Package org.bouncycastle.cert
Class X509CertificateHolder
java.lang.Object
org.bouncycastle.cert.X509CertificateHolder
- All Implemented Interfaces:
Serializable,Encodable
- Direct Known Subclasses:
JcaX509CertificateHolder
Holding class for an X.509 Certificate structure.
- See Also:
-
Constructor Summary
ConstructorsConstructorDescriptionX509CertificateHolder(byte[] certEncoding) Create a X509CertificateHolder from the passed in bytes.X509CertificateHolder(Certificate x509Certificate) Create a X509CertificateHolder from the passed in ASN.1 structure. -
Method Summary
Modifier and TypeMethodDescriptionbooleanReturns a set of ASN1ObjectIdentifier objects representing the OIDs of the critical extensions contained in this holder's certificate.byte[]Return the ASN.1 encoding of this holder's certificate.Look up the extension associated with the passed in OID.Returns a list of ASN1ObjectIdentifier objects representing the OIDs of the extensions contained in this holder's certificate.Return the extensions block associated with this certificate if there is one.Return the issuer of this certificate.Returns a set of ASN1ObjectIdentifier objects representing the OIDs of the non-critical extensions contained in this holder's certificate.Return the date after which this certificate is not valid.Return the date before which this certificate is not valid.Return the serial number of this attribute certificate.byte[]Return the bytes making up the signature associated with this certificate.Return the details of the signature algorithm used to create this attribute certificate.Return the subject this certificate is for.Return the SubjectPublicKeyInfo describing the public key this certificate is carrying.intDeprecated.use getVersionNumberintbooleanReturn whether or not the holder's certificate contains extensions.inthashCode()booleanisAlternativeSignatureValid(ContentVerifierProvider verifierProvider) Validate the signature on the certificate in this holder.booleanisSignatureValid(ContentVerifierProvider verifierProvider) Validate the signature on the certificate in this holder.booleanReturn whether or not this certificate is valid on a particular date.Return the underlying ASN.1 structure for the certificate in this holder.
-
Constructor Details
-
X509CertificateHolder
Create a X509CertificateHolder from the passed in bytes.- Parameters:
certEncoding- BER/DER encoding of the certificate.- Throws:
IOException- in the event of corrupted data, or an incorrect structure.
-
X509CertificateHolder
Create a X509CertificateHolder from the passed in ASN.1 structure.- Parameters:
x509Certificate- an ASN.1 Certificate structure.
-
-
Method Details
-
getVersionNumber
public int getVersionNumber() -
getVersion
public int getVersion()Deprecated.use getVersionNumber -
hasExtensions
public boolean hasExtensions()Return whether or not the holder's certificate contains extensions.- Returns:
- true if extension are present, false otherwise.
-
getExtension
Look up the extension associated with the passed in OID.- Parameters:
oid- the OID of the extension of interest.- Returns:
- the extension if present, null otherwise.
-
getExtensions
Return the extensions block associated with this certificate if there is one.- Returns:
- the extensions block, null otherwise.
-
getExtensionOIDs
Returns a list of ASN1ObjectIdentifier objects representing the OIDs of the extensions contained in this holder's certificate.- Returns:
- a list of extension OIDs.
-
getCriticalExtensionOIDs
Returns a set of ASN1ObjectIdentifier objects representing the OIDs of the critical extensions contained in this holder's certificate.- Returns:
- a set of critical extension OIDs.
-
getNonCriticalExtensionOIDs
Returns a set of ASN1ObjectIdentifier objects representing the OIDs of the non-critical extensions contained in this holder's certificate.- Returns:
- a set of non-critical extension OIDs.
-
getSerialNumber
Return the serial number of this attribute certificate.- Returns:
- the serial number.
-
getIssuer
Return the issuer of this certificate.- Returns:
- the certificate issuer.
-
getSubject
Return the subject this certificate is for.- Returns:
- the subject for the certificate.
-
getNotBefore
Return the date before which this certificate is not valid.- Returns:
- the start time for the certificate's validity period.
-
getNotAfter
Return the date after which this certificate is not valid.- Returns:
- the final time for the certificate's validity period.
-
getSubjectPublicKeyInfo
Return the SubjectPublicKeyInfo describing the public key this certificate is carrying.- Returns:
- the public key ASN.1 structure contained in the certificate.
-
toASN1Structure
Return the underlying ASN.1 structure for the certificate in this holder.- Returns:
- a Certificate object.
-
getSignatureAlgorithm
Return the details of the signature algorithm used to create this attribute certificate.- Returns:
- the AlgorithmIdentifier describing the signature algorithm used to create this attribute certificate.
-
getSignature
public byte[] getSignature()Return the bytes making up the signature associated with this certificate.- Returns:
- the certificate signature bytes.
-
isValidOn
Return whether or not this certificate is valid on a particular date.- Parameters:
date- the date of interest.- Returns:
- true if the certificate is valid, false otherwise.
-
isSignatureValid
Validate the signature on the certificate in this holder.- Parameters:
verifierProvider- a ContentVerifierProvider that can generate a verifier for the signature.- Returns:
- true if the signature is valid, false otherwise.
- Throws:
CertException- if the signature cannot be processed or is inappropriate.
-
isAlternativeSignatureValid
public boolean isAlternativeSignatureValid(ContentVerifierProvider verifierProvider) throws CertException Validate the signature on the certificate in this holder.- Parameters:
verifierProvider- a ContentVerifierProvider that can generate a verifier for the signature.- Returns:
- true if the signature is valid, false otherwise.
- Throws:
CertException- if the signature cannot be processed or is inappropriate.
-
equals
-
hashCode
public int hashCode() -
getEncoded
Return the ASN.1 encoding of this holder's certificate.- Specified by:
getEncodedin interfaceEncodable- Returns:
- a DER encoded byte array.
- Throws:
IOException- if an encoding cannot be generated.
-