AttributeCertificateIssuer.cs 4.1 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195
  1. #if !BESTHTTP_DISABLE_ALTERNATE_SSL && (!UNITY_WEBGL || UNITY_EDITOR)
  2. #pragma warning disable
  3. using System;
  4. using System.Collections;
  5. using BestHTTP.SecureProtocol.Org.BouncyCastle.Asn1;
  6. using BestHTTP.SecureProtocol.Org.BouncyCastle.Asn1.X509;
  7. using BestHTTP.SecureProtocol.Org.BouncyCastle.Security;
  8. using BestHTTP.SecureProtocol.Org.BouncyCastle.Utilities;
  9. using BestHTTP.SecureProtocol.Org.BouncyCastle.X509.Store;
  10. namespace BestHTTP.SecureProtocol.Org.BouncyCastle.X509
  11. {
  12. /**
  13. * Carrying class for an attribute certificate issuer.
  14. */
  15. public class AttributeCertificateIssuer
  16. //: CertSelector, Selector
  17. : IX509Selector
  18. {
  19. internal readonly Asn1Encodable form;
  20. /**
  21. * Set the issuer directly with the ASN.1 structure.
  22. *
  23. * @param issuer The issuer
  24. */
  25. public AttributeCertificateIssuer(
  26. AttCertIssuer issuer)
  27. {
  28. form = issuer.Issuer;
  29. }
  30. public AttributeCertificateIssuer(
  31. X509Name principal)
  32. {
  33. // form = new V2Form(GeneralNames.GetInstance(new DerSequence(new GeneralName(principal))));
  34. form = new V2Form(new GeneralNames(new GeneralName(principal)));
  35. }
  36. private object[] GetNames()
  37. {
  38. GeneralNames name;
  39. if (form is V2Form)
  40. {
  41. name = ((V2Form)form).IssuerName;
  42. }
  43. else
  44. {
  45. name = (GeneralNames)form;
  46. }
  47. GeneralName[] names = name.GetNames();
  48. int count = 0;
  49. for (int i = 0; i != names.Length; i++)
  50. {
  51. if (names[i].TagNo == GeneralName.DirectoryName)
  52. {
  53. ++count;
  54. }
  55. }
  56. object[] result = new object[count];
  57. int pos = 0;
  58. for (int i = 0; i != names.Length; i++)
  59. {
  60. if (names[i].TagNo == GeneralName.DirectoryName)
  61. {
  62. result[pos++] = X509Name.GetInstance(names[i].Name);
  63. }
  64. }
  65. return result;
  66. }
  67. /// <summary>Return any principal objects inside the attribute certificate issuer object.</summary>
  68. /// <returns>An array of IPrincipal objects (usually X509Principal).</returns>
  69. public X509Name[] GetPrincipals()
  70. {
  71. object[] p = this.GetNames();
  72. int count = 0;
  73. for (int i = 0; i != p.Length; i++)
  74. {
  75. if (p[i] is X509Name)
  76. {
  77. ++count;
  78. }
  79. }
  80. X509Name[] result = new X509Name[count];
  81. int pos = 0;
  82. for (int i = 0; i != p.Length; i++)
  83. {
  84. if (p[i] is X509Name)
  85. {
  86. result[pos++] = (X509Name)p[i];
  87. }
  88. }
  89. return result;
  90. }
  91. private bool MatchesDN(
  92. X509Name subject,
  93. GeneralNames targets)
  94. {
  95. GeneralName[] names = targets.GetNames();
  96. for (int i = 0; i != names.Length; i++)
  97. {
  98. GeneralName gn = names[i];
  99. if (gn.TagNo == GeneralName.DirectoryName)
  100. {
  101. try
  102. {
  103. if (X509Name.GetInstance(gn.Name).Equivalent(subject))
  104. {
  105. return true;
  106. }
  107. }
  108. catch (Exception)
  109. {
  110. }
  111. }
  112. }
  113. return false;
  114. }
  115. public object Clone()
  116. {
  117. return new AttributeCertificateIssuer(AttCertIssuer.GetInstance(form));
  118. }
  119. public bool Match(
  120. X509Certificate x509Cert)
  121. {
  122. if (form is V2Form)
  123. {
  124. V2Form issuer = (V2Form) form;
  125. if (issuer.BaseCertificateID != null)
  126. {
  127. return issuer.BaseCertificateID.Serial.HasValue(x509Cert.SerialNumber)
  128. && MatchesDN(x509Cert.IssuerDN, issuer.BaseCertificateID.Issuer);
  129. }
  130. return MatchesDN(x509Cert.SubjectDN, issuer.IssuerName);
  131. }
  132. return MatchesDN(x509Cert.SubjectDN, (GeneralNames) form);
  133. }
  134. public override bool Equals(
  135. object obj)
  136. {
  137. if (obj == this)
  138. {
  139. return true;
  140. }
  141. if (!(obj is AttributeCertificateIssuer))
  142. {
  143. return false;
  144. }
  145. AttributeCertificateIssuer other = (AttributeCertificateIssuer)obj;
  146. return this.form.Equals(other.form);
  147. }
  148. public override int GetHashCode()
  149. {
  150. return this.form.GetHashCode();
  151. }
  152. public bool Match(
  153. object obj)
  154. {
  155. if (!(obj is X509Certificate))
  156. {
  157. return false;
  158. }
  159. //return Match((Certificate)obj);
  160. return Match((X509Certificate)obj);
  161. }
  162. }
  163. }
  164. #pragma warning restore
  165. #endif