Package org.bouncycastle.cert
Class X509CertificateHolder
java.lang.Object
org.bouncycastle.cert.X509CertificateHolder
- All Implemented Interfaces:
Serializable,org.bouncycastle.util.Encodable
- Direct Known Subclasses:
JcaX509CertificateHolder
public class X509CertificateHolder
extends Object
implements org.bouncycastle.util.Encodable, Serializable
Holding class for an X.509 Certificate structure.
- See Also:
-
Constructor Summary
ConstructorsConstructorDescriptionX509CertificateHolder(byte[] certEncoding) Create a X509CertificateHolder from the passed in bytes.X509CertificateHolder(org.bouncycastle.asn1.x509.Certificate x509Certificate) Create a X509CertificateHolder from the passed in ASN.1 structure. -
Method Summary
Modifier and TypeMethodDescriptionbooleanReturns a set of ASN1ObjectIdentifier objects representing the OIDs of the critical extensions contained in this holder's certificate.byte[]Return the ASN.1 encoding of this holder's certificate.org.bouncycastle.asn1.x509.ExtensiongetExtension(org.bouncycastle.asn1.ASN1ObjectIdentifier oid) Look up the extension associated with the passed in OID.Returns a list of ASN1ObjectIdentifier objects representing the OIDs of the extensions contained in this holder's certificate.org.bouncycastle.asn1.x509.ExtensionsReturn the extensions block associated with this certificate if there is one.org.bouncycastle.asn1.x500.X500NameReturn the issuer of this certificate.Returns a set of ASN1ObjectIdentifier objects representing the OIDs of the non-critical extensions contained in this holder's certificate.Return the date after which this certificate is not valid.Return the date before which this certificate is not valid.Return the serial number of this attribute certificate.byte[]Return the bytes making up the signature associated with this certificate.org.bouncycastle.asn1.x509.AlgorithmIdentifierReturn the details of the signature algorithm used to create this attribute certificate.org.bouncycastle.asn1.x500.X500NameReturn the subject this certificate is for.org.bouncycastle.asn1.x509.SubjectPublicKeyInfoReturn the SubjectPublicKeyInfo describing the public key this certificate is carrying.org.bouncycastle.asn1.x509.TBSCertificateintDeprecated.use getVersionNumberintbooleanReturn whether or not the holder's certificate contains extensions.inthashCode()booleanisAlternativeSignatureValid(ContentVerifierProvider verifierProvider) Validate the signature on the certificate in this holder.booleanisSignatureValid(ContentVerifierProvider verifierProvider) Validate the signature on the certificate in this holder.booleanReturn whether or not this certificate is valid on a particular date.org.bouncycastle.asn1.x509.CertificateReturn the underlying ASN.1 structure for the certificate in this holder.
-
Constructor Details
-
X509CertificateHolder
Create a X509CertificateHolder from the passed in bytes.- Parameters:
certEncoding- BER/DER encoding of the certificate.- Throws:
IOException- in the event of corrupted data, or an incorrect structure.
-
X509CertificateHolder
public X509CertificateHolder(org.bouncycastle.asn1.x509.Certificate x509Certificate) Create a X509CertificateHolder from the passed in ASN.1 structure.- Parameters:
x509Certificate- an ASN.1 Certificate structure.
-
-
Method Details
-
getVersionNumber
public int getVersionNumber() -
getVersion
public int getVersion()Deprecated.use getVersionNumber -
hasExtensions
public boolean hasExtensions()Return whether or not the holder's certificate contains extensions.- Returns:
- true if extension are present, false otherwise.
-
getExtension
public org.bouncycastle.asn1.x509.Extension getExtension(org.bouncycastle.asn1.ASN1ObjectIdentifier oid) Look up the extension associated with the passed in OID.- Parameters:
oid- the OID of the extension of interest.- Returns:
- the extension if present, null otherwise.
-
getExtensions
public org.bouncycastle.asn1.x509.Extensions getExtensions()Return the extensions block associated with this certificate if there is one.- Returns:
- the extensions block, null otherwise.
-
getExtensionOIDs
Returns a list of ASN1ObjectIdentifier objects representing the OIDs of the extensions contained in this holder's certificate.- Returns:
- a list of extension OIDs.
-
getCriticalExtensionOIDs
Returns a set of ASN1ObjectIdentifier objects representing the OIDs of the critical extensions contained in this holder's certificate.- Returns:
- a set of critical extension OIDs.
-
getNonCriticalExtensionOIDs
Returns a set of ASN1ObjectIdentifier objects representing the OIDs of the non-critical extensions contained in this holder's certificate.- Returns:
- a set of non-critical extension OIDs.
-
getSerialNumber
Return the serial number of this attribute certificate.- Returns:
- the serial number.
-
getIssuer
public org.bouncycastle.asn1.x500.X500Name getIssuer()Return the issuer of this certificate.- Returns:
- the certificate issuer.
-
getSubject
public org.bouncycastle.asn1.x500.X500Name getSubject()Return the subject this certificate is for.- Returns:
- the subject for the certificate.
-
getNotBefore
Return the date before which this certificate is not valid.- Returns:
- the start time for the certificate's validity period.
-
getNotAfter
Return the date after which this certificate is not valid.- Returns:
- the final time for the certificate's validity period.
-
getSubjectPublicKeyInfo
public org.bouncycastle.asn1.x509.SubjectPublicKeyInfo getSubjectPublicKeyInfo()Return the SubjectPublicKeyInfo describing the public key this certificate is carrying.- Returns:
- the public key ASN.1 structure contained in the certificate.
-
getTBSCertificate
public org.bouncycastle.asn1.x509.TBSCertificate getTBSCertificate() -
toASN1Structure
public org.bouncycastle.asn1.x509.Certificate toASN1Structure()Return the underlying ASN.1 structure for the certificate in this holder.- Returns:
- a Certificate object.
-
getSignatureAlgorithm
public org.bouncycastle.asn1.x509.AlgorithmIdentifier getSignatureAlgorithm()Return the details of the signature algorithm used to create this attribute certificate.- Returns:
- the AlgorithmIdentifier describing the signature algorithm used to create this attribute certificate.
-
getSignature
public byte[] getSignature()Return the bytes making up the signature associated with this certificate.- Returns:
- the certificate signature bytes.
-
isValidOn
Return whether or not this certificate is valid on a particular date.- Parameters:
date- the date of interest.- Returns:
- true if the certificate is valid, false otherwise.
-
isSignatureValid
Validate the signature on the certificate in this holder.- Parameters:
verifierProvider- a ContentVerifierProvider that can generate a verifier for the signature.- Returns:
- true if the signature is valid, false otherwise.
- Throws:
CertException- if the signature cannot be processed or is inappropriate.
-
isAlternativeSignatureValid
public boolean isAlternativeSignatureValid(ContentVerifierProvider verifierProvider) throws CertException Validate the signature on the certificate in this holder.- Parameters:
verifierProvider- a ContentVerifierProvider that can generate a verifier for the signature.- Returns:
- true if the signature is valid, false otherwise.
- Throws:
CertException- if the signature cannot be processed or is inappropriate.
-
equals
-
hashCode
public int hashCode() -
getEncoded
Return the ASN.1 encoding of this holder's certificate.- Specified by:
getEncodedin interfaceorg.bouncycastle.util.Encodable- Returns:
- a DER encoded byte array.
- Throws:
IOException- if an encoding cannot be generated.
-