- Merge to trunk r37270.
[reactos.git] / reactos / include / psdk / wincrypt.h
1 /*
2 * Copyright (C) 2002 Travis Michielsen
3 * Copyright (C) 2004-2005 Juan Lang
4 * Copyright (C) 2007 Vijay Kiran Kamuju
5 *
6 * This library is free software; you can redistribute it and/or
7 * modify it under the terms of the GNU Lesser General Public
8 * License as published by the Free Software Foundation; either
9 * version 2.1 of the License, or (at your option) any later version.
10 *
11 * This library is distributed in the hope that it will be useful,
12 * but WITHOUT ANY WARRANTY; without even the implied warranty of
13 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU
14 * Lesser General Public License for more details.
15 *
16 * You should have received a copy of the GNU Lesser General Public
17 * License along with this library; if not, write to the Free Software
18 * Foundation, Inc., 51 Franklin St, Fifth Floor, Boston, MA 02110-1301, USA
19 */
20
21 #ifndef __WINE_WINCRYPT_H
22 #define __WINE_WINCRYPT_H
23
24 #ifdef __cplusplus
25 extern "C" {
26 #endif
27
28 #include <bcrypt.h>
29 /* FIXME: #include <ncrypt.h> */
30
31 #ifdef _ADVAPI32_
32 # define WINADVAPI
33 #else
34 # define WINADVAPI DECLSPEC_IMPORT
35 #endif
36
37 /* some typedefs for function parameters */
38 typedef unsigned int ALG_ID;
39 typedef ULONG_PTR HCRYPTPROV;
40 typedef ULONG_PTR HCRYPTPROV_OR_NCRYPT_KEY_HANDLE;
41 typedef ULONG_PTR HCRYPTPROV_LEGACY;
42 typedef ULONG_PTR HCRYPTKEY;
43 typedef ULONG_PTR HCRYPTHASH;
44 typedef void *HCERTSTORE;
45 typedef void *HCRYPTMSG;
46 typedef void *HCERTSTOREPROV;
47 typedef void *HCRYPTOIDFUNCSET;
48 typedef void *HCRYPTOIDFUNCADDR;
49 typedef void *HCRYPTDEFAULTCONTEXT;
50
51 /* CSP Structs */
52
53 typedef struct _PROV_ENUMALGS {
54 ALG_ID aiAlgid;
55 DWORD dwBitLen;
56 DWORD dwNameLen;
57 CHAR szName[20];
58 } PROV_ENUMALGS;
59
60 typedef struct _PROV_ENUMALGS_EX {
61 ALG_ID aiAlgid;
62 DWORD dwDefaultLen;
63 DWORD dwMinLen;
64 DWORD dwMaxLen;
65 DWORD dwProtocols;
66 DWORD dwNameLen;
67 CHAR szName[20];
68 DWORD dwLongNameLen;
69 CHAR szLongName[40];
70 } PROV_ENUMALGS_EX;
71
72 #define SCHANNEL_MAC_KEY 0
73 #define SCHANNEL_ENC_KEY 1
74
75 typedef struct _SCHANNEL_ALG {
76 DWORD dwUse;
77 ALG_ID Algid;
78 DWORD cBits;
79 DWORD dwFlags;
80 DWORD dwReserved;
81 } SCHANNEL_ALG, *PSCHANNEL_ALG;
82
83 typedef struct _HMAC_INFO {
84 ALG_ID HashAlgid;
85 BYTE* pbInnerString;
86 DWORD cbInnerString;
87 BYTE* pbOuterString;
88 DWORD cbOuterString;
89 } HMAC_INFO, *PHMAC_INFO;
90
91 typedef struct _CRYPTOAPI_BLOB {
92 DWORD cbData;
93 BYTE* pbData;
94 } CRYPT_INTEGER_BLOB, *PCRYPT_INTEGER_BLOB,
95 CRYPT_UINT_BLOB, *PCRYPT_UINT_BLOB,
96 CRYPT_OBJID_BLOB, *PCRYPT_OBJID_BLOB,
97 CERT_NAME_BLOB, *PCERT_NAME_BLOB,
98 CERT_RDN_VALUE_BLOB, *PCERT_RDN_VALUE_BLOB,
99 CERT_BLOB, *PCERT_BLOB,
100 CRL_BLOB, *PCRL_BLOB,
101 DATA_BLOB, *PDATA_BLOB,
102 CRYPT_DATA_BLOB, *PCRYPT_DATA_BLOB,
103 CRYPT_HASH_BLOB, *PCRYPT_HASH_BLOB,
104 CRYPT_DIGEST_BLOB, *PCRYPT_DIGEST_BLOB,
105 CRYPT_DER_BLOB, *PCRYPT_DER_BLOB,
106 CRYPT_ATTR_BLOB, *PCRYPT_ATTR_BLOB;
107
108 typedef struct _CRYPTPROTECT_PROMPTSTRUCT{
109 DWORD cbSize;
110 DWORD dwPromptFlags;
111 HWND hwndApp;
112 LPCWSTR szPrompt;
113 } CRYPTPROTECT_PROMPTSTRUCT, *PCRYPTPROTECT_PROMPTSTRUCT;
114
115 typedef struct _CRYPT_ALGORITHM_IDENTIFIER {
116 LPSTR pszObjId;
117 CRYPT_OBJID_BLOB Parameters;
118 } CRYPT_ALGORITHM_IDENTIFIER, *PCRYPT_ALGORITHM_IDENTIFIER;
119
120 typedef struct _CRYPT_ATTRIBUTE_TYPE_VALUE {
121 LPSTR pszObjId;
122 CRYPT_OBJID_BLOB Value;
123 } CRYPT_ATTRIBUTE_TYPE_VALUE, *PCRYPT_ATTRIBUTE_TYPE_VALUE;
124
125 typedef struct _PUBLICKEYSTRUC {
126 BYTE bType;
127 BYTE bVersion;
128 WORD reserved;
129 ALG_ID aiKeyAlg;
130 } BLOBHEADER, PUBLICKEYSTRUC;
131
132 typedef struct _RSAPUBKEY {
133 DWORD magic;
134 DWORD bitlen;
135 DWORD pubexp;
136 } RSAPUBKEY;
137
138 typedef struct _PUBKEY {
139 DWORD magic;
140 DWORD bitlen;
141 } DHPUBKEY, DSSPUBKEY, KEAPUBKEY, TEKPUBKEY;
142
143 typedef struct _DSSSEED {
144 DWORD counter;
145 BYTE seed[20];
146 } DSSSEED;
147
148 typedef struct _PUBKEYVER3 {
149 DWORD magic;
150 DWORD bitlenP;
151 DWORD bitlenQ;
152 DWORD bitlenJ;
153 DSSSEED DSSSeed;
154 } DHPUBKEY_VER3, DSSPUBKEY_VER3;
155
156 typedef struct _PRIVKEYVER3 {
157 DWORD magic;
158 DWORD bitlenP;
159 DWORD bitlenQ;
160 DWORD bitlenJ;
161 DWORD bitlenX;
162 DSSSEED DSSSeed;
163 } DHPRIVKEY_VER3, DSSPRIVKEY_VER3;
164
165 typedef struct _KEY_TYPE_SUBTYPE {
166 DWORD dwKeySpec;
167 GUID Type;
168 GUID SubType;
169 } KEY_TYPE_SUBTYPE, *PKEY_TYPE_SUBTYPE;
170
171 typedef struct _CERT_FORTEZZA_DATA_PROP {
172 unsigned char SerialNumber[8];
173 int CertIndex;
174 unsigned char CertLabel[36];
175 } CERT_FORTEZZA_DATA_PROP;
176
177 typedef struct _CMS_DH_KEY_INFO {
178 DWORD dwVersion;
179 ALG_ID Algid;
180 LPSTR pszContentEncObjId;
181 CRYPT_DATA_BLOB PubInfo;
182 void *pReserved;
183 } CMS_DH_KEY_INFO, *PCMS_DH_KEY_INFO;
184
185 typedef struct _CRYPT_BIT_BLOB {
186 DWORD cbData;
187 BYTE *pbData;
188 DWORD cUnusedBits;
189 } CRYPT_BIT_BLOB, *PCRYPT_BIT_BLOB;
190
191 typedef struct _CRYPT_KEY_PROV_PARAM {
192 DWORD dwParam;
193 BYTE *pbData;
194 DWORD cbData;
195 DWORD dwFlags;
196 } CRYPT_KEY_PROV_PARAM, *PCRYPT_KEY_PROV_PARAM;
197
198 typedef struct _CRYPT_KEY_PROV_INFO {
199 LPWSTR pwszContainerName;
200 LPWSTR pwszProvName;
201 DWORD dwProvType;
202 DWORD dwFlags;
203 DWORD cProvParam;
204 PCRYPT_KEY_PROV_PARAM rgProvParam;
205 DWORD dwKeySpec;
206 } CRYPT_KEY_PROV_INFO, *PCRYPT_KEY_PROV_INFO;
207
208 typedef struct _CERT_KEY_CONTEXT {
209 DWORD cbSize;
210 HCRYPTPROV hCryptProv;
211 DWORD dwKeySpec;
212 } CERT_KEY_CONTEXT, *PCERT_KEY_CONTEXT;
213
214 typedef struct _CERT_PUBLIC_KEY_INFO {
215 CRYPT_ALGORITHM_IDENTIFIER Algorithm;
216 CRYPT_BIT_BLOB PublicKey;
217 } CERT_PUBLIC_KEY_INFO, *PCERT_PUBLIC_KEY_INFO;
218
219 typedef struct _CERT_EXTENSION {
220 LPSTR pszObjId;
221 BOOL fCritical;
222 CRYPT_OBJID_BLOB Value;
223 } CERT_EXTENSION, *PCERT_EXTENSION;
224
225 typedef struct _CERT_EXTENSIONS {
226 DWORD cExtension;
227 PCERT_EXTENSION rgExtension;
228 } CERT_EXTENSIONS, *PCERT_EXTENSIONS;
229
230 typedef struct _CERT_INFO {
231 DWORD dwVersion;
232 CRYPT_INTEGER_BLOB SerialNumber;
233 CRYPT_ALGORITHM_IDENTIFIER SignatureAlgorithm;
234 CERT_NAME_BLOB Issuer;
235 FILETIME NotBefore;
236 FILETIME NotAfter;
237 CERT_NAME_BLOB Subject;
238 CERT_PUBLIC_KEY_INFO SubjectPublicKeyInfo;
239 CRYPT_BIT_BLOB IssuerUniqueId;
240 CRYPT_BIT_BLOB SubjectUniqueId;
241 DWORD cExtension;
242 PCERT_EXTENSION rgExtension;
243 } CERT_INFO, *PCERT_INFO;
244
245 typedef struct _CERT_RDN_ATTR {
246 LPSTR pszObjId;
247 DWORD dwValueType;
248 CERT_RDN_VALUE_BLOB Value;
249 } CERT_RDN_ATTR, *PCERT_RDN_ATTR;
250
251 typedef struct _CERT_RDN {
252 DWORD cRDNAttr;
253 PCERT_RDN_ATTR rgRDNAttr;
254 } CERT_RDN, *PCERT_RDN;
255
256 typedef struct _CERT_NAME_INFO {
257 DWORD cRDN;
258 PCERT_RDN rgRDN;
259 } CERT_NAME_INFO, *PCERT_NAME_INFO;
260
261 typedef struct _CERT_NAME_VALUE {
262 DWORD dwValueType;
263 CERT_RDN_VALUE_BLOB Value;
264 } CERT_NAME_VALUE, *PCERT_NAME_VALUE;
265
266 typedef struct _CERT_ENCRYPTED_PRIVATE_KEY_INFO {
267 CRYPT_ALGORITHM_IDENTIFIER EncryptionAlgorithm;
268 CRYPT_DATA_BLOB EncryptedPrivateKey;
269 } CERT_ENCRYPTED_PRIVATE_KEY_INFO, *PCERT_ENCRYPTED_PRIVATE_KEY_INFO;
270
271 typedef struct _CERT_AUTHORITY_KEY_ID_INFO {
272 CRYPT_DATA_BLOB KeyId;
273 CERT_NAME_BLOB CertIssuer;
274 CRYPT_INTEGER_BLOB CertSerialNumber;
275 } CERT_AUTHORITY_KEY_ID_INFO, *PCERT_AUTHORITY_KEY_ID_INFO;
276
277 typedef struct _CERT_PRIVATE_KEY_VALIDITY {
278 FILETIME NotBefore;
279 FILETIME NotAfter;
280 } CERT_PRIVATE_KEY_VALIDITY, *PCERT_PRIVATE_KEY_VALIDITY;
281
282 typedef struct _CERT_KEY_ATTRIBUTES_INFO {
283 CRYPT_DATA_BLOB KeyId;
284 CRYPT_BIT_BLOB IntendedKeyUsage;
285 PCERT_PRIVATE_KEY_VALIDITY pPrivateKeyUsagePeriod;
286 } CERT_KEY_ATTRIBUTES_INFO, *PCERT_KEY_ATTRIBUTES_INFO;
287
288 /* byte 0 */
289 #define CERT_DIGITAL_SIGNATURE_KEY_USAGE 0x80
290 #define CERT_NON_REPUDIATION_KEY_USAGE 0x40
291 #define CERT_KEY_ENCIPHERMENT_KEY_USAGE 0x20
292 #define CERT_DATA_ENCIPHERMENT_KEY_USAGE 0x10
293 #define CERT_KEY_AGREEMENT_KEY_USAGE 0x80
294 #define CERT_KEY_CERT_SIGN_KEY_USAGE 0x40
295 #define CERT_OFFLINE_CRL_SIGN_KEY_USAGE 0x20
296 #define CERT_CRL_SIGN_KEY_USAGE 0x10
297 #define CERT_ENCIPHER_ONLY_KEY_USAGE 0x01
298 /* byte 1 */
299 #define CERT_DECIPHER_ONLY_KEY_USAGE 0x80
300
301 typedef struct _CERT_POLICY_ID {
302 DWORD cCertPolicyElementId;
303 LPSTR *rgbszCertPolicyElementId;
304 } CERT_POLICY_ID, *PCERT_POLICY_ID;
305
306 typedef struct _CERT_KEY_USAGE_RESTRICTION_INFO {
307 DWORD cCertPolicyId;
308 PCERT_POLICY_ID rgCertPolicyId;
309 CRYPT_BIT_BLOB RestrictedKeyUsage;
310 } CERT_KEY_USAGE_RESTRICTION_INFO, *PCERT_KEY_USAGE_RESTRICTION_INFO;
311
312 typedef struct _CERT_OTHER_NAME {
313 LPSTR pszObjId;
314 CRYPT_OBJID_BLOB Value;
315 } CERT_OTHER_NAME, *PCERT_OTHER_NAME;
316
317 typedef struct _CERT_ALT_NAME_ENTRY {
318 DWORD dwAltNameChoice;
319 union {
320 PCERT_OTHER_NAME pOtherName;
321 LPWSTR pwszRfc822Name;
322 LPWSTR pwszDNSName;
323 CERT_NAME_BLOB DirectoryName;
324 LPWSTR pwszURL;
325 CRYPT_DATA_BLOB IPAddress;
326 LPSTR pszRegisteredID;
327 } DUMMYUNIONNAME;
328 } CERT_ALT_NAME_ENTRY, *PCERT_ALT_NAME_ENTRY;
329
330 #define CERT_ALT_NAME_OTHER_NAME 1
331 #define CERT_ALT_NAME_RFC822_NAME 2
332 #define CERT_ALT_NAME_DNS_NAME 3
333 #define CERT_ALT_NAME_X400_ADDRESS 4
334 #define CERT_ALT_NAME_DIRECTORY_NAME 5
335 #define CERT_ALT_NAME_EDI_PARTY_NAME 6
336 #define CERT_ALT_NAME_URL 7
337 #define CERT_ALT_NAME_IP_ADDRESS 8
338 #define CERT_ALT_NAME_REGISTERED_ID 9
339
340 typedef struct _CERT_ALT_NAME_INFO {
341 DWORD cAltEntry;
342 PCERT_ALT_NAME_ENTRY rgAltEntry;
343 } CERT_ALT_NAME_INFO, *PCERT_ALT_NAME_INFO;
344
345 #define CERT_ALT_NAME_ENTRY_ERR_INDEX_MASK 0xff
346 #define CERT_ALT_NAME_ENTRY_ERR_INDEX_SHIFT 16
347 #define CERT_ALT_NAME_VALUE_ERR_INDEX_MASK 0x0000ffff
348 #define CERT_ALT_NAME_VALUE_ERR_INDEX_SHIFT 0
349 #define GET_CERT_ALT_NAME_ENTRY_ERR_INDEX(x) \
350 (((x) >> CERT_ALT_NAME_ENTRY_ERR_INDEX_SHIFT) & \
351 CERT_ALT_NAME_ENTRY_ERR_INDEX_MASK)
352 #define GET_CERT_ALT_NAME_VALUE_ERR_INDEX(x) \
353 ((x) & CERT_ALT_NAME_VALUE_ERR_INDEX_MASK)
354
355 typedef struct _CERT_BASIC_CONSTRAINTS_INFO {
356 CRYPT_BIT_BLOB SubjectType;
357 BOOL fPathLenConstraint;
358 DWORD dwPathLenConstraint;
359 DWORD cSubtreesConstraint;
360 CERT_NAME_BLOB *rgSubtreesConstraint;
361 } CERT_BASIC_CONSTRAINTS_INFO, *PCERT_BASIC_CONSTRAINTS_INFO;
362
363 #define CERT_CA_SUBJECT_FLAG 0x80
364 #define CERT_END_ENTITY_SUBJECT_FLAG 0x40
365
366 typedef struct _CERT_BASIC_CONSTRAINTS2_INFO {
367 BOOL fCA;
368 BOOL fPathLenConstraint;
369 DWORD dwPathLenConstraint;
370 } CERT_BASIC_CONSTRAINTS2_INFO, *PCERT_BASIC_CONSTRAINTS2_INFO;
371
372 typedef struct _CERT_POLICY_QUALIFIER_INFO {
373 LPSTR pszPolicyQualifierId;
374 CRYPT_OBJID_BLOB Qualifier;
375 } CERT_POLICY_QUALIFIER_INFO, *PCERT_POLICY_QUALIFIER_INFO;
376
377 typedef struct _CERT_POLICY_INFO {
378 LPSTR pszPolicyIdentifier;
379 DWORD cPolicyQualifier;
380 CERT_POLICY_QUALIFIER_INFO *rgPolicyQualifier;
381 } CERT_POLICY_INFO, *PCERT_POLICY_INFO;
382
383 typedef struct _CERT_POLICIES_INFO {
384 DWORD cPolicyInfo;
385 CERT_POLICY_INFO *rgPolicyInfo;
386 } CERT_POLICIES_INFO, *PCERT_POLICIES_INFO;
387
388 typedef struct _CERT_POLICY_QUALIFIER_NOTICE_REFERENCE {
389 LPSTR pszOrganization;
390 DWORD cNoticeNumbers;
391 int *rgNoticeNumbers;
392 } CERT_POLICY_QUALIFIER_NOTICE_REFERENCE,
393 *PCERT_POLICY_QUALIFIER_NOTICE_REFERENCE;
394
395 typedef struct _CERT_POLICY_QUALIFIER_USER_NOTICE {
396 CERT_POLICY_QUALIFIER_NOTICE_REFERENCE *pNoticeReference;
397 LPWSTR pszDisplayText;
398 } CERT_POLICY_QUALIFIER_USER_NOTICE, *PCERT_POLICY_QUALIFIER_USER_NOTICE;
399
400 typedef struct _CPS_URLS {
401 LPWSTR pszURL;
402 CRYPT_ALGORITHM_IDENTIFIER *pAlgorithm;
403 CRYPT_DATA_BLOB *pDigest;
404 } CPS_URLS, *PCPS_URLS;
405
406 typedef struct _CERT_POLICY95_QUALIFIER1 {
407 LPWSTR pszPracticesReference;
408 LPSTR pszNoticeIdentifier;
409 LPSTR pszNSINoticeIdentifier;
410 DWORD cCPSURLs;
411 CPS_URLS *rgCPSURLs;
412 } CERT_POLICY95_QUALIFIER1, *PCERT_POLICY95_QUALIFIER1;
413
414 typedef struct _CERT_POLICY_MAPPING {
415 LPSTR pszIssuerDomainPolicy;
416 LPSTR pszSubjectDomainPolicy;
417 } CERT_POLICY_MAPPING, *PCERT_POLICY_MAPPING;
418
419 typedef struct _CERT_POLICY_MAPPINGS_INFO {
420 DWORD cPolicyMapping;
421 PCERT_POLICY_MAPPING rgPolicyMapping;
422 } CERT_POLICY_MAPPINGS_INFO, *PCERT_POLICY_MAPPINGS_INFO;
423
424 typedef struct _CERT_POLICY_CONSTRAINTS_INFO {
425 BOOL fRequireExplicitPolicy;
426 DWORD dwRequireExplicitPolicySkipCerts;
427 BOOL fInhibitPolicyMapping;
428 DWORD dwInhibitPolicyMappingSkipCerts;
429 } CERT_POLICY_CONSTRAINTS_INFO, *PCERT_POLICY_CONSTRAINTS_INFO;
430
431 typedef struct _CRYPT_CONTENT_INFO_SEQUENCE_OF_ANY {
432 LPSTR pszObjId;
433 DWORD cValue;
434 PCRYPT_DER_BLOB rgValue;
435 } CRYPT_CONTENT_INFO_SEQUENCE_OF_ANY, *PCRYPT_CONTENT_INFO_SEQUENCE_OF_ANY;
436
437 typedef struct _CRYPT_CONTENT_INFO {
438 LPSTR pszObjId;
439 CRYPT_DER_BLOB Content;
440 } CRYPT_CONTENT_INFO, *PCRYPT_CONTENT_INFO;
441
442 typedef struct _CRYPT_SEQUENCE_OF_ANY {
443 DWORD cValue;
444 PCRYPT_DER_BLOB rgValue;
445 } CRYPT_SEQUENCE_OF_ANY, *PCRYPT_SEQUENCE_OF_ANY;
446
447 typedef struct _CERT_AUTHORITY_KEY_ID2_INFO {
448 CRYPT_DATA_BLOB KeyId;
449 CERT_ALT_NAME_INFO AuthorityCertIssuer;
450 CRYPT_INTEGER_BLOB AuthorityCertSerialNumber;
451 } CERT_AUTHORITY_KEY_ID2_INFO, *PCERT_AUTHORITY_KEY_ID2_INFO;
452
453 typedef struct _CERT_ACCESS_DESCRIPTION {
454 LPSTR pszAccessMethod;
455 CERT_ALT_NAME_ENTRY AccessLocation;
456 } CERT_ACCESS_DESCRIPTION, *PCERT_ACCESS_DESCRIPTION;
457
458 typedef struct _CERT_AUTHORITY_INFO_ACCESS {
459 DWORD cAccDescr;
460 PCERT_ACCESS_DESCRIPTION rgAccDescr;
461 } CERT_AUTHORITY_INFO_ACCESS, *PCERT_AUTHORITY_INFO_ACCESS;
462
463 typedef struct _CERT_CONTEXT {
464 DWORD dwCertEncodingType;
465 BYTE *pbCertEncoded;
466 DWORD cbCertEncoded;
467 PCERT_INFO pCertInfo;
468 HCERTSTORE hCertStore;
469 } CERT_CONTEXT, *PCERT_CONTEXT;
470 typedef const CERT_CONTEXT *PCCERT_CONTEXT;
471
472 typedef struct _CRL_ENTRY {
473 CRYPT_INTEGER_BLOB SerialNumber;
474 FILETIME RevocationDate;
475 DWORD cExtension;
476 PCERT_EXTENSION rgExtension;
477 } CRL_ENTRY, *PCRL_ENTRY;
478
479 typedef struct _CRL_INFO {
480 DWORD dwVersion;
481 CRYPT_ALGORITHM_IDENTIFIER SignatureAlgorithm;
482 CERT_NAME_BLOB Issuer;
483 FILETIME ThisUpdate;
484 FILETIME NextUpdate;
485 DWORD cCRLEntry;
486 PCRL_ENTRY rgCRLEntry;
487 DWORD cExtension;
488 PCERT_EXTENSION rgExtension;
489 } CRL_INFO, *PCRL_INFO;
490
491 typedef struct _CRL_DIST_POINT_NAME {
492 DWORD dwDistPointNameChoice;
493 union {
494 CERT_ALT_NAME_INFO FullName;
495 } DUMMYUNIONNAME;
496 } CRL_DIST_POINT_NAME, *PCRL_DIST_POINT_NAME;
497
498 #define CRL_DIST_POINT_NO_NAME 0
499 #define CRL_DIST_POINT_FULL_NAME 1
500 #define CRL_DIST_POINT_ISSUER_RDN_NAME 2
501
502 typedef struct _CRL_DIST_POINT {
503 CRL_DIST_POINT_NAME DistPointName;
504 CRYPT_BIT_BLOB ReasonFlags;
505 CERT_ALT_NAME_INFO CRLIssuer;
506 } CRL_DIST_POINT, *PCRL_DIST_POINT;
507
508 #define CRL_REASON_UNUSED_FLAG 0x80
509 #define CRL_REASON_KEY_COMPROMISE_FLAG 0x40
510 #define CRL_REASON_CA_COMPROMISE_FLAG 0x20
511 #define CRL_REASON_AFFILIATION_CHANGED_FLAG 0x10
512 #define CRL_REASON_SUPERSEDED_FLAG 0x08
513 #define CRL_REASON_CESSATION_OF_OPERATION_FLAG 0x04
514 #define CRL_REASON_CERTIFICATE_HOLD_FLAG 0x02
515
516 typedef struct _CRL_DIST_POINTS_INFO {
517 DWORD cDistPoint;
518 PCRL_DIST_POINT rgDistPoint;
519 } CRL_DIST_POINTS_INFO, *PCRL_DIST_POINTS_INFO;
520
521 #define CRL_DIST_POINT_ERR_INDEX_MASK 0x7f
522 #define CRL_DIST_POINT_ERR_INDEX_SHIFT 24
523 #define GET_CRL_DIST_POINT_ERR_INDEX(x) \
524 (((x) >> CRL_DIST_POINT_ERR_INDEX_SHIFT) & CRL_DIST_POINT_ERR_INDEX_MASK)
525
526 #define CRL_DIST_POINT_ERR_CRL_ISSUER_BIT 0x80000000L
527 #define IS_CRL_DIST_POINT_ERR_CRL_ISSUER(x) \
528 ((x) & CRL_DIST_POINT_ERR_CRL_ISSUER_BIT)
529
530 typedef struct _CROSS_CERT_DIST_POINTS_INFO {
531 DWORD dwSyncDeltaTime;
532 DWORD cDistPoint;
533 PCERT_ALT_NAME_INFO rgDistPoint;
534 } CROSS_CERT_DIST_POINTS_INFO, *PCROSS_CERT_DIST_POINTS_INFO;
535
536 #define CROSS_CERT_DIST_POINT_ERR_INDEX_MASK 0xff
537 #define CROSS_CERT_DIST_POINT_ERR_INDEX_SHIFT 24
538 #define GET_CROSS_CERT_DIST_POINT_ERR_INDEX(x) \
539 (((x) >> CROSS_CERT_DIST_POINT_ERR_INDEX_SHIFT) & \
540 CROSS_CERT_DIST_POINT_ERR_INDEX_MASK)
541
542 typedef struct _CERT_PAIR {
543 CERT_BLOB Forward;
544 CERT_BLOB Reverse;
545 } CERT_PAIR, *PCERT_PAIR;
546
547 typedef struct _CRL_ISSUING_DIST_POINT {
548 CRL_DIST_POINT_NAME DistPointName;
549 BOOL fOnlyContainsUserCerts;
550 BOOL fOnlyContainsCACerts;
551 CRYPT_BIT_BLOB OnlySomeReasonFlags;
552 BOOL fIndirectCRL;
553 } CRL_ISSUING_DIST_POINT, *PCRL_ISSUING_DIST_POINT;
554
555 typedef struct _CERT_GENERAL_SUBTREE {
556 CERT_ALT_NAME_ENTRY Base;
557 DWORD dwMinimum;
558 BOOL fMaximum;
559 DWORD dwMaximum;
560 } CERT_GENERAL_SUBTREE, *PCERT_GENERAL_SUBTREE;
561
562 typedef struct _CERT_NAME_CONSTRAINTS_INFO {
563 DWORD cPermittedSubtree;
564 PCERT_GENERAL_SUBTREE rgPermittedSubtree;
565 DWORD cExcludedSubtree;
566 PCERT_GENERAL_SUBTREE rgExcludedSubtree;
567 } CERT_NAME_CONSTRAINTS_INFO, *PCERT_NAME_CONSTRAINTS_INFO;
568
569 #define CERT_EXCLUDED_SUBTREE_BIT 0x80000000L
570 #define IS_CERT_EXCLUDED_SUBTREE(x) ((x) & CERT_EXCLUDED_SUBTREE_BIT)
571
572 typedef struct _CRYPT_ATTRIBUTE {
573 LPSTR pszObjId;
574 DWORD cValue;
575 PCRYPT_DATA_BLOB rgValue;
576 } CRYPT_ATTRIBUTE, *PCRYPT_ATTRIBUTE;
577
578 typedef struct _CRYPT_ATTRIBUTES {
579 DWORD cAttr;
580 PCRYPT_ATTRIBUTE rgAttr;
581 } CRYPT_ATTRIBUTES, *PCRYPT_ATTRIBUTES;
582
583 typedef struct _CERT_REQUEST_INFO {
584 DWORD dwVersion;
585 CERT_NAME_BLOB Subject;
586 CERT_PUBLIC_KEY_INFO SubjectPublicKeyInfo;
587 DWORD cAttribute;
588 PCRYPT_ATTRIBUTE rgAttribute;
589 } CERT_REQUEST_INFO, *PCERT_REQUEST_INFO;
590
591 typedef struct _CERT_KEYGEN_REQUEST_INFO {
592 DWORD dwVersion;
593 CERT_PUBLIC_KEY_INFO SubjectPubliceKeyInfo;
594 LPWSTR pwszChallengeString;
595 } CERT_KEYGEN_REQUEST_INFO, *PCERT_KEYGEN_REQUEST_INFO;
596
597 typedef struct _CERT_SIGNED_CONTENT_INFO {
598 CRYPT_DER_BLOB ToBeSigned;
599 CRYPT_ALGORITHM_IDENTIFIER SignatureAlgorithm;
600 CRYPT_BIT_BLOB Signature;
601 } CERT_SIGNED_CONTENT_INFO, *PCERT_SIGNED_CONTENT_INFO;
602
603 typedef struct _CRL_CONTEXT {
604 DWORD dwCertEncodingType;
605 BYTE *pbCrlEncoded;
606 DWORD cbCrlEncoded;
607 PCRL_INFO pCrlInfo;
608 HCERTSTORE hCertStore;
609 } CRL_CONTEXT, *PCRL_CONTEXT;
610 typedef const CRL_CONTEXT *PCCRL_CONTEXT;
611
612 #define SORTED_CTL_EXT_FLAGS_OFFSET (0*4)
613 #define SORTED_CTL_EXT_COUNT_OFFSET (1*4)
614 #define SORTED_CTL_EXT_MAX_COLLISION_OFFSET (2*4)
615 #define SORTED_CTL_EXT_HASH_BUCKET_OFFSET (3*4)
616
617 #define SORTED_CTL_EXT_HASHED_SUBJECT_IDENTIFIER_FLAG 0x1
618
619 typedef struct _CERT_DSS_PARAMETERS {
620 CRYPT_UINT_BLOB p;
621 CRYPT_UINT_BLOB q;
622 CRYPT_UINT_BLOB g;
623 } CERT_DSS_PARAMETERS, *PCERT_DSS_PARAMETERS;
624
625 #define CERT_DSS_R_LEN 20
626 #define CERT_DSS_S_LEN 20
627 #define CERT_DSS_SIGNATURE_LEN (CERT_DSS_R_LEN + CERT_DSS_S_LEN)
628
629 #define CERT_MAX_ENCODED_DSS_SIGNATURE_LEN (2 + 2*(2 + 20 +1))
630
631 typedef struct _CERT_DH_PARAMETERS {
632 CRYPT_UINT_BLOB p;
633 CRYPT_UINT_BLOB g;
634 } CERT_DH_PARAMETERS, *PCERT_DH_PARAMETERS;
635
636 typedef struct _CERT_X942_DH_VALIDATION_PARAMS {
637 CRYPT_BIT_BLOB seed;
638 DWORD pgenCounter;
639 } CERT_X942_DH_VALIDATION_PARAMS, *PCERT_X942_DH_VALIDATION_PARAMS;
640
641 typedef struct _CERT_X942_DH_PARAMETERS {
642 CRYPT_UINT_BLOB p;
643 CRYPT_UINT_BLOB g;
644 CRYPT_UINT_BLOB q;
645 CRYPT_UINT_BLOB j;
646 PCERT_X942_DH_VALIDATION_PARAMS pValidationParams;
647 } CERT_X942_DH_PARAMETERS, *PCERT_X942_DH_PARAMETERS;
648
649 #define CRYPT_X942_COUNTER_BYTE_LENGTH 4
650 #define CRYPT_X942_KEY_LENGTH_BYTE_LENGTH 4
651 #define CRYPT_X942_PUB_INFO_BYTE_LENGTH (512/8)
652
653 typedef struct _CRYPT_X942_OTHER_INFO {
654 LPSTR pszContentEncryptionObjId;
655 BYTE rgbCounter[CRYPT_X942_COUNTER_BYTE_LENGTH];
656 BYTE rgbKeyLength[CRYPT_X942_KEY_LENGTH_BYTE_LENGTH];
657 CRYPT_DATA_BLOB PubInfo;
658 } CRYPT_X942_OTHER_INFO, *PCRYPT_X942_OTHER_INFO;
659
660 typedef struct _CRYPT_RC2_CBC_PARAMETERS {
661 DWORD dwVersion;
662 BOOL fIV;
663 BYTE rgbIV[4];
664 } CRYPT_RC2_CBC_PARAMETERS, *PCRYPT_RC2_CBC_PARAMETERS;
665
666 #define CRYPT_RC2_40BIT_VERSION 160
667 #define CRYPT_RC2_56BIT_VERSION 52
668 #define CRYPT_RC2_64BIT_VERSION 120
669 #define CRYPT_RC2_128BIT_VERSION 58
670
671 typedef struct _CRYPT_SMIME_CAPABILITY {
672 LPSTR pszObjId;
673 CRYPT_OBJID_BLOB Parameters;
674 } CRYPT_SMIME_CAPABILITY, *PCRYPT_SMIME_CAPABILITY;
675
676 typedef struct _CRYPT_SMIME_CAPABILITIES {
677 DWORD cCapability;
678 PCRYPT_SMIME_CAPABILITY rgCapability;
679 } CRYPT_SMIME_CAPABILITIES, *PCRYPT_SMIME_CAPABILITIES;
680
681 typedef struct _VTableProvStruc {
682 DWORD Version;
683 FARPROC pFuncVerifyImage;
684 FARPROC pFuncReturnhWnd;
685 DWORD dwProvType;
686 BYTE *pbContextInfo;
687 DWORD cbContextInfo;
688 LPSTR pszProvName;
689 } VTableProvStruc, *PVTableProvStruc;
690
691 typedef struct _CERT_PRIVATE_KEY_INFO {
692 DWORD Version;
693 CRYPT_ALGORITHM_IDENTIFIER Algorithm;
694 CRYPT_DER_BLOB PrivateKey;
695 PCRYPT_ATTRIBUTES pAttributes;
696 } CERT_PRIVATE_KEY_INFO, *PCERT_PRIVATE_KEY_INFO;
697
698 typedef struct _CTL_USAGE {
699 DWORD cUsageIdentifier;
700 LPSTR *rgpszUsageIdentifier;
701 } CTL_USAGE, *PCTL_USAGE, CERT_ENHKEY_USAGE, *PCERT_ENHKEY_USAGE;
702
703 typedef struct _CTL_ENTRY {
704 CRYPT_DATA_BLOB SubjectIdentifier;
705 DWORD cAttribute;
706 PCRYPT_ATTRIBUTE rgAttribute;
707 } CTL_ENTRY, *PCTL_ENTRY;
708
709 typedef struct _CTL_INFO {
710 DWORD dwVersion;
711 CTL_USAGE SubjectUsage;
712 CRYPT_DATA_BLOB ListIdentifier;
713 CRYPT_INTEGER_BLOB SequenceNumber;
714 FILETIME ThisUpdate;
715 FILETIME NextUpdate;
716 CRYPT_ALGORITHM_IDENTIFIER SubjectAlgorithm;
717 DWORD cCTLEntry;
718 PCTL_ENTRY rgCTLEntry;
719 DWORD cExtension;
720 PCERT_EXTENSION rgExtension;
721 } CTL_INFO, *PCTL_INFO;
722
723 typedef struct _CTL_CONTEXT {
724 DWORD dwMsgAndCertEncodingType;
725 BYTE *pbCtlEncoded;
726 DWORD cbCtlEncoded;
727 PCTL_INFO pCtlInfo;
728 HCERTSTORE hCertStore;
729 HCRYPTMSG hCryptMsg;
730 BYTE *pbCtlContext;
731 DWORD cbCtlContext;
732 } CTL_CONTEXT, *PCTL_CONTEXT;
733 typedef const CTL_CONTEXT *PCCTL_CONTEXT;
734
735 typedef struct _CRYPT_TIME_STAMP_REQUEST_INFO {
736 LPSTR pszTimeStampAlgorithm;
737 LPSTR pszContentType;
738 CRYPT_OBJID_BLOB Content;
739 DWORD cAttribute;
740 PCRYPT_ATTRIBUTE rgAttribute;
741 } CRYPT_TIME_STAMP_REQUEST_INFO, *PCRYPT_TIME_STAMP_REQUEST_INFO;
742
743 typedef struct _CRYPT_ENROLLMENT_NAME_VALUE_PAIR {
744 LPWSTR pwszName;
745 LPWSTR pwszValue;
746 } CRYPT_ENROLLMENT_NAME_VALUE_PAIR, *PCRYPT_ENROLLMENT_NAME_VALUE_PAIR;
747
748 typedef struct _CMSG_SIGNER_INFO {
749 DWORD dwVersion;
750 CERT_NAME_BLOB Issuer;
751 CRYPT_INTEGER_BLOB SerialNumber;
752 CRYPT_ALGORITHM_IDENTIFIER HashAlgorithm;
753 CRYPT_ALGORITHM_IDENTIFIER HashEncryptionAlgorithm;
754 CRYPT_DATA_BLOB EncryptedHash;
755 CRYPT_ATTRIBUTES AuthAttrs;
756 CRYPT_ATTRIBUTES UnauthAttrs;
757 } CMSG_SIGNER_INFO, *PCMSG_SIGNER_INFO;
758
759 #define CMSG_VERIFY_SIGNER_PUBKEY 1
760 #define CMSG_VERIFY_SIGNER_CERT 2
761 #define CMSG_VERIFY_SIGNER_CHAIN 3
762 #define CMSG_VERIFY_SIGNER_NULL 4
763
764 typedef struct _CERT_REVOCATION_CRL_INFO {
765 DWORD cbSize;
766 PCCRL_CONTEXT pBaseCrlContext;
767 PCCRL_CONTEXT pDeltaCrlContext;
768 PCRL_ENTRY pCrlEntry;
769 BOOL fDeltaCrlEntry;
770 } CERT_REVOCATION_CRL_INFO, *PCERT_REVOCATION_CRL_INFO;
771
772 typedef struct _CERT_REVOCATION_INFO {
773 DWORD cbSize;
774 DWORD dwRevocationResult;
775 LPCSTR pszRevocationOid;
776 LPVOID pvOidSpecificInfo;
777 BOOL fHasFreshnessTime;
778 DWORD dwFreshnessTime;
779 PCERT_REVOCATION_CRL_INFO pCrlInfo;
780 } CERT_REVOCATION_INFO, *PCERT_REVOCATION_INFO;
781
782 typedef struct _CERT_REVOCATION_PARA {
783 DWORD cbSize;
784 PCCERT_CONTEXT pIssuerCert;
785 DWORD cCertStore;
786 HCERTSTORE *rgCertStore;
787 HCERTSTORE hCrlStore;
788 LPFILETIME pftTimeToUse;
789 #ifdef CERT_REVOCATION_PARA_HAS_EXTRA_FIELDS
790 DWORD dwUrlRetrievalTimeout;
791 BOOL fCheckFreshnessTime;
792 DWORD dwFreshnessTime;
793 LPFILETIME pftCurrentTime;
794 PCERT_REVOCATION_CRL_INFO pCrlInfo;
795 #endif
796 } CERT_REVOCATION_PARA, *PCERT_REVOCATION_PARA;
797
798 #define CERT_CONTEXT_REVOCATION_TYPE 1
799 #define CERT_VERIFY_REV_CHAIN_FLAG 0x00000001
800 #define CERT_VERIFY_CACHE_ONLY_BASED_REVOCATION 0x00000002
801 #define CERT_VERIFY_REV_ACCUMULATIVE_TIMEOUT_FLAG 0x00000004
802
803 typedef struct _CTL_VERIFY_USAGE_PARA {
804 DWORD cbSize;
805 CRYPT_DATA_BLOB ListIdentifier;
806 DWORD cCtlStore;
807 HCERTSTORE *rghCtlStore;
808 DWORD cSignerStore;
809 HCERTSTORE *rghSignerStore;
810 } CTL_VERIFY_USAGE_PARA, *PCTL_VERIFY_USAGE_PARA;
811
812 typedef struct _CTL_VERIFY_USAGE_STATUS {
813 DWORD cbSize;
814 DWORD dwError;
815 DWORD dwFlags;
816 PCCTL_CONTEXT *ppCtl;
817 DWORD dwCtlEntryIndex;
818 PCCERT_CONTEXT *ppSigner;
819 DWORD dwSignerIndex;
820 } CTL_VERIFY_USAGE_STATUS, *PCTL_VERIFY_USAGE_STATUS;
821
822 #define CERT_VERIFY_INHIBIT_CTL_UPDATE_FLAG 0x1
823 #define CERT_VERIFY_TRUSTED_SIGNERS_FLAG 0x2
824 #define CERT_VERIFY_NO_TIME_CHECK_FLAG 0x4
825 #define CERT_VERIFY_ALLOW_MORE_USAGE_FLAG 0x8
826 #define CERT_VERIFY_UPDATED_CTL_FLAG 0x1
827
828 typedef struct _CERT_REVOCATION_STATUS {
829 DWORD cbSize;
830 DWORD dwIndex;
831 DWORD dwError;
832 DWORD dwReason;
833 BOOL fHasFreshnessTime;
834 DWORD dwFreshnessTime;
835 } CERT_REVOCATION_STATUS, *PCERT_REVOCATION_STATUS;
836
837 typedef struct _CERT_TRUST_LIST_INFO {
838 DWORD cbSize;
839 PCTL_ENTRY pCtlEntry;
840 PCCTL_CONTEXT pCtlContext;
841 } CERT_TRUST_LIST_INFO, *PCERT_TRUST_LIST_INFO;
842
843 #define CERT_TRUST_NO_ERROR 0x00000000
844 #define CERT_TRUST_IS_NOT_TIME_VALID 0x00000001
845 #define CERT_TRUST_IS_NOT_TIME_NESTED 0x00000002
846 #define CERT_TRUST_IS_REVOKED 0x00000004
847 #define CERT_TRUST_IS_NOT_SIGNATURE_VALID 0x00000008
848 #define CERT_TRUST_IS_NOT_VALID_FOR_USAGE 0x00000010
849 #define CERT_TRUST_IS_UNTRUSTED_ROOT 0x00000020
850 #define CERT_TRUST_REVOCATION_STATUS_UNKNOWN 0x00000040
851 #define CERT_TRUST_IS_CYCLIC 0x00000080
852 #define CERT_TRUST_INVALID_EXTENSION 0x00000100
853 #define CERT_TRUST_INVALID_POLICY_CONSTRAINTS 0x00000200
854 #define CERT_TRUST_INVALID_BASIC_CONSTRAINTS 0x00000400
855 #define CERT_TRUST_INVALID_NAME_CONSTRAINTS 0x00000800
856 #define CERT_TRUST_HAS_NOT_SUPPORTED_NAME_CONSTRAINT 0x00001000
857 #define CERT_TRUST_HAS_NOT_DEFINED_NAME_CONSTRAINT 0x00002000
858 #define CERT_TRUST_HAS_NOT_PERMITTED_NAME_CONSTRAINT 0x00004000
859 #define CERT_TRUST_HAS_EXCLUDED_NAME_CONSTRAINT 0x00008000
860 #define CERT_TRUST_IS_OFFLINE_REVOCATION 0x01000000
861 #define CERT_TRUST_NO_ISSUANCE_CHAIN_POLICY 0x02000000
862
863 #define CERT_TRUST_IS_PARTIAL_CHAIN 0x00001000
864 #define CERT_TRUST_CTL_IS_NOT_TIME_VALID 0x00002000
865 #define CERT_TRUST_CTL_IS_NOT_SIGNATURE_VALID 0x00004000
866 #define CERT_TRUST_CTL_IS_NOT_VALID_FOR_USAGE 0x00008000
867
868 #define CERT_TRUST_HAS_EXACT_MATCH_ISSUER 0x00000001
869 #define CERT_TRUST_HAS_KEY_MATCH_ISSUER 0x00000002
870 #define CERT_TRUST_HAS_NAME_MATCH_ISSUER 0x00000004
871 #define CERT_TRUST_IS_SELF_SIGNED 0x00000008
872
873 #define CERT_TRUST_HAS_PREFERRED_ISSUER 0x00000100
874 #define CERT_TRUST_HAS_ISSUANCE_CHAIN_POLICY 0x00000200
875 #define CERT_TRUST_HAS_VALID_NAME_CONSTRAINTS 0x00000400
876
877 #define CERT_TRUST_IS_COMPLEX_CHAIN 0x00010000
878
879 typedef struct _CERT_TRUST_STATUS {
880 DWORD dwErrorStatus;
881 DWORD dwInfoStatus;
882 } CERT_TRUST_STATUS, *PCERT_TRUST_STATUS;
883
884 typedef struct _CERT_CHAIN_ELEMENT {
885 DWORD cbSize;
886 PCCERT_CONTEXT pCertContext;
887 CERT_TRUST_STATUS TrustStatus;
888 PCERT_REVOCATION_INFO pRevocationInfo;
889 PCERT_ENHKEY_USAGE pIssuanceUsage;
890 PCERT_ENHKEY_USAGE pApplicationUsage;
891 LPCWSTR pwszExtendedErrorInfo;
892 } CERT_CHAIN_ELEMENT, *PCERT_CHAIN_ELEMENT;
893
894 typedef struct _CERT_SIMPLE_CHAIN {
895 DWORD cbSize;
896 CERT_TRUST_STATUS TrustStatus;
897 DWORD cElement;
898 PCERT_CHAIN_ELEMENT *rgpElement;
899 PCERT_TRUST_LIST_INFO pTrustListInfo;
900 BOOL fHasRevocationFreshnessTime;
901 DWORD dwRevocationFreshnessTime;
902 } CERT_SIMPLE_CHAIN, *PCERT_SIMPLE_CHAIN;
903
904 typedef struct _CERT_CHAIN_CONTEXT CERT_CHAIN_CONTEXT, *PCERT_CHAIN_CONTEXT;
905 typedef const CERT_CHAIN_CONTEXT *PCCERT_CHAIN_CONTEXT;
906
907 struct _CERT_CHAIN_CONTEXT {
908 DWORD cbSize;
909 CERT_TRUST_STATUS TrustStatus;
910 DWORD cChain;
911 PCERT_SIMPLE_CHAIN *rgpChain;
912 DWORD cLowerQualityChainContext;
913 PCCERT_CHAIN_CONTEXT *rgpLowerQualityChainContext;
914 BOOL fHasRevocationFreshnessTime;
915 DWORD dwRevocationFreshnessTime;
916 };
917
918 typedef struct _CERT_CHAIN_POLICY_PARA {
919 DWORD cbSize;
920 DWORD dwFlags;
921 void *pvExtraPolicyPara;
922 } CERT_CHAIN_POLICY_PARA, *PCERT_CHAIN_POLICY_PARA;
923
924 typedef struct _CERT_CHAIN_POLICY_STATUS {
925 DWORD cbSize;
926 DWORD dwError;
927 LONG lChainIndex;
928 LONG lElementIndex;
929 void *pvExtraPolicyStatus;
930 } CERT_CHAIN_POLICY_STATUS, *PCERT_CHAIN_POLICY_STATUS;
931
932 #define CERT_CHAIN_POLICY_BASE ((LPCSTR)1)
933 #define CERT_CHAIN_POLICY_AUTHENTICODE ((LPCSTR)2)
934 #define CERT_CHAIN_POLICY_AUTHENTICODE_TS ((LPCSTR)3)
935 #define CERT_CHAIN_POLICY_SSL ((LPCSTR)4)
936 #define CERT_CHAIN_POLICY_BASIC_CONSTRAINTS ((LPCSTR)5)
937 #define CERT_CHAIN_POLICY_NT_AUTH ((LPCSTR)6)
938 #define CERT_CHAIN_POLICY_MICROSOFT_ROOT ((LPCSTR)7)
939
940 #define CERT_CHAIN_POLICY_IGNORE_NOT_TIME_VALID_FLAG 0x00000001
941 #define CERT_CHAIN_POLICY_IGNORE_CTL_NOT_TIME_VALID_FLAG 0x00000002
942 #define CERT_CHAIN_POLICY_IGNORE_NOT_TIME_NESTED_FLAG 0x00000004
943 #define CERT_CHAIN_POLICY_IGNORE_INVALID_BASIC_CONSTRAINTS_FLAG 0x00000008
944
945 #define CERT_CHAIN_POLICY_IGNORE_ALL_NOT_TIME_VALID_FLAGS ( \
946 CERT_CHAIN_POLICY_IGNORE_NOT_TIME_VALID_FLAG \
947 CERT_CHAIN_POLICY_IGNORE_CTL_NOT_TIME_VALID_FLAG \
948 CERT_CHAIN_POLICY_IGNORE_NOT_TIME_NESTED_FLAG )
949
950 #define CERT_CHAIN_POLICY_ALLOW_UNKNOWN_CA_FLAG 0x00000010
951 #define CERT_CHAIN_POLICY_IGNORE_WRONG_USAGE_FLAG 0x00000020
952 #define CERT_CHAIN_POLICY_IGNORE_INVALID_NAME_FLAG 0x00000040
953 #define CERT_CHAIN_POLICY_IGNORE_INVALID_POLICY_FLAG 0x00000080
954
955 #define CERT_CHAIN_POLICY_IGNORE_END_REV_UNKNOWN_FLAG 0x00000100
956 #define CERT_CHAIN_POLICY_IGNORE_CTL_SIGNER_REV_UNKNOWN_FLAG 0x00000200
957 #define CERT_CHAIN_POLICY_IGNORE_CA_REV_UNKNOWN_FLAG 0x00000400
958 #define CERT_CHAIN_POLICY_IGNORE_ROOT_REV_UNKNOWN_FLAG 0x00000800
959
960 #define CERT_CHAIN_POLICY_IGNORE_ALL_REV_UNKNOWN_FLAGS ( \
961 CERT_CHAIN_POLICY_IGNORE_END_REV_UNKNOWN_FLAG \
962 CERT_CHAIN_POLICY_IGNORE_CTL_SIGNER_REV_UNKNOWN_FLAG \
963 CERT_CHAIN_POLICY_IGNORE_CA_REV_UNKNOWN_FLAG \
964 CERT_CHAIN_POLICY_IGNORE_ROOT_REV_UNKNOWN_FLAG )
965
966 #define CERT_CHAIN_POLICY_TRUST_TESTROOT_FLAG 0x00004000
967 #define CERT_CHAIN_POLICY_ALLOW_TESTROOT_FLAG 0x00008000
968 #define MICROSOFT_ROOT_CERT_CHAIN_POLICY_ENABLE_TEST_ROOT_FLAG 0x00010000
969
970 typedef struct _AUTHENTICODE_EXTRA_CERT_CHAIN_POLICY_PARA {
971 DWORD cbSize;
972 DWORD dwRegPolicySettings;
973 PCMSG_SIGNER_INFO pSignerInfo;
974 } AUTHENTICODE_EXTRA_CERT_CHAIN_POLICY_PARA,
975 *PAUTHENTICODE_EXTRA_CERT_CHAIN_POLICY_PARA;
976
977 typedef struct _AUTHENTICODE_EXTRA_CERT_CHAIN_POLICY_STATUS {
978 DWORD cbSize;
979 BOOL fCommercial;
980 } AUTHENTICODE_EXTRA_CERT_CHAIN_POLICY_STATUS,
981 *PAUTHENTICODE_EXTRA_CERT_CHAIN_POLICY_STATUS;
982
983 typedef struct _AUTHENTICODE_TS_EXTRA_CERT_CHAIN_POLICY_PARA {
984 DWORD cbSize;
985 DWORD dwRegPolicySettings;
986 BOOL fCommercial;
987 } AUTHENTICODE_TS_EXTRA_CERT_CHAIN_POLICY_PARA,
988 *PAUTHENTICODE_TS_EXTRA_CERT_CHAIN_POLICY_PARA;
989
990 typedef struct _HTTPSPolicyCallbackData {
991 union {
992 DWORD cbStruct;
993 DWORD cbSize;
994 } DUMMYUNIONNAME;
995 DWORD dwAuthType;
996 DWORD fdwChecks;
997 WCHAR *pwszServerName;
998 } HTTPSPolicyCallbackData, *PHTTPSPolicyCallbackData,
999 SSL_EXTRA_CERT_CHAIN_POLICY_PARA, *PSSL_EXTRA_CERT_CHAIN_POLICY_PARA;
1000
1001 /* Values for HTTPSPolicyCallbackData's dwAuthType */
1002 #define AUTHTYPE_CLIENT 1
1003 #define AUTHTYPE_SERVER 2
1004 /* Values for HTTPSPolicyCallbackData's fdwChecks are defined in wininet.h */
1005
1006 #define BASIC_CONSTRAINTS_CERT_CHAIN_POLICY_CA_FLAG 0x80000000
1007 #define BASIC_CONSTRAINTS_CERT_CHAIN_POLICY_END_ENTITY_FLAG 0x40000000
1008
1009 #define MICROSOFT_ROOT_CERT_CHAIN_POLICY_ENABLE_TEST_ROOT_FLAG 0x00010000
1010
1011 #define USAGE_MATCH_TYPE_AND 0x00000000
1012 #define USAGE_MATCH_TYPE_OR 0x00000001
1013
1014 typedef struct _CERT_USAGE_MATCH {
1015 DWORD dwType;
1016 CERT_ENHKEY_USAGE Usage;
1017 } CERT_USAGE_MATCH, *PCERT_USAGE_MATCH;
1018
1019 typedef struct _CTL_USAGE_MATCH {
1020 DWORD dwType;
1021 CTL_USAGE Usage;
1022 } CTL_USAGE_MATCH, *PCTL_USAGE_MATCH;
1023
1024 #define CERT_CHAIN_REVOCATION_CHECK_END_CERT 0x10000000
1025 #define CERT_CHAIN_REVOCATION_CHECK_CHAIN 0x20000000
1026 #define CERT_CHAIN_REVOCATION_CHECK_CHAIN_EXCLUDE_ROOT 0x40000000
1027 #define CERT_CHAIN_REVOCATION_CHECK_CACHE_ONLY 0x80000000
1028
1029 #define CERT_CHAIN_REVOCATION_ACCUMULATIVE_TIMEOUT 0x08000000
1030
1031 #define CERT_CHAIN_DISABLE_PASS1_QUALITY_FILTERING 0x00000040
1032 #define CERT_CHAIN_RETURN_LOWER_QUALITY_CONTEXTS 0x00000080
1033 #define CERT_CHAIN_DISABLE_AUTH_ROOT_AUTO_UPDATE 0x00000100
1034 #define CERT_CHAIN_TIMESTAMP_TIME 0x00000200
1035
1036 typedef struct _CERT_CHAIN_PARA {
1037 DWORD cbSize;
1038 CERT_USAGE_MATCH RequestedUsage;
1039 #ifdef CERT_CHAIN_PARA_HAS_EXTRA_FIELDS
1040 CERT_USAGE_MATCH RequestedIssuancePolicy;
1041 DWORD dwUrlRetrievalTimeout;
1042 BOOL fCheckRevocationFreshnessTime;
1043 DWORD dwRevocationFreshnessTime;
1044 #endif
1045 } CERT_CHAIN_PARA, *PCERT_CHAIN_PARA;
1046
1047 typedef struct _CERT_SYSTEM_STORE_INFO {
1048 DWORD cbSize;
1049 } CERT_SYSTEM_STORE_INFO, *PCERT_SYSTEM_STORE_INFO;
1050
1051 typedef struct _CERT_PHYSICAL_STORE_INFO {
1052 DWORD cbSize;
1053 LPSTR pszOpenStoreProvider;
1054 DWORD dwOpenEncodingType;
1055 DWORD dwOpenFlags;
1056 CRYPT_DATA_BLOB OpenParameters;
1057 DWORD dwFlags;
1058 DWORD dwPriority;
1059 } CERT_PHYSICAL_STORE_INFO, *PCERT_PHYSICAL_STORE_INFO;
1060
1061 typedef struct _CERT_SYSTEM_STORE_RELOCATE_PARA {
1062 union {
1063 HKEY hKeyBase;
1064 VOID *pvBase;
1065 } DUMMYUNIONNAME;
1066 union {
1067 void *pvSystemStore;
1068 LPCSTR pszSystemStore;
1069 LPCWSTR pwszSystemStore;
1070 } DUMMYUNIONNAME2;
1071 } CERT_SYSTEM_STORE_RELOCATE_PARA, *PCERT_SYSTEM_STORE_RELOCATE_PARA;
1072
1073 typedef BOOL (WINAPI *PFN_CERT_ENUM_SYSTEM_STORE_LOCATION)(
1074 LPCWSTR pwszStoreLocation, DWORD dwFlags, void *pvReserved, void *pvArg);
1075
1076 typedef BOOL (WINAPI *PFN_CERT_ENUM_SYSTEM_STORE)(const void *pvSystemStore,
1077 DWORD dwFlags, PCERT_SYSTEM_STORE_INFO pStoreInfo, void *pvReserved,
1078 void *pvArg);
1079
1080 typedef BOOL (WINAPI *PFN_CERT_ENUM_PHYSICAL_STORE)(const void *pvSystemStore,
1081 DWORD dwFlags, LPCWSTR pwszStoreName, PCERT_PHYSICAL_STORE_INFO pStoreInfo,
1082 void *pvReserved, void *pvArg);
1083
1084 /* Encode/decode object */
1085 typedef LPVOID (WINAPI *PFN_CRYPT_ALLOC)(size_t cbsize);
1086 typedef VOID (WINAPI *PFN_CRYPT_FREE)(LPVOID pv);
1087
1088 typedef struct _CRYPT_ENCODE_PARA {
1089 DWORD cbSize;
1090 PFN_CRYPT_ALLOC pfnAlloc;
1091 PFN_CRYPT_FREE pfnFree;
1092 } CRYPT_ENCODE_PARA, *PCRYPT_ENCODE_PARA;
1093
1094 typedef struct _CRYPT_DECODE_PARA {
1095 DWORD cbSize;
1096 PFN_CRYPT_ALLOC pfnAlloc;
1097 PFN_CRYPT_FREE pfnFree;
1098 } CRYPT_DECODE_PARA, *PCRYPT_DECODE_PARA;
1099
1100 typedef struct _CERT_STORE_PROV_INFO {
1101 DWORD cbSize;
1102 DWORD cStoreProvFunc;
1103 void **rgpvStoreProvFunc;
1104 HCERTSTOREPROV hStoreProv;
1105 DWORD dwStoreProvFlags;
1106 HCRYPTOIDFUNCADDR hStoreProvFuncAddr2;
1107 } CERT_STORE_PROV_INFO, *PCERT_STORE_PROV_INFO;
1108
1109 typedef BOOL (WINAPI *PFN_CERT_DLL_OPEN_STORE_PROV_FUNC)(
1110 LPCSTR lpszStoreProvider, DWORD dwEncodingType, HCRYPTPROV_LEGACY hCryptProv,
1111 DWORD dwFlags, const void *pvPara, HCERTSTORE hCertStore,
1112 PCERT_STORE_PROV_INFO pStoreProvInfo);
1113
1114 typedef void (WINAPI *PFN_CERT_STORE_PROV_CLOSE)(HCERTSTOREPROV hStoreProv,
1115 DWORD dwFlags);
1116
1117 typedef BOOL (WINAPI *PFN_CERT_STORE_PROV_READ_CERT)(HCERTSTOREPROV hStoreProv,
1118 PCCERT_CONTEXT pStoreCertContext, DWORD dwFlags,
1119 PCCERT_CONTEXT *ppProvCertContext);
1120
1121 typedef BOOL (WINAPI *PFN_CERT_STORE_PROV_WRITE_CERT)(HCERTSTOREPROV hStoreProv,
1122 PCCERT_CONTEXT pCertContext, DWORD dwFlags);
1123
1124 typedef BOOL (WINAPI *PFN_CERT_STORE_PROV_DELETE_CERT)(
1125 HCERTSTOREPROV hStoreProv, PCCERT_CONTEXT pCertContext, DWORD dwFlags);
1126
1127 typedef BOOL (WINAPI *PFN_CERT_STORE_PROV_SET_CERT_PROPERTY)(
1128 HCERTSTOREPROV hStoreProv, PCCERT_CONTEXT pCertContext, DWORD dwPropId,
1129 DWORD dwFlags, const void *pvData);
1130
1131 typedef BOOL (WINAPI *PFN_CERT_STORE_PROV_READ_CRL)(HCERTSTOREPROV hStoreProv,
1132 PCCRL_CONTEXT pStoreCrlContext, DWORD dwFlags,
1133 PCCRL_CONTEXT *ppProvCrlContext);
1134
1135 typedef BOOL (WINAPI *PFN_CERT_STORE_PROV_WRITE_CRL)(HCERTSTOREPROV hStoreProv,
1136 PCCRL_CONTEXT pCrlContext, DWORD dwFlags);
1137
1138 typedef BOOL (WINAPI *PFN_CERT_STORE_PROV_DELETE_CRL)(HCERTSTOREPROV hStoreProv,
1139 PCCRL_CONTEXT pCrlContext, DWORD dwFlags);
1140
1141 typedef BOOL (WINAPI *PFN_CERT_STORE_PROV_SET_CRL_PROPERTY)(
1142 HCERTSTOREPROV hStoreProv, PCCRL_CONTEXT pCrlContext, DWORD dwPropId,
1143 DWORD dwFlags, const void *pvData);
1144
1145 typedef BOOL (WINAPI *PFN_CERT_STORE_PROV_READ_CTL)(HCERTSTOREPROV hStoreProv,
1146 PCCTL_CONTEXT pStoreCtlContext, DWORD dwFlags,
1147 PCCTL_CONTEXT *ppProvCtlContext);
1148
1149 typedef BOOL (WINAPI *PFN_CERT_STORE_PROV_WRITE_CTL)(HCERTSTOREPROV hStoreProv,
1150 PCCTL_CONTEXT pCtlContext, DWORD dwFlags);
1151
1152 typedef BOOL (WINAPI *PFN_CERT_STORE_PROV_DELETE_CTL)(
1153 HCERTSTOREPROV hStoreProv, PCCTL_CONTEXT pCtlContext, DWORD dwFlags);
1154
1155 typedef BOOL (WINAPI *PFN_CERT_STORE_PROV_SET_CTL_PROPERTY)(
1156 HCERTSTOREPROV hStoreProv, PCCTL_CONTEXT pCtlContext, DWORD dwPropId,
1157 DWORD dwFlags, const void *pvData);
1158
1159 typedef BOOL (WINAPI *PFN_CERT_STORE_PROV_CONTROL)(HCERTSTOREPROV hStoreProv,
1160 DWORD dwFlags, DWORD dwCtrlType, void const *pvCtrlPara);
1161
1162 typedef struct _CERT_STORE_PROV_FIND_INFO {
1163 DWORD cbSize;
1164 DWORD dwMsgAndCertEncodingType;
1165 DWORD dwFindFlags;
1166 DWORD dwFindType;
1167 const void *pvFindPara;
1168 } CERT_STORE_PROV_FIND_INFO, *PCERT_STORE_PROV_FIND_INFO;
1169 typedef const CERT_STORE_PROV_FIND_INFO CCERT_STORE_PROV_FIND_INFO,
1170 *PCCERT_STORE_PROV_FIND_INFO;
1171
1172 typedef BOOL (WINAPI *PFN_CERT_STORE_PROV_FIND_CERT)(HCERTSTOREPROV hStoreProv,
1173 PCCERT_STORE_PROV_FIND_INFO pFindInfo, PCCERT_CONTEXT pPrevCertContext,
1174 DWORD dwFlags, void **ppvStoreProvFindInfo, PCCERT_CONTEXT *ppProvCertContext);
1175
1176 typedef BOOL (WINAPI *PFN_CERT_STORE_PROV_FREE_FIND_CERT)(
1177 HCERTSTOREPROV hStoreProv, PCCERT_CONTEXT pCertContext,
1178 void *pvStoreProvFindInfo, DWORD dwFlags);
1179
1180 typedef BOOL (WINAPI *PFN_CERT_STORE_PROV_GET_CERT_PROPERTY)(
1181 HCERTSTOREPROV hStoreProv, PCCERT_CONTEXT pCertContext, DWORD dwPropId,
1182 DWORD dwFlags, void *pvData, DWORD *pcbData);
1183
1184 typedef BOOL (WINAPI *PFN_CERT_STORE_PROV_FIND_CRL)(HCERTSTOREPROV hStoreProv,
1185 PCCERT_STORE_PROV_FIND_INFO pFindInfo, PCCRL_CONTEXT pPrevCrlContext,
1186 DWORD dwFlags, void **ppvStoreProvFindInfo, PCCRL_CONTEXT *ppProvCrlContext);
1187
1188 typedef BOOL (WINAPI *PFN_CERT_STORE_PROV_FREE_FIND_CRL)(
1189 HCERTSTOREPROV hStoreProv, PCCRL_CONTEXT pCrlContext,
1190 void *pvStoreProvFindInfo, DWORD dwFlags);
1191
1192 typedef BOOL (WINAPI *PFN_CERT_STORE_PROV_GET_CRL_PROPERTY)(
1193 HCERTSTOREPROV hStoreProv, PCCRL_CONTEXT pCrlContext, DWORD dwPropId,
1194 DWORD dwFlags, void *pvData, DWORD *pcbData);
1195
1196 typedef BOOL (WINAPI *PFN_CERT_STORE_PROV_FIND_CTL)(HCERTSTOREPROV hStoreProv,
1197 PCCTL_CONTEXT pCtlContext, void *pvStoreProvFindInfo, DWORD dwFlags);
1198
1199 typedef BOOL (WINAPI *PFN_CERT_STORE_PROV_GET_CTL_PROPERTY)(
1200 HCERTSTOREPROV hStoreProv, PCCTL_CONTEXT pCtlContext, DWORD dwPropId,
1201 DWORD dwFlags, void *pvData);
1202
1203 typedef struct _CERT_CREATE_CONTEXT_PARA {
1204 DWORD cbSize;
1205 PFN_CRYPT_FREE pfnFree;
1206 void *pvFree;
1207 } CERT_CREATE_CONTEXT_PARA, *PCERT_CREATE_CONTEXT_PARA;
1208
1209 typedef struct _CRYPT_OID_FUNC_ENTRY {
1210 LPCSTR pszOID;
1211 void *pvFuncAddr;
1212 } CRYPT_OID_FUNC_ENTRY, *PCRYPT_OID_FUNC_ENTRY;
1213
1214 typedef BOOL (WINAPI *PFN_CRYPT_ENUM_OID_FUNC)(DWORD dwEncodingType,
1215 LPCSTR pszFuncName, LPCSTR pszOID, DWORD cValue, const DWORD rgdwValueType[],
1216 LPCWSTR const rgpwszValueName[], const BYTE * const rgpbValueData[],
1217 const DWORD rgcbValueData[], void *pvArg);
1218
1219 #define CRYPT_MATCH_ANY_ENCODING_TYPE 0xffffffff
1220
1221 typedef struct _CRYPT_OID_INFO {
1222 DWORD cbSize;
1223 LPCSTR pszOID;
1224 LPCWSTR pwszName;
1225 DWORD dwGroupId;
1226 union {
1227 DWORD dwValue;
1228 ALG_ID Algid;
1229 DWORD dwLength;
1230 } DUMMYUNIONNAME;
1231 CRYPT_DATA_BLOB ExtraInfo;
1232 } CRYPT_OID_INFO, *PCRYPT_OID_INFO;
1233 typedef const CRYPT_OID_INFO CCRYPT_OID_INFO, *PCCRYPT_OID_INFO;
1234
1235 typedef BOOL (WINAPI *PFN_CRYPT_ENUM_OID_INFO)(PCCRYPT_OID_INFO pInfo,
1236 void *pvArg);
1237
1238 typedef struct _CRYPT_SIGN_MESSAGE_PARA {
1239 DWORD cbSize;
1240 DWORD dwMsgEncodingType;
1241 PCCERT_CONTEXT pSigningCert;
1242 CRYPT_ALGORITHM_IDENTIFIER HashAlgorithm;
1243 void * pvHashAuxInfo;
1244 DWORD cMsgCert;
1245 PCCERT_CONTEXT *rgpMsgCert;
1246 DWORD cMsgCrl;
1247 PCCRL_CONTEXT *rgpMsgCrl;
1248 DWORD cAuthAttr;
1249 PCRYPT_ATTRIBUTE rgAuthAttr;
1250 DWORD cUnauthAttr;
1251 PCRYPT_ATTRIBUTE rgUnauthAttr;
1252 DWORD dwFlags;
1253 DWORD dwInnerContentType;
1254 #ifdef CRYPT_SIGN_MESSAGE_PARA_HAS_CMS_FIELDS
1255 CRYPT_ALGORITHM_IDENTIFIER HashEncryptionAlgorithm;
1256 void * pvHashEncryptionAuxInfo;
1257 #endif
1258 } CRYPT_SIGN_MESSAGE_PARA, *PCRYPT_SIGN_MESSAGE_PARA;
1259
1260 #define CRYPT_MESSAGE_BARE_CONTENT_OUT_FLAG 0x00000001
1261 #define CRYPT_MESSAGE_ENCAPSULATED_CONTENT_OUT_FLAG 0x00000002
1262 #define CRYPT_MESSAGE_KEYID_SIGNER_FLAG 0x00000004
1263 #define CRYPT_MESSAGE_SILENT_KEYSET_FLAG 0x00000008
1264
1265 typedef PCCERT_CONTEXT (WINAPI *PFN_CRYPT_GET_SIGNER_CERTIFICATE)(void *pvArg,
1266 DWORD dwCertEncodingType, PCERT_INFO pSignerId, HCERTSTORE hMsgCertStore);
1267
1268 typedef struct _CRYPT_VERIFY_MESSAGE_PARA {
1269 DWORD cbSize;
1270 DWORD dwMsgAndCertEncodingType;
1271 HCRYPTPROV_LEGACY hCryptProv;
1272 PFN_CRYPT_GET_SIGNER_CERTIFICATE pfnGetSignerCertificate;
1273 void * pvGetArg;
1274 } CRYPT_VERIFY_MESSAGE_PARA, *PCRYPT_VERIFY_MESSAGE_PARA;
1275
1276 typedef struct _CRYPT_ENCRYPT_MESSAGE_PARA {
1277 DWORD cbSize;
1278 DWORD dwMsgEncodingType;
1279 HCRYPTPROV_LEGACY hCryptProv;
1280 CRYPT_ALGORITHM_IDENTIFIER ContentEncryptionAlgorithm;
1281 void * pvEncryptionAuxInfo;
1282 DWORD dwFlags;
1283 DWORD dwInnerContentType;
1284 } CRYPT_ENCRYPT_MESSAGE_PARA, *PCRYPT_ENCRYPT_MESSAGE_PARA;
1285
1286 #define CRYPT_MESSAGE_KEYID_RECIPIENT_FLAG 0x00000004
1287
1288 typedef struct _CRYPT_DECRYPT_MESSAGE_PARA {
1289 DWORD cbSize;
1290 DWORD dwMsgAndCertEncodingType;
1291 DWORD cCertStore;
1292 HCERTSTORE *rghCertStore;
1293 #ifdef CRYPT_DECRYPT_MESSAGE_PARA_HAS_EXTRA_FIELDS
1294 DWORD dwFlags;
1295 #endif
1296 } CRYPT_DECRYPT_MESSAGE_PARA, *PCRYPT_DECRYPT_MESSAGE_PARA;
1297
1298 typedef struct _CRYPT_HASH_MESSAGE_PARA {
1299 DWORD cbSize;
1300 DWORD dwMsgEncodingType;
1301 HCRYPTPROV_LEGACY hCryptProv;
1302 CRYPT_ALGORITHM_IDENTIFIER HashAlgorithm;
1303 void * pvHashAuxInfo;
1304 } CRYPT_HASH_MESSAGE_PARA, *PCRYPT_HASH_MESSAGE_PARA;
1305
1306 typedef struct _CRYPT_KEY_SIGN_MESSAGE_PARA {
1307 DWORD cbSize;
1308 DWORD dwMsgAndCertEncodingType;
1309 HCRYPTPROV hCryptProv;
1310 DWORD dwKeySpec;
1311 CRYPT_ALGORITHM_IDENTIFIER HashAlgorithm;
1312 void * pvHashAuxInfo;
1313 } CRYPT_KEY_SIGN_MESSAGE_PARA, *PCRYPT_KEY_SIGN_MESSAGE_PARA;
1314
1315 typedef struct _CRYPT_KEY_VERIFY_MESSAGE_PARA {
1316 DWORD cbSize;
1317 DWORD dwMsgEncodingType;
1318 HCRYPTPROV_LEGACY hCryptProv;
1319 } CRYPT_KEY_VERIFY_MESSAGE_PARA, *PCRYPT_KEY_VERIFY_MESSAGE_PARA;
1320
1321 typedef struct _CRYPT_URL_ARRAY {
1322 DWORD cUrl;
1323 LPWSTR *rgwszUrl;
1324 } CRYPT_URL_ARRAY, *PCRYPT_URL_ARRAY;
1325
1326 typedef struct _CRYPT_URL_INFO {
1327 DWORD cbSize;
1328 DWORD dwSyncDeltaTime;
1329 DWORD cGroup;
1330 DWORD *rgcGroupEntry;
1331 } CRYPT_URL_INFO, *PCRYPT_URL_INFO;
1332
1333 #define URL_OID_CERTIFICATE_ISSUER ((LPCSTR)1)
1334 #define URL_OID_CERTIFICATE_CRL_DIST_POINT ((LPCSTR)2)
1335 #define URL_OID_CTL_ISSUER ((LPCSTR)3)
1336 #define URL_OID_CTL_NEXT_UPDATE ((LPCSTR)4)
1337 #define URL_OID_CRL_ISSUER ((LPCSTR)5)
1338 #define URL_OID_CERTIFICATE_FRESHEST_CRL ((LPCSTR)6)
1339 #define URL_OID_CRL_FRESHEST_CRL ((LPCSTR)7)
1340 #define URL_OID_CROSS_CERT_DIST_POINT ((LPCSTR)8)
1341
1342 #define URL_OID_GET_OBJECT_URL_FUNC "UrlDllGetObjectUrl"
1343
1344 typedef HANDLE HCRYPTASYNC, *PHCRYPTASYNC;
1345
1346 typedef void (WINAPI *PFN_CRYPT_ASYNC_PARAM_FREE_FUNC)(LPSTR pszParamOid,
1347 LPVOID pvParam);
1348
1349 #define CRYPT_PARAM_ASYNC_RETRIEVAL_COMPLETION ((LPCSTR)1)
1350 #define CRYPT_PARAM_CANCEL_ASYNC_RETRIEVAL ((LPCSTR)2)
1351
1352 typedef void (WINAPI *PFN_CRYPT_ASYNC_RETRIEVAL_COMPLETION_FUNC)(
1353 void *pvCompletion, DWORD dwCompletionCode, LPCSTR pszURL, LPSTR pszObjectOid,
1354 void *pvObject);
1355
1356 typedef struct _CRYPT_ASYNC_RETRIEVAL_COMPLETION
1357 {
1358 PFN_CRYPT_ASYNC_RETRIEVAL_COMPLETION_FUNC pfnCompletion;
1359 void *pvCompletion;
1360 } CRYPT_ASYNC_RETRIEVAL_COMPLETION, *PCRYPT_ASYNC_RETRIEVAL_COMPLETION;
1361
1362 typedef BOOL (WINAPI *PFN_CANCEL_ASYNC_RETRIEVAL_FUNC)(
1363 HCRYPTASYNC hAsyncRetrieve);
1364
1365 typedef struct _CRYPT_BLOB_ARRAY
1366 {
1367 DWORD cBlob;
1368 PCRYPT_DATA_BLOB rgBlob;
1369 } CRYPT_BLOB_ARRAY, *PCRYPT_BLOB_ARRAY;
1370
1371 typedef struct _CRYPT_CREDENTIALS {
1372 DWORD cbSize;
1373 LPCSTR pszCredentialsOid;
1374 LPVOID pvCredentials;
1375 } CRYPT_CREDENTIALS, *PCRYPT_CREDENTIALS;
1376
1377 #define CREDENTIAL_OID_PASSWORD_CREDENTIALS_A ((LPCSTR)1)
1378 #define CREDENTIAL_OID_PASSWORD_CREDENTIALS_W ((LPCSTR)2)
1379 #define CREDENTIAL_OID_PASSWORD_CREDENTIALS \
1380 WINELIB_NAME_AW(CREDENTIAL_OID_PASSWORD_CREDENTIALS_)
1381
1382 typedef struct _CRYPT_PASSWORD_CREDENTIALSA {
1383 DWORD cbSize;
1384 LPSTR pszUsername;
1385 LPSTR pszPassword;
1386 } CRYPT_PASSWORD_CREDENTIALSA, *PCRYPT_PASSWORD_CREDENTIALSA;
1387
1388 typedef struct _CRYPT_PASSWORD_CREDENTIALSW {
1389 DWORD cbSize;
1390 LPWSTR pszUsername;
1391 LPWSTR pszPassword;
1392 } CRYPT_PASSWORD_CREDENTIALSW, *PCRYPT_PASSWORD_CREDENTIALSW;
1393 #define CRYPT_PASSWORD_CREDENTIALS WINELIB_NAME_AW(CRYPT_PASSWORD_CREDENTIALS)
1394 #define PCRYPT_PASSWORD_CREDENTIALS WINELIB_NAME_AW(PCRYPT_PASSWORD_CREDENTIALS)
1395
1396 typedef struct _CRYPT_RETRIEVE_AUX_INFO {
1397 DWORD cbSize;
1398 FILETIME *pLastSyncTime;
1399 DWORD dwMaxUrlRetrievalByteCount;
1400 } CRYPT_RETRIEVE_AUX_INFO, *PCRYPT_RETRIEVE_AUX_INFO;
1401
1402 typedef void (WINAPI *PFN_FREE_ENCODED_OBJECT_FUNC)(LPCSTR pszObjectOid,
1403 PCRYPT_BLOB_ARRAY pObject, void *pvFreeContext);
1404
1405 #define SCHEME_OID_RETRIEVE_ENCODED_OBJECT_FUNC \
1406 "SchemeDllRetrieveEncodedObject"
1407 #define SCHEME_OID_RETRIEVE_ENCODED_OBJECTW_FUNC \
1408 "SchemeDllRetrieveEncodedObjectW"
1409 /* The signature of SchemeDllRetrieveEncodedObjectW is:
1410 BOOL WINAPI SchemeDllRetrieveEncodedObjectW(LPCWSTR pwszUrl,
1411 LPCSTR pszObjectOid, DWORD dwRetrievalFlags, DWORD dwTimeout,
1412 PCRYPT_BLOB_ARRAY pObject, PFN_FREE_ENCODED_OBJECT_FUNC *ppfnFreeObject,
1413 void **ppvFreeContext, HCRYPTASYNC hAsyncRetrieve,
1414 PCRYPT_CREDENTIALS pCredentials, PCRYPT_RETRIEVE_AUX_INFO pAuxInfo);
1415 */
1416
1417 #define CONTEXT_OID_CREATE_OBJECT_CONTEXT_FUNC "ContextDllCreateObjectContext"
1418 /* The signature of ContextDllCreateObjectContext is:
1419 BOOL WINAPI ContextDllCreateObjectContext(LPCSTR pszObjectOid,
1420 DWORD dwRetrievalFlags, PCRYPT_BLOB_ARRAY pObject, void **ppvContxt);
1421 */
1422
1423 #define CONTEXT_OID_CERTIFICATE ((LPCSTR)1)
1424 #define CONTEXT_OID_CRL ((LPCSTR)2)
1425 #define CONTEXT_OID_CTL ((LPCSTR)3)
1426 #define CONTEXT_OID_PKCS7 ((LPCSTR)4)
1427 #define CONTEXT_OID_CAPI2_ANY ((LPCSTR)5)
1428
1429 #define CRYPT_RETRIEVE_MULTIPLE_OBJECTS 0x00000001
1430 #define CRYPT_CACHE_ONLY_RETRIEVAL 0x00000002
1431 #define CRYPT_WIRE_ONLY_RETRIEVAL 0x00000004
1432 #define CRYPT_DONT_CACHE_RESULT 0x00000008
1433 #define CRYPT_ASYNC_RETRIEVAL 0x00000010
1434 #define CRYPT_STICKY_CACHE_RETRIEVAL 0x00001000
1435 #define CRYPT_LDAP_SCOPE_BASE_ONLY_RETRIEVAL 0x00002000
1436 #define CRYPT_OFFLINE_CHECK_RETRIEVAL 0x00004000
1437 #define CRYPT_LDAP_INSERT_ENTRY_ATTRIBUTE 0x00008000
1438 #define CRYPT_LDAP_SIGN_RETRIEVAL 0x00010000
1439 #define CRYPT_NO_AUTH_RETRIEVAL 0x00020000
1440 #define CRYPT_LDAP_AREC_EXCLUSIVE_RETRIEVAL 0x00040000
1441 #define CRYPT_AIA_RETRIEVAL 0x00080000
1442
1443 #define CRYPT_VERIFY_CONTEXT_SIGNATURE 0x00000020
1444 #define CRYPT_VERIFY_DATA_HASH 0x00000040
1445 #define CRYPT_KEEP_TIME_VALID 0x00000080
1446 #define CRYPT_DONT_VERIFY_SIGNATURE 0x00000100
1447 #define CRYPT_DONT_CHECK_TIME_VALIDITY 0x00000200
1448 #define CRYPT_CHECK_FRESHNESS_TIME_VALIDITY 0x00000400
1449 #define CRYPT_ACCUMULATIVE_TIMEOUT 0x00000800
1450
1451 typedef BOOL (WINAPI *PFN_CRYPT_CANCEL_RETRIEVAL)(DWORD dwFlags, void *pvArg);
1452
1453 typedef struct _CERT_CRL_CONTEXT_PAIR
1454 {
1455 PCCERT_CONTEXT pCertContext;
1456 PCCRL_CONTEXT pCrlContext;
1457 } CERT_CRL_CONTEXT_PAIR, *PCERT_CRL_CONTEXT_PAIR;
1458 typedef const CERT_CRL_CONTEXT_PAIR *PCCERT_CRL_CONTEXT_PAIR;
1459
1460 #define TIME_VALID_OID_GET_OBJECT_FUNC "TimeValidDllGetObject"
1461
1462 #define TIME_VALID_OID_GET_CTL ((LPCSTR)1)
1463 #define TIME_VALID_OID_GET_CRL ((LPCSTR)2)
1464 #define TIME_VALID_OID_GET_CRL_FROM_CERT ((LPCSTR)3)
1465 #define TIME_VALID_OID_GET_FRESHEST_CRL_FROM_CERT ((LPCSTR)4)
1466 #define TIME_VALID_OID_GET_FRESHEST_CRL_FROM_CRL ((LPCSTR)5)
1467
1468 #define TIME_VALID_OID_FLUSH_OBJECT_FUNC "TimeValidDllFlushObject"
1469
1470 #define TIME_VALID_OID_FLUSH_CTL ((LPCSTR)1)
1471 #define TIME_VALID_OID_FLUSH_CRL ((LPCSTR)2)
1472 #define TIME_VALID_OID_FLUSH_CRL_FROM_CERT ((LPCSTR)3)
1473 #define TIME_VALID_OID_FLUSH_FRESHEST_CRL_FROM_CERT ((LPCSTR)4)
1474 #define TIME_VALID_OID_FLUSH_FRESHEST_CRL_FROM_CRL ((LPCSTR)5)
1475
1476 /* OID group IDs */
1477 #define CRYPT_HASH_ALG_OID_GROUP_ID 1
1478 #define CRYPT_ENCRYPT_ALG_OID_GROUP_ID 2
1479 #define CRYPT_PUBKEY_ALG_OID_GROUP_ID 3
1480 #define CRYPT_SIGN_ALG_OID_GROUP_ID 4
1481 #define CRYPT_RDN_ATTR_OID_GROUP_ID 5
1482 #define CRYPT_EXT_OR_ATTR_OID_GROUP_ID 6
1483 #define CRYPT_ENHKEY_USAGE_OID_GROUP_ID 7
1484 #define CRYPT_POLICY_OID_GROUP_ID 8
1485 #define CRYPT_TEMPLATE_OID_GROUP_ID 9
1486 #define CRYPT_LAST_OID_GROUP_ID 9
1487
1488 #define CRYPT_FIRST_ALG_OID_GROUP_ID CRYPT_HASH_ALG_OID_GROUP_ID
1489 #define CRYPT_LAST_ALG_OID_GROUP_ID CRYPT_SIGN_ALG_OID_GROUP_ID
1490
1491 #define CRYPT_OID_INHIBIT_SIGNATURE_FORMAT_FLAG 0x1
1492 #define CRYPT_OID_USE_PUBKEY_PARA_FOR_PKCS7_FLAG 0x2
1493 #define CRYPT_OID_NO_NULL_ALGORITHM_PARA_FLAG 0x4
1494
1495 #define CRYPT_OID_INFO_OID_KEY 1
1496 #define CRYPT_OID_INFO_NAME_KEY 2
1497 #define CRYPT_OID_INFO_ALGID_KEY 3
1498 #define CRYPT_OID_INFO_SIGN_KEY 4
1499
1500 /* Algorithm IDs */
1501
1502 #define GET_ALG_CLASS(x) (x & (7 << 13))
1503 #define GET_ALG_TYPE(x) (x & (15 << 9))
1504 #define GET_ALG_SID(x) (x & (511))
1505
1506 /* Algorithm Classes */
1507 #define ALG_CLASS_ANY (0)
1508 #define ALG_CLASS_SIGNATURE (1 << 13)
1509 #define ALG_CLASS_MSG_ENCRYPT (2 << 13)
1510 #define ALG_CLASS_DATA_ENCRYPT (3 << 13)
1511 #define ALG_CLASS_HASH (4 << 13)
1512 #define ALG_CLASS_KEY_EXCHANGE (5 << 13)
1513 #define ALG_CLASS_ALL (7 << 13)
1514 /* Algorithm types */
1515 #define ALG_TYPE_ANY (0)
1516 #define ALG_TYPE_DSS (1 << 9)
1517 #define ALG_TYPE_RSA (2 << 9)
1518 #define ALG_TYPE_BLOCK (3 << 9)
1519 #define ALG_TYPE_STREAM (4 << 9)
1520 #define ALG_TYPE_DH (5 << 9)
1521 #define ALG_TYPE_SECURECHANNEL (6 << 9)
1522
1523 /* SIDs */
1524 #define ALG_SID_ANY (0)
1525 /* RSA SIDs */
1526 #define ALG_SID_RSA_ANY 0
1527 #define ALG_SID_RSA_PKCS 1
1528 #define ALG_SID_RSA_MSATWORK 2
1529 #define ALG_SID_RSA_ENTRUST 3
1530 #define ALG_SID_RSA_PGP 4
1531 /* DSS SIDs */
1532 #define ALG_SID_DSS_ANY 0
1533 #define ALG_SID_DSS_PKCS 1
1534 #define ALG_SID_DSS_DMS 2
1535
1536 /* DES SIDs */
1537 #define ALG_SID_DES 1
1538 #define ALG_SID_3DES 3
1539 #define ALG_SID_DESX 4
1540 #define ALG_SID_IDEA 5
1541 #define ALG_SID_CAST 6
1542 #define ALG_SID_SAFERSK64 7
1543 #define ALG_SID_SAFERSK128 8
1544 #define ALG_SID_3DES_112 9
1545 #define ALG_SID_CYLINK_MEK 12
1546 #define ALG_SID_RC5 13
1547 #define ALG_SID_AES_128 14
1548 #define ALG_SID_AES_192 15
1549 #define ALG_SID_AES_256 16
1550 #define ALG_SID_AES 17
1551 /* Diffie-Hellmans SIDs */
1552 #define ALG_SID_DH_SANDF 1
1553 #define ALG_SID_DH_EPHEM 2
1554 #define ALG_SID_AGREED_KEY_ANY 3
1555 #define ALG_SID_KEA 4
1556 /* RC2 SIDs */
1557 #define ALG_SID_RC4 1
1558 #define ALG_SID_RC2 2
1559 #define ALG_SID_SEAL 2
1560 /* Hash SIDs */
1561 #define ALG_SID_MD2 1
1562 #define ALG_SID_MD4 2
1563 #define ALG_SID_MD5 3
1564 #define ALG_SID_SHA 4
1565 #define ALG_SID_SHA1 ALG_SID_SHA
1566 #define ALG_SID_MAC 5
1567 #define ALG_SID_RIPEMD 6
1568 #define ALG_SID_RIPEMD160 7
1569 #define ALG_SID_SSL3SHAMD5 8
1570 #define ALG_SID_HMAC 9
1571 #define ALG_SID_TLS1PRF 10
1572 #define ALG_SID_HASH_REPLACE_OWF 11
1573 #define ALG_SID_SHA_256 12
1574 #define ALG_SID_SHA_384 13
1575 #define ALG_SID_SHA_512 14
1576 /* SCHANNEL SIDs */
1577 #define ALG_SID_SSL3_MASTER 1
1578 #define ALG_SID_SCHANNEL_MASTER_HASH 2
1579 #define ALG_SID_SCHANNEL_MAC_KEY 3
1580 #define ALG_SID_PCT1_MASTER 4
1581 #define ALG_SID_SSL2_MASTER 5
1582 #define ALG_SID_TLS1_MASTER 6
1583 #define ALG_SID_SCHANNEL_ENC_KEY 7
1584 #define ALG_SID_EXAMPLE 80
1585
1586 /* Algorithm Definitions */
1587 #define CALG_MD2 (ALG_CLASS_HASH | ALG_TYPE_ANY | ALG_SID_MD2)
1588 #define CALG_MD4 (ALG_CLASS_HASH | ALG_TYPE_ANY | ALG_SID_MD4)
1589 #define CALG_MD5 (ALG_CLASS_HASH | ALG_TYPE_ANY | ALG_SID_MD5)
1590 #define CALG_SHA (ALG_CLASS_HASH | ALG_TYPE_ANY | ALG_SID_SHA)
1591 #define CALG_SHA1 CALG_SHA
1592 #define CALG_MAC (ALG_CLASS_HASH | ALG_TYPE_ANY | ALG_SID_MAC)
1593 #define CALG_SSL3_SHAMD5 (ALG_CLASS_HASH | ALG_TYPE_ANY | ALG_SID_SSL3SHAMD5)
1594 #define CALG_HMAC (ALG_CLASS_HASH | ALG_TYPE_ANY | ALG_SID_HMAC)
1595 #define CALG_TLS1PRF (ALG_CLASS_HASH | ALG_TYPE_ANY | ALG_SID_TLS1PRF)
1596 #define CALG_HASH_REPLACE_OWF (ALG_CLASS_HASH | ALG_TYPE_ANY | ALG_SID_HASH_REPLACE_OWF)
1597 #define CALG_SHA_256 (ALG_CLASS_HASH | ALG_TYPE_ANY | ALG_SID_SHA_256)
1598 #define CALG_SHA_384 (ALG_CLASS_HASH | ALG_TYPE_ANY | ALG_SID_SHA_384)
1599 #define CALG_SHA_512 (ALG_CLASS_HASH | ALG_TYPE_ANY | ALG_SID_SHA_512)
1600 #define CALG_RSA_SIGN (ALG_CLASS_SIGNATURE | ALG_TYPE_RSA | ALG_SID_RSA_ANY)
1601 #define CALG_DSS_SIGN (ALG_CLASS_SIGNATURE | ALG_TYPE_DSS | ALG_SID_DSS_ANY)
1602 #define CALG_NO_SIGN (ALG_CLASS_SIGNATURE | ALG_TYPE_ANY | ALG_SID_ANY)
1603 #define CALG_DH_SF (ALG_CLASS_KEY_EXCHANGE | ALG_TYPE_DH | ALG_SID_DH_SANDF)
1604 #define CALG_DH_EPHEM (ALG_CLASS_KEY_EXCHANGE | ALG_TYPE_DH | ALG_SID_DH_EPHEM)
1605 #define CALG_RSA_KEYX (ALG_CLASS_KEY_EXCHANGE | ALG_TYPE_RSA | ALG_SID_RSA_ANY)
1606 #define CALG_DES (ALG_CLASS_DATA_ENCRYPT | ALG_TYPE_BLOCK | ALG_SID_DES)
1607 #define CALG_RC2 (ALG_CLASS_DATA_ENCRYPT | ALG_TYPE_BLOCK | ALG_SID_RC2)
1608 #define CALG_3DES (ALG_CLASS_DATA_ENCRYPT | ALG_TYPE_BLOCK | ALG_SID_3DES)
1609 #define CALG_3DES_112 (ALG_CLASS_DATA_ENCRYPT | ALG_TYPE_BLOCK | ALG_SID_3DES_112)
1610 #define CALG_AES_128 (ALG_CLASS_DATA_ENCRYPT | ALG_TYPE_BLOCK | ALG_SID_AES_128)
1611 #define CALG_AES_192 (ALG_CLASS_DATA_ENCRYPT | ALG_TYPE_BLOCK | ALG_SID_AES_192)
1612 #define CALG_AES_256 (ALG_CLASS_DATA_ENCRYPT | ALG_TYPE_BLOCK | ALG_SID_AES_256)
1613 #define CALG_AES (ALG_CLASS_DATA_ENCRYPT | ALG_TYPE_BLOCK | ALG_SID_AES)
1614 #define CALG_RC4 (ALG_CLASS_DATA_ENCRYPT | ALG_TYPE_STREAM | ALG_SID_RC4)
1615 #define CALG_SEAL (ALG_CLASS_DATA_ENCRYPT | ALG_TYPE_STREAM | ALG_SID_SEAL)
1616 #define CALG_RC5 (ALG_CLASS_DATA_ENCRYPT | ALG_TYPE_STREAM | ALG_SID_RC5)
1617 #define CALG_SSL3_MASTER (ALG_CLASS_MSG_ENCRYPT | ALG_TYPE_SECURECHANNEL | ALG_SID_SSL3_MASTER)
1618 #define CALG_SCHANNEL_MASTER_HASH (ALG_CLASS_MSG_ENCRYPT | ALG_TYPE_SECURECHANNEL | ALG_SID_SCHANNEL_MASTER_HASH)
1619 #define CALG_SCHANNEL_MAC_KEY (ALG_CLASS_MSG_ENCRYPT | ALG_TYPE_SECURECHANNEL | ALG_SID_SCHANNEL_MAC_KEY)
1620 #define CALG_SCHANNEL_ENC_KEY (ALG_CLASS_MSG_ENCRYPT | ALG_TYPE_SECURECHANNEL | ALG_SID_SCHANNEL_ENC_KEY)
1621 #define CALG_PCT1_MASTER (ALG_CLASS_MSG_ENCRYPT | ALG_TYPE_SECURECHANNEL | ALG_SID_PCT1_MASTER)
1622 #define CALG_SSL2_MASTER (ALG_CLASS_MSG_ENCRYPT | ALG_TYPE_SECURECHANNEL | ALG_SID_SSL2_MASTER)
1623 #define CALG_TLS1_MASTER (ALG_CLASS_MSG_ENCRYPT | ALG_TYPE_SECURECHANNEL | ALG_SID_TLS1_MASTER)
1624
1625
1626 /* Protocol Flags */
1627 #define CRYPT_FLAG_PCT1 0x0001
1628 #define CRYPT_FLAG_SSL2 0x0002
1629 #define CRYPT_FLAG_SSL3 0x0004
1630 #define CRYPT_FLAG_TLS1 0x0008
1631 #define CRYPT_FLAG_IPSEC 0x0010
1632 #define CRYPT_FLAG_SIGNING 0x0020
1633
1634 /* Provider names */
1635 #define MS_DEF_PROV_A "Microsoft Base Cryptographic Provider v1.0"
1636 #if defined(__GNUC__)
1637 # define MS_DEF_PROV_W (const WCHAR []){ 'M','i','c','r','o','s','o','f','t',' ', \
1638 'B','a','s','e',' ','C','r','y','p','t','o','g','r','a','p','h','i','c',' ', \
1639 'P','r','o','v','i','d','e','r',' ','v','1','.','0',0 }
1640 #elif defined(_MSC_VER)
1641 # define MS_DEF_PROV_W L"Microsoft Base Cryptographic Provider v1.0"
1642 #else
1643 static const WCHAR MS_DEF_PROV_W[] = { 'M','i','c','r','o','s','o','f','t',' ',
1644 'B','a','s','e',' ','C','r','y','p','t','o','g','r','a','p','h','i','c',' ',
1645 'P','r','o','v','i','d','e','r',' ','v','1','.','0',0 };
1646 #endif
1647 #define MS_DEF_PROV WINELIB_NAME_AW(MS_DEF_PROV_)
1648
1649 #define MS_ENHANCED_PROV_A "Microsoft Enhanced Cryptographic Provider v1.0"
1650 #if defined(__GNUC__)
1651 # define MS_ENHANCED_PROV_W (const WCHAR []){ 'M','i','c','r','o','s','o','f','t',' ', \
1652 'E','n','h','a','n','c','e','d',' ','C','r','y','p','t','o','g','r','a','p','h','i','c',' ', \
1653 'P','r','o','v','i','d','e','r',' ','v','1','.','0',0 }
1654 #elif defined(_MSC_VER)
1655 # define MS_ENHANCED_PROV_W L"Microsoft Enhanced Cryptographic Provider v1.0"
1656 #else
1657 static const WCHAR MS_ENHANCED_PROV_W[] = { 'M','i','c','r','o','s','o','f','t',' ',
1658 'E','n','h','a','n','c','e','d',' ','C','r','y','p','t','o','g','r','a','p','h','i','c',' ',
1659 'P','r','o','v','i','d','e','r',' ','v','1','.','0',0 };
1660 #endif
1661 #define MS_ENHANCED_PROV WINELIB_NAME_AW(MS_ENHANCED_PROV_)
1662
1663 #define MS_STRONG_PROV_A "Microsoft Strong Cryptographic Provider"
1664 #if defined(__GNUC__)
1665 # define MS_STRONG_PROV_W (const WCHAR []){ 'M','i','c','r','o','s','o','f','t',' ', \
1666 'S','t','r','o','n','g',' ','C','r','y','p','t','o','g','r','a','p','h','i','c',' ', \
1667 'P','r','o','v','i','d','e','r',0 }
1668 #elif defined(_MSC_VER)
1669 # define MS_STRONG_PROV_W L"Microsoft Strong Cryptographic Provider"
1670 #else
1671 static const WCHAR MS_STRONG_PROV_W[] = { 'M','i','c','r','o','s','o','f','t',' ',
1672 'S','t','r','o','n','g',' ','C','r','y','p','t','o','g','r','a','p','h','i','c',' ',
1673 'P','r','o','v','i','d','e','r',0 };
1674 #endif
1675 #define MS_STRONG_PROV WINELIB_NAME_AW(MS_STRONG_PROV_)
1676
1677 #define MS_DEF_RSA_SIG_PROV_A "Microsoft RSA Signature Cryptographic Provider"
1678 #if defined(__GNUC__)
1679 # define MS_DEF_RSA_SIG_PROV_W (const WCHAR []){ 'M','i','c','r','o','s','o','f','t',' ', \
1680 'R','S','A',' ','S','i','g','n','a','t','u','r','e',' ', \
1681 'C','r','y','p','t','o','g','r','a','p','h','i','c',' ','P','r','o','v','i','d','e','r',0 }
1682 #elif defined(_MSC_VER)
1683 # define MS_DEF_RSA_SIG_PROV_W L"Microsoft RSA Signature Cryptographic Provider"
1684 #else
1685 static const WCHAR MS_DEF_RSA_SIG_PROV_W[] = { 'M','i','c','r','o','s','o','f','t',' ',
1686 'R','S','A',' ','S','i','g','n','a','t','u','r','e',' ',
1687 'C','r','y','p','t','o','g','r','a','p','h','i','c',' ','P','r','o','v','i','d','e','r',0 };
1688 #endif
1689 #define MS_DEF_RSA_SIG_PROV WINELIB_NAME_AW(MS_DEF_RSA_SIG_PROV_)
1690
1691 #define MS_DEF_RSA_SCHANNEL_PROV_A "Microsoft RSA SChannel Cryptographic Provider"
1692 #if defined(__GNUC__)
1693 # define MS_DEF_RSA_SCHANNEL_PROV_W (const WCHAR []){ 'M','i','c','r','o','s','o','f','t',' ', \
1694 'R','S','A',' ','S','C','h','a','n','n','e','l',' ', \
1695 'C','r','y','p','t','o','g','r','a','p','h','i','c',' ','P','r','o','v','i','d','e','r',0 }
1696 #elif defined(_MSC_VER)
1697 # define MS_DEF_RSA_SCHANNEL_PROV_W L"Microsoft RSA SChannel Cryptographic Provider"
1698 #else
1699 static const WCHAR MS_DEF_RSA_SCHANNEL_PROV_W[] = { 'M','i','c','r','o','s','o','f','t',' ',
1700 'R','S','A',' ','S','C','h','a','n','n','e','l',' ',
1701 'C','r','y','p','t','o','g','r','a','p','h','i','c',' ','P','r','o','v','i','d','e','r',0 };
1702 #endif
1703 #define MS_DEF_RSA_SCHANNEL_PROV WINELIB_NAME_AW(MS_DEF_RSA_SCHANNEL_PROV_)
1704
1705 #define MS_DEF_DSS_PROV_A "Microsoft Base DSS Cryptographic Provider"
1706 #if defined(__GNUC__)
1707 # define MS_DEF_DSS_PROV_W (const WCHAR []){ 'M','i','c','r','o','s','o','f','t',' ', \
1708 'B','a','s','e',' ','D','S','S',' ', \
1709 'C','r','y','p','t','o','g','r','a','p','h','i','c',' ','P','r','o','v','i','d','e','r',0 }
1710 #elif defined(_MSC_VER)
1711 # define MS_DEF_DSS_PROV_W L"Microsoft Base DSS Cryptographic Provider"
1712 #else
1713 static const WCHAR MS_DEF_DSS_PROV_W[] = { 'M','i','c','r','o','s','o','f','t',' ',
1714 'B','a','s','e',' ','D','S','S',' ',
1715 'C','r','y','p','t','o','g','r','a','p','h','i','c',' ','P','r','o','v','i','d','e','r',0 };
1716 #endif
1717 #define MS_DEF_DSS_PROV WINELIB_NAME_AW(MS_DEF_DSS_PROV_)
1718
1719 #define MS_DEF_DSS_DH_PROV_A "Microsoft Base DSS and Diffie-Hellman Cryptographic Provider"
1720 #if defined(__GNUC__)
1721 # define MS_DEF_DSS_DH_PROV_W (const WCHAR []){ 'M','i','c','r','o','s','o','f','t',' ', \
1722 'B','a','s','e',' ','D','S','S',' ','a','n','d',' ', \
1723 'D','i','f','f','i','e','-','H','e','l','l','m','a','n',' ', \
1724 'C','r','y','p','t','o','g','r','a','p','h','i','c',' ','P','r','o','v','i','d','e','r',0 }
1725 #elif defined(_MSC_VER)
1726 # define MS_DEF_DSS_DH_PROV_W L"Microsoft Base DSS and Diffie-Hellman Cryptographic Provider"
1727 #else
1728 static const WCHAR MS_DEF_DSS_DH_PROV_W[] = { 'M','i','c','r','o','s','o','f','t',' ',
1729 'B','a','s','e',' ','D','S','S',' ','a','n','d',' ',
1730 'D','i','f','f','i','e','-','H','e','l','l','m','a','n',' ',
1731 'C','r','y','p','t','o','g','r','a','p','h','i','c',' ','P','r','o','v','i','d','e','r',0 };
1732 #endif
1733 #define MS_DEF_DSS_DH_PROV WINELIB_NAME_AW(MS_DEF_DSS_DH_PROV_)
1734
1735 #define MS_ENH_DSS_DH_PROV_A "Microsoft Enhanced DSS and Diffie-Hellman Cryptographic Provider"
1736 #if defined(__GNUC__)
1737 # define MS_ENH_DSS_DH_PROV_W (const WCHAR []){ 'M','i','c','r','o','s','o','f','t',' ', \
1738 'E','n','h','a','n','c','e','d',' ','D','S','S',' ','a','n','d',' ', \
1739 'D','i','f','f','i','e','-','H','e','l','l','m','a','n',' ', \
1740 'C','r','y','p','t','o','g','r','a','p','h','i','c',' ','P','r','o','v','i','d','e','r',0 }
1741 #elif defined(_MSC_VER)
1742 # define MS_ENH_DSS_DH_PROV_W L"Microsoft Enhanced DSS and Diffie-Hellman Cryptographic Provider"
1743 #else
1744 static const WCHAR MS_ENH_DSS_DH_PROV_W[] = { 'M','i','c','r','o','s','o','f','t',' ',
1745 'E','n','h','a','n','c','e','d',' ','D','S','S',' ','a','n','d',' ',
1746 'D','i','f','f','i','e','-','H','e','l','l','m','a','n',' ',
1747 'C','r','y','p','t','o','g','r','a','p','h','i','c',' ','P','r','o','v','i','d','e','r',0 };
1748 #endif
1749 #define MS_ENH_DSS_DH_PROV WINELIB_NAME_AW(MS_ENH_DSS_DH_PROV_)
1750
1751 #define MS_DEF_DH_SCHANNEL_PROV_A "Microsoft DH SChannel Cryptographic Provider"
1752 #if defined(__GNUC__)
1753 # define MS_DEF_DH_SCHANNEL_PROV_W (const WCHAR []){ 'M','i','c','r','o','s','o','f','t',' ', \
1754 'D','H',' ','S','C','h','a','n','n','e','l',' ', \
1755 'C','r','y','p','t','o','g','r','a','p','h','i','c',' ','P','r','o','v','i','d','e','r',0 }
1756 #elif defined(_MSC_VER)
1757 # define MS_DEF_DH_SCHANNEL_PROV_W L"Microsoft DH SChannel Cryptographic Provider"
1758 #else
1759 static const WCHAR MS_DEF_DH_SCHANNEL_PROV_W[] = { 'M','i','c','r','o','s','o','f','t',' ',
1760 'D','H',' ','S','C','h','a','n','n','e','l',' ',
1761 'C','r','y','p','t','o','g','r','a','p','h','i','c',' ','P','r','o','v','i','d','e','r',0 };
1762 #endif
1763 #define MS_DEF_DH_SCHANNEL_PROV WINELIB_NAME_AW(MS_DEF_DH_SCHANNEL_PROV_)
1764
1765 #define MS_SCARD_PROV_A "Microsoft Base Smart Card Cryptographic Provider"
1766 #if defined(__GNUC__)
1767 # define MS_SCARD_PROV_W (const WCHAR []){ 'M','i','c','r','o','s','o','f','t',' ', \
1768 'B','a','s','e',' ','S','m','a','r','t',' ','C','a','r','d',' ', \
1769 'C','r','y','p','t','o','g','r','a','p','h','i','c',' ','P','r','o','v','i','d','e','r',0 }
1770 #elif defined(_MSC_VER)
1771 # define MS_SCARD_PROV_W L"Microsoft Base Smart Card Cryptographic Provider"
1772 #else
1773 static const WCHAR MS_SCARD_PROV_W[] = { 'M','i','c','r','o','s','o','f','t',' ',
1774 'B','a','s','e',' ','S','m','a','r','t',' ','C','a','r','d',' ',
1775 'C','r','y','p','t','o','g','r','a','p','h','i','c',' ','P','r','o','v','i','d','e','r',0 };
1776 #endif
1777 #define MS_SCARD_PROV WINELIB_NAME_AW(MS_SCARD_PROV_)
1778
1779 #define MS_ENH_RSA_AES_PROV_A "Microsoft Enhanced RSA and AES Cryptographic Provider"
1780 #if defined(__GNUC__)
1781 # define MS_ENH_RSA_AES_PROV_W (const WCHAR []){ 'M','i','c','r','o','s','o','f','t',' ', \
1782 'E','n','h','a','n','c','e','d',' ','R','S','A',' ','a','n','d',' ','A','E','S',' ',\
1783 'C','r','y','p','t','o','g','r','a','p','h','i','c',' ','P','r','o','v','i','d','e','r',0 }
1784 #elif defined(_MSC_VER)
1785 # define MS_ENH_RSA_AES_PROV_W L"Microsoft Enhanced RSA and AES Cryptographic Provider"
1786 #else
1787 static const WCHAR MS_ENH_RSA_AES_PROV_W[] = { 'M','i','c','r','o','s','o','f','t',' ',
1788 'E','n','h','a','n','c','e','d',' ','R','S','A',' ','a','n','d',' ','A','E','S',' ',
1789 'C','r','y','p','t','o','g','r','a','p','h','i','c',' ','P','r','o','v','i','d','e','r',0 };
1790 #endif
1791 #define MS_ENH_RSA_AES_PROV WINELIB_NAME_AW(MS_ENH_RSA_AES_PROV_)
1792
1793 /* Key Specs*/
1794 #define AT_KEYEXCHANGE 1
1795 #define AT_SIGNATURE 2
1796
1797 /* Provider Types */
1798 #define PROV_RSA_FULL 1
1799 #define PROV_RSA_SIG 2
1800 #define PROV_DSS 3
1801 #define PROV_FORTEZZA 4
1802 #define PROV_MS_EXCHANGE 5
1803 #define PROV_SSL 6
1804 #define PROV_RSA_SCHANNEL 12
1805 #define PROV_DSS_DH 13
1806 #define PROV_EC_ECDSA_SIG 14
1807 #define PROV_EC_ECNRA_SIG 15
1808 #define PROV_EC_ECDSA_FULL 16
1809 #define PROV_EC_ECNRA_FULL 17
1810 #define PROV_DH_SCHANNEL 18
1811 #define PROV_SPYRUS_LYNKS 20
1812 #define PROV_RNG 21
1813 #define PROV_INTEL_SEC 22
1814 #define PROV_REPLACE_OWF 23
1815 #define PROV_RSA_AES 24
1816
1817 /* FLAGS Section */
1818
1819 #define CRYPT_FIRST 1
1820 #define CRYPT_NEXT 2
1821
1822 #define CRYPT_IMPL_HARDWARE 1
1823 #define CRYPT_IMPL_SOFTWARE 2
1824 #define CRYPT_IMPL_MIXED 3
1825 #define CRYPT_IMPL_UNKNOWN 4
1826
1827 /* CryptAcquireContext */
1828 #define CRYPT_VERIFYCONTEXT 0xF0000000
1829 #define CRYPT_NEWKEYSET 0x00000008
1830 #define CRYPT_DELETEKEYSET 0x00000010
1831 #define CRYPT_MACHINE_KEYSET 0x00000020
1832 #define CRYPT_SILENT 0x00000040
1833
1834 /* Crypt{Get|Set}Provider */
1835 #define CRYPT_MACHINE_DEFAULT 0x00000001
1836 #define CRYPT_USER_DEFAULT 0x00000002
1837 #define CRYPT_DELETE_DEFAULT 0x00000004
1838
1839 /* Crypt{Get/Set}ProvParam */
1840 #define PP_CLIENT_HWND 1
1841 #define PP_ENUMALGS 1
1842 #define PP_ENUMCONTAINERS 2
1843 #define PP_IMPTYPE 3
1844 #define PP_NAME 4
1845 #define PP_VERSION 5
1846 #define PP_CONTAINER 6
1847 #define PP_CHANGE_PASSWORD 7
1848 #define PP_KEYSET_SEC_DESCR 8
1849 #define PP_KEY_TYPE_SUBTYPE 10
1850 #define PP_CONTEXT_INFO 11
1851 #define PP_KEYEXCHANGE_KEYSIZE 12
1852 #define PP_SIGNATURE_KEYSIZE 13
1853 #define PP_KEYEXCHANGE_ALG 14
1854 #define PP_SIGNATURE_ALG 15
1855 #define PP_PROVTYPE 16
1856 #define PP_KEYSTORAGE 17
1857 #define PP_SYM_KEYSIZE 19
1858 #define PP_SESSION_KEYSIZE 20
1859 #define PP_UI_PROMPT 21
1860 #define PP_ENUMALGS_EX 22
1861 #define PP_DELETEKEY 24
1862 #define PP_ENUMMANDROOTS 25
1863 #define PP_ENUMELECTROOTS 26
1864 #define PP_KEYSET_TYPE 27
1865 #define PP_ADMIN_PIN 31
1866 #define PP_KEYEXCHANGE_PIN 32
1867 #define PP_SIGNATURE_PIN 33
1868 #define PP_SIG_KEYSIZE_INC 34
1869 #define PP_KEYX_KEYSIZE_INC 35
1870 #define PP_UNIQUE_CONTAINER 36
1871 #define PP_SGC_INFO 37
1872 #define PP_USE_HARDWARE_RNG 38
1873 #define PP_KEYSPEC 39
1874 #define PP_ENUMEX_SIGNING_PROT 40
1875 #define PP_CRYPT_COUNT_KEY_USE 41
1876 #define PP_USER_CERTSTORE 42
1877 #define PP_SMARTCARD_READER 43
1878 #define PP_SMARTCARD_GUID 45
1879 #define PP_ROOT_CERTSTORE 46
1880
1881 /* Values returned by CryptGetProvParam of PP_KEYSTORAGE */
1882 #define CRYPT_SEC_DESCR 0x00000001
1883 #define CRYPT_PSTORE 0x00000002
1884 #define CRYPT_UI_PROMPT 0x00000004
1885
1886 /* Crypt{Get/Set}KeyParam */
1887 #define KP_IV 1
1888 #define KP_SALT 2
1889 #define KP_PADDING 3
1890 #define KP_MODE 4
1891 #define KP_MODE_BITS 5
1892 #define KP_PERMISSIONS 6
1893 #define KP_ALGID 7
1894 #define KP_BLOCKLEN 8
1895 #define KP_KEYLEN 9
1896 #define KP_SALT_EX 10
1897 #define KP_P 11
1898 #define KP_G 12
1899 #define KP_Q 13
1900 #define KP_X 14
1901 #define KP_Y 15
1902 #define KP_RA 16
1903 #define KP_RB 17
1904 #define KP_INFO 18
1905 #define KP_EFFECTIVE_KEYLEN 19
1906 #define KP_SCHANNEL_ALG 20
1907 #define KP_CLIENT_RANDOM 21
1908 #define KP_SERVER_RANDOM 22
1909 #define KP_RP 23
1910 #define KP_PRECOMP_MD5 24
1911 #define KP_PRECOMP_SHA 25
1912 #define KP_CERTIFICATE 26
1913 #define KP_CLEAR_KEY 27
1914 #define KP_PUB_EX_LEN 28
1915 #define KP_PUB_EX_VAL 29
1916 #define KP_KEYVAL 30
1917 #define KP_ADMIN_PIN 31
1918 #define KP_KEYEXCHANGE_PIN 32
1919 #define KP_SIGNATURE_PIN 33
1920 #define KP_PREHASH 34
1921 #define KP_ROUNDS 35
1922 #define KP_OAEP_PARAMS 36
1923 #define KP_CMS_KEY_INFO 37
1924 #define KP_CMS_DH_KEY_INFO 38
1925 #define KP_PUB_PARAMS 39
1926 #define KP_VERIFY_PARAMS 40
1927 #define KP_HIGHEST_VERSION 41
1928 #define KP_GET_USE_COUNT 42
1929
1930 /* Values for KP_PADDING */
1931 #define PKCS5_PADDING 1
1932 #define RANDOM_PADDING 2
1933 #define ZERO_PADDING 3
1934
1935 /* CryptSignHash/CryptVerifySignature */
1936 #define CRYPT_NOHASHOID 0x00000001
1937 #define CRYPT_TYPE2_FORMAT 0x00000002
1938 #define CRYPT_X931_FORMAT 0x00000004
1939
1940 /* Crypt{Get,Set}HashParam */
1941 #define HP_ALGID 0x0001
1942 #define HP_HASHVAL 0x0002
1943 #define HP_HASHSIZE 0x0004
1944 #define HP_HMAC_INFO 0x0005
1945 #define HP_TLS1PRF_LABEL 0x0006
1946 #define HP_TLS1PRF_SEED 0x0007
1947
1948 /* Crypt{Get,Set}KeyParam */
1949 #define CRYPT_MODE_CBC 1
1950 #define CRYPT_MODE_ECB 2
1951 #define CRYPT_MODE_OFB 3
1952 #define CRYPT_MODE_CFB 4
1953
1954 #define CRYPT_ENCRYPT 0x0001
1955 #define CRYPT_DECRYPT 0x0002
1956 #define CRYPT_EXPORT 0x0004
1957 #define CRYPT_READ 0x0008
1958 #define CRYPT_WRITE 0x0010
1959 #define CRYPT_MAC 0x0020
1960
1961 /* Crypt*Key */
1962 #define CRYPT_EXPORTABLE 0x00000001
1963 #define CRYPT_USER_PROTECTED 0x00000002
1964 #define CRYPT_CREATE_SALT 0x00000004
1965 #define CRYPT_UPDATE_KEY 0x00000008
1966 #define CRYPT_NO_SALT 0x00000010
1967 #define CRYPT_PREGEN 0x00000040
1968 #define CRYPT_SERVER 0x00000400
1969 #define CRYPT_ARCHIVABLE 0x00004000
1970
1971 /* CryptExportKey */
1972 #define CRYPT_SSL2_FALLBACK 0x00000002
1973 #define CRYPT_DESTROYKEY 0x00000004
1974 #define CRYPT_OAEP 0x00000040
1975
1976 /* CryptHashSessionKey */
1977 #define CRYPT_LITTLE_ENDIAN 0x00000001
1978
1979 /* Crypt{Protect,Unprotect}Data PROMPTSTRUCT flags */
1980 #define CRYPTPROTECT_PROMPT_ON_PROTECT 0x0001
1981 #define CRYPTPROTECT_PROMPT_ON_UNPROTECT 0x0002
1982 /* Crypt{Protect,Unprotect}Data flags */
1983 #define CRYPTPROTECT_UI_FORBIDDEN 0x0001
1984 #define CRYPTPROTECT_LOCAL_MACHINE 0x0004
1985 #define CRYPTPROTECT_AUDIT 0x0010
1986 #define CRYPTPROTECT_VERIFY_PROTECTION 0x0040
1987
1988 /* Blob Types */
1989 #define SIMPLEBLOB 0x1
1990 #define PUBLICKEYBLOB 0x6
1991 #define PRIVATEKEYBLOB 0x7
1992 #define PLAINTEXTKEYBLOB 0x8
1993 #define OPAQUEKEYBLOB 0x9
1994 #define PUBLICKEYBLOBEX 0xA
1995 #define SYMMETRICWRAPKEYBLOB 0xB
1996
1997 #define CUR_BLOB_VERSION 2
1998
1999 /* cert store provider types */
2000 #define CERT_STORE_PROV_MSG ((LPCSTR)1)
2001 #define CERT_STORE_PROV_MEMORY ((LPCSTR)2)
2002 #define CERT_STORE_PROV_FILE ((LPCSTR)3)
2003 #define CERT_STORE_PROV_REG ((LPCSTR)4)
2004 #define CERT_STORE_PROV_PKCS7 ((LPCSTR)5)
2005 #define CERT_STORE_PROV_SERIALIZED ((LPCSTR)6)
2006 #define CERT_STORE_PROV_FILENAME_A ((LPCSTR)7)
2007 #define CERT_STORE_PROV_FILENAME_W ((LPCSTR)8)
2008 #define CERT_STORE_PROV_SYSTEM_A ((LPCSTR)9)
2009 #define CERT_STORE_PROV_SYSTEM_W ((LPCSTR)10)
2010 #define CERT_STORE_PROV_SYSTEM CERT_STORE_PROV_SYSTEM_W
2011 #define CERT_STORE_PROV_COLLECTION ((LPCSTR)11)
2012 #define CERT_STORE_PROV_SYSTEM_REGISTRY_A ((LPCSTR)12)
2013 #define CERT_STORE_PROV_SYSTEM_REGISTRY_W ((LPCSTR)13)
2014 #define CERT_STORE_PROV_SYSTEM_REGISTRY CERT_STORE_PROV_SYSTEM_REGISTRY_W
2015 #define CERT_STORE_PROV_PHYSICAL_W ((LPCSTR)14)
2016 #define CERT_STORE_PROV_PHYSICAL CERT_STORE_PROV_PHYSICAL_W
2017 #define CERT_STORE_PROV_SMART_CARD_W ((LPCSTR)15)
2018 #define CERT_STORE_PROV_SMART_CARD CERT_STORE_PROV_SMART_CARD_W
2019 #define CERT_STORE_PROV_LDAP_W ((LPCSTR)16)
2020 #define CERT_STORE_PROV_LDAP CERT_STORE_PROV_LDAP_W
2021
2022 #define sz_CERT_STORE_PROV_MEMORY "Memory"
2023 #define sz_CERT_STORE_PROV_FILENAME_W "File"
2024 #define sz_CERT_STORE_PROV_FILENAME sz_CERT_STORE_PROV_FILENAME_W
2025 #define sz_CERT_STORE_PROV_SYSTEM_W "System"
2026 #define sz_CERT_STORE_PROV_SYSTEM sz_CERT_STORE_PROV_SYSTEM_W
2027 #define sz_CERT_STORE_PROV_PKCS7 "PKCS7"
2028 #define sz_CERT_STORE_PROV_SERIALIZED "Serialized"
2029 #define sz_CERT_STORE_PROV_COLLECTION "Collection"
2030 #define sz_CERT_STORE_PROV_SYSTEM_REGISTRY_W "SystemRegistry"
2031 #define sz_CERT_STORE_PROV_SYSTEM_REGISTRY sz_CERT_STORE_PROV_SYSTEM_REGISTRY_W
2032 #define sz_CERT_STORE_PROV_PHYSICAL_W "Physical"
2033 #define sz_CERT_STORE_PROV_PHYSICAL sz_CERT_STORE_PROV_PHYSICAL_W
2034 #define sz_CERT_STORE_PROV_SMART_CARD_W "SmartCard"
2035 #define sz_CERT_STORE_PROV_SMART_CARD sz_CERT_STORE_PROV_SMART_CARD_W
2036 #define sz_CERT_STORE_PROV_LDAP_W "Ldap"
2037 #define sz_CERT_STORE_PROV_LDAP sz_CERT_STORE_PROV_LDAP_W
2038
2039 /* types for CertOpenStore dwEncodingType */
2040 #define CERT_ENCODING_TYPE_MASK 0x0000ffff
2041 #define CMSG_ENCODING_TYPE_MASK 0xffff0000
2042 #define GET_CERT_ENCODING_TYPE(x) ((x) & CERT_ENCODING_TYPE_MASK)
2043 #define GET_CMSG_ENCODING_TYPE(x) ((x) & CMSG_ENCODING_TYPE_MASK)
2044
2045 #define CRYPT_ASN_ENCODING 0x00000001
2046 #define CRYPT_NDR_ENCODING 0x00000002
2047 #define X509_ASN_ENCODING 0x00000001
2048 #define X509_NDR_ENCODING 0x00000002
2049 #define PKCS_7_ASN_ENCODING 0x00010000
2050 #define PKCS_7_NDR_ENCODING 0x00020000
2051
2052 /* system store locations */
2053 #define CERT_SYSTEM_STORE_LOCATION_MASK 0x00ff0000
2054 #define CERT_SYSTEM_STORE_LOCATION_SHIFT 16
2055
2056 /* system store location ids */
2057 /* hkcu */
2058 #define CERT_SYSTEM_STORE_CURRENT_USER_ID 1
2059 /* hklm */
2060 #define CERT_SYSTEM_STORE_LOCAL_MACHINE_ID 2
2061 /* hklm\Software\Microsoft\Cryptography\Services */
2062 #define CERT_SYSTEM_STORE_CURRENT_SERVICE_ID 4
2063 #define CERT_SYSTEM_STORE_SERVICES_ID 5
2064 /* HKEY_USERS */
2065 #define CERT_SYSTEM_STORE_USERS_ID 6
2066 /* hkcu\Software\Policies\Microsoft\SystemCertificates */
2067 #define CERT_SYSTEM_STORE_CURRENT_USER_GROUP_POLICY_ID 7
2068 /* hklm\Software\Policies\Microsoft\SystemCertificates */
2069 #define CERT_SYSTEM_STORE_LOCAL_MACHINE_GROUP_POLICY_ID 8
2070 /* hklm\Software\Microsoft\EnterpriseCertificates */
2071 #define CERT_SYSTEM_STORE_LOCAL_MACHINE_ENTERPRISE_ID 9
2072
2073 /* system store location values */
2074 #define CERT_SYSTEM_STORE_CURRENT_USER \
2075 (CERT_SYSTEM_STORE_CURRENT_USER_ID << CERT_SYSTEM_STORE_LOCATION_SHIFT)
2076 #define CERT_SYSTEM_STORE_LOCAL_MACHINE \
2077 (CERT_SYSTEM_STORE_LOCAL_MACHINE_ID << CERT_SYSTEM_STORE_LOCATION_SHIFT)
2078 #define CERT_SYSTEM_STORE_CURRENT_SERVICE \
2079 (CERT_SYSTEM_STORE_CURRENT_SERVICE_ID << CERT_SYSTEM_STORE_LOCATION_SHIFT)
2080 #define CERT_SYSTEM_STORE_SERVICES \
2081 (CERT_SYSTEM_STORE_SERVICES_ID << CERT_SYSTEM_STORE_LOCATION_SHIFT)
2082 #define CERT_SYSTEM_STORE_USERS \
2083 (CERT_SYSTEM_STORE_USERS_ID << CERT_SYSTEM_STORE_LOCATION_SHIFT)
2084 #define CERT_SYSTEM_STORE_CURRENT_USER_GROUP_POLICY \
2085 (CERT_SYSTEM_STORE_CURRENT_USER_GROUP_POLICY_ID << CERT_SYSTEM_STORE_LOCATION_SHIFT)
2086 #define CERT_SYSTEM_STORE_LOCAL_MACHINE_GROUP_POLICY \
2087 (CERT_SYSTEM_STORE_LOCAL_MACHINE_GROUP_POLICY_ID << CERT_SYSTEM_STORE_LOCATION_SHIFT)
2088 #define CERT_SYSTEM_STORE_LOCAL_MACHINE_ENTERPRISE \
2089 (CERT_SYSTEM_STORE_LOCAL_MACHINE_ENTERPRISE_ID << CERT_SYSTEM_STORE_LOCATION_SHIFT)
2090
2091 #if defined(__GNUC__)
2092 #define CERT_LOCAL_MACHINE_SYSTEM_STORE_REGPATH (const WCHAR[])\
2093 {'S','o','f','t','w','a','r','e','\\','M','i','c','r','o','s','o','f','t',\
2094 '\\','S','y','s','t','e','m','C','e','r','t','i','f','i','c','a','t','e','s',\
2095 0 }
2096 #define CERT_GROUP_POLICY_SYSTEM_STORE_REGPATH (const WCHAR[])\
2097 {'S','o','f','t','w','a','r','e','\\','P','o','l','i','c','i','e','s','\\',\
2098 'M','i','c','r','o','s','o','f','t','\\','S','y','s','t','e','m','C','e','r',\
2099 't','i','f','i','c','a','t','e','s',0 }
2100 #elif defined(_MSC_VER)
2101 #define CERT_LOCAL_MACHINE_SYSTEM_STORE_REGPATH \
2102 L"Software\\Microsoft\\SystemCertificates"
2103 #define CERT_GROUP_POLICY_SYSTEM_STORE_REGPATH \
2104 L"Software\\Policies\\Microsoft\\SystemCertificates"
2105 #else
2106 static const WCHAR CERT_LOCAL_MACHINE_SYSTEM_STORE_REGPATH[] =
2107 {'S','o','f','t','w','a','r','e','\\','M','i','c','r','o','s','o','f','t','\\',
2108 'S','y','s','t','e','m','C','e','r','t','i','f','i','c','a','t','e','s',0 };
2109 static const WCHAR CERT_GROUP_POLICY_SYSTEM_STORE_REGPATH[] =
2110 {'S','o','f','t','w','a','r','e','\\','P','o','l','i','c','i','e','s','\\',
2111 'M','i','c','r','o','s','o','f','t','\\','S','y','s','t','e','m','C','e','r',
2112 't','i','f','i','c','a','t','e','s',0 };
2113 #endif
2114
2115 #if defined(__GNUC__)
2116 #define CERT_EFSBLOB_REGPATH (const WCHAR[])\
2117 {'S','o','f','t','w','a','r','e','\\','P','o','l','i','c','i','e','s','\\',\
2118 'M','i','c','r','o','s','o','f','t','\\','S','y','s','t','e','m','C','e','r',\
2119 't','i','f','i','c','a','t','e','s','\\','E','F','S',0 }
2120 #define CERT_EFSBLOB_VALUE_NAME (const WCHAR[]) {'E','F','S','B','l','o','b',0 }
2121 #elif defined(_MSC_VER)
2122 #define CERT_EFSBLOB_REGPATH CERT_GROUP_POLICY_SYSTEM_STORE_REGPATH L"\\EFS"
2123 #define CERT_EFSBLOB_VALUE_NAME L"EFSBlob"
2124 #else
2125 static const WCHAR CERT_EFSBLOB_REGPATH[] =
2126 {'S','o','f','t','w','a','r','e','\\','P','o','l','i','c','i','e','s','\\',
2127 'M','i','c','r','o','s','o','f','t','\\','S','y','s','t','e','m','C','e','r',
2128 't','i','f','i','c','a','t','e','s','\\','E','F','S',0 };
2129 static const CERT_EFSBLOB_VALUE_NAME[] = { 'E','F','S','B','l','o','b',0 };
2130 #endif
2131
2132 #if defined(__GNUC__)
2133 #define CERT_PROT_ROOT_FLAGS_REGPATH (const WCHAR[])\
2134 {'\\','R','o','o','t','\\','P','r','o','t','e','c','t','e','d','R','o','o','t',\
2135 's',0 }
2136 #define CERT_PROT_ROOT_FLAGS_VALUE_NAME (const WCHAR[])\
2137 {'F','l','a','g','s',0 }
2138 #elif defined(_MSC_VER)
2139 #define CERT_PROT_ROOT_FLAGS_REGPATH L"\\Root\\ProtectedRoots"
2140 #define CERT_PROT_ROOT_FLAGS_VALUE_NAME L"Flags"
2141 #else
2142 static const WCHAR CERT_PROT_ROOT_FLAGS_REGPATH[] =
2143 { '\\','R','o','o','t','\\','P','r','o','t','e','c','t','e','d','R','o','o',
2144 't','s',0 };
2145 static const WCHAR CERT_PROT_ROOT_FLAGS_VALUE_NAME[] = {'F','l','a','g','s',0 };
2146 #endif
2147
2148 #define CERT_PROT_ROOT_DISABLE_CURRENT_USER_FLAG 0x01
2149 #define CERT_PROT_ROOT_INHIBIT_ADD_AT_INIT_FLAG 0x02
2150 #define CERT_PROT_ROOT_INHIBIT_PURGE_LM_FLAG 0x04
2151 #define CERT_PROT_ROOT_DISABLE_LM_AUTH_FLAG 0x08
2152 #define CERT_PROT_ROOT_DISABLE_NT_AUTH_REQUIRED_FLAG 0x10
2153 #define CERT_PROT_ROOT_DISABLE_NOT_DEFINED_NAME_CONSTRAINT_FLAG 0x20
2154
2155 #if defined(__GNUC__)
2156 #define CERT_TRUST_PUB_SAFER_GROUP_POLICY_REGPATH (const WCHAR[])\
2157 {'S','o','f','t','w','a','r','e','\\','P','o','l','i','c','i','e','s','\\',\
2158 'M','i','c','r','o','s','o','f','t','\\','S','y','s','t','e','m','C','e','r',\
2159 't','i','f','i','c','a','t','e','s','\\','T','r','u','s','t','e','d',\
2160 'P','u','b','l','i','s','h','e','r','\\','S','a','f','e','r',0 }
2161 #elif defined(_MSC_VER)
2162 #define CERT_TRUST_PUB_SAFER_GROUP_POLICY_REGPATH \
2163 CERT_GROUP_POLICY_SYSTEM_STORE_REGPATH L"\\TrustedPublisher\\Safer"
2164 #else
2165 static const WCHAR CERT_TRUST_PUB_SAFER_GROUP_POLICY_REGPATH[] =
2166 {'S','o','f','t','w','a','r','e','\\','P','o','l','i','c','i','e','s','\\',
2167 'M','i','c','r','o','s','o','f','t','\\','S','y','s','t','e','m','C','e','r',
2168 't','i','f','i','c','a','t','e','s','\\','T','r','u','s','t','e','d',
2169 'P','u','b','l','i','s','h','e','r','\\','S','a','f','e','r',0 };
2170 #endif
2171
2172 #if defined(__GNUC__)
2173 #define CERT_TRUST_PUB_SAFER_LOCAL_MACHINE_REGPATH (const WCHAR[])\
2174 {'S','o','f','t','w','a','r','e','\\','M','i','c','r','o','s','o','f','t','\\',\
2175 'S','y','s','t','e','m','C','e','r','t','i','f','i','c','a','t','e','s','\\',\
2176 'T','r','u','s','t','e','d','P','u','b','l','i','s','h','e','r','\\',\
2177 'S','a','f','e','r',0 }
2178 #define CERT_TRUST_PUB_AUTHENTICODE_FLAGS_VALUE_NAME (const WCHAR[])\
2179 {'A','u','t','h','e','n','t','i','c','o','d','e','F','l','a','g','s',0 };
2180 #elif defined(_MSC_VER)
2181 #define CERT_TRUST_PUB_SAFER_LOCAL_MACHINE_REGPATH \
2182 CERT_LOCAL_MACHINE_SYSTEM_STORE_REGPATH L"\\TrustedPublisher\\Safer"
2183 #define CERT_TRUST_PUB_AUTHENTICODE_FLAGS_VALUE_NAME L"AuthenticodeFlags"
2184 #else
2185 static const WCHAR CERT_TRUST_PUB_SAFER_LOCAL_MACHINE_REGPATH[] =
2186 {'S','o','f','t','w','a','r','e','\\','M','i','c','r','o','s','o','f','t','\\',
2187 'S','y','s','t','e','m','C','e','r','t','i','f','i','c','a','t','e','s','\\',
2188 'T','r','u','s','t','e','d','P','u','b','l','i','s','h','e','r','\\',
2189 'S','a','f','e','r',0 };
2190 static const WCHAR CERT_TRUST_PUB_AUTHENTICODE_FLAGS_VALUE_NAME[] =
2191 { 'A','u','t','h','e','n','t','i','c','o','d','e','F','l','a','g','s',0 };
2192 #endif
2193
2194 #define CERT_TRUST_PUB_ALLOW_END_USER_TRUST 0x00000000
2195 #define CERT_TRUST_PUB_ALLOW_MACHINE_ADMIN_TRUST 0x00000001
2196 #define CERT_TRUST_PUB_ALLOW_ENTERPRISE_ADMIN_TRUST 0x00000002
2197 #define CERT_TRUST_PUB_ALLOW_TRUST_MASK 0x00000003
2198 #define CERT_TRUST_PUB_CHECK_PUBLISHER_REV_FLAG 0x00000100
2199 #define CERT_TRUST_PUB_CHECK_TIMESTAMP_REV_FLAG 0x00000200
2200
2201 /* flags for CertOpenStore dwFlags */
2202 #define CERT_STORE_NO_CRYPT_RELEASE_FLAG 0x00000001
2203 #define CERT_STORE_SET_LOCALIZED_NAME_FLAG 0x00000002
2204 #define CERT_STORE_DEFER_CLOSE_UNTIL_LAST_FREE_FLAG 0x00000004
2205 #define CERT_STORE_DELETE_FLAG 0x00000010
2206 #define CERT_STORE_UNSAFE_PHYSICAL_FLAG 0x00000020
2207 #define CERT_STORE_SHARE_STORE_FLAG 0x00000040
2208 #define CERT_STORE_SHARE_CONTEXT_FLAG 0x00000080
2209 #define CERT_STORE_MANIFOLD_FLAG 0x00000100
2210 #define CERT_STORE_ENUM_ARCHIVED_FLAG 0x00000200
2211 #define CERT_STORE_UPDATE_KEYID_FLAG 0x00000400
2212 #define CERT_STORE_BACKUP_RESTORE_FLAG 0x00000800
2213 #define CERT_STORE_MAXIMUM_ALLOWED_FLAG 0x00001000
2214 #define CERT_STORE_CREATE_NEW_FLAG 0x00002000
2215 #define CERT_STORE_OPEN_EXISTING_FLAG 0x00004000
2216 #define CERT_STORE_READONLY_FLAG 0x00008000
2217
2218 #define CERT_REGISTRY_STORE_REMOTE_FLAG 0x00010000
2219 #define CERT_REGISTRY_STORE_SERIALIZED_FLAG 0x00020000
2220 #define CERT_REGISTRY_STORE_ROAMING_FLAG 0x00040000
2221 #define CERT_REGISTRY_STORE_MY_IE_DIRTY_FLAG 0x00080000
2222 #define CERT_REGISTRY_STORE_LM_GPT_FLAG 0x01000000
2223 #define CERT_REGISTRY_STORE_CLIENT_GPT_FLAG 0x80000000
2224
2225 #define CERT_FILE_STORE_COMMIT_ENABLE_FLAG 0x00010000
2226
2227 /* CertCloseStore dwFlags */
2228 #define CERT_CLOSE_STORE_FORCE_FLAG 0x00000001
2229 #define CERT_CLOSE_STORE_CHECK_FLAG 0x00000002
2230
2231 /* dwAddDisposition */
2232 #define CERT_STORE_ADD_NEW 1
2233 #define CERT_STORE_ADD_USE_EXISTING 2
2234 #define CERT_STORE_ADD_REPLACE_EXISTING 3
2235 #define CERT_STORE_ADD_ALWAYS 4
2236 #define CERT_STORE_ADD_REPLACE_EXISTING_INHERIT_PROPERTIES 5
2237 #define CERT_STORE_ADD_NEWER 6
2238 #define CERT_STORE_ADD_NEWER_INHERIT_PROPERTIES 7
2239
2240 /* Installable OID function defs */
2241 #define CRYPT_OID_OPEN_STORE_PROV_FUNC "CertDllOpenStoreProv"
2242 #define CRYPT_OID_ENCODE_OBJECT_FUNC "CryptDllEncodeObject"
2243 #define CRYPT_OID_DECODE_OBJECT_FUNC "CryptDllDecodeObject"
2244 #define CRYPT_OID_ENCODE_OBJECT_EX_FUNC "CryptDllEncodeObjectEx"
2245 #define CRYPT_OID_DECODE_OBJECT_EX_FUNC "CryptDllDecodeObjectEx"
2246 #define CRYPT_OID_CREATE_COM_OBJECT_FUNC "CryptDllCreateComObject"
2247 #define CRYPT_OID_VERIFY_REVOCATION_FUNC "CertDllVerifyRevocation"
2248 #define CRYPT_OID_VERIFY_CTL_USAGE_FUNC "CertDllVerifyCTLUsage"
2249 #define CRYPT_OID_FORMAT_OBJECT_FUNC "CryptDllFormatObject"
2250 #define CRYPT_OID_FIND_OID_INFO_FUNC "CryptDllFindOIDInfo"
2251 #define CRYPT_OID_FIND_LOCALIZED_NAME_FUNC "CryptDllFindLocalizedName"
2252 #define CRYPT_OID_EXPORT_PUBLIC_KEY_INFO_FUNC "CryptDllExportPublicKeyInfoEx"
2253 #define CRYPT_OID_IMPORT_PUBLIC_KEY_INFO_FUNC "CryptDllImportPublicKeyInfoEx"
2254 #define CRYPT_OID_EXPORT_PRIVATE_KEY_INFO_FUNC "CryptDllExportPrivateKeyInfoEx"
2255 #define CRYPT_OID_IMPORT_PRIVATE_KEY_INFO_FUNC "CryptDllImportPrivateKeyInfoEx"
2256 #define CRYPT_OID_VERIFY_CERTIFICATE_CHAIN_POLICY_FUNC \
2257 "CertDllVerifyCertificateChainPolicy"
2258 #define URL_OID_GET_OBJECT_URL_FUNC "UrlDllGetObjectUrl"
2259 #define TIME_VALID_OID_GET_OBJECT_FUNC "TimeValidDllGetObject"
2260
2261 #define CRYPT_OID_REGPATH "Software\\Microsoft\\Cryptography\\OID"
2262 #define CRYPT_OID_REG_ENCODING_TYPE_PREFIX "EncodingType "
2263 #if defined(__GNUC__)
2264 # define CRYPT_OID_REG_DLL_VALUE_NAME (const WCHAR []){ 'D','l','l',0 }
2265 # define CRYPT_OID_REG_FUNC_NAME_VALUE_NAME \
2266 (const WCHAR []){ 'F','u','n','c','N','a','m','e',0 }
2267 # define CRYPT_OID_REG_FLAGS_VALUE_NAME \
2268 (const WCHAR []){ 'C','r','y','p','t','F','l','a','g','s',0 }
2269 #elif defined(_MSC_VER)
2270 # define CRYPT_OID_REG_DLL_VALUE_NAME L"Dll"
2271 # define CRYPT_OID_REG_FUNC_NAME_VALUE_NAME L"FuncName"
2272 # define CRYPT_OID_REG_FLAGS_VALUE_NAME L"CryptFlags"
2273 #else
2274 static const WCHAR CRYPT_OID_REG_DLL_VALUE_NAME[] = { 'D','l','l',0 };
2275 static const WCHAR CRYPT_OID_REG_FUNC_NAME_VALUE_NAME[] =
2276 { 'F','u','n','c','N','a','m','e',0 };
2277 static const WCHAR CRYPT_OID_REG_FLAGS_VALUE_NAME[] =
2278 { 'C','r','y','p','t','F','l','a','g','s',0 };
2279 #endif
2280 #define CRYPT_OID_REG_FUNC_NAME_VALUE_NAME_A "FuncName"
2281 #define CRYPT_DEFAULT_OID "DEFAULT"
2282
2283 #define CRYPT_INSTALL_OID_FUNC_BEFORE_FLAG 1
2284
2285 #define CRYPT_GET_INSTALLED_OID_FUNC_FLAG 0x1
2286
2287 #define CRYPT_REGISTER_FIRST_INDEX 0
2288 #define CRYPT_REGISTER_LAST_INDEX 0xffffffff
2289
2290 /* values for CERT_STORE_PROV_INFO's dwStoreProvFlags */
2291 #define CERT_STORE_PROV_EXTERNAL_FLAG 0x1
2292 #define CERT_STORE_PROV_DELETED_FLAG 0x2
2293 #define CERT_STORE_PROV_NO_PERSIST_FLAG 0x4
2294 #define CERT_STORE_PROV_SYSTEM_STORE_FLAG 0x8
2295 #define CERT_STORE_PROV_LM_SYSTEM_STORE_FLAG 0x10
2296
2297 /* function indices */
2298 #define CERT_STORE_PROV_CLOSE_FUNC 0
2299 #define CERT_STORE_PROV_READ_CERT_FUNC 1
2300 #define CERT_STORE_PROV_WRITE_CERT_FUNC 2
2301 #define CERT_STORE_PROV_DELETE_CERT_FUNC 3
2302 #define CERT_STORE_PROV_SET_CERT_PROPERTY_FUNC 4
2303 #define CERT_STORE_PROV_READ_CRL_FUNC 5
2304 #define CERT_STORE_PROV_WRITE_CRL_FUNC 6
2305 #define CERT_STORE_PROV_DELETE_CRL_FUNC 7
2306 #define CERT_STORE_PROV_SET_CRL_PROPERTY_FUNC 8
2307 #define CERT_STORE_PROV_READ_CTL_FUNC 9
2308 #define CERT_STORE_PROV_WRITE_CTL_FUNC 10
2309 #define CERT_STORE_PROV_DELETE_CTL_FUNC 11
2310 #define CERT_STORE_PROV_SET_CTL_PROPERTY_FUNC 12
2311 #define CERT_STORE_PROV_CONTROL_FUNC 13
2312 #define CERT_STORE_PROV_FIND_CERT_FUNC 14
2313 #define CERT_STORE_PROV_FREE_FIND_CERT_FUNC 15
2314 #define CERT_STORE_PROV_GET_CERT_PROPERTY_FUNC 16
2315 #define CERT_STORE_PROV_FIND_CRL_FUNC 17
2316 #define CERT_STORE_PROV_FREE_FIND_CRL_FUNC 18
2317 #define CERT_STORE_PROV_GET_CRL_PROPERTY_FUNC 19
2318 #define CERT_STORE_PROV_FIND_CTL_FUNC 20
2319 #define CERT_STORE_PROV_FREE_FIND_CTL_FUNC 21
2320 #define CERT_STORE_PROV_GET_CTL_PROPERTY_FUNC 22
2321
2322 /* physical store dwFlags, also used by CertAddStoreToCollection as
2323 * dwUpdateFlags
2324 */
2325 #define CERT_PHYSICAL_STORE_ADD_ENABLE_FLAG 0x1
2326 #define CERT_PHYSICAL_STORE_OPEN_DISABLE_FLAG 0x2
2327 #define CERT_PHYSICAL_STORE_REMOVE_OPEN_DISABLE_FLAG 0x4
2328 #define CERT_PHYSICAL_STORE_INSERT_COMPUTER_NAME_ENABLE_FLAG 0x8
2329
2330 /* dwFlag values for CertEnumPhysicalStore callback */
2331 #define CERT_PHYSICAL_STORE_PREDEFINED_ENUM_FLAG 0x1
2332
2333 /* predefined store names */
2334 #if defined(__GNUC__)
2335 # define CERT_PHYSICAL_STORE_DEFAULT_NAME (const WCHAR[])\
2336 {'.','D','e','f','a','u','l','t','0'}
2337 # define CERT_PHYSICAL_STORE_GROUP_POLICY_NAME (const WCHAR[])\
2338 {'.','G','r','o','u','p','P','o','l','i','c','y',0}
2339 # define CERT_PHYSICAL_STORE_LOCAL_MACHINE_NAME (const WCHAR[])\
2340 {'.','L','o','c','a','l','M','a','c','h','i','n','e',0}
2341 # define CERT_PHYSICAL_STORE_DS_USER_CERTIFICATE_NAME (const WCHAR[])\
2342 {'.','U','s','e','r','C','e','r','t','i','f','i','c','a','t','e',0}
2343 # define CERT_PHYSICAL_STORE_LOCAL_MACHINE_GROUP_POLICY_NAME (const WCHAR[])\
2344 {'.','L','o','c','a','l','M','a','c','h','i','n','e','G','r','o','u','p',\
2345 'P','o','l','i','c','y',0}
2346 # define CERT_PHYSICAL_STORE_ENTERPRISE_NAME (const WCHAR[])\
2347 {'.','E','n','t','e','r','p','r','i','s','e',0}
2348 # define CERT_PHYSICAL_STORE_AUTH_ROOT_NAME (const WCHAR[])\
2349 {'.','A','u','t','h','R','o','o','t',0}
2350 #elif defined(_MSC_VER)
2351 # define CERT_PHYSICAL_STORE_DEFAULT_NAME \
2352 L".Default"
2353 # define CERT_PHYSICAL_STORE_GROUP_POLICY_NAME \
2354 L".GroupPolicy"
2355 # define CERT_PHYSICAL_STORE_LOCAL_MACHINE_NAME \
2356 L".LocalMachine"
2357 # define CERT_PHYSICAL_STORE_DS_USER_CERTIFICATE_NAME \
2358 L".UserCertificate"
2359 # define CERT_PHYSICAL_STORE_LOCAL_MACHINE_GROUP_POLICY_NAME \
2360 L".LocalMachineGroupPolicy"
2361 # define CERT_PHYSICAL_STORE_ENTERPRISE_NAME \
2362 L".Enterprise"
2363 # define CERT_PHYSICAL_STORE_AUTH_ROOT_NAME \
2364 L".AuthRoot"
2365 #else
2366 static const WCHAR CERT_PHYSICAL_STORE_DEFAULT_NAME[] =
2367 {'.','D','e','f','a','u','l','t','0'};
2368 static const WCHAR CERT_PHYSICAL_STORE_GROUP_POLICY_NAME[] =
2369 {'.','G','r','o','u','p','P','o','l','i','c','y',0};
2370 static const WCHAR CERT_PHYSICAL_STORE_LOCAL_MACHINE_NAME[] =
2371 {'.','L','o','c','a','l','M','a','c','h','i','n','e',0};
2372 static const WCHAR CERT_PHYSICAL_STORE_DS_USER_CERTIFICATE_NAME[] =
2373 {'.','U','s','e','r','C','e','r','t','i','f','i','c','a','t','e',0};
2374 static const WCHAR CERT_PHYSICAL_STORE_LOCAL_MACHINE_GROUP_POLICY_NAME[] =
2375 {'.','L','o','c','a','l','M','a','c','h','i','n','e','G','r','o','u','p',
2376 'P','o','l','i','c','y',0};
2377 static const WCHAR CERT_PHYSICAL_STORE_ENTERPRISE_NAME[] =
2378 {'.','E','n','t','e','r','p','r','i','s','e',0};
2379 static const WCHAR CERT_PHYSICAL_STORE_AUTH_ROOT_NAME[] =
2380 {'.','A','u','t','h','R','o','o','t',0};
2381 #endif
2382
2383 /* cert system store flags */
2384 #define CERT_SYSTEM_STORE_MASK 0xffff0000
2385 #define CERT_SYSTEM_STORE_RELOCATE_FLAG 0x80000000
2386
2387 /* CertFindChainInStore dwFindType types */
2388 #define CERT_CHAIN_FIND_BY_ISSUER 1
2389
2390 /* CertSaveStore dwSaveAs values */
2391 #define CERT_STORE_SAVE_AS_STORE 1
2392 #define CERT_STORE_SAVE_AS_PKCS7 2
2393 /* CertSaveStore dwSaveTo values */
2394 #define CERT_STORE_SAVE_TO_FILE 1
2395 #define CERT_STORE_SAVE_TO_MEMORY 2
2396 #define CERT_STORE_SAVE_TO_FILENAME_A 3
2397 #define CERT_STORE_SAVE_TO_FILENAME_W 4
2398 #define CERT_STORE_SAVE_TO_FILENAME CERT_STORE_SAVE_TO_FILENAME_W
2399
2400 /* CERT_INFO versions/flags */
2401 #define CERT_V1 0
2402 #define CERT_V2 1
2403 #define CERT_V3 2
2404 #define CERT_INFO_VERSION_FLAG 1
2405 #define CERT_INFO_SERIAL_NUMBER_FLAG 2
2406 #define CERT_INFO_SIGNATURE_ALGORITHM_FLAG 3
2407 #define CERT_INFO_ISSUER_FLAG 4
2408 #define CERT_INFO_NOT_BEFORE_FLAG 5
2409 #define CERT_INFO_NOT_AFTER_FLAG 6
2410 #define CERT_INFO_SUBJECT_FLAG 7
2411 #define CERT_INFO_SUBJECT_PUBLIC_KEY_INFO_FLAG 8
2412 #define CERT_INFO_ISSUER_UNIQUE_ID_FLAG 9
2413 #define CERT_INFO_SUBJECT_UNIQUE_ID_FLAG 10
2414 #define CERT_INFO_EXTENSION_FLAG 11
2415
2416 /* CERT_REQUEST_INFO versions */
2417 #define CERT_REQUEST_V1 0
2418
2419 /* CERT_KEYGEN_REQUEST_INFO versions */
2420 #define CERT_KEYGEN_REQUEST_V1 0
2421
2422 /* CRL versions */
2423 #define CRL_V1 0
2424 #define CRL_V2 1
2425
2426 /* CTL versions */
2427 #define CTL_V1 0
2428
2429 /* Certificate, CRL, CTL property IDs */
2430 #define CERT_KEY_PROV_HANDLE_PROP_ID 1
2431 #define CERT_KEY_PROV_INFO_PROP_ID 2
2432 #define CERT_SHA1_HASH_PROP_ID 3
2433 #define CERT_HASH_PROP_ID CERT_SHA1_HASH_PROP_ID
2434 #define CERT_MD5_HASH_PROP_ID 4
2435 #define CERT_KEY_CONTEXT_PROP_ID 5
2436 #define CERT_KEY_SPEC_PROP_ID 6
2437 #define CERT_IE30_RESERVED_PROP_ID 7
2438 #define CERT_PUBKEY_HASH_RESERVED_PROP_ID 8
2439 #define CERT_ENHKEY_USAGE_PROP_ID 9
2440 #define CERT_CTL_USAGE_PROP_ID CERT_ENHKEY_USAGE_PROP_ID
2441 #define CERT_NEXT_UPDATE_LOCATION_PROP_ID 10
2442 #define CERT_FRIENDLY_NAME_PROP_ID 11
2443 #define CERT_PVK_FILE_PROP_ID 12
2444 #define CERT_DESCRIPTION_PROP_ID 13
2445 #define CERT_ACCESS_STATE_PROP_ID 14
2446 #define CERT_SIGNATURE_HASH_PROP_ID 15
2447 #define CERT_SMART_CARD_DATA_PROP_ID 16
2448 #define CERT_EFS_PROP_ID 17
2449 #define CERT_FORTEZZA_DATA_PROP 18
2450 #define CERT_ARCHIVED_PROP_ID 19
2451 #define CERT_KEY_IDENTIFIER_PROP_ID 20
2452 #define CERT_AUTO_ENROLL_PROP_ID 21
2453 #define CERT_PUBKEY_ALG_PARA_PROP_ID 22
2454 #define CERT_CROSS_CERT_DIST_POINTS_PROP_ID 23
2455 #define CERT_ISSUER_PUBLIC_KEY_MD5_HASH_PROP_ID 24
2456 #define CERT_SUBJECT_PUBLIC_KEY_MD5_HASH_PROP_ID 25
2457 #define CERT_ENROLLMENT_PROP_ID 26
2458 #define CERT_DATE_STAMP_PROP_ID 27
2459 #define CERT_ISSUER_SERIAL_NUMBER_MD5_HASH_PROP_ID 28
2460 #define CERT_SUBJECT_NAME_MD5_HASH_PROP_ID 29
2461 #define CERT_EXTENDED_ERROR_INFO_PROP_ID 30
2462 /* 31 -- unused?
2463 32 -- cert prop id
2464 33 -- CRL prop id
2465 34 -- CTL prop id
2466 35 -- KeyId prop id
2467 36-63 -- reserved
2468 */
2469 #define CERT_RENEWAL_PROP_ID 64
2470 #define CERT_ARCHIVED_KEY_HASH_PROP_ID 65
2471 #define CERT_AUTO_ENROLL_RETRY_PROP_ID 66
2472 #define CERT_AIA_URL_RETRIEVED_PROP_ID 67
2473 #define CERT_AUTHORITY_INFO_ACCESS_PROP_ID 68
2474 #define CERT_BACKED_UP_PROP_ID 69
2475 #define CERT_OCSP_RESPONSE_PROP_ID 70
2476 #define CERT_REQUEST_ORIGINATOR_PROP_ID 71
2477 #define CERT_SOURCE_LOCATION_PROP_ID 72
2478 #define CERT_SOURCE_URL_PROP_ID 73
2479 #define CERT_NEW_KEY_PROP_ID 74
2480 #define CERT_OCSP_CACHE_PREFIX_PROP_ID 75
2481 #define CERT_SMART_CARD_ROOT_INFO_PROP_ID 76
2482 #define CERT_NO_AUTO_EXPIRE_CHECK_PROP_ID 77
2483 #define CERT_NCRYPT_KEY_HANDLE_PROP_ID 78
2484 #define CERT_HCRYPTPROV_OR_NCRYPT_KEY_HANDLE_PROP_ID 79
2485 #define CERT_SUBJECT_INFO_ACCESS_PROP_ID 80
2486 #define CERT_CA_OCSP_AUTHORITY_INFO_ACCESS_PROP_ID 81
2487 #define CERT_CA_DISABLE_CRL_PROP_ID 82
2488 #define CERT_ROOT_PROGRAM_CERT_POLICIES_PROP_ID 83
2489 #define CERT_ROOT_PROGRAM_NAME_CONSTRAINTS_PROP_ID 84
2490
2491 #define CERT_FIRST_RESERVED_PROP_ID 85
2492 #define CERT_LAST_RESERVED_PROP_ID 0x00007fff
2493 #define CERT_FIRST_USER_PROP_ID 0x00008000
2494 #define CERT_LAST_USER_PROP_ID 0x0000ffff
2495
2496 #define IS_CERT_HASH_PROP_ID(x) \
2497 ((x) == CERT_SHA1_HASH_PROP_ID || (x) == CERT_MD5_HASH_PROP_ID || \
2498 (x) == CERT_SIGNATURE_HASH_PROP_ID)
2499
2500 #define IS_PUBKEY_HASH_PROP_ID(x) \
2501 ((x) == CERT_ISSUER_PUBLIC_KEY_MD5_HASH_PROP_ID || \
2502 (x) == CERT_SUBJECT_PUBLIC_KEY_MD5_HASH_PROP_ID)
2503
2504 #define IS_CHAIN_HASH_PROP_ID(x) \
2505 ((x) == CERT_ISSUER_PUBLIC_KEY_MD5_HASH_PROP_ID || \
2506 (x) == CERT_SUBJECT_PUBLIC_KEY_MD5_HASH_PROP_ID || \
2507 (x) == CERT_ISSUER_SERIAL_NUMBER_MD5_HASH_PROP_ID || \
2508 (x) == CERT_SUBJECT_NAME_MD5_HASH_PROP_ID)
2509
2510 /* access state flags */
2511 #define CERT_ACCESS_STATE_WRITE_PERSIST_FLAG 0x1
2512 #define CERT_ACCESS_STATE_SYSTEM_STORE_FLAG 0x2
2513 #define CERT_ACCESS_STATE_LM_SYSTEM_STORE_FLAG 0x4
2514
2515 /* CertSetCertificateContextProperty flags */
2516 #define CERT_SET_PROPERTY_INHIBIT_PERSIST_FLAG 0x40000000
2517 #define CERT_SET_PROPERTY_IGNORE_PERSIST_ERROR_FLAG 0x80000000
2518
2519 /* CERT_RDN attribute dwValueType types */
2520 #define CERT_RDN_TYPE_MASK 0x000000ff
2521 #define CERT_RDN_ANY_TYPE 0
2522 #define CERT_RDN_ENCODED_BLOB 1
2523 #define CERT_RDN_OCTET_STRING 2
2524 #define CERT_RDN_NUMERIC_STRING 3
2525 #define CERT_RDN_PRINTABLE_STRING 4
2526 #define CERT_RDN_TELETEX_STRING 5
2527 #define CERT_RDN_T61_STRING 5
2528 #define CERT_RDN_VIDEOTEX_STRING 6
2529 #define CERT_RDN_IA5_STRING 7
2530 #define CERT_RDN_GRAPHIC_STRING 8
2531 #define CERT_RDN_VISIBLE_STRING 9
2532 #define CERT_RDN_ISO646_STRING 9
2533 #define CERT_RDN_GENERAL_STRING 10
2534 #define CERT_RDN_UNIVERSAL_STRING 11
2535 #define CERT_RDN_INT4_STRING 11
2536 #define CERT_RDN_BMP_STRING 12
2537 #define CERT_RDN_UNICODE_STRING 12
2538 #define CERT_RDN_UTF8_STRING 13
2539
2540 /* CERT_RDN attribute dwValueType flags */
2541 #define CERT_RDN_FLAGS_MASK 0xff000000
2542 #define CERT_RDN_ENABLE_T61_UNICODE_FLAG 0x80000000
2543 #define CERT_RDN_DISABLE_CHECK_TYPE_FLAG 0x4000000
2544 #define CERT_RDN_ENABLE_UTF8_UNICODE_FLAG 0x2000000
2545 #define CERT_RDN_DISABLE_IE4_UTF8_FLAG 0x0100000
2546
2547 #define IS_CERT_RDN_CHAR_STRING(x) \
2548 (((x) & CERT_RDN_TYPE_MASK) >= CERT_RDN_NUMERIC_STRING)
2549
2550 /* CertIsRDNAttrsInCertificateName flags */
2551 #define CERT_UNICODE_IS_RDN_ATTRS_FLAG 0x1
2552 #define CERT_CASE_INSENSITIVE_IS_RDN_ATTRS_FLAG 0x2
2553
2554 /* CRL reason codes */
2555 #define CRL_REASON_UNSPECIFIED 0
2556 #define CRL_REASON_KEY_COMPROMISE 1
2557 #define CRL_REASON_CA_COMPROMISE 2
2558 #define CRL_REASON_AFFILIATION_CHANGED 3
2559 #define CRL_REASON_SUPERSEDED 4
2560 #define CRL_REASON_CESSATION_OF_OPERATION 5
2561 #define CRL_REASON_CERTIFICATE_HOLD 6
2562 #define CRL_REASON_REMOVE_FROM_CRL 8
2563
2564 /* CertControlStore control types */
2565 #define CERT_STORE_CTRL_RESYNC 1
2566 #define CERT_STORE_CTRL_NOTIFY_CHANGE 2
2567 #define CERT_STORE_CTRL_COMMIT 3
2568 #define CERT_STORE_CTRL_AUTO_RESYNC 4
2569 #define CERT_STORE_CTRL_CANCEL_NOTIFY 5
2570
2571 #define CERT_STORE_CTRL_COMMIT_FORCE_FLAG 0x1
2572 #define CERT_STORE_CTRL_COMMIT_CLEAR_FLAG 0x2
2573
2574 /* cert store properties */
2575 #define CERT_STORE_LOCALIZED_NAME_PROP_ID 0x1000
2576
2577 /* CertCreateContext flags */
2578 #define CERT_CREATE_CONTEXT_NOCOPY_FLAG 0x1
2579 #define CERT_CREATE_CONTEXT_SORTED_FLAG 0x2
2580 #define CERT_CREATE_CONTEXT_NO_HCRYPTMSG_FLAG 0x4
2581 #define CERT_CREATE_CONTEXT_NO_ENTRY_FLAG 0x8
2582
2583 #define CERT_COMPARE_MASK 0xffff
2584 #define CERT_COMPARE_SHIFT 16
2585 #define CERT_COMPARE_ANY 0
2586 #define CERT_COMPARE_SHA1_HASH 1
2587 #define CERT_COMPARE_HASH CERT_COMPARE_SHA1_HASH
2588 #define CERT_COMPARE_NAME 2
2589 #define CERT_COMPARE_ATTR 3
2590 #define CERT_COMPARE_MD5_HASH 4
2591 #define CERT_COMPARE_PROPERTY 5
2592 #define CERT_COMPARE_PUBLIC_KEY 6
2593 #define CERT_COMPARE_NAME_STR_A 7
2594 #define CERT_COMPARE_NAME_STR_W 8
2595 #define CERT_COMPARE_KEY_SPEC 9
2596 #define CERT_COMPARE_ENHKEY_USAGE 10
2597 #define CERT_COMPARE_CTL_USAGE CERT_COMPARE_ENHKEY_USAGE
2598 #define CERT_COMPARE_SUBJECT_CERT 11
2599 #define CERT_COMPARE_ISSUER_OF 12
2600 #define CERT_COMPARE_EXISTING 13
2601 #define CERT_COMPARE_SIGNATURE_HASH 14
2602 #define CERT_COMPARE_KEY_IDENTIFIER 15
2603 #define CERT_COMPARE_CERT_ID 16
2604 #define CERT_COMPARE_CROSS_CERT_DIST_POINTS 17
2605 #define CERT_COMPARE_PUBKEY_MD5_HASH 18
2606
2607 /* values of dwFindType for CertFind*InStore */
2608 #define CERT_FIND_ANY \
2609 (CERT_COMPARE_ANY << CERT_COMPARE_SHIFT)
2610 #define CERT_FIND_SHA1_HASH \
2611 (CERT_COMPARE_SHA1_HASH << CERT_COMPARE_SHIFT)
2612 #define CERT_FIND_MD5_HASH \
2613 (CERT_COMPARE_MD5_HASH << CERT_COMPARE_SHIFT)
2614 #define CERT_FIND_SIGNATURE_HASH \
2615 (CERT_COMPARE_SIGNATURE_HASH << CERT_COMPARE_SHIFT)
2616 #define CERT_FIND_KEY_IDENTIFIER \
2617 (CERT_COMPARE_KEY_IDENTIFIER << CERT_COMPARE_SHIFT)
2618 #define CERT_FIND_HASH CERT_FIND_SHA1_HASH
2619 #define CERT_FIND_PROPERTY \
2620 (CERT_COMPARE_PROPERTY << CERT_COMPARE_SHIFT)
2621 #define CERT_FIND_PUBLIC_KEY \
2622 (CERT_COMPARE_PUBLIC_KEY << CERT_COMPARE_SHIFT)
2623 #define CERT_FIND_SUBJECT_NAME \
2624 (CERT_COMPARE_NAME << CERT_COMPARE_SHIFT | CERT_INFO_SUBJECT_FLAG)
2625 #define CERT_FIND_SUBJECT_ATTR \
2626 (CERT_COMPARE_ATTR << CERT_COMPARE_SHIFT | CERT_INFO_SUBJECT_FLAG)
2627 #define CERT_FIND_ISSUER_NAME \
2628 (CERT_COMPARE_NAME << CERT_COMPARE_SHIFT | CERT_INFO_ISSUER_FLAG)
2629 #define CERT_FIND_ISSUER_ATTR \
2630 (CERT_COMPARE_ATTR << CERT_COMPARE_SHIFT | CERT_INFO_ISSUER_FLAG)
2631 #define CERT_FIND_SUBJECT_STR_A \
2632 (CERT_COMPARE_NAME_STR_A << CERT_COMPARE_SHIFT | CERT_INFO_SUBJECT_FLAG)
2633 #define CERT_FIND_SUBJECT_STR_W \
2634 (CERT_COMPARE_NAME_STR_W << CERT_COMPARE_SHIFT | CERT_INFO_SUBJECT_FLAG)
2635 #define CERT_FIND_SUBJECT_STR CERT_FIND_SUBJECT_STR_W
2636 #define CERT_FIND_ISSUER_STR_A \
2637 (CERT_COMPARE_NAME_STR_A << CERT_COMPARE_SHIFT | CERT_INFO_ISSUER_FLAG)
2638 #define CERT_FIND_ISSUER_STR_W \
2639 (CERT_COMPARE_NAME_STR_W << CERT_COMPARE_SHIFT | CERT_INFO_ISSUER_FLAG)
2640 #define CERT_FIND_ISSUER_STR CERT_FIND_ISSUER_STR_W
2641 #define CERT_FIND_KEY_SPEC \
2642 (CERT_COMPARE_KEY_SPEC << CERT_COMPARE_SHIFT)
2643 #define CERT_FIND_ENHKEY_USAGE \
2644 (CERT_COMPARE_ENHKEY_USAGE << CERT_COMPARE_SHIFT)
2645 #define CERT_FIND_CTL_USAGE CERT_FIND_ENHKEY_USAGE
2646 #define CERT_FIND_SUBJECT_CERT \
2647 (CERT_COMPARE_SUBJECT_CERT << CERT_COMPARE_SHIFT)
2648 #define CERT_FIND_ISSUER_OF \
2649 (CERT_COMPARE_ISSUER_OF << CERT_COMPARE_SHIFT)
2650 #define CERT_FIND_EXISTING \
2651 (CERT_COMPARE_EXISTING << CERT_COMPARE_SHIFT)
2652 #define CERT_FIND_CERT_ID \
2653 (CERT_COMPARE_CERT_ID << CERT_COMPARE_SHIFT)
2654 #define CERT_FIND_CROSS_CERT_DIST_POINTS \
2655 (CERT_COMPARE_CROSS_CERT_DIST_POINTS << CERT_COMPARE_SHIFT)
2656 #define CERT_FIND_PUBKEY_MD5_HASH \
2657 (CERT_COMPARE_PUBKEY_MD5_HASH << CERT_COMPARE_SHIFT)
2658
2659 #define CERT_FIND_OPTIONAL_ENHKEY_USAGE_FLAG 0x1
2660 #define CERT_FIND_OPTIONAL_CTL_USAGE_FLAG 0x1
2661 #define CERT_FIND_EXT_ONLY_ENHKEY_USAGE_FLAG 0x2
2662 #define CERT_FIND_EXT_ONLY_CTL_USAGE_FLAG 0x2
2663 #define CERT_FIND_PROP_ONLY_ENHKEY_USAGE_FLAG 0x4
2664 #define CERT_FIND_PROP_ONLY_CTL_USAGE_FLAG 0x4
2665 #define CERT_FIND_NO_ENHKEY_USAGE_FLAG 0x8
2666 #define CERT_FIND_NO_CTL_USAGE_FLAG 0x8
2667 #define CERT_FIND_OR_ENHKEY_USAGE_FLAG 0x10
2668 #define CERT_FIND_OR_CTL_USAGE_FLAG 0x10
2669 #define CERT_FIND_VALID_ENHKEY_USAGE_FLAG 0x20
2670 #define CERT_FIND_VALID_CTL_USAGE_FLAG 0x20
2671
2672 #define CRL_FIND_ANY 0
2673 #define CRL_FIND_ISSUED_BY 1
2674 #define CRL_FIND_EXISTING 2
2675 #define CRL_FIND_ISSUED_FOR 3
2676
2677 #define CRL_FIND_ISSUED_BY_AKI_FLAG 0x1
2678 #define CRL_FIND_ISSUED_BY_SIGNATURE_FLAG 0x2
2679 #define CRL_FIND_ISSUED_BY_DELTA_FLAG 0x4
2680 #define CRL_FIND_ISSUED_BY_BASE_FLAG 0x8
2681
2682 typedef struct _CRL_FIND_ISSUED_FOR_PARA
2683 {
2684 PCCERT_CONTEXT pSubjectCert;
2685 PCCERT_CONTEXT pIssuerCert;
2686 } CRL_FIND_ISSUED_FOR_PARA, *PCRL_FIND_ISSUED_FOR_PARA;
2687
2688 #define CTL_FIND_ANY 0
2689 #define CTL_FIND_SHA1_HASH 1
2690 #define CTL_FIND_MD5_HASH 2
2691 #define CTL_FIND_USAGE 3
2692 #define CTL_FIND_SUBJECT 4
2693 #define CTL_FIND_EXISTING 5
2694
2695 typedef struct _CTL_FIND_USAGE_PARA
2696 {
2697 DWORD cbSize;
2698 CTL_USAGE SubjectUsage;
2699 CRYPT_DATA_BLOB ListIdentifier;
2700 PCERT_INFO pSigner;
2701 } CTL_FIND_USAGE_PARA, *PCTL_FIND_USAGE_PARA;
2702
2703 #define CTL_FIND_NO_LIST_ID_CBDATA 0xffffffff
2704 #define CTL_FIND_NO_SIGNER_PTR ((PCERT_INFO)-1)
2705 #define CTL_FIND_SAME_USAGE_FLAG 0x00000001
2706
2707 typedef struct _CTL_FIND_SUBJECT_PARA
2708 {
2709 DWORD cbSize;
2710 PCTL_FIND_USAGE_PARA pUsagePara;
2711 DWORD dwSubjectType;
2712 void *pvSubject;
2713 } CTL_FIND_SUBJECT_PARA, *PCTL_FIND_SUBJECT_PARA;
2714
2715 /* PFN_CERT_STORE_PROV_WRITE_CERT dwFlags values */
2716 #define CERT_STORE_PROV_WRITE_ADD_FLAG 0x1
2717
2718 /* CertAddSerializedElementToStore context types */
2719 #define CERT_STORE_CERTIFICATE_CONTEXT 1
2720 #define CERT_STORE_CRL_CONTEXT 2
2721 #define CERT_STORE_CTL_CONTEXT 3
2722 #define CERT_STORE_ALL_CONTEXT_FLAG ~0U
2723 #define CERT_STORE_CERTIFICATE_CONTEXT_FLAG \
2724 (1 << CERT_STORE_CERTIFICATE_CONTEXT)
2725 #define CERT_STORE_CRL_CONTEXT_FLAG (1 << CERT_STORE_CRL_CONTEXT)
2726 #define CERT_STORE_CTL_CONTEXT_FLAG (1 << CERT_STORE_CTL_CONTEXT)
2727
2728 /* CryptBinaryToString/CryptStringToBinary flags */
2729 #define CRYPT_STRING_BASE64HEADER 0x00000000
2730 #define CRYPT_STRING_BASE64 0x00000001
2731 #define CRYPT_STRING_BINARY 0x00000002
2732 #define CRYPT_STRING_BASE64REQUESTHEADER 0x00000003
2733 #define CRYPT_STRING_HEX 0x00000004
2734 #define CRYPT_STRING_HEXASCII 0x00000005
2735 #define CRYPT_STRING_BASE64_ANY 0x00000006
2736 #define CRYPT_STRING_ANY 0x00000007
2737 #define CRYPT_STRING_HEX_ANY 0x00000008
2738 #define CRYPT_STRING_BASE64X509CRLHEADER 0x00000009
2739 #define CRYPT_STRING_HEXADDR 0x0000000a
2740 #define CRYPT_STRING_HEXASCIIADDR 0x0000000b
2741 #define CRYPT_STRING_NOCR 0x80000000
2742
2743 /* OIDs */
2744 #define szOID_RSA "1.2.840.113549"
2745 #define szOID_PKCS "1.2.840.113549.1"
2746 #define szOID_RSA_HASH "1.2.840.113549.2"
2747 #define szOID_RSA_ENCRYPT "1.2.840.113549.3"
2748 #define szOID_PKCS_1 "1.2.840.113549.1.1"
2749 #define szOID_PKCS_2 "1.2.840.113549.1.2"
2750 #define szOID_PKCS_3 "1.2.840.113549.1.3"
2751 #define szOID_PKCS_4 "1.2.840.113549.1.4"
2752 #define szOID_PKCS_5 "1.2.840.113549.1.5"
2753 #define szOID_PKCS_6 "1.2.840.113549.1.6"
2754 #define szOID_PKCS_7 "1.2.840.113549.1.7"
2755 #define szOID_PKCS_8 "1.2.840.113549.1.8"
2756 #define szOID_PKCS_9 "1.2.840.113549.1.9"
2757 #define szOID_PKCS_10 "1.2.840.113549.1.10"
2758 #define szOID_PKCS_11 "1.2.840.113549.1.12"
2759 #define szOID_RSA_RSA "1.2.840.113549.1.1.1"
2760 #define CERT_RSA_PUBLIC_KEY_OBJID szOID_RSA_RSA
2761 #define CERT_DEFAULT_OID_PUBLIC_KEY_SIGN szOID_RSA_RSA
2762 #define CERT_DEFAULT_OID_PUBLIC_KEY_XCHG szOID_RSA_RSA
2763 #define szOID_RSA_MD2RSA "1.2.840.113549.1.1.2"
2764 #define szOID_RSA_MD4RSA "1.2.840.113549.1.1.3"
2765 #define szOID_RSA_MD5RSA "1.2.840.113549.1.1.4"
2766 #define szOID_RSA_SHA1RSA "1.2.840.113549.1.1.5"
2767 #define szOID_RSA_SET0AEP_RSA "1.2.840.113549.1.1.6"
2768 #define szOID_RSA_DH "1.2.840.113549.1.3.1"
2769 #define szOID_RSA_data "1.2.840.113549.1.7.1"
2770 #define szOID_RSA_signedData "1.2.840.113549.1.7.2"
2771 #define szOID_RSA_envelopedData "1.2.840.113549.1.7.3"
2772 #define szOID_RSA_signEnvData "1.2.840.113549.1.7.4"
2773 #define szOID_RSA_digestedData "1.2.840.113549.1.7.5"
2774 #define szOID_RSA_hashedData "1.2.840.113549.1.7.5"
2775 #define szOID_RSA_encryptedData "1.2.840.113549.1.7.6"
2776 #define szOID_RSA_emailAddr "1.2.840.113549.1.9.1"
2777 #define szOID_RSA_unstructName "1.2.840.113549.1.9.2"
2778 #define szOID_RSA_contentType "1.2.840.113549.1.9.3"
2779 #define szOID_RSA_messageDigest "1.2.840.113549.1.9.4"
2780 #define szOID_RSA_signingTime "1.2.840.113549.1.9.5"
2781 #define szOID_RSA_counterSign "1.2.840.113549.1.9.6"
2782 #define szOID_RSA_challengePwd "1.2.840.113549.1.9.7"
2783 #define szOID_RSA_unstructAddr "1.2.840.113549.1.9.9"
2784 #define szOID_RSA_extCertAttrs "1.2.840.113549.1.9.9"
2785 #define szOID_RSA_certExtensions "1.2.840.113549.1.9.14"
2786 #define szOID_RSA_SMIMECapabilities "1.2.840.113549.1.9.15"
2787 #define szOID_RSA_preferSignedData "1.2.840.113549.1.9.15.1"
2788 #define szOID_RSA_SMIMEalg "1.2.840.113549.1.9.16.3"
2789 #define szOID_RSA_SMIMEalgESDH "1.2.840.113549.1.9.16.3.5"
2790 #define szOID_RSA_SMIMEalgCMS3DESwrap "1.2.840.113549.1.9.16.3.6"
2791 #define szOID_RSA_SMIMEalgCMSRC2wrap "1.2.840.113549.1.9.16.3.7"
2792 #define szOID_RSA_MD2 "1.2.840.113549.2.2"
2793 #define szOID_RSA_MD4 "1.2.840.113549.2.4"
2794 #define szOID_RSA_MD5 "1.2.840.113549.2.5"
2795 #define szOID_RSA_RC2CBC "1.2.840.113549.3.2"
2796 #define szOID_RSA_RC4 "1.2.840.113549.3.4"
2797 #define szOID_RSA_DES_EDE3_CBC "1.2.840.113549.3.7"
2798 #define szOID_RSA_RC5_CBCPad "1.2.840.113549.3.9"
2799 #define szOID_ANSI_X942 "1.2.840.10046"
2800 #define szOID_ANSI_X942_DH "1.2.840.10046.2.1"
2801 #define szOID_X957 "1.2.840.10040"
2802 #define szOID_X957_DSA "1.2.840.10040.4.1"
2803 #define szOID_X957_SHA1DSA "1.2.840.10040.4.3"
2804 #define szOID_DS "2.5"
2805 #define szOID_DSALG "2.5.8"
2806 #define szOID_DSALG_CRPT "2.5.8.1"
2807 #define szOID_DSALG_HASH "2.5.8.2"
2808 #define szOID_DSALG_SIGN "2.5.8.3"
2809 #define szOID_DSALG_RSA "2.5.8.1.1"
2810 #define szOID_OIW "1.3.14"
2811 #define szOID_OIWSEC "1.3.14.3.2"
2812 #define szOID_OIWSEC_md4RSA "1.3.14.3.2.2"
2813 #define szOID_OIWSEC_md5RSA "1.3.14.3.2.3"
2814 #define szOID_OIWSEC_md4RSA2 "1.3.14.3.2.4"
2815 #define szOID_OIWSEC_desECB "1.3.14.3.2.6"
2816 #define szOID_OIWSEC_desCBC "1.3.14.3.2.7"
2817 #define szOID_OIWSEC_desOFB "1.3.14.3.2.8"
2818 #define szOID_OIWSEC_desCFB "1.3.14.3.2.9"
2819 #define szOID_OIWSEC_desMAC "1.3.14.3.2.10"
2820 #define szOID_OIWSEC_rsaSign "1.3.14.3.2.11"
2821 #define szOID_OIWSEC_dsa "1.3.14.3.2.12"
2822 #define szOID_OIWSEC_shaDSA "1.3.14.3.2.13"
2823 #define szOID_OIWSEC_mdc2RSA "1.3.14.3.2.14"
2824 #define szOID_OIWSEC_shaRSA "1.3.14.3.2.15"
2825 #define szOID_OIWSEC_dhCommMod "1.3.14.3.2.16"
2826 #define szOID_OIWSEC_desEDE "1.3.14.3.2.17"
2827 #define szOID_OIWSEC_sha "1.3.14.3.2.18"
2828 #define szOID_OIWSEC_mdc2 "1.3.14.3.2.19"
2829 #define szOID_OIWSEC_dsaComm "1.3.14.3.2.20"
2830 #define szOID_OIWSEC_dsaCommSHA "1.3.14.3.2.21"
2831 #define szOID_OIWSEC_rsaXchg "1.3.14.3.2.22"
2832 #define szOID_OIWSEC_keyHashSeal "1.3.14.3.2.23"
2833 #define szOID_OIWSEC_md2RSASign "1.3.14.3.2.24"
2834 #define szOID_OIWSEC_md5RSASign "1.3.14.3.2.25"
2835 #define szOID_OIWSEC_sha1 "1.3.14.3.2.26"
2836 #define szOID_OIWSEC_dsaSHA1 "1.3.14.3.2.27"
2837 #define szOID_OIWSEC_dsaCommSHA1 "1.3.14.3.2.28"
2838 #define szOID_OIWSEC_sha1RSASign "1.3.14.3.2.29"
2839 #define szOID_OIWDIR "1.3.14.7.2"
2840 #define szOID_OIWDIR_CRPT "1.3.14.7.2.1"
2841 #define szOID_OIWDIR_HASH "1.3.14.7.2.2"
2842 #define szOID_OIWDIR_SIGN "1.3.14.7.2.3"
2843 #define szOID_OIWDIR_md2 "1.3.14.7.2.2.1"
2844 #define szOID_OIWDIR_md2RSA "1.3.14.7.2.3.1"
2845 #define szOID_INFOSEC "2.16.840.1.101.2.1"
2846 #define szOID_INFOSEC_sdnsSignature "2.16.840.1.101.2.1.1.1"
2847 #define szOID_INFOSEC_mosaicSignature "2.16.840.1.101.2.1.1.2"
2848 #define szOID_INFOSEC_sdnsConfidentiality "2.16.840.1.101.2.1.1.3"
2849 #define szOID_INFOSEC_mosaicConfidentiality "2.16.840.1.101.2.1.1.4"
2850 #define szOID_INFOSEC_sdnsIntegrity "2.16.840.1.101.2.1.1.5"
2851 #define szOID_INFOSEC_mosaicIntegrity "2.16.840.1.101.2.1.1.6"
2852 #define szOID_INFOSEC_sdnsTokenProtection "2.16.840.1.101.2.1.1.7"
2853 #define szOID_INFOSEC_mosaicTokenProtection "2.16.840.1.101.2.1.1.8"
2854 #define szOID_INFOSEC_sdnsKeyManagement "2.16.840.1.101.2.1.1.9"
2855 #define szOID_INFOSEC_mosaicKeyManagement "2.16.840.1.101.2.1.1.10"
2856 #define szOID_INFOSEC_sdnsKMandSig "2.16.840.1.101.2.1.1.11"
2857 #define szOID_INFOSEC_mosaicKMandSig "2.16.840.1.101.2.1.1.12"
2858 #define szOID_INFOSEC_SuiteASignature "2.16.840.1.101.2.1.1.13"
2859 #define szOID_INFOSEC_SuiteAConfidentiality "2.16.840.1.101.2.1.1.14"
2860 #define szOID_INFOSEC_SuiteAIntegrity "2.16.840.1.101.2.1.1.15"
2861 #define szOID_INFOSEC_SuiteATokenProtection "2.16.840.1.101.2.1.1.16"
2862 #define szOID_INFOSEC_SuiteAKeyManagement "2.16.840.1.101.2.1.1.17"
2863 #define szOID_INFOSEC_SuiteAKMandSig "2.16.840.1.101.2.1.1.18"
2864 #define szOID_INFOSEC_mosaicUpdatedSig "2.16.840.1.101.2.1.1.19"
2865 #define szOID_INFOSEC_mosaicKMandUpdSig "2.16.840.1.101.2.1.1.20"
2866 #define szOID_INFOSEC_mosaicUpdateInteg "2.16.840.1.101.2.1.1.21"
2867 #define szOID_COMMON_NAME "2.5.4.3"
2868 #define szOID_SUR_NAME "2.5.4.4"
2869 #define szOID_DEVICE_SERIAL_NUMBER "2.5.4.5"
2870 #define szOID_COUNTRY_NAME "2.5.4.6"
2871 #define szOID_LOCALITY_NAME "2.5.4.7"
2872 #define szOID_STATE_OR_PROVINCE_NAME "2.5.4.8"
2873 #define szOID_STREET_ADDRESS "2.5.4.9"
2874 #define szOID_ORGANIZATION_NAME "2.5.4.10"
2875 #define szOID_ORGANIZATIONAL_UNIT_NAME "2.5.4.11"
2876 #define szOID_TITLE "2.5.4.12"
2877 #define szOID_DESCRIPTION "2.5.4.13"
2878 #define szOID_SEARCH_GUIDE "2.5.4.14"
2879 #define szOID_BUSINESS_CATEGORY "2.5.4.15"
2880 #define szOID_POSTAL_ADDRESS "2.5.4.16"
2881 #define szOID_POSTAL_CODE "2.5.4.17"
2882 #define szOID_POST_OFFICE_BOX "2.5.4.18"
2883 #define szOID_PHYSICAL_DELIVERY_OFFICE_NAME "2.5.4.19"
2884 #define szOID_TELEPHONE_NUMBER "2.5.4.20"
2885 #define szOID_TELEX_NUMBER "2.5.4.21"
2886 #define szOID_TELETEXT_TERMINAL_IDENTIFIER "2.5.4.22"
2887 #define szOID_FACSIMILE_TELEPHONE_NUMBER "2.5.4.23"
2888 #define szOID_X21_ADDRESS "2.5.4.24"
2889 #define szOID_INTERNATIONAL_ISDN_NUMBER "2.5.4.25"
2890 #define szOID_REGISTERED_ADDRESS "2.5.4.26"
2891 #define szOID_DESTINATION_INDICATOR "2.5.4.27"
2892 #define szOID_PREFERRED_DELIVERY_METHOD "2.5.4.28"
2893 #define szOID_PRESENTATION_ADDRESS "2.5.4.29"
2894 #define szOID_SUPPORTED_APPLICATION_CONTEXT "2.5.4.30"
2895 #define szOID_MEMBER "2.5.4.31"
2896 #define szOID_OWNER "2.5.4.32"
2897 #define szOID_ROLE_OCCUPANT "2.5.4.33"
2898 #define szOID_SEE_ALSO "2.5.4.34"
2899 #define szOID_USER_PASSWORD "2.5.4.35"
2900 #define szOID_USER_CERTIFICATE "2.5.4.36"
2901 #define szOID_CA_CERTIFICATE "2.5.4.37"
2902 #define szOID_AUTHORITY_REVOCATION_LIST "2.5.4.38"
2903 #define szOID_CERTIFICATE_REVOCATION_LIST "2.5.4.39"
2904 #define szOID_CROSS_CERTIFICATE_PAIR "2.5.4.40"
2905 #define szOID_GIVEN_NAME "2.5.4.42"
2906 #define szOID_INITIALS "2.5.4.43"
2907 #define szOID_DN_QUALIFIER "2.5.4.46"
2908 #define szOID_AUTHORITY_KEY_IDENTIFIER "2.5.29.1"
2909 #define szOID_KEY_ATTRIBUTES "2.5.29.2"
2910 #define szOID_CERT_POLICIES_95 "2.5.29.3"
2911 #define szOID_KEY_USAGE_RESTRICTION "2.5.29.4"
2912 #define szOID_LEGACY_POLICY_MAPPINGS "2.5.29.5"
2913 #define szOID_SUBJECT_ALT_NAME "2.5.29.7"
2914 #define szOID_ISSUER_ALT_NAME "2.5.29.8"
2915 #define szOID_SUBJECT_DIR_ATTRS "2.5.29.9"
2916 #define szOID_BASIC_CONSTRAINTS "2.5.29.10"
2917 #define szOID_SUBJECT_KEY_IDENTIFIER "2.5.29.14"
2918 #define szOID_KEY_USAGE "2.5.29.15"
2919 #define szOID_PRIVATEKEY_USAGE_PERIOD "2.5.29.16"
2920 #define szOID_SUBJECT_ALT_NAME2 "2.5.29.17"
2921 #define szOID_ISSUER_ALT_NAME2 "2.5.29.18"
2922 #define szOID_BASIC_CONSTRAINTS2 "2.5.29.19"
2923 #define szOID_CRL_NUMBER "2.5.29.20"
2924 #define szOID_CRL_REASON_CODE "2.5.29.21"
2925 #define szOID_REASON_CODE_HOLD "2.5.29.23"
2926 #define szOID_DELTA_CRL_INDICATOR "2.5.29.27"
2927 #define szOID_ISSUING_DIST_POINT "2.5.29.28"
2928 #define szOID_NAME_CONSTRAINTS "2.5.29.30"
2929 #define szOID_CRL_DIST_POINTS "2.5.29.31"
2930 #define szOID_CERT_POLICIES "2.5.29.32"
2931 #define szOID_ANY_CERT_POLICY "2.5.29.32.0"
2932 #define szOID_POLICY_MAPPINGS "2.5.29.33"
2933 #define szOID_AUTHORITY_KEY_IDENTIFIER2 "2.5.29.35"
2934 #define szOID_POLICY_CONSTRAINTS "2.5.29.36"
2935 #define szOID_ENHANCED_KEY_USAGE "2.5.29.37"
2936 #define szOID_FRESHEST_CRL "2.5.29.46"
2937 #define szOID_DOMAIN_COMPONENT "0.9.2342.19200300.100.1.25"
2938 #define szOID_PKCS_12_FRIENDLY_NAME_ATTR "1.2.840.113549.1.9.20"
2939 #define szOID_PKCS_12_LOCAL_KEY_ID "1.2.840.113549.1.9.21"
2940 #define szOID_CERT_EXTENSIONS "1.3.6.1.4.1.311.2.1.14"
2941 #define szOID_NEXT_UPDATE_LOCATION "1.3.6.1.4.1.311.10.2"
2942 #define szOID_KP_CTL_USAGE_SIGNING "1.3.6.1.4.1.311.10.3.1"
2943 #define szOID_KP_TIME_STAMP_SIGNING "1.3.6.1.4.1.311.10.3.2"
2944 #ifndef szOID_SERVER_GATED_CRYPTO
2945 #define szOID_SERVER_GATED_CRYPTO "1.3.6.1.4.1.311.10.3.3"
2946 #endif
2947 #ifndef szOID_SGC_NETSCAPE
2948 #define szOID_SGC_NETSCAPE "2.16.840.1.113730.4.1"
2949 #endif
2950 #define szOID_KP_EFS "1.3.6.1.4.1.311.10.3.4"
2951 #define szOID_EFS_RECOVERY "1.3.6.1.4.1.311.10.3.4.1"
2952 #define szOID_WHQL_CRYPTO "1.3.6.1.4.1.311.10.3.5"
2953 #define szOID_NT5_CRYPTO "1.3.6.1.4.1.311.10.3.6"
2954 #define szOID_OEM_WHQL_CRYPTO "1.3.6.1.4.1.311.10.3.7"
2955 #define szOID_EMBEDDED_NT_CRYPTO "1.3.6.1.4.1.311.10.3.8"
2956 #define szOID_ROOT_LIST_SIGNER "1.3.6.1.4.1.311.10.3.9"
2957 #define szOID_KP_QUALIFIED_SUBORDINATION "1.3.6.1.4.1.311.10.3.10"
2958 #define szOID_KP_KEY_RECOVERY "1.3.6.1.4.1.311.10.3.11"
2959 #define szOID_KP_DOCUMENT_SIGNING "1.3.6.1.4.1.311.10.3.12"
2960 #define szOID_KP_LIFETIME_SIGNING "1.3.6.1.4.1.311.10.3.13"
2961 #define szOID_KP_MOBILE_DEVICE_SOFTWARE "1.3.6.1.4.1.311.10.3.14"
2962 #define szOID_YESNO_TRUST_ATTR "1.3.6.1.4.1.311.10.4.1"
2963 #ifndef szOID_DRM
2964 #define szOID_DRM "1.3.6.1.4.1.311.10.5.1"
2965 #endif
2966 #ifndef szOID_DRM_INDIVIDUALIZATION
2967 #define szOID_DRM_INDIVIDUALIZATION "1.3.6.1.4.1.311.10.5.2"
2968 #endif
2969 #ifndef szOID_LICENSES
2970 #define szOID_LICENSES "1.3.6.1.4.1.311.10.6.1"
2971 #endif
2972 #ifndef szOID_LICENSE_SERVER
2973 #define szOID_LICENSE_SERVER "1.3.6.1.4.1.311.10.6.2"
2974 #endif
2975 #define szOID_REMOVE_CERTIFICATE "1.3.6.1.4.1.311.10.8.1"
2976 #define szOID_CROSS_CERT_DIST_POINTS "1.3.6.1.4.1.311.10.9.1"
2977 #define szOID_CTL "1.3.6.1.4.1.311.10.1"
2978 #define szOID_SORTED_CTL "1.3.6.1.4.1.311.10.1.1"
2979 #define szOID_ANY_APPLICATION_POLICY "1.3.6.1.4.1.311.10.12.1"
2980 #define szOID_RENEWAL_CERTIFICATE "1.3.6.1.4.1.311.13.1"
2981 #define szOID_ENROLLMENT_NAME_VALUE_PAIR "1.3.6.1.4.1.311.13.2.1"
2982 #define szOID_ENROLLMENT_CSP_PROVIDER "1.3.6.1.4.1.311.13.2.2"
2983 #define szOID_OS_VERSION "1.3.6.1.4.1.311.13.2.3"
2984 #define szOID_PKCS_12_KEY_PROVIDER_NAME_ATTR "1.3.6.1.4.1.311.17.1"
2985 #define szOID_LOCAL_MACHINE_KEYSET "1.3.6.1.4.1.311.17.2"
2986 #define szOID_AUTO_ENROLL_CTL_USAGE "1.3.6.1.4.1.311.20.1"
2987 #define szOID_ENROLL_CERTTYPE_EXTENSION "1.3.6.1.4.1.311.20.2"
2988 #define szOID_ENROLLMENT_AGENT "1.3.6.1.4.1.311.20.2.1"
2989 #define szOID_KP_SMARTCARD_LOGON "1.3.6.1.4.1.311.20.2.2"
2990 #define szOID_CERT_MANIFOLD "1.3.6.1.4.1.311.20.3"
2991 #ifndef szOID_CERTSRV_CA_VERSION
2992 #define szOID_CERTSRV_CA_VERSION "1.3.6.1.4.1.311.21.1"
2993 #endif
2994 #define szOID_CERTSRV_PREVIOUS_CERT_HASH "1.3.6.1.4.1.311.21.2"
2995 #define szOID_CRL_VIRTUAL_BASE "1.3.6.1.4.1.311.21.3"
2996 #define szOID_CRL_NEXT_PUBLISH "1.3.6.1.4.1.311.21.4"
2997 #define szOID_KP_CA_EXCHANGE "1.3.6.1.4.1.311.21.5"
2998 #define szOID_KP_KEY_RECOVERY_AGENT "1.3.6.1.4.1.311.21.6"
2999 #define szOID_CERTIFICATE_TEMPLATE "1.3.6.1.4.1.311.21.7"
3000 #define szOID_ENTERPRISE_OID_ROOT "1.3.6.1.4.1.311.21.8"
3001 #define szOID_RDN_DUMMY_SIGNER "1.3.6.1.4.1.311.21.9"
3002 #define szOID_APPLICATION_CERT_POLICIES "1.3.6.1.4.1.311.21.10"
3003 #define szOID_APPLICATION_POLICY_MAPPINGS "1.3.6.1.4.1.311.21.11"
3004 #define szOID_APPLICATION_POLICY_CONSTRAINTS "1.3.6.1.4.1.311.21.12"
3005 #define szOID_ARCHIVED_KEY_ATTR "1.3.6.1.4.1.311.21.13"
3006 #define szOID_CRL_SELF_CDP "1.3.6.1.4.1.311.21.14"
3007 #define szOID_REQUIRE_CERT_CHAIN_POLICY "1.3.6.1.4.1.311.21.15"
3008 #define szOID_ARCHIVED_KEY_CERT_HASH "1.3.6.1.4.1.311.21.16"
3009 #define szOID_ISSUED_CERT_HASH "1.3.6.1.4.1.311.21.17"
3010 #define szOID_DS_EMAIL_REPLICATION "1.3.6.1.4.1.311.21.19"
3011 #define szOID_REQUEST_CLIENT_INFO "1.3.6.1.4.1.311.21.20"
3012 #define szOID_ENCRYPTED_KEY_HASH "1.3.6.1.4.1.311.21.21"
3013 #define szOID_CERTSRV_CROSSCA_VERSION "1.3.6.1.4.1.311.21.22"
3014 #define szOID_KEYID_RDN "1.3.6.1.4.1.311.10.7.1"
3015 #define szOID_PKIX "1.3.6.1.5.5.7"
3016 #define szOID_PKIX_PE "1.3.6.1.5.5.7.1"
3017 #define szOID_AUTHORITY_INFO_ACCESS "1.3.6.1.5.5.7.1.1"
3018 #define szOID_PKIX_POLICY_QUALIFIER_CPS "1.3.6.1.5.5.7.2.1"
3019 #define szOID_PKIX_POLICY_QUALIFIER_USERNOTICE "1.3.6.1.5.5.7.2.2"
3020 #define szOID_PKIX_KP "1.3.6.1.5.5.7.3"
3021 #define szOID_PKIX_KP_SERVER_AUTH "1.3.6.1.5.5.7.3.1"
3022 #define szOID_PKIX_KP_CLIENT_AUTH "1.3.6.1.5.5.7.3.2"
3023 #define szOID_PKIX_KP_CODE_SIGNING "1.3.6.1.5.5.7.3.3"
3024 #define szOID_PKIX_KP_EMAIL_PROTECTION "1.3.6.1.5.5.7.3.4"
3025 #define szOID_PKIX_KP_IPSEC_END_SYSTEM "1.3.6.1.5.5.7.3.5"
3026 #define szOID_PKIX_KP_IPSEC_TUNNEL "1.3.6.1.5.5.7.3.6"
3027 #define szOID_PKIX_KP_IPSEC_USER "1.3.6.1.5.5.7.3.7"
3028 #define szOID_PKIX_KP_TIMESTAMP_SIGNING "1.3.6.1.5.5.7.3.8"
3029 #define szOID_PKIX_NO_SIGNATURE "1.3.6.1.5.5.7.6.2"
3030 #define szOID_CMC "1.3.6.1.5.5.7.7"
3031 #define szOID_CMC_STATUS_INFO "1.3.6.1.5.5.7.7.1"
3032 #define szOID_CMC_IDENTIFICATION "1.3.6.1.5.5.7.7.2"
3033 #define szOID_CMC_IDENTITY_PROOF "1.3.6.1.5.5.7.7.3"
3034 #define szOID_CMC_DATA_RETURN "1.3.6.1.5.5.7.7.4"
3035 #define szOID_CMC_TRANSACTION_ID "1.3.6.1.5.5.7.7.5"
3036 #define szOID_CMC_SENDER_NONCE "1.3.6.1.5.5.7.7.6"
3037 #define szOID_CMC_RECIPIENT_NONCE "1.3.6.1.5.5.7.7.7"
3038 #define szOID_CMC_ADD_EXTENSIONS "1.3.6.1.5.5.7.7.8"
3039 #define szOID_CMC_ENCRYPTED_POP "1.3.6.1.5.5.7.7.9"
3040 #define szOID_CMC_DECRYPTED_POP "1.3.6.1.5.5.7.7.10"
3041 #define szOID_CMC_LRA_POP_WITNESS "1.3.6.1.5.5.7.7.11"
3042 #define szOID_CMC_GET_CERT "1.3.6.1.5.5.7.7.15"
3043 #define szOID_CMC_GET_CRL "1.3.6.1.5.5.7.7.16"
3044 #define szOID_CMC_REVOKE_REQUEST "1.3.6.1.5.5.7.7.17"
3045 #define szOID_CMC_REG_INFO "1.3.6.1.5.5.7.7.18"
3046 #define szOID_CMC_RESPONSE_INFO "1.3.6.1.5.5.7.7.19"
3047 #define szOID_CMC_QUERY_PENDING "1.3.6.1.5.5.7.7.21"
3048 #define szOID_CMC_ID_POP_LINK_RANDOM "1.3.6.1.5.5.7.7.22"
3049 #define szOID_CMC_ID_POP_LINK_WITNESS "1.3.6.1.5.5.7.7.23"
3050 #define szOID_CT_PKI_DATA "1.3.6.1.5.5.7.12.2"
3051 #define szOID_CT_PKI_RESPONSE "1.3.6.1.5.5.7.12.3"
3052 #define szOID_PKIX_ACC_DESCR "1.3.6.1.5.5.7.48"
3053 #define szOID_PKIX_OCSP "1.3.6.1.5.5.7.48.1"
3054 #define szOID_PKIX_CA_ISSUERS "1.3.6.1.5.5.7.48.2"
3055 #define szOID_IPSEC_KP_IKE_INTERMEDIATE "1.3.6.1.5.5.8.2.2"
3056
3057 #ifndef szOID_SERIALIZED
3058 #define szOID_SERIALIZED "1.3.6.1.4.1.311.10.3.3.1"
3059 #endif
3060
3061 #define szOID_AUTO_ENROLL_CTL_USAGE "1.3.6.1.4.1.311.20.1"
3062 #define szOID_ENROLL_CERTTYPE_EXTENSION "1.3.6.1.4.1.311.20.2"
3063 #define szOID_ENROLLMENT_AGENT "1.3.6.1.4.1.311.20.2.1"
3064 #ifndef szOID_KP_SMARTCARD_LOGON
3065 #define szOID_KP_SMARTCARD_LOGON "1.3.6.1.4.1.311.20.2.2"
3066 #endif
3067 #ifndef szOID_NT_PRINCIPAL_NAME
3068 #define szOID_NT_PRINCIPAL_NAME "1.3.6.1.4.1.311.20.2.3"
3069 #endif
3070 #define szOID_CERT_MANIFOLD "1.3.6.1.4.1.311.20.3"
3071
3072 #ifndef szOID_CERTSRV_CA_VERSION
3073 #define szOID_CERTSRV_CA_VERSION "1.3.6.1.4.1.311.21.1"
3074 #endif
3075
3076 #ifndef szOID_PRODUCT_UPDATE
3077 #define szOID_PRODUCT_UPDATE "1.3.6.1.4.1.311.31.1"
3078 #endif
3079
3080 #define szOID_NETSCAPE "2.16.840.1.113730"
3081 #define szOID_NETSCAPE_CERT_EXTENSION "2.16.840.1.113730.1"
3082 #define szOID_NETSCAPE_CERT_TYPE "2.16.840.1.113730.1.1"
3083 #define szOID_NETSCAPE_BASE_URL "2.16.840.1.113730.1.2"
3084 #define szOID_NETSCAPE_REVOCATION_URL "2.16.840.1.113730.1.3"
3085 #define szOID_NETSCAPE_CA_REVOCATION_URL "2.16.840.1.113730.1.4"
3086 #define szOID_NETSCAPE_CERT_RENEWAL_URL "2.16.840.1.113730.1.7"
3087 #define szOID_NETSCAPE_CA_POLICY_URL "2.16.840.1.113730.1.8"
3088 #define szOID_NETSCAPE_SSL_SERVER_NAME "2.16.840.1.113730.1.12"
3089 #define szOID_NETSCAPE_COMMENT "2.16.840.1.113730.1.13"
3090
3091 #define CRYPT_ENCODE_DECODE_NONE 0
3092 #define X509_CERT ((LPCSTR)1)
3093 #define X509_CERT_TO_BE_SIGNED ((LPCSTR)2)
3094 #define X509_CERT_CRL_TO_BE_SIGNED ((LPCSTR)3)
3095 #define X509_CERT_REQUEST_TO_BE_SIGNED ((LPCSTR)4)
3096 #define X509_EXTENSIONS ((LPCSTR)5)
3097 #define X509_NAME_VALUE ((LPCSTR)6)
3098 #define X509_ANY_STRING X509_NAME_VALUE
3099 #define X509_NAME ((LPCSTR)7)
3100 #define X509_PUBLIC_KEY_INFO ((LPCSTR)8)
3101 #define X509_AUTHORITY_KEY_ID ((LPCSTR)9)
3102 #define X509_KEY_ATTRIBUTES ((LPCSTR)10)
3103 #define X509_KEY_USAGE_RESTRICTION ((LPCSTR)11)
3104 #define X509_ALTERNATE_NAME ((LPCSTR)12)
3105 #define X509_BASIC_CONSTRAINTS ((LPCSTR)13)
3106 #define X509_KEY_USAGE ((LPCSTR)14)
3107 #define X509_BASIC_CONSTRAINTS2 ((LPCSTR)15)
3108 #define X509_CERT_POLICIES ((LPCSTR)16)
3109 #define PKCS_UTC_TIME ((LPCSTR)17)
3110 #define PKCS_TIME_REQUEST ((LPCSTR)18)
3111 #define RSA_CSP_PUBLICKEYBLOB ((LPCSTR)19)
3112 #define X509_UNICODE_NAME ((LPCSTR)20)
3113 #define X509_KEYGEN_REQUEST_TO_BE_SIGNED ((LPCSTR)21)
3114 #define PKCS_ATTRIBUTE ((LPCSTR)22)
3115 #define PKCS_CONTENT_INFO_SEQUENCE_OF_ANY ((LPCSTR)23)
3116 #define X509_UNICODE_NAME_VALUE ((LPCSTR)24)
3117 #define X509_UNICODE_ANY_STRING X509_UNICODE_NAME_VALUE
3118 #define X509_OCTET_STRING ((LPCSTR)25)
3119 #define X509_BITS ((LPCSTR)26)
3120 #define X509_INTEGER ((LPCSTR)27)
3121 #define X509_MULTI_BYTE_INTEGER ((LPCSTR)28)
3122 #define X509_ENUMERATED ((LPCSTR)29)
3123 #define X509_CRL_REASON_CODE X509_ENUMERATED
3124 #define X509_CHOICE_OF_TIME ((LPCSTR)30)
3125 #define X509_AUTHORITY_KEY_ID2 ((LPCSTR)31)
3126 #define X509_AUTHORITY_INFO_ACCESS ((LPCSTR)32)
3127 #define PKCS_CONTENT_INFO ((LPCSTR)33)
3128 #define X509_SEQUENCE_OF_ANY ((LPCSTR)34)
3129 #define X509_CRL_DIST_POINTS ((LPCSTR)35)
3130 #define X509_ENHANCED_KEY_USAGE ((LPCSTR)36)
3131 #define PKCS_CTL ((LPCSTR)37)
3132 #define X509_MULTI_BYTE_UINT ((LPCSTR)38)
3133 #define X509_DSS_PUBLICKEY X509_MULTI_BYTE_UINT
3134 #define X509_DSS_PARAMETERS ((LPCSTR)39)
3135 #define X509_DSS_SIGNATURE ((LPCSTR)40)
3136 #define PKCS_RC2_CBC_PARAMETERS ((LPCSTR)41)
3137 #define PKCS_SMIME_CAPABILITIES ((LPCSTR)42)
3138 #define PKCS_RSA_PRIVATE_KEY ((LPCSTR)43)
3139 #define PKCS_PRIVATE_KEY_INFO ((LPCSTR)44)
3140 #define PKCS_ENCRYPTED_PRIVATE_KEY_INFO ((LPCSTR)45)
3141 #define X509_PKIX_POLICY_QUALIFIER_USERNOTICE ((LPCSTR)46)
3142 #define X509_DH_PUBLICKEY X509_MULTI_BYTE_UINT
3143 #define X509_DH_PARAMETERS ((LPCSTR)47)
3144 #define PKCS_ATTRIBUTES ((LPCSTR)48)
3145 #define PKCS_SORTED_CTL ((LPCSTR)49)
3146 #define X942_DH_PARAMETERS ((LPCSTR)50)
3147 #define X509_BITS_WITHOUT_TRAILING_ZEROES ((LPCSTR)51)
3148 #define X942_OTHER_INFO ((LPCSTR)52)
3149 #define X509_CERT_PAIR ((LPCSTR)53)
3150 #define X509_ISSUING_DIST_POINT ((LPCSTR)54)
3151 #define X509_NAME_CONSTRAINTS ((LPCSTR)55)
3152 #define X509_POLICY_MAPPINGS ((LPCSTR)56)
3153 #define X509_POLICY_CONSTRAINTS ((LPCSTR)57)
3154 #define X509_CROSS_CERT_DIST_POINTS ((LPCSTR)58)
3155 #define CMC_DATA ((LPCSTR)59)
3156 #define CMC_RESPONSE ((LPCSTR)60)
3157 #define CMC_STATUS ((LPCSTR)61)
3158 #define CMC_ADD_EXTENSIONS ((LPCSTR)62)
3159 #define CMC_ADD_ATTRIBUTES ((LPCSTR)63)
3160 #define X509_CERTIFICATE_TEMPLATE ((LPCSTR)64)
3161 #define PKCS7_SIGNER_INFO ((LPCSTR)500)
3162 #define CMS_SIGNER_INFO ((LPCSTR)501)
3163
3164 /* encode/decode flags */
3165 #define CRYPT_ENCODE_NO_SIGNATURE_BYTE_REVERSAL_FLAG 0x00008
3166 #define CRYPT_ENCODE_ALLOC_FLAG 0x08000
3167 #define CRYPT_SORTED_CTL_ENCODE_HASHED_SUBJECT_IDENTIFIER_FLAG 0x10000
3168 #define CRYPT_UNICODE_NAME_ENCODE_ENABLE_T61_UNICODE_FLAG \
3169 CERT_RDN_ENABLE_T61_UNICODE_FLAG
3170 #define CRYPT_UNICODE_NAME_ENCODE_ENABLE_UTF8_UNICODE_FLAG \
3171 CERT_RDN_ENABLE_UTF8_UNICODE_FLAG
3172 #define CRYPT_UNICODE_NAME_ENCODE_DISABLE_CHECK_TYPE_FLAG \
3173 CERT_RDN_DISABLE_CHECK_TYPE_FLAG
3174
3175 #define CRYPT_DECODE_NOCOPY_FLAG 0x00001
3176 #define CRYPT_DECODE_TO_BE_SIGNED_FLAG 0x00002
3177 #define CRYPT_DECODE_SHARE_OID_STRING_FLAG 0x00004
3178 #define CRYPT_DECODE_NO_SIGNATURE_BYTE_REVERSAL_FLAG 0x00008
3179 #define CRYPT_DECODE_ALLOC_FLAG 0x08000
3180 #define CRYPT_UNICODE_NAME_DECODE_DISABLE_IE4_UTF8_FLAG \
3181 CERT_RDN_DISABLE_IE4_UTF8_FLAG
3182
3183 #define CERT_STORE_SIGNATURE_FLAG 0x00000001
3184 #define CERT_STORE_TIME_VALIDITY_FLAG 0x00000002
3185 #define CERT_STORE_REVOCATION_FLAG 0x00000004
3186 #define CERT_STORE_NO_CRL_FLAG 0x00010000
3187 #define CERT_STORE_NO_ISSUER_FLAG 0x00020000
3188
3189 #define CERT_STORE_BASE_CRL_FLAG 0x00000100
3190 #define CERT_STORE_DELTA_CRL_FLAG 0x00000200
3191
3192 /* subject types for CryptVerifyCertificateSignatureEx */
3193 #define CRYPT_VERIFY_CERT_SIGN_SUBJECT_BLOB 1
3194 #define CRYPT_VERIFY_CERT_SIGN_SUBJECT_CERT 2
3195 #define CRYPT_VERIFY_CERT_SIGN_SUBJECT_CRL 3
3196
3197 /* issuer types for CryptVerifyCertificateSignatureEx */
3198 #define CRYPT_VERIFY_CERT_SIGN_ISSUER_PUBKEY 1
3199 #define CRYPT_VERIFY_CERT_SIGN_ISSUER_CERT 2
3200 #define CRYPT_VERIFY_CERT_SIGN_ISSUER_CHAIN 3
3201 #define CRYPT_VERIFY_CERT_SIGN_ISSUER_NULL 4
3202
3203 #define CRYPT_GET_URL_FROM_PROPERTY 0x00000001
3204 #define CRYPT_GET_URL_FROM_EXTENSION 0x00000002
3205 #define CRYPT_GET_URL_FROM_UNAUTH_ATTRIBUTE 0x00000004
3206 #define CRYPT_GET_URL_FROM_AUTH_ATTRIBUTE 0x00000008
3207
3208 /* Certificate name string types and flags */
3209 #define CERT_SIMPLE_NAME_STR 1
3210 #define CERT_OID_NAME_STR 2
3211 #define CERT_X500_NAME_STR 3
3212 #define CERT_NAME_STR_SEMICOLON_FLAG 0x40000000
3213 #define CERT_NAME_STR_NO_PLUS_FLAG 0x20000000
3214 #define CERT_NAME_STR_NO_QUOTING_FLAG 0x10000000
3215 #define CERT_NAME_STR_CRLF_FLAG 0x08000000
3216 #define CERT_NAME_STR_COMMA_FLAG 0x04000000
3217 #define CERT_NAME_STR_REVERSE_FLAG 0x02000000
3218 #define CERT_NAME_STR_ENABLE_UTF8_UNICODE_FLAG 0x00040000
3219 #define CERT_NAME_STR_ENABLE_T61_UNICODE_FLAG 0x00020000
3220 #define CERT_NAME_STR_DISABLE_IE4_UTF8_FLAG 0x00010000
3221
3222 #define CERT_NAME_EMAIL_TYPE 1
3223 #define CERT_NAME_RDN_TYPE 2
3224 #define CERT_NAME_ATTR_TYPE 3
3225 #define CERT_NAME_SIMPLE_DISPLAY_TYPE 4
3226 #define CERT_NAME_FRIENDLY_DISPLAY_TYPE 5
3227 #define CERT_NAME_DNS_TYPE 6
3228 #define CERT_NAME_URL_TYPE 7
3229 #define CERT_NAME_UPN_TYPE 8
3230
3231 #define CERT_NAME_ISSUER_FLAG 0x00000001
3232 #define CERT_NAME_DISABLE_IE4_UTF8_FLAG 0x00010000
3233
3234 /* CryptFormatObject flags */
3235 #define CRYPT_FORMAT_STR_MULTI_LINE 0x0001
3236 #define CRYPT_FORMAT_STR_NO_HEX 0x0010
3237
3238 #define CRYPT_FORMAT_SIMPLE 0x0001
3239 #define CRYPT_FORMAT_X509 0x0002
3240 #define CRYPT_FORMAT_OID 0x0004
3241 #define CRYPT_FORMAT_RDN_SEMICOLON 0x0100
3242 #define CRYPT_FORMAT_RDN_CRLF 0x0200
3243 #define CRYPT_FORMAT_RDN_UNQUOTE 0x0400
3244 #define CRYPT_FORMAT_RDN_REVERSE 0x0800
3245
3246 #define CRYPT_FORMAT_COMMA 0x1000
3247 #define CRYPT_FORMAT_SEMICOLON CRYPT_FORMAT_RDN_SEMICOLON
3248 #define CRYPT_FORMAT_CRLF CRYPT_FORMAT_RDN_CRLF
3249
3250 /* CryptQueryObject types and flags */
3251 #define CERT_QUERY_OBJECT_FILE 1
3252 #define CERT_QUERY_OBJECT_BLOB 2
3253
3254 #define CERT_QUERY_CONTENT_CERT 1
3255 #define CERT_QUERY_CONTENT_CTL 2
3256 #define CERT_QUERY_CONTENT_CRL 3
3257 #define CERT_QUERY_CONTENT_SERIALIZED_STORE 4
3258 #define CERT_QUERY_CONTENT_SERIALIZED_CERT 5
3259 #define CERT_QUERY_CONTENT_SERIALIZED_CTL 6
3260 #define CERT_QUERY_CONTENT_SERIALIZED_CRL 7
3261 #define CERT_QUERY_CONTENT_PKCS7_SIGNED 8
3262 #define CERT_QUERY_CONTENT_PKCS7_UNSIGNED 9
3263 #define CERT_QUERY_CONTENT_PKCS7_SIGNED_EMBED 10
3264 #define CERT_QUERY_CONTENT_PKCS10 11
3265 #define CERT_QUERY_CONTENT_PFX 12
3266 #define CERT_QUERY_CONTENT_CERT_PAIR 13
3267
3268 #define CERT_QUERY_CONTENT_FLAG_CERT (1 << CERT_QUERY_CONTENT_CERT)
3269 #define CERT_QUERY_CONTENT_FLAG_CTL (1 << CERT_QUERY_CONTENT_CTL)
3270 #define CERT_QUERY_CONTENT_FLAG_CRL (1 << CERT_QUERY_CONTENT_CRL)
3271 #define CERT_QUERY_CONTENT_FLAG_SERIALIZED_STORE \
3272 (1 << CERT_QUERY_CONTENT_SERIALIZED_STORE)
3273 #define CERT_QUERY_CONTENT_FLAG_SERIALIZED_CERT \
3274 (1 << CERT_QUERY_CONTENT_SERIALIZED_CERT)
3275 #define CERT_QUERY_CONTENT_FLAG_SERIALIZED_CTL \
3276 (1 << CERT_QUERY_CONTENT_SERIALIZED_CTL)
3277 #define CERT_QUERY_CONTENT_FLAG_SERIALIZED_CRL \
3278 (1 << CERT_QUERY_CONTENT_SERIALIZED_CRL)
3279 #define CERT_QUERY_CONTENT_FLAG_PKCS7_SIGNED \
3280 (1 << CERT_QUERY_CONTENT_PKCS7_SIGNED)
3281 #define CERT_QUERY_CONTENT_FLAG_PKCS7_UNSIGNED \
3282 (1 << CERT_QUERY_CONTENT_PKCS7_UNSIGNED)
3283 #define CERT_QUERY_CONTENT_FLAG_PKCS7_SIGNED_EMBED \
3284 (1 << CERT_QUERY_CONTENT_PKCS7_SIGNED_EMBED)
3285 #define CERT_QUERY_CONTENT_FLAG_PKCS10 (1 << CERT_QUERY_CONTENT_PKCS10)
3286 #define CERT_QUERY_CONTENT_FLAG_PFX (1 << CERT_QUERY_CONTENT_PFX)
3287 #define CERT_QUERY_CONTENT_FLAG_CERT_PAIR (1 << CERT_QUERY_CONTENT_CERT_PAIR)
3288
3289 #define CERT_QUERY_CONTENT_FLAG_ALL \
3290 CERT_QUERY_CONTENT_FLAG_CERT | \
3291 CERT_QUERY_CONTENT_FLAG_CTL | \
3292 CERT_QUERY_CONTENT_FLAG_CRL | \
3293 CERT_QUERY_CONTENT_FLAG_SERIALIZED_STORE | \
3294 CERT_QUERY_CONTENT_FLAG_SERIALIZED_CERT | \
3295 CERT_QUERY_CONTENT_FLAG_SERIALIZED_CTL | \
3296 CERT_QUERY_CONTENT_FLAG_SERIALIZED_CRL | \
3297 CERT_QUERY_CONTENT_FLAG_PKCS7_SIGNED | \
3298 CERT_QUERY_CONTENT_FLAG_PKCS7_UNSIGNED | \
3299 CERT_QUERY_CONTENT_FLAG_PKCS7_SIGNED_EMBED | \
3300 CERT_QUERY_CONTENT_FLAG_PKCS10 | \
3301 CERT_QUERY_CONTENT_FLAG_PFX | \
3302 CERT_QUERY_CONTENT_FLAG_CERT_PAIR
3303
3304 #define CERT_QUERY_FORMAT_BINARY 1
3305 #define CERT_QUERY_FORMAT_BASE64_ENCODED 2
3306 #define CERT_QUERY_FORMAT_ASN_ASCII_HEX_ENCODED 3
3307
3308 #define CERT_QUERY_FORMAT_FLAG_BINARY (1 << CERT_QUERY_FORMAT_BINARY)
3309 #define CERT_QUERY_FORMAT_FLAG_BASE64_ENCODED \
3310 (1 << CERT_QUERY_FORMAT_BASE64_ENCODED)
3311 #define CERT_QUERY_FORMAT_FLAG_ASN_ASCII_HEX_ENCODED \
3312 (1 << CERT_QUERY_FORMAT_ASN_ASCII_HEX_ENCODED)
3313
3314 #define CERT_QUERY_FORMAT_FLAG_ALL \
3315 CERT_QUERY_FORMAT_FLAG_BINARY | \
3316 CERT_QUERY_FORMAT_FLAG_BASE64_ENCODED | \
3317 CERT_QUERY_FORMAT_FLAG_ASN_ASCII_HEX_ENCODED \
3318
3319 #define CERT_SET_KEY_PROV_HANDLE_PROP_ID 0x00000001
3320 #define CERT_SET_KEY_CONTEXT_PROP_ID 0x00000001
3321
3322 #define CERT_CREATE_SELFSIGN_NO_SIGN 1
3323 #define CERT_CREATE_SELFSIGN_NO_KEY_INFO 2
3324
3325 /* flags for CryptAcquireCertificatePrivateKey */
3326 #define CRYPT_ACQUIRE_CACHE_FLAG 0x00000001
3327 #define CRYPT_ACQUIRE_USE_PROV_INFO_FLAG 0x00000002
3328 #define CRYPT_ACQUIRE_COMPARE_KEY_FLAG 0x00000004
3329 #define CRYPT_ACQUIRE_SILENT_FLAG 0x00000040
3330
3331 /* Chain engines and chains */
3332 typedef HANDLE HCERTCHAINENGINE;
3333 #define HCCE_CURRENT_USER ((HCERTCHAINENGINE)NULL)
3334 #define HCCE_LOCAL_MACHINE ((HCERTCHAINENGINE)1)
3335
3336 #define CERT_CHAIN_CACHE_END_CERT 0x00000001
3337 #define CERT_CHAIN_THREAD_STORE_SYNC 0x00000002
3338 #define CERT_CHAIN_CACHE_ONLY_URL_RETRIEVAL 0x00000004
3339 #define CERT_CHAIN_USE_LOCAL_MACHINE_STORE 0x00000008
3340 #define CERT_CHAIN_ENABLE_CACHE_AUTO_UPDATE 0x00000010
3341 #define CERT_CHAIN_ENABLE_SHARE_STORE 0x00000020
3342
3343 typedef struct _CERT_CHAIN_ENGINE_CONFIG
3344 {
3345 DWORD cbSize;
3346 HCERTSTORE hRestrictedRoot;
3347 HCERTSTORE hRestrictedTrust;
3348 HCERTSTORE hRestrictedOther;
3349 DWORD cAdditionalStore;
3350 HCERTSTORE *rghAdditionalStore;
3351 DWORD dwFlags;
3352 DWORD dwUrlRetrievalTimeout;
3353 DWORD MaximumCachedCertificates;
3354 DWORD CycleDetectionModulus;
3355 } CERT_CHAIN_ENGINE_CONFIG, *PCERT_CHAIN_ENGINE_CONFIG;
3356
3357 /* message-related definitions */
3358
3359 typedef BOOL (WINAPI *PFN_CMSG_STREAM_OUTPUT)(const void *pvArg, BYTE *pbData,
3360 DWORD cbData, BOOL fFinal);
3361
3362 #define CMSG_INDEFINITE_LENGTH 0xffffffff
3363
3364 typedef struct _CMSG_STREAM_INFO
3365 {
3366 DWORD cbContent;
3367 PFN_CMSG_STREAM_OUTPUT pfnStreamOutput;
3368 void *pvArg;
3369 } CMSG_STREAM_INFO, *PCMSG_STREAM_INFO;
3370
3371 typedef struct _CERT_ISSUER_SERIAL_NUMBER
3372 {
3373 CERT_NAME_BLOB Issuer;
3374 CRYPT_INTEGER_BLOB SerialNumber;
3375 } CERT_ISSUER_SERIAL_NUMBER, *PCERT_ISSUER_SERIAL_NUMBER;
3376
3377 typedef struct _CERT_ID
3378 {
3379 DWORD dwIdChoice;
3380 union {
3381 CERT_ISSUER_SERIAL_NUMBER IssuerSerialNumber;
3382 CRYPT_HASH_BLOB KeyId;
3383 CRYPT_HASH_BLOB HashId;
3384 } DUMMYUNIONNAME;
3385 } CERT_ID, *PCERT_ID;
3386
3387 #define CERT_ID_ISSUER_SERIAL_NUMBER 1
3388 #define CERT_ID_KEY_IDENTIFIER 2
3389 #define CERT_ID_SHA1_HASH 3
3390
3391 #undef CMSG_DATA /* may be defined by sys/socket.h */
3392 #define CMSG_DATA 1
3393 #define CMSG_SIGNED 2
3394 #define CMSG_ENVELOPED 3
3395 #define CMSG_SIGNED_AND_ENVELOPED 4
3396 #define CMSG_HASHED 5
3397 #define CMSG_ENCRYPTED 6
3398
3399 #define CMSG_ALL_FLAGS ~0U
3400 #define CMSG_DATA_FLAG (1 << CMSG_DATA)
3401 #define CMSG_SIGNED_FLAG (1 << CMSG_SIGNED)
3402 #define CMSG_ENVELOPED_FLAG (1 << CMSG_ENVELOPED)
3403 #define CMSG_SIGNED_AND_ENVELOPED_FLAG (1 << CMSG_SIGNED_AND_ENVELOPED)
3404 #define CMSG_ENCRYPTED_FLAG (1 << CMSG_ENCRYPTED)
3405
3406 typedef struct _CMSG_SIGNER_ENCODE_INFO
3407 {
3408 DWORD cbSize;
3409 PCERT_INFO pCertInfo;
3410 HCRYPTPROV hCryptProv;
3411 DWORD dwKeySpec;
3412 CRYPT_ALGORITHM_IDENTIFIER HashAlgorithm;
3413 void *pvHashAuxInfo;
3414 DWORD cAuthAttr;
3415 PCRYPT_ATTRIBUTE rgAuthAttr;
3416 DWORD cUnauthAttr;
3417 PCRYPT_ATTRIBUTE rgUnauthAttr;
3418 #ifdef CMSG_SIGNER_ENCODE_INFO_HAS_CMS_FIELDS
3419 CERT_ID SignerId;
3420 CRYPT_ALGORITHM_IDENTIFIER HashEncryptionAlgorithm;
3421 void *pvHashEncryptionAuxInfo;
3422 #endif
3423 } CMSG_SIGNER_ENCODE_INFO, *PCMSG_SIGNER_ENCODE_INFO;
3424
3425 typedef struct _CMSG_SIGNED_ENCODE_INFO
3426 {
3427 DWORD cbSize;
3428 DWORD cSigners;
3429 PCMSG_SIGNER_ENCODE_INFO rgSigners;
3430 DWORD cCertEncoded;
3431 PCERT_BLOB rgCertEncoded;
3432 DWORD cCrlEncoded;
3433 PCRL_BLOB rgCrlEncoded;
3434 #ifdef CMSG_SIGNED_ENCODE_INFO_HAS_CMS_FIELDS
3435 DWORD cAttrCertEncoded;
3436 PCERT_BLOB rgAttrCertEncoded;
3437 #endif
3438 } CMSG_SIGNED_ENCODE_INFO, *PCMSG_SIGNED_ENCODE_INFO;
3439
3440 typedef struct _CMSG_KEY_TRANS_RECIPIENT_ENCODE_INFO
3441 {
3442 DWORD cbSize;
3443 CRYPT_ALGORITHM_IDENTIFIER KeyEncryptionAlgorithm;
3444 void *pvKeyEncryptionAuxInfo;
3445 HCRYPTPROV_LEGACY hCryptProv;
3446 CRYPT_BIT_BLOB RecipientPublicKey;
3447 CERT_ID RecipientId;
3448 } CMSG_KEY_TRANS_RECIPIENT_ENCODE_INFO, *PCMSG_KEY_TRANS_RECIPIENT_ENCODE_INFO;
3449
3450 typedef struct _CMSG_RECIPIENT_ENCRYPTED_KEY_ENCODE_INFO
3451 {
3452 DWORD cbSize;
3453 CRYPT_BIT_BLOB RecipientPublicKey;
3454 CERT_ID RecipientId;
3455 FILETIME Date;
3456 PCRYPT_ATTRIBUTE_TYPE_VALUE pOtherAttr;
3457 } CMSG_RECIPIENT_ENCRYPTED_KEY_ENCODE_INFO,
3458 *PCMSG_RECIPIENT_ENCRYPTED_KEY_ENCODE_INFO;
3459
3460 typedef struct _CMSG_KEY_AGREE_RECIPIENT_ENCODE_INFO
3461 {
3462 DWORD cbSize;
3463 CRYPT_ALGORITHM_IDENTIFIER KeyEncryptionAlgorithm;
3464 void *pvKeyEncryptionAuxInfo;
3465 CRYPT_ALGORITHM_IDENTIFIER KeyWrapAlgorithm;
3466 void *pvKeyWrapAuxInfo;
3467 HCRYPTPROV_LEGACY hCryptProv;
3468 DWORD dwKeySpec;
3469 DWORD dwKeyChoice;
3470 union {
3471 PCRYPT_ALGORITHM_IDENTIFIER pEphemeralAlgorithm;
3472 PCERT_ID pSenderId;
3473 } DUMMYUNIONNAME;
3474 CRYPT_DATA_BLOB UserKeyingMaterial;
3475 DWORD cRecipientEncryptedKeys;
3476 PCMSG_RECIPIENT_ENCRYPTED_KEY_ENCODE_INFO *rgpRecipientEncryptedKeys;
3477 } CMSG_KEY_AGREE_RECIPIENT_ENCODE_INFO, *PCMSG_KEY_AGREE_RECIPIENT_ENCODE_INFO;
3478
3479 #define CMSG_KEY_AGREE_EPHEMERAL_KEY_CHOICE 1
3480 #define CMSG_KEY_AGREE_STATIC_KEY_CHOICE 2
3481
3482 typedef struct _CMSG_MAIL_LIST_RECIPIENT_ENCODE_INFO
3483 {
3484 DWORD cbSize;
3485 CRYPT_ALGORITHM_IDENTIFIER KeyEncryptionAlgorithm;
3486 void *pvKeyEncryptionAuxInfo;
3487 HCRYPTPROV hCryptProv;
3488 DWORD dwKeyChoice;
3489 union {
3490 HCRYPTKEY hKeyEncryptionKey;
3491 void *pvKeyEncryptionKey;
3492 } DUMMYUNIONNAME;
3493 CRYPT_DATA_BLOB KeyId;
3494 FILETIME Date;
3495 PCRYPT_ATTRIBUTE_TYPE_VALUE pOtherAttr;
3496 } CMSG_MAIL_LIST_RECIPIENT_ENCODE_INFO, *PCMSG_MAIL_LIST_RECIPIENT_ENCODE_INFO;
3497
3498 #define CMSG_MAIL_LIST_HANDLE_KEY_CHOICE 1
3499
3500 typedef struct _CMSG_RECIPIENT_ENCODE_INFO
3501 {
3502 DWORD dwRecipientChoice;
3503 union {
3504 PCMSG_KEY_TRANS_RECIPIENT_ENCODE_INFO pKeyTrans;
3505 PCMSG_KEY_AGREE_RECIPIENT_ENCODE_INFO pKeyAgree;
3506 PCMSG_MAIL_LIST_RECIPIENT_ENCODE_INFO pMailList;
3507 } DUMMYUNIONNAME;
3508 } CMSG_RECIPIENT_ENCODE_INFO, *PCMSG_RECIPIENT_ENCODE_INFO;
3509
3510 #define CMSG_KEY_TRANS_RECIPIENT 1
3511 #define CMSG_KEY_AGREE_RECIPIENT 2
3512 #define CMSG_MAIL_LIST_RECIPIENT 3
3513
3514 typedef struct _CMSG_ENVELOPED_ENCODE_INFO
3515 {
3516 DWORD cbSize;
3517 HCRYPTPROV_LEGACY hCryptProv;
3518 CRYPT_ALGORITHM_IDENTIFIER ContentEncryptionAlgorithm;
3519 void *pvEncryptionAuxInfo;
3520 DWORD cRecipients;
3521 PCERT_INFO *rgpRecipientCert;
3522 #ifdef CMSG_ENVELOPED_ENCODE_INFO_HAS_CMS_FIELDS
3523 PCMSG_RECIPIENT_ENCODE_INFO rgCmsRecipients;
3524 DWORD cCertEncoded;
3525 PCERT_BLOB rgCertEncoded;
3526 DWORD cCrlEncoded;
3527 PCRL_BLOB rgCrlEncoded;
3528 DWORD cAttrCertEncoded;
3529 PCERT_BLOB rgAttrCertEncoded;
3530 DWORD cUnprotectedAttr;
3531 PCRYPT_ATTRIBUTE rgUnprotectedAttr;
3532 #endif
3533 } CMSG_ENVELOPED_ENCODE_INFO, *PCMSG_ENVELOPED_ENCODE_INFO;
3534
3535 typedef struct _CMSG_SIGNED_AND_ENVELOPED_ENCODE_INFO
3536 {
3537 DWORD cbSize;
3538 CMSG_SIGNED_ENCODE_INFO SignedInfo;
3539 CMSG_ENVELOPED_ENCODE_INFO EnvelopedInfo;
3540 } CMSG_SIGNED_AND_ENVELOPED_ENCODE_INFO,
3541 *PCMSG_SIGNED_AND_ENVELOPED_ENCODE_INFO;
3542
3543 typedef struct _CMSG_HASHED_ENCODE_INFO
3544 {
3545 DWORD cbSize;
3546 HCRYPTPROV_LEGACY hCryptProv;
3547 CRYPT_ALGORITHM_IDENTIFIER HashAlgorithm;
3548 void *pvHashAuxInfo;
3549 } CMSG_HASHED_ENCODE_INFO, *PCMSG_HASHED_ENCODE_INFO;
3550
3551 typedef struct _CMSG_ENCRYPTED_ENCODE_INFO
3552 {
3553 DWORD cbSize;
3554 CRYPT_ALGORITHM_IDENTIFIER ContentEncryptionAlgorithm;
3555 void *pvEncryptionAuxInfo;
3556 } CMSG_ENCRYPTED_ENCODE_INFO, *PCMSG_ENCRYPTED_ENCODE_INFO;
3557
3558 #define CMSG_BARE_CONTENT_FLAG 0x00000001
3559 #define CMSG_LENGTH_ONLY_FLAG 0x00000002
3560 #define CMSG_DETACHED_FLAG 0x00000004
3561 #define CMSG_AUTHENTICATED_ATTRIBUTES_FLAG 0x00000008
3562 #define CMSG_CONTENTS_OCTETS_FLAG 0x00000010
3563 #define CMSG_MAX_LENGTH_FLAG 0x00000020
3564 #define CMSG_CMS_ENCAPSULATED_CONTENT_FLAG 0x00000040
3565 #define CMSG_CRYPT_RELEASE_CONTEXT_FLAG 0x00008000
3566
3567 #define CMSG_CTRL_VERIFY_SIGNATURE 1
3568 #define CMSG_CTRL_DECRYPT 2
3569 #define CMSG_CTRL_VERIFY_HASH 5
3570 #define CMSG_CTRL_ADD_SIGNER 6
3571 #define CMSG_CTRL_DEL_SIGNER 7
3572 #define CMSG_CTRL_ADD_SIGNER_UNAUTH_ATTR 8
3573 #define CMSG_CTRL_DEL_SIGNER_UNAUTH_ATTR 9
3574 #define CMSG_CTRL_ADD_CERT 10
3575 #define CMSG_CTRL_DEL_CERT 11
3576 #define CMSG_CTRL_ADD_CRL 12
3577 #define CMSG_CTRL_DEL_CRL 13
3578 #define CMSG_CTRL_ADD_ATTR_CERT 14
3579 #define CMSG_CTRL_DEL_ATTR_CERT 15
3580 #define CMSG_CTRL_KEY_TRANS_DECRYPT 16
3581 #define CMSG_CTRL_KEY_AGREE_DECRYPT 17
3582 #define CMSG_CTRL_MAIL_LIST_DECRYPT 18
3583 #define CMSG_CTRL_VERIFY_SIGNATURE_EX 19
3584 #define CMSG_CTRL_ADD_CMS_SIGNER_INFO 20
3585
3586 typedef struct _CMSG_CTRL_DECRYPT_PARA
3587 {
3588 DWORD cbSize;
3589 HCRYPTPROV hCryptProv;
3590 DWORD dwKeySpec;
3591 DWORD dwRecipientIndex;
3592 } CMSG_CTRL_DECRYPT_PARA, *PCMSG_CTRL_DECRYPT_PARA;
3593
3594 typedef struct _CMSG_CTRL_ADD_SIGNER_UNAUTH_ATTR_PARA
3595 {
3596 DWORD cbSize;
3597 DWORD dwSignerIndex;
3598 CRYPT_DATA_BLOB blob;
3599 } CMSG_CTRL_ADD_SIGNER_UNAUTH_ATTR_PARA,
3600 *PCMSG_CTRL_ADD_SIGNER_UNAUTH_ATTR_PARA;
3601
3602 typedef struct _CMSG_CTRL_DEL_SIGNER_UNAUTH_ATTR_PARA
3603 {
3604 DWORD cbSize;
3605 DWORD dwSignerIndex;
3606 DWORD dwUnauthAttrIndex;
3607 } CMSG_CTRL_DEL_SIGNER_UNAUTH_ATTR_PARA,
3608 *PCMSG_CTRL_DEL_SIGNER_UNAUTH_ATTR_PARA;
3609
3610 typedef struct _CMSG_CTRL_VERIFY_SIGNATURE_EX_PARA {
3611 DWORD cbSize;
3612 HCRYPTPROV hCryptProv;
3613 DWORD dwSignerIndex;
3614 DWORD dwSignerType;
3615 void *pvSigner;
3616 } CMSG_CTRL_VERIFY_SIGNATURE_EX_PARA, *PCMSG_CTRL_VERIFY_SIGNATURE_EX_PARA;
3617
3618 #define CMSG_VERIFY_SIGNER_PUBKEY 1
3619 #define CMSG_VERIFY_SIGNER_CERT 2
3620 #define CMSG_VERIFY_SIGNER_CHAIN 3
3621 #define CMSG_VERIFY_SIGNER_NULL 4
3622
3623 #define CMSG_TYPE_PARAM 1
3624 #define CMSG_CONTENT_PARAM 2
3625 #define CMSG_BARE_CONTENT_PARAM 3
3626 #define CMSG_INNER_CONTENT_TYPE_PARAM 4
3627 #define CMSG_SIGNER_COUNT_PARAM 5
3628 #define CMSG_SIGNER_INFO_PARAM 6
3629 #define CMSG_SIGNER_CERT_INFO_PARAM 7
3630 #define CMSG_SIGNER_HASH_ALGORITHM_PARAM 8
3631 #define CMSG_SIGNER_AUTH_ATTR_PARAM 9
3632 #define CMSG_SIGNER_UNAUTH_ATTR_PARAM 10
3633 #define CMSG_CERT_COUNT_PARAM 11
3634 #define CMSG_CERT_PARAM 12
3635 #define CMSG_CRL_COUNT_PARAM 13
3636 #define CMSG_CRL_PARAM 14
3637 #define CMSG_ENVELOPE_ALGORITHM_PARAM 15
3638 #define CMSG_RECIPIENT_COUNT_PARAM 17
3639 #define CMSG_RECIPIENT_INDEX_PARAM 18
3640 #define CMSG_RECIPIENT_INFO_PARAM 19
3641 #define CMSG_HASH_ALGORITHM_PARAM 20
3642 #define CMSG_HASH_DATA_PARAM 21
3643 #define CMSG_COMPUTED_HASH_PARAM 22
3644 #define CMSG_ENCRYPT_PARAM 26
3645 #define CMSG_ENCRYPTED_DIGEST 27
3646 #define CMSG_ENCODED_SIGNER 28
3647 #define CMSG_ENCODED_MESSAGE 29
3648 #define CMSG_VERSION_PARAM 30
3649 #define CMSG_ATTR_CERT_COUNT_PARAM 31
3650 #define CMSG_ATTR_CERT_PARAM 32
3651 #define CMSG_CMS_RECIPIENT_COUNT_PARAM 33
3652 #define CMSG_CMS_RECIPIENT_INDEX_PARAM 34
3653 #define CMSG_CMS_RECIPIENT_ENCRYPTED_KEY_INDEX_PARAM 35
3654 #define CMSG_CMS_RECIPIENT_INFO_PARAM 36
3655 #define CMSG_UNPROTECTED_ATTR_PARAM 37
3656 #define CMSG_SIGNER_CERT_ID_PARAM 38
3657 #define CMSG_CMS_SIGNER_INFO_PARAM 39
3658
3659 typedef struct _CMSG_CMS_SIGNER_INFO {
3660 DWORD dwVersion;
3661 CERT_ID SignerId;
3662 CRYPT_ALGORITHM_IDENTIFIER HashAlgorithm;
3663 CRYPT_ALGORITHM_IDENTIFIER HashEncryptionAlgorithm;
3664 CRYPT_DATA_BLOB EncryptedHash;
3665 CRYPT_ATTRIBUTES AuthAttrs;
3666 CRYPT_ATTRIBUTES UnauthAttrs;
3667 } CMSG_CMS_SIGNER_INFO, *PCMSG_CMS_SIGNER_INFO;
3668
3669 typedef CRYPT_ATTRIBUTES CMSG_ATTR, *PCMSG_ATTR;
3670
3671 #define CMSG_SIGNED_DATA_V1 1
3672 #define CMSG_SIGNED_DATA_V3 3
3673 #define CMSG_SIGNED_DATA_PKCS_1_5_VERSION CMSG_SIGNED_DATA_V1
3674 #define CMSG_SIGNED_DATA_CMS_VERSION CMSG_SIGNED_DATA_V3
3675
3676 #define CMSG_SIGNER_INFO_V1 1
3677 #define CMSG_SIGNER_INFO_V3 3
3678 #define CMSG_SIGNER_INFO_PKCS_1_5_VERSION CMSG_SIGNER_INFO_V1
3679 #define CMSG_SIGNER_INFO_CMS_VERSION CMSG_SIGNER_INFO_V3
3680
3681 #define CMSG_HASHED_DATA_V0 0
3682 #define CMSG_HASHED_DATA_V2 2
3683 #define CMSG_HASHED_DATA_PKCS_1_5_VERSION CMSG_HASHED_DATA_V0
3684 #define CMSG_HASHED_DATA_CMS_VERSION CMSG_HASHED_DATA_V2
3685
3686 #define CMSG_ENVELOPED_DATA_V0 0
3687 #define CMSG_ENVELOPED_DATA_V2 2
3688 #define CMSG_ENVELOPED_DATA_PKCS_1_5_VERSION CMSG_ENVELOPED_DATA_V0
3689 #define CMSG_ENVELOPED_DATA_CMS_VERSION CMSG_ENVELOPED_DATA_V2
3690
3691 typedef struct _CMSG_KEY_TRANS_RECIPIENT_INFO {
3692 DWORD dwVersion;
3693 CERT_ID RecipientId;
3694 CRYPT_ALGORITHM_IDENTIFIER KeyEncryptionAlgorithm;
3695 CRYPT_DATA_BLOB EncryptedKey;
3696 } CMSG_KEY_TRANS_RECIPIENT_INFO, *PCMSG_KEY_TRANS_RECIPIENT_INFO;
3697
3698 typedef struct _CMSG_RECIPIENT_ENCRYPTED_KEY_INFO {
3699 CERT_ID RecipientId;
3700 CRYPT_DATA_BLOB EncryptedKey;
3701 PCRYPT_ATTRIBUTE_TYPE_VALUE pOtherAttr;
3702 } CMSG_RECIPIENT_ENCRYPTED_KEY_INFO, *PCMSG_RECIPIENT_ENCRYPTED_KEY_INFO;
3703
3704 typedef struct _CMSG_KEY_AGREE_RECIPIENT_INFO {
3705 DWORD dwVersion;
3706 DWORD dwOriginatorChoice;
3707 union {
3708 CERT_ID OriginatorCertId;
3709 CERT_PUBLIC_KEY_INFO OriginatorPublicKeyInfo;
3710 } DUMMYUNIONNAME;
3711 CRYPT_ALGORITHM_IDENTIFIER UserKeyingMaterial;
3712 DWORD cRecipientEncryptedKeys;
3713 PCMSG_RECIPIENT_ENCRYPTED_KEY_INFO *rgpRecipientEncryptedKeys;
3714 } CMSG_KEY_AGREE_RECIPIENT_INFO, *PCMSG_KEY_AGREE_RECIPIENT_INFO;
3715
3716 #define CMSG_KEY_AGREE_ORIGINATOR_CERT 1
3717 #define CMSG_KEY_AGREE_ORIGINATOR_PUBLIC_KEY 2
3718
3719 typedef struct _CMSG_MAIL_LIST_RECIPIENT_INFO {
3720 DWORD dwVersion;
3721 CRYPT_DATA_BLOB KeyId;
3722 CRYPT_ALGORITHM_IDENTIFIER KeyEncryptionAlgorithm;
3723 CRYPT_DATA_BLOB EncryptedKey;
3724 FILETIME Date;
3725 PCRYPT_ATTRIBUTE_TYPE_VALUE pOtherAttr;
3726 } CMSG_MAIL_LIST_RECIPIENT_INFO, *PCMSG_MAIL_LIST_RECIPIENT_INFO;
3727
3728 typedef struct _CMSG_CMS_RECIPIENT_INFO {
3729 DWORD dwRecipientChoice;
3730 union {
3731 PCMSG_KEY_TRANS_RECIPIENT_INFO pKeyTrans;
3732 PCMSG_KEY_AGREE_RECIPIENT_INFO pKeyAgree;
3733 PCMSG_MAIL_LIST_RECIPIENT_INFO pMailList;
3734 } DUMMYUNIONNAME;
3735 } CMSG_CMS_RECIPIENT_INFO, *PCMSG_CMS_RECIPIENT_INFO;
3736
3737 #define CMSG_ENVELOPED_RECIPIENT_V0 0
3738 #define CMSG_ENVELOPED_RECIPIENT_V2 2
3739 #define CMSG_ENVELOPED_RECIPIENT_V3 3
3740 #define CMSG_ENVELOPED_RECIPIENT_V4 4
3741 #define CMSG_KEY_TRANS_PKCS_1_5_VERSION CMSG_ENVELOPED_RECIPIENT_V0
3742 #define CMSG_KEY_TRANS_CMS_VERSION CMSG_ENVELOPED_RECIPIENT_V2
3743 #define CMSG_KEY_AGREE_VERSION CMSG_ENVELOPED_RECIPIENT_V3
3744 #define CMSG_MAIL_LIST_VERSION CMSG_ENVELOPED_RECIPIENT_V4
3745
3746 /* CryptMsgGetAndVerifySigner flags */
3747 #define CMSG_TRUSTED_SIGNER_FLAG 0x1
3748 #define CMSG_SIGNER_ONLY_FLAG 0x2
3749 #define CMSG_USE_SIGNER_INDEX_FLAG 0x4
3750
3751 /* CryptMsgSignCTL flags */
3752 #define CMSG_CMS_ENCAPSULATED_CTL_FLAG 0x00008000
3753
3754 /* CryptMsgEncodeAndSignCTL flags */
3755 #define CMSG_ENCODED_SORTED_CTL_FLAG 0x1
3756 #define CMSG_ENCODE_HASHED_SUBJECT_IDENTIFIER_FLAG 0x2
3757
3758 /* function declarations */
3759 /* advapi32.dll */
3760 WINADVAPI BOOL WINAPI CryptAcquireContextA(HCRYPTPROV *, LPCSTR, LPCSTR, DWORD, DWORD);
3761 WINADVAPI BOOL WINAPI CryptAcquireContextW (HCRYPTPROV *, LPCWSTR, LPCWSTR, DWORD, DWORD);
3762 #define CryptAcquireContext WINELIB_NAME_AW(CryptAcquireContext)
3763 WINADVAPI BOOL WINAPI CryptGenRandom (HCRYPTPROV, DWORD, BYTE *);
3764 WINADVAPI BOOL WINAPI CryptContextAddRef (HCRYPTPROV, DWORD *, DWORD);
3765 WINADVAPI BOOL WINAPI CryptCreateHash (HCRYPTPROV, ALG_ID, HCRYPTKEY, DWORD, HCRYPTHASH *);
3766 WINADVAPI BOOL WINAPI CryptDecrypt (HCRYPTKEY, HCRYPTHASH, BOOL, DWORD, BYTE *, DWORD *);
3767 WINADVAPI BOOL WINAPI CryptDeriveKey (HCRYPTPROV, ALG_ID, HCRYPTHASH, DWORD, HCRYPTKEY *);
3768 WINADVAPI BOOL WINAPI CryptDestroyHash (HCRYPTHASH);
3769 WINADVAPI BOOL WINAPI CryptDestroyKey (HCRYPTKEY);
3770 WINADVAPI BOOL WINAPI CryptDuplicateKey (HCRYPTKEY, DWORD *, DWORD, HCRYPTKEY *);
3771 WINADVAPI BOOL WINAPI CryptDuplicateHash (HCRYPTHASH, DWORD *, DWORD, HCRYPTHASH *);
3772 WINADVAPI BOOL WINAPI CryptEncrypt (HCRYPTKEY, HCRYPTHASH, BOOL, DWORD, BYTE *, DWORD *, DWORD);
3773 WINADVAPI BOOL WINAPI CryptEnumProvidersA (DWORD, DWORD *, DWORD, DWORD *, LPSTR, DWORD *);
3774 WINADVAPI BOOL WINAPI CryptEnumProvidersW (DWORD, DWORD *, DWORD, DWORD *, LPWSTR, DWORD *);
3775 #define CryptEnumProviders WINELIB_NAME_AW(CryptEnumProviders)
3776 WINADVAPI BOOL WINAPI CryptEnumProviderTypesA (DWORD, DWORD *, DWORD, DWORD *, LPSTR, DWORD *);
3777 WINADVAPI BOOL WINAPI CryptEnumProviderTypesW (DWORD, DWORD *, DWORD, DWORD *, LPWSTR, DWORD *);
3778 #define CryptEnumProviderTypes WINELIB_NAME_AW(CryptEnumProviderTypes)
3779 WINADVAPI BOOL WINAPI CryptExportKey (HCRYPTKEY, HCRYPTKEY, DWORD, DWORD, BYTE *, DWORD *);
3780 WINADVAPI BOOL WINAPI CryptGenKey (HCRYPTPROV, ALG_ID, DWORD, HCRYPTKEY *);
3781 WINADVAPI BOOL WINAPI CryptGetKeyParam (HCRYPTKEY, DWORD, BYTE *, DWORD *, DWORD);
3782 WINADVAPI BOOL WINAPI CryptGetHashParam (HCRYPTHASH, DWORD, BYTE *, DWORD *, DWORD);
3783 WINADVAPI BOOL WINAPI CryptGetProvParam (HCRYPTPROV, DWORD, BYTE *, DWORD *, DWORD);
3784 WINADVAPI BOOL WINAPI CryptGetDefaultProviderA (DWORD, DWORD *, DWORD, LPSTR, DWORD *);
3785 WINADVAPI BOOL WINAPI CryptGetDefaultProviderW (DWORD, DWORD *, DWORD, LPWSTR, DWORD *);
3786 #define CryptGetDefaultProvider WINELIB_NAME_AW(CryptGetDefaultProvider)
3787 WINADVAPI BOOL WINAPI CryptGetUserKey (HCRYPTPROV, DWORD, HCRYPTKEY *);
3788 WINADVAPI BOOL WINAPI CryptHashData (HCRYPTHASH, CONST BYTE *, DWORD, DWORD);
3789 WINADVAPI BOOL WINAPI CryptHashSessionKey (HCRYPTHASH, HCRYPTKEY, DWORD);
3790 WINADVAPI BOOL WINAPI CryptImportKey (HCRYPTPROV, CONST BYTE *, DWORD, HCRYPTKEY, DWORD, HCRYPTKEY *);
3791 WINADVAPI BOOL WINAPI CryptReleaseContext (HCRYPTPROV, DWORD);
3792 WINADVAPI BOOL WINAPI CryptSetHashParam (HCRYPTHASH, DWORD, CONST BYTE *, DWORD);
3793 WINADVAPI BOOL WINAPI CryptSetKeyParam (HCRYPTKEY, DWORD, CONST BYTE *, DWORD);
3794 WINADVAPI BOOL WINAPI CryptSetProviderA (LPCSTR, DWORD);
3795 WINADVAPI BOOL WINAPI CryptSetProviderW (LPCWSTR, DWORD);
3796 #define CryptSetProvider WINELIB_NAME_AW(CryptSetProvider)
3797 WINADVAPI BOOL WINAPI CryptSetProviderExA (LPCSTR, DWORD, DWORD *, DWORD);
3798 WINADVAPI BOOL WINAPI CryptSetProviderExW (LPCWSTR, DWORD, DWORD *, DWORD);
3799 #define CryptSetProviderEx WINELIB_NAME_AW(CryptSetProviderEx)
3800 WINADVAPI BOOL WINAPI CryptSetProvParam (HCRYPTPROV, DWORD, CONST BYTE *, DWORD);
3801 WINADVAPI BOOL WINAPI CryptSignHashA (HCRYPTHASH, DWORD, LPCSTR, DWORD, BYTE *, DWORD *);
3802 WINADVAPI BOOL WINAPI CryptSignHashW (HCRYPTHASH, DWORD, LPCWSTR, DWORD, BYTE *, DWORD *);
3803 #define CryptSignHash WINELIB_NAME_AW(CryptSignHash)
3804 WINADVAPI BOOL WINAPI CryptVerifySignatureA (HCRYPTHASH, CONST BYTE *, DWORD, HCRYPTKEY, LPCSTR, DWORD);
3805 WINADVAPI BOOL WINAPI CryptVerifySignatureW (HCRYPTHASH, CONST BYTE *, DWORD, HCRYPTKEY, LPCWSTR, DWORD);
3806 #define CryptVerifySignature WINELIB_NAME_AW(CryptVerifySignature)
3807
3808 /* crypt32.dll functions */
3809 LPVOID WINAPI CryptMemAlloc(ULONG cbSize);
3810 LPVOID WINAPI CryptMemRealloc(LPVOID pv, ULONG cbSize);
3811 VOID WINAPI CryptMemFree(LPVOID pv);
3812
3813 BOOL WINAPI CryptBinaryToStringA(const BYTE *pbBinary,
3814 DWORD cbBinary, DWORD dwFlags, LPSTR pszString, DWORD *pcchString);
3815 BOOL WINAPI CryptBinaryToStringW(const BYTE *pbBinary,
3816 DWORD cbBinary, DWORD dwFlags, LPWSTR pszString, DWORD *pcchString);
3817 #define CryptBinaryToString WINELIB_NAME_AW(CryptBinaryToString)
3818
3819 BOOL WINAPI CryptStringToBinaryA(LPCSTR pszString,
3820 DWORD cchString, DWORD dwFlags, BYTE *pbBinary, DWORD *pcbBinary,
3821 DWORD *pdwSkip, DWORD *pdwFlags);
3822 BOOL WINAPI CryptStringToBinaryW(LPCWSTR pszString,
3823 DWORD cchString, DWORD dwFlags, BYTE *pbBinary, DWORD *pcbBinary,
3824 DWORD *pdwSkip, DWORD *pdwFlags);
3825 #define CryptStringToBinary WINELIB_NAME_AW(CryptStringToBinary)
3826
3827 BOOL WINAPI CryptCreateAsyncHandle(DWORD dwFlags, PHCRYPTASYNC phAsync);
3828 BOOL WINAPI CryptSetAsyncParam(HCRYPTASYNC hAsync, LPSTR pszParamOid,
3829 LPVOID pvParam, PFN_CRYPT_ASYNC_PARAM_FREE_FUNC pfnFree);
3830 BOOL WINAPI CryptGetAsyncParam(HCRYPTASYNC hAsync, LPSTR pszParamOid,
3831 LPVOID *ppvParam, PFN_CRYPT_ASYNC_PARAM_FREE_FUNC *ppfnFree);
3832 BOOL WINAPI CryptCloseAsyncHandle(HCRYPTASYNC hAsync);
3833
3834 BOOL WINAPI CryptRegisterDefaultOIDFunction(DWORD,LPCSTR,DWORD,LPCWSTR);
3835 BOOL WINAPI CryptRegisterOIDFunction(DWORD,LPCSTR,LPCSTR,LPCWSTR,LPCSTR);
3836 BOOL WINAPI CryptGetOIDFunctionValue(DWORD dwEncodingType, LPCSTR pszFuncName,
3837 LPCSTR pszOID, LPCWSTR szValueName, DWORD *pdwValueType,
3838 BYTE *pbValueData, DWORD *pcbValueData);
3839 BOOL WINAPI CryptSetOIDFunctionValue(DWORD dwEncodingType, LPCSTR pszFuncName,
3840 LPCSTR pszOID, LPCWSTR pwszValueName, DWORD dwValueType,
3841 const BYTE *pbValueData, DWORD cbValueData);
3842 BOOL WINAPI CryptUnregisterDefaultOIDFunction(DWORD,LPCSTR,LPCWSTR);
3843 BOOL WINAPI CryptUnregisterOIDFunction(DWORD,LPCSTR,LPCSTR);
3844 BOOL WINAPI CryptEnumOIDFunction(DWORD dwEncodingType, LPCSTR pszFuncName,
3845 LPCSTR pszOID, DWORD dwFlags, void *pvArg,
3846 PFN_CRYPT_ENUM_OID_FUNC pfnEnumOIDFunc);
3847 HCRYPTOIDFUNCSET WINAPI CryptInitOIDFunctionSet(LPCSTR,DWORD);
3848 BOOL WINAPI CryptGetDefaultOIDDllList(HCRYPTOIDFUNCSET hFuncSet,
3849 DWORD dwEncodingType, LPWSTR pwszDllList, DWORD *pcchDllList);
3850 BOOL WINAPI CryptGetDefaultOIDFunctionAddress(HCRYPTOIDFUNCSET hFuncSet,
3851 DWORD dwEncodingType, LPCWSTR pwszDll, DWORD dwFlags, void **ppvFuncAddr,
3852 HCRYPTOIDFUNCADDR *phFuncAddr);
3853 BOOL WINAPI CryptGetOIDFunctionAddress(HCRYPTOIDFUNCSET hFuncSet,
3854 DWORD dwEncodingType, LPCSTR pszOID, DWORD dwFlags, void **ppvFuncAddr,
3855 HCRYPTOIDFUNCADDR *phFuncAddr);
3856 BOOL WINAPI CryptFreeOIDFunctionAddress(HCRYPTOIDFUNCADDR hFuncAddr,
3857 DWORD dwFlags);
3858 BOOL WINAPI CryptInstallOIDFunctionAddress(HMODULE hModule,
3859 DWORD dwEncodingType, LPCSTR pszFuncName, DWORD cFuncEntry,
3860 const CRYPT_OID_FUNC_ENTRY rgFuncEntry[], DWORD dwFlags);
3861 BOOL WINAPI CryptInstallDefaultContext(HCRYPTPROV hCryptProv,
3862 DWORD dwDefaultType, const void *pvDefaultPara, DWORD dwFlags,
3863 void *pvReserved, HCRYPTDEFAULTCONTEXT *phDefaultContext);
3864 BOOL WINAPI CryptUninstallDefaultContext(HCRYPTDEFAULTCONTEXT hDefaultContext,
3865 DWORD dwFlags, void *pvReserved);
3866
3867 BOOL WINAPI CryptEnumOIDInfo(DWORD dwGroupId, DWORD dwFlags, void *pvArg,
3868 PFN_CRYPT_ENUM_OID_INFO pfnEnumOIDInfo);
3869 PCCRYPT_OID_INFO WINAPI CryptFindOIDInfo(DWORD dwKeyType, void *pvKey,
3870 DWORD dwGroupId);
3871 BOOL WINAPI CryptRegisterOIDInfo(PCCRYPT_OID_INFO pInfo, DWORD dwFlags);
3872 BOOL WINAPI CryptUnregisterOIDInfo(PCCRYPT_OID_INFO pInfo);
3873
3874 LPCSTR WINAPI CertAlgIdToOID(DWORD dwAlgId);
3875 DWORD WINAPI CertOIDToAlgId(LPCSTR pszObjId);
3876
3877 /* cert store functions */
3878 HCERTSTORE WINAPI CertOpenStore(LPCSTR lpszStoreProvider, DWORD dwEncodingType,
3879 HCRYPTPROV_LEGACY hCryptProv, DWORD dwFlags, const void *pvPara);
3880
3881 HCERTSTORE WINAPI CertOpenSystemStoreA(HCRYPTPROV_LEGACY hProv,
3882 LPCSTR szSubSystemProtocol);
3883 HCERTSTORE WINAPI CertOpenSystemStoreW(HCRYPTPROV_LEGACY hProv,
3884 LPCWSTR szSubSystemProtocol);
3885 #define CertOpenSystemStore WINELIB_NAME_AW(CertOpenSystemStore)
3886
3887 PCCERT_CONTEXT WINAPI CertEnumCertificatesInStore(HCERTSTORE hCertStore,
3888 PCCERT_CONTEXT pPrev);
3889
3890 PCCRL_CONTEXT WINAPI CertEnumCRLsInStore(HCERTSTORE hCertStore,
3891 PCCRL_CONTEXT pPrev);
3892
3893 PCCTL_CONTEXT WINAPI CertEnumCTLsInStore(HCERTSTORE hCertStore,
3894 PCCTL_CONTEXT pPrev);
3895
3896 BOOL WINAPI CertEnumSystemStoreLocation(DWORD dwFlags, void *pvArg,
3897 PFN_CERT_ENUM_SYSTEM_STORE_LOCATION pfnEnum);
3898
3899 BOOL WINAPI CertEnumSystemStore(DWORD dwFlags, void *pvSystemStoreLocationPara,
3900 void *pvArg, PFN_CERT_ENUM_SYSTEM_STORE pfnEnum);
3901
3902 BOOL WINAPI CertEnumPhysicalStore(const void *pvSystemStore, DWORD dwFlags,
3903 void *pvArg, PFN_CERT_ENUM_PHYSICAL_STORE pfnEnum);
3904
3905 BOOL WINAPI CertSaveStore(HCERTSTORE hCertStore, DWORD dwMsgAndCertEncodingType,
3906 DWORD dwSaveAs, DWORD dwSaveTo, void* pvSaveToPara, DWORD dwFlags);
3907
3908 BOOL WINAPI CertAddStoreToCollection(HCERTSTORE hCollectionStore,
3909 HCERTSTORE hSiblingStore, DWORD dwUpdateFlags, DWORD dwPriority);
3910
3911 void WINAPI CertRemoveStoreFromCollection(HCERTSTORE hCollectionStore,
3912 HCERTSTORE hSiblingStore);
3913
3914 BOOL WINAPI CertCreateCertificateChainEngine(PCERT_CHAIN_ENGINE_CONFIG pConfig,
3915 HCERTCHAINENGINE *phChainEngine);
3916
3917 BOOL WINAPI CertResyncCertificateChainEngine(HCERTCHAINENGINE hChainEngine);
3918
3919 VOID WINAPI CertFreeCertificateChainEngine(HCERTCHAINENGINE hChainEngine);
3920
3921 BOOL WINAPI CertGetCertificateChain(HCERTCHAINENGINE hChainEngine,
3922 PCCERT_CONTEXT pCertContext, LPFILETIME pTime, HCERTSTORE hAdditionalStore,
3923 PCERT_CHAIN_PARA pChainPara, DWORD dwFlags, LPVOID pvReserved,
3924 PCCERT_CHAIN_CONTEXT *ppChainContext);
3925
3926 PCCERT_CHAIN_CONTEXT WINAPI CertDuplicateCertificateChain(
3927 PCCERT_CHAIN_CONTEXT pChainContext);
3928
3929 VOID WINAPI CertFreeCertificateChain(PCCERT_CHAIN_CONTEXT pChainContext);
3930
3931 PCCERT_CHAIN_CONTEXT WINAPI CertFindChainInStore(HCERTSTORE hCertStore,
3932 DWORD dwCertEncodingType, DWORD dwFindFlags, DWORD dwFindType,
3933 const void *pvFindPara, PCCERT_CHAIN_CONTEXT pPrevChainContext);
3934
3935 BOOL WINAPI CertVerifyCertificateChainPolicy(LPCSTR szPolicyOID,
3936 PCCERT_CHAIN_CONTEXT pChainContext, PCERT_CHAIN_POLICY_PARA pPolicyPara,
3937 PCERT_CHAIN_POLICY_STATUS pPolicyStatus);
3938
3939 DWORD WINAPI CertEnumCertificateContextProperties(PCCERT_CONTEXT pCertContext,
3940 DWORD dwPropId);
3941
3942 BOOL WINAPI CertGetCertificateContextProperty(PCCERT_CONTEXT pCertContext,
3943 DWORD dwPropId, void *pvData, DWORD *pcbData);
3944
3945 BOOL WINAPI CertSetCertificateContextProperty(PCCERT_CONTEXT pCertContext,
3946 DWORD dwPropId, DWORD dwFlags, const void *pvData);
3947
3948 DWORD WINAPI CertEnumCRLContextProperties(PCCRL_CONTEXT pCRLContext,
3949 DWORD dwPropId);
3950
3951 BOOL WINAPI CertGetCRLContextProperty(PCCRL_CONTEXT pCRLContext,
3952 DWORD dwPropId, void *pvData, DWORD *pcbData);
3953
3954 BOOL WINAPI CertSetCRLContextProperty(PCCRL_CONTEXT pCRLContext,
3955 DWORD dwPropId, DWORD dwFlags, const void *pvData);
3956
3957 DWORD WINAPI CertEnumCTLContextProperties(PCCTL_CONTEXT pCTLContext,
3958 DWORD dwPropId);
3959
3960 BOOL WINAPI CertEnumSubjectInSortedCTL(PCCTL_CONTEXT pCTLContext,
3961 void **ppvNextSubject, PCRYPT_DER_BLOB pSubjectIdentifier,
3962 PCRYPT_DER_BLOB pEncodedAttributes);
3963
3964 BOOL WINAPI CertGetCTLContextProperty(PCCTL_CONTEXT pCTLContext,
3965 DWORD dwPropId, void *pvData, DWORD *pcbData);
3966
3967 BOOL WINAPI CertSetCTLContextProperty(PCCTL_CONTEXT pCTLContext,
3968 DWORD dwPropId, DWORD dwFlags, const void *pvData);
3969
3970 BOOL WINAPI CertGetStoreProperty(HCERTSTORE hCertStore, DWORD dwPropId,
3971 void *pvData, DWORD *pcbData);
3972
3973 BOOL WINAPI CertSetStoreProperty(HCERTSTORE hCertStore, DWORD dwPropId,
3974 DWORD dwFlags, const void *pvData);
3975
3976 BOOL WINAPI CertControlStore(HCERTSTORE hCertStore, DWORD dwFlags,
3977 DWORD dwCtrlType, void const *pvCtrlPara);
3978
3979 HCERTSTORE WINAPI CertDuplicateStore(HCERTSTORE hCertStore);
3980
3981 BOOL WINAPI CertCloseStore( HCERTSTORE hCertStore, DWORD dwFlags );
3982
3983 BOOL WINAPI CertFreeCertificateContext( PCCERT_CONTEXT pCertContext );
3984
3985 BOOL WINAPI CertFreeCRLContext( PCCRL_CONTEXT pCrlContext );
3986
3987 BOOL WINAPI CertFreeCTLContext( PCCTL_CONTEXT pCtlContext );
3988
3989 BOOL WINAPI CertAddCertificateContextToStore(HCERTSTORE hCertStore,
3990 PCCERT_CONTEXT pCertContext, DWORD dwAddDisposition,
3991 PCCERT_CONTEXT *ppStoreContext);
3992
3993 BOOL WINAPI CertAddCRLContextToStore( HCERTSTORE hCertStore,
3994 PCCRL_CONTEXT pCrlContext, DWORD dwAddDisposition,
3995 PCCRL_CONTEXT *ppStoreContext );
3996
3997 BOOL WINAPI CertAddCTLContextToStore( HCERTSTORE hCertStore,
3998 PCCTL_CONTEXT pCtlContext, DWORD dwAddDisposition,
3999 PCCTL_CONTEXT *ppStoreContext );
4000
4001 BOOL WINAPI CertAddCertificateLinkToStore(HCERTSTORE hCertStore,
4002 PCCERT_CONTEXT pCertContext, DWORD dwAddDisposition,
4003 PCCERT_CONTEXT *ppStoreContext);
4004
4005 BOOL WINAPI CertAddCRLLinkToStore(HCERTSTORE hCertStore,
4006 PCCRL_CONTEXT pCrlContext, DWORD dwAddDisposition,
4007 PCCRL_CONTEXT *ppStoreContext);
4008
4009 BOOL WINAPI CertAddCTLLinkToStore(HCERTSTORE hCertStore,
4010 PCCTL_CONTEXT pCtlContext, DWORD dwAddDisposition,
4011 PCCTL_CONTEXT *ppStoreContext);
4012
4013 BOOL WINAPI CertAddEncodedCertificateToStore(HCERTSTORE hCertStore,
4014 DWORD dwCertEncodingType, const BYTE *pbCertEncoded, DWORD cbCertEncoded,
4015 DWORD dwAddDisposition, PCCERT_CONTEXT *ppCertContext);
4016
4017 BOOL WINAPI CertAddEncodedCRLToStore(HCERTSTORE hCertStore,
4018 DWORD dwCertEncodingType, const BYTE *pbCrlEncoded, DWORD cbCrlEncoded,
4019 DWORD dwAddDisposition, PCCRL_CONTEXT *ppCrlContext);
4020
4021 BOOL WINAPI CertAddEncodedCTLToStore(HCERTSTORE hCertStore,
4022 DWORD dwMsgAndCertEncodingType, const BYTE *pbCtlEncoded, DWORD cbCtlEncoded,
4023 DWORD dwAddDisposition, PCCTL_CONTEXT *ppCtlContext);
4024
4025 BOOL WINAPI CertAddSerializedElementToStore(HCERTSTORE hCertStore,
4026 const BYTE *pbElement, DWORD cbElement, DWORD dwAddDisposition, DWORD dwFlags,
4027 DWORD dwContextTypeFlags, DWORD *pdwContentType, const void **ppvContext);
4028
4029 BOOL WINAPI CertCompareCertificate(DWORD dwCertEncodingType,
4030 PCERT_INFO pCertId1, PCERT_INFO pCertId2);
4031 BOOL WINAPI CertCompareCertificateName(DWORD dwCertEncodingType,
4032 PCERT_NAME_BLOB pCertName1, PCERT_NAME_BLOB pCertName2);
4033 BOOL WINAPI CertCompareIntegerBlob(PCRYPT_INTEGER_BLOB pInt1,
4034 PCRYPT_INTEGER_BLOB pInt2);
4035 BOOL WINAPI CertComparePublicKeyInfo(DWORD dwCertEncodingType,
4036 PCERT_PUBLIC_KEY_INFO pPublicKey1, PCERT_PUBLIC_KEY_INFO pPublicKey2);
4037 DWORD WINAPI CertGetPublicKeyLength(DWORD dwCertEncodingType,
4038 PCERT_PUBLIC_KEY_INFO pPublicKey);
4039
4040 const void *CertCreateContext(DWORD dwContextType, DWORD dwEncodingType,
4041 const BYTE *pbEncoded, DWORD cbEncoded, DWORD dwFlags,
4042 PCERT_CREATE_CONTEXT_PARA pCreatePara);
4043
4044 PCCERT_CONTEXT WINAPI CertCreateCertificateContext(DWORD dwCertEncodingType,
4045 const BYTE *pbCertEncoded, DWORD cbCertEncoded);
4046
4047 PCCRL_CONTEXT WINAPI CertCreateCRLContext( DWORD dwCertEncodingType,
4048 const BYTE* pbCrlEncoded, DWORD cbCrlEncoded);
4049
4050 PCCTL_CONTEXT WINAPI CertCreateCTLContext(DWORD dwMsgAndCertEncodingType,
4051 const BYTE *pbCtlEncoded, DWORD cbCtlEncoded);
4052
4053 PCCERT_CONTEXT WINAPI CertCreateSelfSignCertificate(HCRYPTPROV_OR_NCRYPT_KEY_HANDLE hProv,
4054 PCERT_NAME_BLOB pSubjectIssuerBlob, DWORD dwFlags,
4055 PCRYPT_KEY_PROV_INFO pKeyProvInfo,
4056 PCRYPT_ALGORITHM_IDENTIFIER pSignatureAlgorithm, PSYSTEMTIME pStartTime,
4057 PSYSTEMTIME pEndTime, PCERT_EXTENSIONS pExtensions);
4058
4059 BOOL WINAPI CertDeleteCertificateFromStore(PCCERT_CONTEXT pCertContext);
4060
4061 BOOL WINAPI CertDeleteCRLFromStore(PCCRL_CONTEXT pCrlContext);
4062
4063 BOOL WINAPI CertDeleteCTLFromStore(PCCTL_CONTEXT pCtlContext);
4064
4065 PCCERT_CONTEXT WINAPI CertDuplicateCertificateContext(
4066 PCCERT_CONTEXT pCertContext);
4067
4068 PCCRL_CONTEXT WINAPI CertDuplicateCRLContext(PCCRL_CONTEXT pCrlContext);
4069
4070 PCCTL_CONTEXT WINAPI CertDuplicateCTLContext(PCCTL_CONTEXT pCtlContext);
4071
4072 PCCERT_CONTEXT WINAPI CertFindCertificateInStore( HCERTSTORE hCertStore,
4073 DWORD dwCertEncodingType, DWORD dwFindFlags, DWORD dwFindType,
4074 const void *pvFindPara, PCCERT_CONTEXT pPrevCertContext );
4075
4076 PCCRL_CONTEXT WINAPI CertFindCRLInStore(HCERTSTORE hCertStore,
4077 DWORD dwCertEncodingType, DWORD dwFindFlags, DWORD dwFindType,
4078 const void *pvFindPara, PCCRL_CONTEXT pPrevCrlContext);
4079
4080 PCCTL_CONTEXT WINAPI CertFindCTLInStore(HCERTSTORE hCertStore,
4081 DWORD dwCertEncodingType, DWORD dwFindFlags, DWORD dwFindType,
4082 const void *pvFindPara, PCCTL_CONTEXT pPrevCtlContext);
4083
4084 PCCERT_CONTEXT WINAPI CertGetIssuerCertificateFromStore(HCERTSTORE hCertStore,
4085 PCCERT_CONTEXT pSubjectContext, PCCERT_CONTEXT pPrevIssuerContext,
4086 DWORD *pdwFlags);
4087
4088 PCCERT_CONTEXT WINAPI CertGetSubjectCertificateFromStore(HCERTSTORE hCertStore,
4089 DWORD dwCertEncodingType, PCERT_INFO pCertId);
4090
4091 PCCRL_CONTEXT WINAPI CertGetCRLFromStore(HCERTSTORE hCertStore,
4092 PCCERT_CONTEXT pIssuerContext, PCCRL_CONTEXT pPrevCrlContext, DWORD *pdwFlags);
4093
4094 BOOL WINAPI CertSerializeCertificateStoreElement(PCCERT_CONTEXT pCertContext,
4095 DWORD dwFlags, BYTE *pbElement, DWORD *pcbElement);
4096
4097 BOOL WINAPI CertSerializeCRLStoreElement(PCCRL_CONTEXT pCrlContext,
4098 DWORD dwFlags, BYTE *pbElement, DWORD *pcbElement);
4099
4100 BOOL WINAPI CertSerializeCTLStoreElement(PCCTL_CONTEXT pCtlContext,
4101 DWORD dwFlags, BYTE *pbElement, DWORD *pcbElement);
4102
4103 BOOL WINAPI CertGetEnhancedKeyUsage(PCCERT_CONTEXT pCertContext, DWORD dwFlags,
4104 PCERT_ENHKEY_USAGE pUsage, DWORD *pcbUsage);
4105 BOOL WINAPI CertSetEnhancedKeyUsage(PCCERT_CONTEXT pCertContext,
4106 PCERT_ENHKEY_USAGE pUsage);
4107 BOOL WINAPI CertAddEnhancedKeyUsageIdentifier(PCCERT_CONTEXT pCertContext,
4108 LPCSTR pszUsageIdentifer);
4109 BOOL WINAPI CertRemoveEnhancedKeyUsageIdentifier(PCCERT_CONTEXT pCertContext,
4110 LPCSTR pszUsageIdentifer);
4111 BOOL WINAPI CertGetValidUsages(DWORD cCerts, PCCERT_CONTEXT *rghCerts,
4112 int *cNumOIDs, LPSTR *rghOIDs, DWORD *pcbOIDs);
4113
4114 BOOL WINAPI CryptEncodeObject(DWORD dwCertEncodingType, LPCSTR lpszStructType,
4115 const void *pvStructInfo, BYTE *pbEncoded, DWORD *pcbEncoded);
4116 BOOL WINAPI CryptEncodeObjectEx(DWORD dwCertEncodingType, LPCSTR lpszStructType,
4117 const void *pvStructInfo, DWORD dwFlags, PCRYPT_ENCODE_PARA pEncodePara,
4118 void *pvEncoded, DWORD *pcbEncoded);
4119
4120 BOOL WINAPI CryptDecodeObject(DWORD dwCertEncodingType, LPCSTR lpszStructType,
4121 const BYTE *pbEncoded, DWORD cbEncoded, DWORD dwFlags, void *pvStructInfo,
4122 DWORD *pcbStructInfo);
4123 BOOL WINAPI CryptDecodeObjectEx(DWORD dwCertEncodingType, LPCSTR lpszStructType,
4124 const BYTE *pbEncoded, DWORD cbEncoded, DWORD dwFlags,
4125 PCRYPT_DECODE_PARA pDecodePara, void *pvStructInfo, DWORD *pcbStructInfo);
4126
4127 BOOL WINAPI CryptFormatObject(DWORD dwCertEncodingType, DWORD dwFormatType,
4128 DWORD dwFormatStrType, void *pFormatStruct, LPCSTR lpszStructType,
4129 const BYTE *pbEncoded, DWORD cbEncoded, void *pbFormat, DWORD *pcbFormat);
4130
4131 BOOL WINAPI CryptHashCertificate(HCRYPTPROV_LEGACY hCryptProv, ALG_ID Algid,
4132 DWORD dwFlags, const BYTE *pbEncoded, DWORD cbEncoded, BYTE *pbComputedHash,
4133 DWORD *pcbComputedHash);
4134
4135 BOOL WINAPI CryptHashPublicKeyInfo(HCRYPTPROV_LEGACY hCryptProv, ALG_ID Algid,
4136 DWORD dwFlags, DWORD dwCertEncodingType, PCERT_PUBLIC_KEY_INFO pInfo,
4137 BYTE *pbComputedHash, DWORD *pcbComputedHash);
4138
4139 BOOL WINAPI CryptHashToBeSigned(HCRYPTPROV_LEGACY hCryptProv, DWORD dwCertEncodingType,
4140 const BYTE *pbEncoded, DWORD cbEncoded, BYTE *pbComputedHash,
4141 DWORD *pcbComputedHash);
4142
4143 BOOL WINAPI CryptQueryObject(DWORD dwObjectType, const void* pvObject,
4144 DWORD dwExpectedContentTypeFlags, DWORD dwExpectedFormatTypeFlags,
4145 DWORD dwFlags, DWORD* pdwMsgAndCertEncodingType, DWORD* pdwContentType,
4146 DWORD* pdwFormatType, HCERTSTORE* phCertStore, HCRYPTMSG* phMsg,
4147 const void** ppvContext);
4148
4149 BOOL WINAPI CryptSignCertificate(HCRYPTPROV_OR_NCRYPT_KEY_HANDLE hCryptProv, DWORD dwKeySpec,
4150 DWORD dwCertEncodingType, const BYTE *pbEncodedToBeSigned,
4151 DWORD cbEncodedToBeSigned, PCRYPT_ALGORITHM_IDENTIFIER pSignatureAlgorithm,
4152 const void *pvHashAuxInfo, BYTE *pbSignature, DWORD *pcbSignature);
4153
4154 BOOL WINAPI CryptSignAndEncodeCertificate(HCRYPTPROV_OR_NCRYPT_KEY_HANDLE hCryptProv,
4155 DWORD dwKeySpec, DWORD dwCertEncodingType, LPCSTR lpszStructType,
4156 const void *pvStructInfo, PCRYPT_ALGORITHM_IDENTIFIER pSignatureAlgorithm,
4157 const void *pvHashAuxInfo, BYTE *pbEncoded, DWORD *pcbEncoded);
4158
4159 BOOL WINAPI CryptVerifyCertificateSignature(HCRYPTPROV_LEGACY hCryptProv,
4160 DWORD dwCertEncodingType, const BYTE *pbEncoded, DWORD cbEncoded,
4161 PCERT_PUBLIC_KEY_INFO pPublicKey);
4162
4163 BOOL WINAPI CryptVerifyCertificateSignatureEx(HCRYPTPROV_LEGACY hCryptProv,
4164 DWORD dwCertEncodingType, DWORD dwSubjectType, void *pvSubject,
4165 DWORD dwIssuerType, void *pvIssuer, DWORD dwFlags, void *pvReserved);
4166
4167 PCRYPT_ATTRIBUTE WINAPI CertFindAttribute(LPCSTR pszObjId, DWORD cAttr,
4168 CRYPT_ATTRIBUTE rgAttr[]);
4169 PCERT_EXTENSION WINAPI CertFindExtension(LPCSTR pszObjId, DWORD cExtensions,
4170 CERT_EXTENSION rgExtensions[]);
4171 PCERT_RDN_ATTR WINAPI CertFindRDNAttr(LPCSTR pszObjId, PCERT_NAME_INFO pName);
4172
4173 BOOL WINAPI CertFindSubjectInSortedCTL(PCRYPT_DATA_BLOB pSubjectIdentifier,
4174 PCCTL_CONTEXT pCtlContext, DWORD dwFlags, void *pvReserved,
4175 PCRYPT_DER_BLOB pEncodedAttributes);
4176
4177 BOOL WINAPI CertIsRDNAttrsInCertificateName(DWORD dwCertEncodingType,
4178 DWORD dwFlags, PCERT_NAME_BLOB pCertName, PCERT_RDN pRDN);
4179
4180 BOOL WINAPI CertIsValidCRLForCertificate(PCCERT_CONTEXT pCert,
4181 PCCRL_CONTEXT pCrl, DWORD dwFlags, void *pvReserved);
4182 BOOL WINAPI CertFindCertificateInCRL(PCCERT_CONTEXT pCert,
4183 PCCRL_CONTEXT pCrlContext, DWORD dwFlags, void *pvReserved,
4184 PCRL_ENTRY *ppCrlEntry);
4185 BOOL WINAPI CertVerifyCRLRevocation(DWORD dwCertEncodingType,
4186 PCERT_INFO pCertId, DWORD cCrlInfo, PCRL_INFO rgpCrlInfo[]);
4187
4188 BOOL WINAPI CertVerifySubjectCertificateContext(PCCERT_CONTEXT pSubject,
4189 PCCERT_CONTEXT pIssuer, DWORD *pdwFlags);
4190
4191 LONG WINAPI CertVerifyCRLTimeValidity(LPFILETIME pTimeToVerify,
4192 PCRL_INFO pCrlInfo);
4193 LONG WINAPI CertVerifyTimeValidity(LPFILETIME pTimeToVerify,
4194 PCERT_INFO pCertInfo);
4195 BOOL WINAPI CertVerifyValidityNesting(PCERT_INFO pSubjectInfo,
4196 PCERT_INFO pIssuerInfo);
4197
4198 BOOL WINAPI CertVerifyCTLUsage(DWORD dwEncodingType, DWORD dwSubjectType,
4199 void *pvSubject, PCTL_USAGE pSubjectUsage, DWORD dwFlags,
4200 PCTL_VERIFY_USAGE_PARA pVerifyUsagePara,
4201 PCTL_VERIFY_USAGE_STATUS pVerifyUsageStatus);
4202
4203 BOOL WINAPI CertVerifyRevocation(DWORD dwEncodingType, DWORD dwRevType,
4204 DWORD cContext, PVOID rgpvContext[], DWORD dwFlags,
4205 PCERT_REVOCATION_PARA pRevPara, PCERT_REVOCATION_STATUS pRevStatus);
4206
4207 BOOL WINAPI CryptExportPublicKeyInfo(HCRYPTPROV_OR_NCRYPT_KEY_HANDLE hCryptProv, DWORD dwKeySpec,
4208 DWORD dwCertEncodingType, PCERT_PUBLIC_KEY_INFO pInfo, DWORD *pcbInfo);
4209 BOOL WINAPI CryptExportPublicKeyInfoEx(HCRYPTPROV_OR_NCRYPT_KEY_HANDLE hCryptProv, DWORD dwKeySpec,
4210 DWORD dwCertEncodingType, LPSTR pszPublicKeyObjId, DWORD dwFlags,
4211 void *pvAuxInfo, PCERT_PUBLIC_KEY_INFO pInfo, DWORD *pcbInfo);
4212 BOOL WINAPI CryptImportPublicKeyInfo(HCRYPTPROV hCryptProv,
4213 DWORD dwCertEncodingType, PCERT_PUBLIC_KEY_INFO pInfo, HCRYPTKEY *phKey);
4214 BOOL WINAPI CryptImportPublicKeyInfoEx(HCRYPTPROV hCryptProv,
4215 DWORD dwCertEncodingType, PCERT_PUBLIC_KEY_INFO pInfo, ALG_ID aiKeyAlg,
4216 DWORD dwFlags, void *pvAuxInfo, HCRYPTKEY *phKey);
4217
4218 BOOL WINAPI CryptAcquireCertificatePrivateKey(PCCERT_CONTEXT pCert,
4219 DWORD dwFlags, void *pvReserved, HCRYPTPROV_OR_NCRYPT_KEY_HANDLE *phCryptProv, DWORD *pdwKeySpec,
4220 BOOL *pfCallerFreeProv);
4221
4222 BOOL WINAPI CryptProtectData( DATA_BLOB* pDataIn, LPCWSTR szDataDescr,
4223 DATA_BLOB* pOptionalEntropy, PVOID pvReserved,
4224 CRYPTPROTECT_PROMPTSTRUCT* pPromptStruct, DWORD dwFlags, DATA_BLOB* pDataOut );
4225
4226 BOOL WINAPI CryptUnprotectData( DATA_BLOB* pDataIn, LPWSTR* ppszDataDescr,
4227 DATA_BLOB* pOptionalEntropy, PVOID pvReserved,
4228 CRYPTPROTECT_PROMPTSTRUCT* pPromptStruct, DWORD dwFlags, DATA_BLOB* pDataOut );
4229
4230 DWORD WINAPI CertGetNameStringA(PCCERT_CONTEXT pCertContext, DWORD dwType,
4231 DWORD dwFlags, void *pvTypePara, LPSTR pszNameString, DWORD cchNameString);
4232 DWORD WINAPI CertGetNameStringW(PCCERT_CONTEXT pCertContext, DWORD dwType,
4233 DWORD dwFlags, void *pvTypePara, LPWSTR pszNameString, DWORD cchNameString);
4234 #define CertGetNameString WINELIB_NAME_AW(CertGetNameString)
4235
4236 DWORD WINAPI CertRDNValueToStrA(DWORD dwValueType, PCERT_RDN_VALUE_BLOB pValue,
4237 LPSTR psz, DWORD csz);
4238 DWORD WINAPI CertRDNValueToStrW(DWORD dwValueType, PCERT_RDN_VALUE_BLOB pValue,
4239 LPWSTR psz, DWORD csz);
4240 #define CertRDNValueToStr WINELIB_NAME_AW(CertRDNValueToStr)
4241
4242 DWORD WINAPI CertNameToStrA(DWORD dwCertEncodingType, PCERT_NAME_BLOB pName,
4243 DWORD dwStrType, LPSTR psz, DWORD csz);
4244 DWORD WINAPI CertNameToStrW(DWORD dwCertEncodingType, PCERT_NAME_BLOB pName,
4245 DWORD dwStrType, LPWSTR psz, DWORD csz);
4246 #define CertNameToStr WINELIB_NAME_AW(CertNameToStr)
4247
4248 BOOL WINAPI CertStrToNameA(DWORD dwCertEncodingType, LPCSTR pszX500,
4249 DWORD dwStrType, void *pvReserved, BYTE *pbEncoded, DWORD *pcbEncoded,
4250 LPCSTR *ppszError);
4251 BOOL WINAPI CertStrToNameW(DWORD dwCertEncodingType, LPCWSTR pszX500,
4252 DWORD dwStrType, void *pvReserved, BYTE *pbEncoded, DWORD *pcbEncoded,
4253 LPCWSTR *ppszError);
4254 #define CertStrToName WINELIB_NAME_AW(CertStrToName)
4255
4256 DWORD WINAPI CryptMsgCalculateEncodedLength(DWORD dwMsgEncodingType,
4257 DWORD dwFlags, DWORD dwMsgType, const void *pvMsgEncodeInfo,
4258 LPSTR pszInnerContentObjID, DWORD cbData);
4259
4260 BOOL WINAPI CryptMsgClose(HCRYPTMSG hCryptMsg);
4261
4262 BOOL WINAPI CryptMsgControl(HCRYPTMSG hCryptMsg, DWORD dwFlags,
4263 DWORD dwCtrlType, const void *pvCtrlPara);
4264
4265 BOOL WINAPI CryptMsgCountersign(HCRYPTMSG hCryptMsg, DWORD dwIndex,
4266 DWORD dwCountersigners, PCMSG_SIGNER_ENCODE_INFO rgCountersigners);
4267
4268 BOOL WINAPI CryptMsgCountersignEncoded(DWORD dwEncodingType, PBYTE pbSignerInfo,
4269 DWORD cbSignerInfo, DWORD cCountersigners,
4270 PCMSG_SIGNER_ENCODE_INFO rgCountersigners, PBYTE pbCountersignature,
4271 PDWORD pcbCountersignature);
4272
4273 HCRYPTMSG WINAPI CryptMsgDuplicate(HCRYPTMSG hCryptMsg);
4274
4275 BOOL WINAPI CryptMsgEncodeAndSignCTL(DWORD dwMsgEncodingType,
4276 PCTL_INFO pCtlInfo, PCMSG_SIGNED_ENCODE_INFO pSignInfo, DWORD dwFlags,
4277 BYTE *pbEncoded, DWORD *pcbEncoded);
4278
4279 BOOL WINAPI CryptMsgGetAndVerifySigner(HCRYPTMSG hCryptMsg, DWORD cSignerStore,
4280 HCERTSTORE *rghSignerStore, DWORD dwFlags, PCCERT_CONTEXT *ppSigner,
4281 DWORD *pdwSignerIndex);
4282
4283 BOOL WINAPI CryptMsgGetParam(HCRYPTMSG hCryptMsg, DWORD dwParamType,
4284 DWORD dwIndex, void *pvData, DWORD *pcbData);
4285
4286 HCRYPTMSG WINAPI CryptMsgOpenToDecode(DWORD dwMsgEncodingType, DWORD dwFlags,
4287 DWORD dwMsgType, HCRYPTPROV_LEGACY hCryptProv, PCERT_INFO pRecipientInfo,
4288 PCMSG_STREAM_INFO pStreamInfo);
4289
4290 HCRYPTMSG WINAPI CryptMsgOpenToEncode(DWORD dwMsgEncodingType, DWORD dwFlags,
4291 DWORD dwMsgType, const void *pvMsgEncodeInfo, LPSTR pszInnerContentObjID,
4292 PCMSG_STREAM_INFO pStreamInfo);
4293
4294 BOOL WINAPI CryptMsgSignCTL(DWORD dwMsgEncodingType, BYTE *pbCtlContent,
4295 DWORD cbCtlContent, PCMSG_SIGNED_ENCODE_INFO pSignInfo, DWORD dwFlags,
4296 BYTE *pbEncoded, DWORD *pcbEncoded);
4297
4298 BOOL WINAPI CryptMsgUpdate(HCRYPTMSG hCryptMsg, const BYTE *pbData,
4299 DWORD cbData, BOOL fFinal);
4300
4301 BOOL WINAPI CryptMsgVerifyCountersignatureEncoded(HCRYPTPROV_LEGACY hCryptProv,
4302 DWORD dwEncodingType, PBYTE pbSignerInfo, DWORD cbSignerInfo,
4303 PBYTE pbSignerInfoCountersignature, DWORD cbSignerInfoCountersignature,
4304 PCERT_INFO pciCountersigner);
4305
4306 BOOL WINAPI CryptMsgVerifyCountersignatureEncodedEx(HCRYPTPROV_LEGACY hCryptProv,
4307 DWORD dwEncodingType, PBYTE pbSignerInfo, DWORD cbSignerInfo,
4308 PBYTE pbSignerInfoCountersignature, DWORD cbSignerInfoCountersignature,
4309 DWORD dwSignerType, void *pvSigner, DWORD dwFlags, void *pvReserved);
4310
4311 BOOL WINAPI CryptSignMessage(PCRYPT_SIGN_MESSAGE_PARA pSignPara,
4312 BOOL fDetachedSignature, DWORD cToBeSigned, const BYTE *rgpbToBeSigned[],
4313 DWORD rgcbToBeSigned[], BYTE *pbSignedBlob, DWORD *pcbSignedBlob);
4314 BOOL WINAPI CryptSignMessageWithKey(PCRYPT_KEY_SIGN_MESSAGE_PARA pSignPara,
4315 const BYTE *pbToBeSigned, DWORD cbToBeSigned, BYTE *pbSignedBlob,
4316 DWORD *pcbSignedBlob);
4317
4318 BOOL WINAPI CryptVerifyMessageSignature(PCRYPT_VERIFY_MESSAGE_PARA pVerifyPara,
4319 DWORD dwSignerIndex, const BYTE* pbSignedBlob, DWORD cbSignedBlob,
4320 BYTE* pbDecoded, DWORD* pcbDecoded, PCCERT_CONTEXT* ppSignerCert);
4321 BOOL WINAPI CryptVerifyMessageSignatureWithKey(
4322 PCRYPT_KEY_VERIFY_MESSAGE_PARA pVerifyPara,
4323 PCERT_PUBLIC_KEY_INFO pPublicKeyInfo, const BYTE *pbSignedBlob,
4324 DWORD cbSignedBlob, BYTE *pbDecoded, DWORD *pcbDecoded);
4325
4326 BOOL WINAPI CryptVerifyDetachedMessageSignature(
4327 PCRYPT_VERIFY_MESSAGE_PARA pVerifyPara, DWORD dwSignerIndex,
4328 const BYTE *pbDetachedSignBlob, DWORD cbDetachedSignBlob, DWORD cToBeSigned,
4329 const BYTE *rgpbToBeSigned[], DWORD rgcbToBeSigned[],
4330 PCCERT_CONTEXT *ppSignerCert);
4331 LONG WINAPI CryptGetMessageSignerCount(DWORD dwMsgEncodingType,
4332 const BYTE *pbSignedBlob, DWORD cbSignedBlob);
4333
4334 BOOL WINAPI CryptEncryptMessage(PCRYPT_ENCRYPT_MESSAGE_PARA pEncryptPara,
4335 DWORD cRecipientCert, PCCERT_CONTEXT rgpRecipientCert[],
4336 const BYTE *pbToBeEncrypted, DWORD cbToBeEncrypted, BYTE *pbEncryptedBlob,
4337 DWORD *pcbEncryptedBlob);
4338 BOOL WINAPI CryptDecryptMessage(PCRYPT_DECRYPT_MESSAGE_PARA pDecryptPara,
4339 const BYTE *pbEncryptedBlob, DWORD cbEncryptedBlob, BYTE *pbDecrypted,
4340 DWORD *pcbDecrypted, PCCERT_CONTEXT *ppXchgCert);
4341
4342 BOOL WINAPI CryptSignAndEncryptMessage(PCRYPT_SIGN_MESSAGE_PARA pSignPara,
4343 PCRYPT_ENCRYPT_MESSAGE_PARA pEncryptPara, DWORD cRecipientCert,
4344 PCCERT_CONTEXT rgpRecipientCert[], const BYTE *pbToBeSignedAndEncrypted,
4345 DWORD cbToBeSignedAndEncrypted, BYTE *pbSignedAndEncryptedBlob,
4346 DWORD *pcbSignedAndEncryptedBlob);
4347 BOOL WINAPI CryptDecryptAndVerifyMessageSignature(
4348 PCRYPT_DECRYPT_MESSAGE_PARA pDecryptPara,
4349 PCRYPT_VERIFY_MESSAGE_PARA pVerifyPara, DWORD dwSignerIndex,
4350 const BYTE *pbEncryptedBlob, DWORD cbEncryptedBlob, BYTE *pbDecrypted,
4351 DWORD *pcbDecrypted, PCCERT_CONTEXT *ppXchgCert, PCCERT_CONTEXT *ppSignerCert);
4352
4353 HCERTSTORE WINAPI CryptGetMessageCertificates(DWORD dwMsgAndCertEncodingType,
4354 HCRYPTPROV_LEGACY hCryptProv, DWORD dwFlags, const BYTE *pbSignedBlob,
4355 DWORD cbSignedBlob);
4356
4357 BOOL WINAPI CryptDecodeMessage(DWORD dwMsgTypeFlags,
4358 PCRYPT_DECRYPT_MESSAGE_PARA pDecryptPara,
4359 PCRYPT_VERIFY_MESSAGE_PARA pVerifyPara, DWORD dwSignerIndex,
4360 const BYTE *pbEncodedBlob, DWORD cbEncodedBlob, DWORD dwPrevInnerContentType,
4361 DWORD *pdwMsgType, DWORD *pdwInnerContentType, BYTE *pbDecoded,
4362 DWORD *pcbDecoded, PCCERT_CONTEXT *ppXchgCert, PCCERT_CONTEXT *ppSignerCert);
4363
4364 BOOL WINAPI CryptHashMessage(PCRYPT_HASH_MESSAGE_PARA pHashPara,
4365 BOOL fDetachedHash, DWORD cToBeHashed, const BYTE *rgpbToBeHashed[],
4366 DWORD rgcbToBeHashed[], BYTE *pbHashedBlob, DWORD *pcbHashedBlob,
4367 BYTE *pbComputedHash, DWORD *pcbComputedHash);
4368 BOOL WINAPI CryptVerifyMessageHash(PCRYPT_HASH_MESSAGE_PARA pHashPara,
4369 BYTE *pbHashedBlob, DWORD cbHashedBlob, BYTE *pbToBeHashed,
4370 DWORD *pcbToBeHashed, BYTE *pbComputedHash, DWORD *pcbComputedHash);
4371 BOOL WINAPI CryptVerifyDetachedMessageHash(PCRYPT_HASH_MESSAGE_PARA pHashPara,
4372 BYTE *pbDetachedHashBlob, DWORD cbDetachedHashBlob, DWORD cToBeHashed,
4373 const BYTE *rgpbToBeHashed[], DWORD rgcbToBeHashed[], BYTE *pbComputedHash,
4374 DWORD *pcbComputedHash);
4375
4376 /* cryptnet.dll functions */
4377 BOOL WINAPI CryptCancelAsyncRetrieval(HCRYPTASYNC hAsyncRetrieval);
4378
4379 BOOL WINAPI CryptGetObjectUrl(LPCSTR pszUrlOid, LPVOID pvPara, DWORD dwFlags,
4380 PCRYPT_URL_ARRAY pUrlArray, DWORD *pcbUrlArray, PCRYPT_URL_INFO pUrlInfo,
4381 DWORD *pcbUrlInfo, LPVOID pvReserved);
4382
4383 BOOL WINAPI CryptGetTimeValidObject(LPCSTR pszTimeValidOid, void *pvPara,
4384 PCCERT_CONTEXT pIssuer, LPFILETIME pftValidFor, DWORD dwFlags, DWORD dwTimeout,
4385 void **ppvObject, PCRYPT_CREDENTIALS pCredentials, void *pvReserved);
4386
4387 BOOL WINAPI CryptFlushTimeValidObject(LPCSTR pszFlushTimeValidOid, void *pvPara,
4388 PCCERT_CONTEXT pIssuer, DWORD dwFlags, void *pvReserved);
4389
4390 BOOL WINAPI CryptInstallCancelRetrieval(PFN_CRYPT_CANCEL_RETRIEVAL pfnCancel,
4391 const void *pvArg, DWORD dwFlags, void *pvReserved);
4392
4393 BOOL WINAPI CryptUninstallCancelRetrieval(DWORD dwFlags, void *pvReserved);
4394
4395 BOOL WINAPI CryptRetrieveObjectByUrlA(LPCSTR pszURL, LPCSTR pszObjectOid,
4396 DWORD dwRetrievalFlags, DWORD dwTimeout, LPVOID *ppvObject,
4397 HCRYPTASYNC hAsyncRetrieve, PCRYPT_CREDENTIALS pCredentials, LPVOID pvVerify,
4398 PCRYPT_RETRIEVE_AUX_INFO pAuxInfo);
4399 BOOL WINAPI CryptRetrieveObjectByUrlW(LPCWSTR pszURL, LPCSTR pszObjectOid,
4400 DWORD dwRetrievalFlags, DWORD dwTimeout, LPVOID *ppvObject,
4401 HCRYPTASYNC hAsyncRetrieve, PCRYPT_CREDENTIALS pCredentials, LPVOID pvVerify,
4402 PCRYPT_RETRIEVE_AUX_INFO pAuxInfo);
4403 #define CryptRetrieveObjectByUrl WINELIB_NAME_AW(CryptRetrieveObjectByUrl)
4404
4405 #ifdef __cplusplus
4406 }
4407 #endif
4408
4409 #endif