xref: /aosp_15_r20/external/boringssl/src/include/openssl/asn1.h (revision 8fb009dc861624b67b6cdb62ea21f0f22d0c584b)
1*8fb009dcSAndroid Build Coastguard Worker /* Copyright (C) 1995-1998 Eric Young ([email protected])
2*8fb009dcSAndroid Build Coastguard Worker  * All rights reserved.
3*8fb009dcSAndroid Build Coastguard Worker  *
4*8fb009dcSAndroid Build Coastguard Worker  * This package is an SSL implementation written
5*8fb009dcSAndroid Build Coastguard Worker  * by Eric Young ([email protected]).
6*8fb009dcSAndroid Build Coastguard Worker  * The implementation was written so as to conform with Netscapes SSL.
7*8fb009dcSAndroid Build Coastguard Worker  *
8*8fb009dcSAndroid Build Coastguard Worker  * This library is free for commercial and non-commercial use as long as
9*8fb009dcSAndroid Build Coastguard Worker  * the following conditions are aheared to.  The following conditions
10*8fb009dcSAndroid Build Coastguard Worker  * apply to all code found in this distribution, be it the RC4, RSA,
11*8fb009dcSAndroid Build Coastguard Worker  * lhash, DES, etc., code; not just the SSL code.  The SSL documentation
12*8fb009dcSAndroid Build Coastguard Worker  * included with this distribution is covered by the same copyright terms
13*8fb009dcSAndroid Build Coastguard Worker  * except that the holder is Tim Hudson ([email protected]).
14*8fb009dcSAndroid Build Coastguard Worker  *
15*8fb009dcSAndroid Build Coastguard Worker  * Copyright remains Eric Young's, and as such any Copyright notices in
16*8fb009dcSAndroid Build Coastguard Worker  * the code are not to be removed.
17*8fb009dcSAndroid Build Coastguard Worker  * If this package is used in a product, Eric Young should be given attribution
18*8fb009dcSAndroid Build Coastguard Worker  * as the author of the parts of the library used.
19*8fb009dcSAndroid Build Coastguard Worker  * This can be in the form of a textual message at program startup or
20*8fb009dcSAndroid Build Coastguard Worker  * in documentation (online or textual) provided with the package.
21*8fb009dcSAndroid Build Coastguard Worker  *
22*8fb009dcSAndroid Build Coastguard Worker  * Redistribution and use in source and binary forms, with or without
23*8fb009dcSAndroid Build Coastguard Worker  * modification, are permitted provided that the following conditions
24*8fb009dcSAndroid Build Coastguard Worker  * are met:
25*8fb009dcSAndroid Build Coastguard Worker  * 1. Redistributions of source code must retain the copyright
26*8fb009dcSAndroid Build Coastguard Worker  *    notice, this list of conditions and the following disclaimer.
27*8fb009dcSAndroid Build Coastguard Worker  * 2. Redistributions in binary form must reproduce the above copyright
28*8fb009dcSAndroid Build Coastguard Worker  *    notice, this list of conditions and the following disclaimer in the
29*8fb009dcSAndroid Build Coastguard Worker  *    documentation and/or other materials provided with the distribution.
30*8fb009dcSAndroid Build Coastguard Worker  * 3. All advertising materials mentioning features or use of this software
31*8fb009dcSAndroid Build Coastguard Worker  *    must display the following acknowledgement:
32*8fb009dcSAndroid Build Coastguard Worker  *    "This product includes cryptographic software written by
33*8fb009dcSAndroid Build Coastguard Worker  *     Eric Young ([email protected])"
34*8fb009dcSAndroid Build Coastguard Worker  *    The word 'cryptographic' can be left out if the rouines from the library
35*8fb009dcSAndroid Build Coastguard Worker  *    being used are not cryptographic related :-).
36*8fb009dcSAndroid Build Coastguard Worker  * 4. If you include any Windows specific code (or a derivative thereof) from
37*8fb009dcSAndroid Build Coastguard Worker  *    the apps directory (application code) you must include an acknowledgement:
38*8fb009dcSAndroid Build Coastguard Worker  *    "This product includes software written by Tim Hudson ([email protected])"
39*8fb009dcSAndroid Build Coastguard Worker  *
40*8fb009dcSAndroid Build Coastguard Worker  * THIS SOFTWARE IS PROVIDED BY ERIC YOUNG ``AS IS'' AND
41*8fb009dcSAndroid Build Coastguard Worker  * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
42*8fb009dcSAndroid Build Coastguard Worker  * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
43*8fb009dcSAndroid Build Coastguard Worker  * ARE DISCLAIMED.  IN NO EVENT SHALL THE AUTHOR OR CONTRIBUTORS BE LIABLE
44*8fb009dcSAndroid Build Coastguard Worker  * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
45*8fb009dcSAndroid Build Coastguard Worker  * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
46*8fb009dcSAndroid Build Coastguard Worker  * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
47*8fb009dcSAndroid Build Coastguard Worker  * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
48*8fb009dcSAndroid Build Coastguard Worker  * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
49*8fb009dcSAndroid Build Coastguard Worker  * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
50*8fb009dcSAndroid Build Coastguard Worker  * SUCH DAMAGE.
51*8fb009dcSAndroid Build Coastguard Worker  *
52*8fb009dcSAndroid Build Coastguard Worker  * The licence and distribution terms for any publically available version or
53*8fb009dcSAndroid Build Coastguard Worker  * derivative of this code cannot be changed.  i.e. this code cannot simply be
54*8fb009dcSAndroid Build Coastguard Worker  * copied and put under another distribution licence
55*8fb009dcSAndroid Build Coastguard Worker  * [including the GNU Public Licence.]
56*8fb009dcSAndroid Build Coastguard Worker  */
57*8fb009dcSAndroid Build Coastguard Worker 
58*8fb009dcSAndroid Build Coastguard Worker #ifndef OPENSSL_HEADER_ASN1_H
59*8fb009dcSAndroid Build Coastguard Worker #define OPENSSL_HEADER_ASN1_H
60*8fb009dcSAndroid Build Coastguard Worker 
61*8fb009dcSAndroid Build Coastguard Worker #include <openssl/base.h>
62*8fb009dcSAndroid Build Coastguard Worker 
63*8fb009dcSAndroid Build Coastguard Worker #include <time.h>
64*8fb009dcSAndroid Build Coastguard Worker 
65*8fb009dcSAndroid Build Coastguard Worker #include <openssl/bio.h>
66*8fb009dcSAndroid Build Coastguard Worker #include <openssl/bn.h>
67*8fb009dcSAndroid Build Coastguard Worker #include <openssl/stack.h>
68*8fb009dcSAndroid Build Coastguard Worker 
69*8fb009dcSAndroid Build Coastguard Worker #if defined(__cplusplus)
70*8fb009dcSAndroid Build Coastguard Worker extern "C" {
71*8fb009dcSAndroid Build Coastguard Worker #endif
72*8fb009dcSAndroid Build Coastguard Worker 
73*8fb009dcSAndroid Build Coastguard Worker 
74*8fb009dcSAndroid Build Coastguard Worker // Legacy ASN.1 library.
75*8fb009dcSAndroid Build Coastguard Worker //
76*8fb009dcSAndroid Build Coastguard Worker // This header is part of OpenSSL's ASN.1 implementation. It is retained for
77*8fb009dcSAndroid Build Coastguard Worker // compatibility but should not be used by new code. The functions are difficult
78*8fb009dcSAndroid Build Coastguard Worker // to use correctly, and have buggy or non-standard behaviors. They are thus
79*8fb009dcSAndroid Build Coastguard Worker // particularly prone to behavior changes and API removals, as BoringSSL
80*8fb009dcSAndroid Build Coastguard Worker // iterates on these issues.
81*8fb009dcSAndroid Build Coastguard Worker //
82*8fb009dcSAndroid Build Coastguard Worker // Use the new |CBS| and |CBB| library in <openssl/bytestring.h> instead.
83*8fb009dcSAndroid Build Coastguard Worker 
84*8fb009dcSAndroid Build Coastguard Worker 
85*8fb009dcSAndroid Build Coastguard Worker // Tag constants.
86*8fb009dcSAndroid Build Coastguard Worker //
87*8fb009dcSAndroid Build Coastguard Worker // These constants are used in various APIs to specify ASN.1 types and tag
88*8fb009dcSAndroid Build Coastguard Worker // components. See the specific API's documentation for details on which values
89*8fb009dcSAndroid Build Coastguard Worker // are used and how.
90*8fb009dcSAndroid Build Coastguard Worker 
91*8fb009dcSAndroid Build Coastguard Worker // The following constants are tag classes.
92*8fb009dcSAndroid Build Coastguard Worker #define V_ASN1_UNIVERSAL 0x00
93*8fb009dcSAndroid Build Coastguard Worker #define V_ASN1_APPLICATION 0x40
94*8fb009dcSAndroid Build Coastguard Worker #define V_ASN1_CONTEXT_SPECIFIC 0x80
95*8fb009dcSAndroid Build Coastguard Worker #define V_ASN1_PRIVATE 0xc0
96*8fb009dcSAndroid Build Coastguard Worker 
97*8fb009dcSAndroid Build Coastguard Worker // V_ASN1_CONSTRUCTED indicates an element is constructed, rather than
98*8fb009dcSAndroid Build Coastguard Worker // primitive.
99*8fb009dcSAndroid Build Coastguard Worker #define V_ASN1_CONSTRUCTED 0x20
100*8fb009dcSAndroid Build Coastguard Worker 
101*8fb009dcSAndroid Build Coastguard Worker // V_ASN1_PRIMITIVE_TAG is the highest tag number which can be encoded in a
102*8fb009dcSAndroid Build Coastguard Worker // single byte. Note this is unrelated to whether an element is constructed or
103*8fb009dcSAndroid Build Coastguard Worker // primitive.
104*8fb009dcSAndroid Build Coastguard Worker //
105*8fb009dcSAndroid Build Coastguard Worker // TODO(davidben): Make this private.
106*8fb009dcSAndroid Build Coastguard Worker #define V_ASN1_PRIMITIVE_TAG 0x1f
107*8fb009dcSAndroid Build Coastguard Worker 
108*8fb009dcSAndroid Build Coastguard Worker // V_ASN1_MAX_UNIVERSAL is the highest supported universal tag number. It is
109*8fb009dcSAndroid Build Coastguard Worker // necessary to avoid ambiguity with |V_ASN1_NEG| and |MBSTRING_FLAG|.
110*8fb009dcSAndroid Build Coastguard Worker //
111*8fb009dcSAndroid Build Coastguard Worker // TODO(davidben): Make this private.
112*8fb009dcSAndroid Build Coastguard Worker #define V_ASN1_MAX_UNIVERSAL 0xff
113*8fb009dcSAndroid Build Coastguard Worker 
114*8fb009dcSAndroid Build Coastguard Worker // V_ASN1_UNDEF is used in some APIs to indicate an ASN.1 element is omitted.
115*8fb009dcSAndroid Build Coastguard Worker #define V_ASN1_UNDEF (-1)
116*8fb009dcSAndroid Build Coastguard Worker 
117*8fb009dcSAndroid Build Coastguard Worker // V_ASN1_OTHER is used in |ASN1_TYPE| to indicate a non-universal ASN.1 type.
118*8fb009dcSAndroid Build Coastguard Worker #define V_ASN1_OTHER (-3)
119*8fb009dcSAndroid Build Coastguard Worker 
120*8fb009dcSAndroid Build Coastguard Worker // V_ASN1_ANY is used by the ASN.1 templates to indicate an ANY type.
121*8fb009dcSAndroid Build Coastguard Worker #define V_ASN1_ANY (-4)
122*8fb009dcSAndroid Build Coastguard Worker 
123*8fb009dcSAndroid Build Coastguard Worker // The following constants are tag numbers for universal types.
124*8fb009dcSAndroid Build Coastguard Worker #define V_ASN1_EOC 0
125*8fb009dcSAndroid Build Coastguard Worker #define V_ASN1_BOOLEAN 1
126*8fb009dcSAndroid Build Coastguard Worker #define V_ASN1_INTEGER 2
127*8fb009dcSAndroid Build Coastguard Worker #define V_ASN1_BIT_STRING 3
128*8fb009dcSAndroid Build Coastguard Worker #define V_ASN1_OCTET_STRING 4
129*8fb009dcSAndroid Build Coastguard Worker #define V_ASN1_NULL 5
130*8fb009dcSAndroid Build Coastguard Worker #define V_ASN1_OBJECT 6
131*8fb009dcSAndroid Build Coastguard Worker #define V_ASN1_OBJECT_DESCRIPTOR 7
132*8fb009dcSAndroid Build Coastguard Worker #define V_ASN1_EXTERNAL 8
133*8fb009dcSAndroid Build Coastguard Worker #define V_ASN1_REAL 9
134*8fb009dcSAndroid Build Coastguard Worker #define V_ASN1_ENUMERATED 10
135*8fb009dcSAndroid Build Coastguard Worker #define V_ASN1_UTF8STRING 12
136*8fb009dcSAndroid Build Coastguard Worker #define V_ASN1_SEQUENCE 16
137*8fb009dcSAndroid Build Coastguard Worker #define V_ASN1_SET 17
138*8fb009dcSAndroid Build Coastguard Worker #define V_ASN1_NUMERICSTRING 18
139*8fb009dcSAndroid Build Coastguard Worker #define V_ASN1_PRINTABLESTRING 19
140*8fb009dcSAndroid Build Coastguard Worker #define V_ASN1_T61STRING 20
141*8fb009dcSAndroid Build Coastguard Worker #define V_ASN1_TELETEXSTRING 20
142*8fb009dcSAndroid Build Coastguard Worker #define V_ASN1_VIDEOTEXSTRING 21
143*8fb009dcSAndroid Build Coastguard Worker #define V_ASN1_IA5STRING 22
144*8fb009dcSAndroid Build Coastguard Worker #define V_ASN1_UTCTIME 23
145*8fb009dcSAndroid Build Coastguard Worker #define V_ASN1_GENERALIZEDTIME 24
146*8fb009dcSAndroid Build Coastguard Worker #define V_ASN1_GRAPHICSTRING 25
147*8fb009dcSAndroid Build Coastguard Worker #define V_ASN1_ISO64STRING 26
148*8fb009dcSAndroid Build Coastguard Worker #define V_ASN1_VISIBLESTRING 26
149*8fb009dcSAndroid Build Coastguard Worker #define V_ASN1_GENERALSTRING 27
150*8fb009dcSAndroid Build Coastguard Worker #define V_ASN1_UNIVERSALSTRING 28
151*8fb009dcSAndroid Build Coastguard Worker #define V_ASN1_BMPSTRING 30
152*8fb009dcSAndroid Build Coastguard Worker 
153*8fb009dcSAndroid Build Coastguard Worker // The following constants are used for |ASN1_STRING| values that represent
154*8fb009dcSAndroid Build Coastguard Worker // negative INTEGER and ENUMERATED values. See |ASN1_STRING| for more details.
155*8fb009dcSAndroid Build Coastguard Worker #define V_ASN1_NEG 0x100
156*8fb009dcSAndroid Build Coastguard Worker #define V_ASN1_NEG_INTEGER (V_ASN1_INTEGER | V_ASN1_NEG)
157*8fb009dcSAndroid Build Coastguard Worker #define V_ASN1_NEG_ENUMERATED (V_ASN1_ENUMERATED | V_ASN1_NEG)
158*8fb009dcSAndroid Build Coastguard Worker 
159*8fb009dcSAndroid Build Coastguard Worker // The following constants are bitmask representations of ASN.1 types.
160*8fb009dcSAndroid Build Coastguard Worker #define B_ASN1_NUMERICSTRING 0x0001
161*8fb009dcSAndroid Build Coastguard Worker #define B_ASN1_PRINTABLESTRING 0x0002
162*8fb009dcSAndroid Build Coastguard Worker #define B_ASN1_T61STRING 0x0004
163*8fb009dcSAndroid Build Coastguard Worker #define B_ASN1_TELETEXSTRING 0x0004
164*8fb009dcSAndroid Build Coastguard Worker #define B_ASN1_VIDEOTEXSTRING 0x0008
165*8fb009dcSAndroid Build Coastguard Worker #define B_ASN1_IA5STRING 0x0010
166*8fb009dcSAndroid Build Coastguard Worker #define B_ASN1_GRAPHICSTRING 0x0020
167*8fb009dcSAndroid Build Coastguard Worker #define B_ASN1_ISO64STRING 0x0040
168*8fb009dcSAndroid Build Coastguard Worker #define B_ASN1_VISIBLESTRING 0x0040
169*8fb009dcSAndroid Build Coastguard Worker #define B_ASN1_GENERALSTRING 0x0080
170*8fb009dcSAndroid Build Coastguard Worker #define B_ASN1_UNIVERSALSTRING 0x0100
171*8fb009dcSAndroid Build Coastguard Worker #define B_ASN1_OCTET_STRING 0x0200
172*8fb009dcSAndroid Build Coastguard Worker #define B_ASN1_BIT_STRING 0x0400
173*8fb009dcSAndroid Build Coastguard Worker #define B_ASN1_BMPSTRING 0x0800
174*8fb009dcSAndroid Build Coastguard Worker #define B_ASN1_UNKNOWN 0x1000
175*8fb009dcSAndroid Build Coastguard Worker #define B_ASN1_UTF8STRING 0x2000
176*8fb009dcSAndroid Build Coastguard Worker #define B_ASN1_UTCTIME 0x4000
177*8fb009dcSAndroid Build Coastguard Worker #define B_ASN1_GENERALIZEDTIME 0x8000
178*8fb009dcSAndroid Build Coastguard Worker #define B_ASN1_SEQUENCE 0x10000
179*8fb009dcSAndroid Build Coastguard Worker 
180*8fb009dcSAndroid Build Coastguard Worker // ASN1_tag2bit converts |tag| from the tag number of a universal type to a
181*8fb009dcSAndroid Build Coastguard Worker // corresponding |B_ASN1_*| constant, |B_ASN1_UNKNOWN|, or zero. If the
182*8fb009dcSAndroid Build Coastguard Worker // |B_ASN1_*| constant above is defined, it will map the corresponding
183*8fb009dcSAndroid Build Coastguard Worker // |V_ASN1_*| constant to it. Otherwise, whether it returns |B_ASN1_UNKNOWN| or
184*8fb009dcSAndroid Build Coastguard Worker // zero is ill-defined and callers should not rely on it.
185*8fb009dcSAndroid Build Coastguard Worker //
186*8fb009dcSAndroid Build Coastguard Worker // TODO(https://crbug.com/boringssl/412): Figure out what |B_ASN1_UNNOWN| vs
187*8fb009dcSAndroid Build Coastguard Worker // zero is meant to be. The main impact is what values go in |B_ASN1_PRINTABLE|.
188*8fb009dcSAndroid Build Coastguard Worker // To that end, we must return zero on types that can't go in |ASN1_STRING|.
189*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT unsigned long ASN1_tag2bit(int tag);
190*8fb009dcSAndroid Build Coastguard Worker 
191*8fb009dcSAndroid Build Coastguard Worker // ASN1_tag2str returns a string representation of |tag|, interpret as a tag
192*8fb009dcSAndroid Build Coastguard Worker // number for a universal type, or |V_ASN1_NEG_*|.
193*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT const char *ASN1_tag2str(int tag);
194*8fb009dcSAndroid Build Coastguard Worker 
195*8fb009dcSAndroid Build Coastguard Worker 
196*8fb009dcSAndroid Build Coastguard Worker // API conventions.
197*8fb009dcSAndroid Build Coastguard Worker //
198*8fb009dcSAndroid Build Coastguard Worker // The following sample functions document the calling conventions used by
199*8fb009dcSAndroid Build Coastguard Worker // legacy ASN.1 APIs.
200*8fb009dcSAndroid Build Coastguard Worker 
201*8fb009dcSAndroid Build Coastguard Worker #if 0  // Sample functions
202*8fb009dcSAndroid Build Coastguard Worker 
203*8fb009dcSAndroid Build Coastguard Worker // d2i_SAMPLE parses a structure from up to |len| bytes at |*inp|. On success,
204*8fb009dcSAndroid Build Coastguard Worker // it advances |*inp| by the number of bytes read and returns a newly-allocated
205*8fb009dcSAndroid Build Coastguard Worker // |SAMPLE| object containing the parsed structure. If |out| is non-NULL, it
206*8fb009dcSAndroid Build Coastguard Worker // additionally frees the previous value at |*out| and updates |*out| to the
207*8fb009dcSAndroid Build Coastguard Worker // result. If parsing or allocating the result fails, it returns NULL.
208*8fb009dcSAndroid Build Coastguard Worker //
209*8fb009dcSAndroid Build Coastguard Worker // This function does not reject trailing data in the input. This allows the
210*8fb009dcSAndroid Build Coastguard Worker // caller to parse a sequence of concatenated structures. Callers parsing only
211*8fb009dcSAndroid Build Coastguard Worker // one structure should check for trailing data by comparing the updated |*inp|
212*8fb009dcSAndroid Build Coastguard Worker // with the end of the input.
213*8fb009dcSAndroid Build Coastguard Worker //
214*8fb009dcSAndroid Build Coastguard Worker // Note: If |out| and |*out| are both non-NULL, the object at |*out| is not
215*8fb009dcSAndroid Build Coastguard Worker // updated in-place. Instead, it is freed, and the pointer is updated to the
216*8fb009dcSAndroid Build Coastguard Worker // new object. This differs from OpenSSL. Callers are recommended to set |out|
217*8fb009dcSAndroid Build Coastguard Worker // to NULL and instead use the return value.
218*8fb009dcSAndroid Build Coastguard Worker SAMPLE *d2i_SAMPLE(SAMPLE **out, const uint8_t **inp, long len);
219*8fb009dcSAndroid Build Coastguard Worker 
220*8fb009dcSAndroid Build Coastguard Worker // i2d_SAMPLE marshals |in|. On error, it returns a negative value. On success,
221*8fb009dcSAndroid Build Coastguard Worker // it returns the length of the result and outputs it via |outp| as follows:
222*8fb009dcSAndroid Build Coastguard Worker //
223*8fb009dcSAndroid Build Coastguard Worker // If |outp| is NULL, the function writes nothing. This mode can be used to size
224*8fb009dcSAndroid Build Coastguard Worker // buffers.
225*8fb009dcSAndroid Build Coastguard Worker //
226*8fb009dcSAndroid Build Coastguard Worker // If |outp| is non-NULL but |*outp| is NULL, the function sets |*outp| to a
227*8fb009dcSAndroid Build Coastguard Worker // newly-allocated buffer containing the result. The caller is responsible for
228*8fb009dcSAndroid Build Coastguard Worker // releasing |*outp| with |OPENSSL_free|. This mode is recommended for most
229*8fb009dcSAndroid Build Coastguard Worker // callers.
230*8fb009dcSAndroid Build Coastguard Worker //
231*8fb009dcSAndroid Build Coastguard Worker // If |outp| and |*outp| are non-NULL, the function writes the result to
232*8fb009dcSAndroid Build Coastguard Worker // |*outp|, which must have enough space available, and advances |*outp| just
233*8fb009dcSAndroid Build Coastguard Worker // past the output.
234*8fb009dcSAndroid Build Coastguard Worker //
235*8fb009dcSAndroid Build Coastguard Worker // WARNING: In the third mode, the function does not internally check output
236*8fb009dcSAndroid Build Coastguard Worker // bounds. Failing to correctly size the buffer will result in a potentially
237*8fb009dcSAndroid Build Coastguard Worker // exploitable memory error.
238*8fb009dcSAndroid Build Coastguard Worker int i2d_SAMPLE(const SAMPLE *in, uint8_t **outp);
239*8fb009dcSAndroid Build Coastguard Worker 
240*8fb009dcSAndroid Build Coastguard Worker #endif  // Sample functions
241*8fb009dcSAndroid Build Coastguard Worker 
242*8fb009dcSAndroid Build Coastguard Worker // The following typedefs are sometimes used for pointers to functions like
243*8fb009dcSAndroid Build Coastguard Worker // |d2i_SAMPLE| and |i2d_SAMPLE|. Note, however, that these act on |void*|.
244*8fb009dcSAndroid Build Coastguard Worker // Calling a function with a different pointer type is undefined in C, so this
245*8fb009dcSAndroid Build Coastguard Worker // is only valid with a wrapper.
246*8fb009dcSAndroid Build Coastguard Worker typedef void *d2i_of_void(void **, const unsigned char **, long);
247*8fb009dcSAndroid Build Coastguard Worker typedef int i2d_of_void(const void *, unsigned char **);
248*8fb009dcSAndroid Build Coastguard Worker 
249*8fb009dcSAndroid Build Coastguard Worker 
250*8fb009dcSAndroid Build Coastguard Worker // ASN.1 types.
251*8fb009dcSAndroid Build Coastguard Worker //
252*8fb009dcSAndroid Build Coastguard Worker // An |ASN1_ITEM| represents an ASN.1 type and allows working with ASN.1 types
253*8fb009dcSAndroid Build Coastguard Worker // generically.
254*8fb009dcSAndroid Build Coastguard Worker //
255*8fb009dcSAndroid Build Coastguard Worker // |ASN1_ITEM|s use a different namespace from C types and are accessed via
256*8fb009dcSAndroid Build Coastguard Worker // |ASN1_ITEM_*| macros. So, for example, |ASN1_OCTET_STRING| is both a C type
257*8fb009dcSAndroid Build Coastguard Worker // and the name of an |ASN1_ITEM|, referenced as
258*8fb009dcSAndroid Build Coastguard Worker // |ASN1_ITEM_rptr(ASN1_OCTET_STRING)|.
259*8fb009dcSAndroid Build Coastguard Worker //
260*8fb009dcSAndroid Build Coastguard Worker // Each |ASN1_ITEM| has a corresponding C type, typically with the same name,
261*8fb009dcSAndroid Build Coastguard Worker // which represents values in the ASN.1 type. This type is either a pointer type
262*8fb009dcSAndroid Build Coastguard Worker // or |ASN1_BOOLEAN|. When it is a pointer, NULL pointers represent omitted
263*8fb009dcSAndroid Build Coastguard Worker // values. For example, an OCTET STRING value is declared with the C type
264*8fb009dcSAndroid Build Coastguard Worker // |ASN1_OCTET_STRING*| and uses the |ASN1_ITEM| named |ASN1_OCTET_STRING|. An
265*8fb009dcSAndroid Build Coastguard Worker // OPTIONAL OCTET STRING uses the same C type and represents an omitted value
266*8fb009dcSAndroid Build Coastguard Worker // with a NULL pointer. |ASN1_BOOLEAN| is described in a later section.
267*8fb009dcSAndroid Build Coastguard Worker 
268*8fb009dcSAndroid Build Coastguard Worker // DECLARE_ASN1_ITEM declares an |ASN1_ITEM| with name |name|. The |ASN1_ITEM|
269*8fb009dcSAndroid Build Coastguard Worker // may be referenced with |ASN1_ITEM_rptr|. Uses of this macro should document
270*8fb009dcSAndroid Build Coastguard Worker // the corresponding ASN.1 and C types.
271*8fb009dcSAndroid Build Coastguard Worker #define DECLARE_ASN1_ITEM(name) extern OPENSSL_EXPORT const ASN1_ITEM name##_it;
272*8fb009dcSAndroid Build Coastguard Worker 
273*8fb009dcSAndroid Build Coastguard Worker // ASN1_ITEM_rptr returns the |const ASN1_ITEM *| named |name|.
274*8fb009dcSAndroid Build Coastguard Worker #define ASN1_ITEM_rptr(name) (&(name##_it))
275*8fb009dcSAndroid Build Coastguard Worker 
276*8fb009dcSAndroid Build Coastguard Worker // ASN1_ITEM_EXP is an abstraction for referencing an |ASN1_ITEM| in a
277*8fb009dcSAndroid Build Coastguard Worker // constant-initialized structure, such as a method table. It exists because, on
278*8fb009dcSAndroid Build Coastguard Worker // some OpenSSL platforms, |ASN1_ITEM| references are indirected through
279*8fb009dcSAndroid Build Coastguard Worker // functions. Structures reference the |ASN1_ITEM| by declaring a field like
280*8fb009dcSAndroid Build Coastguard Worker // |ASN1_ITEM_EXP *item| and initializing it with |ASN1_ITEM_ref|.
281*8fb009dcSAndroid Build Coastguard Worker typedef const ASN1_ITEM ASN1_ITEM_EXP;
282*8fb009dcSAndroid Build Coastguard Worker 
283*8fb009dcSAndroid Build Coastguard Worker // ASN1_ITEM_ref returns an |ASN1_ITEM_EXP*| for the |ASN1_ITEM| named |name|.
284*8fb009dcSAndroid Build Coastguard Worker #define ASN1_ITEM_ref(name) (&(name##_it))
285*8fb009dcSAndroid Build Coastguard Worker 
286*8fb009dcSAndroid Build Coastguard Worker // ASN1_ITEM_ptr converts |iptr|, which must be an |ASN1_ITEM_EXP*| to a
287*8fb009dcSAndroid Build Coastguard Worker // |const ASN1_ITEM*|.
288*8fb009dcSAndroid Build Coastguard Worker #define ASN1_ITEM_ptr(iptr) (iptr)
289*8fb009dcSAndroid Build Coastguard Worker 
290*8fb009dcSAndroid Build Coastguard Worker // ASN1_VALUE_st (aka |ASN1_VALUE|) is an opaque type used as a placeholder for
291*8fb009dcSAndroid Build Coastguard Worker // the C type corresponding to an |ASN1_ITEM|.
292*8fb009dcSAndroid Build Coastguard Worker typedef struct ASN1_VALUE_st ASN1_VALUE;
293*8fb009dcSAndroid Build Coastguard Worker 
294*8fb009dcSAndroid Build Coastguard Worker // ASN1_item_new allocates a new value of the C type corresponding to |it|, or
295*8fb009dcSAndroid Build Coastguard Worker // NULL on error. On success, the caller must release the value with
296*8fb009dcSAndroid Build Coastguard Worker // |ASN1_item_free|, or the corresponding C type's free function, when done. The
297*8fb009dcSAndroid Build Coastguard Worker // new value will initialize fields of the value to some default state, such as
298*8fb009dcSAndroid Build Coastguard Worker // an empty string. Note, however, that this default state sometimes omits
299*8fb009dcSAndroid Build Coastguard Worker // required values, such as with CHOICE types.
300*8fb009dcSAndroid Build Coastguard Worker //
301*8fb009dcSAndroid Build Coastguard Worker // This function may not be used with |ASN1_ITEM|s whose C type is
302*8fb009dcSAndroid Build Coastguard Worker // |ASN1_BOOLEAN|.
303*8fb009dcSAndroid Build Coastguard Worker //
304*8fb009dcSAndroid Build Coastguard Worker // WARNING: Casting the result of this function to the wrong type is a
305*8fb009dcSAndroid Build Coastguard Worker // potentially exploitable memory error. Callers must ensure the value is used
306*8fb009dcSAndroid Build Coastguard Worker // consistently with |it|. Prefer using type-specific functions such as
307*8fb009dcSAndroid Build Coastguard Worker // |ASN1_OCTET_STRING_new|.
308*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT ASN1_VALUE *ASN1_item_new(const ASN1_ITEM *it);
309*8fb009dcSAndroid Build Coastguard Worker 
310*8fb009dcSAndroid Build Coastguard Worker // ASN1_item_free releases memory associated with |val|, which must be an object
311*8fb009dcSAndroid Build Coastguard Worker // of the C type corresponding to |it|.
312*8fb009dcSAndroid Build Coastguard Worker //
313*8fb009dcSAndroid Build Coastguard Worker // This function may not be used with |ASN1_ITEM|s whose C type is
314*8fb009dcSAndroid Build Coastguard Worker // |ASN1_BOOLEAN|.
315*8fb009dcSAndroid Build Coastguard Worker //
316*8fb009dcSAndroid Build Coastguard Worker // WARNING: Passing a pointer of the wrong type into this function is a
317*8fb009dcSAndroid Build Coastguard Worker // potentially exploitable memory error. Callers must ensure |val| is consistent
318*8fb009dcSAndroid Build Coastguard Worker // with |it|. Prefer using type-specific functions such as
319*8fb009dcSAndroid Build Coastguard Worker // |ASN1_OCTET_STRING_free|.
320*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT void ASN1_item_free(ASN1_VALUE *val, const ASN1_ITEM *it);
321*8fb009dcSAndroid Build Coastguard Worker 
322*8fb009dcSAndroid Build Coastguard Worker // ASN1_item_d2i parses the ASN.1 type |it| from up to |len| bytes at |*inp|.
323*8fb009dcSAndroid Build Coastguard Worker // It behaves like |d2i_SAMPLE|, except that |out| and the return value are cast
324*8fb009dcSAndroid Build Coastguard Worker // to |ASN1_VALUE| pointers.
325*8fb009dcSAndroid Build Coastguard Worker //
326*8fb009dcSAndroid Build Coastguard Worker // TODO(https://crbug.com/boringssl/444): C strict aliasing forbids type-punning
327*8fb009dcSAndroid Build Coastguard Worker // |T*| and |ASN1_VALUE*| the way this function signature does. When that bug is
328*8fb009dcSAndroid Build Coastguard Worker // resolved, we will need to pick which type |*out| is (probably |T*|). Do not
329*8fb009dcSAndroid Build Coastguard Worker // use a non-NULL |out| to avoid ending up on the wrong side of this question.
330*8fb009dcSAndroid Build Coastguard Worker //
331*8fb009dcSAndroid Build Coastguard Worker // This function may not be used with |ASN1_ITEM|s whose C type is
332*8fb009dcSAndroid Build Coastguard Worker // |ASN1_BOOLEAN|.
333*8fb009dcSAndroid Build Coastguard Worker //
334*8fb009dcSAndroid Build Coastguard Worker // WARNING: Casting the result of this function to the wrong type, or passing a
335*8fb009dcSAndroid Build Coastguard Worker // pointer of the wrong type into this function, are potentially exploitable
336*8fb009dcSAndroid Build Coastguard Worker // memory errors. Callers must ensure |out| is consistent with |it|. Prefer
337*8fb009dcSAndroid Build Coastguard Worker // using type-specific functions such as |d2i_ASN1_OCTET_STRING|.
338*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT ASN1_VALUE *ASN1_item_d2i(ASN1_VALUE **out,
339*8fb009dcSAndroid Build Coastguard Worker                                          const unsigned char **inp, long len,
340*8fb009dcSAndroid Build Coastguard Worker                                          const ASN1_ITEM *it);
341*8fb009dcSAndroid Build Coastguard Worker 
342*8fb009dcSAndroid Build Coastguard Worker // ASN1_item_i2d marshals |val| as the ASN.1 type associated with |it|, as
343*8fb009dcSAndroid Build Coastguard Worker // described in |i2d_SAMPLE|.
344*8fb009dcSAndroid Build Coastguard Worker //
345*8fb009dcSAndroid Build Coastguard Worker // This function may not be used with |ASN1_ITEM|s whose C type is
346*8fb009dcSAndroid Build Coastguard Worker // |ASN1_BOOLEAN|.
347*8fb009dcSAndroid Build Coastguard Worker //
348*8fb009dcSAndroid Build Coastguard Worker // WARNING: Passing a pointer of the wrong type into this function is a
349*8fb009dcSAndroid Build Coastguard Worker // potentially exploitable memory error. Callers must ensure |val| is consistent
350*8fb009dcSAndroid Build Coastguard Worker // with |it|. Prefer using type-specific functions such as
351*8fb009dcSAndroid Build Coastguard Worker // |i2d_ASN1_OCTET_STRING|.
352*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT int ASN1_item_i2d(ASN1_VALUE *val, unsigned char **outp,
353*8fb009dcSAndroid Build Coastguard Worker                                  const ASN1_ITEM *it);
354*8fb009dcSAndroid Build Coastguard Worker 
355*8fb009dcSAndroid Build Coastguard Worker // ASN1_item_dup returns a newly-allocated copy of |x|, or NULL on error. |x|
356*8fb009dcSAndroid Build Coastguard Worker // must be an object of |it|'s C type.
357*8fb009dcSAndroid Build Coastguard Worker //
358*8fb009dcSAndroid Build Coastguard Worker // This function may not be used with |ASN1_ITEM|s whose C type is
359*8fb009dcSAndroid Build Coastguard Worker // |ASN1_BOOLEAN|.
360*8fb009dcSAndroid Build Coastguard Worker //
361*8fb009dcSAndroid Build Coastguard Worker // WARNING: Casting the result of this function to the wrong type, or passing a
362*8fb009dcSAndroid Build Coastguard Worker // pointer of the wrong type into this function, are potentially exploitable
363*8fb009dcSAndroid Build Coastguard Worker // memory errors. Prefer using type-specific functions such as
364*8fb009dcSAndroid Build Coastguard Worker // |ASN1_STRING_dup|.
365*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT void *ASN1_item_dup(const ASN1_ITEM *it, void *x);
366*8fb009dcSAndroid Build Coastguard Worker 
367*8fb009dcSAndroid Build Coastguard Worker // The following functions behave like |ASN1_item_d2i| but read from |in|
368*8fb009dcSAndroid Build Coastguard Worker // instead. |out| is the same parameter as in |ASN1_item_d2i|, but written with
369*8fb009dcSAndroid Build Coastguard Worker // |void*| instead. The return values similarly match.
370*8fb009dcSAndroid Build Coastguard Worker //
371*8fb009dcSAndroid Build Coastguard Worker // These functions may not be used with |ASN1_ITEM|s whose C type is
372*8fb009dcSAndroid Build Coastguard Worker // |ASN1_BOOLEAN|.
373*8fb009dcSAndroid Build Coastguard Worker //
374*8fb009dcSAndroid Build Coastguard Worker // WARNING: These functions do not bound how much data is read from |in|.
375*8fb009dcSAndroid Build Coastguard Worker // Parsing an untrusted input could consume unbounded memory.
376*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT void *ASN1_item_d2i_fp(const ASN1_ITEM *it, FILE *in, void *out);
377*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT void *ASN1_item_d2i_bio(const ASN1_ITEM *it, BIO *in, void *out);
378*8fb009dcSAndroid Build Coastguard Worker 
379*8fb009dcSAndroid Build Coastguard Worker // The following functions behave like |ASN1_item_i2d| but write to |out|
380*8fb009dcSAndroid Build Coastguard Worker // instead. |in| is the same parameter as in |ASN1_item_i2d|, but written with
381*8fb009dcSAndroid Build Coastguard Worker // |void*| instead.
382*8fb009dcSAndroid Build Coastguard Worker //
383*8fb009dcSAndroid Build Coastguard Worker // These functions may not be used with |ASN1_ITEM|s whose C type is
384*8fb009dcSAndroid Build Coastguard Worker // |ASN1_BOOLEAN|.
385*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT int ASN1_item_i2d_fp(const ASN1_ITEM *it, FILE *out, void *in);
386*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT int ASN1_item_i2d_bio(const ASN1_ITEM *it, BIO *out, void *in);
387*8fb009dcSAndroid Build Coastguard Worker 
388*8fb009dcSAndroid Build Coastguard Worker // ASN1_item_unpack parses |oct|'s contents as |it|'s ASN.1 type. It returns a
389*8fb009dcSAndroid Build Coastguard Worker // newly-allocated instance of |it|'s C type on success, or NULL on error.
390*8fb009dcSAndroid Build Coastguard Worker //
391*8fb009dcSAndroid Build Coastguard Worker // This function may not be used with |ASN1_ITEM|s whose C type is
392*8fb009dcSAndroid Build Coastguard Worker // |ASN1_BOOLEAN|.
393*8fb009dcSAndroid Build Coastguard Worker //
394*8fb009dcSAndroid Build Coastguard Worker // WARNING: Casting the result of this function to the wrong type is a
395*8fb009dcSAndroid Build Coastguard Worker // potentially exploitable memory error. Callers must ensure the value is used
396*8fb009dcSAndroid Build Coastguard Worker // consistently with |it|.
397*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT void *ASN1_item_unpack(const ASN1_STRING *oct,
398*8fb009dcSAndroid Build Coastguard Worker                                       const ASN1_ITEM *it);
399*8fb009dcSAndroid Build Coastguard Worker 
400*8fb009dcSAndroid Build Coastguard Worker // ASN1_item_pack marshals |obj| as |it|'s ASN.1 type. If |out| is NULL, it
401*8fb009dcSAndroid Build Coastguard Worker // returns a newly-allocated |ASN1_STRING| with the result, or NULL on error.
402*8fb009dcSAndroid Build Coastguard Worker // If |out| is non-NULL, but |*out| is NULL, it does the same but additionally
403*8fb009dcSAndroid Build Coastguard Worker // sets |*out| to the result. If both |out| and |*out| are non-NULL, it writes
404*8fb009dcSAndroid Build Coastguard Worker // the result to |*out| and returns |*out| on success or NULL on error.
405*8fb009dcSAndroid Build Coastguard Worker //
406*8fb009dcSAndroid Build Coastguard Worker // This function may not be used with |ASN1_ITEM|s whose C type is
407*8fb009dcSAndroid Build Coastguard Worker // |ASN1_BOOLEAN|.
408*8fb009dcSAndroid Build Coastguard Worker //
409*8fb009dcSAndroid Build Coastguard Worker // WARNING: Passing a pointer of the wrong type into this function is a
410*8fb009dcSAndroid Build Coastguard Worker // potentially exploitable memory error. Callers must ensure |val| is consistent
411*8fb009dcSAndroid Build Coastguard Worker // with |it|.
412*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT ASN1_STRING *ASN1_item_pack(void *obj, const ASN1_ITEM *it,
413*8fb009dcSAndroid Build Coastguard Worker                                            ASN1_STRING **out);
414*8fb009dcSAndroid Build Coastguard Worker 
415*8fb009dcSAndroid Build Coastguard Worker 
416*8fb009dcSAndroid Build Coastguard Worker // Booleans.
417*8fb009dcSAndroid Build Coastguard Worker //
418*8fb009dcSAndroid Build Coastguard Worker // This library represents ASN.1 BOOLEAN values with |ASN1_BOOLEAN|, which is an
419*8fb009dcSAndroid Build Coastguard Worker // integer type. FALSE is zero, TRUE is 0xff, and an omitted OPTIONAL BOOLEAN is
420*8fb009dcSAndroid Build Coastguard Worker // -1.
421*8fb009dcSAndroid Build Coastguard Worker 
422*8fb009dcSAndroid Build Coastguard Worker // ASN1_BOOLEAN_FALSE is FALSE as an |ASN1_BOOLEAN|.
423*8fb009dcSAndroid Build Coastguard Worker #define ASN1_BOOLEAN_FALSE 0
424*8fb009dcSAndroid Build Coastguard Worker 
425*8fb009dcSAndroid Build Coastguard Worker // ASN1_BOOLEAN_TRUE is TRUE as an |ASN1_BOOLEAN|. Some code incorrectly uses
426*8fb009dcSAndroid Build Coastguard Worker // 1, so prefer |b != ASN1_BOOLEAN_FALSE| over |b == ASN1_BOOLEAN_TRUE|.
427*8fb009dcSAndroid Build Coastguard Worker #define ASN1_BOOLEAN_TRUE 0xff
428*8fb009dcSAndroid Build Coastguard Worker 
429*8fb009dcSAndroid Build Coastguard Worker // ASN1_BOOLEAN_NONE, in contexts where the |ASN1_BOOLEAN| represents an
430*8fb009dcSAndroid Build Coastguard Worker // OPTIONAL BOOLEAN, is an omitted value. Using this value in other contexts is
431*8fb009dcSAndroid Build Coastguard Worker // undefined and may be misinterpreted as TRUE.
432*8fb009dcSAndroid Build Coastguard Worker #define ASN1_BOOLEAN_NONE (-1)
433*8fb009dcSAndroid Build Coastguard Worker 
434*8fb009dcSAndroid Build Coastguard Worker // d2i_ASN1_BOOLEAN parses a DER-encoded ASN.1 BOOLEAN from up to |len| bytes at
435*8fb009dcSAndroid Build Coastguard Worker // |*inp|. On success, it advances |*inp| by the number of bytes read and
436*8fb009dcSAndroid Build Coastguard Worker // returns the result. If |out| is non-NULL, it additionally writes the result
437*8fb009dcSAndroid Build Coastguard Worker // to |*out|. On error, it returns |ASN1_BOOLEAN_NONE|.
438*8fb009dcSAndroid Build Coastguard Worker //
439*8fb009dcSAndroid Build Coastguard Worker // This function does not reject trailing data in the input. This allows the
440*8fb009dcSAndroid Build Coastguard Worker // caller to parse a sequence of concatenated structures. Callers parsing only
441*8fb009dcSAndroid Build Coastguard Worker // one structure should check for trailing data by comparing the updated |*inp|
442*8fb009dcSAndroid Build Coastguard Worker // with the end of the input.
443*8fb009dcSAndroid Build Coastguard Worker //
444*8fb009dcSAndroid Build Coastguard Worker // WARNING: This function's is slightly different from other |d2i_*| functions
445*8fb009dcSAndroid Build Coastguard Worker // because |ASN1_BOOLEAN| is not a pointer type.
446*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT ASN1_BOOLEAN d2i_ASN1_BOOLEAN(ASN1_BOOLEAN *out,
447*8fb009dcSAndroid Build Coastguard Worker                                              const unsigned char **inp,
448*8fb009dcSAndroid Build Coastguard Worker                                              long len);
449*8fb009dcSAndroid Build Coastguard Worker 
450*8fb009dcSAndroid Build Coastguard Worker // i2d_ASN1_BOOLEAN marshals |a| as a DER-encoded ASN.1 BOOLEAN, as described in
451*8fb009dcSAndroid Build Coastguard Worker // |i2d_SAMPLE|.
452*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT int i2d_ASN1_BOOLEAN(ASN1_BOOLEAN a, unsigned char **outp);
453*8fb009dcSAndroid Build Coastguard Worker 
454*8fb009dcSAndroid Build Coastguard Worker // The following |ASN1_ITEM|s have ASN.1 type BOOLEAN and C type |ASN1_BOOLEAN|.
455*8fb009dcSAndroid Build Coastguard Worker // |ASN1_TBOOLEAN| and |ASN1_FBOOLEAN| must be marked OPTIONAL. When omitted,
456*8fb009dcSAndroid Build Coastguard Worker // they are parsed as TRUE and FALSE, respectively, rather than
457*8fb009dcSAndroid Build Coastguard Worker // |ASN1_BOOLEAN_NONE|.
458*8fb009dcSAndroid Build Coastguard Worker DECLARE_ASN1_ITEM(ASN1_BOOLEAN)
459*8fb009dcSAndroid Build Coastguard Worker DECLARE_ASN1_ITEM(ASN1_TBOOLEAN)
460*8fb009dcSAndroid Build Coastguard Worker DECLARE_ASN1_ITEM(ASN1_FBOOLEAN)
461*8fb009dcSAndroid Build Coastguard Worker 
462*8fb009dcSAndroid Build Coastguard Worker 
463*8fb009dcSAndroid Build Coastguard Worker // Strings.
464*8fb009dcSAndroid Build Coastguard Worker //
465*8fb009dcSAndroid Build Coastguard Worker // ASN.1 contains a myriad of string types, as well as types that contain data
466*8fb009dcSAndroid Build Coastguard Worker // that may be encoded into a string. This library uses a single type,
467*8fb009dcSAndroid Build Coastguard Worker // |ASN1_STRING|, to represent most values.
468*8fb009dcSAndroid Build Coastguard Worker 
469*8fb009dcSAndroid Build Coastguard Worker // An asn1_string_st (aka |ASN1_STRING|) represents a value of a string-like
470*8fb009dcSAndroid Build Coastguard Worker // ASN.1 type. It contains a |type| field, and a byte string |data| field with a
471*8fb009dcSAndroid Build Coastguard Worker // type-specific representation.
472*8fb009dcSAndroid Build Coastguard Worker //
473*8fb009dcSAndroid Build Coastguard Worker // If |type| is one of |V_ASN1_OCTET_STRING|, |V_ASN1_UTF8STRING|,
474*8fb009dcSAndroid Build Coastguard Worker // |V_ASN1_NUMERICSTRING|, |V_ASN1_PRINTABLESTRING|, |V_ASN1_T61STRING|,
475*8fb009dcSAndroid Build Coastguard Worker // |V_ASN1_VIDEOTEXSTRING|, |V_ASN1_IA5STRING|, |V_ASN1_GRAPHICSTRING|,
476*8fb009dcSAndroid Build Coastguard Worker // |V_ASN1_ISO64STRING|, |V_ASN1_VISIBLESTRING|, |V_ASN1_GENERALSTRING|,
477*8fb009dcSAndroid Build Coastguard Worker // |V_ASN1_UNIVERSALSTRING|, or |V_ASN1_BMPSTRING|, the object represents an
478*8fb009dcSAndroid Build Coastguard Worker // ASN.1 string type. The data contains the byte representation of the
479*8fb009dcSAndroid Build Coastguard Worker // string.
480*8fb009dcSAndroid Build Coastguard Worker //
481*8fb009dcSAndroid Build Coastguard Worker // If |type| is |V_ASN1_BIT_STRING|, the object represents a BIT STRING value.
482*8fb009dcSAndroid Build Coastguard Worker // See bit string documentation below for the data and flags.
483*8fb009dcSAndroid Build Coastguard Worker //
484*8fb009dcSAndroid Build Coastguard Worker // If |type| is one of |V_ASN1_INTEGER|, |V_ASN1_NEG_INTEGER|,
485*8fb009dcSAndroid Build Coastguard Worker // |V_ASN1_ENUMERATED|, or |V_ASN1_NEG_ENUMERATED|, the object represents an
486*8fb009dcSAndroid Build Coastguard Worker // INTEGER or ENUMERATED value. See integer documentation below for details.
487*8fb009dcSAndroid Build Coastguard Worker //
488*8fb009dcSAndroid Build Coastguard Worker // If |type| is |V_ASN1_GENERALIZEDTIME| or |V_ASN1_UTCTIME|, the object
489*8fb009dcSAndroid Build Coastguard Worker // represents a GeneralizedTime or UTCTime value, respectively. The data
490*8fb009dcSAndroid Build Coastguard Worker // contains the DER encoding of the value. For example, the UNIX epoch would be
491*8fb009dcSAndroid Build Coastguard Worker // "19700101000000Z" for a GeneralizedTime and "700101000000Z" for a UTCTime.
492*8fb009dcSAndroid Build Coastguard Worker //
493*8fb009dcSAndroid Build Coastguard Worker // If |type| is |V_ASN1_SEQUENCE|, |V_ASN1_SET|, or |V_ASN1_OTHER|, the object
494*8fb009dcSAndroid Build Coastguard Worker // represents a SEQUENCE, SET, or arbitrary ASN.1 value, respectively. Unlike
495*8fb009dcSAndroid Build Coastguard Worker // the above cases, the data contains the DER encoding of the entire structure,
496*8fb009dcSAndroid Build Coastguard Worker // including the header. If the value is explicitly or implicitly tagged, this
497*8fb009dcSAndroid Build Coastguard Worker // too will be reflected in the data field. As this case handles unknown types,
498*8fb009dcSAndroid Build Coastguard Worker // the contents are not checked when parsing or serializing.
499*8fb009dcSAndroid Build Coastguard Worker //
500*8fb009dcSAndroid Build Coastguard Worker // Other values of |type| do not represent a valid ASN.1 value, though
501*8fb009dcSAndroid Build Coastguard Worker // default-constructed objects may set |type| to -1. Such objects cannot be
502*8fb009dcSAndroid Build Coastguard Worker // serialized.
503*8fb009dcSAndroid Build Coastguard Worker //
504*8fb009dcSAndroid Build Coastguard Worker // |ASN1_STRING| additionally has the following typedefs: |ASN1_BIT_STRING|,
505*8fb009dcSAndroid Build Coastguard Worker // |ASN1_BMPSTRING|, |ASN1_ENUMERATED|, |ASN1_GENERALIZEDTIME|,
506*8fb009dcSAndroid Build Coastguard Worker // |ASN1_GENERALSTRING|, |ASN1_IA5STRING|, |ASN1_INTEGER|, |ASN1_OCTET_STRING|,
507*8fb009dcSAndroid Build Coastguard Worker // |ASN1_PRINTABLESTRING|, |ASN1_T61STRING|, |ASN1_TIME|,
508*8fb009dcSAndroid Build Coastguard Worker // |ASN1_UNIVERSALSTRING|, |ASN1_UTCTIME|, |ASN1_UTF8STRING|, and
509*8fb009dcSAndroid Build Coastguard Worker // |ASN1_VISIBLESTRING|. Other than |ASN1_TIME|, these correspond to universal
510*8fb009dcSAndroid Build Coastguard Worker // ASN.1 types. |ASN1_TIME| represents a CHOICE of UTCTime and GeneralizedTime,
511*8fb009dcSAndroid Build Coastguard Worker // with a cutoff of 2049, as used in Section 4.1.2.5 of RFC 5280.
512*8fb009dcSAndroid Build Coastguard Worker //
513*8fb009dcSAndroid Build Coastguard Worker // For clarity, callers are encouraged to use the appropriate typedef when
514*8fb009dcSAndroid Build Coastguard Worker // available. They are the same type as |ASN1_STRING|, so a caller may freely
515*8fb009dcSAndroid Build Coastguard Worker // pass them into functions expecting |ASN1_STRING|, such as
516*8fb009dcSAndroid Build Coastguard Worker // |ASN1_STRING_length|.
517*8fb009dcSAndroid Build Coastguard Worker //
518*8fb009dcSAndroid Build Coastguard Worker // If a function returns an |ASN1_STRING| where the typedef or ASN.1 structure
519*8fb009dcSAndroid Build Coastguard Worker // implies constraints on |type|, callers may assume that |type| is correct.
520*8fb009dcSAndroid Build Coastguard Worker // However, if a function takes an |ASN1_STRING| as input, callers must ensure
521*8fb009dcSAndroid Build Coastguard Worker // |type| matches. These invariants are not captured by the C type system and
522*8fb009dcSAndroid Build Coastguard Worker // may not be checked at runtime. For example, callers may assume the output of
523*8fb009dcSAndroid Build Coastguard Worker // |X509_get0_serialNumber| has type |V_ASN1_INTEGER| or |V_ASN1_NEG_INTEGER|.
524*8fb009dcSAndroid Build Coastguard Worker // Callers must not pass a string of type |V_ASN1_OCTET_STRING| to
525*8fb009dcSAndroid Build Coastguard Worker // |X509_set_serialNumber|. Doing so may break invariants on the |X509| object
526*8fb009dcSAndroid Build Coastguard Worker // and break the |X509_get0_serialNumber| invariant.
527*8fb009dcSAndroid Build Coastguard Worker //
528*8fb009dcSAndroid Build Coastguard Worker // TODO(https://crbug.com/boringssl/445): This is very unfriendly. Getting the
529*8fb009dcSAndroid Build Coastguard Worker // type field wrong should not cause memory errors, but it may do strange
530*8fb009dcSAndroid Build Coastguard Worker // things. We should add runtime checks to anything that consumes |ASN1_STRING|s
531*8fb009dcSAndroid Build Coastguard Worker // from the caller.
532*8fb009dcSAndroid Build Coastguard Worker struct asn1_string_st {
533*8fb009dcSAndroid Build Coastguard Worker   int length;
534*8fb009dcSAndroid Build Coastguard Worker   int type;
535*8fb009dcSAndroid Build Coastguard Worker   unsigned char *data;
536*8fb009dcSAndroid Build Coastguard Worker   long flags;
537*8fb009dcSAndroid Build Coastguard Worker };
538*8fb009dcSAndroid Build Coastguard Worker 
539*8fb009dcSAndroid Build Coastguard Worker // ASN1_STRING_FLAG_BITS_LEFT indicates, in a BIT STRING |ASN1_STRING|, that
540*8fb009dcSAndroid Build Coastguard Worker // flags & 0x7 contains the number of padding bits added to the BIT STRING
541*8fb009dcSAndroid Build Coastguard Worker // value. When not set, all trailing zero bits in the last byte are implicitly
542*8fb009dcSAndroid Build Coastguard Worker // treated as padding. This behavior is deprecated and should not be used.
543*8fb009dcSAndroid Build Coastguard Worker #define ASN1_STRING_FLAG_BITS_LEFT 0x08
544*8fb009dcSAndroid Build Coastguard Worker 
545*8fb009dcSAndroid Build Coastguard Worker // ASN1_STRING_type_new returns a newly-allocated empty |ASN1_STRING| object of
546*8fb009dcSAndroid Build Coastguard Worker // type |type|, or NULL on error.
547*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT ASN1_STRING *ASN1_STRING_type_new(int type);
548*8fb009dcSAndroid Build Coastguard Worker 
549*8fb009dcSAndroid Build Coastguard Worker // ASN1_STRING_new returns a newly-allocated empty |ASN1_STRING| object with an
550*8fb009dcSAndroid Build Coastguard Worker // arbitrary type. Prefer one of the type-specific constructors, such as
551*8fb009dcSAndroid Build Coastguard Worker // |ASN1_OCTET_STRING_new|, or |ASN1_STRING_type_new|.
552*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT ASN1_STRING *ASN1_STRING_new(void);
553*8fb009dcSAndroid Build Coastguard Worker 
554*8fb009dcSAndroid Build Coastguard Worker // ASN1_STRING_free releases memory associated with |str|.
555*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT void ASN1_STRING_free(ASN1_STRING *str);
556*8fb009dcSAndroid Build Coastguard Worker 
557*8fb009dcSAndroid Build Coastguard Worker // ASN1_STRING_copy sets |dst| to a copy of |str|. It returns one on success and
558*8fb009dcSAndroid Build Coastguard Worker // zero on error.
559*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT int ASN1_STRING_copy(ASN1_STRING *dst, const ASN1_STRING *str);
560*8fb009dcSAndroid Build Coastguard Worker 
561*8fb009dcSAndroid Build Coastguard Worker // ASN1_STRING_dup returns a newly-allocated copy of |str|, or NULL on error.
562*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT ASN1_STRING *ASN1_STRING_dup(const ASN1_STRING *str);
563*8fb009dcSAndroid Build Coastguard Worker 
564*8fb009dcSAndroid Build Coastguard Worker // ASN1_STRING_type returns the type of |str|. This value will be one of the
565*8fb009dcSAndroid Build Coastguard Worker // |V_ASN1_*| constants.
566*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT int ASN1_STRING_type(const ASN1_STRING *str);
567*8fb009dcSAndroid Build Coastguard Worker 
568*8fb009dcSAndroid Build Coastguard Worker // ASN1_STRING_get0_data returns a pointer to |str|'s contents. Callers should
569*8fb009dcSAndroid Build Coastguard Worker // use |ASN1_STRING_length| to determine the length of the string. The string
570*8fb009dcSAndroid Build Coastguard Worker // may have embedded NUL bytes and may not be NUL-terminated.
571*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT const unsigned char *ASN1_STRING_get0_data(
572*8fb009dcSAndroid Build Coastguard Worker     const ASN1_STRING *str);
573*8fb009dcSAndroid Build Coastguard Worker 
574*8fb009dcSAndroid Build Coastguard Worker // ASN1_STRING_data returns a mutable pointer to |str|'s contents. Callers
575*8fb009dcSAndroid Build Coastguard Worker // should use |ASN1_STRING_length| to determine the length of the string. The
576*8fb009dcSAndroid Build Coastguard Worker // string may have embedded NUL bytes and may not be NUL-terminated.
577*8fb009dcSAndroid Build Coastguard Worker //
578*8fb009dcSAndroid Build Coastguard Worker // Prefer |ASN1_STRING_get0_data|.
579*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT unsigned char *ASN1_STRING_data(ASN1_STRING *str);
580*8fb009dcSAndroid Build Coastguard Worker 
581*8fb009dcSAndroid Build Coastguard Worker // ASN1_STRING_length returns the length of |str|, in bytes.
582*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT int ASN1_STRING_length(const ASN1_STRING *str);
583*8fb009dcSAndroid Build Coastguard Worker 
584*8fb009dcSAndroid Build Coastguard Worker // ASN1_STRING_cmp compares |a| and |b|'s type and contents. It returns an
585*8fb009dcSAndroid Build Coastguard Worker // integer equal to, less than, or greater than zero if |a| is equal to, less
586*8fb009dcSAndroid Build Coastguard Worker // than, or greater than |b|, respectively. This function compares by length,
587*8fb009dcSAndroid Build Coastguard Worker // then data, then type. Note the data compared is the |ASN1_STRING| internal
588*8fb009dcSAndroid Build Coastguard Worker // representation and the type order is arbitrary. While this comparison is
589*8fb009dcSAndroid Build Coastguard Worker // suitable for sorting, callers should not rely on the exact order when |a|
590*8fb009dcSAndroid Build Coastguard Worker // and |b| are different types.
591*8fb009dcSAndroid Build Coastguard Worker //
592*8fb009dcSAndroid Build Coastguard Worker // Note that, if |a| and |b| are INTEGERs, this comparison does not order the
593*8fb009dcSAndroid Build Coastguard Worker // values numerically. For a numerical comparison, use |ASN1_INTEGER_cmp|.
594*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT int ASN1_STRING_cmp(const ASN1_STRING *a, const ASN1_STRING *b);
595*8fb009dcSAndroid Build Coastguard Worker 
596*8fb009dcSAndroid Build Coastguard Worker // ASN1_STRING_set sets the contents of |str| to a copy of |len| bytes from
597*8fb009dcSAndroid Build Coastguard Worker // |data|. It returns one on success and zero on error. If |data| is NULL, it
598*8fb009dcSAndroid Build Coastguard Worker // updates the length and allocates the buffer as needed, but does not
599*8fb009dcSAndroid Build Coastguard Worker // initialize the contents.
600*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT int ASN1_STRING_set(ASN1_STRING *str, const void *data,
601*8fb009dcSAndroid Build Coastguard Worker                                    ossl_ssize_t len);
602*8fb009dcSAndroid Build Coastguard Worker 
603*8fb009dcSAndroid Build Coastguard Worker // ASN1_STRING_set0 sets the contents of |str| to |len| bytes from |data|. It
604*8fb009dcSAndroid Build Coastguard Worker // takes ownership of |data|, which must have been allocated with
605*8fb009dcSAndroid Build Coastguard Worker // |OPENSSL_malloc|.
606*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT void ASN1_STRING_set0(ASN1_STRING *str, void *data, int len);
607*8fb009dcSAndroid Build Coastguard Worker 
608*8fb009dcSAndroid Build Coastguard Worker // The following functions call |ASN1_STRING_type_new| with the corresponding
609*8fb009dcSAndroid Build Coastguard Worker // |V_ASN1_*| constant.
610*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT ASN1_BMPSTRING *ASN1_BMPSTRING_new(void);
611*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT ASN1_GENERALSTRING *ASN1_GENERALSTRING_new(void);
612*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT ASN1_IA5STRING *ASN1_IA5STRING_new(void);
613*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT ASN1_OCTET_STRING *ASN1_OCTET_STRING_new(void);
614*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT ASN1_PRINTABLESTRING *ASN1_PRINTABLESTRING_new(void);
615*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT ASN1_T61STRING *ASN1_T61STRING_new(void);
616*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT ASN1_UNIVERSALSTRING *ASN1_UNIVERSALSTRING_new(void);
617*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT ASN1_UTF8STRING *ASN1_UTF8STRING_new(void);
618*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT ASN1_VISIBLESTRING *ASN1_VISIBLESTRING_new(void);
619*8fb009dcSAndroid Build Coastguard Worker 
620*8fb009dcSAndroid Build Coastguard Worker // The following functions call |ASN1_STRING_free|.
621*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT void ASN1_BMPSTRING_free(ASN1_BMPSTRING *str);
622*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT void ASN1_GENERALSTRING_free(ASN1_GENERALSTRING *str);
623*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT void ASN1_IA5STRING_free(ASN1_IA5STRING *str);
624*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT void ASN1_OCTET_STRING_free(ASN1_OCTET_STRING *str);
625*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT void ASN1_PRINTABLESTRING_free(ASN1_PRINTABLESTRING *str);
626*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT void ASN1_T61STRING_free(ASN1_T61STRING *str);
627*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT void ASN1_UNIVERSALSTRING_free(ASN1_UNIVERSALSTRING *str);
628*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT void ASN1_UTF8STRING_free(ASN1_UTF8STRING *str);
629*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT void ASN1_VISIBLESTRING_free(ASN1_VISIBLESTRING *str);
630*8fb009dcSAndroid Build Coastguard Worker 
631*8fb009dcSAndroid Build Coastguard Worker // The following functions parse up to |len| bytes from |*inp| as a
632*8fb009dcSAndroid Build Coastguard Worker // DER-encoded ASN.1 value of the corresponding type, as described in
633*8fb009dcSAndroid Build Coastguard Worker // |d2i_SAMPLE|.
634*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT ASN1_BMPSTRING *d2i_ASN1_BMPSTRING(ASN1_BMPSTRING **out,
635*8fb009dcSAndroid Build Coastguard Worker                                                   const uint8_t **inp,
636*8fb009dcSAndroid Build Coastguard Worker                                                   long len);
637*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT ASN1_GENERALSTRING *d2i_ASN1_GENERALSTRING(
638*8fb009dcSAndroid Build Coastguard Worker     ASN1_GENERALSTRING **out, const uint8_t **inp, long len);
639*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT ASN1_IA5STRING *d2i_ASN1_IA5STRING(ASN1_IA5STRING **out,
640*8fb009dcSAndroid Build Coastguard Worker                                                   const uint8_t **inp,
641*8fb009dcSAndroid Build Coastguard Worker                                                   long len);
642*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT ASN1_OCTET_STRING *d2i_ASN1_OCTET_STRING(ASN1_OCTET_STRING **out,
643*8fb009dcSAndroid Build Coastguard Worker                                                         const uint8_t **inp,
644*8fb009dcSAndroid Build Coastguard Worker                                                         long len);
645*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT ASN1_PRINTABLESTRING *d2i_ASN1_PRINTABLESTRING(
646*8fb009dcSAndroid Build Coastguard Worker     ASN1_PRINTABLESTRING **out, const uint8_t **inp, long len);
647*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT ASN1_T61STRING *d2i_ASN1_T61STRING(ASN1_T61STRING **out,
648*8fb009dcSAndroid Build Coastguard Worker                                                   const uint8_t **inp,
649*8fb009dcSAndroid Build Coastguard Worker                                                   long len);
650*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT ASN1_UNIVERSALSTRING *d2i_ASN1_UNIVERSALSTRING(
651*8fb009dcSAndroid Build Coastguard Worker     ASN1_UNIVERSALSTRING **out, const uint8_t **inp, long len);
652*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT ASN1_UTF8STRING *d2i_ASN1_UTF8STRING(ASN1_UTF8STRING **out,
653*8fb009dcSAndroid Build Coastguard Worker                                                     const uint8_t **inp,
654*8fb009dcSAndroid Build Coastguard Worker                                                     long len);
655*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT ASN1_VISIBLESTRING *d2i_ASN1_VISIBLESTRING(
656*8fb009dcSAndroid Build Coastguard Worker     ASN1_VISIBLESTRING **out, const uint8_t **inp, long len);
657*8fb009dcSAndroid Build Coastguard Worker 
658*8fb009dcSAndroid Build Coastguard Worker // The following functions marshal |in| as a DER-encoded ASN.1 value of the
659*8fb009dcSAndroid Build Coastguard Worker // corresponding type, as described in |i2d_SAMPLE|.
660*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT int i2d_ASN1_BMPSTRING(const ASN1_BMPSTRING *in, uint8_t **outp);
661*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT int i2d_ASN1_GENERALSTRING(const ASN1_GENERALSTRING *in,
662*8fb009dcSAndroid Build Coastguard Worker                                           uint8_t **outp);
663*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT int i2d_ASN1_IA5STRING(const ASN1_IA5STRING *in, uint8_t **outp);
664*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT int i2d_ASN1_OCTET_STRING(const ASN1_OCTET_STRING *in,
665*8fb009dcSAndroid Build Coastguard Worker                                          uint8_t **outp);
666*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT int i2d_ASN1_PRINTABLESTRING(const ASN1_PRINTABLESTRING *in,
667*8fb009dcSAndroid Build Coastguard Worker                                             uint8_t **outp);
668*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT int i2d_ASN1_T61STRING(const ASN1_T61STRING *in, uint8_t **outp);
669*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT int i2d_ASN1_UNIVERSALSTRING(const ASN1_UNIVERSALSTRING *in,
670*8fb009dcSAndroid Build Coastguard Worker                                             uint8_t **outp);
671*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT int i2d_ASN1_UTF8STRING(const ASN1_UTF8STRING *in,
672*8fb009dcSAndroid Build Coastguard Worker                                        uint8_t **outp);
673*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT int i2d_ASN1_VISIBLESTRING(const ASN1_VISIBLESTRING *in,
674*8fb009dcSAndroid Build Coastguard Worker                                           uint8_t **outp);
675*8fb009dcSAndroid Build Coastguard Worker 
676*8fb009dcSAndroid Build Coastguard Worker // The following |ASN1_ITEM|s have the ASN.1 type referred to in their name and
677*8fb009dcSAndroid Build Coastguard Worker // C type |ASN1_STRING*|. The C type may also be written as the corresponding
678*8fb009dcSAndroid Build Coastguard Worker // typedef.
679*8fb009dcSAndroid Build Coastguard Worker DECLARE_ASN1_ITEM(ASN1_BMPSTRING)
680*8fb009dcSAndroid Build Coastguard Worker DECLARE_ASN1_ITEM(ASN1_GENERALSTRING)
681*8fb009dcSAndroid Build Coastguard Worker DECLARE_ASN1_ITEM(ASN1_IA5STRING)
682*8fb009dcSAndroid Build Coastguard Worker DECLARE_ASN1_ITEM(ASN1_OCTET_STRING)
683*8fb009dcSAndroid Build Coastguard Worker DECLARE_ASN1_ITEM(ASN1_PRINTABLESTRING)
684*8fb009dcSAndroid Build Coastguard Worker DECLARE_ASN1_ITEM(ASN1_T61STRING)
685*8fb009dcSAndroid Build Coastguard Worker DECLARE_ASN1_ITEM(ASN1_UNIVERSALSTRING)
686*8fb009dcSAndroid Build Coastguard Worker DECLARE_ASN1_ITEM(ASN1_UTF8STRING)
687*8fb009dcSAndroid Build Coastguard Worker DECLARE_ASN1_ITEM(ASN1_VISIBLESTRING)
688*8fb009dcSAndroid Build Coastguard Worker 
689*8fb009dcSAndroid Build Coastguard Worker // ASN1_OCTET_STRING_dup calls |ASN1_STRING_dup|.
690*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT ASN1_OCTET_STRING *ASN1_OCTET_STRING_dup(
691*8fb009dcSAndroid Build Coastguard Worker     const ASN1_OCTET_STRING *a);
692*8fb009dcSAndroid Build Coastguard Worker 
693*8fb009dcSAndroid Build Coastguard Worker // ASN1_OCTET_STRING_cmp calls |ASN1_STRING_cmp|.
694*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT int ASN1_OCTET_STRING_cmp(const ASN1_OCTET_STRING *a,
695*8fb009dcSAndroid Build Coastguard Worker                                          const ASN1_OCTET_STRING *b);
696*8fb009dcSAndroid Build Coastguard Worker 
697*8fb009dcSAndroid Build Coastguard Worker // ASN1_OCTET_STRING_set calls |ASN1_STRING_set|.
698*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT int ASN1_OCTET_STRING_set(ASN1_OCTET_STRING *str,
699*8fb009dcSAndroid Build Coastguard Worker                                          const unsigned char *data, int len);
700*8fb009dcSAndroid Build Coastguard Worker 
701*8fb009dcSAndroid Build Coastguard Worker // ASN1_STRING_to_UTF8 converts |in| to UTF-8. On success, sets |*out| to a
702*8fb009dcSAndroid Build Coastguard Worker // newly-allocated buffer containing the resulting string and returns the length
703*8fb009dcSAndroid Build Coastguard Worker // of the string. The caller must call |OPENSSL_free| to release |*out| when
704*8fb009dcSAndroid Build Coastguard Worker // done. On error, it returns a negative number.
705*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT int ASN1_STRING_to_UTF8(unsigned char **out,
706*8fb009dcSAndroid Build Coastguard Worker                                        const ASN1_STRING *in);
707*8fb009dcSAndroid Build Coastguard Worker 
708*8fb009dcSAndroid Build Coastguard Worker // The following formats define encodings for use with functions like
709*8fb009dcSAndroid Build Coastguard Worker // |ASN1_mbstring_copy|. Note |MBSTRING_ASC| refers to Latin-1, not ASCII.
710*8fb009dcSAndroid Build Coastguard Worker #define MBSTRING_FLAG 0x1000
711*8fb009dcSAndroid Build Coastguard Worker #define MBSTRING_UTF8 (MBSTRING_FLAG)
712*8fb009dcSAndroid Build Coastguard Worker #define MBSTRING_ASC (MBSTRING_FLAG | 1)
713*8fb009dcSAndroid Build Coastguard Worker #define MBSTRING_BMP (MBSTRING_FLAG | 2)
714*8fb009dcSAndroid Build Coastguard Worker #define MBSTRING_UNIV (MBSTRING_FLAG | 4)
715*8fb009dcSAndroid Build Coastguard Worker 
716*8fb009dcSAndroid Build Coastguard Worker // DIRSTRING_TYPE contains the valid string types in an X.509 DirectoryString.
717*8fb009dcSAndroid Build Coastguard Worker #define DIRSTRING_TYPE                                            \
718*8fb009dcSAndroid Build Coastguard Worker   (B_ASN1_PRINTABLESTRING | B_ASN1_T61STRING | B_ASN1_BMPSTRING | \
719*8fb009dcSAndroid Build Coastguard Worker    B_ASN1_UTF8STRING)
720*8fb009dcSAndroid Build Coastguard Worker 
721*8fb009dcSAndroid Build Coastguard Worker // PKCS9STRING_TYPE contains the valid string types in a PKCS9String.
722*8fb009dcSAndroid Build Coastguard Worker #define PKCS9STRING_TYPE (DIRSTRING_TYPE | B_ASN1_IA5STRING)
723*8fb009dcSAndroid Build Coastguard Worker 
724*8fb009dcSAndroid Build Coastguard Worker // ASN1_mbstring_copy converts |len| bytes from |in| to an ASN.1 string. If
725*8fb009dcSAndroid Build Coastguard Worker // |len| is -1, |in| must be NUL-terminated and the length is determined by
726*8fb009dcSAndroid Build Coastguard Worker // |strlen|. |in| is decoded according to |inform|, which must be one of
727*8fb009dcSAndroid Build Coastguard Worker // |MBSTRING_*|. |mask| determines the set of valid output types and is a
728*8fb009dcSAndroid Build Coastguard Worker // bitmask containing a subset of |B_ASN1_PRINTABLESTRING|, |B_ASN1_IA5STRING|,
729*8fb009dcSAndroid Build Coastguard Worker // |B_ASN1_T61STRING|, |B_ASN1_BMPSTRING|, |B_ASN1_UNIVERSALSTRING|, and
730*8fb009dcSAndroid Build Coastguard Worker // |B_ASN1_UTF8STRING|, in that preference order. This function chooses the
731*8fb009dcSAndroid Build Coastguard Worker // first output type in |mask| which can represent |in|. It interprets T61String
732*8fb009dcSAndroid Build Coastguard Worker // as Latin-1, rather than T.61.
733*8fb009dcSAndroid Build Coastguard Worker //
734*8fb009dcSAndroid Build Coastguard Worker // If |mask| is zero, |DIRSTRING_TYPE| is used by default.
735*8fb009dcSAndroid Build Coastguard Worker //
736*8fb009dcSAndroid Build Coastguard Worker // On success, this function returns the |V_ASN1_*| constant corresponding to
737*8fb009dcSAndroid Build Coastguard Worker // the selected output type and, if |out| and |*out| are both non-NULL, updates
738*8fb009dcSAndroid Build Coastguard Worker // the object at |*out| with the result. If |out| is non-NULL and |*out| is
739*8fb009dcSAndroid Build Coastguard Worker // NULL, it instead sets |*out| to a newly-allocated |ASN1_STRING| containing
740*8fb009dcSAndroid Build Coastguard Worker // the result. If |out| is NULL, it returns the selected output type without
741*8fb009dcSAndroid Build Coastguard Worker // constructing an |ASN1_STRING|. On error, this function returns -1.
742*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT int ASN1_mbstring_copy(ASN1_STRING **out, const uint8_t *in,
743*8fb009dcSAndroid Build Coastguard Worker                                       ossl_ssize_t len, int inform,
744*8fb009dcSAndroid Build Coastguard Worker                                       unsigned long mask);
745*8fb009dcSAndroid Build Coastguard Worker 
746*8fb009dcSAndroid Build Coastguard Worker // ASN1_mbstring_ncopy behaves like |ASN1_mbstring_copy| but returns an error if
747*8fb009dcSAndroid Build Coastguard Worker // the input is less than |minsize| or greater than |maxsize| codepoints long. A
748*8fb009dcSAndroid Build Coastguard Worker // |maxsize| value of zero is ignored. Note the sizes are measured in
749*8fb009dcSAndroid Build Coastguard Worker // codepoints, not output bytes.
750*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT int ASN1_mbstring_ncopy(ASN1_STRING **out, const uint8_t *in,
751*8fb009dcSAndroid Build Coastguard Worker                                        ossl_ssize_t len, int inform,
752*8fb009dcSAndroid Build Coastguard Worker                                        unsigned long mask, ossl_ssize_t minsize,
753*8fb009dcSAndroid Build Coastguard Worker                                        ossl_ssize_t maxsize);
754*8fb009dcSAndroid Build Coastguard Worker 
755*8fb009dcSAndroid Build Coastguard Worker // ASN1_STRING_set_by_NID behaves like |ASN1_mbstring_ncopy|, but determines
756*8fb009dcSAndroid Build Coastguard Worker // |mask|, |minsize|, and |maxsize| based on |nid|. When |nid| is a recognized
757*8fb009dcSAndroid Build Coastguard Worker // X.509 attribute type, it will pick a suitable ASN.1 string type and bounds.
758*8fb009dcSAndroid Build Coastguard Worker // For most attribute types, it preferentially chooses UTF8String. If |nid| is
759*8fb009dcSAndroid Build Coastguard Worker // unrecognized, it uses UTF8String by default.
760*8fb009dcSAndroid Build Coastguard Worker //
761*8fb009dcSAndroid Build Coastguard Worker // Slightly unlike |ASN1_mbstring_ncopy|, this function interprets |out| and
762*8fb009dcSAndroid Build Coastguard Worker // returns its result as follows: If |out| is NULL, it returns a newly-allocated
763*8fb009dcSAndroid Build Coastguard Worker // |ASN1_STRING| containing the result. If |out| is non-NULL and
764*8fb009dcSAndroid Build Coastguard Worker // |*out| is NULL, it additionally sets |*out| to the result. If both |out| and
765*8fb009dcSAndroid Build Coastguard Worker // |*out| are non-NULL, it instead updates the object at |*out| and returns
766*8fb009dcSAndroid Build Coastguard Worker // |*out|. In all cases, it returns NULL on error.
767*8fb009dcSAndroid Build Coastguard Worker //
768*8fb009dcSAndroid Build Coastguard Worker // This function supports the following NIDs: |NID_countryName|,
769*8fb009dcSAndroid Build Coastguard Worker // |NID_dnQualifier|, |NID_domainComponent|, |NID_friendlyName|,
770*8fb009dcSAndroid Build Coastguard Worker // |NID_givenName|, |NID_initials|, |NID_localityName|, |NID_ms_csp_name|,
771*8fb009dcSAndroid Build Coastguard Worker // |NID_name|, |NID_organizationalUnitName|, |NID_organizationName|,
772*8fb009dcSAndroid Build Coastguard Worker // |NID_pkcs9_challengePassword|, |NID_pkcs9_emailAddress|,
773*8fb009dcSAndroid Build Coastguard Worker // |NID_pkcs9_unstructuredAddress|, |NID_pkcs9_unstructuredName|,
774*8fb009dcSAndroid Build Coastguard Worker // |NID_serialNumber|, |NID_stateOrProvinceName|, and |NID_surname|. Additional
775*8fb009dcSAndroid Build Coastguard Worker // NIDs may be registered with |ASN1_STRING_set_by_NID|, but it is recommended
776*8fb009dcSAndroid Build Coastguard Worker // to call |ASN1_mbstring_ncopy| directly instead.
777*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT ASN1_STRING *ASN1_STRING_set_by_NID(ASN1_STRING **out,
778*8fb009dcSAndroid Build Coastguard Worker                                                    const unsigned char *in,
779*8fb009dcSAndroid Build Coastguard Worker                                                    ossl_ssize_t len, int inform,
780*8fb009dcSAndroid Build Coastguard Worker                                                    int nid);
781*8fb009dcSAndroid Build Coastguard Worker 
782*8fb009dcSAndroid Build Coastguard Worker // STABLE_NO_MASK causes |ASN1_STRING_TABLE_add| to allow types other than
783*8fb009dcSAndroid Build Coastguard Worker // UTF8String.
784*8fb009dcSAndroid Build Coastguard Worker #define STABLE_NO_MASK 0x02
785*8fb009dcSAndroid Build Coastguard Worker 
786*8fb009dcSAndroid Build Coastguard Worker // ASN1_STRING_TABLE_add registers the corresponding parameters with |nid|, for
787*8fb009dcSAndroid Build Coastguard Worker // use with |ASN1_STRING_set_by_NID|. It returns one on success and zero on
788*8fb009dcSAndroid Build Coastguard Worker // error. It is an error to call this function if |nid| is a built-in NID, or
789*8fb009dcSAndroid Build Coastguard Worker // was already registered by a previous call.
790*8fb009dcSAndroid Build Coastguard Worker //
791*8fb009dcSAndroid Build Coastguard Worker // WARNING: This function affects global state in the library. If two libraries
792*8fb009dcSAndroid Build Coastguard Worker // in the same address space register information for the same OID, one call
793*8fb009dcSAndroid Build Coastguard Worker // will fail. Prefer directly passing the desired parametrs to
794*8fb009dcSAndroid Build Coastguard Worker // |ASN1_mbstring_copy| or |ASN1_mbstring_ncopy| instead.
795*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT int ASN1_STRING_TABLE_add(int nid, long minsize, long maxsize,
796*8fb009dcSAndroid Build Coastguard Worker                                          unsigned long mask,
797*8fb009dcSAndroid Build Coastguard Worker                                          unsigned long flags);
798*8fb009dcSAndroid Build Coastguard Worker 
799*8fb009dcSAndroid Build Coastguard Worker 
800*8fb009dcSAndroid Build Coastguard Worker // Multi-strings.
801*8fb009dcSAndroid Build Coastguard Worker //
802*8fb009dcSAndroid Build Coastguard Worker // A multi-string, or "MSTRING", is an |ASN1_STRING| that represents a CHOICE of
803*8fb009dcSAndroid Build Coastguard Worker // several string or string-like types, such as X.509's DirectoryString. The
804*8fb009dcSAndroid Build Coastguard Worker // |ASN1_STRING|'s type field determines which type is used.
805*8fb009dcSAndroid Build Coastguard Worker //
806*8fb009dcSAndroid Build Coastguard Worker // Multi-string types are associated with a bitmask, using the |B_ASN1_*|
807*8fb009dcSAndroid Build Coastguard Worker // constants, which defines which types are valid.
808*8fb009dcSAndroid Build Coastguard Worker 
809*8fb009dcSAndroid Build Coastguard Worker // B_ASN1_DIRECTORYSTRING is a bitmask of types allowed in an X.509
810*8fb009dcSAndroid Build Coastguard Worker // DirectoryString (RFC 5280).
811*8fb009dcSAndroid Build Coastguard Worker #define B_ASN1_DIRECTORYSTRING                                        \
812*8fb009dcSAndroid Build Coastguard Worker   (B_ASN1_PRINTABLESTRING | B_ASN1_TELETEXSTRING | B_ASN1_BMPSTRING | \
813*8fb009dcSAndroid Build Coastguard Worker    B_ASN1_UNIVERSALSTRING | B_ASN1_UTF8STRING)
814*8fb009dcSAndroid Build Coastguard Worker 
815*8fb009dcSAndroid Build Coastguard Worker // DIRECTORYSTRING_new returns a newly-allocated |ASN1_STRING| with type -1, or
816*8fb009dcSAndroid Build Coastguard Worker // NULL on error. The resulting |ASN1_STRING| is not a valid X.509
817*8fb009dcSAndroid Build Coastguard Worker // DirectoryString until initialized with a value.
818*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT ASN1_STRING *DIRECTORYSTRING_new(void);
819*8fb009dcSAndroid Build Coastguard Worker 
820*8fb009dcSAndroid Build Coastguard Worker // DIRECTORYSTRING_free calls |ASN1_STRING_free|.
821*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT void DIRECTORYSTRING_free(ASN1_STRING *str);
822*8fb009dcSAndroid Build Coastguard Worker 
823*8fb009dcSAndroid Build Coastguard Worker // d2i_DIRECTORYSTRING parses up to |len| bytes from |*inp| as a DER-encoded
824*8fb009dcSAndroid Build Coastguard Worker // X.509 DirectoryString (RFC 5280), as described in |d2i_SAMPLE|.
825*8fb009dcSAndroid Build Coastguard Worker //
826*8fb009dcSAndroid Build Coastguard Worker // TODO(https://crbug.com/boringssl/354): This function currently also accepts
827*8fb009dcSAndroid Build Coastguard Worker // BER, but this will be removed in the future.
828*8fb009dcSAndroid Build Coastguard Worker //
829*8fb009dcSAndroid Build Coastguard Worker // TODO(https://crbug.com/boringssl/449): DirectoryString's non-empty string
830*8fb009dcSAndroid Build Coastguard Worker // requirement is not currently enforced.
831*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT ASN1_STRING *d2i_DIRECTORYSTRING(ASN1_STRING **out,
832*8fb009dcSAndroid Build Coastguard Worker                                                 const uint8_t **inp, long len);
833*8fb009dcSAndroid Build Coastguard Worker 
834*8fb009dcSAndroid Build Coastguard Worker // i2d_DIRECTORYSTRING marshals |in| as a DER-encoded X.509 DirectoryString (RFC
835*8fb009dcSAndroid Build Coastguard Worker // 5280), as described in |i2d_SAMPLE|.
836*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT int i2d_DIRECTORYSTRING(const ASN1_STRING *in, uint8_t **outp);
837*8fb009dcSAndroid Build Coastguard Worker 
838*8fb009dcSAndroid Build Coastguard Worker // DIRECTORYSTRING is an |ASN1_ITEM| whose ASN.1 type is X.509 DirectoryString
839*8fb009dcSAndroid Build Coastguard Worker // (RFC 5280) and C type is |ASN1_STRING*|.
840*8fb009dcSAndroid Build Coastguard Worker DECLARE_ASN1_ITEM(DIRECTORYSTRING)
841*8fb009dcSAndroid Build Coastguard Worker 
842*8fb009dcSAndroid Build Coastguard Worker // B_ASN1_DISPLAYTEXT is a bitmask of types allowed in an X.509 DisplayText (RFC
843*8fb009dcSAndroid Build Coastguard Worker // 5280).
844*8fb009dcSAndroid Build Coastguard Worker #define B_ASN1_DISPLAYTEXT                                      \
845*8fb009dcSAndroid Build Coastguard Worker   (B_ASN1_IA5STRING | B_ASN1_VISIBLESTRING | B_ASN1_BMPSTRING | \
846*8fb009dcSAndroid Build Coastguard Worker    B_ASN1_UTF8STRING)
847*8fb009dcSAndroid Build Coastguard Worker 
848*8fb009dcSAndroid Build Coastguard Worker // DISPLAYTEXT_new returns a newly-allocated |ASN1_STRING| with type -1, or NULL
849*8fb009dcSAndroid Build Coastguard Worker // on error. The resulting |ASN1_STRING| is not a valid X.509 DisplayText until
850*8fb009dcSAndroid Build Coastguard Worker // initialized with a value.
851*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT ASN1_STRING *DISPLAYTEXT_new(void);
852*8fb009dcSAndroid Build Coastguard Worker 
853*8fb009dcSAndroid Build Coastguard Worker // DISPLAYTEXT_free calls |ASN1_STRING_free|.
854*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT void DISPLAYTEXT_free(ASN1_STRING *str);
855*8fb009dcSAndroid Build Coastguard Worker 
856*8fb009dcSAndroid Build Coastguard Worker // d2i_DISPLAYTEXT parses up to |len| bytes from |*inp| as a DER-encoded X.509
857*8fb009dcSAndroid Build Coastguard Worker // DisplayText (RFC 5280), as described in |d2i_SAMPLE|.
858*8fb009dcSAndroid Build Coastguard Worker //
859*8fb009dcSAndroid Build Coastguard Worker // TODO(https://crbug.com/boringssl/354): This function currently also accepts
860*8fb009dcSAndroid Build Coastguard Worker // BER, but this will be removed in the future.
861*8fb009dcSAndroid Build Coastguard Worker //
862*8fb009dcSAndroid Build Coastguard Worker // TODO(https://crbug.com/boringssl/449): DisplayText's size limits are not
863*8fb009dcSAndroid Build Coastguard Worker // currently enforced.
864*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT ASN1_STRING *d2i_DISPLAYTEXT(ASN1_STRING **out,
865*8fb009dcSAndroid Build Coastguard Worker                                             const uint8_t **inp, long len);
866*8fb009dcSAndroid Build Coastguard Worker 
867*8fb009dcSAndroid Build Coastguard Worker // i2d_DISPLAYTEXT marshals |in| as a DER-encoded X.509 DisplayText (RFC 5280),
868*8fb009dcSAndroid Build Coastguard Worker // as described in |i2d_SAMPLE|.
869*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT int i2d_DISPLAYTEXT(const ASN1_STRING *in, uint8_t **outp);
870*8fb009dcSAndroid Build Coastguard Worker 
871*8fb009dcSAndroid Build Coastguard Worker // DISPLAYTEXT is an |ASN1_ITEM| whose ASN.1 type is X.509 DisplayText (RFC
872*8fb009dcSAndroid Build Coastguard Worker // 5280) and C type is |ASN1_STRING*|.
873*8fb009dcSAndroid Build Coastguard Worker DECLARE_ASN1_ITEM(DISPLAYTEXT)
874*8fb009dcSAndroid Build Coastguard Worker 
875*8fb009dcSAndroid Build Coastguard Worker 
876*8fb009dcSAndroid Build Coastguard Worker // Bit strings.
877*8fb009dcSAndroid Build Coastguard Worker //
878*8fb009dcSAndroid Build Coastguard Worker // An ASN.1 BIT STRING type represents a string of bits. The string may not
879*8fb009dcSAndroid Build Coastguard Worker // necessarily be a whole number of bytes. BIT STRINGs occur in ASN.1 structures
880*8fb009dcSAndroid Build Coastguard Worker // in several forms:
881*8fb009dcSAndroid Build Coastguard Worker //
882*8fb009dcSAndroid Build Coastguard Worker // Some BIT STRINGs represent a bitmask of named bits, such as the X.509 key
883*8fb009dcSAndroid Build Coastguard Worker // usage extension in RFC 5280, section 4.2.1.3. For such bit strings, DER
884*8fb009dcSAndroid Build Coastguard Worker // imposes an additional restriction that trailing zero bits are removed. Some
885*8fb009dcSAndroid Build Coastguard Worker // functions like |ASN1_BIT_STRING_set_bit| help in maintaining this.
886*8fb009dcSAndroid Build Coastguard Worker //
887*8fb009dcSAndroid Build Coastguard Worker // Other BIT STRINGs are arbitrary strings of bits used as identifiers and do
888*8fb009dcSAndroid Build Coastguard Worker // not have this constraint, such as the X.509 issuerUniqueID field.
889*8fb009dcSAndroid Build Coastguard Worker //
890*8fb009dcSAndroid Build Coastguard Worker // Finally, some structures use BIT STRINGs as a container for byte strings. For
891*8fb009dcSAndroid Build Coastguard Worker // example, the signatureValue field in X.509 and the subjectPublicKey field in
892*8fb009dcSAndroid Build Coastguard Worker // SubjectPublicKeyInfo are defined as BIT STRINGs with a value specific to the
893*8fb009dcSAndroid Build Coastguard Worker // AlgorithmIdentifier. While some unknown algorithm could choose to store
894*8fb009dcSAndroid Build Coastguard Worker // arbitrary bit strings, all supported algorithms use a byte string, with bit
895*8fb009dcSAndroid Build Coastguard Worker // order matching the DER encoding. Callers interpreting a BIT STRING as a byte
896*8fb009dcSAndroid Build Coastguard Worker // string should use |ASN1_BIT_STRING_num_bytes| instead of |ASN1_STRING_length|
897*8fb009dcSAndroid Build Coastguard Worker // and reject bit strings that are not a whole number of bytes.
898*8fb009dcSAndroid Build Coastguard Worker //
899*8fb009dcSAndroid Build Coastguard Worker // This library represents BIT STRINGs as |ASN1_STRING|s with type
900*8fb009dcSAndroid Build Coastguard Worker // |V_ASN1_BIT_STRING|. The data contains the encoded form of the BIT STRING,
901*8fb009dcSAndroid Build Coastguard Worker // including any padding bits added to round to a whole number of bytes, but
902*8fb009dcSAndroid Build Coastguard Worker // excluding the leading byte containing the number of padding bits. If
903*8fb009dcSAndroid Build Coastguard Worker // |ASN1_STRING_FLAG_BITS_LEFT| is set, the bottom three bits contains the
904*8fb009dcSAndroid Build Coastguard Worker // number of padding bits. For example, DER encodes the BIT STRING {1, 0} as
905*8fb009dcSAndroid Build Coastguard Worker // {0x06, 0x80 = 0b10_000000}. The |ASN1_STRING| representation has data of
906*8fb009dcSAndroid Build Coastguard Worker // {0x80} and flags of ASN1_STRING_FLAG_BITS_LEFT | 6. If
907*8fb009dcSAndroid Build Coastguard Worker // |ASN1_STRING_FLAG_BITS_LEFT| is unset, trailing zero bits are implicitly
908*8fb009dcSAndroid Build Coastguard Worker // removed. Callers should not rely this representation when constructing bit
909*8fb009dcSAndroid Build Coastguard Worker // strings. The padding bits in the |ASN1_STRING| data must be zero.
910*8fb009dcSAndroid Build Coastguard Worker 
911*8fb009dcSAndroid Build Coastguard Worker // ASN1_BIT_STRING_new calls |ASN1_STRING_type_new| with |V_ASN1_BIT_STRING|.
912*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT ASN1_BIT_STRING *ASN1_BIT_STRING_new(void);
913*8fb009dcSAndroid Build Coastguard Worker 
914*8fb009dcSAndroid Build Coastguard Worker // ASN1_BIT_STRING_free calls |ASN1_STRING_free|.
915*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT void ASN1_BIT_STRING_free(ASN1_BIT_STRING *str);
916*8fb009dcSAndroid Build Coastguard Worker 
917*8fb009dcSAndroid Build Coastguard Worker // d2i_ASN1_BIT_STRING parses up to |len| bytes from |*inp| as a DER-encoded
918*8fb009dcSAndroid Build Coastguard Worker // ASN.1 BIT STRING, as described in |d2i_SAMPLE|.
919*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT ASN1_BIT_STRING *d2i_ASN1_BIT_STRING(ASN1_BIT_STRING **out,
920*8fb009dcSAndroid Build Coastguard Worker                                                     const uint8_t **inp,
921*8fb009dcSAndroid Build Coastguard Worker                                                     long len);
922*8fb009dcSAndroid Build Coastguard Worker 
923*8fb009dcSAndroid Build Coastguard Worker // i2d_ASN1_BIT_STRING marshals |in| as a DER-encoded ASN.1 BIT STRING, as
924*8fb009dcSAndroid Build Coastguard Worker // described in |i2d_SAMPLE|.
925*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT int i2d_ASN1_BIT_STRING(const ASN1_BIT_STRING *in,
926*8fb009dcSAndroid Build Coastguard Worker                                        uint8_t **outp);
927*8fb009dcSAndroid Build Coastguard Worker 
928*8fb009dcSAndroid Build Coastguard Worker // c2i_ASN1_BIT_STRING decodes |len| bytes from |*inp| as the contents of a
929*8fb009dcSAndroid Build Coastguard Worker // DER-encoded BIT STRING, excluding the tag and length. It behaves like
930*8fb009dcSAndroid Build Coastguard Worker // |d2i_SAMPLE| except, on success, it always consumes all |len| bytes.
931*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT ASN1_BIT_STRING *c2i_ASN1_BIT_STRING(ASN1_BIT_STRING **out,
932*8fb009dcSAndroid Build Coastguard Worker                                                     const uint8_t **inp,
933*8fb009dcSAndroid Build Coastguard Worker                                                     long len);
934*8fb009dcSAndroid Build Coastguard Worker 
935*8fb009dcSAndroid Build Coastguard Worker // i2c_ASN1_BIT_STRING encodes |in| as the contents of a DER-encoded BIT STRING,
936*8fb009dcSAndroid Build Coastguard Worker // excluding the tag and length. If |outp| is non-NULL, it writes the result to
937*8fb009dcSAndroid Build Coastguard Worker // |*outp|, advances |*outp| just past the output, and returns the number of
938*8fb009dcSAndroid Build Coastguard Worker // bytes written. |*outp| must have space available for the result. If |outp| is
939*8fb009dcSAndroid Build Coastguard Worker // NULL, it returns the number of bytes without writing anything. On error, it
940*8fb009dcSAndroid Build Coastguard Worker // returns a value <= 0.
941*8fb009dcSAndroid Build Coastguard Worker //
942*8fb009dcSAndroid Build Coastguard Worker // Note this function differs slightly from |i2d_SAMPLE|. If |outp| is non-NULL
943*8fb009dcSAndroid Build Coastguard Worker // and |*outp| is NULL, it does not allocate a new buffer.
944*8fb009dcSAndroid Build Coastguard Worker //
945*8fb009dcSAndroid Build Coastguard Worker // TODO(davidben): This function currently returns zero on error instead of -1,
946*8fb009dcSAndroid Build Coastguard Worker // but it is also mostly infallible. I've currently documented <= 0 to suggest
947*8fb009dcSAndroid Build Coastguard Worker // callers work with both.
948*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT int i2c_ASN1_BIT_STRING(const ASN1_BIT_STRING *in,
949*8fb009dcSAndroid Build Coastguard Worker                                        uint8_t **outp);
950*8fb009dcSAndroid Build Coastguard Worker 
951*8fb009dcSAndroid Build Coastguard Worker // ASN1_BIT_STRING is an |ASN1_ITEM| with ASN.1 type BIT STRING and C type
952*8fb009dcSAndroid Build Coastguard Worker // |ASN1_BIT_STRING*|.
953*8fb009dcSAndroid Build Coastguard Worker DECLARE_ASN1_ITEM(ASN1_BIT_STRING)
954*8fb009dcSAndroid Build Coastguard Worker 
955*8fb009dcSAndroid Build Coastguard Worker // ASN1_BIT_STRING_num_bytes computes the length of |str| in bytes. If |str|'s
956*8fb009dcSAndroid Build Coastguard Worker // bit length is a multiple of 8, it sets |*out| to the byte length and returns
957*8fb009dcSAndroid Build Coastguard Worker // one. Otherwise, it returns zero.
958*8fb009dcSAndroid Build Coastguard Worker //
959*8fb009dcSAndroid Build Coastguard Worker // This function may be used with |ASN1_STRING_get0_data| to interpret |str| as
960*8fb009dcSAndroid Build Coastguard Worker // a byte string.
961*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT int ASN1_BIT_STRING_num_bytes(const ASN1_BIT_STRING *str,
962*8fb009dcSAndroid Build Coastguard Worker                                              size_t *out);
963*8fb009dcSAndroid Build Coastguard Worker 
964*8fb009dcSAndroid Build Coastguard Worker // ASN1_BIT_STRING_set calls |ASN1_STRING_set|. It leaves flags unchanged, so
965*8fb009dcSAndroid Build Coastguard Worker // the caller must set the number of unused bits.
966*8fb009dcSAndroid Build Coastguard Worker //
967*8fb009dcSAndroid Build Coastguard Worker // TODO(davidben): Maybe it should? Wrapping a byte string in a bit string is a
968*8fb009dcSAndroid Build Coastguard Worker // common use case.
969*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT int ASN1_BIT_STRING_set(ASN1_BIT_STRING *str,
970*8fb009dcSAndroid Build Coastguard Worker                                        const unsigned char *d,
971*8fb009dcSAndroid Build Coastguard Worker                                        ossl_ssize_t length);
972*8fb009dcSAndroid Build Coastguard Worker 
973*8fb009dcSAndroid Build Coastguard Worker // ASN1_BIT_STRING_set_bit sets bit |n| of |str| to one if |value| is non-zero
974*8fb009dcSAndroid Build Coastguard Worker // and zero if |value| is zero, resizing |str| as needed. It then truncates
975*8fb009dcSAndroid Build Coastguard Worker // trailing zeros in |str| to align with the DER represention for a bit string
976*8fb009dcSAndroid Build Coastguard Worker // with named bits. It returns one on success and zero on error. |n| is indexed
977*8fb009dcSAndroid Build Coastguard Worker // beginning from zero.
978*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT int ASN1_BIT_STRING_set_bit(ASN1_BIT_STRING *str, int n,
979*8fb009dcSAndroid Build Coastguard Worker                                            int value);
980*8fb009dcSAndroid Build Coastguard Worker 
981*8fb009dcSAndroid Build Coastguard Worker // ASN1_BIT_STRING_get_bit returns one if bit |n| of |a| is in bounds and set,
982*8fb009dcSAndroid Build Coastguard Worker // and zero otherwise. |n| is indexed beginning from zero.
983*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT int ASN1_BIT_STRING_get_bit(const ASN1_BIT_STRING *str, int n);
984*8fb009dcSAndroid Build Coastguard Worker 
985*8fb009dcSAndroid Build Coastguard Worker // ASN1_BIT_STRING_check returns one if |str| only contains bits that are set in
986*8fb009dcSAndroid Build Coastguard Worker // the |flags_len| bytes pointed by |flags|. Otherwise it returns zero. Bits in
987*8fb009dcSAndroid Build Coastguard Worker // |flags| are arranged according to the DER representation, so bit 0
988*8fb009dcSAndroid Build Coastguard Worker // corresponds to the MSB of |flags[0]|.
989*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT int ASN1_BIT_STRING_check(const ASN1_BIT_STRING *str,
990*8fb009dcSAndroid Build Coastguard Worker                                          const unsigned char *flags,
991*8fb009dcSAndroid Build Coastguard Worker                                          int flags_len);
992*8fb009dcSAndroid Build Coastguard Worker 
993*8fb009dcSAndroid Build Coastguard Worker 
994*8fb009dcSAndroid Build Coastguard Worker // Integers and enumerated values.
995*8fb009dcSAndroid Build Coastguard Worker //
996*8fb009dcSAndroid Build Coastguard Worker // INTEGER and ENUMERATED values are represented as |ASN1_STRING|s where the
997*8fb009dcSAndroid Build Coastguard Worker // data contains the big-endian encoding of the absolute value of the integer.
998*8fb009dcSAndroid Build Coastguard Worker // The sign bit is encoded in the type: non-negative values have a type of
999*8fb009dcSAndroid Build Coastguard Worker // |V_ASN1_INTEGER| or |V_ASN1_ENUMERATED|, while negative values have a type of
1000*8fb009dcSAndroid Build Coastguard Worker // |V_ASN1_NEG_INTEGER| or |V_ASN1_NEG_ENUMERATED|. Note this differs from DER's
1001*8fb009dcSAndroid Build Coastguard Worker // two's complement representation.
1002*8fb009dcSAndroid Build Coastguard Worker //
1003*8fb009dcSAndroid Build Coastguard Worker // The data in the |ASN1_STRING| may not have leading zeros. Note this means
1004*8fb009dcSAndroid Build Coastguard Worker // zero is represented as the empty string. Parsing functions will never return
1005*8fb009dcSAndroid Build Coastguard Worker // invalid representations. If an invalid input is constructed, the marshaling
1006*8fb009dcSAndroid Build Coastguard Worker // functions will skip leading zeros, however other functions, such as
1007*8fb009dcSAndroid Build Coastguard Worker // |ASN1_INTEGER_cmp| or |ASN1_INTEGER_get|, may not return the correct result.
1008*8fb009dcSAndroid Build Coastguard Worker 
1009*8fb009dcSAndroid Build Coastguard Worker DEFINE_STACK_OF(ASN1_INTEGER)
1010*8fb009dcSAndroid Build Coastguard Worker 
1011*8fb009dcSAndroid Build Coastguard Worker // ASN1_INTEGER_new calls |ASN1_STRING_type_new| with |V_ASN1_INTEGER|. The
1012*8fb009dcSAndroid Build Coastguard Worker // resulting object has value zero.
1013*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT ASN1_INTEGER *ASN1_INTEGER_new(void);
1014*8fb009dcSAndroid Build Coastguard Worker 
1015*8fb009dcSAndroid Build Coastguard Worker // ASN1_INTEGER_free calls |ASN1_STRING_free|.
1016*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT void ASN1_INTEGER_free(ASN1_INTEGER *str);
1017*8fb009dcSAndroid Build Coastguard Worker 
1018*8fb009dcSAndroid Build Coastguard Worker // ASN1_INTEGER_dup calls |ASN1_STRING_dup|.
1019*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT ASN1_INTEGER *ASN1_INTEGER_dup(const ASN1_INTEGER *x);
1020*8fb009dcSAndroid Build Coastguard Worker 
1021*8fb009dcSAndroid Build Coastguard Worker // d2i_ASN1_INTEGER parses up to |len| bytes from |*inp| as a DER-encoded
1022*8fb009dcSAndroid Build Coastguard Worker // ASN.1 INTEGER, as described in |d2i_SAMPLE|.
1023*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT ASN1_INTEGER *d2i_ASN1_INTEGER(ASN1_INTEGER **out,
1024*8fb009dcSAndroid Build Coastguard Worker                                               const uint8_t **inp, long len);
1025*8fb009dcSAndroid Build Coastguard Worker 
1026*8fb009dcSAndroid Build Coastguard Worker // i2d_ASN1_INTEGER marshals |in| as a DER-encoded ASN.1 INTEGER, as
1027*8fb009dcSAndroid Build Coastguard Worker // described in |i2d_SAMPLE|.
1028*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT int i2d_ASN1_INTEGER(const ASN1_INTEGER *in, uint8_t **outp);
1029*8fb009dcSAndroid Build Coastguard Worker 
1030*8fb009dcSAndroid Build Coastguard Worker // c2i_ASN1_INTEGER decodes |len| bytes from |*inp| as the contents of a
1031*8fb009dcSAndroid Build Coastguard Worker // DER-encoded INTEGER, excluding the tag and length. It behaves like
1032*8fb009dcSAndroid Build Coastguard Worker // |d2i_SAMPLE| except, on success, it always consumes all |len| bytes.
1033*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT ASN1_INTEGER *c2i_ASN1_INTEGER(ASN1_INTEGER **in,
1034*8fb009dcSAndroid Build Coastguard Worker                                               const uint8_t **outp, long len);
1035*8fb009dcSAndroid Build Coastguard Worker 
1036*8fb009dcSAndroid Build Coastguard Worker // i2c_ASN1_INTEGER encodes |in| as the contents of a DER-encoded INTEGER,
1037*8fb009dcSAndroid Build Coastguard Worker // excluding the tag and length. If |outp| is non-NULL, it writes the result to
1038*8fb009dcSAndroid Build Coastguard Worker // |*outp|, advances |*outp| just past the output, and returns the number of
1039*8fb009dcSAndroid Build Coastguard Worker // bytes written. |*outp| must have space available for the result. If |outp| is
1040*8fb009dcSAndroid Build Coastguard Worker // NULL, it returns the number of bytes without writing anything. On error, it
1041*8fb009dcSAndroid Build Coastguard Worker // returns a value <= 0.
1042*8fb009dcSAndroid Build Coastguard Worker //
1043*8fb009dcSAndroid Build Coastguard Worker // Note this function differs slightly from |i2d_SAMPLE|. If |outp| is non-NULL
1044*8fb009dcSAndroid Build Coastguard Worker // and |*outp| is NULL, it does not allocate a new buffer.
1045*8fb009dcSAndroid Build Coastguard Worker //
1046*8fb009dcSAndroid Build Coastguard Worker // TODO(davidben): This function currently returns zero on error instead of -1,
1047*8fb009dcSAndroid Build Coastguard Worker // but it is also mostly infallible. I've currently documented <= 0 to suggest
1048*8fb009dcSAndroid Build Coastguard Worker // callers work with both.
1049*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT int i2c_ASN1_INTEGER(const ASN1_INTEGER *in, uint8_t **outp);
1050*8fb009dcSAndroid Build Coastguard Worker 
1051*8fb009dcSAndroid Build Coastguard Worker // ASN1_INTEGER is an |ASN1_ITEM| with ASN.1 type INTEGER and C type
1052*8fb009dcSAndroid Build Coastguard Worker // |ASN1_INTEGER*|.
1053*8fb009dcSAndroid Build Coastguard Worker DECLARE_ASN1_ITEM(ASN1_INTEGER)
1054*8fb009dcSAndroid Build Coastguard Worker 
1055*8fb009dcSAndroid Build Coastguard Worker // ASN1_INTEGER_set_uint64 sets |a| to an INTEGER with value |v|. It returns one
1056*8fb009dcSAndroid Build Coastguard Worker // on success and zero on error.
1057*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT int ASN1_INTEGER_set_uint64(ASN1_INTEGER *out, uint64_t v);
1058*8fb009dcSAndroid Build Coastguard Worker 
1059*8fb009dcSAndroid Build Coastguard Worker // ASN1_INTEGER_set_int64 sets |a| to an INTEGER with value |v|. It returns one
1060*8fb009dcSAndroid Build Coastguard Worker // on success and zero on error.
1061*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT int ASN1_INTEGER_set_int64(ASN1_INTEGER *out, int64_t v);
1062*8fb009dcSAndroid Build Coastguard Worker 
1063*8fb009dcSAndroid Build Coastguard Worker // ASN1_INTEGER_get_uint64 converts |a| to a |uint64_t|. On success, it returns
1064*8fb009dcSAndroid Build Coastguard Worker // one and sets |*out| to the result. If |a| did not fit or has the wrong type,
1065*8fb009dcSAndroid Build Coastguard Worker // it returns zero.
1066*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT int ASN1_INTEGER_get_uint64(uint64_t *out,
1067*8fb009dcSAndroid Build Coastguard Worker                                            const ASN1_INTEGER *a);
1068*8fb009dcSAndroid Build Coastguard Worker 
1069*8fb009dcSAndroid Build Coastguard Worker // ASN1_INTEGER_get_int64 converts |a| to a |int64_t|. On success, it returns
1070*8fb009dcSAndroid Build Coastguard Worker // one and sets |*out| to the result. If |a| did not fit or has the wrong type,
1071*8fb009dcSAndroid Build Coastguard Worker // it returns zero.
1072*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT int ASN1_INTEGER_get_int64(int64_t *out, const ASN1_INTEGER *a);
1073*8fb009dcSAndroid Build Coastguard Worker 
1074*8fb009dcSAndroid Build Coastguard Worker // BN_to_ASN1_INTEGER sets |ai| to an INTEGER with value |bn| and returns |ai|
1075*8fb009dcSAndroid Build Coastguard Worker // on success or NULL or error. If |ai| is NULL, it returns a newly-allocated
1076*8fb009dcSAndroid Build Coastguard Worker // |ASN1_INTEGER| on success instead, which the caller must release with
1077*8fb009dcSAndroid Build Coastguard Worker // |ASN1_INTEGER_free|.
1078*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT ASN1_INTEGER *BN_to_ASN1_INTEGER(const BIGNUM *bn,
1079*8fb009dcSAndroid Build Coastguard Worker                                                 ASN1_INTEGER *ai);
1080*8fb009dcSAndroid Build Coastguard Worker 
1081*8fb009dcSAndroid Build Coastguard Worker // ASN1_INTEGER_to_BN sets |bn| to the value of |ai| and returns |bn| on success
1082*8fb009dcSAndroid Build Coastguard Worker // or NULL or error. If |bn| is NULL, it returns a newly-allocated |BIGNUM| on
1083*8fb009dcSAndroid Build Coastguard Worker // success instead, which the caller must release with |BN_free|.
1084*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT BIGNUM *ASN1_INTEGER_to_BN(const ASN1_INTEGER *ai, BIGNUM *bn);
1085*8fb009dcSAndroid Build Coastguard Worker 
1086*8fb009dcSAndroid Build Coastguard Worker // ASN1_INTEGER_cmp compares the values of |x| and |y|. It returns an integer
1087*8fb009dcSAndroid Build Coastguard Worker // equal to, less than, or greater than zero if |x| is equal to, less than, or
1088*8fb009dcSAndroid Build Coastguard Worker // greater than |y|, respectively.
1089*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT int ASN1_INTEGER_cmp(const ASN1_INTEGER *x,
1090*8fb009dcSAndroid Build Coastguard Worker                                     const ASN1_INTEGER *y);
1091*8fb009dcSAndroid Build Coastguard Worker 
1092*8fb009dcSAndroid Build Coastguard Worker // ASN1_ENUMERATED_new calls |ASN1_STRING_type_new| with |V_ASN1_ENUMERATED|.
1093*8fb009dcSAndroid Build Coastguard Worker // The resulting object has value zero.
1094*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT ASN1_ENUMERATED *ASN1_ENUMERATED_new(void);
1095*8fb009dcSAndroid Build Coastguard Worker 
1096*8fb009dcSAndroid Build Coastguard Worker // ASN1_ENUMERATED_free calls |ASN1_STRING_free|.
1097*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT void ASN1_ENUMERATED_free(ASN1_ENUMERATED *str);
1098*8fb009dcSAndroid Build Coastguard Worker 
1099*8fb009dcSAndroid Build Coastguard Worker // d2i_ASN1_ENUMERATED parses up to |len| bytes from |*inp| as a DER-encoded
1100*8fb009dcSAndroid Build Coastguard Worker // ASN.1 ENUMERATED, as described in |d2i_SAMPLE|.
1101*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT ASN1_ENUMERATED *d2i_ASN1_ENUMERATED(ASN1_ENUMERATED **out,
1102*8fb009dcSAndroid Build Coastguard Worker                                                     const uint8_t **inp,
1103*8fb009dcSAndroid Build Coastguard Worker                                                     long len);
1104*8fb009dcSAndroid Build Coastguard Worker 
1105*8fb009dcSAndroid Build Coastguard Worker // i2d_ASN1_ENUMERATED marshals |in| as a DER-encoded ASN.1 ENUMERATED, as
1106*8fb009dcSAndroid Build Coastguard Worker // described in |i2d_SAMPLE|.
1107*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT int i2d_ASN1_ENUMERATED(const ASN1_ENUMERATED *in,
1108*8fb009dcSAndroid Build Coastguard Worker                                        uint8_t **outp);
1109*8fb009dcSAndroid Build Coastguard Worker 
1110*8fb009dcSAndroid Build Coastguard Worker // ASN1_ENUMERATED is an |ASN1_ITEM| with ASN.1 type ENUMERATED and C type
1111*8fb009dcSAndroid Build Coastguard Worker // |ASN1_ENUMERATED*|.
1112*8fb009dcSAndroid Build Coastguard Worker DECLARE_ASN1_ITEM(ASN1_ENUMERATED)
1113*8fb009dcSAndroid Build Coastguard Worker 
1114*8fb009dcSAndroid Build Coastguard Worker // ASN1_ENUMERATED_set_uint64 sets |a| to an ENUMERATED with value |v|. It
1115*8fb009dcSAndroid Build Coastguard Worker // returns one on success and zero on error.
1116*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT int ASN1_ENUMERATED_set_uint64(ASN1_ENUMERATED *out, uint64_t v);
1117*8fb009dcSAndroid Build Coastguard Worker 
1118*8fb009dcSAndroid Build Coastguard Worker // ASN1_ENUMERATED_set_int64 sets |a| to an ENUMERATED with value |v|. It
1119*8fb009dcSAndroid Build Coastguard Worker // returns one on success and zero on error.
1120*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT int ASN1_ENUMERATED_set_int64(ASN1_ENUMERATED *out, int64_t v);
1121*8fb009dcSAndroid Build Coastguard Worker 
1122*8fb009dcSAndroid Build Coastguard Worker // ASN1_ENUMERATED_get_uint64 converts |a| to a |uint64_t|. On success, it
1123*8fb009dcSAndroid Build Coastguard Worker // returns one and sets |*out| to the result. If |a| did not fit or has the
1124*8fb009dcSAndroid Build Coastguard Worker // wrong type, it returns zero.
1125*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT int ASN1_ENUMERATED_get_uint64(uint64_t *out,
1126*8fb009dcSAndroid Build Coastguard Worker                                               const ASN1_ENUMERATED *a);
1127*8fb009dcSAndroid Build Coastguard Worker 
1128*8fb009dcSAndroid Build Coastguard Worker // ASN1_ENUMERATED_get_int64 converts |a| to a |int64_t|. On success, it
1129*8fb009dcSAndroid Build Coastguard Worker // returns one and sets |*out| to the result. If |a| did not fit or has the
1130*8fb009dcSAndroid Build Coastguard Worker // wrong type, it returns zero.
1131*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT int ASN1_ENUMERATED_get_int64(int64_t *out,
1132*8fb009dcSAndroid Build Coastguard Worker                                              const ASN1_ENUMERATED *a);
1133*8fb009dcSAndroid Build Coastguard Worker 
1134*8fb009dcSAndroid Build Coastguard Worker // BN_to_ASN1_ENUMERATED sets |ai| to an ENUMERATED with value |bn| and returns
1135*8fb009dcSAndroid Build Coastguard Worker // |ai| on success or NULL or error. If |ai| is NULL, it returns a
1136*8fb009dcSAndroid Build Coastguard Worker // newly-allocated |ASN1_ENUMERATED| on success instead, which the caller must
1137*8fb009dcSAndroid Build Coastguard Worker // release with |ASN1_ENUMERATED_free|.
1138*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT ASN1_ENUMERATED *BN_to_ASN1_ENUMERATED(const BIGNUM *bn,
1139*8fb009dcSAndroid Build Coastguard Worker                                                       ASN1_ENUMERATED *ai);
1140*8fb009dcSAndroid Build Coastguard Worker 
1141*8fb009dcSAndroid Build Coastguard Worker // ASN1_ENUMERATED_to_BN sets |bn| to the value of |ai| and returns |bn| on
1142*8fb009dcSAndroid Build Coastguard Worker // success or NULL or error. If |bn| is NULL, it returns a newly-allocated
1143*8fb009dcSAndroid Build Coastguard Worker // |BIGNUM| on success instead, which the caller must release with |BN_free|.
1144*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT BIGNUM *ASN1_ENUMERATED_to_BN(const ASN1_ENUMERATED *ai,
1145*8fb009dcSAndroid Build Coastguard Worker                                              BIGNUM *bn);
1146*8fb009dcSAndroid Build Coastguard Worker 
1147*8fb009dcSAndroid Build Coastguard Worker 
1148*8fb009dcSAndroid Build Coastguard Worker // Time.
1149*8fb009dcSAndroid Build Coastguard Worker //
1150*8fb009dcSAndroid Build Coastguard Worker // GeneralizedTime and UTCTime values are represented as |ASN1_STRING|s. The
1151*8fb009dcSAndroid Build Coastguard Worker // type field is |V_ASN1_GENERALIZEDTIME| or |V_ASN1_UTCTIME|, respectively. The
1152*8fb009dcSAndroid Build Coastguard Worker // data field contains the DER encoding of the value. For example, the UNIX
1153*8fb009dcSAndroid Build Coastguard Worker // epoch would be "19700101000000Z" for a GeneralizedTime and "700101000000Z"
1154*8fb009dcSAndroid Build Coastguard Worker // for a UTCTime.
1155*8fb009dcSAndroid Build Coastguard Worker //
1156*8fb009dcSAndroid Build Coastguard Worker // ASN.1 does not define how to interpret UTCTime's two-digit year. RFC 5280
1157*8fb009dcSAndroid Build Coastguard Worker // defines it as a range from 1950 to 2049 for X.509. The library uses the
1158*8fb009dcSAndroid Build Coastguard Worker // RFC 5280 interpretation. It does not currently enforce the restrictions from
1159*8fb009dcSAndroid Build Coastguard Worker // BER, and the additional restrictions from RFC 5280, but future versions may.
1160*8fb009dcSAndroid Build Coastguard Worker // Callers should not rely on fractional seconds and non-UTC time zones.
1161*8fb009dcSAndroid Build Coastguard Worker //
1162*8fb009dcSAndroid Build Coastguard Worker // The |ASN1_TIME| typedef is a multi-string representing the X.509 Time type,
1163*8fb009dcSAndroid Build Coastguard Worker // which is a CHOICE of GeneralizedTime and UTCTime, using UTCTime when the
1164*8fb009dcSAndroid Build Coastguard Worker // value is in range.
1165*8fb009dcSAndroid Build Coastguard Worker 
1166*8fb009dcSAndroid Build Coastguard Worker // ASN1_UTCTIME_new calls |ASN1_STRING_type_new| with |V_ASN1_UTCTIME|. The
1167*8fb009dcSAndroid Build Coastguard Worker // resulting object contains empty contents and must be initialized to be a
1168*8fb009dcSAndroid Build Coastguard Worker // valid UTCTime.
1169*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT ASN1_UTCTIME *ASN1_UTCTIME_new(void);
1170*8fb009dcSAndroid Build Coastguard Worker 
1171*8fb009dcSAndroid Build Coastguard Worker // ASN1_UTCTIME_free calls |ASN1_STRING_free|.
1172*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT void ASN1_UTCTIME_free(ASN1_UTCTIME *str);
1173*8fb009dcSAndroid Build Coastguard Worker 
1174*8fb009dcSAndroid Build Coastguard Worker // d2i_ASN1_UTCTIME parses up to |len| bytes from |*inp| as a DER-encoded
1175*8fb009dcSAndroid Build Coastguard Worker // ASN.1 UTCTime, as described in |d2i_SAMPLE|.
1176*8fb009dcSAndroid Build Coastguard Worker //
1177*8fb009dcSAndroid Build Coastguard Worker // TODO(https://crbug.com/boringssl/354): This function currently also accepts
1178*8fb009dcSAndroid Build Coastguard Worker // BER, but this will be removed in the future.
1179*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT ASN1_UTCTIME *d2i_ASN1_UTCTIME(ASN1_UTCTIME **out,
1180*8fb009dcSAndroid Build Coastguard Worker                                               const uint8_t **inp, long len);
1181*8fb009dcSAndroid Build Coastguard Worker 
1182*8fb009dcSAndroid Build Coastguard Worker // i2d_ASN1_UTCTIME marshals |in| as a DER-encoded ASN.1 UTCTime, as
1183*8fb009dcSAndroid Build Coastguard Worker // described in |i2d_SAMPLE|.
1184*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT int i2d_ASN1_UTCTIME(const ASN1_UTCTIME *in, uint8_t **outp);
1185*8fb009dcSAndroid Build Coastguard Worker 
1186*8fb009dcSAndroid Build Coastguard Worker // ASN1_UTCTIME is an |ASN1_ITEM| with ASN.1 type UTCTime and C type
1187*8fb009dcSAndroid Build Coastguard Worker // |ASN1_UTCTIME*|.
1188*8fb009dcSAndroid Build Coastguard Worker DECLARE_ASN1_ITEM(ASN1_UTCTIME)
1189*8fb009dcSAndroid Build Coastguard Worker 
1190*8fb009dcSAndroid Build Coastguard Worker // ASN1_UTCTIME_check returns one if |a| is a valid UTCTime and zero otherwise.
1191*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT int ASN1_UTCTIME_check(const ASN1_UTCTIME *a);
1192*8fb009dcSAndroid Build Coastguard Worker 
1193*8fb009dcSAndroid Build Coastguard Worker // ASN1_UTCTIME_set represents |posix_time| as a UTCTime and writes the result
1194*8fb009dcSAndroid Build Coastguard Worker // to |s|. It returns |s| on success and NULL on error. If |s| is NULL, it
1195*8fb009dcSAndroid Build Coastguard Worker // returns a newly-allocated |ASN1_UTCTIME| instead.
1196*8fb009dcSAndroid Build Coastguard Worker //
1197*8fb009dcSAndroid Build Coastguard Worker // Note this function may fail if the time is out of range for UTCTime.
1198*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT ASN1_UTCTIME *ASN1_UTCTIME_set(ASN1_UTCTIME *s,
1199*8fb009dcSAndroid Build Coastguard Worker                                               int64_t posix_time);
1200*8fb009dcSAndroid Build Coastguard Worker 
1201*8fb009dcSAndroid Build Coastguard Worker // ASN1_UTCTIME_adj adds |offset_day| days and |offset_sec| seconds to
1202*8fb009dcSAndroid Build Coastguard Worker // |posix_time| and writes the result to |s| as a UTCTime. It returns |s| on
1203*8fb009dcSAndroid Build Coastguard Worker // success and NULL on error. If |s| is NULL, it returns a newly-allocated
1204*8fb009dcSAndroid Build Coastguard Worker // |ASN1_UTCTIME| instead.
1205*8fb009dcSAndroid Build Coastguard Worker //
1206*8fb009dcSAndroid Build Coastguard Worker // Note this function may fail if the time overflows or is out of range for
1207*8fb009dcSAndroid Build Coastguard Worker // UTCTime.
1208*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT ASN1_UTCTIME *ASN1_UTCTIME_adj(ASN1_UTCTIME *s,
1209*8fb009dcSAndroid Build Coastguard Worker                                               int64_t posix_time,
1210*8fb009dcSAndroid Build Coastguard Worker                                               int offset_day, long offset_sec);
1211*8fb009dcSAndroid Build Coastguard Worker 
1212*8fb009dcSAndroid Build Coastguard Worker // ASN1_UTCTIME_set_string sets |s| to a UTCTime whose contents are a copy of
1213*8fb009dcSAndroid Build Coastguard Worker // |str|. It returns one on success and zero on error or if |str| is not a valid
1214*8fb009dcSAndroid Build Coastguard Worker // UTCTime.
1215*8fb009dcSAndroid Build Coastguard Worker //
1216*8fb009dcSAndroid Build Coastguard Worker // If |s| is NULL, this function validates |str| without copying it.
1217*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT int ASN1_UTCTIME_set_string(ASN1_UTCTIME *s, const char *str);
1218*8fb009dcSAndroid Build Coastguard Worker 
1219*8fb009dcSAndroid Build Coastguard Worker // ASN1_UTCTIME_cmp_time_t compares |s| to |t|. It returns -1 if |s| < |t|, 0 if
1220*8fb009dcSAndroid Build Coastguard Worker // they are equal, 1 if |s| > |t|, and -2 on error.
1221*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT int ASN1_UTCTIME_cmp_time_t(const ASN1_UTCTIME *s, time_t t);
1222*8fb009dcSAndroid Build Coastguard Worker 
1223*8fb009dcSAndroid Build Coastguard Worker // ASN1_GENERALIZEDTIME_new calls |ASN1_STRING_type_new| with
1224*8fb009dcSAndroid Build Coastguard Worker // |V_ASN1_GENERALIZEDTIME|. The resulting object contains empty contents and
1225*8fb009dcSAndroid Build Coastguard Worker // must be initialized to be a valid GeneralizedTime.
1226*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT ASN1_GENERALIZEDTIME *ASN1_GENERALIZEDTIME_new(void);
1227*8fb009dcSAndroid Build Coastguard Worker 
1228*8fb009dcSAndroid Build Coastguard Worker // ASN1_GENERALIZEDTIME_free calls |ASN1_STRING_free|.
1229*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT void ASN1_GENERALIZEDTIME_free(ASN1_GENERALIZEDTIME *str);
1230*8fb009dcSAndroid Build Coastguard Worker 
1231*8fb009dcSAndroid Build Coastguard Worker // d2i_ASN1_GENERALIZEDTIME parses up to |len| bytes from |*inp| as a
1232*8fb009dcSAndroid Build Coastguard Worker // DER-encoded ASN.1 GeneralizedTime, as described in |d2i_SAMPLE|.
1233*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT ASN1_GENERALIZEDTIME *d2i_ASN1_GENERALIZEDTIME(
1234*8fb009dcSAndroid Build Coastguard Worker     ASN1_GENERALIZEDTIME **out, const uint8_t **inp, long len);
1235*8fb009dcSAndroid Build Coastguard Worker 
1236*8fb009dcSAndroid Build Coastguard Worker // i2d_ASN1_GENERALIZEDTIME marshals |in| as a DER-encoded ASN.1
1237*8fb009dcSAndroid Build Coastguard Worker // GeneralizedTime, as described in |i2d_SAMPLE|.
1238*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT int i2d_ASN1_GENERALIZEDTIME(const ASN1_GENERALIZEDTIME *in,
1239*8fb009dcSAndroid Build Coastguard Worker                                             uint8_t **outp);
1240*8fb009dcSAndroid Build Coastguard Worker 
1241*8fb009dcSAndroid Build Coastguard Worker // ASN1_GENERALIZEDTIME is an |ASN1_ITEM| with ASN.1 type GeneralizedTime and C
1242*8fb009dcSAndroid Build Coastguard Worker // type |ASN1_GENERALIZEDTIME*|.
1243*8fb009dcSAndroid Build Coastguard Worker DECLARE_ASN1_ITEM(ASN1_GENERALIZEDTIME)
1244*8fb009dcSAndroid Build Coastguard Worker 
1245*8fb009dcSAndroid Build Coastguard Worker // ASN1_GENERALIZEDTIME_check returns one if |a| is a valid GeneralizedTime and
1246*8fb009dcSAndroid Build Coastguard Worker // zero otherwise.
1247*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT int ASN1_GENERALIZEDTIME_check(const ASN1_GENERALIZEDTIME *a);
1248*8fb009dcSAndroid Build Coastguard Worker 
1249*8fb009dcSAndroid Build Coastguard Worker // ASN1_GENERALIZEDTIME_set represents |posix_time| as a GeneralizedTime and
1250*8fb009dcSAndroid Build Coastguard Worker // writes the result to |s|. It returns |s| on success and NULL on error. If |s|
1251*8fb009dcSAndroid Build Coastguard Worker // is NULL, it returns a newly-allocated |ASN1_GENERALIZEDTIME| instead.
1252*8fb009dcSAndroid Build Coastguard Worker //
1253*8fb009dcSAndroid Build Coastguard Worker // Note this function may fail if the time is out of range for GeneralizedTime.
1254*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT ASN1_GENERALIZEDTIME *ASN1_GENERALIZEDTIME_set(
1255*8fb009dcSAndroid Build Coastguard Worker     ASN1_GENERALIZEDTIME *s, int64_t posix_time);
1256*8fb009dcSAndroid Build Coastguard Worker 
1257*8fb009dcSAndroid Build Coastguard Worker // ASN1_GENERALIZEDTIME_adj adds |offset_day| days and |offset_sec| seconds to
1258*8fb009dcSAndroid Build Coastguard Worker // |posix_time| and writes the result to |s| as a GeneralizedTime. It returns
1259*8fb009dcSAndroid Build Coastguard Worker // |s| on success and NULL on error. If |s| is NULL, it returns a
1260*8fb009dcSAndroid Build Coastguard Worker // newly-allocated |ASN1_GENERALIZEDTIME| instead.
1261*8fb009dcSAndroid Build Coastguard Worker //
1262*8fb009dcSAndroid Build Coastguard Worker // Note this function may fail if the time overflows or is out of range for
1263*8fb009dcSAndroid Build Coastguard Worker // GeneralizedTime.
1264*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT ASN1_GENERALIZEDTIME *ASN1_GENERALIZEDTIME_adj(
1265*8fb009dcSAndroid Build Coastguard Worker     ASN1_GENERALIZEDTIME *s, int64_t posix_time, int offset_day,
1266*8fb009dcSAndroid Build Coastguard Worker     long offset_sec);
1267*8fb009dcSAndroid Build Coastguard Worker 
1268*8fb009dcSAndroid Build Coastguard Worker // ASN1_GENERALIZEDTIME_set_string sets |s| to a GeneralizedTime whose contents
1269*8fb009dcSAndroid Build Coastguard Worker // are a copy of |str|. It returns one on success and zero on error or if |str|
1270*8fb009dcSAndroid Build Coastguard Worker // is not a valid GeneralizedTime.
1271*8fb009dcSAndroid Build Coastguard Worker //
1272*8fb009dcSAndroid Build Coastguard Worker // If |s| is NULL, this function validates |str| without copying it.
1273*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT int ASN1_GENERALIZEDTIME_set_string(ASN1_GENERALIZEDTIME *s,
1274*8fb009dcSAndroid Build Coastguard Worker                                                    const char *str);
1275*8fb009dcSAndroid Build Coastguard Worker 
1276*8fb009dcSAndroid Build Coastguard Worker // B_ASN1_TIME is a bitmask of types allowed in an X.509 Time.
1277*8fb009dcSAndroid Build Coastguard Worker #define B_ASN1_TIME (B_ASN1_UTCTIME | B_ASN1_GENERALIZEDTIME)
1278*8fb009dcSAndroid Build Coastguard Worker 
1279*8fb009dcSAndroid Build Coastguard Worker // ASN1_TIME_new returns a newly-allocated |ASN1_TIME| with type -1, or NULL on
1280*8fb009dcSAndroid Build Coastguard Worker // error. The resulting |ASN1_TIME| is not a valid X.509 Time until initialized
1281*8fb009dcSAndroid Build Coastguard Worker // with a value.
1282*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT ASN1_TIME *ASN1_TIME_new(void);
1283*8fb009dcSAndroid Build Coastguard Worker 
1284*8fb009dcSAndroid Build Coastguard Worker // ASN1_TIME_free releases memory associated with |str|.
1285*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT void ASN1_TIME_free(ASN1_TIME *str);
1286*8fb009dcSAndroid Build Coastguard Worker 
1287*8fb009dcSAndroid Build Coastguard Worker // d2i_ASN1_TIME parses up to |len| bytes from |*inp| as a DER-encoded X.509
1288*8fb009dcSAndroid Build Coastguard Worker // Time (RFC 5280), as described in |d2i_SAMPLE|.
1289*8fb009dcSAndroid Build Coastguard Worker //
1290*8fb009dcSAndroid Build Coastguard Worker // TODO(https://crbug.com/boringssl/354): This function currently also accepts
1291*8fb009dcSAndroid Build Coastguard Worker // BER, but this will be removed in the future.
1292*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT ASN1_TIME *d2i_ASN1_TIME(ASN1_TIME **out, const uint8_t **inp,
1293*8fb009dcSAndroid Build Coastguard Worker                                         long len);
1294*8fb009dcSAndroid Build Coastguard Worker 
1295*8fb009dcSAndroid Build Coastguard Worker // i2d_ASN1_TIME marshals |in| as a DER-encoded X.509 Time (RFC 5280), as
1296*8fb009dcSAndroid Build Coastguard Worker // described in |i2d_SAMPLE|.
1297*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT int i2d_ASN1_TIME(const ASN1_TIME *in, uint8_t **outp);
1298*8fb009dcSAndroid Build Coastguard Worker 
1299*8fb009dcSAndroid Build Coastguard Worker // ASN1_TIME is an |ASN1_ITEM| whose ASN.1 type is X.509 Time (RFC 5280) and C
1300*8fb009dcSAndroid Build Coastguard Worker // type is |ASN1_TIME*|.
1301*8fb009dcSAndroid Build Coastguard Worker DECLARE_ASN1_ITEM(ASN1_TIME)
1302*8fb009dcSAndroid Build Coastguard Worker 
1303*8fb009dcSAndroid Build Coastguard Worker // ASN1_TIME_diff computes |to| - |from|. On success, it sets |*out_days| to the
1304*8fb009dcSAndroid Build Coastguard Worker // difference in days, rounded towards zero, sets |*out_seconds| to the
1305*8fb009dcSAndroid Build Coastguard Worker // remainder, and returns one. On error, it returns zero.
1306*8fb009dcSAndroid Build Coastguard Worker //
1307*8fb009dcSAndroid Build Coastguard Worker // If |from| is before |to|, both outputs will be <= 0, with at least one
1308*8fb009dcSAndroid Build Coastguard Worker // negative. If |from| is after |to|, both will be >= 0, with at least one
1309*8fb009dcSAndroid Build Coastguard Worker // positive. If they are equal, ignoring fractional seconds, both will be zero.
1310*8fb009dcSAndroid Build Coastguard Worker //
1311*8fb009dcSAndroid Build Coastguard Worker // Note this function may fail on overflow, or if |from| or |to| cannot be
1312*8fb009dcSAndroid Build Coastguard Worker // decoded.
1313*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT int ASN1_TIME_diff(int *out_days, int *out_seconds,
1314*8fb009dcSAndroid Build Coastguard Worker                                   const ASN1_TIME *from, const ASN1_TIME *to);
1315*8fb009dcSAndroid Build Coastguard Worker 
1316*8fb009dcSAndroid Build Coastguard Worker // ASN1_TIME_set_posix represents |posix_time| as a GeneralizedTime or UTCTime
1317*8fb009dcSAndroid Build Coastguard Worker // and writes the result to |s|. As in RFC 5280, section 4.1.2.5, it uses
1318*8fb009dcSAndroid Build Coastguard Worker // UTCTime when the time fits and GeneralizedTime otherwise. It returns |s| on
1319*8fb009dcSAndroid Build Coastguard Worker // success and NULL on error. If |s| is NULL, it returns a newly-allocated
1320*8fb009dcSAndroid Build Coastguard Worker // |ASN1_TIME| instead.
1321*8fb009dcSAndroid Build Coastguard Worker //
1322*8fb009dcSAndroid Build Coastguard Worker // Note this function may fail if the time is out of range for GeneralizedTime.
1323*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT ASN1_TIME *ASN1_TIME_set_posix(ASN1_TIME *s, int64_t posix_time);
1324*8fb009dcSAndroid Build Coastguard Worker 
1325*8fb009dcSAndroid Build Coastguard Worker // ASN1_TIME_set is exactly the same as |ASN1_TIME_set_posix| but with a
1326*8fb009dcSAndroid Build Coastguard Worker // time_t as input for compatibility.
1327*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT ASN1_TIME *ASN1_TIME_set(ASN1_TIME *s, time_t time);
1328*8fb009dcSAndroid Build Coastguard Worker 
1329*8fb009dcSAndroid Build Coastguard Worker // ASN1_TIME_adj adds |offset_day| days and |offset_sec| seconds to
1330*8fb009dcSAndroid Build Coastguard Worker // |posix_time| and writes the result to |s|. As in RFC 5280, section 4.1.2.5,
1331*8fb009dcSAndroid Build Coastguard Worker // it uses UTCTime when the time fits and GeneralizedTime otherwise. It returns
1332*8fb009dcSAndroid Build Coastguard Worker // |s| on success and NULL on error. If |s| is NULL, it returns a
1333*8fb009dcSAndroid Build Coastguard Worker // newly-allocated |ASN1_GENERALIZEDTIME| instead.
1334*8fb009dcSAndroid Build Coastguard Worker //
1335*8fb009dcSAndroid Build Coastguard Worker // Note this function may fail if the time overflows or is out of range for
1336*8fb009dcSAndroid Build Coastguard Worker // GeneralizedTime.
1337*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT ASN1_TIME *ASN1_TIME_adj(ASN1_TIME *s, int64_t posix_time,
1338*8fb009dcSAndroid Build Coastguard Worker                                         int offset_day, long offset_sec);
1339*8fb009dcSAndroid Build Coastguard Worker 
1340*8fb009dcSAndroid Build Coastguard Worker // ASN1_TIME_check returns one if |t| is a valid UTCTime or GeneralizedTime, and
1341*8fb009dcSAndroid Build Coastguard Worker // zero otherwise. |t|'s type determines which check is performed. This
1342*8fb009dcSAndroid Build Coastguard Worker // function does not enforce that UTCTime was used when possible.
1343*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT int ASN1_TIME_check(const ASN1_TIME *t);
1344*8fb009dcSAndroid Build Coastguard Worker 
1345*8fb009dcSAndroid Build Coastguard Worker // ASN1_TIME_to_generalizedtime converts |t| to a GeneralizedTime. If |out| is
1346*8fb009dcSAndroid Build Coastguard Worker // NULL, it returns a newly-allocated |ASN1_GENERALIZEDTIME| on success, or NULL
1347*8fb009dcSAndroid Build Coastguard Worker // on error. If |out| is non-NULL and |*out| is NULL, it additionally sets
1348*8fb009dcSAndroid Build Coastguard Worker // |*out| to the result. If |out| and |*out| are non-NULL, it instead updates
1349*8fb009dcSAndroid Build Coastguard Worker // the object pointed by |*out| and returns |*out| on success or NULL on error.
1350*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT ASN1_GENERALIZEDTIME *ASN1_TIME_to_generalizedtime(
1351*8fb009dcSAndroid Build Coastguard Worker     const ASN1_TIME *t, ASN1_GENERALIZEDTIME **out);
1352*8fb009dcSAndroid Build Coastguard Worker 
1353*8fb009dcSAndroid Build Coastguard Worker // ASN1_TIME_set_string behaves like |ASN1_UTCTIME_set_string| if |str| is a
1354*8fb009dcSAndroid Build Coastguard Worker // valid UTCTime, and |ASN1_GENERALIZEDTIME_set_string| if |str| is a valid
1355*8fb009dcSAndroid Build Coastguard Worker // GeneralizedTime. If |str| is neither, it returns zero.
1356*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT int ASN1_TIME_set_string(ASN1_TIME *s, const char *str);
1357*8fb009dcSAndroid Build Coastguard Worker 
1358*8fb009dcSAndroid Build Coastguard Worker // ASN1_TIME_set_string_X509 behaves like |ASN1_TIME_set_string| except it
1359*8fb009dcSAndroid Build Coastguard Worker // additionally converts GeneralizedTime to UTCTime if it is in the range where
1360*8fb009dcSAndroid Build Coastguard Worker // UTCTime is used. See RFC 5280, section 4.1.2.5.
1361*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT int ASN1_TIME_set_string_X509(ASN1_TIME *s, const char *str);
1362*8fb009dcSAndroid Build Coastguard Worker 
1363*8fb009dcSAndroid Build Coastguard Worker // ASN1_TIME_to_time_t converts |t| to a time_t value in |out|. On
1364*8fb009dcSAndroid Build Coastguard Worker // success, one is returned. On failure zero is returned. This function
1365*8fb009dcSAndroid Build Coastguard Worker // will fail if the time can not be represented in a time_t.
1366*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT int ASN1_TIME_to_time_t(const ASN1_TIME *t, time_t *out);
1367*8fb009dcSAndroid Build Coastguard Worker 
1368*8fb009dcSAndroid Build Coastguard Worker // ASN1_TIME_to_posix converts |t| to a POSIX time value in |out|. On
1369*8fb009dcSAndroid Build Coastguard Worker // success, one is returned. On failure zero is returned.
1370*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT int ASN1_TIME_to_posix(const ASN1_TIME *t, int64_t *out);
1371*8fb009dcSAndroid Build Coastguard Worker 
1372*8fb009dcSAndroid Build Coastguard Worker // TODO(davidben): Expand and document function prototypes generated in macros.
1373*8fb009dcSAndroid Build Coastguard Worker 
1374*8fb009dcSAndroid Build Coastguard Worker 
1375*8fb009dcSAndroid Build Coastguard Worker // NULL values.
1376*8fb009dcSAndroid Build Coastguard Worker //
1377*8fb009dcSAndroid Build Coastguard Worker // This library represents the ASN.1 NULL value by a non-NULL pointer to the
1378*8fb009dcSAndroid Build Coastguard Worker // opaque type |ASN1_NULL|. An omitted OPTIONAL ASN.1 NULL value is a NULL
1379*8fb009dcSAndroid Build Coastguard Worker // pointer. Unlike other pointer types, it is not necessary to free |ASN1_NULL|
1380*8fb009dcSAndroid Build Coastguard Worker // pointers, but it is safe to do so.
1381*8fb009dcSAndroid Build Coastguard Worker 
1382*8fb009dcSAndroid Build Coastguard Worker // ASN1_NULL_new returns an opaque, non-NULL pointer. It is safe to call
1383*8fb009dcSAndroid Build Coastguard Worker // |ASN1_NULL_free| on the result, but not necessary.
1384*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT ASN1_NULL *ASN1_NULL_new(void);
1385*8fb009dcSAndroid Build Coastguard Worker 
1386*8fb009dcSAndroid Build Coastguard Worker // ASN1_NULL_free does nothing.
1387*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT void ASN1_NULL_free(ASN1_NULL *null);
1388*8fb009dcSAndroid Build Coastguard Worker 
1389*8fb009dcSAndroid Build Coastguard Worker // d2i_ASN1_NULL parses a DER-encoded ASN.1 NULL value from up to |len| bytes
1390*8fb009dcSAndroid Build Coastguard Worker // at |*inp|, as described in |d2i_SAMPLE|.
1391*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT ASN1_NULL *d2i_ASN1_NULL(ASN1_NULL **out, const uint8_t **inp,
1392*8fb009dcSAndroid Build Coastguard Worker                                         long len);
1393*8fb009dcSAndroid Build Coastguard Worker 
1394*8fb009dcSAndroid Build Coastguard Worker // i2d_ASN1_NULL marshals |in| as a DER-encoded ASN.1 NULL value, as described
1395*8fb009dcSAndroid Build Coastguard Worker // in |i2d_SAMPLE|.
1396*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT int i2d_ASN1_NULL(const ASN1_NULL *in, uint8_t **outp);
1397*8fb009dcSAndroid Build Coastguard Worker 
1398*8fb009dcSAndroid Build Coastguard Worker // ASN1_NULL is an |ASN1_ITEM| with ASN.1 type NULL and C type |ASN1_NULL*|.
1399*8fb009dcSAndroid Build Coastguard Worker DECLARE_ASN1_ITEM(ASN1_NULL)
1400*8fb009dcSAndroid Build Coastguard Worker 
1401*8fb009dcSAndroid Build Coastguard Worker 
1402*8fb009dcSAndroid Build Coastguard Worker // Object identifiers.
1403*8fb009dcSAndroid Build Coastguard Worker //
1404*8fb009dcSAndroid Build Coastguard Worker // An |ASN1_OBJECT| represents a ASN.1 OBJECT IDENTIFIER. See also obj.h for
1405*8fb009dcSAndroid Build Coastguard Worker // additional functions relating to |ASN1_OBJECT|.
1406*8fb009dcSAndroid Build Coastguard Worker //
1407*8fb009dcSAndroid Build Coastguard Worker // TODO(davidben): What's the relationship between asn1.h and obj.h? Most of
1408*8fb009dcSAndroid Build Coastguard Worker // obj.h deals with the large NID table, but then functions like |OBJ_get0_data|
1409*8fb009dcSAndroid Build Coastguard Worker // or |OBJ_dup| are general |ASN1_OBJECT| functions.
1410*8fb009dcSAndroid Build Coastguard Worker 
1411*8fb009dcSAndroid Build Coastguard Worker DEFINE_STACK_OF(ASN1_OBJECT)
1412*8fb009dcSAndroid Build Coastguard Worker 
1413*8fb009dcSAndroid Build Coastguard Worker // ASN1_OBJECT_create returns a newly-allocated |ASN1_OBJECT| with |len| bytes
1414*8fb009dcSAndroid Build Coastguard Worker // from |data| as the encoded OID, or NULL on error. |data| should contain the
1415*8fb009dcSAndroid Build Coastguard Worker // DER-encoded identifier, excluding the tag and length.
1416*8fb009dcSAndroid Build Coastguard Worker //
1417*8fb009dcSAndroid Build Coastguard Worker // |nid| should be |NID_undef|. Passing a NID value that does not match |data|
1418*8fb009dcSAndroid Build Coastguard Worker // will cause some functions to misbehave. |sn| and |ln| should be NULL. If
1419*8fb009dcSAndroid Build Coastguard Worker // non-NULL, they are stored as short and long names, respectively, but these
1420*8fb009dcSAndroid Build Coastguard Worker // values have no effect for |ASN1_OBJECT|s created through this function.
1421*8fb009dcSAndroid Build Coastguard Worker //
1422*8fb009dcSAndroid Build Coastguard Worker // TODO(davidben): Should we just ignore all those parameters? NIDs and names
1423*8fb009dcSAndroid Build Coastguard Worker // are only relevant for |ASN1_OBJECT|s in the obj.h table.
1424*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT ASN1_OBJECT *ASN1_OBJECT_create(int nid, const uint8_t *data,
1425*8fb009dcSAndroid Build Coastguard Worker                                                size_t len, const char *sn,
1426*8fb009dcSAndroid Build Coastguard Worker                                                const char *ln);
1427*8fb009dcSAndroid Build Coastguard Worker 
1428*8fb009dcSAndroid Build Coastguard Worker // ASN1_OBJECT_free releases memory associated with |a|. If |a| is a static
1429*8fb009dcSAndroid Build Coastguard Worker // |ASN1_OBJECT|, returned from |OBJ_nid2obj|, this function does nothing.
1430*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT void ASN1_OBJECT_free(ASN1_OBJECT *a);
1431*8fb009dcSAndroid Build Coastguard Worker 
1432*8fb009dcSAndroid Build Coastguard Worker // d2i_ASN1_OBJECT parses a DER-encoded ASN.1 OBJECT IDENTIFIER from up to |len|
1433*8fb009dcSAndroid Build Coastguard Worker // bytes at |*inp|, as described in |d2i_SAMPLE|.
1434*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT ASN1_OBJECT *d2i_ASN1_OBJECT(ASN1_OBJECT **out,
1435*8fb009dcSAndroid Build Coastguard Worker                                             const uint8_t **inp, long len);
1436*8fb009dcSAndroid Build Coastguard Worker 
1437*8fb009dcSAndroid Build Coastguard Worker // i2d_ASN1_OBJECT marshals |in| as a DER-encoded ASN.1 OBJECT IDENTIFIER, as
1438*8fb009dcSAndroid Build Coastguard Worker // described in |i2d_SAMPLE|.
1439*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT int i2d_ASN1_OBJECT(const ASN1_OBJECT *in, uint8_t **outp);
1440*8fb009dcSAndroid Build Coastguard Worker 
1441*8fb009dcSAndroid Build Coastguard Worker // c2i_ASN1_OBJECT decodes |len| bytes from |*inp| as the contents of a
1442*8fb009dcSAndroid Build Coastguard Worker // DER-encoded OBJECT IDENTIFIER, excluding the tag and length. It behaves like
1443*8fb009dcSAndroid Build Coastguard Worker // |d2i_SAMPLE| except, on success, it always consumes all |len| bytes.
1444*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT ASN1_OBJECT *c2i_ASN1_OBJECT(ASN1_OBJECT **out,
1445*8fb009dcSAndroid Build Coastguard Worker                                             const uint8_t **inp, long len);
1446*8fb009dcSAndroid Build Coastguard Worker 
1447*8fb009dcSAndroid Build Coastguard Worker // ASN1_OBJECT is an |ASN1_ITEM| with ASN.1 type OBJECT IDENTIFIER and C type
1448*8fb009dcSAndroid Build Coastguard Worker // |ASN1_OBJECT*|.
1449*8fb009dcSAndroid Build Coastguard Worker DECLARE_ASN1_ITEM(ASN1_OBJECT)
1450*8fb009dcSAndroid Build Coastguard Worker 
1451*8fb009dcSAndroid Build Coastguard Worker 
1452*8fb009dcSAndroid Build Coastguard Worker // Arbitrary elements.
1453*8fb009dcSAndroid Build Coastguard Worker 
1454*8fb009dcSAndroid Build Coastguard Worker // An asn1_type_st (aka |ASN1_TYPE|) represents an arbitrary ASN.1 element,
1455*8fb009dcSAndroid Build Coastguard Worker // typically used for ANY types. It contains a |type| field and a |value| union
1456*8fb009dcSAndroid Build Coastguard Worker // dependent on |type|.
1457*8fb009dcSAndroid Build Coastguard Worker //
1458*8fb009dcSAndroid Build Coastguard Worker // WARNING: This struct has a complex representation. Callers must not construct
1459*8fb009dcSAndroid Build Coastguard Worker // |ASN1_TYPE| values manually. Use |ASN1_TYPE_set| and |ASN1_TYPE_set1|
1460*8fb009dcSAndroid Build Coastguard Worker // instead. Additionally, callers performing non-trivial operations on this type
1461*8fb009dcSAndroid Build Coastguard Worker // are encouraged to use |CBS| and |CBB| from <openssl/bytestring.h>, and
1462*8fb009dcSAndroid Build Coastguard Worker // convert to or from |ASN1_TYPE| with |d2i_ASN1_TYPE| or |i2d_ASN1_TYPE|.
1463*8fb009dcSAndroid Build Coastguard Worker //
1464*8fb009dcSAndroid Build Coastguard Worker // The |type| field corresponds to the tag of the ASN.1 element being
1465*8fb009dcSAndroid Build Coastguard Worker // represented:
1466*8fb009dcSAndroid Build Coastguard Worker //
1467*8fb009dcSAndroid Build Coastguard Worker // If |type| is a |V_ASN1_*| constant for an ASN.1 string-like type, as defined
1468*8fb009dcSAndroid Build Coastguard Worker // by |ASN1_STRING|, the tag matches the constant. |value| contains an
1469*8fb009dcSAndroid Build Coastguard Worker // |ASN1_STRING| pointer (equivalently, one of the more specific typedefs). See
1470*8fb009dcSAndroid Build Coastguard Worker // |ASN1_STRING| for details on the representation. Unlike |ASN1_STRING|,
1471*8fb009dcSAndroid Build Coastguard Worker // |ASN1_TYPE| does not use the |V_ASN1_NEG| flag for negative INTEGER and
1472*8fb009dcSAndroid Build Coastguard Worker // ENUMERATE values. For a negative value, the |ASN1_TYPE|'s |type| will be
1473*8fb009dcSAndroid Build Coastguard Worker // |V_ASN1_INTEGER| or |V_ASN1_ENUMERATED|, but |value| will an |ASN1_STRING|
1474*8fb009dcSAndroid Build Coastguard Worker // whose |type| is |V_ASN1_NEG_INTEGER| or |V_ASN1_NEG_ENUMERATED|.
1475*8fb009dcSAndroid Build Coastguard Worker //
1476*8fb009dcSAndroid Build Coastguard Worker // If |type| is |V_ASN1_OBJECT|, the tag is OBJECT IDENTIFIER and |value|
1477*8fb009dcSAndroid Build Coastguard Worker // contains an |ASN1_OBJECT| pointer.
1478*8fb009dcSAndroid Build Coastguard Worker //
1479*8fb009dcSAndroid Build Coastguard Worker // If |type| is |V_ASN1_NULL|, the tag is NULL. |value| contains a NULL pointer.
1480*8fb009dcSAndroid Build Coastguard Worker //
1481*8fb009dcSAndroid Build Coastguard Worker // If |type| is |V_ASN1_BOOLEAN|, the tag is BOOLEAN. |value| contains an
1482*8fb009dcSAndroid Build Coastguard Worker // |ASN1_BOOLEAN|.
1483*8fb009dcSAndroid Build Coastguard Worker //
1484*8fb009dcSAndroid Build Coastguard Worker // If |type| is |V_ASN1_SEQUENCE|, |V_ASN1_SET|, or |V_ASN1_OTHER|, the tag is
1485*8fb009dcSAndroid Build Coastguard Worker // SEQUENCE, SET, or some arbitrary tag, respectively. |value| uses the
1486*8fb009dcSAndroid Build Coastguard Worker // corresponding |ASN1_STRING| representation. Although any type may be
1487*8fb009dcSAndroid Build Coastguard Worker // represented in |V_ASN1_OTHER|, the parser will always return the more
1488*8fb009dcSAndroid Build Coastguard Worker // specific encoding when available.
1489*8fb009dcSAndroid Build Coastguard Worker //
1490*8fb009dcSAndroid Build Coastguard Worker // Other values of |type| do not represent a valid ASN.1 value, though
1491*8fb009dcSAndroid Build Coastguard Worker // default-constructed objects may set |type| to -1. Such objects cannot be
1492*8fb009dcSAndroid Build Coastguard Worker // serialized.
1493*8fb009dcSAndroid Build Coastguard Worker struct asn1_type_st {
1494*8fb009dcSAndroid Build Coastguard Worker   int type;
1495*8fb009dcSAndroid Build Coastguard Worker   union {
1496*8fb009dcSAndroid Build Coastguard Worker     char *ptr;
1497*8fb009dcSAndroid Build Coastguard Worker     ASN1_BOOLEAN boolean;
1498*8fb009dcSAndroid Build Coastguard Worker     ASN1_STRING *asn1_string;
1499*8fb009dcSAndroid Build Coastguard Worker     ASN1_OBJECT *object;
1500*8fb009dcSAndroid Build Coastguard Worker     ASN1_INTEGER *integer;
1501*8fb009dcSAndroid Build Coastguard Worker     ASN1_ENUMERATED *enumerated;
1502*8fb009dcSAndroid Build Coastguard Worker     ASN1_BIT_STRING *bit_string;
1503*8fb009dcSAndroid Build Coastguard Worker     ASN1_OCTET_STRING *octet_string;
1504*8fb009dcSAndroid Build Coastguard Worker     ASN1_PRINTABLESTRING *printablestring;
1505*8fb009dcSAndroid Build Coastguard Worker     ASN1_T61STRING *t61string;
1506*8fb009dcSAndroid Build Coastguard Worker     ASN1_IA5STRING *ia5string;
1507*8fb009dcSAndroid Build Coastguard Worker     ASN1_GENERALSTRING *generalstring;
1508*8fb009dcSAndroid Build Coastguard Worker     ASN1_BMPSTRING *bmpstring;
1509*8fb009dcSAndroid Build Coastguard Worker     ASN1_UNIVERSALSTRING *universalstring;
1510*8fb009dcSAndroid Build Coastguard Worker     ASN1_UTCTIME *utctime;
1511*8fb009dcSAndroid Build Coastguard Worker     ASN1_GENERALIZEDTIME *generalizedtime;
1512*8fb009dcSAndroid Build Coastguard Worker     ASN1_VISIBLESTRING *visiblestring;
1513*8fb009dcSAndroid Build Coastguard Worker     ASN1_UTF8STRING *utf8string;
1514*8fb009dcSAndroid Build Coastguard Worker     // set and sequence are left complete and still contain the entire element.
1515*8fb009dcSAndroid Build Coastguard Worker     ASN1_STRING *set;
1516*8fb009dcSAndroid Build Coastguard Worker     ASN1_STRING *sequence;
1517*8fb009dcSAndroid Build Coastguard Worker     ASN1_VALUE *asn1_value;
1518*8fb009dcSAndroid Build Coastguard Worker   } value;
1519*8fb009dcSAndroid Build Coastguard Worker };
1520*8fb009dcSAndroid Build Coastguard Worker 
1521*8fb009dcSAndroid Build Coastguard Worker DEFINE_STACK_OF(ASN1_TYPE)
1522*8fb009dcSAndroid Build Coastguard Worker 
1523*8fb009dcSAndroid Build Coastguard Worker // ASN1_TYPE_new returns a newly-allocated |ASN1_TYPE|, or NULL on allocation
1524*8fb009dcSAndroid Build Coastguard Worker // failure. The resulting object has type -1 and must be initialized to be
1525*8fb009dcSAndroid Build Coastguard Worker // a valid ANY value.
1526*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT ASN1_TYPE *ASN1_TYPE_new(void);
1527*8fb009dcSAndroid Build Coastguard Worker 
1528*8fb009dcSAndroid Build Coastguard Worker // ASN1_TYPE_free releases memory associated with |a|.
1529*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT void ASN1_TYPE_free(ASN1_TYPE *a);
1530*8fb009dcSAndroid Build Coastguard Worker 
1531*8fb009dcSAndroid Build Coastguard Worker // d2i_ASN1_TYPE parses up to |len| bytes from |*inp| as an ASN.1 value of any
1532*8fb009dcSAndroid Build Coastguard Worker // type, as described in |d2i_SAMPLE|. Note this function only validates
1533*8fb009dcSAndroid Build Coastguard Worker // primitive, universal types supported by this library. Values of type
1534*8fb009dcSAndroid Build Coastguard Worker // |V_ASN1_SEQUENCE|, |V_ASN1_SET|, |V_ASN1_OTHER|, or an unsupported primitive
1535*8fb009dcSAndroid Build Coastguard Worker // type must be validated by the caller when interpreting.
1536*8fb009dcSAndroid Build Coastguard Worker //
1537*8fb009dcSAndroid Build Coastguard Worker // TODO(https://crbug.com/boringssl/354): This function currently also accepts
1538*8fb009dcSAndroid Build Coastguard Worker // BER, but this will be removed in the future.
1539*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT ASN1_TYPE *d2i_ASN1_TYPE(ASN1_TYPE **out, const uint8_t **inp,
1540*8fb009dcSAndroid Build Coastguard Worker                                         long len);
1541*8fb009dcSAndroid Build Coastguard Worker 
1542*8fb009dcSAndroid Build Coastguard Worker // i2d_ASN1_TYPE marshals |in| as DER, as described in |i2d_SAMPLE|.
1543*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT int i2d_ASN1_TYPE(const ASN1_TYPE *in, uint8_t **outp);
1544*8fb009dcSAndroid Build Coastguard Worker 
1545*8fb009dcSAndroid Build Coastguard Worker // ASN1_ANY is an |ASN1_ITEM| with ASN.1 type ANY and C type |ASN1_TYPE*|. Note
1546*8fb009dcSAndroid Build Coastguard Worker // the |ASN1_ITEM| name and C type do not match.
1547*8fb009dcSAndroid Build Coastguard Worker DECLARE_ASN1_ITEM(ASN1_ANY)
1548*8fb009dcSAndroid Build Coastguard Worker 
1549*8fb009dcSAndroid Build Coastguard Worker // ASN1_TYPE_get returns the type of |a|, which will be one of the |V_ASN1_*|
1550*8fb009dcSAndroid Build Coastguard Worker // constants, or zero if |a| is not fully initialized.
1551*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT int ASN1_TYPE_get(const ASN1_TYPE *a);
1552*8fb009dcSAndroid Build Coastguard Worker 
1553*8fb009dcSAndroid Build Coastguard Worker // ASN1_TYPE_set sets |a| to an |ASN1_TYPE| of type |type| and value |value|,
1554*8fb009dcSAndroid Build Coastguard Worker // releasing the previous contents of |a|.
1555*8fb009dcSAndroid Build Coastguard Worker //
1556*8fb009dcSAndroid Build Coastguard Worker // If |type| is |V_ASN1_BOOLEAN|, |a| is set to FALSE if |value| is NULL and
1557*8fb009dcSAndroid Build Coastguard Worker // TRUE otherwise. If setting |a| to TRUE, |value| may be an invalid pointer,
1558*8fb009dcSAndroid Build Coastguard Worker // such as (void*)1.
1559*8fb009dcSAndroid Build Coastguard Worker //
1560*8fb009dcSAndroid Build Coastguard Worker // If |type| is |V_ASN1_NULL|, |value| must be NULL.
1561*8fb009dcSAndroid Build Coastguard Worker //
1562*8fb009dcSAndroid Build Coastguard Worker // For other values of |type|, this function takes ownership of |value|, which
1563*8fb009dcSAndroid Build Coastguard Worker // must point to an object of the corresponding type. See |ASN1_TYPE| for
1564*8fb009dcSAndroid Build Coastguard Worker // details.
1565*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT void ASN1_TYPE_set(ASN1_TYPE *a, int type, void *value);
1566*8fb009dcSAndroid Build Coastguard Worker 
1567*8fb009dcSAndroid Build Coastguard Worker // ASN1_TYPE_set1 behaves like |ASN1_TYPE_set| except it does not take ownership
1568*8fb009dcSAndroid Build Coastguard Worker // of |value|. It returns one on success and zero on error.
1569*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT int ASN1_TYPE_set1(ASN1_TYPE *a, int type, const void *value);
1570*8fb009dcSAndroid Build Coastguard Worker 
1571*8fb009dcSAndroid Build Coastguard Worker // ASN1_TYPE_cmp returns zero if |a| and |b| are equal and some non-zero value
1572*8fb009dcSAndroid Build Coastguard Worker // otherwise. Note this function can only be used for equality checks, not an
1573*8fb009dcSAndroid Build Coastguard Worker // ordering.
1574*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT int ASN1_TYPE_cmp(const ASN1_TYPE *a, const ASN1_TYPE *b);
1575*8fb009dcSAndroid Build Coastguard Worker 
1576*8fb009dcSAndroid Build Coastguard Worker typedef STACK_OF(ASN1_TYPE) ASN1_SEQUENCE_ANY;
1577*8fb009dcSAndroid Build Coastguard Worker 
1578*8fb009dcSAndroid Build Coastguard Worker // d2i_ASN1_SEQUENCE_ANY parses up to |len| bytes from |*inp| as a DER-encoded
1579*8fb009dcSAndroid Build Coastguard Worker // ASN.1 SEQUENCE OF ANY structure, as described in |d2i_SAMPLE|. The resulting
1580*8fb009dcSAndroid Build Coastguard Worker // |ASN1_SEQUENCE_ANY| owns its contents and thus must be released with
1581*8fb009dcSAndroid Build Coastguard Worker // |sk_ASN1_TYPE_pop_free| and |ASN1_TYPE_free|, not |sk_ASN1_TYPE_free|.
1582*8fb009dcSAndroid Build Coastguard Worker //
1583*8fb009dcSAndroid Build Coastguard Worker // TODO(https://crbug.com/boringssl/354): This function currently also accepts
1584*8fb009dcSAndroid Build Coastguard Worker // BER, but this will be removed in the future.
1585*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT ASN1_SEQUENCE_ANY *d2i_ASN1_SEQUENCE_ANY(ASN1_SEQUENCE_ANY **out,
1586*8fb009dcSAndroid Build Coastguard Worker                                                         const uint8_t **inp,
1587*8fb009dcSAndroid Build Coastguard Worker                                                         long len);
1588*8fb009dcSAndroid Build Coastguard Worker 
1589*8fb009dcSAndroid Build Coastguard Worker // i2d_ASN1_SEQUENCE_ANY marshals |in| as a DER-encoded SEQUENCE OF ANY
1590*8fb009dcSAndroid Build Coastguard Worker // structure, as described in |i2d_SAMPLE|.
1591*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT int i2d_ASN1_SEQUENCE_ANY(const ASN1_SEQUENCE_ANY *in,
1592*8fb009dcSAndroid Build Coastguard Worker                                          uint8_t **outp);
1593*8fb009dcSAndroid Build Coastguard Worker 
1594*8fb009dcSAndroid Build Coastguard Worker // d2i_ASN1_SET_ANY parses up to |len| bytes from |*inp| as a DER-encoded ASN.1
1595*8fb009dcSAndroid Build Coastguard Worker // SET OF ANY structure, as described in |d2i_SAMPLE|. The resulting
1596*8fb009dcSAndroid Build Coastguard Worker // |ASN1_SEQUENCE_ANY| owns its contents and thus must be released with
1597*8fb009dcSAndroid Build Coastguard Worker // |sk_ASN1_TYPE_pop_free| and |ASN1_TYPE_free|, not |sk_ASN1_TYPE_free|.
1598*8fb009dcSAndroid Build Coastguard Worker //
1599*8fb009dcSAndroid Build Coastguard Worker // TODO(https://crbug.com/boringssl/354): This function currently also accepts
1600*8fb009dcSAndroid Build Coastguard Worker // BER, but this will be removed in the future.
1601*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT ASN1_SEQUENCE_ANY *d2i_ASN1_SET_ANY(ASN1_SEQUENCE_ANY **out,
1602*8fb009dcSAndroid Build Coastguard Worker                                                    const uint8_t **inp,
1603*8fb009dcSAndroid Build Coastguard Worker                                                    long len);
1604*8fb009dcSAndroid Build Coastguard Worker 
1605*8fb009dcSAndroid Build Coastguard Worker // i2d_ASN1_SET_ANY marshals |in| as a DER-encoded SET OF ANY structure, as
1606*8fb009dcSAndroid Build Coastguard Worker // described in |i2d_SAMPLE|.
1607*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT int i2d_ASN1_SET_ANY(const ASN1_SEQUENCE_ANY *in,
1608*8fb009dcSAndroid Build Coastguard Worker                                     uint8_t **outp);
1609*8fb009dcSAndroid Build Coastguard Worker 
1610*8fb009dcSAndroid Build Coastguard Worker 
1611*8fb009dcSAndroid Build Coastguard Worker // Human-readable output.
1612*8fb009dcSAndroid Build Coastguard Worker //
1613*8fb009dcSAndroid Build Coastguard Worker // The following functions output types in some human-readable format. These
1614*8fb009dcSAndroid Build Coastguard Worker // functions may be used for debugging and logging. However, the output should
1615*8fb009dcSAndroid Build Coastguard Worker // not be consumed programmatically. They may be ambiguous or lose information.
1616*8fb009dcSAndroid Build Coastguard Worker 
1617*8fb009dcSAndroid Build Coastguard Worker // ASN1_UTCTIME_print writes a human-readable representation of |a| to |out|. It
1618*8fb009dcSAndroid Build Coastguard Worker // returns one on success and zero on error.
1619*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT int ASN1_UTCTIME_print(BIO *out, const ASN1_UTCTIME *a);
1620*8fb009dcSAndroid Build Coastguard Worker 
1621*8fb009dcSAndroid Build Coastguard Worker // ASN1_GENERALIZEDTIME_print writes a human-readable representation of |a| to
1622*8fb009dcSAndroid Build Coastguard Worker // |out|. It returns one on success and zero on error.
1623*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT int ASN1_GENERALIZEDTIME_print(BIO *out,
1624*8fb009dcSAndroid Build Coastguard Worker                                               const ASN1_GENERALIZEDTIME *a);
1625*8fb009dcSAndroid Build Coastguard Worker 
1626*8fb009dcSAndroid Build Coastguard Worker // ASN1_TIME_print writes a human-readable representation of |a| to |out|. It
1627*8fb009dcSAndroid Build Coastguard Worker // returns one on success and zero on error.
1628*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT int ASN1_TIME_print(BIO *out, const ASN1_TIME *a);
1629*8fb009dcSAndroid Build Coastguard Worker 
1630*8fb009dcSAndroid Build Coastguard Worker // ASN1_STRING_print writes a human-readable representation of |str| to |out|.
1631*8fb009dcSAndroid Build Coastguard Worker // It returns one on success and zero on error. Unprintable characters are
1632*8fb009dcSAndroid Build Coastguard Worker // replaced with '.'.
1633*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT int ASN1_STRING_print(BIO *out, const ASN1_STRING *str);
1634*8fb009dcSAndroid Build Coastguard Worker 
1635*8fb009dcSAndroid Build Coastguard Worker // The following flags must not collide with |XN_FLAG_*|.
1636*8fb009dcSAndroid Build Coastguard Worker 
1637*8fb009dcSAndroid Build Coastguard Worker // ASN1_STRFLGS_ESC_2253 causes characters to be escaped as in RFC 2253, section
1638*8fb009dcSAndroid Build Coastguard Worker // 2.4.
1639*8fb009dcSAndroid Build Coastguard Worker #define ASN1_STRFLGS_ESC_2253 1ul
1640*8fb009dcSAndroid Build Coastguard Worker 
1641*8fb009dcSAndroid Build Coastguard Worker // ASN1_STRFLGS_ESC_CTRL causes all control characters to be escaped.
1642*8fb009dcSAndroid Build Coastguard Worker #define ASN1_STRFLGS_ESC_CTRL 2ul
1643*8fb009dcSAndroid Build Coastguard Worker 
1644*8fb009dcSAndroid Build Coastguard Worker // ASN1_STRFLGS_ESC_MSB causes all characters above 127 to be escaped.
1645*8fb009dcSAndroid Build Coastguard Worker #define ASN1_STRFLGS_ESC_MSB 4ul
1646*8fb009dcSAndroid Build Coastguard Worker 
1647*8fb009dcSAndroid Build Coastguard Worker // ASN1_STRFLGS_ESC_QUOTE causes the string to be surrounded by quotes, rather
1648*8fb009dcSAndroid Build Coastguard Worker // than using backslashes, when characters are escaped. Fewer characters will
1649*8fb009dcSAndroid Build Coastguard Worker // require escapes in this case.
1650*8fb009dcSAndroid Build Coastguard Worker #define ASN1_STRFLGS_ESC_QUOTE 8ul
1651*8fb009dcSAndroid Build Coastguard Worker 
1652*8fb009dcSAndroid Build Coastguard Worker // ASN1_STRFLGS_UTF8_CONVERT causes the string to be encoded as UTF-8, with each
1653*8fb009dcSAndroid Build Coastguard Worker // byte in the UTF-8 encoding treated as an individual character for purposes of
1654*8fb009dcSAndroid Build Coastguard Worker // escape sequences. If not set, each Unicode codepoint in the string is treated
1655*8fb009dcSAndroid Build Coastguard Worker // as a character, with wide characters escaped as "\Uxxxx" or "\Wxxxxxxxx".
1656*8fb009dcSAndroid Build Coastguard Worker // Note this can be ambiguous if |ASN1_STRFLGS_ESC_*| are all unset. In that
1657*8fb009dcSAndroid Build Coastguard Worker // case, backslashes are not escaped, but wide characters are.
1658*8fb009dcSAndroid Build Coastguard Worker #define ASN1_STRFLGS_UTF8_CONVERT 0x10ul
1659*8fb009dcSAndroid Build Coastguard Worker 
1660*8fb009dcSAndroid Build Coastguard Worker // ASN1_STRFLGS_IGNORE_TYPE causes the string type to be ignored. The
1661*8fb009dcSAndroid Build Coastguard Worker // |ASN1_STRING| in-memory representation will be printed directly.
1662*8fb009dcSAndroid Build Coastguard Worker #define ASN1_STRFLGS_IGNORE_TYPE 0x20ul
1663*8fb009dcSAndroid Build Coastguard Worker 
1664*8fb009dcSAndroid Build Coastguard Worker // ASN1_STRFLGS_SHOW_TYPE causes the string type to be included in the output.
1665*8fb009dcSAndroid Build Coastguard Worker #define ASN1_STRFLGS_SHOW_TYPE 0x40ul
1666*8fb009dcSAndroid Build Coastguard Worker 
1667*8fb009dcSAndroid Build Coastguard Worker // ASN1_STRFLGS_DUMP_ALL causes all strings to be printed as a hexdump, using
1668*8fb009dcSAndroid Build Coastguard Worker // RFC 2253 hexstring notation, such as "#0123456789ABCDEF".
1669*8fb009dcSAndroid Build Coastguard Worker #define ASN1_STRFLGS_DUMP_ALL 0x80ul
1670*8fb009dcSAndroid Build Coastguard Worker 
1671*8fb009dcSAndroid Build Coastguard Worker // ASN1_STRFLGS_DUMP_UNKNOWN behaves like |ASN1_STRFLGS_DUMP_ALL| but only
1672*8fb009dcSAndroid Build Coastguard Worker // applies to values of unknown type. If unset, unknown values will print
1673*8fb009dcSAndroid Build Coastguard Worker // their contents as single-byte characters with escape sequences.
1674*8fb009dcSAndroid Build Coastguard Worker #define ASN1_STRFLGS_DUMP_UNKNOWN 0x100ul
1675*8fb009dcSAndroid Build Coastguard Worker 
1676*8fb009dcSAndroid Build Coastguard Worker // ASN1_STRFLGS_DUMP_DER causes hexdumped strings (as determined by
1677*8fb009dcSAndroid Build Coastguard Worker // |ASN1_STRFLGS_DUMP_ALL| or |ASN1_STRFLGS_DUMP_UNKNOWN|) to print the entire
1678*8fb009dcSAndroid Build Coastguard Worker // DER element as in RFC 2253, rather than only the contents of the
1679*8fb009dcSAndroid Build Coastguard Worker // |ASN1_STRING|.
1680*8fb009dcSAndroid Build Coastguard Worker #define ASN1_STRFLGS_DUMP_DER 0x200ul
1681*8fb009dcSAndroid Build Coastguard Worker 
1682*8fb009dcSAndroid Build Coastguard Worker // ASN1_STRFLGS_RFC2253 causes the string to be escaped as in RFC 2253,
1683*8fb009dcSAndroid Build Coastguard Worker // additionally escaping control characters.
1684*8fb009dcSAndroid Build Coastguard Worker #define ASN1_STRFLGS_RFC2253                                              \
1685*8fb009dcSAndroid Build Coastguard Worker   (ASN1_STRFLGS_ESC_2253 | ASN1_STRFLGS_ESC_CTRL | ASN1_STRFLGS_ESC_MSB | \
1686*8fb009dcSAndroid Build Coastguard Worker    ASN1_STRFLGS_UTF8_CONVERT | ASN1_STRFLGS_DUMP_UNKNOWN |                \
1687*8fb009dcSAndroid Build Coastguard Worker    ASN1_STRFLGS_DUMP_DER)
1688*8fb009dcSAndroid Build Coastguard Worker 
1689*8fb009dcSAndroid Build Coastguard Worker // ASN1_STRING_print_ex writes a human-readable representation of |str| to
1690*8fb009dcSAndroid Build Coastguard Worker // |out|. It returns the number of bytes written on success and -1 on error. If
1691*8fb009dcSAndroid Build Coastguard Worker // |out| is NULL, it returns the number of bytes it would have written, without
1692*8fb009dcSAndroid Build Coastguard Worker // writing anything.
1693*8fb009dcSAndroid Build Coastguard Worker //
1694*8fb009dcSAndroid Build Coastguard Worker // The |flags| should be a combination of combination of |ASN1_STRFLGS_*|
1695*8fb009dcSAndroid Build Coastguard Worker // constants. See the documentation for each flag for how it controls the
1696*8fb009dcSAndroid Build Coastguard Worker // output. If unsure, use |ASN1_STRFLGS_RFC2253|.
1697*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT int ASN1_STRING_print_ex(BIO *out, const ASN1_STRING *str,
1698*8fb009dcSAndroid Build Coastguard Worker                                         unsigned long flags);
1699*8fb009dcSAndroid Build Coastguard Worker 
1700*8fb009dcSAndroid Build Coastguard Worker // ASN1_STRING_print_ex_fp behaves like |ASN1_STRING_print_ex| but writes to a
1701*8fb009dcSAndroid Build Coastguard Worker // |FILE| rather than a |BIO|.
1702*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT int ASN1_STRING_print_ex_fp(FILE *fp, const ASN1_STRING *str,
1703*8fb009dcSAndroid Build Coastguard Worker                                            unsigned long flags);
1704*8fb009dcSAndroid Build Coastguard Worker 
1705*8fb009dcSAndroid Build Coastguard Worker // i2a_ASN1_INTEGER writes a human-readable representation of |a| to |bp|. It
1706*8fb009dcSAndroid Build Coastguard Worker // returns the number of bytes written on success, or a negative number on
1707*8fb009dcSAndroid Build Coastguard Worker // error. On error, this function may have written a partial output to |bp|.
1708*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT int i2a_ASN1_INTEGER(BIO *bp, const ASN1_INTEGER *a);
1709*8fb009dcSAndroid Build Coastguard Worker 
1710*8fb009dcSAndroid Build Coastguard Worker // i2a_ASN1_ENUMERATED writes a human-readable representation of |a| to |bp|. It
1711*8fb009dcSAndroid Build Coastguard Worker // returns the number of bytes written on success, or a negative number on
1712*8fb009dcSAndroid Build Coastguard Worker // error. On error, this function may have written a partial output to |bp|.
1713*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT int i2a_ASN1_ENUMERATED(BIO *bp, const ASN1_ENUMERATED *a);
1714*8fb009dcSAndroid Build Coastguard Worker 
1715*8fb009dcSAndroid Build Coastguard Worker // i2a_ASN1_OBJECT writes a human-readable representation of |a| to |bp|. It
1716*8fb009dcSAndroid Build Coastguard Worker // returns the number of bytes written on success, or a negative number on
1717*8fb009dcSAndroid Build Coastguard Worker // error. On error, this function may have written a partial output to |bp|.
1718*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT int i2a_ASN1_OBJECT(BIO *bp, const ASN1_OBJECT *a);
1719*8fb009dcSAndroid Build Coastguard Worker 
1720*8fb009dcSAndroid Build Coastguard Worker // i2a_ASN1_STRING writes a text representation of |a|'s contents to |bp|. It
1721*8fb009dcSAndroid Build Coastguard Worker // returns the number of bytes written on success, or a negative number on
1722*8fb009dcSAndroid Build Coastguard Worker // error. On error, this function may have written a partial output to |bp|.
1723*8fb009dcSAndroid Build Coastguard Worker // |type| is ignored.
1724*8fb009dcSAndroid Build Coastguard Worker //
1725*8fb009dcSAndroid Build Coastguard Worker // This function does not decode |a| into a Unicode string. It only hex-encodes
1726*8fb009dcSAndroid Build Coastguard Worker // the internal representation of |a|. This is suitable for printing an OCTET
1727*8fb009dcSAndroid Build Coastguard Worker // STRING, but may not be human-readable for any other string type.
1728*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT int i2a_ASN1_STRING(BIO *bp, const ASN1_STRING *a, int type);
1729*8fb009dcSAndroid Build Coastguard Worker 
1730*8fb009dcSAndroid Build Coastguard Worker // i2t_ASN1_OBJECT calls |OBJ_obj2txt| with |always_return_oid| set to zero.
1731*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT int i2t_ASN1_OBJECT(char *buf, int buf_len,
1732*8fb009dcSAndroid Build Coastguard Worker                                    const ASN1_OBJECT *a);
1733*8fb009dcSAndroid Build Coastguard Worker 
1734*8fb009dcSAndroid Build Coastguard Worker 
1735*8fb009dcSAndroid Build Coastguard Worker // Low-level encoding functions.
1736*8fb009dcSAndroid Build Coastguard Worker 
1737*8fb009dcSAndroid Build Coastguard Worker // ASN1_get_object parses a BER element from up to |max_len| bytes at |*inp|. It
1738*8fb009dcSAndroid Build Coastguard Worker // returns |V_ASN1_CONSTRUCTED| if it successfully parsed a constructed element,
1739*8fb009dcSAndroid Build Coastguard Worker // zero if it successfully parsed a primitive element, and 0x80 on error. On
1740*8fb009dcSAndroid Build Coastguard Worker // success, it additionally advances |*inp| to the element body, sets
1741*8fb009dcSAndroid Build Coastguard Worker // |*out_length|, |*out_tag|, and |*out_class| to the element's length, tag
1742*8fb009dcSAndroid Build Coastguard Worker // number, and tag class, respectively,
1743*8fb009dcSAndroid Build Coastguard Worker //
1744*8fb009dcSAndroid Build Coastguard Worker // Unlike OpenSSL, this function only supports DER. Indefinite and non-minimal
1745*8fb009dcSAndroid Build Coastguard Worker // lengths are rejected.
1746*8fb009dcSAndroid Build Coastguard Worker //
1747*8fb009dcSAndroid Build Coastguard Worker // This function is difficult to use correctly. Use |CBS_get_asn1| and related
1748*8fb009dcSAndroid Build Coastguard Worker // functions from bytestring.h.
1749*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT int ASN1_get_object(const unsigned char **inp, long *out_length,
1750*8fb009dcSAndroid Build Coastguard Worker                                    int *out_tag, int *out_class, long max_len);
1751*8fb009dcSAndroid Build Coastguard Worker 
1752*8fb009dcSAndroid Build Coastguard Worker // ASN1_put_object writes the header for a DER or BER element to |*outp| and
1753*8fb009dcSAndroid Build Coastguard Worker // advances |*outp| by the number of bytes written. The caller is responsible
1754*8fb009dcSAndroid Build Coastguard Worker // for ensuring |*outp| has enough space for the output. The header describes an
1755*8fb009dcSAndroid Build Coastguard Worker // element with length |length|, tag number |tag|, and class |xclass|. |xclass|
1756*8fb009dcSAndroid Build Coastguard Worker // should be one of the |V_ASN1_*| tag class constants. The element is primitive
1757*8fb009dcSAndroid Build Coastguard Worker // if |constructed| is zero and constructed if it is one or two. If
1758*8fb009dcSAndroid Build Coastguard Worker // |constructed| is two, |length| is ignored and the element uses
1759*8fb009dcSAndroid Build Coastguard Worker // indefinite-length encoding.
1760*8fb009dcSAndroid Build Coastguard Worker //
1761*8fb009dcSAndroid Build Coastguard Worker // Use |CBB_add_asn1| instead.
1762*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT void ASN1_put_object(unsigned char **outp, int constructed,
1763*8fb009dcSAndroid Build Coastguard Worker                                     int length, int tag, int xclass);
1764*8fb009dcSAndroid Build Coastguard Worker 
1765*8fb009dcSAndroid Build Coastguard Worker // ASN1_put_eoc writes two zero bytes to |*outp|, advances |*outp| to point past
1766*8fb009dcSAndroid Build Coastguard Worker // those bytes, and returns two.
1767*8fb009dcSAndroid Build Coastguard Worker //
1768*8fb009dcSAndroid Build Coastguard Worker // Use definite-length encoding instead.
1769*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT int ASN1_put_eoc(unsigned char **outp);
1770*8fb009dcSAndroid Build Coastguard Worker 
1771*8fb009dcSAndroid Build Coastguard Worker // ASN1_object_size returns the number of bytes needed to encode a DER or BER
1772*8fb009dcSAndroid Build Coastguard Worker // value with length |length| and tag number |tag|, or -1 on error. |tag| should
1773*8fb009dcSAndroid Build Coastguard Worker // not include the constructed bit or tag class. If |constructed| is zero or
1774*8fb009dcSAndroid Build Coastguard Worker // one, the result uses a definite-length encoding with minimally-encoded
1775*8fb009dcSAndroid Build Coastguard Worker // length, as in DER. If |constructed| is two, the result uses BER
1776*8fb009dcSAndroid Build Coastguard Worker // indefinite-length encoding.
1777*8fb009dcSAndroid Build Coastguard Worker //
1778*8fb009dcSAndroid Build Coastguard Worker // Use |CBB_add_asn1| instead.
1779*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT int ASN1_object_size(int constructed, int length, int tag);
1780*8fb009dcSAndroid Build Coastguard Worker 
1781*8fb009dcSAndroid Build Coastguard Worker 
1782*8fb009dcSAndroid Build Coastguard Worker // Function declaration macros.
1783*8fb009dcSAndroid Build Coastguard Worker //
1784*8fb009dcSAndroid Build Coastguard Worker // The following macros declare functions for ASN.1 types. Prefer writing the
1785*8fb009dcSAndroid Build Coastguard Worker // prototypes directly. Particularly when |type|, |itname|, or |name| differ,
1786*8fb009dcSAndroid Build Coastguard Worker // the macros can be difficult to understand.
1787*8fb009dcSAndroid Build Coastguard Worker 
1788*8fb009dcSAndroid Build Coastguard Worker #define DECLARE_ASN1_FUNCTIONS(type) DECLARE_ASN1_FUNCTIONS_name(type, type)
1789*8fb009dcSAndroid Build Coastguard Worker 
1790*8fb009dcSAndroid Build Coastguard Worker #define DECLARE_ASN1_ALLOC_FUNCTIONS(type) \
1791*8fb009dcSAndroid Build Coastguard Worker   DECLARE_ASN1_ALLOC_FUNCTIONS_name(type, type)
1792*8fb009dcSAndroid Build Coastguard Worker 
1793*8fb009dcSAndroid Build Coastguard Worker #define DECLARE_ASN1_FUNCTIONS_name(type, name) \
1794*8fb009dcSAndroid Build Coastguard Worker   DECLARE_ASN1_ALLOC_FUNCTIONS_name(type, name) \
1795*8fb009dcSAndroid Build Coastguard Worker   DECLARE_ASN1_ENCODE_FUNCTIONS(type, name, name)
1796*8fb009dcSAndroid Build Coastguard Worker 
1797*8fb009dcSAndroid Build Coastguard Worker #define DECLARE_ASN1_FUNCTIONS_fname(type, itname, name) \
1798*8fb009dcSAndroid Build Coastguard Worker   DECLARE_ASN1_ALLOC_FUNCTIONS_name(type, name)          \
1799*8fb009dcSAndroid Build Coastguard Worker   DECLARE_ASN1_ENCODE_FUNCTIONS(type, itname, name)
1800*8fb009dcSAndroid Build Coastguard Worker 
1801*8fb009dcSAndroid Build Coastguard Worker #define DECLARE_ASN1_ENCODE_FUNCTIONS(type, itname, name)             \
1802*8fb009dcSAndroid Build Coastguard Worker   OPENSSL_EXPORT type *d2i_##name(type **a, const unsigned char **in, \
1803*8fb009dcSAndroid Build Coastguard Worker                                   long len);                          \
1804*8fb009dcSAndroid Build Coastguard Worker   OPENSSL_EXPORT int i2d_##name(type *a, unsigned char **out);        \
1805*8fb009dcSAndroid Build Coastguard Worker   DECLARE_ASN1_ITEM(itname)
1806*8fb009dcSAndroid Build Coastguard Worker 
1807*8fb009dcSAndroid Build Coastguard Worker #define DECLARE_ASN1_ENCODE_FUNCTIONS_const(type, name)               \
1808*8fb009dcSAndroid Build Coastguard Worker   OPENSSL_EXPORT type *d2i_##name(type **a, const unsigned char **in, \
1809*8fb009dcSAndroid Build Coastguard Worker                                   long len);                          \
1810*8fb009dcSAndroid Build Coastguard Worker   OPENSSL_EXPORT int i2d_##name(const type *a, unsigned char **out);  \
1811*8fb009dcSAndroid Build Coastguard Worker   DECLARE_ASN1_ITEM(name)
1812*8fb009dcSAndroid Build Coastguard Worker 
1813*8fb009dcSAndroid Build Coastguard Worker #define DECLARE_ASN1_FUNCTIONS_const(name) \
1814*8fb009dcSAndroid Build Coastguard Worker   DECLARE_ASN1_ALLOC_FUNCTIONS(name)       \
1815*8fb009dcSAndroid Build Coastguard Worker   DECLARE_ASN1_ENCODE_FUNCTIONS_const(name, name)
1816*8fb009dcSAndroid Build Coastguard Worker 
1817*8fb009dcSAndroid Build Coastguard Worker #define DECLARE_ASN1_ALLOC_FUNCTIONS_name(type, name) \
1818*8fb009dcSAndroid Build Coastguard Worker   OPENSSL_EXPORT type *name##_new(void);              \
1819*8fb009dcSAndroid Build Coastguard Worker   OPENSSL_EXPORT void name##_free(type *a);
1820*8fb009dcSAndroid Build Coastguard Worker 
1821*8fb009dcSAndroid Build Coastguard Worker 
1822*8fb009dcSAndroid Build Coastguard Worker // Deprecated functions.
1823*8fb009dcSAndroid Build Coastguard Worker 
1824*8fb009dcSAndroid Build Coastguard Worker // ASN1_STRING_set_default_mask does nothing.
1825*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT void ASN1_STRING_set_default_mask(unsigned long mask);
1826*8fb009dcSAndroid Build Coastguard Worker 
1827*8fb009dcSAndroid Build Coastguard Worker // ASN1_STRING_set_default_mask_asc returns one.
1828*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT int ASN1_STRING_set_default_mask_asc(const char *p);
1829*8fb009dcSAndroid Build Coastguard Worker 
1830*8fb009dcSAndroid Build Coastguard Worker // ASN1_STRING_get_default_mask returns |B_ASN1_UTF8STRING|.
1831*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT unsigned long ASN1_STRING_get_default_mask(void);
1832*8fb009dcSAndroid Build Coastguard Worker 
1833*8fb009dcSAndroid Build Coastguard Worker // ASN1_STRING_TABLE_cleanup does nothing.
1834*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT void ASN1_STRING_TABLE_cleanup(void);
1835*8fb009dcSAndroid Build Coastguard Worker 
1836*8fb009dcSAndroid Build Coastguard Worker // M_ASN1_* are legacy aliases for various |ASN1_STRING| functions. Use the
1837*8fb009dcSAndroid Build Coastguard Worker // functions themselves.
1838*8fb009dcSAndroid Build Coastguard Worker #define M_ASN1_STRING_length(x) ASN1_STRING_length(x)
1839*8fb009dcSAndroid Build Coastguard Worker #define M_ASN1_STRING_type(x) ASN1_STRING_type(x)
1840*8fb009dcSAndroid Build Coastguard Worker #define M_ASN1_STRING_data(x) ASN1_STRING_data(x)
1841*8fb009dcSAndroid Build Coastguard Worker #define M_ASN1_BIT_STRING_new() ASN1_BIT_STRING_new()
1842*8fb009dcSAndroid Build Coastguard Worker #define M_ASN1_BIT_STRING_free(a) ASN1_BIT_STRING_free(a)
1843*8fb009dcSAndroid Build Coastguard Worker #define M_ASN1_BIT_STRING_dup(a) ASN1_STRING_dup(a)
1844*8fb009dcSAndroid Build Coastguard Worker #define M_ASN1_BIT_STRING_cmp(a, b) ASN1_STRING_cmp(a, b)
1845*8fb009dcSAndroid Build Coastguard Worker #define M_ASN1_BIT_STRING_set(a, b, c) ASN1_BIT_STRING_set(a, b, c)
1846*8fb009dcSAndroid Build Coastguard Worker #define M_ASN1_INTEGER_new() ASN1_INTEGER_new()
1847*8fb009dcSAndroid Build Coastguard Worker #define M_ASN1_INTEGER_free(a) ASN1_INTEGER_free(a)
1848*8fb009dcSAndroid Build Coastguard Worker #define M_ASN1_INTEGER_dup(a) ASN1_INTEGER_dup(a)
1849*8fb009dcSAndroid Build Coastguard Worker #define M_ASN1_INTEGER_cmp(a, b) ASN1_INTEGER_cmp(a, b)
1850*8fb009dcSAndroid Build Coastguard Worker #define M_ASN1_ENUMERATED_new() ASN1_ENUMERATED_new()
1851*8fb009dcSAndroid Build Coastguard Worker #define M_ASN1_ENUMERATED_free(a) ASN1_ENUMERATED_free(a)
1852*8fb009dcSAndroid Build Coastguard Worker #define M_ASN1_ENUMERATED_dup(a) ASN1_STRING_dup(a)
1853*8fb009dcSAndroid Build Coastguard Worker #define M_ASN1_ENUMERATED_cmp(a, b) ASN1_STRING_cmp(a, b)
1854*8fb009dcSAndroid Build Coastguard Worker #define M_ASN1_OCTET_STRING_new() ASN1_OCTET_STRING_new()
1855*8fb009dcSAndroid Build Coastguard Worker #define M_ASN1_OCTET_STRING_free(a) ASN1_OCTET_STRING_free()
1856*8fb009dcSAndroid Build Coastguard Worker #define M_ASN1_OCTET_STRING_dup(a) ASN1_OCTET_STRING_dup(a)
1857*8fb009dcSAndroid Build Coastguard Worker #define M_ASN1_OCTET_STRING_cmp(a, b) ASN1_OCTET_STRING_cmp(a, b)
1858*8fb009dcSAndroid Build Coastguard Worker #define M_ASN1_OCTET_STRING_set(a, b, c) ASN1_OCTET_STRING_set(a, b, c)
1859*8fb009dcSAndroid Build Coastguard Worker #define M_ASN1_OCTET_STRING_print(a, b) ASN1_STRING_print(a, b)
1860*8fb009dcSAndroid Build Coastguard Worker #define M_ASN1_PRINTABLESTRING_new() ASN1_PRINTABLESTRING_new()
1861*8fb009dcSAndroid Build Coastguard Worker #define M_ASN1_PRINTABLESTRING_free(a) ASN1_PRINTABLESTRING_free(a)
1862*8fb009dcSAndroid Build Coastguard Worker #define M_ASN1_IA5STRING_new() ASN1_IA5STRING_new()
1863*8fb009dcSAndroid Build Coastguard Worker #define M_ASN1_IA5STRING_free(a) ASN1_IA5STRING_free(a)
1864*8fb009dcSAndroid Build Coastguard Worker #define M_ASN1_IA5STRING_dup(a) ASN1_STRING_dup(a)
1865*8fb009dcSAndroid Build Coastguard Worker #define M_ASN1_UTCTIME_new() ASN1_UTCTIME_new()
1866*8fb009dcSAndroid Build Coastguard Worker #define M_ASN1_UTCTIME_free(a) ASN1_UTCTIME_free(a)
1867*8fb009dcSAndroid Build Coastguard Worker #define M_ASN1_UTCTIME_dup(a) ASN1_STRING_dup(a)
1868*8fb009dcSAndroid Build Coastguard Worker #define M_ASN1_T61STRING_new() ASN1_T61STRING_new()
1869*8fb009dcSAndroid Build Coastguard Worker #define M_ASN1_T61STRING_free(a) ASN1_T61STRING_free(a)
1870*8fb009dcSAndroid Build Coastguard Worker #define M_ASN1_GENERALIZEDTIME_new() ASN1_GENERALIZEDTIME_new()
1871*8fb009dcSAndroid Build Coastguard Worker #define M_ASN1_GENERALIZEDTIME_free(a) ASN1_GENERALIZEDTIME_free(a)
1872*8fb009dcSAndroid Build Coastguard Worker #define M_ASN1_GENERALIZEDTIME_dup(a) ASN1_STRING_dup(a)
1873*8fb009dcSAndroid Build Coastguard Worker #define M_ASN1_GENERALSTRING_new() ASN1_GENERALSTRING_new()
1874*8fb009dcSAndroid Build Coastguard Worker #define M_ASN1_GENERALSTRING_free(a) ASN1_GENERALSTRING_free(a)
1875*8fb009dcSAndroid Build Coastguard Worker #define M_ASN1_UNIVERSALSTRING_new() ASN1_UNIVERSALSTRING_new()
1876*8fb009dcSAndroid Build Coastguard Worker #define M_ASN1_UNIVERSALSTRING_free(a) ASN1_UNIVERSALSTRING_free(a)
1877*8fb009dcSAndroid Build Coastguard Worker #define M_ASN1_BMPSTRING_new() ASN1_BMPSTRING_new()
1878*8fb009dcSAndroid Build Coastguard Worker #define M_ASN1_BMPSTRING_free(a) ASN1_BMPSTRING_free(a)
1879*8fb009dcSAndroid Build Coastguard Worker #define M_ASN1_VISIBLESTRING_new() ASN1_VISIBLESTRING_new()
1880*8fb009dcSAndroid Build Coastguard Worker #define M_ASN1_VISIBLESTRING_free(a) ASN1_VISIBLESTRING_free(a)
1881*8fb009dcSAndroid Build Coastguard Worker #define M_ASN1_UTF8STRING_new() ASN1_UTF8STRING_new()
1882*8fb009dcSAndroid Build Coastguard Worker #define M_ASN1_UTF8STRING_free(a) ASN1_UTF8STRING_free(a)
1883*8fb009dcSAndroid Build Coastguard Worker 
1884*8fb009dcSAndroid Build Coastguard Worker // B_ASN1_PRINTABLE is a bitmask for an ad-hoc subset of string-like types. Note
1885*8fb009dcSAndroid Build Coastguard Worker // the presence of |B_ASN1_UNKNOWN| means it includes types which |ASN1_tag2bit|
1886*8fb009dcSAndroid Build Coastguard Worker // maps to |B_ASN1_UNKNOWN|.
1887*8fb009dcSAndroid Build Coastguard Worker //
1888*8fb009dcSAndroid Build Coastguard Worker // Do not use this. Despite the name, it has no connection to PrintableString or
1889*8fb009dcSAndroid Build Coastguard Worker // printable characters. See https://crbug.com/boringssl/412.
1890*8fb009dcSAndroid Build Coastguard Worker #define B_ASN1_PRINTABLE                                              \
1891*8fb009dcSAndroid Build Coastguard Worker   (B_ASN1_NUMERICSTRING | B_ASN1_PRINTABLESTRING | B_ASN1_T61STRING | \
1892*8fb009dcSAndroid Build Coastguard Worker    B_ASN1_IA5STRING | B_ASN1_BIT_STRING | B_ASN1_UNIVERSALSTRING |    \
1893*8fb009dcSAndroid Build Coastguard Worker    B_ASN1_BMPSTRING | B_ASN1_UTF8STRING | B_ASN1_SEQUENCE | B_ASN1_UNKNOWN)
1894*8fb009dcSAndroid Build Coastguard Worker 
1895*8fb009dcSAndroid Build Coastguard Worker // ASN1_PRINTABLE_new returns a newly-allocated |ASN1_STRING| with type -1, or
1896*8fb009dcSAndroid Build Coastguard Worker // NULL on error. The resulting |ASN1_STRING| is not a valid ASN.1 value until
1897*8fb009dcSAndroid Build Coastguard Worker // initialized with a value.
1898*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT ASN1_STRING *ASN1_PRINTABLE_new(void);
1899*8fb009dcSAndroid Build Coastguard Worker 
1900*8fb009dcSAndroid Build Coastguard Worker // ASN1_PRINTABLE_free calls |ASN1_STRING_free|.
1901*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT void ASN1_PRINTABLE_free(ASN1_STRING *str);
1902*8fb009dcSAndroid Build Coastguard Worker 
1903*8fb009dcSAndroid Build Coastguard Worker // d2i_ASN1_PRINTABLE parses up to |len| bytes from |*inp| as a DER-encoded
1904*8fb009dcSAndroid Build Coastguard Worker // CHOICE of an ad-hoc subset of string-like types, as described in
1905*8fb009dcSAndroid Build Coastguard Worker // |d2i_SAMPLE|.
1906*8fb009dcSAndroid Build Coastguard Worker //
1907*8fb009dcSAndroid Build Coastguard Worker // Do not use this. Despite, the name it has no connection to PrintableString or
1908*8fb009dcSAndroid Build Coastguard Worker // printable characters. See https://crbug.com/boringssl/412.
1909*8fb009dcSAndroid Build Coastguard Worker //
1910*8fb009dcSAndroid Build Coastguard Worker // TODO(https://crbug.com/boringssl/354): This function currently also accepts
1911*8fb009dcSAndroid Build Coastguard Worker // BER, but this will be removed in the future.
1912*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT ASN1_STRING *d2i_ASN1_PRINTABLE(ASN1_STRING **out,
1913*8fb009dcSAndroid Build Coastguard Worker                                                const uint8_t **inp, long len);
1914*8fb009dcSAndroid Build Coastguard Worker 
1915*8fb009dcSAndroid Build Coastguard Worker // i2d_ASN1_PRINTABLE marshals |in| as DER, as described in |i2d_SAMPLE|.
1916*8fb009dcSAndroid Build Coastguard Worker //
1917*8fb009dcSAndroid Build Coastguard Worker // Do not use this. Despite the name, it has no connection to PrintableString or
1918*8fb009dcSAndroid Build Coastguard Worker // printable characters. See https://crbug.com/boringssl/412.
1919*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT int i2d_ASN1_PRINTABLE(const ASN1_STRING *in, uint8_t **outp);
1920*8fb009dcSAndroid Build Coastguard Worker 
1921*8fb009dcSAndroid Build Coastguard Worker // ASN1_PRINTABLE is an |ASN1_ITEM| whose ASN.1 type is a CHOICE of an ad-hoc
1922*8fb009dcSAndroid Build Coastguard Worker // subset of string-like types, and whose C type is |ASN1_STRING*|.
1923*8fb009dcSAndroid Build Coastguard Worker //
1924*8fb009dcSAndroid Build Coastguard Worker // Do not use this. Despite the name, it has no connection to PrintableString or
1925*8fb009dcSAndroid Build Coastguard Worker // printable characters. See https://crbug.com/boringssl/412.
1926*8fb009dcSAndroid Build Coastguard Worker DECLARE_ASN1_ITEM(ASN1_PRINTABLE)
1927*8fb009dcSAndroid Build Coastguard Worker 
1928*8fb009dcSAndroid Build Coastguard Worker // ASN1_INTEGER_set sets |a| to an INTEGER with value |v|. It returns one on
1929*8fb009dcSAndroid Build Coastguard Worker // success and zero on error.
1930*8fb009dcSAndroid Build Coastguard Worker //
1931*8fb009dcSAndroid Build Coastguard Worker // Use |ASN1_INTEGER_set_uint64| and |ASN1_INTEGER_set_int64| instead.
1932*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT int ASN1_INTEGER_set(ASN1_INTEGER *a, long v);
1933*8fb009dcSAndroid Build Coastguard Worker 
1934*8fb009dcSAndroid Build Coastguard Worker // ASN1_ENUMERATED_set sets |a| to an ENUMERATED with value |v|. It returns one
1935*8fb009dcSAndroid Build Coastguard Worker // on success and zero on error.
1936*8fb009dcSAndroid Build Coastguard Worker //
1937*8fb009dcSAndroid Build Coastguard Worker // Use |ASN1_ENUMERATED_set_uint64| and |ASN1_ENUMERATED_set_int64| instead.
1938*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT int ASN1_ENUMERATED_set(ASN1_ENUMERATED *a, long v);
1939*8fb009dcSAndroid Build Coastguard Worker 
1940*8fb009dcSAndroid Build Coastguard Worker // ASN1_INTEGER_get returns the value of |a| as a |long|, or -1 if |a| is out of
1941*8fb009dcSAndroid Build Coastguard Worker // range or the wrong type.
1942*8fb009dcSAndroid Build Coastguard Worker //
1943*8fb009dcSAndroid Build Coastguard Worker // WARNING: This function's return value cannot distinguish errors from -1.
1944*8fb009dcSAndroid Build Coastguard Worker // Use |ASN1_INTEGER_get_uint64| and |ASN1_INTEGER_get_int64| instead.
1945*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT long ASN1_INTEGER_get(const ASN1_INTEGER *a);
1946*8fb009dcSAndroid Build Coastguard Worker 
1947*8fb009dcSAndroid Build Coastguard Worker // ASN1_ENUMERATED_get returns the value of |a| as a |long|, or -1 if |a| is out
1948*8fb009dcSAndroid Build Coastguard Worker // of range or the wrong type.
1949*8fb009dcSAndroid Build Coastguard Worker //
1950*8fb009dcSAndroid Build Coastguard Worker // WARNING: This function's return value cannot distinguish errors from -1.
1951*8fb009dcSAndroid Build Coastguard Worker // Use |ASN1_ENUMERATED_get_uint64| and |ASN1_ENUMERATED_get_int64| instead.
1952*8fb009dcSAndroid Build Coastguard Worker OPENSSL_EXPORT long ASN1_ENUMERATED_get(const ASN1_ENUMERATED *a);
1953*8fb009dcSAndroid Build Coastguard Worker 
1954*8fb009dcSAndroid Build Coastguard Worker 
1955*8fb009dcSAndroid Build Coastguard Worker #if defined(__cplusplus)
1956*8fb009dcSAndroid Build Coastguard Worker }  // extern C
1957*8fb009dcSAndroid Build Coastguard Worker 
1958*8fb009dcSAndroid Build Coastguard Worker extern "C++" {
1959*8fb009dcSAndroid Build Coastguard Worker 
1960*8fb009dcSAndroid Build Coastguard Worker BSSL_NAMESPACE_BEGIN
1961*8fb009dcSAndroid Build Coastguard Worker 
1962*8fb009dcSAndroid Build Coastguard Worker BORINGSSL_MAKE_DELETER(ASN1_OBJECT, ASN1_OBJECT_free)
1963*8fb009dcSAndroid Build Coastguard Worker BORINGSSL_MAKE_DELETER(ASN1_STRING, ASN1_STRING_free)
1964*8fb009dcSAndroid Build Coastguard Worker BORINGSSL_MAKE_DELETER(ASN1_TYPE, ASN1_TYPE_free)
1965*8fb009dcSAndroid Build Coastguard Worker 
1966*8fb009dcSAndroid Build Coastguard Worker BSSL_NAMESPACE_END
1967*8fb009dcSAndroid Build Coastguard Worker 
1968*8fb009dcSAndroid Build Coastguard Worker }  // extern C++
1969*8fb009dcSAndroid Build Coastguard Worker 
1970*8fb009dcSAndroid Build Coastguard Worker #endif
1971*8fb009dcSAndroid Build Coastguard Worker 
1972*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_ASN1_LENGTH_MISMATCH 100
1973*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_AUX_ERROR 101
1974*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_BAD_GET_ASN1_OBJECT_CALL 102
1975*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_BAD_OBJECT_HEADER 103
1976*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_BMPSTRING_IS_WRONG_LENGTH 104
1977*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_BN_LIB 105
1978*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_BOOLEAN_IS_WRONG_LENGTH 106
1979*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_BUFFER_TOO_SMALL 107
1980*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_CONTEXT_NOT_INITIALISED 108
1981*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_DECODE_ERROR 109
1982*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_DEPTH_EXCEEDED 110
1983*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_DIGEST_AND_KEY_TYPE_NOT_SUPPORTED 111
1984*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_ENCODE_ERROR 112
1985*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_ERROR_GETTING_TIME 113
1986*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_EXPECTING_AN_ASN1_SEQUENCE 114
1987*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_EXPECTING_AN_INTEGER 115
1988*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_EXPECTING_AN_OBJECT 116
1989*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_EXPECTING_A_BOOLEAN 117
1990*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_EXPECTING_A_TIME 118
1991*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_EXPLICIT_LENGTH_MISMATCH 119
1992*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_EXPLICIT_TAG_NOT_CONSTRUCTED 120
1993*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_FIELD_MISSING 121
1994*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_FIRST_NUM_TOO_LARGE 122
1995*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_HEADER_TOO_LONG 123
1996*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_ILLEGAL_BITSTRING_FORMAT 124
1997*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_ILLEGAL_BOOLEAN 125
1998*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_ILLEGAL_CHARACTERS 126
1999*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_ILLEGAL_FORMAT 127
2000*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_ILLEGAL_HEX 128
2001*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_ILLEGAL_IMPLICIT_TAG 129
2002*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_ILLEGAL_INTEGER 130
2003*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_ILLEGAL_NESTED_TAGGING 131
2004*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_ILLEGAL_NULL 132
2005*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_ILLEGAL_NULL_VALUE 133
2006*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_ILLEGAL_OBJECT 134
2007*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_ILLEGAL_OPTIONAL_ANY 135
2008*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_ILLEGAL_OPTIONS_ON_ITEM_TEMPLATE 136
2009*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_ILLEGAL_TAGGED_ANY 137
2010*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_ILLEGAL_TIME_VALUE 138
2011*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_INTEGER_NOT_ASCII_FORMAT 139
2012*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_INTEGER_TOO_LARGE_FOR_LONG 140
2013*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_INVALID_BIT_STRING_BITS_LEFT 141
2014*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_INVALID_BMPSTRING 142
2015*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_INVALID_DIGIT 143
2016*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_INVALID_MODIFIER 144
2017*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_INVALID_NUMBER 145
2018*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_INVALID_OBJECT_ENCODING 146
2019*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_INVALID_SEPARATOR 147
2020*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_INVALID_TIME_FORMAT 148
2021*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_INVALID_UNIVERSALSTRING 149
2022*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_INVALID_UTF8STRING 150
2023*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_LIST_ERROR 151
2024*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_MISSING_ASN1_EOS 152
2025*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_MISSING_EOC 153
2026*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_MISSING_SECOND_NUMBER 154
2027*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_MISSING_VALUE 155
2028*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_MSTRING_NOT_UNIVERSAL 156
2029*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_MSTRING_WRONG_TAG 157
2030*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_NESTED_ASN1_ERROR 158
2031*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_NESTED_ASN1_STRING 159
2032*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_NON_HEX_CHARACTERS 160
2033*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_NOT_ASCII_FORMAT 161
2034*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_NOT_ENOUGH_DATA 162
2035*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_NO_MATCHING_CHOICE_TYPE 163
2036*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_NULL_IS_WRONG_LENGTH 164
2037*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_OBJECT_NOT_ASCII_FORMAT 165
2038*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_ODD_NUMBER_OF_CHARS 166
2039*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_SECOND_NUMBER_TOO_LARGE 167
2040*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_SEQUENCE_LENGTH_MISMATCH 168
2041*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_SEQUENCE_NOT_CONSTRUCTED 169
2042*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_SEQUENCE_OR_SET_NEEDS_CONFIG 170
2043*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_SHORT_LINE 171
2044*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_STREAMING_NOT_SUPPORTED 172
2045*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_STRING_TOO_LONG 173
2046*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_STRING_TOO_SHORT 174
2047*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_TAG_VALUE_TOO_HIGH 175
2048*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_TIME_NOT_ASCII_FORMAT 176
2049*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_TOO_LONG 177
2050*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_TYPE_NOT_CONSTRUCTED 178
2051*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_TYPE_NOT_PRIMITIVE 179
2052*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_UNEXPECTED_EOC 180
2053*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_UNIVERSALSTRING_IS_WRONG_LENGTH 181
2054*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_UNKNOWN_FORMAT 182
2055*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_UNKNOWN_MESSAGE_DIGEST_ALGORITHM 183
2056*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_UNKNOWN_SIGNATURE_ALGORITHM 184
2057*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_UNKNOWN_TAG 185
2058*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_UNSUPPORTED_ANY_DEFINED_BY_TYPE 186
2059*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_UNSUPPORTED_PUBLIC_KEY_TYPE 187
2060*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_UNSUPPORTED_TYPE 188
2061*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_WRONG_PUBLIC_KEY_TYPE 189
2062*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_WRONG_TAG 190
2063*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_WRONG_TYPE 191
2064*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_NESTED_TOO_DEEP 192
2065*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_BAD_TEMPLATE 193
2066*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_INVALID_BIT_STRING_PADDING 194
2067*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_WRONG_INTEGER_TYPE 195
2068*8fb009dcSAndroid Build Coastguard Worker #define ASN1_R_INVALID_INTEGER 196
2069*8fb009dcSAndroid Build Coastguard Worker 
2070*8fb009dcSAndroid Build Coastguard Worker #endif  // OPENSSL_HEADER_ASN1_H
2071