLICY_BASE ((LPCSTR)1)
941 #define CERT_CHAIN_POLICY_AUTHENTICODE ((LPCSTR)2)
942 #define CERT_CHAIN_POLICY_AUTHENTICODE_TS ((LPCSTR)3)
943 #define CERT_CHAIN_POLICY_SSL ((LPCSTR)4)
944 #define CERT_CHAIN_POLICY_BASIC_CONSTRAINTS ((LPCSTR)5)
945 #define CERT_CHAIN_POLICY_NT_AUTH ((LPCSTR)6)
946 #define CERT_CHAIN_POLICY_MICROSOFT_ROOT ((LPCSTR)7)
947
948 #define CERT_CHAIN_POLICY_IGNORE_NOT_TIME_VALID_FLAG 0x00000001
949 #define CERT_CHAIN_POLICY_IGNORE_CTL_NOT_TIME_VALID_FLAG 0x00000002
950 #define CERT_CHAIN_POLICY_IGNORE_NOT_TIME_NESTED_FLAG 0x00000004
951 #define CERT_CHAIN_POLICY_IGNORE_INVALID_BASIC_CONSTRAINTS_FLAG 0x00000008
952
953 #define CERT_CHAIN_POLICY_IGNORE_ALL_NOT_TIME_VALID_FLAGS ( \
954 CERT_CHAIN_POLICY_IGNORE_NOT_TIME_VALID_FLAG \
955 CERT_CHAIN_POLICY_IGNORE_CTL_NOT_TIME_VALID_FLAG \
956 CERT_CHAIN_POLICY_IGNORE_NOT_TIME_NESTED_FLAG )
957
958 #define CERT_CHAIN_POLICY_ALLOW_UNKNOWN_CA_FLAG 0x00000010
959 #define CERT_CHAIN_POLICY_IGNORE_WRONG_USAGE_FLAG 0x00000020
960 #define CERT_CHAIN_POLICY_IGNORE_INVALID_NAME_FLAG 0x00000040
961 #define CERT_CHAIN_POLICY_IGNORE_INVALID_POLICY_FLAG 0x00000080
962
963 #define CERT_CHAIN_POLICY_IGNORE_END_REV_UNKNOWN_FLAG 0x00000100
964 #define CERT_CHAIN_POLICY_IGNORE_CTL_SIGNER_REV_UNKNOWN_FLAG 0x00000200
965 #define CERT_CHAIN_POLICY_IGNORE_CA_REV_UNKNOWN_FLAG 0x00000400
966 #define CERT_CHAIN_POLICY_IGNORE_ROOT_REV_UNKNOWN_FLAG 0x00000800
967
968 #define CERT_CHAIN_POLICY_IGNORE_ALL_REV_UNKNOWN_FLAGS ( \
969 CERT_CHAIN_POLICY_IGNORE_END_REV_UNKNOWN_FLAG \
970 CERT_CHAIN_POLICY_IGNORE_CTL_SIGNER_REV_UNKNOWN_FLAG \
971 CERT_CHAIN_POLICY_IGNORE_CA_REV_UNKNOWN_FLAG \
972 CERT_CHAIN_POLICY_IGNORE_ROOT_REV_UNKNOWN_FLAG )
973
974 #define CERT_CHAIN_POLICY_TRUST_TESTROOT_FLAG 0x00004000
975 #define CERT_CHAIN_POLICY_ALLOW_TESTROOT_FLAG 0x00008000
976 #define MICROSOFT_ROOT_CERT_CHAIN_POLICY_ENABLE_TEST_ROOT_FLAG 0x00010000
977
978 typedef struct _AUTHENTICODE_EXTRA_CERT_CHAIN_POLICY_PARA {
979 DWORD cbSize;
980 DWORD dwRegPolicySettings;
981 PCMSG_SIGNER_INFO pSignerInfo;
982 } AUTHENTICODE_EXTRA_CERT_CHAIN_POLICY_PARA,
983 *PAUTHENTICODE_EXTRA_CERT_CHAIN_POLICY_PARA;
984
985 typedef struct _AUTHENTICODE_EXTRA_CERT_CHAIN_POLICY_STATUS {
986 DWORD cbSize;
987 BOOL fCommercial;
988 } AUTHENTICODE_EXTRA_CERT_CHAIN_POLICY_STATUS,
989 *PAUTHENTICODE_EXTRA_CERT_CHAIN_POLICY_STATUS;
990
991 typedef struct _AUTHENTICODE_TS_EXTRA_CERT_CHAIN_POLICY_PARA {
992 DWORD cbSize;
993 DWORD dwRegPolicySettings;
994 BOOL fCommercial;
995 } AUTHENTICODE_TS_EXTRA_CERT_CHAIN_POLICY_PARA,
996 *PAUTHENTICODE_TS_EXTRA_CERT_CHAIN_POLICY_PARA;
997
998 typedef struct _HTTPSPolicyCallbackData {
999 union {
1000 DWORD cbStruct;
1001 DWORD cbSize;
1002 } DUMMYUNIONNAME;
1003 DWORD dwAuthType;
1004 DWORD fdwChecks;
1005 WCHAR *pwszServerName;
1006 } HTTPSPolicyCallbackData, *PHTTPSPolicyCallbackData,
1007 SSL_EXTRA_CERT_CHAIN_POLICY_PARA, *PSSL_EXTRA_CERT_CHAIN_POLICY_PARA;
1008
1009 /* Values for HTTPSPolicyCallbackData's dwAuthType */
1010 #define AUTHTYPE_CLIENT 1
1011 #define AUTHTYPE_SERVER 2
1012 /* Values for HTTPSPolicyCallbackData's fdwChecks are defined in wininet.h */
1013
1014 #define BASIC_CONSTRAINTS_CERT_CHAIN_POLICY_CA_FLAG 0x80000000
1015 #define BASIC_CONSTRAINTS_CERT_CHAIN_POLICY_END_ENTITY_FLAG 0x40000000
1016
1017 #define MICROSOFT_ROOT_CERT_CHAIN_POLICY_ENABLE_TEST_ROOT_FLAG 0x00010000
1018
1019 #define USAGE_MATCH_TYPE_AND 0x00000000
1020 #define USAGE_MATCH_TYPE_OR 0x00000001
1021
1022 typedef struct _CERT_USAGE_MATCH {
1023 DWORD dwType;
1024 CERT_ENHKEY_USAGE Usage;
1025 } CERT_USAGE_MATCH, *PCERT_USAGE_MATCH;
1026
1027 typedef struct _CTL_USAGE_MATCH {
1028 DWORD dwType;
1029 CTL_USAGE Usage;
1030 } CTL_USAGE_MATCH, *PCTL_USAGE_MATCH;
1031
1032 #define CERT_CHAIN_REVOCATION_CHECK_END_CERT 0x10000000
1033 #define CERT_CHAIN_REVOCATION_CHECK_CHAIN 0x20000000
1034 #define CERT_CHAIN_REVOCATION_CHECK_CHAIN_EXCLUDE_ROOT 0x40000000
1035 #define CERT_CHAIN_REVOCATION_CHECK_CACHE_ONLY 0x80000000
1036
1037 #define CERT_CHAIN_REVOCATION_ACCUMULATIVE_TIMEOUT 0x08000000
1038
1039 #define CERT_CHAIN_DISABLE_PASS1_QUALITY_FILTERING 0x00000040
1040 #define CERT_CHAIN_RETURN_LOWER_QUALITY_CONTEXTS 0x00000080
1041 #define CERT_CHAIN_DISABLE_AUTH_ROOT_AUTO_UPDATE 0x00000100
1042 #define CERT_CHAIN_TIMESTAMP_TIME 0x00000200
1043
1044 typedef struct _CERT_CHAIN_PARA {
1045 DWORD cbSize;
1046 CERT_USAGE_MATCH RequestedUsage;
1047 #ifdef CERT_CHAIN_PARA_HAS_EXTRA_FIELDS
1048 CERT_USAGE_MATCH RequestedIssuancePolicy;
1049 DWORD dwUrlRetrievalTimeout;
1050 BOOL fCheckRevocationFreshnessTime;
1051 DWORD dwRevocationFreshnessTime;
1052 LPFILETIME pftCacheResync;
1053 #endif
1054 } CERT_CHAIN_PARA, *PCERT_CHAIN_PARA;
1055
1056 typedef struct _CERT_SYSTEM_STORE_INFO {
1057 DWORD cbSize;
1058 } CERT_SYSTEM_STORE_INFO, *PCERT_SYSTEM_STORE_INFO;
1059
1060 typedef struct _CERT_PHYSICAL_STORE_INFO {
1061 DWORD cbSize;
1062 LPSTR pszOpenStoreProvider;
1063 DWORD dwOpenEncodingType;
1064 DWORD dwOpenFlags;
1065 CRYPT_DATA_BLOB OpenParameters;
1066 DWORD dwFlags;
1067 DWORD dwPriority;
1068 } CERT_PHYSICAL_STORE_INFO, *PCERT_PHYSICAL_STORE_INFO;
1069
1070 typedef struct _CERT_SYSTEM_STORE_RELOCATE_PARA {
1071 union {
1072 HKEY hKeyBase;
1073 VOID *pvBase;
1074 } DUMMYUNIONNAME;
1075 union {
1076 void *pvSystemStore;
1077 LPCSTR pszSystemStore;
1078 LPCWSTR pwszSystemStore;
1079 } DUMMYUNIONNAME2;
1080 } CERT_SYSTEM_STORE_RELOCATE_PARA, *PCERT_SYSTEM_STORE_RELOCATE_PARA;
1081
1082 typedef BOOL (WINAPI *PFN_CERT_ENUM_SYSTEM_STORE_LOCATION)(
1083 LPCWSTR pwszStoreLocation, DWORD dwFlags, void *pvReserved, void *pvArg);
1084
1085 typedef BOOL (WINAPI *PFN_CERT_ENUM_SYSTEM_STORE)(const void *pvSystemStore,
1086 DWORD dwFlags, PCERT_SYSTEM_STORE_INFO pStoreInfo, void *pvReserved,
1087 void *pvArg);
1088
1089 typedef BOOL (WINAPI *PFN_CERT_ENUM_PHYSICAL_STORE)(const void *pvSystemStore,
1090 DWORD dwFlags, LPCWSTR pwszStoreName, PCERT_PHYSICAL_STORE_INFO pStoreInfo,
1091 void *pvReserved, void *pvArg);
1092
1093 /* Encode/decode object */
1094 typedef LPVOID (__WINE_ALLOC_SIZE(1) WINAPI *PFN_CRYPT_ALLOC)(size_t cbsize);
1095 typedef VOID (WINAPI *PFN_CRYPT_FREE)(LPVOID pv);
1096
1097 typedef struct _CRYPT_ENCODE_PARA {
1098 DWORD cbSize;
1099 PFN_CRYPT_ALLOC pfnAlloc;
1100 PFN_CRYPT_FREE pfnFree;
1101 } CRYPT_ENCODE_PARA, *PCRYPT_ENCODE_PARA;
1102
1103 typedef struct _CRYPT_DECODE_PARA {
1104 DWORD cbSize;
1105 PFN_CRYPT_ALLOC pfnAlloc;
1106 PFN_CRYPT_FREE pfnFree;
1107 } CRYPT_DECODE_PARA, *PCRYPT_DECODE_PARA;
1108
1109 typedef struct _CERT_STORE_PROV_INFO {
1110 DWORD cbSize;
1111 DWORD cStoreProvFunc;
1112 void **rgpvStoreProvFunc;
1113 HCERTSTOREPROV hStoreProv;
1114 DWORD dwStoreProvFlags;
1115 HCRYPTOIDFUNCADDR hStoreProvFuncAddr2;
1116 } CERT_STORE_PROV_INFO, *PCERT_STORE_PROV_INFO;
1117
1118 typedef BOOL (WINAPI *PFN_CERT_DLL_OPEN_STORE_PROV_FUNC)(
1119 LPCSTR lpszStoreProvider, DWORD dwEncodingType, HCRYPTPROV_LEGACY hCryptProv,
1120 DWORD dwFlags, const void *pvPara, HCERTSTORE hCertStore,
1121 PCERT_STORE_PROV_INFO pStoreProvInfo);
1122
1123 typedef void (WINAPI *PFN_CERT_STORE_PROV_CLOSE)(HCERTSTOREPROV hStoreProv,
1124 DWORD dwFlags);
1125
1126 typedef BOOL (WINAPI *PFN_CERT_STORE_PROV_READ_CERT)(HCERTSTOREPROV hStoreProv,
1127 PCCERT_CONTEXT pStoreCertContext, DWORD dwFlags,
1128 PCCERT_CONTEXT *ppProvCertContext);
1129
1130 typedef BOOL (WINAPI *PFN_CERT_STORE_PROV_WRITE_CERT)(HCERTSTOREPROV hStoreProv,
1131 PCCERT_CONTEXT pCertContext, DWORD dwFlags);
1132
1133 typedef BOOL (WINAPI *PFN_CERT_STORE_PROV_DELETE_CERT)(
1134 HCERTSTOREPROV hStoreProv, PCCERT_CONTEXT pCertContext, DWORD dwFlags);
1135
1136 typedef BOOL (WINAPI *PFN_CERT_STORE_PROV_SET_CERT_PROPERTY)(
1137 HCERTSTOREPROV hStoreProv, PCCERT_CONTEXT pCertContext, DWORD dwPropId,
1138 DWORD dwFlags, const void *pvData);
1139
1140 typedef BOOL (WINAPI *PFN_CERT_STORE_PROV_READ_CRL)(HCERTSTOREPROV hStoreProv,
1141 PCCRL_CONTEXT pStoreCrlContext, DWORD dwFlags,
1142 PCCRL_CONTEXT *ppProvCrlContext);
1143
1144 typedef BOOL (WINAPI *PFN_CERT_STORE_PROV_WRITE_CRL)(HCERTSTOREPROV hStoreProv,
1145 PCCRL_CONTEXT pCrlContext, DWORD dwFlags);
1146
1147 typedef BOOL (WINAPI *PFN_CERT_STORE_PROV_DELETE_CRL)(HCERTSTOREPROV hStoreProv,
1148 PCCRL_CONTEXT pCrlContext, DWORD dwFlags);
1149
1150 typedef BOOL (WINAPI *PFN_CERT_STORE_PROV_SET_CRL_PROPERTY)(
1151 HCERTSTOREPROV hStoreProv, PCCRL_CONTEXT pCrlContext, DWORD dwPropId,
1152 DWORD dwFlags, const void *pvData);
1153
1154 typedef BOOL (WINAPI *PFN_CERT_STORE_PROV_READ_CTL)(HCERTSTOREPROV hStoreProv,
1155 PCCTL_CONTEXT pStoreCtlContext, DWORD dwFlags,
1156 PCCTL_CONTEXT *ppProvCtlContext);
1157
1158 typedef BOOL (WINAPI *PFN_CERT_STORE_PROV_WRITE_CTL)(HCERTSTOREPROV hStoreProv,
1159 PCCTL_CONTEXT pCtlContext, DWORD dwFlags);
1160
1161 typedef BOOL (WINAPI *PFN_CERT_STORE_PROV_DELETE_CTL)(
1162 HCERTSTOREPROV hStoreProv, PCCTL_CONTEXT pCtlContext, DWORD dwFlags);
1163
1164 typedef BOOL (WINAPI *PFN_CERT_STORE_PROV_SET_CTL_PROPERTY)(
1165 HCERTSTOREPROV hStoreProv, PCCTL_CONTEXT pCtlContext, DWORD dwPropId,
1166 DWORD dwFlags, const void *pvData);
1167
1168 typedef BOOL (WINAPI *PFN_CERT_STORE_PROV_CONTROL)(HCERTSTOREPROV hStoreProv,
1169 DWORD dwFlags, DWORD dwCtrlType, void const *pvCtrlPara);
1170
1171 typedef struct _CERT_STORE_PROV_FIND_INFO {
1172 DWORD cbSize;
1173 DWORD dwMsgAndCertEncodingType;
1174 DWORD dwFindFlags;
1175 DWORD dwFindType;
1176 const void *pvFindPara;
1177 } CERT_STORE_PROV_FIND_INFO, *PCERT_STORE_PROV_FIND_INFO;
1178 typedef const CERT_STORE_PROV_FIND_INFO CCERT_STORE_PROV_FIND_INFO,
1179 *PCCERT_STORE_PROV_FIND_INFO;
1180
1181 typedef BOOL (WINAPI *PFN_CERT_STORE_PROV_FIND_CERT)(HCERTSTOREPROV hStoreProv,
1182 PCCERT_STORE_PROV_FIND_INFO pFindInfo, PCCERT_CONTEXT pPrevCertContext,
1183 DWORD dwFlags, void **ppvStoreProvFindInfo, PCCERT_CONTEXT *ppProvCertContext);
1184
1185 typedef BOOL (WINAPI *PFN_CERT_STORE_PROV_FREE_FIND_CERT)(
1186 HCERTSTOREPROV hStoreProv, PCCERT_CONTEXT pCertContext,
1187 void *pvStoreProvFindInfo, DWORD dwFlags);
1188
1189 typedef BOOL (WINAPI *PFN_CERT_STORE_PROV_GET_CERT_PROPERTY)(
1190 HCERTSTOREPROV hStoreProv, PCCERT_CONTEXT pCertContext, DWORD dwPropId,
1191 DWORD dwFlags, void *pvData, DWORD *pcbData);
1192
1193 typedef BOOL (WINAPI *PFN_CERT_STORE_PROV_FIND_CRL)(HCERTSTOREPROV hStoreProv,
1194 PCCERT_STORE_PROV_FIND_INFO pFindInfo, PCCRL_CONTEXT pPrevCrlContext,
1195 DWORD dwFlags, void **ppvStoreProvFindInfo, PCCRL_CONTEXT *ppProvCrlContext);
1196
1197 typedef BOOL (WINAPI *PFN_CERT_STORE_PROV_FREE_FIND_CRL)(
1198 HCERTSTOREPROV hStoreProv, PCCRL_CONTEXT pCrlContext,
1199 void *pvStoreProvFindInfo, DWORD dwFlags);
1200
1201 typedef BOOL (WINAPI *PFN_CERT_STORE_PROV_GET_CRL_PROPERTY)(
1202 HCERTSTOREPROV hStoreProv, PCCRL_CONTEXT pCrlContext, DWORD dwPropId,
1203 DWORD dwFlags, void *pvData, DWORD *pcbData);
1204
1205 typedef BOOL (WINAPI *PFN_CERT_STORE_PROV_FIND_CTL)(HCERTSTOREPROV hStoreProv,
1206 PCCTL_CONTEXT pCtlContext, void *pvStoreProvFindInfo, DWORD dwFlags);
1207
1208 typedef BOOL (WINAPI *PFN_CERT_STORE_PROV_GET_CTL_PROPERTY)(
1209 HCERTSTOREPROV hStoreProv, PCCTL_CONTEXT pCtlContext, DWORD dwPropId,
1210 DWORD dwFlags, void *pvData);
1211
1212 typedef struct _CERT_CREATE_CONTEXT_PARA {
1213 DWORD cbSize;
1214 PFN_CRYPT_FREE pfnFree;
1215 void *pvFree;
1216 } CERT_CREATE_CONTEXT_PARA, *PCERT_CREATE_CONTEXT_PARA;
1217
1218 typedef struct _CRYPT_OID_FUNC_ENTRY {
1219 LPCSTR pszOID;
1220 void *pvFuncAddr;
1221 } CRYPT_OID_FUNC_ENTRY, *PCRYPT_OID_FUNC_ENTRY;
1222
1223 typedef BOOL (WINAPI *PFN_CRYPT_ENUM_OID_FUNC)(DWORD dwEncodingType,
1224 LPCSTR pszFuncName, LPCSTR pszOID, DWORD cValue, const DWORD rgdwValueType[],
1225 LPCWSTR const rgpwszValueName[], const BYTE * const rgpbValueData[],
1226 const DWORD rgcbValueData[], void *pvArg);
1227
1228 #define CRYPT_MATCH_ANY_ENCODING_TYPE 0xffffffff
1229
1230 typedef struct _CRYPT_OID_INFO {
1231 DWORD cbSize;
1232 LPCSTR pszOID;
1233 LPCWSTR pwszName;
1234 DWORD dwGroupId;
1235 union {
1236 DWORD dwValue;
1237 ALG_ID Algid;
1238 DWORD dwLength;
1239 } DUMMYUNIONNAME;
1240 CRYPT_DATA_BLOB ExtraInfo;
1241 } CRYPT_OID_INFO, *PCRYPT_OID_INFO;
1242 typedef const CRYPT_OID_INFO CCRYPT_OID_INFO, *PCCRYPT_OID_INFO;
1243
1244 typedef BOOL (WINAPI *PFN_CRYPT_ENUM_OID_INFO)(PCCRYPT_OID_INFO pInfo,
1245 void *pvArg);
1246
1247 typedef struct _CRYPT_SIGN_MESSAGE_PARA {
1248 DWORD cbSize;
1249 DWORD dwMsgEncodingType;
1250 PCCERT_CONTEXT pSigningCert;
1251 CRYPT_ALGORITHM_IDENTIFIER HashAlgorithm;
1252 void * pvHashAuxInfo;
1253 DWORD cMsgCert;
1254 PCCERT_CONTEXT *rgpMsgCert;
1255 DWORD cMsgCrl;
1256 PCCRL_CONTEXT *rgpMsgCrl;
1257 DWORD cAuthAttr;
1258 PCRYPT_ATTRIBUTE rgAuthAttr;
1259 DWORD cUnauthAttr;
1260 PCRYPT_ATTRIBUTE rgUnauthAttr;
1261 DWORD dwFlags;
1262 DWORD dwInnerContentType;
1263 #ifdef CRYPT_SIGN_MESSAGE_PARA_HAS_CMS_FIELDS
1264 CRYPT_ALGORITHM_IDENTIFIER HashEncryptionAlgorithm;
1265 void * pvHashEncryptionAuxInfo;
1266 #endif
1267 } CRYPT_SIGN_MESSAGE_PARA, *PCRYPT_SIGN_MESSAGE_PARA;
1268
1269 #define CRYPT_MESSAGE_BARE_CONTENT_OUT_FLAG 0x00000001
1270 #define CRYPT_MESSAGE_ENCAPSULATED_CONTENT_OUT_FLAG 0x00000002
1271 #define CRYPT_MESSAGE_KEYID_SIGNER_FLAG 0x00000004
1272 #define CRYPT_MESSAGE_SILENT_KEYSET_FLAG 0x00000008
1273
1274 typedef PCCERT_CONTEXT (WINAPI *PFN_CRYPT_GET_SIGNER_CERTIFICATE)(void *pvArg,
1275 DWORD dwCertEncodingType, PCERT_INFO pSignerId, HCERTSTORE hMsgCertStore);
1276
1277 typedef struct _CRYPT_VERIFY_MESSAGE_PARA {
1278 DWORD cbSize;
1279 DWORD dwMsgAndCertEncodingType;
1280 HCRYPTPROV_LEGACY hCryptProv;
1281 PFN_CRYPT_GET_SIGNER_CERTIFICATE pfnGetSignerCertificate;
1282 void * pvGetArg;
1283 } CRYPT_VERIFY_MESSAGE_PARA, *PCRYPT_VERIFY_MESSAGE_PARA;
1284
1285 typedef struct _CRYPT_ENCRYPT_MESSAGE_PARA {
1286 DWORD cbSize;
1287 DWORD dwMsgEncodingType;
1288 HCRYPTPROV_LEGACY hCryptProv;
1289 CRYPT_ALGORITHM_IDENTIFIER ContentEncryptionAlgorithm;
1290 void * pvEncryptionAuxInfo;
1291 DWORD dwFlags;
1292 DWORD dwInnerContentType;
1293 } CRYPT_ENCRYPT_MESSAGE_PARA, *PCRYPT_ENCRYPT_MESSAGE_PARA;
1294
1295 #define CRYPT_MESSAGE_KEYID_RECIPIENT_FLAG 0x00000004
1296
1297 typedef struct _CRYPT_DECRYPT_MESSAGE_PARA {
1298 DWORD cbSize;
1299 DWORD dwMsgAndCertEncodingType;
1300 DWORD cCertStore;
1301 HCERTSTORE *rghCertStore;
1302 #ifdef CRYPT_DECRYPT_MESSAGE_PARA_HAS_EXTRA_FIELDS
1303 DWORD dwFlags;
1304 #endif
1305 } CRYPT_DECRYPT_MESSAGE_PARA, *PCRYPT_DECRYPT_MESSAGE_PARA;
1306
1307 typedef struct _CRYPT_HASH_MESSAGE_PARA {
1308 DWORD cbSize;
1309 DWORD dwMsgEncodingType;
1310 HCRYPTPROV_LEGACY hCryptProv;
1311 CRYPT_ALGORITHM_IDENTIFIER HashAlgorithm;
1312 void * pvHashAuxInfo;
1313 } CRYPT_HASH_MESSAGE_PARA, *PCRYPT_HASH_MESSAGE_PARA;
1314
1315 typedef struct _CRYPT_KEY_SIGN_MESSAGE_PARA {
1316 DWORD cbSize;
1317 DWORD dwMsgAndCertEncodingType;
1318 HCRYPTPROV hCryptProv;
1319 DWORD dwKeySpec;
1320 CRYPT_ALGORITHM_IDENTIFIER HashAlgorithm;
1321 void * pvHashAuxInfo;
1322 } CRYPT_KEY_SIGN_MESSAGE_PARA, *PCRYPT_KEY_SIGN_MESSAGE_PARA;
1323
1324 typedef struct _CRYPT_KEY_VERIFY_MESSAGE_PARA {
1325 DWORD cbSize;
1326 DWORD dwMsgEncodingType;
1327 HCRYPTPROV_LEGACY hCryptProv;
1328 } CRYPT_KEY_VERIFY_MESSAGE_PARA, *PCRYPT_KEY_VERIFY_MESSAGE_PARA;
1329
1330 typedef struct _CRYPT_URL_ARRAY {
1331 DWORD cUrl;
1332 LPWSTR *rgwszUrl;
1333 } CRYPT_URL_ARRAY, *PCRYPT_URL_ARRAY;
1334
1335 typedef struct _CRYPT_URL_INFO {
1336 DWORD cbSize;
1337 DWORD dwSyncDeltaTime;
1338 DWORD cGroup;
1339 DWORD *rgcGroupEntry;
1340 } CRYPT_URL_INFO, *PCRYPT_URL_INFO;
1341
1342 #define URL_OID_CERTIFICATE_ISSUER ((LPCSTR)1)
1343 #define URL_OID_CERTIFICATE_CRL_DIST_POINT ((LPCSTR)2)
1344 #define URL_OID_CTL_ISSUER ((LPCSTR)3)
1345 #define URL_OID_CTL_NEXT_UPDATE ((LPCSTR)4)
1346 #define URL_OID_CRL_ISSUER ((LPCSTR)5)
1347 #define URL_OID_CERTIFICATE_FRESHEST_CRL ((LPCSTR)6)
1348 #define URL_OID_CRL_FRESHEST_CRL ((LPCSTR)7)
1349 #define URL_OID_CROSS_CERT_DIST_POINT ((LPCSTR)8)
1350
1351 #define URL_OID_GET_OBJECT_URL_FUNC "UrlDllGetObjectUrl"
1352
1353 typedef HANDLE HCRYPTASYNC, *PHCRYPTASYNC;
1354
1355 typedef void (WINAPI *PFN_CRYPT_ASYNC_PARAM_FREE_FUNC)(LPSTR pszParamOid,
1356 LPVOID pvParam);
1357
1358 #define CRYPT_PARAM_ASYNC_RETRIEVAL_COMPLETION ((LPCSTR)1)
1359 #define CRYPT_PARAM_CANCEL_ASYNC_RETRIEVAL ((LPCSTR)2)
1360
1361 typedef void (WINAPI *PFN_CRYPT_ASYNC_RETRIEVAL_COMPLETION_FUNC)(
1362 void *pvCompletion, DWORD dwCompletionCode, LPCSTR pszURL, LPSTR pszObjectOid,
1363 void *pvObject);
1364
1365 typedef struct _CRYPT_ASYNC_RETRIEVAL_COMPLETION
1366 {
1367 PFN_CRYPT_ASYNC_RETRIEVAL_COMPLETION_FUNC pfnCompletion;
1368 void *pvCompletion;
1369 } CRYPT_ASYNC_RETRIEVAL_COMPLETION, *PCRYPT_ASYNC_RETRIEVAL_COMPLETION;
1370
1371 typedef BOOL (WINAPI *PFN_CANCEL_ASYNC_RETRIEVAL_FUNC)(
1372 HCRYPTASYNC hAsyncRetrieve);
1373
1374 typedef struct _CRYPT_BLOB_ARRAY
1375 {
1376 DWORD cBlob;
1377 PCRYPT_DATA_BLOB rgBlob;
1378 } CRYPT_BLOB_ARRAY, *PCRYPT_BLOB_ARRAY;
1379
1380 typedef struct _CRYPT_CREDENTIALS {
1381 DWORD cbSize;
1382 LPCSTR pszCredentialsOid;
1383 LPVOID pvCredentials;
1384 } CRYPT_CREDENTIALS, *PCRYPT_CREDENTIALS;
1385
1386 #define CREDENTIAL_OID_PASSWORD_CREDENTIALS_A ((LPCSTR)1)
1387 #define CREDENTIAL_OID_PASSWORD_CREDENTIALS_W ((LPCSTR)2)
1388 #define CREDENTIAL_OID_PASSWORD_CREDENTIALS \
1389 WINELIB_NAME_AW(CREDENTIAL_OID_PASSWORD_CREDENTIALS_)
1390
1391 typedef struct _CRYPT_PASSWORD_CREDENTIALSA {
1392 DWORD cbSize;
1393 LPSTR pszUsername;
1394 LPSTR pszPassword;
1395 } CRYPT_PASSWORD_CREDENTIALSA, *PCRYPT_PASSWORD_CREDENTIALSA;
1396
1397 typedef struct _CRYPT_PASSWORD_CREDENTIALSW {
1398 DWORD cbSize;
1399 LPWSTR pszUsername;
1400 LPWSTR pszPassword;
1401 } CRYPT_PASSWORD_CREDENTIALSW, *PCRYPT_PASSWORD_CREDENTIALSW;
1402 #define CRYPT_PASSWORD_CREDENTIALS WINELIB_NAME_AW(CRYPT_PASSWORD_CREDENTIALS)
1403 #define PCRYPT_PASSWORD_CREDENTIALS WINELIB_NAME_AW(PCRYPT_PASSWORD_CREDENTIALS)
1404
1405 typedef struct _CRYPT_RETRIEVE_AUX_INFO {
1406 DWORD cbSize;
1407 FILETIME *pLastSyncTime;
1408 DWORD dwMaxUrlRetrievalByteCount;
1409 } CRYPT_RETRIEVE_AUX_INFO, *PCRYPT_RETRIEVE_AUX_INFO;
1410
1411 typedef void (WINAPI *PFN_FREE_ENCODED_OBJECT_FUNC)(LPCSTR pszObjectOid,
1412 PCRYPT_BLOB_ARRAY pObject, void *pvFreeContext);
1413
1414 #define SCHEME_OID_RETRIEVE_ENCODED_OBJECT_FUNC \
1415 "SchemeDllRetrieveEncodedObject"
1416 #define SCHEME_OID_RETRIEVE_ENCODED_OBJECTW_FUNC \
1417 "SchemeDllRetrieveEncodedObjectW"
1418 /* The signature of SchemeDllRetrieveEncodedObjectW is:
1419 BOOL WINAPI SchemeDllRetrieveEncodedObjectW(LPCWSTR pwszUrl,
1420 LPCSTR pszObjectOid, DWORD dwRetrievalFlags, DWORD dwTimeout,
1421 PCRYPT_BLOB_ARRAY pObject, PFN_FREE_ENCODED_OBJECT_FUNC *ppfnFreeObject,
1422 void **ppvFreeContext, HCRYPTASYNC hAsyncRetrieve,
1423 PCRYPT_CREDENTIALS pCredentials, PCRYPT_RETRIEVE_AUX_INFO pAuxInfo);
1424 */
1425
1426 #define CONTEXT_OID_CREATE_OBJECT_CONTEXT_FUNC "ContextDllCreateObjectContext"
1427 /* The signature of ContextDllCreateObjectContext is:
1428 BOOL WINAPI ContextDllCreateObjectContext(LPCSTR pszObjectOid,
1429 DWORD dwRetrievalFlags, PCRYPT_BLOB_ARRAY pObject, void **ppvContxt);
1430 */
1431
1432 #define CONTEXT_OID_CERTIFICATE ((LPCSTR)1)
1433 #define CONTEXT_OID_CRL ((LPCSTR)2)
1434 #define CONTEXT_OID_CTL ((LPCSTR)3)
1435 #define CONTEXT_OID_PKCS7 ((LPCSTR)4)
1436 #define CONTEXT_OID_CAPI2_ANY ((LPCSTR)5)
1437
1438 #define CRYPT_RETRIEVE_MULTIPLE_OBJECTS 0x00000001
1439 #define CRYPT_CACHE_ONLY_RETRIEVAL 0x00000002
1440 #define CRYPT_WIRE_ONLY_RETRIEVAL 0x00000004
1441 #define CRYPT_DONT_CACHE_RESULT 0x00000008
1442 #define CRYPT_ASYNC_RETRIEVAL 0x00000010
1443 #define CRYPT_STICKY_CACHE_RETRIEVAL 0x00001000
1444 #define CRYPT_LDAP_SCOPE_BASE_ONLY_RETRIEVAL 0x00002000
1445 #define CRYPT_OFFLINE_CHECK_RETRIEVAL 0x00004000
1446 #define CRYPT_LDAP_INSERT_ENTRY_ATTRIBUTE 0x00008000
1447 #define CRYPT_LDAP_SIGN_RETRIEVAL 0x00010000
1448 #define CRYPT_NO_AUTH_RETRIEVAL 0x00020000
1449 #define CRYPT_LDAP_AREC_EXCLUSIVE_RETRIEVAL 0x00040000
1450 #define CRYPT_AIA_RETRIEVAL 0x00080000
1451
1452 #define CRYPT_VERIFY_CONTEXT_SIGNATURE 0x00000020
1453 #define CRYPT_VERIFY_DATA_HASH 0x00000040
1454 #define CRYPT_KEEP_TIME_VALID 0x00000080
1455 #define CRYPT_DONT_VERIFY_SIGNATURE 0x00000100
1456 #define CRYPT_DONT_CHECK_TIME_VALIDITY 0x00000200
1457 #define CRYPT_CHECK_FRESHNESS_TIME_VALIDITY 0x00000400
1458 #define CRYPT_ACCUMULATIVE_TIMEOUT 0x00000800
1459
1460 typedef BOOL (WINAPI *PFN_CRYPT_CANCEL_RETRIEVAL)(DWORD dwFlags, void *pvArg);
1461
1462 typedef struct _CERT_CRL_CONTEXT_PAIR
1463 {
1464 PCCERT_CONTEXT pCertContext;
1465 PCCRL_CONTEXT pCrlContext;
1466 } CERT_CRL_CONTEXT_PAIR, *PCERT_CRL_CONTEXT_PAIR;
1467 typedef const CERT_CRL_CONTEXT_PAIR *PCCERT_CRL_CONTEXT_PAIR;
1468
1469 #define TIME_VALID_OID_GET_OBJECT_FUNC "TimeValidDllGetObject"
1470
1471 #define TIME_VALID_OID_GET_CTL ((LPCSTR)1)
1472 #define TIME_VALID_OID_GET_CRL ((LPCSTR)2)
1473 #define TIME_VALID_OID_GET_CRL_FROM_CERT ((LPCSTR)3)
1474 #define TIME_VALID_OID_GET_FRESHEST_CRL_FROM_CERT ((LPCSTR)4)
1475 #define TIME_VALID_OID_GET_FRESHEST_CRL_FROM_CRL ((LPCSTR)5)
1476
1477 #define TIME_VALID_OID_FLUSH_OBJECT_FUNC "TimeValidDllFlushObject"
1478
1479 #define TIME_VALID_OID_FLUSH_CTL ((LPCSTR)1)
1480 #define TIME_VALID_OID_FLUSH_CRL ((LPCSTR)2)
1481 #define TIME_VALID_OID_FLUSH_CRL_FROM_CERT ((LPCSTR)3)
1482 #define TIME_VALID_OID_FLUSH_FRESHEST_CRL_FROM_CERT ((LPCSTR)4)
1483 #define TIME_VALID_OID_FLUSH_FRESHEST_CRL_FROM_CRL ((LPCSTR)5)
1484
1485 /* OID group IDs */
1486 #define CRYPT_HASH_ALG_OID_GROUP_ID 1
1487 #define CRYPT_ENCRYPT_ALG_OID_GROUP_ID 2
1488 #define CRYPT_PUBKEY_ALG_OID_GROUP_ID 3
1489 #define CRYPT_SIGN_ALG_OID_GROUP_ID 4
1490 #define CRYPT_RDN_ATTR_OID_GROUP_ID 5
1491 #define CRYPT_EXT_OR_ATTR_OID_GROUP_ID 6
1492 #define CRYPT_ENHKEY_USAGE_OID_GROUP_ID 7
1493 #define CRYPT_POLICY_OID_GROUP_ID 8
1494 #define CRYPT_TEMPLATE_OID_GROUP_ID 9
1495 #define CRYPT_LAST_OID_GROUP_ID 9
1496
1497 #define CRYPT_FIRST_ALG_OID_GROUP_ID CRYPT_HASH_ALG_OID_GROUP_ID
1498 #define CRYPT_LAST_ALG_OID_GROUP_ID CRYPT_SIGN_ALG_OID_GROUP_ID
1499
1500 #define CRYPT_OID_INHIBIT_SIGNATURE_FORMAT_FLAG 0x1
1501 #define CRYPT_OID_USE_PUBKEY_PARA_FOR_PKCS7_FLAG 0x2
1502 #define CRYPT_OID_NO_NULL_ALGORITHM_PARA_FLAG 0x4
1503
1504 #define CRYPT_OID_INFO_OID_KEY 1
1505 #define CRYPT_OID_INFO_NAME_KEY 2
1506 #define CRYPT_OID_INFO_ALGID_KEY 3
1507 #define CRYPT_OID_INFO_SIGN_KEY 4
1508
1509 /* Algorithm IDs */
1510
1511 #define GET_ALG_CLASS(x) (x & (7 << 13))
1512 #define GET_ALG_TYPE(x) (x & (15 << 9))
1513 #define GET_ALG_SID(x) (x & (511))
1514
1515 /* Algorithm Classes */
1516 #define ALG_CLASS_ANY (0)
1517 #define ALG_CLASS_SIGNATURE (1 << 13)
1518 #define ALG_CLASS_MSG_ENCRYPT (2 << 13)
1519 #define ALG_CLASS_DATA_ENCRYPT (3 << 13)
1520 #define ALG_CLASS_HASH (4 << 13)
1521 #define ALG_CLASS_KEY_EXCHANGE (5 << 13)
1522 #define ALG_CLASS_ALL (7 << 13)
1523 /* Algorithm types */
1524 #define ALG_TYPE_ANY (0)
1525 #define ALG_TYPE_DSS (1 << 9)
1526 #define ALG_TYPE_RSA (2 << 9)
1527 #define ALG_TYPE_BLOCK (3 << 9)
1528 #define ALG_TYPE_STREAM (4 << 9)
1529 #define ALG_TYPE_DH (5 << 9)
1530 #define ALG_TYPE_SECURECHANNEL (6 << 9)
1531
1532 /* SIDs */
1533 #define ALG_SID_ANY (0)
1534 /* RSA SIDs */
1535 #define ALG_SID_RSA_ANY 0
1536 #define ALG_SID_RSA_PKCS 1
1537 #define ALG_SID_RSA_MSATWORK 2
1538 #define ALG_SID_RSA_ENTRUST 3
1539 #define ALG_SID_RSA_PGP 4
1540 /* DSS SIDs */
1541 #define ALG_SID_DSS_ANY 0
1542 #define ALG_SID_DSS_PKCS 1
1543 #define ALG_SID_DSS_DMS 2
1544
1545 /* DES SIDs */
1546 #define ALG_SID_DES 1
1547 #define ALG_SID_3DES 3
1548 #define ALG_SID_DESX 4
1549 #define ALG_SID_IDEA 5
1550 #define ALG_SID_CAST 6
1551 #define ALG_SID_SAFERSK64 7
1552 #define ALG_SID_SAFERSK128 8
1553 #define ALG_SID_3DES_112 9
1554 #define ALG_SID_CYLINK_MEK 12
1555 #define ALG_SID_RC5 13
1556 #define ALG_SID_AES_128 14
1557 #define ALG_SID_AES_192 15
1558 #define ALG_SID_AES_256 16
1559 #define ALG_SID_AES 17
1560 /* Diffie-Hellmans SIDs */
1561 #define ALG_SID_DH_SANDF 1
1562 #define ALG_SID_DH_EPHEM 2
1563 #define ALG_SID_AGREED_KEY_ANY 3
1564 #define ALG_SID_KEA 4
1565 /* RC2 SIDs */
1566 #define ALG_SID_RC4 1
1567 #define ALG_SID_RC2 2
1568 #define ALG_SID_SEAL 2
1569 /* Hash SIDs */
1570 #define ALG_SID_MD2 1
1571 #define ALG_SID_MD4 2
1572 #define ALG_SID_MD5 3
1573 #define ALG_SID_SHA 4
1574 #define ALG_SID_SHA1 ALG_SID_SHA
1575 #define ALG_SID_MAC 5
1576 #define ALG_SID_RIPEMD 6
1577 #define ALG_SID_RIPEMD160 7
1578 #define ALG_SID_SSL3SHAMD5 8
1579 #define ALG_SID_HMAC 9
1580 #define ALG_SID_TLS1PRF 10
1581 #define ALG_SID_HASH_REPLACE_OWF 11
1582 #define ALG_SID_SHA_256 12
1583 #define ALG_SID_SHA_384 13
1584 #define ALG_SID_SHA_512 14
1585 /* SCHANNEL SIDs */
1586 #define ALG_SID_SSL3_MASTER 1
1587 #define ALG_SID_SCHANNEL_MASTER_HASH 2
1588 #define ALG_SID_SCHANNEL_MAC_KEY 3
1589 #define ALG_SID_PCT1_MASTER 4
1590 #define ALG_SID_SSL2_MASTER 5
1591 #define ALG_SID_TLS1_MASTER 6
1592 #define ALG_SID_SCHANNEL_ENC_KEY 7
1593 #define ALG_SID_EXAMPLE 80
1594
1595 /* Algorithm Definitions */
1596 #define CALG_MD2 (ALG_CLASS_HASH | ALG_TYPE_ANY | ALG_SID_MD2)
1597 #define CALG_MD4 (ALG_CLASS_HASH | ALG_TYPE_ANY | ALG_SID_MD4)
1598 #define CALG_MD5 (ALG_CLASS_HASH | ALG_TYPE_ANY | ALG_SID_MD5)
1599 #define CALG_SHA (ALG_CLASS_HASH | ALG_TYPE_ANY | ALG_SID_SHA)
1600 #define CALG_SHA1 CALG_SHA
1601 #define CALG_MAC (ALG_CLASS_HASH | ALG_TYPE_ANY | ALG_SID_MAC)
1602 #define CALG_SSL3_SHAMD5 (ALG_CLASS_HASH | ALG_TYPE_ANY | ALG_SID_SSL3SHAMD5)
1603 #define CALG_HMAC (ALG_CLASS_HASH | ALG_TYPE_ANY | ALG_SID_HMAC)
1604 #define CALG_TLS1PRF (ALG_CLASS_HASH | ALG_TYPE_ANY | ALG_SID_TLS1PRF)
1605 #define CALG_HASH_REPLACE_OWF (ALG_CLASS_HASH | ALG_TYPE_ANY | ALG_SID_HASH_REPLACE_OWF)
1606 #define CALG_SHA_256 (ALG_CLASS_HASH | ALG_TYPE_ANY | ALG_SID_SHA_256)
1607 #define CALG_SHA_384 (ALG_CLASS_HASH | ALG_TYPE_ANY | ALG_SID_SHA_384)
1608 #define CALG_SHA_512 (ALG_CLASS_HASH | ALG_TYPE_ANY | ALG_SID_SHA_512)
1609 #define CALG_RSA_SIGN (ALG_CLASS_SIGNATURE | ALG_TYPE_RSA | ALG_SID_RSA_ANY)
1610 #define CALG_DSS_SIGN (ALG_CLASS_SIGNATURE | ALG_TYPE_DSS | ALG_SID_DSS_ANY)
1611 #define CALG_NO_SIGN (ALG_CLASS_SIGNATURE | ALG_TYPE_ANY | ALG_SID_ANY)
1612 #define CALG_DH_SF (ALG_CLASS_KEY_EXCHANGE | ALG_TYPE_DH | ALG_SID_DH_SANDF)
1613 #define CALG_DH_EPHEM (ALG_CLASS_KEY_EXCHANGE | ALG_TYPE_DH | ALG_SID_DH_EPHEM)
1614 #define CALG_RSA_KEYX (ALG_CLASS_KEY_EXCHANGE | ALG_TYPE_RSA | ALG_SID_RSA_ANY)
1615 #define CALG_DES (ALG_CLASS_DATA_ENCRYPT | ALG_TYPE_BLOCK | ALG_SID_DES)
1616 #define CALG_RC2 (ALG_CLASS_DATA_ENCRYPT | ALG_TYPE_BLOCK | ALG_SID_RC2)
1617 #define CALG_3DES (ALG_CLASS_DATA_ENCRYPT | ALG_TYPE_BLOCK | ALG_SID_3DES)
1618 #define CALG_3DES_112 (ALG_CLASS_DATA_ENCRYPT | ALG_TYPE_BLOCK | ALG_SID_3DES_112)
1619 #define CALG_AES_128 (ALG_CLASS_DATA_ENCRYPT | ALG_TYPE_BLOCK | ALG_SID_AES_128)
1620 #define CALG_AES_192 (ALG_CLASS_DATA_ENCRYPT | ALG_TYPE_BLOCK | ALG_SID_AES_192)
1621 #define CALG_AES_256 (ALG_CLASS_DATA_ENCRYPT | ALG_TYPE_BLOCK | ALG_SID_AES_256)
1622 #define CALG_AES (ALG_CLASS_DATA_ENCRYPT | ALG_TYPE_BLOCK | ALG_SID_AES)
1623 #define CALG_RC4 (ALG_CLASS_DATA_ENCRYPT | ALG_TYPE_STREAM | ALG_SID_RC4)
1624 #define CALG_SEAL (ALG_CLASS_DATA_ENCRYPT | ALG_TYPE_STREAM | ALG_SID_SEAL)
1625 #define CALG_RC5 (ALG_CLASS_DATA_ENCRYPT | ALG_TYPE_STREAM | ALG_SID_RC5)
1626 #define CALG_SSL3_MASTER (ALG_CLASS_MSG_ENCRYPT | ALG_TYPE_SECURECHANNEL | ALG_SID_SSL3_MASTER)
1627 #define CALG_SCHANNEL_MASTER_HASH (ALG_CLASS_MSG_ENCRYPT | ALG_TYPE_SECURECHANNEL | ALG_SID_SCHANNEL_MASTER_HASH)
1628 #define CALG_SCHANNEL_MAC_KEY (ALG_CLASS_MSG_ENCRYPT | ALG_TYPE_SECURECHANNEL | ALG_SID_SCHANNEL_MAC_KEY)
1629 #define CALG_SCHANNEL_ENC_KEY (ALG_CLASS_MSG_ENCRYPT | ALG_TYPE_SECURECHANNEL | ALG_SID_SCHANNEL_ENC_KEY)
1630 #define CALG_PCT1_MASTER (ALG_CLASS_MSG_ENCRYPT | ALG_TYPE_SECURECHANNEL | ALG_SID_PCT1_MASTER)
1631 #define CALG_SSL2_MASTER (ALG_CLASS_MSG_ENCRYPT | ALG_TYPE_SECURECHANNEL | ALG_SID_SSL2_MASTER)
1632 #define CALG_TLS1_MASTER (ALG_CLASS_MSG_ENCRYPT | ALG_TYPE_SECURECHANNEL | ALG_SID_TLS1_MASTER)
1633
1634
1635 /* Protocol Flags */
1636 #define CRYPT_FLAG_PCT1 0x0001
1637 #define CRYPT_FLAG_SSL2 0x0002
1638 #define CRYPT_FLAG_SSL3 0x0004
1639 #define CRYPT_FLAG_TLS1 0x0008
1640 #define CRYPT_FLAG_IPSEC 0x0010
1641 #define CRYPT_FLAG_SIGNING 0x0020
1642
1643 /* Provider names */
1644 #define MS_DEF_PROV_A "Microsoft Base Cryptographic Provider v1.0"
1645 #if defined(__GNUC__)
1646 # define MS_DEF_PROV_W (const WCHAR []){ 'M','i','c','r','o','s','o','f','t',' ', \
1647 'B','a','s','e',' ','C','r','y','p','t','o','g','r','a','p','h','i','c',' ', \
1648 'P','r','o','v','i','d','e','r',' ','v','1','.','0',0 }
1649 #elif defined(_MSC_VER)
1650 # define MS_DEF_PROV_W L"Microsoft Base Cryptographic Provider v1.0"
1651 #else
1652 static const WCHAR MS_DEF_PROV_W[] = { 'M','i','c','r','o','s','o','f','t',' ',
1653 'B','a','s','e',' ','C','r','y','p','t','o','g','r','a','p','h','i','c',' ',
1654 'P','r','o','v','i','d','e','r',' ','v','1','.','0',0 };
1655 #endif
1656 #define MS_DEF_PROV WINELIB_NAME_AW(MS_DEF_PROV_)
1657
1658 #define MS_ENHANCED_PROV_A "Microsoft Enhanced Cryptographic Provider v1.0"
1659 #if defined(__GNUC__)
1660 # define MS_ENHANCED_PROV_W (const WCHAR []){ 'M','i','c','r','o','s','o','f','t',' ', \
1661 'E','n','h','a','n','c','e','d',' ','C','r','y','p','t','o','g','r','a','p','h','i','c',' ', \
1662 'P','r','o','v','i','d','e','r',' ','v','1','.','0',0 }
1663 #elif defined(_MSC_VER)
1664 # define MS_ENHANCED_PROV_W L"Microsoft Enhanced Cryptographic Provider v1.0"
1665 #else
1666 static const WCHAR MS_ENHANCED_PROV_W[] = { 'M','i','c','r','o','s','o','f','t',' ',
1667 'E','n','h','a','n','c','e','d',' ','C','r','y','p','t','o','g','r','a','p','h','i','c',' ',
1668 'P','r','o','v','i','d','e','r',' ','v','1','.','0',0 };
1669 #endif
1670 #define MS_ENHANCED_PROV WINELIB_NAME_AW(MS_ENHANCED_PROV_)
1671
1672 #define MS_STRONG_PROV_A "Microsoft Strong Cryptographic Provider"
1673 #if defined(__GNUC__)
1674 # define MS_STRONG_PROV_W (const WCHAR []){ 'M','i','c','r','o','s','o','f','t',' ', \
1675 'S','t','r','o','n','g',' ','C','r','y','p','t','o','g','r','a','p','h','i','c',' ', \
1676 'P','r','o','v','i','d','e','r',0 }
1677 #elif defined(_MSC_VER)
1678 # define MS_STRONG_PROV_W L"Microsoft Strong Cryptographic Provider"
1679 #else
1680 static const WCHAR MS_STRONG_PROV_W[] = { 'M','i','c','r','o','s','o','f','t',' ',
1681 'S','t','r','o','n','g',' ','C','r','y','p','t','o','g','r','a','p','h','i','c',' ',
1682 'P','r','o','v','i','d','e','r',0 };
1683 #endif
1684 #define MS_STRONG_PROV WINELIB_NAME_AW(MS_STRONG_PROV_)
1685
1686 #define MS_DEF_RSA_SIG_PROV_A "Microsoft RSA Signature Cryptographic Provider"
1687 #if defined(__GNUC__)
1688 # define MS_DEF_RSA_SIG_PROV_W (const WCHAR []){ 'M','i','c','r','o','s','o','f','t',' ', \
1689 'R','S','A',' ','S','i','g','n','a','t','u','r','e',' ', \
1690 'C','r','y','p','t','o','g','r','a','p','h','i','c',' ','P','r','o','v','i','d','e','r',0 }
1691 #elif defined(_MSC_VER)
1692 # define MS_DEF_RSA_SIG_PROV_W L"Microsoft RSA Signature Cryptographic Provider"
1693 #else
1694 static const WCHAR MS_DEF_RSA_SIG_PROV_W[] = { 'M','i','c','r','o','s','o','f','t',' ',
1695 'R','S','A',' ','S','i','g','n','a','t','u','r','e',' ',
1696 'C','r','y','p','t','o','g','r','a','p','h','i','c',' ','P','r','o','v','i','d','e','r',0 };
1697 #endif
1698 #define MS_DEF_RSA_SIG_PROV WINELIB_NAME_AW(MS_DEF_RSA_SIG_PROV_)
1699
1700 #define MS_DEF_RSA_SCHANNEL_PROV_A "Microsoft RSA SChannel Cryptographic Provider"
1701 #if defined(__GNUC__)
1702 # define MS_DEF_RSA_SCHANNEL_PROV_W (const WCHAR []){ 'M','i','c','r','o','s','o','f','t',' ', \
1703 'R','S','A',' ','S','C','h','a','n','n','e','l',' ', \
1704 'C','r','y','p','t','o','g','r','a','p','h','i','c',' ','P','r','o','v','i','d','e','r',0 }
1705 #elif defined(_MSC_VER)
1706 # define MS_DEF_RSA_SCHANNEL_PROV_W L"Microsoft RSA SChannel Cryptographic Provider"
1707 #else
1708 static const WCHAR MS_DEF_RSA_SCHANNEL_PROV_W[] = { 'M','i','c','r','o','s','o','f','t',' ',
1709 'R','S','A',' ','S','C','h','a','n','n','e','l',' ',
1710 'C','r','y','p','t','o','g','r','a','p','h','i','c',' ','P','r','o','v','i','d','e','r',0 };
1711 #endif
1712 #define MS_DEF_RSA_SCHANNEL_PROV WINELIB_NAME_AW(MS_DEF_RSA_SCHANNEL_PROV_)
1713
1714 #define MS_DEF_DSS_PROV_A "Microsoft Base DSS Cryptographic Provider"
1715 #if defined(__GNUC__)
1716 # define MS_DEF_DSS_PROV_W (const WCHAR []){ 'M','i','c','r','o','s','o','f','t',' ', \
1717 'B','a','s','e',' ','D','S','S',' ', \
1718 'C','r','y','p','t','o','g','r','a','p','h','i','c',' ','P','r','o','v','i','d','e','r',0 }
1719 #elif defined(_MSC_VER)
1720 # define MS_DEF_DSS_PROV_W L"Microsoft Base DSS Cryptographic Provider"
1721 #else
1722 static const WCHAR MS_DEF_DSS_PROV_W[] = { 'M','i','c','r','o','s','o','f','t',' ',
1723 'B','a','s','e',' ','D','S','S',' ',
1724 'C','r','y','p','t','o','g','r','a','p','h','i','c',' ','P','r','o','v','i','d','e','r',0 };
1725 #endif
1726 #define MS_DEF_DSS_PROV WINELIB_NAME_AW(MS_DEF_DSS_PROV_)
1727
1728 #define MS_DEF_DSS_DH_PROV_A "Microsoft Base DSS and Diffie-Hellman Cryptographic Provider"
1729 #if defined(__GNUC__)
1730 # define MS_DEF_DSS_DH_PROV_W (const WCHAR []){ 'M','i','c','r','o','s','o','f','t',' ', \
1731 'B','a','s','e',' ','D','S','S',' ','a','n','d',' ', \
1732 'D','i','f','f','i','e','-','H','e','l','l','m','a','n',' ', \
1733 'C','r','y','p','t','o','g','r','a','p','h','i','c',' ','P','r','o','v','i','d','e','r',0 }
1734 #elif defined(_MSC_VER)
1735 # define MS_DEF_DSS_DH_PROV_W L"Microsoft Base DSS and Diffie-Hellman Cryptographic Provider"
1736 #else
1737 static const WCHAR MS_DEF_DSS_DH_PROV_W[] = { 'M','i','c','r','o','s','o','f','t',' ',
1738 'B','a','s','e',' ','D','S','S',' ','a','n','d',' ',
1739 'D','i','f','f','i','e','-','H','e','l','l','m','a','n',' ',
1740 'C','r','y','p','t','o','g','r','a','p','h','i','c',' ','P','r','o','v','i','d','e','r',0 };
1741 #endif
1742 #define MS_DEF_DSS_DH_PROV WINELIB_NAME_AW(MS_DEF_DSS_DH_PROV_)
1743
1744 #define MS_ENH_DSS_DH_PROV_A "Microsoft Enhanced DSS and Diffie-Hellman Cryptographic Provider"
1745 #if defined(__GNUC__)
1746 # define MS_ENH_DSS_DH_PROV_W (const WCHAR []){ 'M','i','c','r','o','s','o','f','t',' ', \
1747 'E','n','h','a','n','c','e','d',' ','D','S','S',' ','a','n','d',' ', \
1748 'D','i','f','f','i','e','-','H','e','l','l','m','a','n',' ', \
1749 'C','r','y','p','t','o','g','r','a','p','h','i','c',' ','P','r','o','v','i','d','e','r',0 }
1750 #elif defined(_MSC_VER)
1751 # define MS_ENH_DSS_DH_PROV_W L"Microsoft Enhanced DSS and Diffie-Hellman Cryptographic Provider"
1752 #else
1753 static const WCHAR MS_ENH_DSS_DH_PROV_W[] = { 'M','i','c','r','o','s','o','f','t',' ',
1754 'E','n','h','a','n','c','e','d',' ','D','S','S',' ','a','n','d',' ',
1755 'D','i','f','f','i','e','-','H','e','l','l','m','a','n',' ',
1756 'C','r','y','p','t','o','g','r','a','p','h','i','c',' ','P','r','o','v','i','d','e','r',0 };
1757 #endif
1758 #define MS_ENH_DSS_DH_PROV WINELIB_NAME_AW(MS_ENH_DSS_DH_PROV_)
1759
1760 #define MS_DEF_DH_SCHANNEL_PROV_A "Microsoft DH SChannel Cryptographic Provider"
1761 #if defined(__GNUC__)
1762 # define MS_DEF_DH_SCHANNEL_PROV_W (const WCHAR []){ 'M','i','c','r','o','s','o','f','t',' ', \
1763 'D','H',' ','S','C','h','a','n','n','e','l',' ', \
1764 'C','r','y','p','t','o','g','r','a','p','h','i','c',' ','P','r','o','v','i','d','e','r',0 }
1765 #elif defined(_MSC_VER)
1766 # define MS_DEF_DH_SCHANNEL_PROV_W L"Microsoft DH SChannel Cryptographic Provider"
1767 #else
1768 static const WCHAR MS_DEF_DH_SCHANNEL_PROV_W[] = { 'M','i','c','r','o','s','o','f','t',' ',
1769 'D','H',' ','S','C','h','a','n','n','e','l',' ',
1770 'C','r','y','p','t','o','g','r','a','p','h','i','c',' ','P','r','o','v','i','d','e','r',0 };
1771 #endif
1772 #define MS_DEF_DH_SCHANNEL_PROV WINELIB_NAME_AW(MS_DEF_DH_SCHANNEL_PROV_)
1773
1774 #define MS_SCARD_PROV_A "Microsoft Base Smart Card Cryptographic Provider"
1775 #if defined(__GNUC__)
1776 # define MS_SCARD_PROV_W (const WCHAR []){ 'M','i','c','r','o','s','o','f','t',' ', \
1777 'B','a','s','e',' ','S','m','a','r','t',' ','C','a','r','d',' ', \
1778 'C','r','y','p','t','o','g','r','a','p','h','i','c',' ','P','r','o','v','i','d','e','r',0 }
1779 #elif defined(_MSC_VER)
1780 # define MS_SCARD_PROV_W L"Microsoft Base Smart Card Cryptographic Provider"
1781 #else
1782 static const WCHAR MS_SCARD_PROV_W[] = { 'M','i','c','r','o','s','o','f','t',' ',
1783 'B','a','s','e',' ','S','m','a','r','t',' ','C','a','r','d',' ',
1784 'C','r','y','p','t','o','g','r','a','p','h','i','c',' ','P','r','o','v','i','d','e','r',0 };
1785 #endif
1786 #define MS_SCARD_PROV WINELIB_NAME_AW(MS_SCARD_PROV_)
1787
1788 #define MS_ENH_RSA_AES_PROV_A "Microsoft Enhanced RSA and AES Cryptographic Provider"
1789 #if defined(__GNUC__)
1790 # define MS_ENH_RSA_AES_PROV_W (const WCHAR []){ 'M','i','c','r','o','s','o','f','t',' ', \
1791 'E','n','h','a','n','c','e','d',' ','R','S','A',' ','a','n','d',' ','A','E','S',' ',\
1792 'C','r','y','p','t','o','g','r','a','p','h','i','c',' ','P','r','o','v','i','d','e','r',0 }
1793 #elif defined(_MSC_VER)
1794 # define MS_ENH_RSA_AES_PROV_W L"Microsoft Enhanced RSA and AES Cryptographic Provider"
1795 #else
1796 static const WCHAR MS_ENH_RSA_AES_PROV_W[] = { 'M','i','c','r','o','s','o','f','t',' ',
1797 'E','n','h','a','n','c','e','d',' ','R','S','A',' ','a','n','d',' ','A','E','S',' ',
1798 'C','r','y','p','t','o','g','r','a','p','h','i','c',' ','P','r','o','v','i','d','e','r',0 };
1799 #endif
1800 #define MS_ENH_RSA_AES_PROV WINELIB_NAME_AW(MS_ENH_RSA_AES_PROV_)
1801
1802 /* Key Specs*/
1803 #define AT_KEYEXCHANGE 1
1804 #define AT_SIGNATURE 2
1805
1806 /* Provider Types */
1807 #define PROV_RSA_FULL 1
1808 #define PROV_RSA_SIG 2
1809 #define PROV_DSS 3
1810 #define PROV_FORTEZZA 4
1811 #define PROV_MS_EXCHANGE 5
1812 #define PROV_SSL 6
1813 #define PROV_RSA_SCHANNEL 12
1814 #define PROV_DSS_DH 13
1815 #define PROV_EC_ECDSA_SIG 14
1816 #define PROV_EC_ECNRA_SIG 15
1817 #define PROV_EC_ECDSA_FULL 16
1818 #define PROV_EC_ECNRA_FULL 17
1819 #define PROV_DH_SCHANNEL 18
1820 #define PROV_SPYRUS_LYNKS 20
1821 #define PROV_RNG 21
1822 #define PROV_INTEL_SEC 22
1823 #define PROV_REPLACE_OWF 23
1824 #define PROV_RSA_AES 24
1825
1826 /* FLAGS Section */
1827
1828 #define CRYPT_FIRST 1
1829 #define CRYPT_NEXT 2
1830
1831 #define CRYPT_IMPL_HARDWARE 1
1832 #define CRYPT_IMPL_SOFTWARE 2
1833 #define CRYPT_IMPL_MIXED 3
1834 #define CRYPT_IMPL_UNKNOWN 4
1835
1836 /* CryptAcquireContext */
1837 #define CRYPT_VERIFYCONTEXT 0xF0000000
1838 #define CRYPT_NEWKEYSET 0x00000008
1839 #define CRYPT_DELETEKEYSET 0x00000010
1840 #define CRYPT_MACHINE_KEYSET 0x00000020
1841 #define CRYPT_SILENT 0x00000040
1842
1843 /* Crypt{Get|Set}Provider */
1844 #define CRYPT_MACHINE_DEFAULT 0x00000001
1845 #define CRYPT_USER_DEFAULT 0x00000002
1846 #define CRYPT_DELETE_DEFAULT 0x00000004
1847
1848 /* Crypt{Get/Set}ProvParam */
1849 #define PP_CLIENT_HWND 1
1850 #define PP_ENUMALGS 1
1851 #define PP_ENUMCONTAINERS 2
1852 #define PP_IMPTYPE 3
1853 #define PP_NAME 4
1854 #define PP_VERSION 5
1855 #define PP_CONTAINER 6
1856 #define PP_CHANGE_PASSWORD 7
1857 #define PP_KEYSET_SEC_DESCR 8
1858 #define PP_KEY_TYPE_SUBTYPE 10
1859 #define PP_CONTEXT_INFO 11
1860 #define PP_KEYEXCHANGE_KEYSIZE 12
1861 #define PP_SIGNATURE_KEYSIZE 13
1862 #define PP_KEYEXCHANGE_ALG 14
1863 #define PP_SIGNATURE_ALG 15
1864 #define PP_PROVTYPE 16
1865 #define PP_KEYSTORAGE 17
1866 #define PP_SYM_KEYSIZE 19
1867 #define PP_SESSION_KEYSIZE 20
1868 #define PP_UI_PROMPT 21
1869 #define PP_ENUMALGS_EX 22
1870 #define PP_DELETEKEY 24
1871 #define PP_ENUMMANDROOTS 25
1872 #define PP_ENUMELECTROOTS 26
1873 #define PP_KEYSET_TYPE 27
1874 #define PP_ADMIN_PIN 31
1875 #define PP_KEYEXCHANGE_PIN 32
1876 #define PP_SIGNATURE_PIN 33
1877 #define PP_SIG_KEYSIZE_INC 34
1878 #define PP_KEYX_KEYSIZE_INC 35
1879 #define PP_UNIQUE_CONTAINER 36
1880 #define PP_SGC_INFO 37
1881 #define PP_USE_HARDWARE_RNG 38
1882 #define PP_KEYSPEC 39
1883 #define PP_ENUMEX_SIGNING_PROT 40
1884 #define PP_CRYPT_COUNT_KEY_USE 41
1885 #define PP_USER_CERTSTORE 42
1886 #define PP_SMARTCARD_READER 43
1887 #define PP_SMARTCARD_GUID 45
1888 #define PP_ROOT_CERTSTORE 46
1889
1890 /* Values returned by CryptGetProvParam of PP_KEYSTORAGE */
1891 #define CRYPT_SEC_DESCR 0x00000001
1892 #define CRYPT_PSTORE 0x00000002
1893 #define CRYPT_UI_PROMPT 0x00000004
1894
1895 /* Crypt{Get/Set}KeyParam */
1896 #define KP_IV 1
1897 #define KP_SALT 2
1898 #define KP_PADDING 3
1899 #define KP_MODE 4
1900 #define KP_MODE_BITS 5
1901 #define KP_PERMISSIONS 6
1902 #define KP_ALGID 7
1903 #define KP_BLOCKLEN 8
1904 #define KP_KEYLEN 9
1905 #define KP_SALT_EX 10
1906 #define KP_P 11
1907 #define KP_G 12
1908 #define KP_Q 13
1909 #define KP_X 14
1910 #define KP_Y 15
1911 #define KP_RA 16
1912 #define KP_RB 17
1913 #define KP_INFO 18
1914 #define KP_EFFECTIVE_KEYLEN 19
1915 #define KP_SCHANNEL_ALG 20
1916 #define KP_CLIENT_RANDOM 21
1917 #define KP_SERVER_RANDOM 22
1918 #define KP_RP 23
1919 #define KP_PRECOMP_MD5 24
1920 #define KP_PRECOMP_SHA 25
1921 #define KP_CERTIFICATE 26
1922 #define KP_CLEAR_KEY 27
1923 #define KP_PUB_EX_LEN 28
1924 #define KP_PUB_EX_VAL 29
1925 #define KP_KEYVAL 30
1926 #define KP_ADMIN_PIN 31
1927 #define KP_KEYEXCHANGE_PIN 32
1928 #define KP_SIGNATURE_PIN 33
1929 #define KP_PREHASH 34
1930 #define KP_ROUNDS 35
1931 #define KP_OAEP_PARAMS 36
1932 #define KP_CMS_KEY_INFO 37
1933 #define KP_CMS_DH_KEY_INFO 38
1934 #define KP_PUB_PARAMS 39
1935 #define KP_VERIFY_PARAMS 40
1936 #define KP_HIGHEST_VERSION 41
1937 #define KP_GET_USE_COUNT 42
1938
1939 /* Values for KP_PADDING */
1940 #define PKCS5_PADDING 1
1941 #define RANDOM_PADDING 2
1942 #define ZERO_PADDING 3
1943
1944 /* CryptSignHash/CryptVerifySignature */
1945 #define CRYPT_NOHASHOID 0x00000001
1946 #define CRYPT_TYPE2_FORMAT 0x00000002
1947 #define CRYPT_X931_FORMAT 0x00000004
1948
1949 /* Crypt{Get,Set}HashParam */
1950 #define HP_ALGID 0x0001
1951 #define HP_HASHVAL 0x0002
1952 #define HP_HASHSIZE 0x0004
1953 #define HP_HMAC_INFO 0x0005
1954 #define HP_TLS1PRF_LABEL 0x0006
1955 #define HP_TLS1PRF_SEED 0x0007
1956
1957 /* Crypt{Get,Set}KeyParam */
1958 #define CRYPT_MODE_CBC 1
1959 #define CRYPT_MODE_ECB 2
1960 #define CRYPT_MODE_OFB 3
1961 #define CRYPT_MODE_CFB 4
1962
1963 #define CRYPT_ENCRYPT 0x0001
1964 #define CRYPT_DECRYPT 0x0002
1965 #define CRYPT_EXPORT 0x0004
1966 #define CRYPT_READ 0x0008
1967 #define CRYPT_WRITE 0x0010
1968 #define CRYPT_MAC 0x0020
1969 #define CRYPT_EXPORT_KEY 0x0040
1970 #define CRYPT_IMPORT_KEY 0x0080
1971 #define CRYPT_ARCHIVE 0x0100
1972
1973 /* Crypt*Key */
1974 #define CRYPT_EXPORTABLE 0x00000001
1975 #define CRYPT_USER_PROTECTED 0x00000002
1976 #define CRYPT_CREATE_SALT 0x00000004
1977 #define CRYPT_UPDATE_KEY 0x00000008
1978 #define CRYPT_NO_SALT 0x00000010
1979 #define CRYPT_PREGEN 0x00000040
1980 #define CRYPT_SERVER 0x00000400
1981 #define CRYPT_ARCHIVABLE 0x00004000
1982
1983 /* CryptExportKey */
1984 #define CRYPT_SSL2_FALLBACK 0x00000002
1985 #define CRYPT_DESTROYKEY 0x00000004
1986 #define CRYPT_OAEP 0x00000040
1987
1988 /* CryptHashSessionKey */
1989 #define CRYPT_LITTLE_ENDIAN 0x00000001
1990
1991 /* Crypt{Protect,Unprotect}Data PROMPTSTRUCT flags */
1992 #define CRYPTPROTECT_PROMPT_ON_PROTECT 0x0001
1993 #define CRYPTPROTECT_PROMPT_ON_UNPROTECT 0x0002
1994 /* Crypt{Protect,Unprotect}Data flags */
1995 #define CRYPTPROTECT_UI_FORBIDDEN 0x0001
1996 #define CRYPTPROTECT_LOCAL_MACHINE 0x0004
1997 #define CRYPTPROTECT_AUDIT 0x0010
1998 #define CRYPTPROTECT_VERIFY_PROTECTION 0x0040
1999
2000 /* Blob Types */
2001 #define SIMPLEBLOB 0x1
2002 #define PUBLICKEYBLOB 0x6
2003 #define PRIVATEKEYBLOB 0x7
2004 #define PLAINTEXTKEYBLOB 0x8
2005 #define OPAQUEKEYBLOB 0x9
2006 #define PUBLICKEYBLOBEX 0xA
2007 #define SYMMETRICWRAPKEYBLOB 0xB
2008
2009 #define CUR_BLOB_VERSION 2
2010
2011 /* cert store provider types */
2012 #define CERT_STORE_PROV_MSG ((LPCSTR)1)
2013 #define CERT_STORE_PROV_MEMORY ((LPCSTR)2)
2014 #define CERT_STORE_PROV_FILE ((LPCSTR)3)
2015 #define CERT_STORE_PROV_REG ((LPCSTR)4)
2016 #define CERT_STORE_PROV_PKCS7 ((LPCSTR)5)
2017 #define CERT_STORE_PROV_SERIALIZED ((LPCSTR)6)
2018 #define CERT_STORE_PROV_FILENAME_A ((LPCSTR)7)
2019 #define CERT_STORE_PROV_FILENAME_W ((LPCSTR)8)
2020 #define CERT_STORE_PROV_SYSTEM_A ((LPCSTR)9)
2021 #define CERT_STORE_PROV_SYSTEM_W ((LPCSTR)10)
2022 #define CERT_STORE_PROV_SYSTEM CERT_STORE_PROV_SYSTEM_W
2023 #define CERT_STORE_PROV_COLLECTION ((LPCSTR)11)
2024 #define CERT_STORE_PROV_SYSTEM_REGISTRY_A ((LPCSTR)12)
2025 #define CERT_STORE_PROV_SYSTEM_REGISTRY_W ((LPCSTR)13)
2026 #define CERT_STORE_PROV_SYSTEM_REGISTRY CERT_STORE_PROV_SYSTEM_REGISTRY_W
2027 #define CERT_STORE_PROV_PHYSICAL_W ((LPCSTR)14)
2028 #define CERT_STORE_PROV_PHYSICAL CERT_STORE_PROV_PHYSICAL_W
2029 #define CERT_STORE_PROV_SMART_CARD_W ((LPCSTR)15)
2030 #define CERT_STORE_PROV_SMART_CARD CERT_STORE_PROV_SMART_CARD_W
2031 #define CERT_STORE_PROV_LDAP_W ((LPCSTR)16)
2032 #define CERT_STORE_PROV_LDAP CERT_STORE_PROV_LDAP_W
2033
2034 #define sz_CERT_STORE_PROV_MEMORY "Memory"
2035 #define sz_CERT_STORE_PROV_FILENAME_W "File"
2036 #define sz_CERT_STORE_PROV_FILENAME sz_CERT_STORE_PROV_FILENAME_W
2037 #define sz_CERT_STORE_PROV_SYSTEM_W "System"
2038 #define sz_CERT_STORE_PROV_SYSTEM sz_CERT_STORE_PROV_SYSTEM_W
2039 #define sz_CERT_STORE_PROV_PKCS7 "PKCS7"
2040 #define sz_CERT_STORE_PROV_SERIALIZED "Serialized"
2041 #define sz_CERT_STORE_PROV_COLLECTION "Collection"
2042 #define sz_CERT_STORE_PROV_SYSTEM_REGISTRY_W "SystemRegistry"
2043 #define sz_CERT_STORE_PROV_SYSTEM_REGISTRY sz_CERT_STORE_PROV_SYSTEM_REGISTRY_W
2044 #define sz_CERT_STORE_PROV_PHYSICAL_W "Physical"
2045 #define sz_CERT_STORE_PROV_PHYSICAL sz_CERT_STORE_PROV_PHYSICAL_W
2046 #define sz_CERT_STORE_PROV_SMART_CARD_W "SmartCard"
2047 #define sz_CERT_STORE_PROV_SMART_CARD sz_CERT_STORE_PROV_SMART_CARD_W
2048 #define sz_CERT_STORE_PROV_LDAP_W "Ldap"
2049 #define sz_CERT_STORE_PROV_LDAP sz_CERT_STORE_PROV_LDAP_W
2050
2051 /* types for CertOpenStore dwEncodingType */
2052 #define CERT_ENCODING_TYPE_MASK 0x0000ffff
2053 #define CMSG_ENCODING_TYPE_MASK 0xffff0000
2054 #define GET_CERT_ENCODING_TYPE(x) ((x) & CERT_ENCODING_TYPE_MASK)
2055 #define GET_CMSG_ENCODING_TYPE(x) ((x) & CMSG_ENCODING_TYPE_MASK)
2056
2057 #define CRYPT_ASN_ENCODING 0x00000001
2058 #define CRYPT_NDR_ENCODING 0x00000002
2059 #define X509_ASN_ENCODING 0x00000001
2060 #define X509_NDR_ENCODING 0x00000002
2061 #define PKCS_7_ASN_ENCODING 0x00010000
2062 #define PKCS_7_NDR_ENCODING 0x00020000
2063
2064 /* system store locations */
2065 #define CERT_SYSTEM_STORE_LOCATION_MASK 0x00ff0000
2066 #define CERT_SYSTEM_STORE_LOCATION_SHIFT 16
2067
2068 /* system store location ids */
2069 /* hkcu */
2070 #define CERT_SYSTEM_STORE_CURRENT_USER_ID 1
2071 /* hklm */
2072 #define CERT_SYSTEM_STORE_LOCAL_MACHINE_ID 2
2073 /* hklm\Software\Microsoft\Cryptography\Services */
2074 #define CERT_SYSTEM_STORE_CURRENT_SERVICE_ID 4
2075 #define CERT_SYSTEM_STORE_SERVICES_ID 5
2076 /* HKEY_USERS */
2077 #define CERT_SYSTEM_STORE_USERS_ID 6
2078 /* hkcu\Software\Policies\Microsoft\SystemCertificates */
2079 #define CERT_SYSTEM_STORE_CURRENT_USER_GROUP_POLICY_ID 7
2080 /* hklm\Software\Policies\Microsoft\SystemCertificates */
2081 #define CERT_SYSTEM_STORE_LOCAL_MACHINE_GROUP_POLICY_ID 8
2082 /* hklm\Software\Microsoft\EnterpriseCertificates */
2083 #define CERT_SYSTEM_STORE_LOCAL_MACHINE_ENTERPRISE_ID 9
2084
2085 /* system store location values */
2086 #define CERT_SYSTEM_STORE_CURRENT_USER \
2087 (CERT_SYSTEM_STORE_CURRENT_USER_ID << CERT_SYSTEM_STORE_LOCATION_SHIFT)
2088 #define CERT_SYSTEM_STORE_LOCAL_MACHINE \
2089 (CERT_SYSTEM_STORE_LOCAL_MACHINE_ID << CERT_SYSTEM_STORE_LOCATION_SHIFT)
2090 #define CERT_SYSTEM_STORE_CURRENT_SERVICE \
2091 (CERT_SYSTEM_STORE_CURRENT_SERVICE_ID << CERT_SYSTEM_STORE_LOCATION_SHIFT)
2092 #define CERT_SYSTEM_STORE_SERVICES \
2093 (CERT_SYSTEM_STORE_SERVICES_ID << CERT_SYSTEM_STORE_LOCATION_SHIFT)
2094 #define CERT_SYSTEM_STORE_USERS \
2095 (CERT_SYSTEM_STORE_USERS_ID << CERT_SYSTEM_STORE_LOCATION_SHIFT)
2096 #define CERT_SYSTEM_STORE_CURRENT_USER_GROUP_POLICY \
2097 (CERT_SYSTEM_STORE_CURRENT_USER_GROUP_POLICY_ID << CERT_SYSTEM_STORE_LOCATION_SHIFT)
2098 #define CERT_SYSTEM_STORE_LOCAL_MACHINE_GROUP_POLICY \
2099 (CERT_SYSTEM_STORE_LOCAL_MACHINE_GROUP_POLICY_ID << CERT_SYSTEM_STORE_LOCATION_SHIFT)
2100 #define CERT_SYSTEM_STORE_LOCAL_MACHINE_ENTERPRISE \
2101 (CERT_SYSTEM_STORE_LOCAL_MACHINE_ENTERPRISE_ID << CERT_SYSTEM_STORE_LOCATION_SHIFT)
2102
2103 #if defined(__GNUC__)
2104 #define CERT_LOCAL_MACHINE_SYSTEM_STORE_REGPATH (const WCHAR[])\
2105 {'S','o','f','t','w','a','r','e','\\','M','i','c','r','o','s','o','f','t',\
2106 '\\','S','y','s','t','e','m','C','e','r','t','i','f','i','c','a','t','e','s',\
2107 0 }
2108 #define CERT_GROUP_POLICY_SYSTEM_STORE_REGPATH (const WCHAR[])\
2109 {'S','o','f','t','w','a','r','e','\\','P','o','l','i','c','i','e','s','\\',\
2110 'M','i','c','r','o','s','o','f','t','\\','S','y','s','t','e','m','C','e','r',\
2111 't','i','f','i','c','a','t','e','s',0 }
2112 #elif defined(_MSC_VER)
2113 #define CERT_LOCAL_MACHINE_SYSTEM_STORE_REGPATH \
2114 L"Software\\Microsoft\\SystemCertificates"
2115 #define CERT_GROUP_POLICY_SYSTEM_STORE_REGPATH \
2116 L"Software\\Policies\\Microsoft\\SystemCertificates"
2117 #else
2118 static const WCHAR CERT_LOCAL_MACHINE_SYSTEM_STORE_REGPATH[] =
2119 {'S','o','f','t','w','a','r','e','\\','M','i','c','r','o','s','o','f','t','\\',
2120 'S','y','s','t','e','m','C','e','r','t','i','f','i','c','a','t','e','s',0 };
2121 static const WCHAR CERT_GROUP_POLICY_SYSTEM_STORE_REGPATH[] =
2122 {'S','o','f','t','w','a','r','e','\\','P','o','l','i','c','i','e','s','\\',
2123 'M','i','c','r','o','s','o','f','t','\\','S','y','s','t','e','m','C','e','r',
2124 't','i','f','i','c','a','t','e','s',0 };
2125 #endif
2126
2127 #if defined(__GNUC__)
2128 #define CERT_EFSBLOB_REGPATH (const WCHAR[])\
2129 {'S','o','f','t','w','a','r','e','\\','P','o','l','i','c','i','e','s','\\',\
2130 'M','i','c','r','o','s','o','f','t','\\','S','y','s','t','e','m','C','e','r',\
2131 't','i','f','i','c','a','t','e','s','\\','E','F','S',0 }
2132 #define CERT_EFSBLOB_VALUE_NAME (const WCHAR[]) {'E','F','S','B','l','o','b',0 }
2133 #elif defined(_MSC_VER)
2134 #define CERT_EFSBLOB_REGPATH CERT_GROUP_POLICY_SYSTEM_STORE_REGPATH L"\\EFS"
2135 #define CERT_EFSBLOB_VALUE_NAME L"EFSBlob"
2136 #else
2137 static const WCHAR CERT_EFSBLOB_REGPATH[] =
2138 {'S','o','f','t','w','a','r','e','\\','P','o','l','i','c','i','e','s','\\',
2139 'M','i','c','r','o','s','o','f','t','\\','S','y','s','t','e','m','C','e','r',
2140 't','i','f','i','c','a','t','e','s','\\','E','F','S',0 };
2141 static const CERT_EFSBLOB_VALUE_NAME[] = { 'E','F','S','B','l','o','b',0 };
2142 #endif
2143
2144 #if defined(__GNUC__)
2145 #define CERT_PROT_ROOT_FLAGS_REGPATH (const WCHAR[])\
2146 {'\\','R','o','o','t','\\','P','r','o','t','e','c','t','e','d','R','o','o','t',\
2147 's',0 }
2148 #define CERT_PROT_ROOT_FLAGS_VALUE_NAME (const WCHAR[])\
2149 {'F','l','a','g','s',0 }
2150 #elif defined(_MSC_VER)
2151 #define CERT_PROT_ROOT_FLAGS_REGPATH L"\\Root\\ProtectedRoots"
2152 #define CERT_PROT_ROOT_FLAGS_VALUE_NAME L"Flags"
2153 #else
2154 static const WCHAR CERT_PROT_ROOT_FLAGS_REGPATH[] =
2155 { '\\','R','o','o','t','\\','P','r','o','t','e','c','t','e','d','R','o','o',
2156 't','s',0 };
2157 static const WCHAR CERT_PROT_ROOT_FLAGS_VALUE_NAME[] = {'F','l','a','g','s',0 };
2158 #endif
2159
2160 #define CERT_PROT_ROOT_DISABLE_CURRENT_USER_FLAG 0x01
2161 #define CERT_PROT_ROOT_INHIBIT_ADD_AT_INIT_FLAG 0x02
2162 #define CERT_PROT_ROOT_INHIBIT_PURGE_LM_FLAG 0x04
2163 #define CERT_PROT_ROOT_DISABLE_LM_AUTH_FLAG 0x08
2164 #define CERT_PROT_ROOT_DISABLE_NT_AUTH_REQUIRED_FLAG 0x10
2165 #define CERT_PROT_ROOT_DISABLE_NOT_DEFINED_NAME_CONSTRAINT_FLAG 0x20
2166
2167 #if defined(__GNUC__)
2168 #define CERT_TRUST_PUB_SAFER_GROUP_POLICY_REGPATH (const WCHAR[])\
2169 {'S','o','f','t','w','a','r','e','\\','P','o','l','i','c','i','e','s','\\',\
2170 'M','i','c','r','o','s','o','f','t','\\','S','y','s','t','e','m','C','e','r',\
2171 't','i','f','i','c','a','t','e','s','\\','T','r','u','s','t','e','d',\
2172 'P','u','b','l','i','s','h','e','r','\\','S','a','f','e','r',0 }
2173 #elif defined(_MSC_VER)
2174 #define CERT_TRUST_PUB_SAFER_GROUP_POLICY_REGPATH \
2175 CERT_GROUP_POLICY_SYSTEM_STORE_REGPATH L"\\TrustedPublisher\\Safer"
2176 #else
2177 static const WCHAR CERT_TRUST_PUB_SAFER_GROUP_POLICY_REGPATH[] =
2178 {'S','o','f','t','w','a','r','e','\\','P','o','l','i','c','i','e','s','\\',
2179 'M','i','c','r','o','s','o','f','t','\\','S','y','s','t','e','m','C','e','r',
2180 't','i','f','i','c','a','t','e','s','\\','T','r','u','s','t','e','d',
2181 'P','u','b','l','i','s','h','e','r','\\','S','a','f','e','r',0 };
2182 #endif
2183
2184 #if defined(__GNUC__)
2185 #define CERT_TRUST_PUB_SAFER_LOCAL_MACHINE_REGPATH (const WCHAR[])\
2186 {'S','o','f','t','w','a','r','e','\\','M','i','c','r','o','s','o','f','t','\\',\
2187 'S','y','s','t','e','m','C','e','r','t','i','f','i','c','a','t','e','s','\\',\
2188 'T','r','u','s','t','e','d','P','u','b','l','i','s','h','e','r','\\',\
2189 'S','a','f','e','r',0 }
2190 #define CERT_TRUST_PUB_AUTHENTICODE_FLAGS_VALUE_NAME (const WCHAR[])\
2191 {'A','u','t','h','e','n','t','i','c','o','d','e','F','l','a','g','s',0 };
2192 #elif defined(_MSC_VER)
2193 #define CERT_TRUST_PUB_SAFER_LOCAL_MACHINE_REGPATH \
2194 CERT_LOCAL_MACHINE_SYSTEM_STORE_REGPATH L"\\TrustedPublisher\\Safer"
2195 #define CERT_TRUST_PUB_AUTHENTICODE_FLAGS_VALUE_NAME L"AuthenticodeFlags"
2196 #else
2197 static const WCHAR CERT_TRUST_PUB_SAFER_LOCAL_MACHINE_REGPATH[] =
2198 {'S','o','f','t','w','a','r','e','\\','M','i','c','r','o','s','o','f','t','\\',
2199 'S','y','s','t','e','m','C','e','r','t','i','f','i','c','a','t','e','s','\\',
2200 'T','r','u','s','t','e','d','P','u','b','l','i','s','h','e','r','\\',
2201 'S','a','f','e','r',0 };
2202 static const WCHAR CERT_TRUST_PUB_AUTHENTICODE_FLAGS_VALUE_NAME[] =
2203 { 'A','u','t','h','e','n','t','i','c','o','d','e','F','l','a','g','s',0 };
2204 #endif
2205
2206 #define CERT_TRUST_PUB_ALLOW_END_USER_TRUST 0x00000000
2207 #define CERT_TRUST_PUB_ALLOW_MACHINE_ADMIN_TRUST 0x00000001
2208 #define CERT_TRUST_PUB_ALLOW_ENTERPRISE_ADMIN_TRUST 0x00000002
2209 #define CERT_TRUST_PUB_ALLOW_TRUST_MASK 0x00000003
2210 #define CERT_TRUST_PUB_CHECK_PUBLISHER_REV_FLAG 0x00000100
2211 #define CERT_TRUST_PUB_CHECK_TIMESTAMP_REV_FLAG 0x00000200
2212
2213 /* flags for CertOpenStore dwFlags */
2214 #define CERT_STORE_NO_CRYPT_RELEASE_FLAG 0x00000001
2215 #define CERT_STORE_SET_LOCALIZED_NAME_FLAG 0x00000002
2216 #define CERT_STORE_DEFER_CLOSE_UNTIL_LAST_FREE_FLAG 0x00000004
2217 #define CERT_STORE_DELETE_FLAG 0x00000010
2218 #define CERT_STORE_UNSAFE_PHYSICAL_FLAG 0x00000020
2219 #define CERT_STORE_SHARE_STORE_FLAG 0x00000040
2220 #define CERT_STORE_SHARE_CONTEXT_FLAG 0x00000080
2221 #define CERT_STORE_MANIFOLD_FLAG 0x00000100
2222 #define CERT_STORE_ENUM_ARCHIVED_FLAG 0x00000200
2223 #define CERT_STORE_UPDATE_KEYID_FLAG 0x00000400
2224 #define CERT_STORE_BACKUP_RESTORE_FLAG 0x00000800
2225 #define CERT_STORE_MAXIMUM_ALLOWED_FLAG 0x00001000
2226 #define CERT_STORE_CREATE_NEW_FLAG 0x00002000
2227 #define CERT_STORE_OPEN_EXISTING_FLAG 0x00004000
2228 #define CERT_STORE_READONLY_FLAG 0x00008000
2229
2230 #define CERT_REGISTRY_STORE_REMOTE_FLAG 0x00010000
2231 #define CERT_REGISTRY_STORE_SERIALIZED_FLAG 0x00020000
2232 #define CERT_REGISTRY_STORE_ROAMING_FLAG 0x00040000
2233 #define CERT_REGISTRY_STORE_MY_IE_DIRTY_FLAG 0x00080000
2234 #define CERT_REGISTRY_STORE_LM_GPT_FLAG 0x01000000
2235 #define CERT_REGISTRY_STORE_CLIENT_GPT_FLAG 0x80000000
2236
2237 #define CERT_FILE_STORE_COMMIT_ENABLE_FLAG 0x00010000
2238
2239 /* CertCloseStore dwFlags */
2240 #define CERT_CLOSE_STORE_FORCE_FLAG 0x00000001
2241 #define CERT_CLOSE_STORE_CHECK_FLAG 0x00000002
2242
2243 /* dwAddDisposition */
2244 #define CERT_STORE_ADD_NEW 1
2245 #define CERT_STORE_ADD_USE_EXISTING 2
2246 #define CERT_STORE_ADD_REPLACE_EXISTING 3
2247 #define CERT_STORE_ADD_ALWAYS 4
2248 #define CERT_STORE_ADD_REPLACE_EXISTING_INHERIT_PROPERTIES 5
2249 #define CERT_STORE_ADD_NEWER 6
2250 #define CERT_STORE_ADD_NEWER_INHERIT_PROPERTIES 7
2251
2252 /* Installable OID function defs */
2253 #define CRYPT_OID_OPEN_STORE_PROV_FUNC "CertDllOpenStoreProv"
2254 #define CRYPT_OID_ENCODE_OBJECT_FUNC "CryptDllEncodeObject"
2255 #define CRYPT_OID_DECODE_OBJECT_FUNC "CryptDllDecodeObject"
2256 #define CRYPT_OID_ENCODE_OBJECT_EX_FUNC "CryptDllEncodeObjectEx"
2257 #define CRYPT_OID_DECODE_OBJECT_EX_FUNC "CryptDllDecodeObjectEx"
2258 #define CRYPT_OID_CREATE_COM_OBJECT_FUNC "CryptDllCreateComObject"
2259 #define CRYPT_OID_VERIFY_REVOCATION_FUNC "CertDllVerifyRevocation"
2260 #define CRYPT_OID_VERIFY_CTL_USAGE_FUNC "CertDllVerifyCTLUsage"
2261 #define CRYPT_OID_FORMAT_OBJECT_FUNC "CryptDllFormatObject"
2262 #define CRYPT_OID_FIND_OID_INFO_FUNC "CryptDllFindOIDInfo"
2263 #define CRYPT_OID_FIND_LOCALIZED_NAME_FUNC "CryptDllFindLocalizedName"
2264 #define CRYPT_OID_EXPORT_PUBLIC_KEY_INFO_FUNC "CryptDllExportPublicKeyInfoEx"
2265 #define CRYPT_OID_IMPORT_PUBLIC_KEY_INFO_FUNC "CryptDllImportPublicKeyInfoEx"
2266 #define CRYPT_OID_EXPORT_PRIVATE_KEY_INFO_FUNC "CryptDllExportPrivateKeyInfoEx"
2267 #define CRYPT_OID_IMPORT_PRIVATE_KEY_INFO_FUNC "CryptDllImportPrivateKeyInfoEx"
2268 #define CRYPT_OID_VERIFY_CERTIFICATE_CHAIN_POLICY_FUNC \
2269 "CertDllVerifyCertificateChainPolicy"
2270 #define URL_OID_GET_OBJECT_URL_FUNC "UrlDllGetObjectUrl"
2271 #define TIME_VALID_OID_GET_OBJECT_FUNC "TimeValidDllGetObject"
2272
2273 #define CRYPT_OID_REGPATH "Software\\Microsoft\\Cryptography\\OID"
2274 #define CRYPT_OID_REG_ENCODING_TYPE_PREFIX "EncodingType "
2275 #if defined(__GNUC__)
2276 # define CRYPT_OID_REG_DLL_VALUE_NAME (const WCHAR []){ 'D','l','l',0 }
2277 # define CRYPT_OID_REG_FUNC_NAME_VALUE_NAME \
2278 (const WCHAR []){ 'F','u','n','c','N','a','m','e',0 }
2279 # define CRYPT_OID_REG_FLAGS_VALUE_NAME \
2280 (const WCHAR []){ 'C','r','y','p','t','F','l','a','g','s',0 }
2281 #elif defined(_MSC_VER)
2282 # define CRYPT_OID_REG_DLL_VALUE_NAME L"Dll"
2283 # define CRYPT_OID_REG_FUNC_NAME_VALUE_NAME L"FuncName"
2284 # define CRYPT_OID_REG_FLAGS_VALUE_NAME L"CryptFlags"
2285 #else
2286 static const WCHAR CRYPT_OID_REG_DLL_VALUE_NAME[] = { 'D','l','l',0 };
2287 static const WCHAR CRYPT_OID_REG_FUNC_NAME_VALUE_NAME[] =
2288 { 'F','u','n','c','N','a','m','e',0 };
2289 static const WCHAR CRYPT_OID_REG_FLAGS_VALUE_NAME[] =
2290 { 'C','r','y','p','t','F','l','a','g','s',0 };
2291 #endif
2292 #define CRYPT_OID_REG_FUNC_NAME_VALUE_NAME_A "FuncName"
2293 #define CRYPT_DEFAULT_OID "DEFAULT"
2294
2295 #define CRYPT_INSTALL_OID_FUNC_BEFORE_FLAG 1
2296
2297 #define CRYPT_GET_INSTALLED_OID_FUNC_FLAG 0x1
2298
2299 #define CRYPT_REGISTER_FIRST_INDEX 0
2300 #define CRYPT_REGISTER_LAST_INDEX 0xffffffff
2301
2302 /* values for CERT_STORE_PROV_INFO's dwStoreProvFlags */
2303 #define CERT_STORE_PROV_EXTERNAL_FLAG 0x1
2304 #define CERT_STORE_PROV_DELETED_FLAG 0x2
2305 #define CERT_STORE_PROV_NO_PERSIST_FLAG 0x4
2306 #define CERT_STORE_PROV_SYSTEM_STORE_FLAG 0x8
2307 #define CERT_STORE_PROV_LM_SYSTEM_STORE_FLAG 0x10
2308
2309 /* function indices */
2310 #define CERT_STORE_PROV_CLOSE_FUNC 0
2311 #define CERT_STORE_PROV_READ_CERT_FUNC 1
2312 #define CERT_STORE_PROV_WRITE_CERT_FUNC 2
2313 #define CERT_STORE_PROV_DELETE_CERT_FUNC 3
2314 #define CERT_STORE_PROV_SET_CERT_PROPERTY_FUNC 4
2315 #define CERT_STORE_PROV_READ_CRL_FUNC 5
2316 #define CERT_STORE_PROV_WRITE_CRL_FUNC 6
2317 #define CERT_STORE_PROV_DELETE_CRL_FUNC 7
2318 #define CERT_STORE_PROV_SET_CRL_PROPERTY_FUNC 8
2319 #define CERT_STORE_PROV_READ_CTL_FUNC 9
2320 #define CERT_STORE_PROV_WRITE_CTL_FUNC 10
2321 #define CERT_STORE_PROV_DELETE_CTL_FUNC 11
2322 #define CERT_STORE_PROV_SET_CTL_PROPERTY_FUNC 12
2323 #define CERT_STORE_PROV_CONTROL_FUNC 13
2324 #define CERT_STORE_PROV_FIND_CERT_FUNC 14
2325 #define CERT_STORE_PROV_FREE_FIND_CERT_FUNC 15
2326 #define CERT_STORE_PROV_GET_CERT_PROPERTY_FUNC 16
2327 #define CERT_STORE_PROV_FIND_CRL_FUNC 17
2328 #define CERT_STORE_PROV_FREE_FIND_CRL_FUNC 18
2329 #define CERT_STORE_PROV_GET_CRL_PROPERTY_FUNC 19
2330 #define CERT_STORE_PROV_FIND_CTL_FUNC 20
2331 #define CERT_STORE_PROV_FREE_FIND_CTL_FUNC 21
2332 #define CERT_STORE_PROV_GET_CTL_PROPERTY_FUNC 22
2333
2334 /* physical store dwFlags, also used by CertAddStoreToCollection as
2335 * dwUpdateFlags
2336 */
2337 #define CERT_PHYSICAL_STORE_ADD_ENABLE_FLAG 0x1
2338 #define CERT_PHYSICAL_STORE_OPEN_DISABLE_FLAG 0x2
2339 #define CERT_PHYSICAL_STORE_REMOVE_OPEN_DISABLE_FLAG 0x4
2340 #define CERT_PHYSICAL_STORE_INSERT_COMPUTER_NAME_ENABLE_FLAG 0x8
2341
2342 /* dwFlag values for CertEnumPhysicalStore callback */
2343 #define CERT_PHYSICAL_STORE_PREDEFINED_ENUM_FLAG 0x1
2344
2345 /* predefined store names */
2346 #if defined(__GNUC__)
2347 # define CERT_PHYSICAL_STORE_DEFAULT_NAME (const WCHAR[])\
2348 {'.','D','e','f','a','u','l','t','0'}
2349 # define CERT_PHYSICAL_STORE_GROUP_POLICY_NAME (const WCHAR[])\
2350 {'.','G','r','o','u','p','P','o','l','i','c','y',0}
2351 # define CERT_PHYSICAL_STORE_LOCAL_MACHINE_NAME (const WCHAR[])\
2352 {'.','L','o','c','a','l','M','a','c','h','i','n','e',0}
2353 # define CERT_PHYSICAL_STORE_DS_USER_CERTIFICATE_NAME (const WCHAR[])\
2354 {'.','U','s','e','r','C','e','r','t','i','f','i','c','a','t','e',0}
2355 # define CERT_PHYSICAL_STORE_LOCAL_MACHINE_GROUP_POLICY_NAME (const WCHAR[])\
2356 {'.','L','o','c','a','l','M','a','c','h','i','n','e','G','r','o','u','p',\
2357 'P','o','l','i','c','y',0}
2358 # define CERT_PHYSICAL_STORE_ENTERPRISE_NAME (const WCHAR[])\
2359 {'.','E','n','t','e','r','p','r','i','s','e',0}
2360 # define CERT_PHYSICAL_STORE_AUTH_ROOT_NAME (const WCHAR[])\
2361 {'.','A','u','t','h','R','o','o','t',0}
2362 #elif defined(_MSC_VER)
2363 # define CERT_PHYSICAL_STORE_DEFAULT_NAME \
2364 L".Default"
2365 # define CERT_PHYSICAL_STORE_GROUP_POLICY_NAME \
2366 L".GroupPolicy"
2367 # define CERT_PHYSICAL_STORE_LOCAL_MACHINE_NAME \
2368 L".LocalMachine"
2369 # define CERT_PHYSICAL_STORE_DS_USER_CERTIFICATE_NAME \
2370 L".UserCertificate"
2371 # define CERT_PHYSICAL_STORE_LOCAL_MACHINE_GROUP_POLICY_NAME \
2372 L".LocalMachineGroupPolicy"
2373 # define CERT_PHYSICAL_STORE_ENTERPRISE_NAME \
2374 L".Enterprise"
2375 # define CERT_PHYSICAL_STORE_AUTH_ROOT_NAME \
2376 L".AuthRoot"
2377 #else
2378 static const WCHAR CERT_PHYSICAL_STORE_DEFAULT_NAME[] =
2379 {'.','D','e','f','a','u','l','t','0'};
2380 static const WCHAR CERT_PHYSICAL_STORE_GROUP_POLICY_NAME[] =
2381 {'.','G','r','o','u','p','P','o','l','i','c','y',0};
2382 static const WCHAR CERT_PHYSICAL_STORE_LOCAL_MACHINE_NAME[] =
2383 {'.','L','o','c','a','l','M','a','c','h','i','n','e',0};
2384 static const WCHAR CERT_PHYSICAL_STORE_DS_USER_CERTIFICATE_NAME[] =
2385 {'.','U','s','e','r','C','e','r','t','i','f','i','c','a','t','e',0};
2386 static const WCHAR CERT_PHYSICAL_STORE_LOCAL_MACHINE_GROUP_POLICY_NAME[] =
2387 {'.','L','o','c','a','l','M','a','c','h','i','n','e','G','r','o','u','p',
2388 'P','o','l','i','c','y',0};
2389 static const WCHAR CERT_PHYSICAL_STORE_ENTERPRISE_NAME[] =
2390 {'.','E','n','t','e','r','p','r','i','s','e',0};
2391 static const WCHAR CERT_PHYSICAL_STORE_AUTH_ROOT_NAME[] =
2392 {'.','A','u','t','h','R','o','o','t',0};
2393 #endif
2394
2395 /* cert system store flags */
2396 #define CERT_SYSTEM_STORE_MASK 0xffff0000
2397 #define CERT_SYSTEM_STORE_RELOCATE_FLAG 0x80000000
2398
2399 /* CertFindChainInStore dwFindType types */
2400 #define CERT_CHAIN_FIND_BY_ISSUER 1
2401
2402 /* CertSaveStore dwSaveAs values */
2403 #define CERT_STORE_SAVE_AS_STORE 1
2404 #define CERT_STORE_SAVE_AS_PKCS7 2
2405 /* CertSaveStore dwSaveTo values */
2406 #define CERT_STORE_SAVE_TO_FILE 1
2407 #define CERT_STORE_SAVE_TO_MEMORY 2
2408 #define CERT_STORE_SAVE_TO_FILENAME_A 3
2409 #define CERT_STORE_SAVE_TO_FILENAME_W 4
2410 #define CERT_STORE_SAVE_TO_FILENAME CERT_STORE_SAVE_TO_FILENAME_W
2411
2412 /* CERT_INFO versions/flags */
2413 #define CERT_V1 0
2414 #define CERT_V2 1
2415 #define CERT_V3 2
2416 #define CERT_INFO_VERSION_FLAG 1
2417 #define CERT_INFO_SERIAL_NUMBER_FLAG 2
2418 #define CERT_INFO_SIGNATURE_ALGORITHM_FLAG 3
2419 #define CERT_INFO_ISSUER_FLAG 4
2420 #define CERT_INFO_NOT_BEFORE_FLAG 5
2421 #define CERT_INFO_NOT_AFTER_FLAG 6
2422 #define CERT_INFO_SUBJECT_FLAG 7
2423 #define CERT_INFO_SUBJECT_PUBLIC_KEY_INFO_FLAG 8
2424 #define CERT_INFO_ISSUER_UNIQUE_ID_FLAG 9
2425 #define CERT_INFO_SUBJECT_UNIQUE_ID_FLAG 10
2426 #define CERT_INFO_EXTENSION_FLAG 11
2427
2428 /* CERT_REQUEST_INFO versions */
2429 #define CERT_REQUEST_V1 0
2430
2431 /* CERT_KEYGEN_REQUEST_INFO versions */
2432 #define CERT_KEYGEN_REQUEST_V1 0
2433
2434 /* CRL versions */
2435 #define CRL_V1 0
2436 #define CRL_V2 1
2437
2438 /* CTL versions */
2439 #define CTL_V1 0
2440
2441 /* Certificate, CRL, CTL property IDs */
2442 #define CERT_KEY_PROV_HANDLE_PROP_ID 1
2443 #define CERT_KEY_PROV_INFO_PROP_ID 2
2444 #define CERT_SHA1_HASH_PROP_ID 3
2445 #define CERT_HASH_PROP_ID CERT_SHA1_HASH_PROP_ID
2446 #define CERT_MD5_HASH_PROP_ID 4
2447 #define CERT_KEY_CONTEXT_PROP_ID 5
2448 #define CERT_KEY_SPEC_PROP_ID 6
2449 #define CERT_IE30_RESERVED_PROP_ID 7
2450 #define CERT_PUBKEY_HASH_RESERVED_PROP_ID 8
2451 #define CERT_ENHKEY_USAGE_PROP_ID 9
2452 #define CERT_CTL_USAGE_PROP_ID CERT_ENHKEY_USAGE_PROP_ID
2453 #define CERT_NEXT_UPDATE_LOCATION_PROP_ID 10
2454 #define CERT_FRIENDLY_NAME_PROP_ID 11
2455 #define CERT_PVK_FILE_PROP_ID 12
2456 #define CERT_DESCRIPTION_PROP_ID 13
2457 #define CERT_ACCESS_STATE_PROP_ID 14
2458 #define CERT_SIGNATURE_HASH_PROP_ID 15
2459 #define CERT_SMART_CARD_DATA_PROP_ID 16
2460 #define CERT_EFS_PROP_ID 17
2461 #define CERT_FORTEZZA_DATA_PROP 18
2462 #define CERT_ARCHIVED_PROP_ID 19
2463 #define CERT_KEY_IDENTIFIER_PROP_ID 20
2464 #define CERT_AUTO_ENROLL_PROP_ID 21
2465 #define CERT_PUBKEY_ALG_PARA_PROP_ID 22
2466 #define CERT_CROSS_CERT_DIST_POINTS_PROP_ID 23
2467 #define CERT_ISSUER_PUBLIC_KEY_MD5_HASH_PROP_ID 24
2468 #define CERT_SUBJECT_PUBLIC_KEY_MD5_HASH_PROP_ID 25
2469 #define CERT_ENROLLMENT_PROP_ID 26
2470 #define CERT_DATE_STAMP_PROP_ID 27
2471 #define CERT_ISSUER_SERIAL_NUMBER_MD5_HASH_PROP_ID 28
2472 #define CERT_SUBJECT_NAME_MD5_HASH_PROP_ID 29
2473 #define CERT_EXTENDED_ERROR_INFO_PROP_ID 30
2474 /* 31 -- unused?
2475 32 -- cert prop id
2476 33 -- CRL prop id
2477 34 -- CTL prop id
2478 35 -- KeyId prop id
2479 36-63 -- reserved
2480 */
2481 #define CERT_RENEWAL_PROP_ID 64
2482 #define CERT_ARCHIVED_KEY_HASH_PROP_ID 65
2483 #define CERT_AUTO_ENROLL_RETRY_PROP_ID 66
2484 #define CERT_AIA_URL_RETRIEVED_PROP_ID 67
2485 #define CERT_AUTHORITY_INFO_ACCESS_PROP_ID 68
2486 #define CERT_BACKED_UP_PROP_ID 69
2487 #define CERT_OCSP_RESPONSE_PROP_ID 70
2488 #define CERT_REQUEST_ORIGINATOR_PROP_ID 71
2489 #define CERT_SOURCE_LOCATION_PROP_ID 72
2490 #define CERT_SOURCE_URL_PROP_ID 73
2491 #define CERT_NEW_KEY_PROP_ID 74
2492 #define CERT_OCSP_CACHE_PREFIX_PROP_ID 75
2493 #define CERT_SMART_CARD_ROOT_INFO_PROP_ID 76
2494 #define CERT_NO_AUTO_EXPIRE_CHECK_PROP_ID 77
2495 #define CERT_NCRYPT_KEY_HANDLE_PROP_ID 78
2496 #define CERT_HCRYPTPROV_OR_NCRYPT_KEY_HANDLE_PROP_ID 79
2497 #define CERT_SUBJECT_INFO_ACCESS_PROP_ID 80
2498 #define CERT_CA_OCSP_AUTHORITY_INFO_ACCESS_PROP_ID 81
2499 #define CERT_CA_DISABLE_CRL_PROP_ID 82
2500 #define CERT_ROOT_PROGRAM_CERT_POLICIES_PROP_ID 83
2501 #define CERT_ROOT_PROGRAM_NAME_CONSTRAINTS_PROP_ID 84
2502
2503 #define CERT_FIRST_RESERVED_PROP_ID 85
2504 #define CERT_LAST_RESERVED_PROP_ID 0x00007fff
2505 #define CERT_FIRST_USER_PROP_ID 0x00008000
2506 #define CERT_LAST_USER_PROP_ID 0x0000ffff
2507
2508 #define IS_CERT_HASH_PROP_ID(x) \
2509 ((x) == CERT_SHA1_HASH_PROP_ID || (x) == CERT_MD5_HASH_PROP_ID || \
2510 (x) == CERT_SIGNATURE_HASH_PROP_ID)
2511
2512 #define IS_PUBKEY_HASH_PROP_ID(x) \
2513 ((x) == CERT_ISSUER_PUBLIC_KEY_MD5_HASH_PROP_ID || \
2514 (x) == CERT_SUBJECT_PUBLIC_KEY_MD5_HASH_PROP_ID)
2515
2516 #define IS_CHAIN_HASH_PROP_ID(x) \
2517 ((x) == CERT_ISSUER_PUBLIC_KEY_MD5_HASH_PROP_ID || \
2518 (x) == CERT_SUBJECT_PUBLIC_KEY_MD5_HASH_PROP_ID || \
2519 (x) == CERT_ISSUER_SERIAL_NUMBER_MD5_HASH_PROP_ID || \
2520 (x) == CERT_SUBJECT_NAME_MD5_HASH_PROP_ID)
2521
2522 /* access state flags */
2523 #define CERT_ACCESS_STATE_WRITE_PERSIST_FLAG 0x1
2524 #define CERT_ACCESS_STATE_SYSTEM_STORE_FLAG 0x2
2525 #define CERT_ACCESS_STATE_LM_SYSTEM_STORE_FLAG 0x4
2526
2527 /* CertSetCertificateContextProperty flags */
2528 #define CERT_SET_PROPERTY_INHIBIT_PERSIST_FLAG 0x40000000
2529 #define CERT_SET_PROPERTY_IGNORE_PERSIST_ERROR_FLAG 0x80000000
2530
2531 /* CERT_RDN attribute dwValueType types */
2532 #define CERT_RDN_TYPE_MASK 0x000000ff
2533 #define CERT_RDN_ANY_TYPE 0
2534 #define CERT_RDN_ENCODED_BLOB 1
2535 #define CERT_RDN_OCTET_STRING 2
2536 #define CERT_RDN_NUMERIC_STRING 3
2537 #define CERT_RDN_PRINTABLE_STRING 4
2538 #define CERT_RDN_TELETEX_STRING 5
2539 #define CERT_RDN_T61_STRING 5
2540 #define CERT_RDN_VIDEOTEX_STRING 6
2541 #define CERT_RDN_IA5_STRING 7
2542 #define CERT_RDN_GRAPHIC_STRING 8
2543 #define CERT_RDN_VISIBLE_STRING 9
2544 #define CERT_RDN_ISO646_STRING 9
2545 #define CERT_RDN_GENERAL_STRING 10
2546 #define CERT_RDN_UNIVERSAL_STRING 11
2547 #define CERT_RDN_INT4_STRING 11
2548 #define CERT_RDN_BMP_STRING 12
2549 #define CERT_RDN_UNICODE_STRING 12
2550 #define CERT_RDN_UTF8_STRING 13
2551
2552 /* CERT_RDN attribute dwValueType flags */
2553 #define CERT_RDN_FLAGS_MASK 0xff000000
2554 #define CERT_RDN_ENABLE_T61_UNICODE_FLAG 0x80000000
2555 #define CERT_RDN_DISABLE_CHECK_TYPE_FLAG 0x4000000
2556 #define CERT_RDN_ENABLE_UTF8_UNICODE_FLAG 0x2000000
2557 #define CERT_RDN_DISABLE_IE4_UTF8_FLAG 0x0100000
2558
2559 #define IS_CERT_RDN_CHAR_STRING(x) \
2560 (((x) & CERT_RDN_TYPE_MASK) >= CERT_RDN_NUMERIC_STRING)
2561
2562 /* CertIsRDNAttrsInCertificateName flags */
2563 #define CERT_UNICODE_IS_RDN_ATTRS_FLAG 0x1
2564 #define CERT_CASE_INSENSITIVE_IS_RDN_ATTRS_FLAG 0x2
2565
2566 /* CRL reason codes */
2567 #define CRL_REASON_UNSPECIFIED 0
2568 #define CRL_REASON_KEY_COMPROMISE 1
2569 #define CRL_REASON_CA_COMPROMISE 2
2570 #define CRL_REASON_AFFILIATION_CHANGED 3
2571 #define CRL_REASON_SUPERSEDED 4
2572 #define CRL_REASON_CESSATION_OF_OPERATION 5
2573 #define CRL_REASON_CERTIFICATE_HOLD 6
2574 #define CRL_REASON_REMOVE_FROM_CRL 8
2575
2576 /* CertControlStore control types */
2577 #define CERT_STORE_CTRL_RESYNC 1
2578 #define CERT_STORE_CTRL_NOTIFY_CHANGE 2
2579 #define CERT_STORE_CTRL_COMMIT 3
2580 #define CERT_STORE_CTRL_AUTO_RESYNC 4
2581 #define CERT_STORE_CTRL_CANCEL_NOTIFY 5
2582
2583 #define CERT_STORE_CTRL_COMMIT_FORCE_FLAG 0x1
2584 #define CERT_STORE_CTRL_COMMIT_CLEAR_FLAG 0x2
2585
2586 /* cert store properties */
2587 #define CERT_STORE_LOCALIZED_NAME_PROP_ID 0x1000
2588
2589 /* CertCreateContext flags */
2590 #define CERT_CREATE_CONTEXT_NOCOPY_FLAG 0x1
2591 #define CERT_CREATE_CONTEXT_SORTED_FLAG 0x2
2592 #define CERT_CREATE_CONTEXT_NO_HCRYPTMSG_FLAG 0x4
2593 #define CERT_CREATE_CONTEXT_NO_ENTRY_FLAG 0x8
2594
2595 #define CERT_COMPARE_MASK 0xffff
2596 #define CERT_COMPARE_SHIFT 16
2597 #define CERT_COMPARE_ANY 0
2598 #define CERT_COMPARE_SHA1_HASH 1
2599 #define CERT_COMPARE_HASH CERT_COMPARE_SHA1_HASH
2600 #define CERT_COMPARE_NAME 2
2601 #define CERT_COMPARE_ATTR 3
2602 #define CERT_COMPARE_MD5_HASH 4
2603 #define CERT_COMPARE_PROPERTY 5
2604 #define CERT_COMPARE_PUBLIC_KEY 6
2605 #define CERT_COMPARE_NAME_STR_A 7
2606 #define CERT_COMPARE_NAME_STR_W 8
2607 #define CERT_COMPARE_KEY_SPEC 9
2608 #define CERT_COMPARE_ENHKEY_USAGE 10
2609 #define CERT_COMPARE_CTL_USAGE CERT_COMPARE_ENHKEY_USAGE
2610 #define CERT_COMPARE_SUBJECT_CERT 11
2611 #define CERT_COMPARE_ISSUER_OF 12
2612 #define CERT_COMPARE_EXISTING 13
2613 #define CERT_COMPARE_SIGNATURE_HASH 14
2614 #define CERT_COMPARE_KEY_IDENTIFIER 15
2615 #define CERT_COMPARE_CERT_ID 16
2616 #define CERT_COMPARE_CROSS_CERT_DIST_POINTS 17
2617 #define CERT_COMPARE_PUBKEY_MD5_HASH 18
2618
2619 /* values of dwFindType for CertFind*InStore */
2620 #define CERT_FIND_ANY \
2621 (CERT_COMPARE_ANY << CERT_COMPARE_SHIFT)
2622 #define CERT_FIND_SHA1_HASH \
2623 (CERT_COMPARE_SHA1_HASH << CERT_COMPARE_SHIFT)
2624 #define CERT_FIND_MD5_HASH \
2625 (CERT_COMPARE_MD5_HASH << CERT_COMPARE_SHIFT)
2626 #define CERT_FIND_SIGNATURE_HASH \
2627 (CERT_COMPARE_SIGNATURE_HASH << CERT_COMPARE_SHIFT)
2628 #define CERT_FIND_KEY_IDENTIFIER \
2629 (CERT_COMPARE_KEY_IDENTIFIER << CERT_COMPARE_SHIFT)
2630 #define CERT_FIND_HASH CERT_FIND_SHA1_HASH
2631 #define CERT_FIND_PROPERTY \
2632 (CERT_COMPARE_PROPERTY << CERT_COMPARE_SHIFT)
2633 #define CERT_FIND_PUBLIC_KEY \
2634 (CERT_COMPARE_PUBLIC_KEY << CERT_COMPARE_SHIFT)
2635 #define CERT_FIND_SUBJECT_NAME \
2636 (CERT_COMPARE_NAME << CERT_COMPARE_SHIFT | CERT_INFO_SUBJECT_FLAG)
2637 #define CERT_FIND_SUBJECT_ATTR \
2638 (CERT_COMPARE_ATTR << CERT_COMPARE_SHIFT | CERT_INFO_SUBJECT_FLAG)
2639 #define CERT_FIND_ISSUER_NAME \
2640 (CERT_COMPARE_NAME << CERT_COMPARE_SHIFT | CERT_INFO_ISSUER_FLAG)
2641 #define CERT_FIND_ISSUER_ATTR \
2642 (CERT_COMPARE_ATTR << CERT_COMPARE_SHIFT | CERT_INFO_ISSUER_FLAG)
2643 #define CERT_FIND_SUBJECT_STR_A \
2644 (CERT_COMPARE_NAME_STR_A << CERT_COMPARE_SHIFT | CERT_INFO_SUBJECT_FLAG)
2645 #define CERT_FIND_SUBJECT_STR_W \
2646 (CERT_COMPARE_NAME_STR_W << CERT_COMPARE_SHIFT | CERT_INFO_SUBJECT_FLAG)
2647 #define CERT_FIND_SUBJECT_STR CERT_FIND_SUBJECT_STR_W
2648 #define CERT_FIND_ISSUER_STR_A \
2649 (CERT_COMPARE_NAME_STR_A << CERT_COMPARE_SHIFT | CERT_INFO_ISSUER_FLAG)
2650 #define CERT_FIND_ISSUER_STR_W \
2651 (CERT_COMPARE_NAME_STR_W << CERT_COMPARE_SHIFT | CERT_INFO_ISSUER_FLAG)
2652 #define CERT_FIND_ISSUER_STR CERT_FIND_ISSUER_STR_W
2653 #define CERT_FIND_KEY_SPEC \
2654 (CERT_COMPARE_KEY_SPEC << CERT_COMPARE_SHIFT)
2655 #define CERT_FIND_ENHKEY_USAGE \
2656 (CERT_COMPARE_ENHKEY_USAGE << CERT_COMPARE_SHIFT)
2657 #define CERT_FIND_CTL_USAGE CERT_FIND_ENHKEY_USAGE
2658 #define CERT_FIND_SUBJECT_CERT \
2659 (CERT_COMPARE_SUBJECT_CERT << CERT_COMPARE_SHIFT)
2660 #define CERT_FIND_ISSUER_OF \
2661 (CERT_COMPARE_ISSUER_OF << CERT_COMPARE_SHIFT)
2662 #define CERT_FIND_EXISTING \
2663 (CERT_COMPARE_EXISTING << CERT_COMPARE_SHIFT)
2664 #define CERT_FIND_CERT_ID \
2665 (CERT_COMPARE_CERT_ID << CERT_COMPARE_SHIFT)
2666 #define CERT_FIND_CROSS_CERT_DIST_POINTS \
2667 (CERT_COMPARE_CROSS_CERT_DIST_POINTS << CERT_COMPARE_SHIFT)
2668 #define CERT_FIND_PUBKEY_MD5_HASH \
2669 (CERT_COMPARE_PUBKEY_MD5_HASH << CERT_COMPARE_SHIFT)
2670
2671 #define CERT_FIND_OPTIONAL_ENHKEY_USAGE_FLAG 0x1
2672 #define CERT_FIND_OPTIONAL_CTL_USAGE_FLAG 0x1
2673 #define CERT_FIND_EXT_ONLY_ENHKEY_USAGE_FLAG 0x2
2674 #define CERT_FIND_EXT_ONLY_CTL_USAGE_FLAG 0x2
2675 #define CERT_FIND_PROP_ONLY_ENHKEY_USAGE_FLAG 0x4
2676 #define CERT_FIND_PROP_ONLY_CTL_USAGE_FLAG 0x4
2677 #define CERT_FIND_NO_ENHKEY_USAGE_FLAG 0x8
2678 #define CERT_FIND_NO_CTL_USAGE_FLAG 0x8
2679 #define CERT_FIND_OR_ENHKEY_USAGE_FLAG 0x10
2680 #define CERT_FIND_OR_CTL_USAGE_FLAG 0x10
2681 #define CERT_FIND_VALID_ENHKEY_USAGE_FLAG 0x20
2682 #define CERT_FIND_VALID_CTL_USAGE_FLAG 0x20
2683
2684 #define CRL_FIND_ANY 0
2685 #define CRL_FIND_ISSUED_BY 1
2686 #define CRL_FIND_EXISTING 2
2687 #define CRL_FIND_ISSUED_FOR 3
2688
2689 #define CRL_FIND_ISSUED_BY_AKI_FLAG 0x1
2690 #define CRL_FIND_ISSUED_BY_SIGNATURE_FLAG 0x2
2691 #define CRL_FIND_ISSUED_BY_DELTA_FLAG 0x4
2692 #define CRL_FIND_ISSUED_BY_BASE_FLAG 0x8
2693
2694 typedef struct _CRL_FIND_ISSUED_FOR_PARA
2695 {
2696 PCCERT_CONTEXT pSubjectCert;
2697 PCCERT_CONTEXT pIssuerCert;
2698 } CRL_FIND_ISSUED_FOR_PARA, *PCRL_FIND_ISSUED_FOR_PARA;
2699
2700 #define CTL_FIND_ANY 0
2701 #define CTL_FIND_SHA1_HASH 1
2702 #define CTL_FIND_MD5_HASH 2
2703 #define CTL_FIND_USAGE 3
2704 #define CTL_FIND_SUBJECT 4
2705 #define CTL_FIND_EXISTING 5
2706
2707 typedef struct _CTL_FIND_USAGE_PARA
2708 {
2709 DWORD cbSize;
2710 CTL_USAGE SubjectUsage;
2711 CRYPT_DATA_BLOB ListIdentifier;
2712 PCERT_INFO pSigner;
2713 } CTL_FIND_USAGE_PARA, *PCTL_FIND_USAGE_PARA;
2714
2715 #define CTL_FIND_NO_LIST_ID_CBDATA 0xffffffff
2716 #define CTL_FIND_NO_SIGNER_PTR ((PCERT_INFO)-1)
2717 #define CTL_FIND_SAME_USAGE_FLAG 0x00000001
2718
2719 typedef struct _CTL_FIND_SUBJECT_PARA
2720 {
2721 DWORD cbSize;
2722 PCTL_FIND_USAGE_PARA pUsagePara;
2723 DWORD dwSubjectType;
2724 void *pvSubject;
2725 } CTL_FIND_SUBJECT_PARA, *PCTL_FIND_SUBJECT_PARA;
2726
2727 /* PFN_CERT_STORE_PROV_WRITE_CERT dwFlags values */
2728 #define CERT_STORE_PROV_WRITE_ADD_FLAG 0x1
2729
2730 /* CertAddSerializedElementToStore context types */
2731 #define CERT_STORE_CERTIFICATE_CONTEXT 1
2732 #define CERT_STORE_CRL_CONTEXT 2
2733 #define CERT_STORE_CTL_CONTEXT 3
2734 #define CERT_STORE_ALL_CONTEXT_FLAG ~0U
2735 #define CERT_STORE_CERTIFICATE_CONTEXT_FLAG \
2736 (1 << CERT_STORE_CERTIFICATE_CONTEXT)
2737 #define CERT_STORE_CRL_CONTEXT_FLAG (1 << CERT_STORE_CRL_CONTEXT)
2738 #define CERT_STORE_CTL_CONTEXT_FLAG (1 << CERT_STORE_CTL_CONTEXT)
2739
2740 /* CryptBinaryToString/CryptStringToBinary flags */
2741 #define CRYPT_STRING_BASE64HEADER 0x00000000
2742 #define CRYPT_STRING_BASE64 0x00000001
2743 #define CRYPT_STRING_BINARY 0x00000002
2744 #define CRYPT_STRING_BASE64REQUESTHEADER 0x00000003
2745 #define CRYPT_STRING_HEX 0x00000004
2746 #define CRYPT_STRING_HEXASCII 0x00000005
2747 #define CRYPT_STRING_BASE64_ANY 0x00000006
2748 #define CRYPT_STRING_ANY 0x00000007
2749 #define CRYPT_STRING_HEX_ANY 0x00000008
2750 #define CRYPT_STRING_BASE64X509CRLHEADER 0x00000009
2751 #define CRYPT_STRING_HEXADDR 0x0000000a
2752 #define CRYPT_STRING_HEXASCIIADDR 0x0000000b
2753 #define CRYPT_STRING_NOCRLF 0x40000000
2754 #define CRYPT_STRING_NOCR 0x80000000
2755
2756 /* OIDs */
2757 #define szOID_RSA "1.2.840.113549"
2758 #define szOID_PKCS "1.2.840.113549.1"
2759 #define szOID_RSA_HASH "1.2.840.113549.2"
2760 #define szOID_RSA_ENCRYPT "1.2.840.113549.3"
2761 #define szOID_PKCS_1 "1.2.840.113549.1.1"
2762 #define szOID_PKCS_2 "1.2.840.113549.1.2"
2763 #define szOID_PKCS_3 "1.2.840.113549.1.3"
2764 #define szOID_PKCS_4 "1.2.840.113549.1.4"
2765 #define szOID_PKCS_5 "1.2.840.113549.1.5"
2766 #define szOID_PKCS_6 "1.2.840.113549.1.6"
2767 #define szOID_PKCS_7 "1.2.840.113549.1.7"
2768 #define szOID_PKCS_8 "1.2.840.113549.1.8"
2769 #define szOID_PKCS_9 "1.2.840.113549.1.9"
2770 #define szOID_PKCS_10 "1.2.840.113549.1.10"
2771 #define szOID_PKCS_11 "1.2.840.113549.1.12"
2772 #define szOID_RSA_RSA "1.2.840.113549.1.1.1"
2773 #define CERT_RSA_PUBLIC_KEY_OBJID szOID_RSA_RSA
2774 #define CERT_DEFAULT_OID_PUBLIC_KEY_SIGN szOID_RSA_RSA
2775 #define CERT_DEFAULT_OID_PUBLIC_KEY_XCHG szOID_RSA_RSA
2776 #define szOID_RSA_MD2RSA "1.2.840.113549.1.1.2"
2777 #define szOID_RSA_MD4RSA "1.2.840.113549.1.1.3"
2778 #define szOID_RSA_MD5RSA "1.2.840.113549.1.1.4"
2779 #define szOID_RSA_SHA1RSA "1.2.840.113549.1.1.5"
2780 #define szOID_RSA_SET0AEP_RSA "1.2.840.113549.1.1.6"
2781 #define szOID_RSA_DH "1.2.840.113549.1.3.1"
2782 #define szOID_RSA_data "1.2.840.113549.1.7.1"
2783 #define szOID_RSA_signedData "1.2.840.113549.1.7.2"
2784 #define szOID_RSA_envelopedData "1.2.840.113549.1.7.3"
2785 #define szOID_RSA_signEnvData "1.2.840.113549.1.7.4"
2786 #define szOID_RSA_digestedData "1.2.840.113549.1.7.5"
2787 #define szOID_RSA_hashedData "1.2.840.113549.1.7.5"
2788 #define szOID_RSA_encryptedData "1.2.840.113549.1.7.6"
2789 #define szOID_RSA_emailAddr "1.2.840.113549.1.9.1"
2790 #define szOID_RSA_unstructName "1.2.840.113549.1.9.2"
2791 #define szOID_RSA_contentType "1.2.840.113549.1.9.3"
2792 #define szOID_RSA_messageDigest "1.2.840.113549.1.9.4"
2793 #define szOID_RSA_signingTime "1.2.840.113549.1.9.5"
2794 #define szOID_RSA_counterSign "1.2.840.113549.1.9.6"
2795 #define szOID_RSA_challengePwd "1.2.840.113549.1.9.7"
2796 #define szOID_RSA_unstructAddr "1.2.840.113549.1.9.9"
2797 #define szOID_RSA_extCertAttrs "1.2.840.113549.1.9.9"
2798 #define szOID_RSA_certExtensions "1.2.840.113549.1.9.14"
2799 #define szOID_RSA_SMIMECapabilities "1.2.840.113549.1.9.15"
2800 #define szOID_RSA_preferSignedData "1.2.840.113549.1.9.15.1"
2801 #define szOID_RSA_SMIMEalg "1.2.840.113549.1.9.16.3"
2802 #define szOID_RSA_SMIMEalgESDH "1.2.840.113549.1.9.16.3.5"
2803 #define szOID_RSA_SMIMEalgCMS3DESwrap "1.2.840.113549.1.9.16.3.6"
2804 #define szOID_RSA_SMIMEalgCMSRC2wrap "1.2.840.113549.1.9.16.3.7"
2805 #define szOID_RSA_MD2 "1.2.840.113549.2.2"
2806 #define szOID_RSA_MD4 "1.2.840.113549.2.4"
2807 #define szOID_RSA_MD5 "1.2.840.113549.2.5"
2808 #define szOID_RSA_RC2CBC "1.2.840.113549.3.2"
2809 #define szOID_RSA_RC4 "1.2.840.113549.3.4"
2810 #define szOID_RSA_DES_EDE3_CBC "1.2.840.113549.3.7"
2811 #define szOID_RSA_RC5_CBCPad "1.2.840.113549.3.9"
2812 #define szOID_ANSI_X942 "1.2.840.10046"
2813 #define szOID_ANSI_X942_DH "1.2.840.10046.2.1"
2814 #define szOID_X957 "1.2.840.10040"
2815 #define szOID_X957_DSA "1.2.840.10040.4.1"
2816 #define szOID_X957_SHA1DSA "1.2.840.10040.4.3"
2817 #define szOID_DS "2.5"
2818 #define szOID_DSALG "2.5.8"
2819 #define szOID_DSALG_CRPT "2.5.8.1"
2820 #define szOID_DSALG_HASH "2.5.8.2"
2821 #define szOID_DSALG_SIGN "2.5.8.3"
2822 #define szOID_DSALG_RSA "2.5.8.1.1"
2823 #define szOID_OIW "1.3.14"
2824 #define szOID_OIWSEC "1.3.14.3.2"
2825 #define szOID_OIWSEC_md4RSA "1.3.14.3.2.2"
2826 #define szOID_OIWSEC_md5RSA "1.3.14.3.2.3"
2827 #define szOID_OIWSEC_md4RSA2 "1.3.14.3.2.4"
2828 #define szOID_OIWSEC_desECB "1.3.14.3.2.6"
2829 #define szOID_OIWSEC_desCBC "1.3.14.3.2.7"
2830 #define szOID_OIWSEC_desOFB "1.3.14.3.2.8"
2831 #define szOID_OIWSEC_desCFB "1.3.14.3.2.9"
2832 #define szOID_OIWSEC_desMAC "1.3.14.3.2.10"
2833 #define szOID_OIWSEC_rsaSign "1.3.14.3.2.11"
2834 #define szOID_OIWSEC_dsa "1.3.14.3.2.12"
2835 #define szOID_OIWSEC_shaDSA "1.3.14.3.2.13"
2836 #define szOID_OIWSEC_mdc2RSA "1.3.14.3.2.14"
2837 #define szOID_OIWSEC_shaRSA "1.3.14.3.2.15"
2838 #define szOID_OIWSEC_dhCommMod "1.3.14.3.2.16"
2839 #define szOID_OIWSEC_desEDE "1.3.14.3.2.17"
2840 #define szOID_OIWSEC_sha "1.3.14.3.2.18"
2841 #define szOID_OIWSEC_mdc2 "1.3.14.3.2.19"
2842 #define szOID_OIWSEC_dsaComm "1.3.14.3.2.20"
2843 #define szOID_OIWSEC_dsaCommSHA "1.3.14.3.2.21"
2844 #define szOID_OIWSEC_rsaXchg "1.3.14.3.2.22"
2845 #define szOID_OIWSEC_keyHashSeal "1.3.14.3.2.23"
2846 #define szOID_OIWSEC_md2RSASign "1.3.14.3.2.24"
2847 #define szOID_OIWSEC_md5RSASign "1.3.14.3.2.25"
2848 #define szOID_OIWSEC_sha1 "1.3.14.3.2.26"
2849 #define szOID_OIWSEC_dsaSHA1 "1.3.14.3.2.27"
2850 #define szOID_OIWSEC_dsaCommSHA1 "1.3.14.3.2.28"
2851 #define szOID_OIWSEC_sha1RSASign "1.3.14.3.2.29"
2852 #define szOID_OIWDIR "1.3.14.7.2"
2853 #define szOID_OIWDIR_CRPT "1.3.14.7.2.1"
2854 #define szOID_OIWDIR_HASH "1.3.14.7.2.2"
2855 #define szOID_OIWDIR_SIGN "1.3.14.7.2.3"
2856 #define szOID_OIWDIR_md2 "1.3.14.7.2.2.1"
2857 #define szOID_OIWDIR_md2RSA "1.3.14.7.2.3.1"
2858 #define szOID_INFOSEC "2.16.840.1.101.2.1"
2859 #define szOID_INFOSEC_sdnsSignature "2.16.840.1.101.2.1.1.1"
2860 #define szOID_INFOSEC_mosaicSignature "2.16.840.1.101.2.1.1.2"
2861 #define szOID_INFOSEC_sdnsConfidentiality "2.16.840.1.101.2.1.1.3"
2862 #define szOID_INFOSEC_mosaicConfidentiality "2.16.840.1.101.2.1.1.4"
2863 #define szOID_INFOSEC_sdnsIntegrity "2.16.840.1.101.2.1.1.5"
2864 #define szOID_INFOSEC_mosaicIntegrity "2.16.840.1.101.2.1.1.6"
2865 #define szOID_INFOSEC_sdnsTokenProtection "2.16.840.1.101.2.1.1.7"
2866 #define szOID_INFOSEC_mosaicTokenProtection "2.16.840.1.101.2.1.1.8"
2867 #define szOID_INFOSEC_sdnsKeyManagement "2.16.840.1.101.2.1.1.9"
2868 #define szOID_INFOSEC_mosaicKeyManagement "2.16.840.1.101.2.1.1.10"
2869 #define szOID_INFOSEC_sdnsKMandSig "2.16.840.1.101.2.1.1.11"
2870 #define szOID_INFOSEC_mosaicKMandSig "2.16.840.1.101.2.1.1.12"
2871 #define szOID_INFOSEC_SuiteASignature "2.16.840.1.101.2.1.1.13"
2872 #define szOID_INFOSEC_SuiteAConfidentiality "2.16.840.1.101.2.1.1.14"
2873 #define szOID_INFOSEC_SuiteAIntegrity "2.16.840.1.101.2.1.1.15"
2874 #define szOID_INFOSEC_SuiteATokenProtection "2.16.840.1.101.2.1.1.16"
2875 #define szOID_INFOSEC_SuiteAKeyManagement "2.16.840.1.101.2.1.1.17"
2876 #define szOID_INFOSEC_SuiteAKMandSig "2.16.840.1.101.2.1.1.18"
2877 #define szOID_INFOSEC_mosaicUpdatedSig "2.16.840.1.101.2.1.1.19"
2878 #define szOID_INFOSEC_mosaicKMandUpdSig "2.16.840.1.101.2.1.1.20"
2879 #define szOID_INFOSEC_mosaicUpdateInteg "2.16.840.1.101.2.1.1.21"
2880 #define szOID_COMMON_NAME "2.5.4.3"
2881 #define szOID_SUR_NAME "2.5.4.4"
2882 #define szOID_DEVICE_SERIAL_NUMBER "2.5.4.5"
2883 #define szOID_COUNTRY_NAME "2.5.4.6"
2884 #define szOID_LOCALITY_NAME "2.5.4.7"
2885 #define szOID_STATE_OR_PROVINCE_NAME "2.5.4.8"
2886 #define szOID_STREET_ADDRESS "2.5.4.9"
2887 #define szOID_ORGANIZATION_NAME "2.5.4.10"
2888 #define szOID_ORGANIZATIONAL_UNIT_NAME "2.5.4.11"
2889 #define szOID_TITLE "2.5.4.12"
2890 #define szOID_DESCRIPTION "2.5.4.13"
2891 #define szOID_SEARCH_GUIDE "2.5.4.14"
2892 #define szOID_BUSINESS_CATEGORY "2.5.4.15"
2893 #define szOID_POSTAL_ADDRESS "2.5.4.16"
2894 #define szOID_POSTAL_CODE "2.5.4.17"
2895 #define szOID_POST_OFFICE_BOX "2.5.4.18"
2896 #define szOID_PHYSICAL_DELIVERY_OFFICE_NAME "2.5.4.19"
2897 #define szOID_TELEPHONE_NUMBER "2.5.4.20"
2898 #define szOID_TELEX_NUMBER "2.5.4.21"
2899 #define szOID_TELETEXT_TERMINAL_IDENTIFIER "2.5.4.22"
2900 #define szOID_FACSIMILE_TELEPHONE_NUMBER "2.5.4.23"
2901 #define szOID_X21_ADDRESS "2.5.4.24"
2902 #define szOID_INTERNATIONAL_ISDN_NUMBER "2.5.4.25"
2903 #define szOID_REGISTERED_ADDRESS "2.5.4.26"
2904 #define szOID_DESTINATION_INDICATOR "2.5.4.27"
2905 #define szOID_PREFERRED_DELIVERY_METHOD "2.5.4.28"
2906 #define szOID_PRESENTATION_ADDRESS "2.5.4.29"
2907 #define szOID_SUPPORTED_APPLICATION_CONTEXT "2.5.4.30"
2908 #define szOID_MEMBER "2.5.4.31"
2909 #define szOID_OWNER "2.5.4.32"
2910 #define szOID_ROLE_OCCUPANT "2.5.4.33"
2911 #define szOID_SEE_ALSO "2.5.4.34"
2912 #define szOID_USER_PASSWORD "2.5.4.35"
2913 #define szOID_USER_CERTIFICATE "2.5.4.36"
2914 #define szOID_CA_CERTIFICATE "2.5.4.37"
2915 #define szOID_AUTHORITY_REVOCATION_LIST "2.5.4.38"
2916 #define szOID_CERTIFICATE_REVOCATION_LIST "2.5.4.39"
2917 #define szOID_CROSS_CERTIFICATE_PAIR "2.5.4.40"
2918 #define szOID_GIVEN_NAME "2.5.4.42"
2919 #define szOID_INITIALS "2.5.4.43"
2920 #define szOID_DN_QUALIFIER "2.5.4.46"
2921 #define szOID_AUTHORITY_KEY_IDENTIFIER "2.5.29.1"
2922 #define szOID_KEY_ATTRIBUTES "2.5.29.2"
2923 #define szOID_CERT_POLICIES_95 "2.5.29.3"
2924 #define szOID_KEY_USAGE_RESTRICTION "2.5.29.4"
2925 #define szOID_LEGACY_POLICY_MAPPINGS "2.5.29.5"
2926 #define szOID_SUBJECT_ALT_NAME "2.5.29.7"
2927 #define szOID_ISSUER_ALT_NAME "2.5.29.8"
2928 #define szOID_SUBJECT_DIR_ATTRS "2.5.29.9"
2929 #define szOID_BASIC_CONSTRAINTS "2.5.29.10"
2930 #define szOID_SUBJECT_KEY_IDENTIFIER "2.5.29.14"
2931 #define szOID_KEY_USAGE "2.5.29.15"
2932 #define szOID_PRIVATEKEY_USAGE_PERIOD "2.5.29.16"
2933 #define szOID_SUBJECT_ALT_NAME2 "2.5.29.17"
2934 #define szOID_ISSUER_ALT_NAME2 "2.5.29.18"
2935 #define szOID_BASIC_CONSTRAINTS2 "2.5.29.19"
2936 #define szOID_CRL_NUMBER "2.5.29.20"
2937 #define szOID_CRL_REASON_CODE "2.5.29.21"
2938 #define szOID_REASON_CODE_HOLD "2.5.29.23"
2939 #define szOID_DELTA_CRL_INDICATOR "2.5.29.27"
2940 #define szOID_ISSUING_DIST_POINT "2.5.29.28"
2941 #define szOID_NAME_CONSTRAINTS "2.5.29.30"
2942 #define szOID_CRL_DIST_POINTS "2.5.29.31"
2943 #define szOID_CERT_POLICIES "2.5.29.32"
2944 #define szOID_ANY_CERT_POLICY "2.5.29.32.0"
2945 #define szOID_POLICY_MAPPINGS "2.5.29.33"
2946 #define szOID_AUTHORITY_KEY_IDENTIFIER2 "2.5.29.35"
2947 #define szOID_POLICY_CONSTRAINTS "2.5.29.36"
2948 #define szOID_ENHANCED_KEY_USAGE "2.5.29.37"
2949 #define szOID_FRESHEST_CRL "2.5.29.46"
2950 #define szOID_INHIBIT_ANY_POLICY "2.5.29.54"
2951 #define szOID_DOMAIN_COMPONENT "0.9.2342.19200300.100.1.25"
2952 #define szOID_PKCS_12_FRIENDLY_NAME_ATTR "1.2.840.113549.1.9.20"
2953 #define szOID_PKCS_12_LOCAL_KEY_ID "1.2.840.113549.1.9.21"
2954 #define szOID_CERT_EXTENSIONS "1.3.6.1.4.1.311.2.1.14"
2955 #define szOID_NEXT_UPDATE_LOCATION "1.3.6.1.4.1.311.10.2"
2956 #define szOID_KP_CTL_USAGE_SIGNING "1.3.6.1.4.1.311.10.3.1"
2957 #define szOID_KP_TIME_STAMP_SIGNING "1.3.6.1.4.1.311.10.3.2"
2958 #ifndef szOID_SERVER_GATED_CRYPTO
2959 #define szOID_SERVER_GATED_CRYPTO "1.3.6.1.4.1.311.10.3.3"
2960 #endif
2961 #ifndef szOID_SGC_NETSCAPE
2962 #define szOID_SGC_NETSCAPE "2.16.840.1.113730.4.1"
2963 #endif
2964 #define szOID_KP_EFS "1.3.6.1.4.1.311.10.3.4"
2965 #define szOID_EFS_RECOVERY "1.3.6.1.4.1.311.10.3.4.1"
2966 #define szOID_WHQL_CRYPTO "1.3.6.1.4.1.311.10.3.5"
2967 #define szOID_NT5_CRYPTO "1.3.6.1.4.1.311.10.3.6"
2968 #define szOID_OEM_WHQL_CRYPTO "1.3.6.1.4.1.311.10.3.7"
2969 #define szOID_EMBEDDED_NT_CRYPTO "1.3.6.1.4.1.311.10.3.8"
2970 #define szOID_ROOT_LIST_SIGNER "1.3.6.1.4.1.311.10.3.9"
2971 #define szOID_KP_QUALIFIED_SUBORDINATION "1.3.6.1.4.1.311.10.3.10"
2972 #define szOID_KP_KEY_RECOVERY "1.3.6.1.4.1.311.10.3.11"
2973 #define szOID_KP_DOCUMENT_SIGNING "1.3.6.1.4.1.311.10.3.12"
2974 #define szOID_KP_LIFETIME_SIGNING "1.3.6.1.4.1.311.10.3.13"
2975 #define szOID_KP_MOBILE_DEVICE_SOFTWARE "1.3.6.1.4.1.311.10.3.14"
2976 #define szOID_YESNO_TRUST_ATTR "1.3.6.1.4.1.311.10.4.1"
2977 #ifndef szOID_DRM
2978 #define szOID_DRM "1.3.6.1.4.1.311.10.5.1"
2979 #endif
2980 #ifndef szOID_DRM_INDIVIDUALIZATION
2981 #define szOID_DRM_INDIVIDUALIZATION "1.3.6.1.4.1.311.10.5.2"
2982 #endif
2983 #ifndef szOID_LICENSES
2984 #define szOID_LICENSES "1.3.6.1.4.1.311.10.6.1"
2985 #endif
2986 #ifndef szOID_LICENSE_SERVER
2987 #define szOID_LICENSE_SERVER "1.3.6.1.4.1.311.10.6.2"
2988 #endif
2989 #define szOID_REMOVE_CERTIFICATE "1.3.6.1.4.1.311.10.8.1"
2990 #define szOID_CROSS_CERT_DIST_POINTS "1.3.6.1.4.1.311.10.9.1"
2991 #define szOID_CTL "1.3.6.1.4.1.311.10.1"
2992 #define szOID_SORTED_CTL "1.3.6.1.4.1.311.10.1.1"
2993 #define szOID_ANY_APPLICATION_POLICY "1.3.6.1.4.1.311.10.12.1"
2994 #define szOID_RENEWAL_CERTIFICATE "1.3.6.1.4.1.311.13.1"
2995 #define szOID_ENROLLMENT_NAME_VALUE_PAIR "1.3.6.1.4.1.311.13.2.1"
2996 #define szOID_ENROLLMENT_CSP_PROVIDER "1.3.6.1.4.1.311.13.2.2"
2997 #define szOID_OS_VERSION "1.3.6.1.4.1.311.13.2.3"
2998 #define szOID_PKCS_12_KEY_PROVIDER_NAME_ATTR "1.3.6.1.4.1.311.17.1"
2999 #define szOID_LOCAL_MACHINE_KEYSET "1.3.6.1.4.1.311.17.2"
3000 #define szOID_AUTO_ENROLL_CTL_USAGE "1.3.6.1.4.1.311.20.1"
3001 #define szOID_ENROLL_CERTTYPE_EXTENSION "1.3.6.1.4.1.311.20.2"
3002 #define szOID_ENROLLMENT_AGENT "1.3.6.1.4.1.311.20.2.1"
3003 #define szOID_KP_SMARTCARD_LOGON "1.3.6.1.4.1.311.20.2.2"
3004 #define szOID_CERT_MANIFOLD "1.3.6.1.4.1.311.20.3"
3005 #ifndef szOID_CERTSRV_CA_VERSION
3006 #define szOID_CERTSRV_CA_VERSION "1.3.6.1.4.1.311.21.1"
3007 #endif
3008 #define szOID_CERTSRV_PREVIOUS_CERT_HASH "1.3.6.1.4.1.311.21.2"
3009 #define szOID_CRL_VIRTUAL_BASE "1.3.6.1.4.1.311.21.3"
3010 #define szOID_CRL_NEXT_PUBLISH "1.3.6.1.4.1.311.21.4"
3011 #define szOID_KP_CA_EXCHANGE "1.3.6.1.4.1.311.21.5"
3012 #define szOID_KP_KEY_RECOVERY_AGENT "1.3.6.1.4.1.311.21.6"
3013 #define szOID_CERTIFICATE_TEMPLATE "1.3.6.1.4.1.311.21.7"
3014 #define szOID_ENTERPRISE_OID_ROOT "1.3.6.1.4.1.311.21.8"
3015 #define szOID_RDN_DUMMY_SIGNER "1.3.6.1.4.1.311.21.9"
3016 #define szOID_APPLICATION_CERT_POLICIES "1.3.6.1.4.1.311.21.10"
3017 #define szOID_APPLICATION_POLICY_MAPPINGS "1.3.6.1.4.1.311.21.11"
3018 #define szOID_APPLICATION_POLICY_CONSTRAINTS "1.3.6.1.4.1.311.21.12"
3019 #define szOID_ARCHIVED_KEY_ATTR "1.3.6.1.4.1.311.21.13"
3020 #define szOID_CRL_SELF_CDP "1.3.6.1.4.1.311.21.14"
3021 #define szOID_REQUIRE_CERT_CHAIN_POLICY "1.3.6.1.4.1.311.21.15"
3022 #define szOID_ARCHIVED_KEY_CERT_HASH "1.3.6.1.4.1.311.21.16"
3023 #define szOID_ISSUED_CERT_HASH "1.3.6.1.4.1.311.21.17"
3024 #define szOID_DS_EMAIL_REPLICATION "1.3.6.1.4.1.311.21.19"
3025 #define szOID_REQUEST_CLIENT_INFO "1.3.6.1.4.1.311.21.20"
3026 #define szOID_ENCRYPTED_KEY_HASH "1.3.6.1.4.1.311.21.21"
3027 #define szOID_CERTSRV_CROSSCA_VERSION "1.3.6.1.4.1.311.21.22"
3028 #define szOID_KEYID_RDN "1.3.6.1.4.1.311.10.7.1"
3029 #define szOID_PKIX "1.3.6.1.5.5.7"
3030 #define szOID_PKIX_PE "1.3.6.1.5.5.7.1"
3031 #define szOID_AUTHORITY_INFO_ACCESS "1.3.6.1.5.5.7.1.1"
3032 #define szOID_PKIX_POLICY_QUALIFIER_CPS "1.3.6.1.5.5.7.2.1"
3033 #define szOID_PKIX_POLICY_QUALIFIER_USERNOTICE "1.3.6.1.5.5.7.2.2"
3034 #define szOID_PKIX_KP "1.3.6.1.5.5.7.3"
3035 #define szOID_PKIX_KP_SERVER_AUTH "1.3.6.1.5.5.7.3.1"