AttributeCertificateIssuer.cs 3.8 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182
  1. #if !BESTHTTP_DISABLE_ALTERNATE_SSL && (!UNITY_WEBGL || UNITY_EDITOR)
  2. #pragma warning disable
  3. using System;
  4. using Best.HTTP.SecureProtocol.Org.BouncyCastle.Asn1;
  5. using Best.HTTP.SecureProtocol.Org.BouncyCastle.Asn1.X509;
  6. using Best.HTTP.SecureProtocol.Org.BouncyCastle.Utilities.Collections;
  7. namespace Best.HTTP.SecureProtocol.Org.BouncyCastle.X509
  8. {
  9. /**
  10. * Carrying class for an attribute certificate issuer.
  11. */
  12. public class AttributeCertificateIssuer
  13. //: CertSelector, Selector
  14. : ISelector<X509Certificate>
  15. {
  16. internal readonly Asn1Encodable form;
  17. /**
  18. * Set the issuer directly with the ASN.1 structure.
  19. *
  20. * @param issuer The issuer
  21. */
  22. public AttributeCertificateIssuer(
  23. AttCertIssuer issuer)
  24. {
  25. form = issuer.Issuer;
  26. }
  27. public AttributeCertificateIssuer(
  28. X509Name principal)
  29. {
  30. // form = new V2Form(GeneralNames.GetInstance(new DerSequence(new GeneralName(principal))));
  31. form = new V2Form(new GeneralNames(new GeneralName(principal)));
  32. }
  33. private object[] GetNames()
  34. {
  35. GeneralNames name;
  36. if (form is V2Form)
  37. {
  38. name = ((V2Form)form).IssuerName;
  39. }
  40. else
  41. {
  42. name = (GeneralNames)form;
  43. }
  44. GeneralName[] names = name.GetNames();
  45. int count = 0;
  46. for (int i = 0; i != names.Length; i++)
  47. {
  48. if (names[i].TagNo == GeneralName.DirectoryName)
  49. {
  50. ++count;
  51. }
  52. }
  53. object[] result = new object[count];
  54. int pos = 0;
  55. for (int i = 0; i != names.Length; i++)
  56. {
  57. if (names[i].TagNo == GeneralName.DirectoryName)
  58. {
  59. result[pos++] = X509Name.GetInstance(names[i].Name);
  60. }
  61. }
  62. return result;
  63. }
  64. /// <summary>Return any principal objects inside the attribute certificate issuer object.</summary>
  65. /// <returns>An array of IPrincipal objects (usually X509Principal).</returns>
  66. public X509Name[] GetPrincipals()
  67. {
  68. object[] p = this.GetNames();
  69. int count = 0;
  70. for (int i = 0; i != p.Length; i++)
  71. {
  72. if (p[i] is X509Name)
  73. {
  74. ++count;
  75. }
  76. }
  77. X509Name[] result = new X509Name[count];
  78. int pos = 0;
  79. for (int i = 0; i != p.Length; i++)
  80. {
  81. if (p[i] is X509Name)
  82. {
  83. result[pos++] = (X509Name)p[i];
  84. }
  85. }
  86. return result;
  87. }
  88. private bool MatchesDN(
  89. X509Name subject,
  90. GeneralNames targets)
  91. {
  92. GeneralName[] names = targets.GetNames();
  93. for (int i = 0; i != names.Length; i++)
  94. {
  95. GeneralName gn = names[i];
  96. if (gn.TagNo == GeneralName.DirectoryName)
  97. {
  98. try
  99. {
  100. if (X509Name.GetInstance(gn.Name).Equivalent(subject))
  101. {
  102. return true;
  103. }
  104. }
  105. catch (Exception)
  106. {
  107. }
  108. }
  109. }
  110. return false;
  111. }
  112. public object Clone()
  113. {
  114. return new AttributeCertificateIssuer(AttCertIssuer.GetInstance(form));
  115. }
  116. public bool Match(X509Certificate x509Cert)
  117. {
  118. if (x509Cert == null)
  119. return false;
  120. if (form is V2Form)
  121. {
  122. V2Form issuer = (V2Form) form;
  123. if (issuer.BaseCertificateID != null)
  124. {
  125. return issuer.BaseCertificateID.Serial.HasValue(x509Cert.SerialNumber)
  126. && MatchesDN(x509Cert.IssuerDN, issuer.BaseCertificateID.Issuer);
  127. }
  128. return MatchesDN(x509Cert.SubjectDN, issuer.IssuerName);
  129. }
  130. return MatchesDN(x509Cert.SubjectDN, (GeneralNames) form);
  131. }
  132. public override bool Equals(
  133. object obj)
  134. {
  135. if (obj == this)
  136. {
  137. return true;
  138. }
  139. if (!(obj is AttributeCertificateIssuer))
  140. {
  141. return false;
  142. }
  143. AttributeCertificateIssuer other = (AttributeCertificateIssuer)obj;
  144. return this.form.Equals(other.form);
  145. }
  146. public override int GetHashCode()
  147. {
  148. return this.form.GetHashCode();
  149. }
  150. }
  151. }
  152. #pragma warning restore
  153. #endif