/* * * Copyright (c) 2013 - 2017 Lijun Liao * * This program is free software; you can redistribute it and/or modify * it under the terms of the GNU Affero General Public License version 3 * as published by the Free Software Foundation with the addition of the * following permission added to Section 15 as permitted in Section 7(a): * * FOR ANY PART OF THE COVERED WORK IN WHICH THE COPYRIGHT IS OWNED BY * THE AUTHOR LIJUN LIAO. LIJUN LIAO DISCLAIMS THE WARRANTY OF NON INFRINGEMENT * OF THIRD PARTY RIGHTS. * * This program is distributed in the hope that it will be useful, * but WITHOUT ANY WARRANTY; without even the implied warranty of * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the * GNU Affero General Public License for more details. * * You should have received a copy of the GNU Affero General Public License * along with this program. If not, see <http://www.gnu.org/licenses/>. * * The interactive user interfaces in modified source and object code versions * of this program must display Appropriate Legal Notices, as required under * Section 5 of the GNU Affero General Public License. * * You can be released from the requirements of the license by purchasing * a commercial license. Buying such a license is mandatory as soon as you * develop commercial activities involving the XiPKI software without * disclosing the source code of your own applications. * * For more information, please contact Lijun Liao at this * address: lijun.liao@gmail.com */ package org.xipki.commons.security.pkcs11.proxy.msg; import java.io.IOException; import java.security.cert.CertificateEncodingException; import java.security.cert.X509Certificate; import org.bouncycastle.asn1.ASN1EncodableVector; import org.bouncycastle.asn1.ASN1Object; import org.bouncycastle.asn1.ASN1Primitive; import org.bouncycastle.asn1.ASN1Sequence; import org.bouncycastle.asn1.DERSequence; import org.bouncycastle.asn1.x509.Certificate; import org.xipki.commons.common.util.ParamUtil; import org.xipki.commons.security.exception.BadAsn1ObjectException; import org.xipki.commons.security.pkcs11.P11EntityIdentifier; /** * <pre> * EntityIdAndCert ::= SEQUENCE { * entityId EntityIdentifer, * certificate Certificate } * </pre> * * @author Lijun Liao * @since 2.0.0 */ public class Asn1EntityIdAndCert extends ASN1Object { private final Asn1P11EntityIdentifier entityId; private final Certificate certificate; public Asn1EntityIdAndCert(final Asn1P11EntityIdentifier entityId, final Certificate certificate) { this.entityId = ParamUtil.requireNonNull("entityId", entityId); this.certificate = ParamUtil.requireNonNull("certificate", certificate); } public Asn1EntityIdAndCert(final P11EntityIdentifier entityId, final X509Certificate certificate) { ParamUtil.requireNonNull("entityId", entityId); ParamUtil.requireNonNull("certificate", certificate); this.entityId = new Asn1P11EntityIdentifier(entityId); byte[] encoded; try { encoded = certificate.getEncoded(); } catch (CertificateEncodingException ex) { throw new IllegalArgumentException("could not encode certificate: " + ex.getMessage(), ex); } this.certificate = Certificate.getInstance(encoded); } private Asn1EntityIdAndCert(final ASN1Sequence seq) throws BadAsn1ObjectException { Asn1Util.requireRange(seq, 2, 2); int idx = 0; this.entityId = Asn1P11EntityIdentifier.getInstance(seq.getObjectAt(idx++)); this.certificate = Asn1Util.getCertificate(seq.getObjectAt(idx++)); } public static Asn1EntityIdAndCert getInstance(final Object obj) throws BadAsn1ObjectException { if (obj == null || obj instanceof Asn1EntityIdAndCert) { return (Asn1EntityIdAndCert) obj; } try { if (obj instanceof ASN1Sequence) { return new Asn1EntityIdAndCert((ASN1Sequence) obj); } else if (obj instanceof byte[]) { return getInstance(ASN1Primitive.fromByteArray((byte[]) obj)); } else { throw new BadAsn1ObjectException("unknown object: " + obj.getClass().getName()); } } catch (IOException | IllegalArgumentException ex) { throw new BadAsn1ObjectException("unable to parse object: " + ex.getMessage(), ex); } } @Override public ASN1Primitive toASN1Primitive() { ASN1EncodableVector vector = new ASN1EncodableVector(); vector.add(entityId); vector.add(certificate); return new DERSequence(vector); } public Asn1P11EntityIdentifier getEntityId() { return entityId; } public Certificate getCertificate() { return certificate; } }