• 设为首页
  • 点击收藏
  • 手机版
    手机扫一扫访问
    迪恩网络手机版
  • 关注官方公众号
    微信扫一扫关注
    迪恩网络公众号

Java RespID类代码示例

原作者: [db:作者] 来自: [db:来源] 收藏 邀请

本文整理汇总了Java中org.bouncycastle.cert.ocsp.RespID的典型用法代码示例。如果您正苦于以下问题:Java RespID类的具体用法?Java RespID怎么用?Java RespID使用的例子?那么恭喜您, 这里精选的类代码示例或许可以为您提供帮助。



RespID类属于org.bouncycastle.cert.ocsp包,在下文中一共展示了RespID类的2个代码示例,这些例子默认根据受欢迎程度排序。您可以为喜欢或者感觉有用的代码点赞,您的评价将有助于我们的系统推荐出更棒的Java代码示例。

示例1: extractSigningCertificateFormResponderId

import org.bouncycastle.cert.ocsp.RespID; //导入依赖的package包/类
private void extractSigningCertificateFormResponderId(OCSPToken ocspToken) {
	BasicOCSPResp basicOCSPResp = ocspToken.getBasicOCSPResp();
	if (basicOCSPResp != null) {
		final RespID responderId = basicOCSPResp.getResponderId();
		final ResponderID responderIdAsASN1Object = responderId.toASN1Primitive();
		final DERTaggedObject derTaggedObject = (DERTaggedObject) responderIdAsASN1Object.toASN1Primitive();
		if (2 == derTaggedObject.getTagNo()) {
			throw new DSSException("Certificate's key hash management not implemented yet!");
		}
		final ASN1Primitive derObject = derTaggedObject.getObject();
		final byte[] derEncoded = DSSASN1Utils.getDEREncoded(derObject);
		final X500Principal x500Principal_ = new X500Principal(derEncoded);
		final X500Principal x500Principal = DSSUtils.getNormalizedX500Principal(x500Principal_);
		final List<CertificateToken> certificateTokens = validationCertPool.get(x500Principal);
		for (final CertificateToken issuerCertificateToken : certificateTokens) {
			if (ocspToken.isSignedBy(issuerCertificateToken)) {
				break;
			}
		}
	}
}
 
开发者ID:esig,项目名称:dss,代码行数:22,代码来源:OCSPCertificateVerifier.java


示例2: findOcspCertificate

import org.bouncycastle.cert.ocsp.RespID; //导入依赖的package包/类
private X509Cert findOcspCertificate() {
  String rId = "";
  try {
    RespID responderId = ocspResponse.getResponderId();
    rId = responderId.toString();
    String primitiveName = getCN(responderId.toASN1Primitive().getName());
    byte[] keyHash = responderId.toASN1Primitive().getKeyHash();

    boolean isKeyHash = useKeyHashForOCSP(primitiveName, keyHash);

    if (isKeyHash) {
      logger.debug("Using keyHash {} for OCSP certificate match", keyHash);
    } else {
      logger.debug("Using ASN1Primitive {} for OCSP certificate match", primitiveName);
    }

    for (CertificateToken cert : getDssSignature().getCertificates()) {
      if (isKeyHash) {
        ASN1Primitive skiPrimitive = JcaX509ExtensionUtils.parseExtensionValue(
            cert.getCertificate().getExtensionValue(Extension.subjectKeyIdentifier.getId()));
        byte[] keyIdentifier = ASN1OctetString.getInstance(skiPrimitive.getEncoded()).getOctets();
        if (Arrays.equals(keyHash, keyIdentifier)) {
          return new X509Cert(cert.getCertificate());
        }
      } else {
        String certCn = getCN(new X500Name(cert.getSubjectX500Principal().getName()));
        if (StringUtils.equals(certCn, primitiveName)) {
          return new X509Cert(cert.getCertificate());
        }
      }
    }

  } catch (IOException e) {
    logger.error("Unable to wrap and extract SubjectKeyIdentifier from certificate - technical error. {}", e);
  }

  logger.error("OCSP certificate for " + rId + " was not found in TSL");
  throw new CertificateNotFoundException("OCSP certificate for " + rId + " was not found in TSL");
}
 
开发者ID:open-eid,项目名称:digidoc4j,代码行数:40,代码来源:TimemarkSignature.java



注:本文中的org.bouncycastle.cert.ocsp.RespID类示例整理自Github/MSDocs等源码及文档管理平台,相关代码片段筛选自各路编程大神贡献的开源项目,源码版权归原作者所有,传播和使用请参考对应项目的License;未经允许,请勿转载。


鲜花

握手

雷人

路过

鸡蛋
该文章已有0人参与评论

请发表评论

全部评论

专题导读
上一篇:
Java IModelManager类代码示例发布时间:2022-05-22
下一篇:
Java IdKey类代码示例发布时间:2022-05-22
热门推荐
阅读排行榜

扫描微信二维码

查看手机版网站

随时了解更新最新资讯

139-2527-9053

在线客服(服务时间 9:00~18:00)

在线QQ客服
地址:深圳市南山区西丽大学城创智工业园
电邮:jeky_zhao#qq.com
移动电话:139-2527-9053

Powered by 互联科技 X3.4© 2001-2213 极客世界.|Sitemap