1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
|
/*
* Copyright (C) 2009 Martin Willi
* Hochschule fuer Technik Rapperswil
*
* This program is free software; you can redistribute it and/or modify it
* under the terms of the GNU General Public License as published by the
* Free Software Foundation; either version 2 of the License, or (at your
* option) any later version. See <http://www.fsf.org/copyleft/gpl.txt>.
*
* This program is distributed in the hope that it will be useful, but
* WITHOUT ANY WARRANTY; without even the implied warranty of MERCHANTABILITY
* or FITNESS FOR A PARTICULAR PURPOSE. See the GNU General Public License
* for more details.
*/
/**
* @defgroup pki pki
*
* @addtogroup pki
* @{
*/
#ifndef PKI_H_
#define PKI_H_
#include "command.h"
#include <library.h>
#include <selectors/traffic_selector.h>
#include <credentials/keys/private_key.h>
/**
* Convert a form string to a encoding type
*/
bool get_form(char *form, cred_encoding_type_t *enc, credential_type_t type);
/**
* Calculate start/end lifetime for certificates.
*
* If both nbstr and nastr are given, span is ignored. Otherwise missing
* arguments are calculated, or assumed to be now.
*
* @param format strptime() format, NULL for default: %d.%m.%y %T
* @param nbstr string describing notBefore datetime, or NULL
* @param nastr string describing notAfter datetime, or NULL
* @param span lifetime span, from notBefore to notAfter
* @param nb calculated notBefore time
* @param na calculated notAfter time
* @return TRUE of nb/na calculated successfully
*/
bool calculate_lifetime(char *format, char *nbstr, char *nastr, time_t span,
time_t *nb, time_t *na);
/**
* Set output file mode appropriate for credential encoding form on Windows
*/
void set_file_mode(FILE *stream, cred_encoding_type_t enc);
/**
* Select default digest for signatures with the given key
*
* @param private private key
* @return hash algorithm
*/
hash_algorithm_t get_default_digest(private_key_t *private);
/**
* Create a traffic selector from a CIDR or range string.
*
* @param str input string, either a.b.c.d/e or a.b.c.d-e.f.g.h
* @return traffic selector, NULL on error
*/
traffic_selector_t* parse_ts(char *str);
#endif /** PKI_H_ @}*/
|