当前位置: 首页>>代码示例>>Java>>正文


Java RespID类代码示例

本文整理汇总了Java中org.bouncycastle.cert.ocsp.RespID的典型用法代码示例。如果您正苦于以下问题:Java RespID类的具体用法?Java RespID怎么用?Java RespID使用的例子?那么恭喜您, 这里精选的类代码示例或许可以为您提供帮助。


RespID类属于org.bouncycastle.cert.ocsp包,在下文中一共展示了RespID类的2个代码示例,这些例子默认根据受欢迎程度排序。您可以为喜欢或者感觉有用的代码点赞,您的评价将有助于系统推荐出更棒的Java代码示例。

示例1: extractSigningCertificateFormResponderId

import org.bouncycastle.cert.ocsp.RespID; //导入依赖的package包/类
private void extractSigningCertificateFormResponderId(OCSPToken ocspToken) {
	BasicOCSPResp basicOCSPResp = ocspToken.getBasicOCSPResp();
	if (basicOCSPResp != null) {
		final RespID responderId = basicOCSPResp.getResponderId();
		final ResponderID responderIdAsASN1Object = responderId.toASN1Primitive();
		final DERTaggedObject derTaggedObject = (DERTaggedObject) responderIdAsASN1Object.toASN1Primitive();
		if (2 == derTaggedObject.getTagNo()) {
			throw new DSSException("Certificate's key hash management not implemented yet!");
		}
		final ASN1Primitive derObject = derTaggedObject.getObject();
		final byte[] derEncoded = DSSASN1Utils.getDEREncoded(derObject);
		final X500Principal x500Principal_ = new X500Principal(derEncoded);
		final X500Principal x500Principal = DSSUtils.getNormalizedX500Principal(x500Principal_);
		final List<CertificateToken> certificateTokens = validationCertPool.get(x500Principal);
		for (final CertificateToken issuerCertificateToken : certificateTokens) {
			if (ocspToken.isSignedBy(issuerCertificateToken)) {
				break;
			}
		}
	}
}
 
开发者ID:esig,项目名称:dss,代码行数:22,代码来源:OCSPCertificateVerifier.java

示例2: findOcspCertificate

import org.bouncycastle.cert.ocsp.RespID; //导入依赖的package包/类
private X509Cert findOcspCertificate() {
  String rId = "";
  try {
    RespID responderId = ocspResponse.getResponderId();
    rId = responderId.toString();
    String primitiveName = getCN(responderId.toASN1Primitive().getName());
    byte[] keyHash = responderId.toASN1Primitive().getKeyHash();

    boolean isKeyHash = useKeyHashForOCSP(primitiveName, keyHash);

    if (isKeyHash) {
      logger.debug("Using keyHash {} for OCSP certificate match", keyHash);
    } else {
      logger.debug("Using ASN1Primitive {} for OCSP certificate match", primitiveName);
    }

    for (CertificateToken cert : getDssSignature().getCertificates()) {
      if (isKeyHash) {
        ASN1Primitive skiPrimitive = JcaX509ExtensionUtils.parseExtensionValue(
            cert.getCertificate().getExtensionValue(Extension.subjectKeyIdentifier.getId()));
        byte[] keyIdentifier = ASN1OctetString.getInstance(skiPrimitive.getEncoded()).getOctets();
        if (Arrays.equals(keyHash, keyIdentifier)) {
          return new X509Cert(cert.getCertificate());
        }
      } else {
        String certCn = getCN(new X500Name(cert.getSubjectX500Principal().getName()));
        if (StringUtils.equals(certCn, primitiveName)) {
          return new X509Cert(cert.getCertificate());
        }
      }
    }

  } catch (IOException e) {
    logger.error("Unable to wrap and extract SubjectKeyIdentifier from certificate - technical error. {}", e);
  }

  logger.error("OCSP certificate for " + rId + " was not found in TSL");
  throw new CertificateNotFoundException("OCSP certificate for " + rId + " was not found in TSL");
}
 
开发者ID:open-eid,项目名称:digidoc4j,代码行数:40,代码来源:TimemarkSignature.java


注:本文中的org.bouncycastle.cert.ocsp.RespID类示例由纯净天空整理自Github/MSDocs等开源代码及文档管理平台,相关代码片段筛选自各路编程大神贡献的开源项目,源码版权归原作者所有,传播和使用请参考对应项目的License;未经允许,请勿转载。