public class POPOSigningKey extends ASN1Encodable
BER, DER
Constructor and Description |
---|
POPOSigningKey(POPOSigningKeyInput poposkIn,
AlgorithmIdentifier aid,
DERBitString signature)
Creates a new Proof of Possession object for a signing key.
|
Modifier and Type | Method and Description |
---|---|
AlgorithmIdentifier |
getAlgorithmIdentifier() |
static POPOSigningKey |
getInstance(ASN1TaggedObject obj,
boolean explicit) |
static POPOSigningKey |
getInstance(Object o) |
POPOSigningKeyInput |
getPoposkInput() |
DERBitString |
getSignature() |
DERObject |
toASN1Object()
POPOSigningKey ::= SEQUENCE {
poposkInput [0] POPOSigningKeyInput OPTIONAL,
algorithmIdentifier AlgorithmIdentifier,
signature BIT STRING }
-- The signature (using "algorithmIdentifier") is on the
-- DER-encoded value of poposkInput.
|
equals, getDEREncoded, getDERObject, getEncoded, getEncoded, hashCode
public POPOSigningKey(POPOSigningKeyInput poposkIn, AlgorithmIdentifier aid, DERBitString signature)
poposkIn
- the POPOSigningKeyInput structure, or null if the
CertTemplate includes both subject and publicKey values.aid
- the AlgorithmIdentifier used to sign the proof of possession.signature
- a signature over the DER-encoded value of poposkIn,
or the DER-encoded value of certReq if poposkIn is null.public static POPOSigningKey getInstance(Object o)
public static POPOSigningKey getInstance(ASN1TaggedObject obj, boolean explicit)
public POPOSigningKeyInput getPoposkInput()
public AlgorithmIdentifier getAlgorithmIdentifier()
public DERBitString getSignature()
public DERObject toASN1Object()
POPOSigningKey ::= SEQUENCE { poposkInput [0] POPOSigningKeyInput OPTIONAL, algorithmIdentifier AlgorithmIdentifier, signature BIT STRING } -- The signature (using "algorithmIdentifier") is on the -- DER-encoded value of poposkInput. NOTE: If the CertReqMsg -- certReq CertTemplate contains the subject and publicKey values, -- then poposkInput MUST be omitted and the signature MUST be -- computed on the DER-encoded value of CertReqMsg certReq. If -- the CertReqMsg certReq CertTemplate does not contain the public -- key and subject values, then poposkInput MUST be present and -- MUST be signed. This strategy ensures that the public key is -- not present in both the poposkInput and CertReqMsg certReq -- CertTemplate fields.
toASN1Object
in class ASN1Encodable
Copyright © 2015. All rights reserved.