public class POPOSigningKey extends ASN1Object
Constructor and Description |
---|
POPOSigningKey(POPOSigningKeyInput poposkIn,
AlgorithmIdentifier aid,
DERBitString signature)
Creates a new Proof of Possession object for a signing key.
|
Modifier and Type | Method and Description |
---|---|
AlgorithmIdentifier |
getAlgorithmIdentifier() |
static POPOSigningKey |
getInstance(ASN1TaggedObject obj,
boolean explicit) |
static POPOSigningKey |
getInstance(java.lang.Object o) |
POPOSigningKeyInput |
getPoposkInput() |
DERBitString |
getSignature() |
ASN1Primitive |
toASN1Primitive()
POPOSigningKey ::= SEQUENCE {
poposkInput [0] POPOSigningKeyInput OPTIONAL,
algorithmIdentifier AlgorithmIdentifier,
signature BIT STRING }
-- The signature (using "algorithmIdentifier") is on the
-- DER-encoded value of poposkInput.
|
equals, getEncoded, getEncoded, hasEncodedTagValue, hashCode, toASN1Object
public POPOSigningKey(POPOSigningKeyInput poposkIn, AlgorithmIdentifier aid, DERBitString signature)
poposkIn
- the POPOSigningKeyInput structure, or null if the
CertTemplate includes both subject and publicKey values.aid
- the AlgorithmIdentifier used to sign the proof of possession.signature
- a signature over the DER-encoded value of poposkIn,
or the DER-encoded value of certReq if poposkIn is null.public static POPOSigningKey getInstance(java.lang.Object o)
public static POPOSigningKey getInstance(ASN1TaggedObject obj, boolean explicit)
public POPOSigningKeyInput getPoposkInput()
public AlgorithmIdentifier getAlgorithmIdentifier()
public DERBitString getSignature()
public ASN1Primitive toASN1Primitive()
POPOSigningKey ::= SEQUENCE { poposkInput [0] POPOSigningKeyInput OPTIONAL, algorithmIdentifier AlgorithmIdentifier, signature BIT STRING } -- The signature (using "algorithmIdentifier") is on the -- DER-encoded value of poposkInput. NOTE: If the CertReqMsg -- certReq CertTemplate contains the subject and publicKey values, -- then poposkInput MUST be omitted and the signature MUST be -- computed on the DER-encoded value of CertReqMsg certReq. If -- the CertReqMsg certReq CertTemplate does not contain the public -- key and subject values, then poposkInput MUST be present and -- MUST be signed. This strategy ensures that the public key is -- not present in both the poposkInput and CertReqMsg certReq -- CertTemplate fields.
toASN1Primitive
in interface ASN1Encodable
toASN1Primitive
in class ASN1Object