ntdll: Use int instead of long types in a few places.
[wine.git] / include / wincrypt.h
blob04b57e70dbd7b936ee4398f4a0bdb72b924e01c5
1 /*
2 * Copyright (C) 2002 Travis Michielsen
3 * Copyright (C) 2004-2005 Juan Lang
4 * Copyright (C) 2007 Vijay Kiran Kamuju
6 * This library is free software; you can redistribute it and/or
7 * modify it under the terms of the GNU Lesser General Public
8 * License as published by the Free Software Foundation; either
9 * version 2.1 of the License, or (at your option) any later version.
11 * This library is distributed in the hope that it will be useful,
12 * but WITHOUT ANY WARRANTY; without even the implied warranty of
13 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU
14 * Lesser General Public License for more details.
16 * You should have received a copy of the GNU Lesser General Public
17 * License along with this library; if not, write to the Free Software
18 * Foundation, Inc., 51 Franklin St, Fifth Floor, Boston, MA 02110-1301, USA
21 #ifndef __WINE_WINCRYPT_H
22 #define __WINE_WINCRYPT_H
24 #ifdef __cplusplus
25 extern "C" {
26 #endif
28 #include <bcrypt.h>
29 /* FIXME: #include <ncrypt.h> */
31 #ifdef _ADVAPI32_
32 # define WINADVAPI
33 #else
34 # define WINADVAPI DECLSPEC_HIDDEN
35 #endif
37 /* some typedefs for function parameters */
38 typedef unsigned int ALG_ID;
39 typedef ULONG_PTR HCRYPTPROV;
40 typedef ULONG_PTR HCRYPTPROV_OR_NCRYPT_KEY_HANDLE;
41 typedef ULONG_PTR HCRYPTPROV_LEGACY;
42 typedef ULONG_PTR HCRYPTKEY;
43 typedef ULONG_PTR HCRYPTHASH;
44 typedef void *HCERTSTORE;
45 typedef void *HCRYPTMSG;
46 typedef void *HCERTSTOREPROV;
47 typedef void *HCRYPTOIDFUNCSET;
48 typedef void *HCRYPTOIDFUNCADDR;
49 typedef void *HCRYPTDEFAULTCONTEXT;
51 /* CSP Structs */
53 typedef struct _PROV_ENUMALGS {
54 ALG_ID aiAlgid;
55 DWORD dwBitLen;
56 DWORD dwNameLen;
57 CHAR szName[20];
58 } PROV_ENUMALGS;
60 typedef struct _PROV_ENUMALGS_EX {
61 ALG_ID aiAlgid;
62 DWORD dwDefaultLen;
63 DWORD dwMinLen;
64 DWORD dwMaxLen;
65 DWORD dwProtocols;
66 DWORD dwNameLen;
67 CHAR szName[20];
68 DWORD dwLongNameLen;
69 CHAR szLongName[40];
70 } PROV_ENUMALGS_EX;
72 #define SCHANNEL_MAC_KEY 0
73 #define SCHANNEL_ENC_KEY 1
75 typedef struct _SCHANNEL_ALG {
76 DWORD dwUse;
77 ALG_ID Algid;
78 DWORD cBits;
79 DWORD dwFlags;
80 DWORD dwReserved;
81 } SCHANNEL_ALG, *PSCHANNEL_ALG;
84 #define CRYPT_IPSEC_HMAC_KEY 0x0100
86 typedef struct _HMAC_INFO {
87 ALG_ID HashAlgid;
88 BYTE* pbInnerString;
89 DWORD cbInnerString;
90 BYTE* pbOuterString;
91 DWORD cbOuterString;
92 } HMAC_INFO, *PHMAC_INFO;
94 typedef struct _CRYPTOAPI_BLOB {
95 DWORD cbData;
96 BYTE* pbData;
97 } CRYPT_INTEGER_BLOB, *PCRYPT_INTEGER_BLOB,
98 CRYPT_UINT_BLOB, *PCRYPT_UINT_BLOB,
99 CRYPT_OBJID_BLOB, *PCRYPT_OBJID_BLOB,
100 CERT_NAME_BLOB, *PCERT_NAME_BLOB,
101 CERT_RDN_VALUE_BLOB, *PCERT_RDN_VALUE_BLOB,
102 CERT_BLOB, *PCERT_BLOB,
103 CRL_BLOB, *PCRL_BLOB,
104 DATA_BLOB, *PDATA_BLOB,
105 CRYPT_DATA_BLOB, *PCRYPT_DATA_BLOB,
106 CRYPT_HASH_BLOB, *PCRYPT_HASH_BLOB,
107 CRYPT_DIGEST_BLOB, *PCRYPT_DIGEST_BLOB,
108 CRYPT_DER_BLOB, *PCRYPT_DER_BLOB,
109 CRYPT_ATTR_BLOB, *PCRYPT_ATTR_BLOB;
111 typedef struct _CRYPTPROTECT_PROMPTSTRUCT{
112 DWORD cbSize;
113 DWORD dwPromptFlags;
114 HWND hwndApp;
115 LPCWSTR szPrompt;
116 } CRYPTPROTECT_PROMPTSTRUCT, *PCRYPTPROTECT_PROMPTSTRUCT;
118 typedef struct _CRYPT_ALGORITHM_IDENTIFIER {
119 LPSTR pszObjId;
120 CRYPT_OBJID_BLOB Parameters;
121 } CRYPT_ALGORITHM_IDENTIFIER, *PCRYPT_ALGORITHM_IDENTIFIER;
123 typedef struct _CRYPT_ATTRIBUTE_TYPE_VALUE {
124 LPSTR pszObjId;
125 CRYPT_OBJID_BLOB Value;
126 } CRYPT_ATTRIBUTE_TYPE_VALUE, *PCRYPT_ATTRIBUTE_TYPE_VALUE;
128 typedef struct _PUBLICKEYSTRUC {
129 BYTE bType;
130 BYTE bVersion;
131 WORD reserved;
132 ALG_ID aiKeyAlg;
133 } BLOBHEADER, PUBLICKEYSTRUC;
135 typedef struct _RSAPUBKEY {
136 DWORD magic;
137 DWORD bitlen;
138 DWORD pubexp;
139 } RSAPUBKEY;
141 typedef struct _PUBKEY {
142 DWORD magic;
143 DWORD bitlen;
144 } DHPUBKEY, DSSPUBKEY, KEAPUBKEY, TEKPUBKEY;
146 typedef struct _DSSSEED {
147 DWORD counter;
148 BYTE seed[20];
149 } DSSSEED;
151 typedef struct _PUBKEYVER3 {
152 DWORD magic;
153 DWORD bitlenP;
154 DWORD bitlenQ;
155 DWORD bitlenJ;
156 DSSSEED DSSSeed;
157 } DHPUBKEY_VER3, DSSPUBKEY_VER3;
159 typedef struct _PRIVKEYVER3 {
160 DWORD magic;
161 DWORD bitlenP;
162 DWORD bitlenQ;
163 DWORD bitlenJ;
164 DWORD bitlenX;
165 DSSSEED DSSSeed;
166 } DHPRIVKEY_VER3, DSSPRIVKEY_VER3;
168 typedef struct _KEY_TYPE_SUBTYPE {
169 DWORD dwKeySpec;
170 GUID Type;
171 GUID SubType;
172 } KEY_TYPE_SUBTYPE, *PKEY_TYPE_SUBTYPE;
174 typedef struct _CERT_FORTEZZA_DATA_PROP {
175 unsigned char SerialNumber[8];
176 int CertIndex;
177 unsigned char CertLabel[36];
178 } CERT_FORTEZZA_DATA_PROP;
180 typedef struct _CMS_DH_KEY_INFO {
181 DWORD dwVersion;
182 ALG_ID Algid;
183 LPSTR pszContentEncObjId;
184 CRYPT_DATA_BLOB PubInfo;
185 void *pReserved;
186 } CMS_DH_KEY_INFO, *PCMS_DH_KEY_INFO;
188 typedef struct _CRYPT_BIT_BLOB {
189 DWORD cbData;
190 BYTE *pbData;
191 DWORD cUnusedBits;
192 } CRYPT_BIT_BLOB, *PCRYPT_BIT_BLOB;
194 typedef struct _CRYPT_KEY_PROV_PARAM {
195 DWORD dwParam;
196 BYTE *pbData;
197 DWORD cbData;
198 DWORD dwFlags;
199 } CRYPT_KEY_PROV_PARAM, *PCRYPT_KEY_PROV_PARAM;
201 typedef struct _CRYPT_KEY_PROV_INFO {
202 LPWSTR pwszContainerName;
203 LPWSTR pwszProvName;
204 DWORD dwProvType;
205 DWORD dwFlags;
206 DWORD cProvParam;
207 PCRYPT_KEY_PROV_PARAM rgProvParam;
208 DWORD dwKeySpec;
209 } CRYPT_KEY_PROV_INFO, *PCRYPT_KEY_PROV_INFO;
211 typedef struct _CERT_KEY_CONTEXT {
212 DWORD cbSize;
213 HCRYPTPROV hCryptProv;
214 DWORD dwKeySpec;
215 } CERT_KEY_CONTEXT, *PCERT_KEY_CONTEXT;
217 typedef struct _CERT_PUBLIC_KEY_INFO {
218 CRYPT_ALGORITHM_IDENTIFIER Algorithm;
219 CRYPT_BIT_BLOB PublicKey;
220 } CERT_PUBLIC_KEY_INFO, *PCERT_PUBLIC_KEY_INFO;
222 typedef struct _CERT_EXTENSION {
223 LPSTR pszObjId;
224 BOOL fCritical;
225 CRYPT_OBJID_BLOB Value;
226 } CERT_EXTENSION, *PCERT_EXTENSION;
228 typedef struct _CERT_EXTENSIONS {
229 DWORD cExtension;
230 PCERT_EXTENSION rgExtension;
231 } CERT_EXTENSIONS, *PCERT_EXTENSIONS;
233 typedef struct _CERT_INFO {
234 DWORD dwVersion;
235 CRYPT_INTEGER_BLOB SerialNumber;
236 CRYPT_ALGORITHM_IDENTIFIER SignatureAlgorithm;
237 CERT_NAME_BLOB Issuer;
238 FILETIME NotBefore;
239 FILETIME NotAfter;
240 CERT_NAME_BLOB Subject;
241 CERT_PUBLIC_KEY_INFO SubjectPublicKeyInfo;
242 CRYPT_BIT_BLOB IssuerUniqueId;
243 CRYPT_BIT_BLOB SubjectUniqueId;
244 DWORD cExtension;
245 PCERT_EXTENSION rgExtension;
246 } CERT_INFO, *PCERT_INFO;
248 typedef struct _CERT_RDN_ATTR {
249 LPSTR pszObjId;
250 DWORD dwValueType;
251 CERT_RDN_VALUE_BLOB Value;
252 } CERT_RDN_ATTR, *PCERT_RDN_ATTR;
254 typedef struct _CERT_RDN {
255 DWORD cRDNAttr;
256 PCERT_RDN_ATTR rgRDNAttr;
257 } CERT_RDN, *PCERT_RDN;
259 typedef struct _CERT_NAME_INFO {
260 DWORD cRDN;
261 PCERT_RDN rgRDN;
262 } CERT_NAME_INFO, *PCERT_NAME_INFO;
264 typedef struct _CERT_NAME_VALUE {
265 DWORD dwValueType;
266 CERT_RDN_VALUE_BLOB Value;
267 } CERT_NAME_VALUE, *PCERT_NAME_VALUE;
269 typedef struct _CERT_ENCRYPTED_PRIVATE_KEY_INFO {
270 CRYPT_ALGORITHM_IDENTIFIER EncryptionAlgorithm;
271 CRYPT_DATA_BLOB EncryptedPrivateKey;
272 } CERT_ENCRYPTED_PRIVATE_KEY_INFO, *PCERT_ENCRYPTED_PRIVATE_KEY_INFO;
274 typedef struct _CERT_AUTHORITY_KEY_ID_INFO {
275 CRYPT_DATA_BLOB KeyId;
276 CERT_NAME_BLOB CertIssuer;
277 CRYPT_INTEGER_BLOB CertSerialNumber;
278 } CERT_AUTHORITY_KEY_ID_INFO, *PCERT_AUTHORITY_KEY_ID_INFO;
280 typedef struct _CERT_PRIVATE_KEY_VALIDITY {
281 FILETIME NotBefore;
282 FILETIME NotAfter;
283 } CERT_PRIVATE_KEY_VALIDITY, *PCERT_PRIVATE_KEY_VALIDITY;
285 typedef struct _CERT_KEY_ATTRIBUTES_INFO {
286 CRYPT_DATA_BLOB KeyId;
287 CRYPT_BIT_BLOB IntendedKeyUsage;
288 PCERT_PRIVATE_KEY_VALIDITY pPrivateKeyUsagePeriod;
289 } CERT_KEY_ATTRIBUTES_INFO, *PCERT_KEY_ATTRIBUTES_INFO;
291 typedef struct _CERT_ECC_SIGNATURE {
292 CRYPT_UINT_BLOB r;
293 CRYPT_UINT_BLOB s;
294 } CERT_ECC_SIGNATURE, *PCERT_ECC_SIGNATURE;
296 /* byte 0 */
297 #define CERT_DIGITAL_SIGNATURE_KEY_USAGE 0x80
298 #define CERT_NON_REPUDIATION_KEY_USAGE 0x40
299 #define CERT_KEY_ENCIPHERMENT_KEY_USAGE 0x20
300 #define CERT_DATA_ENCIPHERMENT_KEY_USAGE 0x10
301 #define CERT_KEY_AGREEMENT_KEY_USAGE 0x08
302 #define CERT_KEY_CERT_SIGN_KEY_USAGE 0x04
303 #define CERT_OFFLINE_CRL_SIGN_KEY_USAGE 0x02
304 #define CERT_CRL_SIGN_KEY_USAGE 0x02
305 #define CERT_ENCIPHER_ONLY_KEY_USAGE 0x01
306 /* byte 1 */
307 #define CERT_DECIPHER_ONLY_KEY_USAGE 0x80
309 typedef struct _CERT_POLICY_ID {
310 DWORD cCertPolicyElementId;
311 LPSTR *rgbszCertPolicyElementId;
312 } CERT_POLICY_ID, *PCERT_POLICY_ID;
314 typedef struct _CERT_KEY_USAGE_RESTRICTION_INFO {
315 DWORD cCertPolicyId;
316 PCERT_POLICY_ID rgCertPolicyId;
317 CRYPT_BIT_BLOB RestrictedKeyUsage;
318 } CERT_KEY_USAGE_RESTRICTION_INFO, *PCERT_KEY_USAGE_RESTRICTION_INFO;
320 typedef struct _CERT_OTHER_NAME {
321 LPSTR pszObjId;
322 CRYPT_OBJID_BLOB Value;
323 } CERT_OTHER_NAME, *PCERT_OTHER_NAME;
325 typedef struct _CERT_ALT_NAME_ENTRY {
326 DWORD dwAltNameChoice;
327 union {
328 PCERT_OTHER_NAME pOtherName;
329 LPWSTR pwszRfc822Name;
330 LPWSTR pwszDNSName;
331 CERT_NAME_BLOB DirectoryName;
332 LPWSTR pwszURL;
333 CRYPT_DATA_BLOB IPAddress;
334 LPSTR pszRegisteredID;
335 } DUMMYUNIONNAME;
336 } CERT_ALT_NAME_ENTRY, *PCERT_ALT_NAME_ENTRY;
338 #define CERT_ALT_NAME_OTHER_NAME 1
339 #define CERT_ALT_NAME_RFC822_NAME 2
340 #define CERT_ALT_NAME_DNS_NAME 3
341 #define CERT_ALT_NAME_X400_ADDRESS 4
342 #define CERT_ALT_NAME_DIRECTORY_NAME 5
343 #define CERT_ALT_NAME_EDI_PARTY_NAME 6
344 #define CERT_ALT_NAME_URL 7
345 #define CERT_ALT_NAME_IP_ADDRESS 8
346 #define CERT_ALT_NAME_REGISTERED_ID 9
348 typedef struct _CERT_ALT_NAME_INFO {
349 DWORD cAltEntry;
350 PCERT_ALT_NAME_ENTRY rgAltEntry;
351 } CERT_ALT_NAME_INFO, *PCERT_ALT_NAME_INFO;
353 #define CERT_ALT_NAME_ENTRY_ERR_INDEX_MASK 0xff
354 #define CERT_ALT_NAME_ENTRY_ERR_INDEX_SHIFT 16
355 #define CERT_ALT_NAME_VALUE_ERR_INDEX_MASK 0x0000ffff
356 #define CERT_ALT_NAME_VALUE_ERR_INDEX_SHIFT 0
357 #define GET_CERT_ALT_NAME_ENTRY_ERR_INDEX(x) \
358 (((x) >> CERT_ALT_NAME_ENTRY_ERR_INDEX_SHIFT) & \
359 CERT_ALT_NAME_ENTRY_ERR_INDEX_MASK)
360 #define GET_CERT_ALT_NAME_VALUE_ERR_INDEX(x) \
361 ((x) & CERT_ALT_NAME_VALUE_ERR_INDEX_MASK)
363 typedef struct _CERT_BASIC_CONSTRAINTS_INFO {
364 CRYPT_BIT_BLOB SubjectType;
365 BOOL fPathLenConstraint;
366 DWORD dwPathLenConstraint;
367 DWORD cSubtreesConstraint;
368 CERT_NAME_BLOB *rgSubtreesConstraint;
369 } CERT_BASIC_CONSTRAINTS_INFO, *PCERT_BASIC_CONSTRAINTS_INFO;
371 #define CERT_CA_SUBJECT_FLAG 0x80
372 #define CERT_END_ENTITY_SUBJECT_FLAG 0x40
374 typedef struct _CERT_BASIC_CONSTRAINTS2_INFO {
375 BOOL fCA;
376 BOOL fPathLenConstraint;
377 DWORD dwPathLenConstraint;
378 } CERT_BASIC_CONSTRAINTS2_INFO, *PCERT_BASIC_CONSTRAINTS2_INFO;
380 typedef struct _CERT_POLICY_QUALIFIER_INFO {
381 LPSTR pszPolicyQualifierId;
382 CRYPT_OBJID_BLOB Qualifier;
383 } CERT_POLICY_QUALIFIER_INFO, *PCERT_POLICY_QUALIFIER_INFO;
385 typedef struct _CERT_POLICY_INFO {
386 LPSTR pszPolicyIdentifier;
387 DWORD cPolicyQualifier;
388 CERT_POLICY_QUALIFIER_INFO *rgPolicyQualifier;
389 } CERT_POLICY_INFO, *PCERT_POLICY_INFO;
391 typedef struct _CERT_POLICIES_INFO {
392 DWORD cPolicyInfo;
393 CERT_POLICY_INFO *rgPolicyInfo;
394 } CERT_POLICIES_INFO, *PCERT_POLICIES_INFO;
396 typedef struct _CERT_POLICY_QUALIFIER_NOTICE_REFERENCE {
397 LPSTR pszOrganization;
398 DWORD cNoticeNumbers;
399 int *rgNoticeNumbers;
400 } CERT_POLICY_QUALIFIER_NOTICE_REFERENCE,
401 *PCERT_POLICY_QUALIFIER_NOTICE_REFERENCE;
403 typedef struct _CERT_POLICY_QUALIFIER_USER_NOTICE {
404 CERT_POLICY_QUALIFIER_NOTICE_REFERENCE *pNoticeReference;
405 LPWSTR pszDisplayText;
406 } CERT_POLICY_QUALIFIER_USER_NOTICE, *PCERT_POLICY_QUALIFIER_USER_NOTICE;
408 typedef struct _CPS_URLS {
409 LPWSTR pszURL;
410 CRYPT_ALGORITHM_IDENTIFIER *pAlgorithm;
411 CRYPT_DATA_BLOB *pDigest;
412 } CPS_URLS, *PCPS_URLS;
414 typedef struct _CERT_POLICY95_QUALIFIER1 {
415 LPWSTR pszPracticesReference;
416 LPSTR pszNoticeIdentifier;
417 LPSTR pszNSINoticeIdentifier;
418 DWORD cCPSURLs;
419 CPS_URLS *rgCPSURLs;
420 } CERT_POLICY95_QUALIFIER1, *PCERT_POLICY95_QUALIFIER1;
422 typedef struct _CERT_POLICY_MAPPING {
423 LPSTR pszIssuerDomainPolicy;
424 LPSTR pszSubjectDomainPolicy;
425 } CERT_POLICY_MAPPING, *PCERT_POLICY_MAPPING;
427 typedef struct _CERT_POLICY_MAPPINGS_INFO {
428 DWORD cPolicyMapping;
429 PCERT_POLICY_MAPPING rgPolicyMapping;
430 } CERT_POLICY_MAPPINGS_INFO, *PCERT_POLICY_MAPPINGS_INFO;
432 typedef struct _CERT_POLICY_CONSTRAINTS_INFO {
433 BOOL fRequireExplicitPolicy;
434 DWORD dwRequireExplicitPolicySkipCerts;
435 BOOL fInhibitPolicyMapping;
436 DWORD dwInhibitPolicyMappingSkipCerts;
437 } CERT_POLICY_CONSTRAINTS_INFO, *PCERT_POLICY_CONSTRAINTS_INFO;
439 typedef struct _CRYPT_CONTENT_INFO_SEQUENCE_OF_ANY {
440 LPSTR pszObjId;
441 DWORD cValue;
442 PCRYPT_DER_BLOB rgValue;
443 } CRYPT_CONTENT_INFO_SEQUENCE_OF_ANY, *PCRYPT_CONTENT_INFO_SEQUENCE_OF_ANY;
445 typedef struct _CRYPT_CONTENT_INFO {
446 LPSTR pszObjId;
447 CRYPT_DER_BLOB Content;
448 } CRYPT_CONTENT_INFO, *PCRYPT_CONTENT_INFO;
450 typedef struct _CRYPT_SEQUENCE_OF_ANY {
451 DWORD cValue;
452 PCRYPT_DER_BLOB rgValue;
453 } CRYPT_SEQUENCE_OF_ANY, *PCRYPT_SEQUENCE_OF_ANY;
455 typedef struct _CERT_AUTHORITY_KEY_ID2_INFO {
456 CRYPT_DATA_BLOB KeyId;
457 CERT_ALT_NAME_INFO AuthorityCertIssuer;
458 CRYPT_INTEGER_BLOB AuthorityCertSerialNumber;
459 } CERT_AUTHORITY_KEY_ID2_INFO, *PCERT_AUTHORITY_KEY_ID2_INFO;
461 typedef struct _CERT_ACCESS_DESCRIPTION {
462 LPSTR pszAccessMethod;
463 CERT_ALT_NAME_ENTRY AccessLocation;
464 } CERT_ACCESS_DESCRIPTION, *PCERT_ACCESS_DESCRIPTION;
466 typedef struct _CERT_AUTHORITY_INFO_ACCESS {
467 DWORD cAccDescr;
468 PCERT_ACCESS_DESCRIPTION rgAccDescr;
469 } CERT_AUTHORITY_INFO_ACCESS, *PCERT_AUTHORITY_INFO_ACCESS;
471 typedef struct _CERT_CONTEXT {
472 DWORD dwCertEncodingType;
473 BYTE *pbCertEncoded;
474 DWORD cbCertEncoded;
475 PCERT_INFO pCertInfo;
476 HCERTSTORE hCertStore;
477 } CERT_CONTEXT, *PCERT_CONTEXT;
478 typedef const CERT_CONTEXT *PCCERT_CONTEXT;
480 typedef struct _CRL_ENTRY {
481 CRYPT_INTEGER_BLOB SerialNumber;
482 FILETIME RevocationDate;
483 DWORD cExtension;
484 PCERT_EXTENSION rgExtension;
485 } CRL_ENTRY, *PCRL_ENTRY;
487 typedef struct _CRL_INFO {
488 DWORD dwVersion;
489 CRYPT_ALGORITHM_IDENTIFIER SignatureAlgorithm;
490 CERT_NAME_BLOB Issuer;
491 FILETIME ThisUpdate;
492 FILETIME NextUpdate;
493 DWORD cCRLEntry;
494 PCRL_ENTRY rgCRLEntry;
495 DWORD cExtension;
496 PCERT_EXTENSION rgExtension;
497 } CRL_INFO, *PCRL_INFO;
499 typedef struct _CRL_DIST_POINT_NAME {
500 DWORD dwDistPointNameChoice;
501 union {
502 CERT_ALT_NAME_INFO FullName;
503 } DUMMYUNIONNAME;
504 } CRL_DIST_POINT_NAME, *PCRL_DIST_POINT_NAME;
506 #define CRL_DIST_POINT_NO_NAME 0
507 #define CRL_DIST_POINT_FULL_NAME 1
508 #define CRL_DIST_POINT_ISSUER_RDN_NAME 2
510 typedef struct _CRL_DIST_POINT {
511 CRL_DIST_POINT_NAME DistPointName;
512 CRYPT_BIT_BLOB ReasonFlags;
513 CERT_ALT_NAME_INFO CRLIssuer;
514 } CRL_DIST_POINT, *PCRL_DIST_POINT;
516 #define CRL_REASON_UNUSED_FLAG 0x80
517 #define CRL_REASON_KEY_COMPROMISE_FLAG 0x40
518 #define CRL_REASON_CA_COMPROMISE_FLAG 0x20
519 #define CRL_REASON_AFFILIATION_CHANGED_FLAG 0x10
520 #define CRL_REASON_SUPERSEDED_FLAG 0x08
521 #define CRL_REASON_CESSATION_OF_OPERATION_FLAG 0x04
522 #define CRL_REASON_CERTIFICATE_HOLD_FLAG 0x02
524 typedef struct _CRL_DIST_POINTS_INFO {
525 DWORD cDistPoint;
526 PCRL_DIST_POINT rgDistPoint;
527 } CRL_DIST_POINTS_INFO, *PCRL_DIST_POINTS_INFO;
529 #define CRL_DIST_POINT_ERR_INDEX_MASK 0x7f
530 #define CRL_DIST_POINT_ERR_INDEX_SHIFT 24
531 #define GET_CRL_DIST_POINT_ERR_INDEX(x) \
532 (((x) >> CRL_DIST_POINT_ERR_INDEX_SHIFT) & CRL_DIST_POINT_ERR_INDEX_MASK)
534 #define CRL_DIST_POINT_ERR_CRL_ISSUER_BIT __MSABI_LONG(0x80000000)
535 #define IS_CRL_DIST_POINT_ERR_CRL_ISSUER(x) \
536 ((x) & CRL_DIST_POINT_ERR_CRL_ISSUER_BIT)
538 typedef struct _CROSS_CERT_DIST_POINTS_INFO {
539 DWORD dwSyncDeltaTime;
540 DWORD cDistPoint;
541 PCERT_ALT_NAME_INFO rgDistPoint;
542 } CROSS_CERT_DIST_POINTS_INFO, *PCROSS_CERT_DIST_POINTS_INFO;
544 #define CROSS_CERT_DIST_POINT_ERR_INDEX_MASK 0xff
545 #define CROSS_CERT_DIST_POINT_ERR_INDEX_SHIFT 24
546 #define GET_CROSS_CERT_DIST_POINT_ERR_INDEX(x) \
547 (((x) >> CROSS_CERT_DIST_POINT_ERR_INDEX_SHIFT) & \
548 CROSS_CERT_DIST_POINT_ERR_INDEX_MASK)
550 typedef struct _CERT_PAIR {
551 CERT_BLOB Forward;
552 CERT_BLOB Reverse;
553 } CERT_PAIR, *PCERT_PAIR;
555 typedef struct _CRL_ISSUING_DIST_POINT {
556 CRL_DIST_POINT_NAME DistPointName;
557 BOOL fOnlyContainsUserCerts;
558 BOOL fOnlyContainsCACerts;
559 CRYPT_BIT_BLOB OnlySomeReasonFlags;
560 BOOL fIndirectCRL;
561 } CRL_ISSUING_DIST_POINT, *PCRL_ISSUING_DIST_POINT;
563 typedef struct _CERT_GENERAL_SUBTREE {
564 CERT_ALT_NAME_ENTRY Base;
565 DWORD dwMinimum;
566 BOOL fMaximum;
567 DWORD dwMaximum;
568 } CERT_GENERAL_SUBTREE, *PCERT_GENERAL_SUBTREE;
570 typedef struct _CERT_NAME_CONSTRAINTS_INFO {
571 DWORD cPermittedSubtree;
572 PCERT_GENERAL_SUBTREE rgPermittedSubtree;
573 DWORD cExcludedSubtree;
574 PCERT_GENERAL_SUBTREE rgExcludedSubtree;
575 } CERT_NAME_CONSTRAINTS_INFO, *PCERT_NAME_CONSTRAINTS_INFO;
577 #define CERT_EXCLUDED_SUBTREE_BIT __MSABI_LONG(0x80000000)
578 #define IS_CERT_EXCLUDED_SUBTREE(x) ((x) & CERT_EXCLUDED_SUBTREE_BIT)
580 typedef struct _CRYPT_ATTRIBUTE {
581 LPSTR pszObjId;
582 DWORD cValue;
583 PCRYPT_DATA_BLOB rgValue;
584 } CRYPT_ATTRIBUTE, *PCRYPT_ATTRIBUTE;
586 typedef struct _CRYPT_ATTRIBUTES {
587 DWORD cAttr;
588 PCRYPT_ATTRIBUTE rgAttr;
589 } CRYPT_ATTRIBUTES, *PCRYPT_ATTRIBUTES;
591 typedef struct _CERT_REQUEST_INFO {
592 DWORD dwVersion;
593 CERT_NAME_BLOB Subject;
594 CERT_PUBLIC_KEY_INFO SubjectPublicKeyInfo;
595 DWORD cAttribute;
596 PCRYPT_ATTRIBUTE rgAttribute;
597 } CERT_REQUEST_INFO, *PCERT_REQUEST_INFO;
599 typedef struct _CERT_KEYGEN_REQUEST_INFO {
600 DWORD dwVersion;
601 CERT_PUBLIC_KEY_INFO SubjectPublicKeyInfo;
602 LPWSTR pwszChallengeString;
603 } CERT_KEYGEN_REQUEST_INFO, *PCERT_KEYGEN_REQUEST_INFO;
605 typedef struct _CERT_SIGNED_CONTENT_INFO {
606 CRYPT_DER_BLOB ToBeSigned;
607 CRYPT_ALGORITHM_IDENTIFIER SignatureAlgorithm;
608 CRYPT_BIT_BLOB Signature;
609 } CERT_SIGNED_CONTENT_INFO, *PCERT_SIGNED_CONTENT_INFO;
611 typedef struct _OCSP_SIGNATURE_INFO {
612 CRYPT_ALGORITHM_IDENTIFIER SignatureAlgorithm;
613 CRYPT_BIT_BLOB Signature;
614 DWORD cCertEncoded;
615 PCERT_BLOB rgCertEncoded;
616 } OCSP_SIGNATURE_INFO, *POCSP_SIGNATURE_INFO;
618 typedef struct _OCSP_SIGNED_REQUEST_INFO {
619 CRYPT_DER_BLOB ToBeSigned;
620 POCSP_SIGNATURE_INFO pOptionalSignatureInfo;
621 } OCSP_SIGNED_REQUEST_INFO, *POCSP_SIGNED_REQUEST_INFO;
623 typedef struct _OCSP_CERT_ID {
624 CRYPT_ALGORITHM_IDENTIFIER HashAlgorithm;
625 CRYPT_HASH_BLOB IssuerNameHash;
626 CRYPT_HASH_BLOB IssuerKeyHash;
627 CRYPT_INTEGER_BLOB SerialNumber;
628 } OCSP_CERT_ID, *POCSP_CERT_ID;
630 typedef struct _OCSP_REQUEST_ENTRY {
631 OCSP_CERT_ID CertId;
632 DWORD cExtension;
633 PCERT_EXTENSION rgExtension;
634 } OCSP_REQUEST_ENTRY, *POCSP_REQUEST_ENTRY;
636 #define OCSP_REQUEST_V1 0
638 typedef struct _OCSP_REQUEST_INFO {
639 DWORD dwVersion;
640 PCERT_ALT_NAME_ENTRY pRequestorName;
641 DWORD cRequestEntry;
642 POCSP_REQUEST_ENTRY rgRequestEntry;
643 DWORD cExtension;
644 PCERT_EXTENSION rgExtension;
645 } OCSP_REQUEST_INFO, *POCSP_REQUEST_INFO;
647 #define OCSP_SUCCESSFUL_RESPONSE 0
648 #define OCSP_MALFORMED_REQUEST_RESPONSE 1
649 #define OCSP_INTERNAL_ERROR_RESPONSE 2
650 #define OCSP_TRY_LATER_RESPONSE 3
651 #define OCSP_SIG_REQUIRED_RESPONSE 5
652 #define OCSP_UNAUTHORIZED_RESPONSE 6
654 #define szOID_PKIX_OCSP_BASIC_SIGNED_RESPONSE "1.3.6.1.5.5.7.48.1.1"
656 typedef struct _OCSP_RESPONSE_INFO {
657 DWORD dwStatus;
658 LPSTR pszObjId;
659 CRYPT_OBJID_BLOB Value;
660 } OCSP_RESPONSE_INFO, *POCSP_RESPONSE_INFO;
662 typedef struct _OCSP_BASIC_SIGNED_RESPONSE_INFO {
663 CRYPT_DER_BLOB ToBeSigned;
664 OCSP_SIGNATURE_INFO SignatureInfo;
665 } OCSP_BASIC_SIGNED_RESPONSE_INFO, *POCSP_BASIC_SIGNED_RESPONSE_INFO;
667 typedef struct _OCSP_BASIC_REVOKED_INFO {
668 FILETIME RevocationDate;
669 DWORD dwCrlReasonCode;
670 } OCSP_BASIC_REVOKED_INFO, *POCSP_BASIC_REVOKED_INFO;
672 #define OCSP_BASIC_GOOD_CERT_STATUS 0
673 #define OCSP_BASIC_REVOKED_CERT_STATUS 1
674 #define OCSP_BASIC_UNKNOWN_CERT_STATUS 2
676 typedef struct _OCSP_BASIC_RESPONSE_ENTRY {
677 OCSP_CERT_ID CertId;
678 DWORD dwCertStatus;
679 union {
680 POCSP_BASIC_REVOKED_INFO pRevokedInfo;
681 } DUMMYUNIONNAME;
682 FILETIME ThisUpdate;
683 FILETIME NextUpdate;
684 DWORD cExtension;
685 PCERT_EXTENSION rgExtension;
686 } OCSP_BASIC_RESPONSE_ENTRY, *POCSP_BASIC_RESPONSE_ENTRY;
688 #define OCSP_BASIC_RESPONSE_V1 0
689 #define OCSP_BASIC_BY_NAME_RESPONDER_ID 1
690 #define OCSP_BASIC_BY_KEY_RESPONDER_ID 2
692 typedef struct _OCSP_BASIC_RESPONSE_INFO {
693 DWORD dwVersion;
694 DWORD dwResponderIdChoice;
695 union {
696 CERT_NAME_BLOB ByNameResponderId;
697 CRYPT_HASH_BLOB ByKeyResponderId;
698 } DUMMYUNIONNAME;
699 FILETIME ProducedAt;
700 DWORD cResponseEntry;
701 POCSP_BASIC_RESPONSE_ENTRY rgResponseEntry;
702 DWORD cExtension;
703 PCERT_EXTENSION rgExtension;
704 } OCSP_BASIC_RESPONSE_INFO, *POCSP_BASIC_RESPONSE_INFO;
706 typedef struct _CRL_CONTEXT {
707 DWORD dwCertEncodingType;
708 BYTE *pbCrlEncoded;
709 DWORD cbCrlEncoded;
710 PCRL_INFO pCrlInfo;
711 HCERTSTORE hCertStore;
712 } CRL_CONTEXT, *PCRL_CONTEXT;
713 typedef const CRL_CONTEXT *PCCRL_CONTEXT;
715 #define SORTED_CTL_EXT_FLAGS_OFFSET (0*4)
716 #define SORTED_CTL_EXT_COUNT_OFFSET (1*4)
717 #define SORTED_CTL_EXT_MAX_COLLISION_OFFSET (2*4)
718 #define SORTED_CTL_EXT_HASH_BUCKET_OFFSET (3*4)
720 #define SORTED_CTL_EXT_HASHED_SUBJECT_IDENTIFIER_FLAG 0x1
722 typedef struct _CERT_DSS_PARAMETERS {
723 CRYPT_UINT_BLOB p;
724 CRYPT_UINT_BLOB q;
725 CRYPT_UINT_BLOB g;
726 } CERT_DSS_PARAMETERS, *PCERT_DSS_PARAMETERS;
728 #define CERT_DSS_R_LEN 20
729 #define CERT_DSS_S_LEN 20
730 #define CERT_DSS_SIGNATURE_LEN (CERT_DSS_R_LEN + CERT_DSS_S_LEN)
732 #define CERT_MAX_ENCODED_DSS_SIGNATURE_LEN (2 + 2*(2 + 20 +1))
734 typedef struct _CERT_DH_PARAMETERS {
735 CRYPT_UINT_BLOB p;
736 CRYPT_UINT_BLOB g;
737 } CERT_DH_PARAMETERS, *PCERT_DH_PARAMETERS;
739 typedef struct _CERT_X942_DH_VALIDATION_PARAMS {
740 CRYPT_BIT_BLOB seed;
741 DWORD pgenCounter;
742 } CERT_X942_DH_VALIDATION_PARAMS, *PCERT_X942_DH_VALIDATION_PARAMS;
744 typedef struct _CERT_X942_DH_PARAMETERS {
745 CRYPT_UINT_BLOB p;
746 CRYPT_UINT_BLOB g;
747 CRYPT_UINT_BLOB q;
748 CRYPT_UINT_BLOB j;
749 PCERT_X942_DH_VALIDATION_PARAMS pValidationParams;
750 } CERT_X942_DH_PARAMETERS, *PCERT_X942_DH_PARAMETERS;
752 #define CRYPT_X942_COUNTER_BYTE_LENGTH 4
753 #define CRYPT_X942_KEY_LENGTH_BYTE_LENGTH 4
754 #define CRYPT_X942_PUB_INFO_BYTE_LENGTH (512/8)
756 typedef struct _CRYPT_X942_OTHER_INFO {
757 LPSTR pszContentEncryptionObjId;
758 BYTE rgbCounter[CRYPT_X942_COUNTER_BYTE_LENGTH];
759 BYTE rgbKeyLength[CRYPT_X942_KEY_LENGTH_BYTE_LENGTH];
760 CRYPT_DATA_BLOB PubInfo;
761 } CRYPT_X942_OTHER_INFO, *PCRYPT_X942_OTHER_INFO;
763 typedef struct _CRYPT_RC2_CBC_PARAMETERS {
764 DWORD dwVersion;
765 BOOL fIV;
766 BYTE rgbIV[4];
767 } CRYPT_RC2_CBC_PARAMETERS, *PCRYPT_RC2_CBC_PARAMETERS;
769 #define CRYPT_RC2_40BIT_VERSION 160
770 #define CRYPT_RC2_56BIT_VERSION 52
771 #define CRYPT_RC2_64BIT_VERSION 120
772 #define CRYPT_RC2_128BIT_VERSION 58
774 typedef struct _CRYPT_SMIME_CAPABILITY {
775 LPSTR pszObjId;
776 CRYPT_OBJID_BLOB Parameters;
777 } CRYPT_SMIME_CAPABILITY, *PCRYPT_SMIME_CAPABILITY;
779 typedef struct _CRYPT_SMIME_CAPABILITIES {
780 DWORD cCapability;
781 PCRYPT_SMIME_CAPABILITY rgCapability;
782 } CRYPT_SMIME_CAPABILITIES, *PCRYPT_SMIME_CAPABILITIES;
784 typedef struct _VTableProvStruc {
785 DWORD Version;
786 #ifdef WINE_STRICT_PROTOTYPES
787 BOOL (WINAPI *FuncVerifyImage)(LPCSTR,BYTE*);
788 void (WINAPI *FuncReturnhWnd)(HWND*);
789 #else
790 FARPROC FuncVerifyImage;
791 FARPROC FuncReturnhWnd;
792 #endif
793 DWORD dwProvType;
794 BYTE *pbContextInfo;
795 DWORD cbContextInfo;
796 LPSTR pszProvName;
797 } VTableProvStruc, *PVTableProvStruc;
799 typedef struct _CERT_PRIVATE_KEY_INFO {
800 DWORD Version;
801 CRYPT_ALGORITHM_IDENTIFIER Algorithm;
802 CRYPT_DER_BLOB PrivateKey;
803 PCRYPT_ATTRIBUTES pAttributes;
804 } CERT_PRIVATE_KEY_INFO, *PCERT_PRIVATE_KEY_INFO;
806 typedef struct _CTL_USAGE {
807 DWORD cUsageIdentifier;
808 LPSTR *rgpszUsageIdentifier;
809 } CTL_USAGE, *PCTL_USAGE, CERT_ENHKEY_USAGE, *PCERT_ENHKEY_USAGE;
811 typedef struct _CTL_ENTRY {
812 CRYPT_DATA_BLOB SubjectIdentifier;
813 DWORD cAttribute;
814 PCRYPT_ATTRIBUTE rgAttribute;
815 } CTL_ENTRY, *PCTL_ENTRY;
817 typedef struct _CTL_INFO {
818 DWORD dwVersion;
819 CTL_USAGE SubjectUsage;
820 CRYPT_DATA_BLOB ListIdentifier;
821 CRYPT_INTEGER_BLOB SequenceNumber;
822 FILETIME ThisUpdate;
823 FILETIME NextUpdate;
824 CRYPT_ALGORITHM_IDENTIFIER SubjectAlgorithm;
825 DWORD cCTLEntry;
826 PCTL_ENTRY rgCTLEntry;
827 DWORD cExtension;
828 PCERT_EXTENSION rgExtension;
829 } CTL_INFO, *PCTL_INFO;
831 typedef struct _CTL_CONTEXT {
832 DWORD dwMsgAndCertEncodingType;
833 BYTE *pbCtlEncoded;
834 DWORD cbCtlEncoded;
835 PCTL_INFO pCtlInfo;
836 HCERTSTORE hCertStore;
837 HCRYPTMSG hCryptMsg;
838 BYTE *pbCtlContext;
839 DWORD cbCtlContext;
840 } CTL_CONTEXT, *PCTL_CONTEXT;
841 typedef const CTL_CONTEXT *PCCTL_CONTEXT;
843 typedef struct _CRYPT_TIME_STAMP_REQUEST_INFO {
844 LPSTR pszTimeStampAlgorithm;
845 LPSTR pszContentType;
846 CRYPT_OBJID_BLOB Content;
847 DWORD cAttribute;
848 PCRYPT_ATTRIBUTE rgAttribute;
849 } CRYPT_TIME_STAMP_REQUEST_INFO, *PCRYPT_TIME_STAMP_REQUEST_INFO;
851 typedef struct _CRYPT_ENROLLMENT_NAME_VALUE_PAIR {
852 LPWSTR pwszName;
853 LPWSTR pwszValue;
854 } CRYPT_ENROLLMENT_NAME_VALUE_PAIR, *PCRYPT_ENROLLMENT_NAME_VALUE_PAIR;
856 typedef struct _CMSG_SIGNER_INFO {
857 DWORD dwVersion;
858 CERT_NAME_BLOB Issuer;
859 CRYPT_INTEGER_BLOB SerialNumber;
860 CRYPT_ALGORITHM_IDENTIFIER HashAlgorithm;
861 CRYPT_ALGORITHM_IDENTIFIER HashEncryptionAlgorithm;
862 CRYPT_DATA_BLOB EncryptedHash;
863 CRYPT_ATTRIBUTES AuthAttrs;
864 CRYPT_ATTRIBUTES UnauthAttrs;
865 } CMSG_SIGNER_INFO, *PCMSG_SIGNER_INFO;
867 #define CMSG_VERIFY_SIGNER_PUBKEY 1
868 #define CMSG_VERIFY_SIGNER_CERT 2
869 #define CMSG_VERIFY_SIGNER_CHAIN 3
870 #define CMSG_VERIFY_SIGNER_NULL 4
872 typedef struct _CERT_REVOCATION_CRL_INFO {
873 DWORD cbSize;
874 PCCRL_CONTEXT pBaseCrlContext;
875 PCCRL_CONTEXT pDeltaCrlContext;
876 PCRL_ENTRY pCrlEntry;
877 BOOL fDeltaCrlEntry;
878 } CERT_REVOCATION_CRL_INFO, *PCERT_REVOCATION_CRL_INFO;
880 typedef struct _CERT_REVOCATION_INFO {
881 DWORD cbSize;
882 DWORD dwRevocationResult;
883 LPCSTR pszRevocationOid;
884 LPVOID pvOidSpecificInfo;
885 BOOL fHasFreshnessTime;
886 DWORD dwFreshnessTime;
887 PCERT_REVOCATION_CRL_INFO pCrlInfo;
888 } CERT_REVOCATION_INFO, *PCERT_REVOCATION_INFO;
890 typedef struct _CERT_REVOCATION_PARA {
891 DWORD cbSize;
892 PCCERT_CONTEXT pIssuerCert;
893 DWORD cCertStore;
894 HCERTSTORE *rgCertStore;
895 HCERTSTORE hCrlStore;
896 LPFILETIME pftTimeToUse;
897 #ifdef CERT_REVOCATION_PARA_HAS_EXTRA_FIELDS
898 DWORD dwUrlRetrievalTimeout;
899 BOOL fCheckFreshnessTime;
900 DWORD dwFreshnessTime;
901 LPFILETIME pftCurrentTime;
902 PCERT_REVOCATION_CRL_INFO pCrlInfo;
903 #endif
904 } CERT_REVOCATION_PARA, *PCERT_REVOCATION_PARA;
906 #define CERT_CONTEXT_REVOCATION_TYPE 1
907 #define CERT_VERIFY_REV_CHAIN_FLAG 0x00000001
908 #define CERT_VERIFY_CACHE_ONLY_BASED_REVOCATION 0x00000002
909 #define CERT_VERIFY_REV_ACCUMULATIVE_TIMEOUT_FLAG 0x00000004
911 typedef struct _CTL_VERIFY_USAGE_PARA {
912 DWORD cbSize;
913 CRYPT_DATA_BLOB ListIdentifier;
914 DWORD cCtlStore;
915 HCERTSTORE *rghCtlStore;
916 DWORD cSignerStore;
917 HCERTSTORE *rghSignerStore;
918 } CTL_VERIFY_USAGE_PARA, *PCTL_VERIFY_USAGE_PARA;
920 typedef struct _CTL_VERIFY_USAGE_STATUS {
921 DWORD cbSize;
922 DWORD dwError;
923 DWORD dwFlags;
924 PCCTL_CONTEXT *ppCtl;
925 DWORD dwCtlEntryIndex;
926 PCCERT_CONTEXT *ppSigner;
927 DWORD dwSignerIndex;
928 } CTL_VERIFY_USAGE_STATUS, *PCTL_VERIFY_USAGE_STATUS;
930 #define CERT_VERIFY_INHIBIT_CTL_UPDATE_FLAG 0x1
931 #define CERT_VERIFY_TRUSTED_SIGNERS_FLAG 0x2
932 #define CERT_VERIFY_NO_TIME_CHECK_FLAG 0x4
933 #define CERT_VERIFY_ALLOW_MORE_USAGE_FLAG 0x8
934 #define CERT_VERIFY_UPDATED_CTL_FLAG 0x1
936 typedef struct _CERT_CHAIN {
937 DWORD cCerts;
938 PCERT_BLOB certs;
939 CRYPT_KEY_PROV_INFO keyLocatorInfo;
940 } CERT_CHAIN, *PCERT_CHAIN;
942 typedef struct _CERT_REVOCATION_STATUS {
943 DWORD cbSize;
944 DWORD dwIndex;
945 DWORD dwError;
946 DWORD dwReason;
947 BOOL fHasFreshnessTime;
948 DWORD dwFreshnessTime;
949 } CERT_REVOCATION_STATUS, *PCERT_REVOCATION_STATUS;
951 typedef struct _CERT_TRUST_LIST_INFO {
952 DWORD cbSize;
953 PCTL_ENTRY pCtlEntry;
954 PCCTL_CONTEXT pCtlContext;
955 } CERT_TRUST_LIST_INFO, *PCERT_TRUST_LIST_INFO;
957 #define CERT_TRUST_NO_ERROR 0x00000000
958 #define CERT_TRUST_IS_NOT_TIME_VALID 0x00000001
959 #define CERT_TRUST_IS_NOT_TIME_NESTED 0x00000002
960 #define CERT_TRUST_IS_REVOKED 0x00000004
961 #define CERT_TRUST_IS_NOT_SIGNATURE_VALID 0x00000008
962 #define CERT_TRUST_IS_NOT_VALID_FOR_USAGE 0x00000010
963 #define CERT_TRUST_IS_UNTRUSTED_ROOT 0x00000020
964 #define CERT_TRUST_REVOCATION_STATUS_UNKNOWN 0x00000040
965 #define CERT_TRUST_IS_CYCLIC 0x00000080
966 #define CERT_TRUST_INVALID_EXTENSION 0x00000100
967 #define CERT_TRUST_INVALID_POLICY_CONSTRAINTS 0x00000200
968 #define CERT_TRUST_INVALID_BASIC_CONSTRAINTS 0x00000400
969 #define CERT_TRUST_INVALID_NAME_CONSTRAINTS 0x00000800
970 #define CERT_TRUST_HAS_NOT_SUPPORTED_NAME_CONSTRAINT 0x00001000
971 #define CERT_TRUST_HAS_NOT_DEFINED_NAME_CONSTRAINT 0x00002000
972 #define CERT_TRUST_HAS_NOT_PERMITTED_NAME_CONSTRAINT 0x00004000
973 #define CERT_TRUST_HAS_EXCLUDED_NAME_CONSTRAINT 0x00008000
974 #define CERT_TRUST_IS_OFFLINE_REVOCATION 0x01000000
975 #define CERT_TRUST_NO_ISSUANCE_CHAIN_POLICY 0x02000000
976 #define CERT_TRUST_IS_EXPLICIT_DISTRUST 0x04000000
977 #define CERT_TRUST_HAS_NOT_SUPPORTED_CRITICAL_EXT 0x08000000
979 #define CERT_TRUST_IS_PARTIAL_CHAIN 0x00010000
980 #define CERT_TRUST_CTL_IS_NOT_TIME_VALID 0x00020000
981 #define CERT_TRUST_CTL_IS_NOT_SIGNATURE_VALID 0x00040000
982 #define CERT_TRUST_CTL_IS_NOT_VALID_FOR_USAGE 0x00080000
984 #define CERT_TRUST_HAS_EXACT_MATCH_ISSUER 0x00000001
985 #define CERT_TRUST_HAS_KEY_MATCH_ISSUER 0x00000002
986 #define CERT_TRUST_HAS_NAME_MATCH_ISSUER 0x00000004
987 #define CERT_TRUST_IS_SELF_SIGNED 0x00000008
989 #define CERT_TRUST_HAS_PREFERRED_ISSUER 0x00000100
990 #define CERT_TRUST_HAS_ISSUANCE_CHAIN_POLICY 0x00000200
991 #define CERT_TRUST_HAS_VALID_NAME_CONSTRAINTS 0x00000400
992 #define CERT_TRUST_IS_PEER_TRUSTED 0x00000800
993 #define CERT_TRUST_HAS_CRL_VALIDITY_EXTENDED 0x00001000
995 #define CERT_TRUST_IS_COMPLEX_CHAIN 0x00010000
997 typedef struct _CERT_TRUST_STATUS {
998 DWORD dwErrorStatus;
999 DWORD dwInfoStatus;
1000 } CERT_TRUST_STATUS, *PCERT_TRUST_STATUS;
1002 typedef struct _CERT_CHAIN_ELEMENT {
1003 DWORD cbSize;
1004 PCCERT_CONTEXT pCertContext;
1005 CERT_TRUST_STATUS TrustStatus;
1006 PCERT_REVOCATION_INFO pRevocationInfo;
1007 PCERT_ENHKEY_USAGE pIssuanceUsage;
1008 PCERT_ENHKEY_USAGE pApplicationUsage;
1009 LPCWSTR pwszExtendedErrorInfo;
1010 } CERT_CHAIN_ELEMENT, *PCERT_CHAIN_ELEMENT;
1012 typedef struct _CERT_SIMPLE_CHAIN {
1013 DWORD cbSize;
1014 CERT_TRUST_STATUS TrustStatus;
1015 DWORD cElement;
1016 PCERT_CHAIN_ELEMENT *rgpElement;
1017 PCERT_TRUST_LIST_INFO pTrustListInfo;
1018 BOOL fHasRevocationFreshnessTime;
1019 DWORD dwRevocationFreshnessTime;
1020 } CERT_SIMPLE_CHAIN, *PCERT_SIMPLE_CHAIN;
1022 typedef struct _CERT_CHAIN_CONTEXT CERT_CHAIN_CONTEXT, *PCERT_CHAIN_CONTEXT;
1023 typedef const CERT_CHAIN_CONTEXT *PCCERT_CHAIN_CONTEXT;
1025 struct _CERT_CHAIN_CONTEXT {
1026 DWORD cbSize;
1027 CERT_TRUST_STATUS TrustStatus;
1028 DWORD cChain;
1029 PCERT_SIMPLE_CHAIN *rgpChain;
1030 DWORD cLowerQualityChainContext;
1031 PCCERT_CHAIN_CONTEXT *rgpLowerQualityChainContext;
1032 BOOL fHasRevocationFreshnessTime;
1033 DWORD dwRevocationFreshnessTime;
1036 typedef struct _CERT_CHAIN_POLICY_PARA {
1037 DWORD cbSize;
1038 DWORD dwFlags;
1039 void *pvExtraPolicyPara;
1040 } CERT_CHAIN_POLICY_PARA, *PCERT_CHAIN_POLICY_PARA;
1042 typedef struct _CERT_CHAIN_POLICY_STATUS {
1043 DWORD cbSize;
1044 DWORD dwError;
1045 LONG lChainIndex;
1046 LONG lElementIndex;
1047 void *pvExtraPolicyStatus;
1048 } CERT_CHAIN_POLICY_STATUS, *PCERT_CHAIN_POLICY_STATUS;
1050 #define CERT_CHAIN_POLICY_BASE ((LPCSTR)1)
1051 #define CERT_CHAIN_POLICY_AUTHENTICODE ((LPCSTR)2)
1052 #define CERT_CHAIN_POLICY_AUTHENTICODE_TS ((LPCSTR)3)
1053 #define CERT_CHAIN_POLICY_SSL ((LPCSTR)4)
1054 #define CERT_CHAIN_POLICY_BASIC_CONSTRAINTS ((LPCSTR)5)
1055 #define CERT_CHAIN_POLICY_NT_AUTH ((LPCSTR)6)
1056 #define CERT_CHAIN_POLICY_MICROSOFT_ROOT ((LPCSTR)7)
1058 #define CERT_CHAIN_POLICY_IGNORE_NOT_TIME_VALID_FLAG 0x00000001
1059 #define CERT_CHAIN_POLICY_IGNORE_CTL_NOT_TIME_VALID_FLAG 0x00000002
1060 #define CERT_CHAIN_POLICY_IGNORE_NOT_TIME_NESTED_FLAG 0x00000004
1061 #define CERT_CHAIN_POLICY_IGNORE_INVALID_BASIC_CONSTRAINTS_FLAG 0x00000008
1063 #define CERT_CHAIN_POLICY_IGNORE_ALL_NOT_TIME_VALID_FLAGS ( \
1064 CERT_CHAIN_POLICY_IGNORE_NOT_TIME_VALID_FLAG \
1065 CERT_CHAIN_POLICY_IGNORE_CTL_NOT_TIME_VALID_FLAG \
1066 CERT_CHAIN_POLICY_IGNORE_NOT_TIME_NESTED_FLAG )
1068 #define CERT_CHAIN_POLICY_ALLOW_UNKNOWN_CA_FLAG 0x00000010
1069 #define CERT_CHAIN_POLICY_IGNORE_WRONG_USAGE_FLAG 0x00000020
1070 #define CERT_CHAIN_POLICY_IGNORE_INVALID_NAME_FLAG 0x00000040
1071 #define CERT_CHAIN_POLICY_IGNORE_INVALID_POLICY_FLAG 0x00000080
1073 #define CERT_CHAIN_POLICY_IGNORE_END_REV_UNKNOWN_FLAG 0x00000100
1074 #define CERT_CHAIN_POLICY_IGNORE_CTL_SIGNER_REV_UNKNOWN_FLAG 0x00000200
1075 #define CERT_CHAIN_POLICY_IGNORE_CA_REV_UNKNOWN_FLAG 0x00000400
1076 #define CERT_CHAIN_POLICY_IGNORE_ROOT_REV_UNKNOWN_FLAG 0x00000800
1078 #define CERT_CHAIN_POLICY_IGNORE_ALL_REV_UNKNOWN_FLAGS ( \
1079 CERT_CHAIN_POLICY_IGNORE_END_REV_UNKNOWN_FLAG \
1080 CERT_CHAIN_POLICY_IGNORE_CTL_SIGNER_REV_UNKNOWN_FLAG \
1081 CERT_CHAIN_POLICY_IGNORE_CA_REV_UNKNOWN_FLAG \
1082 CERT_CHAIN_POLICY_IGNORE_ROOT_REV_UNKNOWN_FLAG )
1084 #define CERT_CHAIN_POLICY_IGNORE_PEER_TRUST_FLAG 0x00001000
1085 #define CERT_CHAIN_POLICY_IGNORE_NOT_SUPPORTED_CRITICAL_EXT_FLAG 0x00002000
1086 #define CERT_CHAIN_POLICY_TRUST_TESTROOT_FLAG 0x00004000
1087 #define CERT_CHAIN_POLICY_ALLOW_TESTROOT_FLAG 0x00008000
1088 #define MICROSOFT_ROOT_CERT_CHAIN_POLICY_ENABLE_TEST_ROOT_FLAG 0x00010000
1089 #define MICROSOFT_ROOT_CERT_CHAIN_POLICY_CHECK_APPLICATION_ROOT_FLAG 0x00020000
1091 typedef struct _AUTHENTICODE_EXTRA_CERT_CHAIN_POLICY_PARA {
1092 DWORD cbSize;
1093 DWORD dwRegPolicySettings;
1094 PCMSG_SIGNER_INFO pSignerInfo;
1095 } AUTHENTICODE_EXTRA_CERT_CHAIN_POLICY_PARA,
1096 *PAUTHENTICODE_EXTRA_CERT_CHAIN_POLICY_PARA;
1098 typedef struct _AUTHENTICODE_EXTRA_CERT_CHAIN_POLICY_STATUS {
1099 DWORD cbSize;
1100 BOOL fCommercial;
1101 } AUTHENTICODE_EXTRA_CERT_CHAIN_POLICY_STATUS,
1102 *PAUTHENTICODE_EXTRA_CERT_CHAIN_POLICY_STATUS;
1104 typedef struct _AUTHENTICODE_TS_EXTRA_CERT_CHAIN_POLICY_PARA {
1105 DWORD cbSize;
1106 DWORD dwRegPolicySettings;
1107 BOOL fCommercial;
1108 } AUTHENTICODE_TS_EXTRA_CERT_CHAIN_POLICY_PARA,
1109 *PAUTHENTICODE_TS_EXTRA_CERT_CHAIN_POLICY_PARA;
1111 typedef struct _HTTPSPolicyCallbackData {
1112 union {
1113 DWORD cbStruct;
1114 DWORD cbSize;
1115 } DUMMYUNIONNAME;
1116 DWORD dwAuthType;
1117 DWORD fdwChecks;
1118 WCHAR *pwszServerName;
1119 } HTTPSPolicyCallbackData, *PHTTPSPolicyCallbackData,
1120 SSL_EXTRA_CERT_CHAIN_POLICY_PARA, *PSSL_EXTRA_CERT_CHAIN_POLICY_PARA;
1122 /* Values for HTTPSPolicyCallbackData's dwAuthType */
1123 #define AUTHTYPE_CLIENT 1
1124 #define AUTHTYPE_SERVER 2
1125 /* Values for HTTPSPolicyCallbackData's fdwChecks are defined in wininet.h */
1127 #define BASIC_CONSTRAINTS_CERT_CHAIN_POLICY_CA_FLAG 0x80000000
1128 #define BASIC_CONSTRAINTS_CERT_CHAIN_POLICY_END_ENTITY_FLAG 0x40000000
1130 #define MICROSOFT_ROOT_CERT_CHAIN_POLICY_ENABLE_TEST_ROOT_FLAG 0x00010000
1132 #define USAGE_MATCH_TYPE_AND 0x00000000
1133 #define USAGE_MATCH_TYPE_OR 0x00000001
1135 typedef struct _CERT_USAGE_MATCH {
1136 DWORD dwType;
1137 CERT_ENHKEY_USAGE Usage;
1138 } CERT_USAGE_MATCH, *PCERT_USAGE_MATCH;
1140 typedef struct _CTL_USAGE_MATCH {
1141 DWORD dwType;
1142 CTL_USAGE Usage;
1143 } CTL_USAGE_MATCH, *PCTL_USAGE_MATCH;
1145 #define CERT_CHAIN_REVOCATION_CHECK_END_CERT 0x10000000
1146 #define CERT_CHAIN_REVOCATION_CHECK_CHAIN 0x20000000
1147 #define CERT_CHAIN_REVOCATION_CHECK_CHAIN_EXCLUDE_ROOT 0x40000000
1148 #define CERT_CHAIN_REVOCATION_CHECK_CACHE_ONLY 0x80000000
1150 #define CERT_CHAIN_REVOCATION_ACCUMULATIVE_TIMEOUT 0x08000000
1152 #define CERT_CHAIN_DISABLE_PASS1_QUALITY_FILTERING 0x00000040
1153 #define CERT_CHAIN_RETURN_LOWER_QUALITY_CONTEXTS 0x00000080
1154 #define CERT_CHAIN_DISABLE_AUTH_ROOT_AUTO_UPDATE 0x00000100
1155 #define CERT_CHAIN_TIMESTAMP_TIME 0x00000200
1157 typedef struct _CERT_CHAIN_PARA {
1158 DWORD cbSize;
1159 CERT_USAGE_MATCH RequestedUsage;
1160 #ifdef CERT_CHAIN_PARA_HAS_EXTRA_FIELDS
1161 CERT_USAGE_MATCH RequestedIssuancePolicy;
1162 DWORD dwUrlRetrievalTimeout;
1163 BOOL fCheckRevocationFreshnessTime;
1164 DWORD dwRevocationFreshnessTime;
1165 LPFILETIME pftCacheResync;
1166 #endif
1167 } CERT_CHAIN_PARA, *PCERT_CHAIN_PARA;
1169 typedef struct _CERT_SYSTEM_STORE_INFO {
1170 DWORD cbSize;
1171 } CERT_SYSTEM_STORE_INFO, *PCERT_SYSTEM_STORE_INFO;
1173 typedef struct _CERT_PHYSICAL_STORE_INFO {
1174 DWORD cbSize;
1175 LPSTR pszOpenStoreProvider;
1176 DWORD dwOpenEncodingType;
1177 DWORD dwOpenFlags;
1178 CRYPT_DATA_BLOB OpenParameters;
1179 DWORD dwFlags;
1180 DWORD dwPriority;
1181 } CERT_PHYSICAL_STORE_INFO, *PCERT_PHYSICAL_STORE_INFO;
1183 typedef struct _CERT_SYSTEM_STORE_RELOCATE_PARA {
1184 union {
1185 HKEY hKeyBase;
1186 VOID *pvBase;
1187 } DUMMYUNIONNAME;
1188 union {
1189 void *pvSystemStore;
1190 LPCSTR pszSystemStore;
1191 LPCWSTR pwszSystemStore;
1192 } DUMMYUNIONNAME2;
1193 } CERT_SYSTEM_STORE_RELOCATE_PARA, *PCERT_SYSTEM_STORE_RELOCATE_PARA;
1195 typedef BOOL (WINAPI *PFN_CERT_ENUM_SYSTEM_STORE_LOCATION)(
1196 LPCWSTR pwszStoreLocation, DWORD dwFlags, void *pvReserved, void *pvArg);
1198 typedef BOOL (WINAPI *PFN_CERT_ENUM_SYSTEM_STORE)(const void *pvSystemStore,
1199 DWORD dwFlags, PCERT_SYSTEM_STORE_INFO pStoreInfo, void *pvReserved,
1200 void *pvArg);
1202 typedef BOOL (WINAPI *PFN_CERT_ENUM_PHYSICAL_STORE)(const void *pvSystemStore,
1203 DWORD dwFlags, LPCWSTR pwszStoreName, PCERT_PHYSICAL_STORE_INFO pStoreInfo,
1204 void *pvReserved, void *pvArg);
1206 /* Encode/decode object */
1207 typedef LPVOID (__WINE_ALLOC_SIZE(1) WINAPI *PFN_CRYPT_ALLOC)(size_t cbsize);
1208 typedef VOID (WINAPI *PFN_CRYPT_FREE)(LPVOID pv);
1210 typedef struct _CRYPT_ENCODE_PARA {
1211 DWORD cbSize;
1212 PFN_CRYPT_ALLOC pfnAlloc;
1213 PFN_CRYPT_FREE pfnFree;
1214 } CRYPT_ENCODE_PARA, *PCRYPT_ENCODE_PARA;
1216 typedef struct _CRYPT_DECODE_PARA {
1217 DWORD cbSize;
1218 PFN_CRYPT_ALLOC pfnAlloc;
1219 PFN_CRYPT_FREE pfnFree;
1220 } CRYPT_DECODE_PARA, *PCRYPT_DECODE_PARA;
1222 typedef struct _CERT_STORE_PROV_INFO {
1223 DWORD cbSize;
1224 DWORD cStoreProvFunc;
1225 void **rgpvStoreProvFunc;
1226 HCERTSTOREPROV hStoreProv;
1227 DWORD dwStoreProvFlags;
1228 HCRYPTOIDFUNCADDR hStoreProvFuncAddr2;
1229 } CERT_STORE_PROV_INFO, *PCERT_STORE_PROV_INFO;
1231 typedef BOOL (WINAPI *PFN_CERT_DLL_OPEN_STORE_PROV_FUNC)(
1232 LPCSTR lpszStoreProvider, DWORD dwEncodingType, HCRYPTPROV_LEGACY hCryptProv,
1233 DWORD dwFlags, const void *pvPara, HCERTSTORE hCertStore,
1234 PCERT_STORE_PROV_INFO pStoreProvInfo);
1236 typedef void (WINAPI *PFN_CERT_STORE_PROV_CLOSE)(HCERTSTOREPROV hStoreProv,
1237 DWORD dwFlags);
1239 typedef BOOL (WINAPI *PFN_CERT_STORE_PROV_READ_CERT)(HCERTSTOREPROV hStoreProv,
1240 PCCERT_CONTEXT pStoreCertContext, DWORD dwFlags,
1241 PCCERT_CONTEXT *ppProvCertContext);
1243 typedef BOOL (WINAPI *PFN_CERT_STORE_PROV_WRITE_CERT)(HCERTSTOREPROV hStoreProv,
1244 PCCERT_CONTEXT pCertContext, DWORD dwFlags);
1246 typedef BOOL (WINAPI *PFN_CERT_STORE_PROV_DELETE_CERT)(
1247 HCERTSTOREPROV hStoreProv, PCCERT_CONTEXT pCertContext, DWORD dwFlags);
1249 typedef BOOL (WINAPI *PFN_CERT_STORE_PROV_SET_CERT_PROPERTY)(
1250 HCERTSTOREPROV hStoreProv, PCCERT_CONTEXT pCertContext, DWORD dwPropId,
1251 DWORD dwFlags, const void *pvData);
1253 typedef BOOL (WINAPI *PFN_CERT_STORE_PROV_READ_CRL)(HCERTSTOREPROV hStoreProv,
1254 PCCRL_CONTEXT pStoreCrlContext, DWORD dwFlags,
1255 PCCRL_CONTEXT *ppProvCrlContext);
1257 typedef BOOL (WINAPI *PFN_CERT_STORE_PROV_WRITE_CRL)(HCERTSTOREPROV hStoreProv,
1258 PCCRL_CONTEXT pCrlContext, DWORD dwFlags);
1260 typedef BOOL (WINAPI *PFN_CERT_STORE_PROV_DELETE_CRL)(HCERTSTOREPROV hStoreProv,
1261 PCCRL_CONTEXT pCrlContext, DWORD dwFlags);
1263 typedef BOOL (WINAPI *PFN_CERT_STORE_PROV_SET_CRL_PROPERTY)(
1264 HCERTSTOREPROV hStoreProv, PCCRL_CONTEXT pCrlContext, DWORD dwPropId,
1265 DWORD dwFlags, const void *pvData);
1267 typedef BOOL (WINAPI *PFN_CERT_STORE_PROV_READ_CTL)(HCERTSTOREPROV hStoreProv,
1268 PCCTL_CONTEXT pStoreCtlContext, DWORD dwFlags,
1269 PCCTL_CONTEXT *ppProvCtlContext);
1271 typedef BOOL (WINAPI *PFN_CERT_STORE_PROV_WRITE_CTL)(HCERTSTOREPROV hStoreProv,
1272 PCCTL_CONTEXT pCtlContext, DWORD dwFlags);
1274 typedef BOOL (WINAPI *PFN_CERT_STORE_PROV_DELETE_CTL)(
1275 HCERTSTOREPROV hStoreProv, PCCTL_CONTEXT pCtlContext, DWORD dwFlags);
1277 typedef BOOL (WINAPI *PFN_CERT_STORE_PROV_SET_CTL_PROPERTY)(
1278 HCERTSTOREPROV hStoreProv, PCCTL_CONTEXT pCtlContext, DWORD dwPropId,
1279 DWORD dwFlags, const void *pvData);
1281 typedef BOOL (WINAPI *PFN_CERT_STORE_PROV_CONTROL)(HCERTSTOREPROV hStoreProv,
1282 DWORD dwFlags, DWORD dwCtrlType, void const *pvCtrlPara);
1284 typedef struct _CERT_STORE_PROV_FIND_INFO {
1285 DWORD cbSize;
1286 DWORD dwMsgAndCertEncodingType;
1287 DWORD dwFindFlags;
1288 DWORD dwFindType;
1289 const void *pvFindPara;
1290 } CERT_STORE_PROV_FIND_INFO, *PCERT_STORE_PROV_FIND_INFO;
1291 typedef const CERT_STORE_PROV_FIND_INFO CCERT_STORE_PROV_FIND_INFO,
1292 *PCCERT_STORE_PROV_FIND_INFO;
1294 typedef BOOL (WINAPI *PFN_CERT_STORE_PROV_FIND_CERT)(HCERTSTOREPROV hStoreProv,
1295 PCCERT_STORE_PROV_FIND_INFO pFindInfo, PCCERT_CONTEXT pPrevCertContext,
1296 DWORD dwFlags, void **ppvStoreProvFindInfo, PCCERT_CONTEXT *ppProvCertContext);
1298 typedef BOOL (WINAPI *PFN_CERT_STORE_PROV_FREE_FIND_CERT)(
1299 HCERTSTOREPROV hStoreProv, PCCERT_CONTEXT pCertContext,
1300 void *pvStoreProvFindInfo, DWORD dwFlags);
1302 typedef BOOL (WINAPI *PFN_CERT_STORE_PROV_GET_CERT_PROPERTY)(
1303 HCERTSTOREPROV hStoreProv, PCCERT_CONTEXT pCertContext, DWORD dwPropId,
1304 DWORD dwFlags, void *pvData, DWORD *pcbData);
1306 typedef BOOL (WINAPI *PFN_CERT_STORE_PROV_FIND_CRL)(HCERTSTOREPROV hStoreProv,
1307 PCCERT_STORE_PROV_FIND_INFO pFindInfo, PCCRL_CONTEXT pPrevCrlContext,
1308 DWORD dwFlags, void **ppvStoreProvFindInfo, PCCRL_CONTEXT *ppProvCrlContext);
1310 typedef BOOL (WINAPI *PFN_CERT_STORE_PROV_FREE_FIND_CRL)(
1311 HCERTSTOREPROV hStoreProv, PCCRL_CONTEXT pCrlContext,
1312 void *pvStoreProvFindInfo, DWORD dwFlags);
1314 typedef BOOL (WINAPI *PFN_CERT_STORE_PROV_GET_CRL_PROPERTY)(
1315 HCERTSTOREPROV hStoreProv, PCCRL_CONTEXT pCrlContext, DWORD dwPropId,
1316 DWORD dwFlags, void *pvData, DWORD *pcbData);
1318 typedef BOOL (WINAPI *PFN_CERT_STORE_PROV_FIND_CTL)(HCERTSTOREPROV hStoreProv,
1319 PCCTL_CONTEXT pCtlContext, void *pvStoreProvFindInfo, DWORD dwFlags);
1321 typedef BOOL (WINAPI *PFN_CERT_STORE_PROV_GET_CTL_PROPERTY)(
1322 HCERTSTOREPROV hStoreProv, PCCTL_CONTEXT pCtlContext, DWORD dwPropId,
1323 DWORD dwFlags, void *pvData);
1325 typedef struct _CERT_CREATE_CONTEXT_PARA {
1326 DWORD cbSize;
1327 PFN_CRYPT_FREE pfnFree;
1328 void *pvFree;
1329 } CERT_CREATE_CONTEXT_PARA, *PCERT_CREATE_CONTEXT_PARA;
1331 typedef struct _CRYPT_OID_FUNC_ENTRY {
1332 LPCSTR pszOID;
1333 void *pvFuncAddr;
1334 } CRYPT_OID_FUNC_ENTRY, *PCRYPT_OID_FUNC_ENTRY;
1336 typedef BOOL (WINAPI *PFN_CRYPT_ENUM_OID_FUNC)(DWORD dwEncodingType,
1337 LPCSTR pszFuncName, LPCSTR pszOID, DWORD cValue, const DWORD rgdwValueType[],
1338 LPCWSTR const rgpwszValueName[], const BYTE * const rgpbValueData[],
1339 const DWORD rgcbValueData[], void *pvArg);
1341 #define CRYPT_MATCH_ANY_ENCODING_TYPE 0xffffffff
1343 #define CALG_OID_INFO_CNG_ONLY 0xffffffff
1344 #define CALG_OID_INFO_PARAMETERS 0xfffffffe
1346 #if defined(_MSC_VER) || defined(__MINGW32__)
1347 #define CRYPT_OID_INFO_HASH_PARAMETERS_ALGORITHM L"CryptOIDInfoHashParameters"
1348 #define CRYPT_OID_INFO_ECC_PARAMETERS_ALGORITHM L"CryptOIDInfoECCParameters"
1349 #define CRYPT_OID_INFO_MGF1_PARAMETERS_ALGORITHM L"CryptOIDInfoMgf1Parameters"
1350 #define CRYPT_OID_INFO_NO_SIGN_ALGORITHM L"CryptOIDInfoNoSign"
1351 #define CRYPT_OID_INFO_OAEP_PARAMETERS_ALGORITHM L"CryptOIDInfoOAEPParameters"
1352 #define CRYPT_OID_INFO_ECC_WRAP_PARAMETERS_ALGORITHM L"CryptOIDInfoECCWrapParameters"
1353 #define CRYPT_OID_INFO_NO_PARAMETERS_ALGORITHM L"CryptOIDInfoNoParameters"
1354 #else
1355 static const WCHAR CRYPT_OID_INFO_HASH_PARAMETERS_ALGORITHM[] = {'C','r','y','p','t','O','I','D','I','n','f','o','H','a','s','h','P','a','r','a','m','e','t','e','r','s',0};
1356 static const WCHAR CRYPT_OID_INFO_ECC_PARAMETERS_ALGORITHM[] = {'C','r','y','p','t','O','I','D','I','n','f','o','E','C','C','P','a','r','a','m','e','t','e','r','s',0};
1357 static const WCHAR CRYPT_OID_INFO_MGF1_PARAMETERS_ALGORITHM[] = {'C','r','y','p','t','O','I','D','I','n','f','o','M','g','f','1','P','a','r','a','m','e','t','e','r','s',0};
1358 static const WCHAR CRYPT_OID_INFO_NO_SIGN_ALGORITHM[] = {'C','r','y','p','t','O','I','D','I','n','f','o','N','o','S','i','g','n',0};
1359 static const WCHAR CRYPT_OID_INFO_OAEP_PARAMETERS_ALGORITHM[] = {'C','r','y','p','t','O','I','D','I','n','f','o','O','A','E','P','P','a','r','a','m','e','t','e','r','s',0};
1360 static const WCHAR CRYPT_OID_INFO_ECC_WRAP_PARAMETERS_ALGORITHM[] = {'C','r','y','p','t','O','I','D','I','n','f','o','E','C','C','W','r','a','p','P','a','r','a','m','e','t','e','r','s',0};
1361 static const WCHAR CRYPT_OID_INFO_NO_PARAMETERS_ALGORITHM[] = {'C','r','y','p','t','O','I','D','I','n','f','o','N','o','P','a','r','a','m','e','t','e','r','s',0};
1362 #endif
1364 typedef struct _CRYPT_OID_INFO {
1365 DWORD cbSize;
1366 LPCSTR pszOID;
1367 LPCWSTR pwszName;
1368 DWORD dwGroupId;
1369 union {
1370 DWORD dwValue;
1371 ALG_ID Algid;
1372 DWORD dwLength;
1373 } DUMMYUNIONNAME;
1374 CRYPT_DATA_BLOB ExtraInfo;
1375 #ifdef CRYPT_OID_INFO_HAS_EXTRA_FIELDS
1376 LPCWSTR pwszCNGAlgid;
1377 LPCWSTR pwszCNGExtraAlgid;
1378 #endif
1379 } CRYPT_OID_INFO, *PCRYPT_OID_INFO;
1380 typedef const CRYPT_OID_INFO CCRYPT_OID_INFO, *PCCRYPT_OID_INFO;
1382 typedef BOOL (WINAPI *PFN_CRYPT_ENUM_OID_INFO)(PCCRYPT_OID_INFO pInfo,
1383 void *pvArg);
1385 typedef struct _CRYPT_SIGN_MESSAGE_PARA {
1386 DWORD cbSize;
1387 DWORD dwMsgEncodingType;
1388 PCCERT_CONTEXT pSigningCert;
1389 CRYPT_ALGORITHM_IDENTIFIER HashAlgorithm;
1390 void * pvHashAuxInfo;
1391 DWORD cMsgCert;
1392 PCCERT_CONTEXT *rgpMsgCert;
1393 DWORD cMsgCrl;
1394 PCCRL_CONTEXT *rgpMsgCrl;
1395 DWORD cAuthAttr;
1396 PCRYPT_ATTRIBUTE rgAuthAttr;
1397 DWORD cUnauthAttr;
1398 PCRYPT_ATTRIBUTE rgUnauthAttr;
1399 DWORD dwFlags;
1400 DWORD dwInnerContentType;
1401 #ifdef CRYPT_SIGN_MESSAGE_PARA_HAS_CMS_FIELDS
1402 CRYPT_ALGORITHM_IDENTIFIER HashEncryptionAlgorithm;
1403 void * pvHashEncryptionAuxInfo;
1404 #endif
1405 } CRYPT_SIGN_MESSAGE_PARA, *PCRYPT_SIGN_MESSAGE_PARA;
1407 #define CRYPT_MESSAGE_BARE_CONTENT_OUT_FLAG 0x00000001
1408 #define CRYPT_MESSAGE_ENCAPSULATED_CONTENT_OUT_FLAG 0x00000002
1409 #define CRYPT_MESSAGE_KEYID_SIGNER_FLAG 0x00000004
1410 #define CRYPT_MESSAGE_SILENT_KEYSET_FLAG 0x00000008
1412 typedef PCCERT_CONTEXT (WINAPI *PFN_CRYPT_GET_SIGNER_CERTIFICATE)(void *pvArg,
1413 DWORD dwCertEncodingType, PCERT_INFO pSignerId, HCERTSTORE hMsgCertStore);
1415 typedef struct _CRYPT_VERIFY_MESSAGE_PARA {
1416 DWORD cbSize;
1417 DWORD dwMsgAndCertEncodingType;
1418 HCRYPTPROV_LEGACY hCryptProv;
1419 PFN_CRYPT_GET_SIGNER_CERTIFICATE pfnGetSignerCertificate;
1420 void * pvGetArg;
1421 } CRYPT_VERIFY_MESSAGE_PARA, *PCRYPT_VERIFY_MESSAGE_PARA;
1423 typedef struct _CRYPT_ENCRYPT_MESSAGE_PARA {
1424 DWORD cbSize;
1425 DWORD dwMsgEncodingType;
1426 HCRYPTPROV_LEGACY hCryptProv;
1427 CRYPT_ALGORITHM_IDENTIFIER ContentEncryptionAlgorithm;
1428 void * pvEncryptionAuxInfo;
1429 DWORD dwFlags;
1430 DWORD dwInnerContentType;
1431 } CRYPT_ENCRYPT_MESSAGE_PARA, *PCRYPT_ENCRYPT_MESSAGE_PARA;
1433 #define CRYPT_MESSAGE_KEYID_RECIPIENT_FLAG 0x00000004
1435 typedef struct _CRYPT_DECRYPT_MESSAGE_PARA {
1436 DWORD cbSize;
1437 DWORD dwMsgAndCertEncodingType;
1438 DWORD cCertStore;
1439 HCERTSTORE *rghCertStore;
1440 #ifdef CRYPT_DECRYPT_MESSAGE_PARA_HAS_EXTRA_FIELDS
1441 DWORD dwFlags;
1442 #endif
1443 } CRYPT_DECRYPT_MESSAGE_PARA, *PCRYPT_DECRYPT_MESSAGE_PARA;
1445 typedef struct _CRYPT_HASH_MESSAGE_PARA {
1446 DWORD cbSize;
1447 DWORD dwMsgEncodingType;
1448 HCRYPTPROV_LEGACY hCryptProv;
1449 CRYPT_ALGORITHM_IDENTIFIER HashAlgorithm;
1450 void * pvHashAuxInfo;
1451 } CRYPT_HASH_MESSAGE_PARA, *PCRYPT_HASH_MESSAGE_PARA;
1453 typedef struct _CRYPT_KEY_SIGN_MESSAGE_PARA {
1454 DWORD cbSize;
1455 DWORD dwMsgAndCertEncodingType;
1456 HCRYPTPROV hCryptProv;
1457 DWORD dwKeySpec;
1458 CRYPT_ALGORITHM_IDENTIFIER HashAlgorithm;
1459 void * pvHashAuxInfo;
1460 } CRYPT_KEY_SIGN_MESSAGE_PARA, *PCRYPT_KEY_SIGN_MESSAGE_PARA;
1462 typedef struct _CRYPT_KEY_VERIFY_MESSAGE_PARA {
1463 DWORD cbSize;
1464 DWORD dwMsgEncodingType;
1465 HCRYPTPROV_LEGACY hCryptProv;
1466 } CRYPT_KEY_VERIFY_MESSAGE_PARA, *PCRYPT_KEY_VERIFY_MESSAGE_PARA;
1468 typedef struct _CRYPT_URL_ARRAY {
1469 DWORD cUrl;
1470 LPWSTR *rgwszUrl;
1471 } CRYPT_URL_ARRAY, *PCRYPT_URL_ARRAY;
1473 typedef struct _CRYPT_URL_INFO {
1474 DWORD cbSize;
1475 DWORD dwSyncDeltaTime;
1476 DWORD cGroup;
1477 DWORD *rgcGroupEntry;
1478 } CRYPT_URL_INFO, *PCRYPT_URL_INFO;
1480 #define URL_OID_CERTIFICATE_ISSUER ((LPCSTR)1)
1481 #define URL_OID_CERTIFICATE_CRL_DIST_POINT ((LPCSTR)2)
1482 #define URL_OID_CTL_ISSUER ((LPCSTR)3)
1483 #define URL_OID_CTL_NEXT_UPDATE ((LPCSTR)4)
1484 #define URL_OID_CRL_ISSUER ((LPCSTR)5)
1485 #define URL_OID_CERTIFICATE_FRESHEST_CRL ((LPCSTR)6)
1486 #define URL_OID_CRL_FRESHEST_CRL ((LPCSTR)7)
1487 #define URL_OID_CROSS_CERT_DIST_POINT ((LPCSTR)8)
1488 #define URL_OID_CERTIFICATE_OCSP ((LPCSTR)9)
1489 #define URL_OID_CERTIFICATE_OCSP_AND_CRL_DIST_POINT ((LPCSTR)10)
1490 #define URL_OID_CERTIFICATE_CRL_DIST_POINT_AND_OCSP ((LPCSTR)11)
1491 #define URL_OID_CROSS_CERT_SUBJECT_INFO_ACCESS ((LPCSTR)12)
1493 #define URL_OID_GET_OBJECT_URL_FUNC "UrlDllGetObjectUrl"
1495 typedef HANDLE HCRYPTASYNC, *PHCRYPTASYNC;
1497 typedef void (WINAPI *PFN_CRYPT_ASYNC_PARAM_FREE_FUNC)(LPSTR pszParamOid,
1498 LPVOID pvParam);
1500 #define CRYPT_PARAM_ASYNC_RETRIEVAL_COMPLETION ((LPCSTR)1)
1501 #define CRYPT_PARAM_CANCEL_ASYNC_RETRIEVAL ((LPCSTR)2)
1503 typedef void (WINAPI *PFN_CRYPT_ASYNC_RETRIEVAL_COMPLETION_FUNC)(
1504 void *pvCompletion, DWORD dwCompletionCode, LPCSTR pszURL, LPSTR pszObjectOid,
1505 void *pvObject);
1507 typedef struct _CRYPT_ASYNC_RETRIEVAL_COMPLETION
1509 PFN_CRYPT_ASYNC_RETRIEVAL_COMPLETION_FUNC pfnCompletion;
1510 void *pvCompletion;
1511 } CRYPT_ASYNC_RETRIEVAL_COMPLETION, *PCRYPT_ASYNC_RETRIEVAL_COMPLETION;
1513 typedef BOOL (WINAPI *PFN_CANCEL_ASYNC_RETRIEVAL_FUNC)(
1514 HCRYPTASYNC hAsyncRetrieve);
1516 typedef struct _CRYPT_BLOB_ARRAY
1518 DWORD cBlob;
1519 PCRYPT_DATA_BLOB rgBlob;
1520 } CRYPT_BLOB_ARRAY, *PCRYPT_BLOB_ARRAY;
1522 typedef struct _CRYPT_CREDENTIALS {
1523 DWORD cbSize;
1524 LPCSTR pszCredentialsOid;
1525 LPVOID pvCredentials;
1526 } CRYPT_CREDENTIALS, *PCRYPT_CREDENTIALS;
1528 #define CREDENTIAL_OID_PASSWORD_CREDENTIALS_A ((LPCSTR)1)
1529 #define CREDENTIAL_OID_PASSWORD_CREDENTIALS_W ((LPCSTR)2)
1530 #define CREDENTIAL_OID_PASSWORD_CREDENTIALS \
1531 WINELIB_NAME_AW(CREDENTIAL_OID_PASSWORD_CREDENTIALS_)
1533 typedef struct _CRYPT_PASSWORD_CREDENTIALSA {
1534 DWORD cbSize;
1535 LPSTR pszUsername;
1536 LPSTR pszPassword;
1537 } CRYPT_PASSWORD_CREDENTIALSA, *PCRYPT_PASSWORD_CREDENTIALSA;
1539 typedef struct _CRYPT_PASSWORD_CREDENTIALSW {
1540 DWORD cbSize;
1541 LPWSTR pszUsername;
1542 LPWSTR pszPassword;
1543 } CRYPT_PASSWORD_CREDENTIALSW, *PCRYPT_PASSWORD_CREDENTIALSW;
1544 #define CRYPT_PASSWORD_CREDENTIALS WINELIB_NAME_AW(CRYPT_PASSWORD_CREDENTIALS)
1545 #define PCRYPT_PASSWORD_CREDENTIALS WINELIB_NAME_AW(PCRYPT_PASSWORD_CREDENTIALS)
1547 typedef struct _CRYPT_RETRIEVE_AUX_INFO {
1548 DWORD cbSize;
1549 FILETIME *pLastSyncTime;
1550 DWORD dwMaxUrlRetrievalByteCount;
1551 } CRYPT_RETRIEVE_AUX_INFO, *PCRYPT_RETRIEVE_AUX_INFO;
1553 typedef void (WINAPI *PFN_FREE_ENCODED_OBJECT_FUNC)(LPCSTR pszObjectOid,
1554 PCRYPT_BLOB_ARRAY pObject, void *pvFreeContext);
1556 #define SCHEME_OID_RETRIEVE_ENCODED_OBJECT_FUNC \
1557 "SchemeDllRetrieveEncodedObject"
1558 #define SCHEME_OID_RETRIEVE_ENCODED_OBJECTW_FUNC \
1559 "SchemeDllRetrieveEncodedObjectW"
1560 /* The signature of SchemeDllRetrieveEncodedObjectW is:
1561 BOOL WINAPI SchemeDllRetrieveEncodedObjectW(LPCWSTR pwszUrl,
1562 LPCSTR pszObjectOid, DWORD dwRetrievalFlags, DWORD dwTimeout,
1563 PCRYPT_BLOB_ARRAY pObject, PFN_FREE_ENCODED_OBJECT_FUNC *ppfnFreeObject,
1564 void **ppvFreeContext, HCRYPTASYNC hAsyncRetrieve,
1565 PCRYPT_CREDENTIALS pCredentials, PCRYPT_RETRIEVE_AUX_INFO pAuxInfo);
1568 #define CONTEXT_OID_CREATE_OBJECT_CONTEXT_FUNC "ContextDllCreateObjectContext"
1569 /* The signature of ContextDllCreateObjectContext is:
1570 BOOL WINAPI ContextDllCreateObjectContext(LPCSTR pszObjectOid,
1571 DWORD dwRetrievalFlags, PCRYPT_BLOB_ARRAY pObject, void **ppvContxt);
1574 #define CONTEXT_OID_CERTIFICATE ((LPCSTR)1)
1575 #define CONTEXT_OID_CRL ((LPCSTR)2)
1576 #define CONTEXT_OID_CTL ((LPCSTR)3)
1577 #define CONTEXT_OID_PKCS7 ((LPCSTR)4)
1578 #define CONTEXT_OID_CAPI2_ANY ((LPCSTR)5)
1580 #define CRYPT_RETRIEVE_MULTIPLE_OBJECTS 0x00000001
1581 #define CRYPT_CACHE_ONLY_RETRIEVAL 0x00000002
1582 #define CRYPT_WIRE_ONLY_RETRIEVAL 0x00000004
1583 #define CRYPT_DONT_CACHE_RESULT 0x00000008
1584 #define CRYPT_ASYNC_RETRIEVAL 0x00000010
1585 #define CRYPT_STICKY_CACHE_RETRIEVAL 0x00001000
1586 #define CRYPT_LDAP_SCOPE_BASE_ONLY_RETRIEVAL 0x00002000
1587 #define CRYPT_OFFLINE_CHECK_RETRIEVAL 0x00004000
1588 #define CRYPT_LDAP_INSERT_ENTRY_ATTRIBUTE 0x00008000
1589 #define CRYPT_LDAP_SIGN_RETRIEVAL 0x00010000
1590 #define CRYPT_NO_AUTH_RETRIEVAL 0x00020000
1591 #define CRYPT_LDAP_AREC_EXCLUSIVE_RETRIEVAL 0x00040000
1592 #define CRYPT_AIA_RETRIEVAL 0x00080000
1594 #define CRYPT_VERIFY_CONTEXT_SIGNATURE 0x00000020
1595 #define CRYPT_VERIFY_DATA_HASH 0x00000040
1596 #define CRYPT_KEEP_TIME_VALID 0x00000080
1597 #define CRYPT_DONT_VERIFY_SIGNATURE 0x00000100
1598 #define CRYPT_DONT_CHECK_TIME_VALIDITY 0x00000200
1599 #define CRYPT_CHECK_FRESHNESS_TIME_VALIDITY 0x00000400
1600 #define CRYPT_ACCUMULATIVE_TIMEOUT 0x00000800
1602 typedef BOOL (WINAPI *PFN_CRYPT_CANCEL_RETRIEVAL)(DWORD dwFlags, void *pvArg);
1604 typedef struct _CERT_CRL_CONTEXT_PAIR
1606 PCCERT_CONTEXT pCertContext;
1607 PCCRL_CONTEXT pCrlContext;
1608 } CERT_CRL_CONTEXT_PAIR, *PCERT_CRL_CONTEXT_PAIR;
1609 typedef const CERT_CRL_CONTEXT_PAIR *PCCERT_CRL_CONTEXT_PAIR;
1611 #define TIME_VALID_OID_GET_OBJECT_FUNC "TimeValidDllGetObject"
1613 #define TIME_VALID_OID_GET_CTL ((LPCSTR)1)
1614 #define TIME_VALID_OID_GET_CRL ((LPCSTR)2)
1615 #define TIME_VALID_OID_GET_CRL_FROM_CERT ((LPCSTR)3)
1616 #define TIME_VALID_OID_GET_FRESHEST_CRL_FROM_CERT ((LPCSTR)4)
1617 #define TIME_VALID_OID_GET_FRESHEST_CRL_FROM_CRL ((LPCSTR)5)
1619 #define TIME_VALID_OID_FLUSH_OBJECT_FUNC "TimeValidDllFlushObject"
1621 #define TIME_VALID_OID_FLUSH_CTL ((LPCSTR)1)
1622 #define TIME_VALID_OID_FLUSH_CRL ((LPCSTR)2)
1623 #define TIME_VALID_OID_FLUSH_CRL_FROM_CERT ((LPCSTR)3)
1624 #define TIME_VALID_OID_FLUSH_FRESHEST_CRL_FROM_CERT ((LPCSTR)4)
1625 #define TIME_VALID_OID_FLUSH_FRESHEST_CRL_FROM_CRL ((LPCSTR)5)
1627 /* OID group IDs */
1628 #define CRYPT_HASH_ALG_OID_GROUP_ID 1
1629 #define CRYPT_ENCRYPT_ALG_OID_GROUP_ID 2
1630 #define CRYPT_PUBKEY_ALG_OID_GROUP_ID 3
1631 #define CRYPT_SIGN_ALG_OID_GROUP_ID 4
1632 #define CRYPT_RDN_ATTR_OID_GROUP_ID 5
1633 #define CRYPT_EXT_OR_ATTR_OID_GROUP_ID 6
1634 #define CRYPT_ENHKEY_USAGE_OID_GROUP_ID 7
1635 #define CRYPT_POLICY_OID_GROUP_ID 8
1636 #define CRYPT_TEMPLATE_OID_GROUP_ID 9
1637 #define CRYPT_LAST_OID_GROUP_ID 9
1639 #define CRYPT_FIRST_ALG_OID_GROUP_ID CRYPT_HASH_ALG_OID_GROUP_ID
1640 #define CRYPT_LAST_ALG_OID_GROUP_ID CRYPT_SIGN_ALG_OID_GROUP_ID
1642 #define CRYPT_OID_INHIBIT_SIGNATURE_FORMAT_FLAG 0x1
1643 #define CRYPT_OID_USE_PUBKEY_PARA_FOR_PKCS7_FLAG 0x2
1644 #define CRYPT_OID_NO_NULL_ALGORITHM_PARA_FLAG 0x4
1646 #define CRYPT_OID_INFO_OID_KEY 1
1647 #define CRYPT_OID_INFO_NAME_KEY 2
1648 #define CRYPT_OID_INFO_ALGID_KEY 3
1649 #define CRYPT_OID_INFO_SIGN_KEY 4
1651 /* Algorithm IDs */
1653 #define GET_ALG_CLASS(x) (x & (7 << 13))
1654 #define GET_ALG_TYPE(x) (x & (15 << 9))
1655 #define GET_ALG_SID(x) (x & (511))
1657 /* Algorithm Classes */
1658 #define ALG_CLASS_ANY (0)
1659 #define ALG_CLASS_SIGNATURE (1 << 13)
1660 #define ALG_CLASS_MSG_ENCRYPT (2 << 13)
1661 #define ALG_CLASS_DATA_ENCRYPT (3 << 13)
1662 #define ALG_CLASS_HASH (4 << 13)
1663 #define ALG_CLASS_KEY_EXCHANGE (5 << 13)
1664 #define ALG_CLASS_ALL (7 << 13)
1665 /* Algorithm types */
1666 #define ALG_TYPE_ANY (0)
1667 #define ALG_TYPE_DSS (1 << 9)
1668 #define ALG_TYPE_RSA (2 << 9)
1669 #define ALG_TYPE_BLOCK (3 << 9)
1670 #define ALG_TYPE_STREAM (4 << 9)
1671 #define ALG_TYPE_DH (5 << 9)
1672 #define ALG_TYPE_SECURECHANNEL (6 << 9)
1673 #define ALG_TYPE_ECDH (7 << 9)
1675 /* SIDs */
1676 #define ALG_SID_ANY (0)
1677 /* RSA SIDs */
1678 #define ALG_SID_RSA_ANY 0
1679 #define ALG_SID_RSA_PKCS 1
1680 #define ALG_SID_RSA_MSATWORK 2
1681 #define ALG_SID_RSA_ENTRUST 3
1682 #define ALG_SID_RSA_PGP 4
1683 /* DSS SIDs */
1684 #define ALG_SID_DSS_ANY 0
1685 #define ALG_SID_DSS_PKCS 1
1686 #define ALG_SID_DSS_DMS 2
1687 #define ALG_SID_ECDSA 3
1689 /* DES SIDs */
1690 #define ALG_SID_DES 1
1691 #define ALG_SID_3DES 3
1692 #define ALG_SID_DESX 4
1693 #define ALG_SID_IDEA 5
1694 #define ALG_SID_CAST 6
1695 #define ALG_SID_SAFERSK64 7
1696 #define ALG_SID_SAFERSK128 8
1697 #define ALG_SID_3DES_112 9
1698 #define ALG_SID_CYLINK_MEK 12
1699 #define ALG_SID_RC5 13
1700 #define ALG_SID_AES_128 14
1701 #define ALG_SID_AES_192 15
1702 #define ALG_SID_AES_256 16
1703 #define ALG_SID_AES 17
1704 /* Fortezza */
1705 #define ALG_SID_SKIPJACK 10
1706 #define ALG_SID_TEK 11
1707 /* Diffie-Hellmans SIDs */
1708 #define ALG_SID_DH_SANDF 1
1709 #define ALG_SID_DH_EPHEM 2
1710 #define ALG_SID_AGREED_KEY_ANY 3
1711 #define ALG_SID_KEA 4
1712 #define ALG_SID_ECDH 5
1713 #define ALG_SID_ECDH_EPHEM 6
1714 /* RC2 SIDs */
1715 #define ALG_SID_RC4 1
1716 #define ALG_SID_RC2 2
1717 #define ALG_SID_SEAL 2
1718 /* Hash SIDs */
1719 #define ALG_SID_MD2 1
1720 #define ALG_SID_MD4 2
1721 #define ALG_SID_MD5 3
1722 #define ALG_SID_SHA 4
1723 #define ALG_SID_SHA1 ALG_SID_SHA
1724 #define ALG_SID_MAC 5
1725 #define ALG_SID_RIPEMD 6
1726 #define ALG_SID_RIPEMD160 7
1727 #define ALG_SID_SSL3SHAMD5 8
1728 #define ALG_SID_HMAC 9
1729 #define ALG_SID_TLS1PRF 10
1730 #define ALG_SID_HASH_REPLACE_OWF 11
1731 #define ALG_SID_SHA_256 12
1732 #define ALG_SID_SHA_384 13
1733 #define ALG_SID_SHA_512 14
1734 /* SCHANNEL SIDs */
1735 #define ALG_SID_SSL3_MASTER 1
1736 #define ALG_SID_SCHANNEL_MASTER_HASH 2
1737 #define ALG_SID_SCHANNEL_MAC_KEY 3
1738 #define ALG_SID_PCT1_MASTER 4
1739 #define ALG_SID_SSL2_MASTER 5
1740 #define ALG_SID_TLS1_MASTER 6
1741 #define ALG_SID_SCHANNEL_ENC_KEY 7
1742 #define ALG_SID_EXAMPLE 80
1744 #define ALG_SID_ECMQV 1
1746 /* Algorithm Definitions */
1747 #define CALG_MD2 (ALG_CLASS_HASH | ALG_TYPE_ANY | ALG_SID_MD2)
1748 #define CALG_MD4 (ALG_CLASS_HASH | ALG_TYPE_ANY | ALG_SID_MD4)
1749 #define CALG_MD5 (ALG_CLASS_HASH | ALG_TYPE_ANY | ALG_SID_MD5)
1750 #define CALG_SHA (ALG_CLASS_HASH | ALG_TYPE_ANY | ALG_SID_SHA)
1751 #define CALG_SHA1 CALG_SHA
1752 #define CALG_MAC (ALG_CLASS_HASH | ALG_TYPE_ANY | ALG_SID_MAC)
1753 #define CALG_SSL3_SHAMD5 (ALG_CLASS_HASH | ALG_TYPE_ANY | ALG_SID_SSL3SHAMD5)
1754 #define CALG_HMAC (ALG_CLASS_HASH | ALG_TYPE_ANY | ALG_SID_HMAC)
1755 #define CALG_TLS1PRF (ALG_CLASS_HASH | ALG_TYPE_ANY | ALG_SID_TLS1PRF)
1756 #define CALG_HASH_REPLACE_OWF (ALG_CLASS_HASH | ALG_TYPE_ANY | ALG_SID_HASH_REPLACE_OWF)
1757 #define CALG_SHA_256 (ALG_CLASS_HASH | ALG_TYPE_ANY | ALG_SID_SHA_256)
1758 #define CALG_SHA_384 (ALG_CLASS_HASH | ALG_TYPE_ANY | ALG_SID_SHA_384)
1759 #define CALG_SHA_512 (ALG_CLASS_HASH | ALG_TYPE_ANY | ALG_SID_SHA_512)
1760 #define CALG_RSA_SIGN (ALG_CLASS_SIGNATURE | ALG_TYPE_RSA | ALG_SID_RSA_ANY)
1761 #define CALG_DSS_SIGN (ALG_CLASS_SIGNATURE | ALG_TYPE_DSS | ALG_SID_DSS_ANY)
1762 #define CALG_NO_SIGN (ALG_CLASS_SIGNATURE | ALG_TYPE_ANY | ALG_SID_ANY)
1763 #define CALG_ECDSA (ALG_CLASS_SIGNATURE | ALG_TYPE_DSS | ALG_SID_ECDSA)
1764 #define CALG_DH_SF (ALG_CLASS_KEY_EXCHANGE | ALG_TYPE_DH | ALG_SID_DH_SANDF)
1765 #define CALG_DH_EPHEM (ALG_CLASS_KEY_EXCHANGE | ALG_TYPE_DH | ALG_SID_DH_EPHEM)
1766 #define CALG_AGREEDKEY_ANY (ALG_CLASS_KEY_EXCHANGE | ALG_TYPE_DH | ALG_SID_AGREED_KEY_ANY)
1767 #define CALG_KEA_KEYX (ALG_CLASS_KEY_EXCHANGE | ALG_TYPE_DH | ALG_SID_KEA)
1768 #define CALG_HUGHES_MD5 (ALG_CLASS_KEY_EXCHANGE | ALG_TYPE_ANY | ALG_SID_MD5)
1769 #define CALG_ECDH (ALG_CLASS_KEY_EXCHANGE | ALG_TYPE_DH | ALG_SID_ECDH)
1770 #define CALG_ECDH_EPHEM (ALG_CLASS_KEY_EXCHANGE | ALG_TYPE_ECDH | ALG_SID_ECDH_EPHEM)
1771 #define CALG_RSA_KEYX (ALG_CLASS_KEY_EXCHANGE | ALG_TYPE_RSA | ALG_SID_RSA_ANY)
1772 #define CALG_ECMQV (ALG_CLASS_KEY_EXCHANGE | ALG_TYPE_ANY | ALG_SID_ECMQV)
1773 #define CALG_DES (ALG_CLASS_DATA_ENCRYPT | ALG_TYPE_BLOCK | ALG_SID_DES)
1774 #define CALG_RC2 (ALG_CLASS_DATA_ENCRYPT | ALG_TYPE_BLOCK | ALG_SID_RC2)
1775 #define CALG_3DES (ALG_CLASS_DATA_ENCRYPT | ALG_TYPE_BLOCK | ALG_SID_3DES)
1776 #define CALG_3DES_112 (ALG_CLASS_DATA_ENCRYPT | ALG_TYPE_BLOCK | ALG_SID_3DES_112)
1777 #define CALG_DESX (ALG_CLASS_DATA_ENCRYPT | ALG_TYPE_BLOCK | ALG_SID_DESX)
1778 #define CALG_AES_128 (ALG_CLASS_DATA_ENCRYPT | ALG_TYPE_BLOCK | ALG_SID_AES_128)
1779 #define CALG_AES_192 (ALG_CLASS_DATA_ENCRYPT | ALG_TYPE_BLOCK | ALG_SID_AES_192)
1780 #define CALG_AES_256 (ALG_CLASS_DATA_ENCRYPT | ALG_TYPE_BLOCK | ALG_SID_AES_256)
1781 #define CALG_AES (ALG_CLASS_DATA_ENCRYPT | ALG_TYPE_BLOCK | ALG_SID_AES)
1782 #define CALG_RC4 (ALG_CLASS_DATA_ENCRYPT | ALG_TYPE_STREAM | ALG_SID_RC4)
1783 #define CALG_SEAL (ALG_CLASS_DATA_ENCRYPT | ALG_TYPE_STREAM | ALG_SID_SEAL)
1784 #define CALG_RC5 (ALG_CLASS_DATA_ENCRYPT | ALG_TYPE_STREAM | ALG_SID_RC5)
1785 #define CALG_SKIPJACK (ALG_CLASS_DATA_ENCRYPT | ALG_TYPE_BLOCK | ALG_SID_SKIPJACK)
1786 #define CALG_TEK (ALG_CLASS_DATA_ENCRYPT | ALG_TYPE_BLOCK | ALG_SID_TEK)
1787 #define CALG_CYLINK_MEK (ALG_CLASS_DATA_ENCRYPT | ALG_TYPE_BLOCK | ALG_SID_CYLINK_MEK)
1788 #define CALG_SSL3_MASTER (ALG_CLASS_MSG_ENCRYPT | ALG_TYPE_SECURECHANNEL | ALG_SID_SSL3_MASTER)
1789 #define CALG_SCHANNEL_MASTER_HASH (ALG_CLASS_MSG_ENCRYPT | ALG_TYPE_SECURECHANNEL | ALG_SID_SCHANNEL_MASTER_HASH)
1790 #define CALG_SCHANNEL_MAC_KEY (ALG_CLASS_MSG_ENCRYPT | ALG_TYPE_SECURECHANNEL | ALG_SID_SCHANNEL_MAC_KEY)
1791 #define CALG_SCHANNEL_ENC_KEY (ALG_CLASS_MSG_ENCRYPT | ALG_TYPE_SECURECHANNEL | ALG_SID_SCHANNEL_ENC_KEY)
1792 #define CALG_PCT1_MASTER (ALG_CLASS_MSG_ENCRYPT | ALG_TYPE_SECURECHANNEL | ALG_SID_PCT1_MASTER)
1793 #define CALG_SSL2_MASTER (ALG_CLASS_MSG_ENCRYPT | ALG_TYPE_SECURECHANNEL | ALG_SID_SSL2_MASTER)
1794 #define CALG_TLS1_MASTER (ALG_CLASS_MSG_ENCRYPT | ALG_TYPE_SECURECHANNEL | ALG_SID_TLS1_MASTER)
1797 /* Protocol Flags */
1798 #define CRYPT_FLAG_PCT1 0x0001
1799 #define CRYPT_FLAG_SSL2 0x0002
1800 #define CRYPT_FLAG_SSL3 0x0004
1801 #define CRYPT_FLAG_TLS1 0x0008
1802 #define CRYPT_FLAG_IPSEC 0x0010
1803 #define CRYPT_FLAG_SIGNING 0x0020
1805 /* Provider names */
1806 #define MS_DEF_PROV_A "Microsoft Base Cryptographic Provider v1.0"
1807 #if defined(_MSC_VER) || defined(__MINGW32__)
1808 # define MS_DEF_PROV_W L"Microsoft Base Cryptographic Provider v1.0"
1809 #else
1810 static const WCHAR MS_DEF_PROV_W[] = { 'M','i','c','r','o','s','o','f','t',' ',
1811 'B','a','s','e',' ','C','r','y','p','t','o','g','r','a','p','h','i','c',' ',
1812 'P','r','o','v','i','d','e','r',' ','v','1','.','0',0 };
1813 #endif
1814 #define MS_DEF_PROV WINELIB_NAME_AW(MS_DEF_PROV_)
1816 #define MS_ENHANCED_PROV_A "Microsoft Enhanced Cryptographic Provider v1.0"
1817 #if defined(_MSC_VER) || defined(__MINGW32__)
1818 # define MS_ENHANCED_PROV_W L"Microsoft Enhanced Cryptographic Provider v1.0"
1819 #else
1820 static const WCHAR MS_ENHANCED_PROV_W[] = { 'M','i','c','r','o','s','o','f','t',' ',
1821 'E','n','h','a','n','c','e','d',' ','C','r','y','p','t','o','g','r','a','p','h','i','c',' ',
1822 'P','r','o','v','i','d','e','r',' ','v','1','.','0',0 };
1823 #endif
1824 #define MS_ENHANCED_PROV WINELIB_NAME_AW(MS_ENHANCED_PROV_)
1826 #define MS_STRONG_PROV_A "Microsoft Strong Cryptographic Provider"
1827 #if defined(_MSC_VER) || defined(__MINGW32__)
1828 # define MS_STRONG_PROV_W L"Microsoft Strong Cryptographic Provider"
1829 #else
1830 static const WCHAR MS_STRONG_PROV_W[] = { 'M','i','c','r','o','s','o','f','t',' ',
1831 'S','t','r','o','n','g',' ','C','r','y','p','t','o','g','r','a','p','h','i','c',' ',
1832 'P','r','o','v','i','d','e','r',0 };
1833 #endif
1834 #define MS_STRONG_PROV WINELIB_NAME_AW(MS_STRONG_PROV_)
1836 #define MS_DEF_RSA_SIG_PROV_A "Microsoft RSA Signature Cryptographic Provider"
1837 #if defined(_MSC_VER) || defined(__MINGW32__)
1838 # define MS_DEF_RSA_SIG_PROV_W L"Microsoft RSA Signature Cryptographic Provider"
1839 #else
1840 static const WCHAR MS_DEF_RSA_SIG_PROV_W[] = { 'M','i','c','r','o','s','o','f','t',' ',
1841 'R','S','A',' ','S','i','g','n','a','t','u','r','e',' ',
1842 'C','r','y','p','t','o','g','r','a','p','h','i','c',' ','P','r','o','v','i','d','e','r',0 };
1843 #endif
1844 #define MS_DEF_RSA_SIG_PROV WINELIB_NAME_AW(MS_DEF_RSA_SIG_PROV_)
1846 #define MS_DEF_RSA_SCHANNEL_PROV_A "Microsoft RSA SChannel Cryptographic Provider"
1847 #if defined(_MSC_VER) || defined(__MINGW32__)
1848 # define MS_DEF_RSA_SCHANNEL_PROV_W L"Microsoft RSA SChannel Cryptographic Provider"
1849 #else
1850 static const WCHAR MS_DEF_RSA_SCHANNEL_PROV_W[] = { 'M','i','c','r','o','s','o','f','t',' ',
1851 'R','S','A',' ','S','C','h','a','n','n','e','l',' ',
1852 'C','r','y','p','t','o','g','r','a','p','h','i','c',' ','P','r','o','v','i','d','e','r',0 };
1853 #endif
1854 #define MS_DEF_RSA_SCHANNEL_PROV WINELIB_NAME_AW(MS_DEF_RSA_SCHANNEL_PROV_)
1856 #define MS_DEF_DSS_PROV_A "Microsoft Base DSS Cryptographic Provider"
1857 #if defined(_MSC_VER) || defined(__MINGW32__)
1858 # define MS_DEF_DSS_PROV_W L"Microsoft Base DSS Cryptographic Provider"
1859 #else
1860 static const WCHAR MS_DEF_DSS_PROV_W[] = { 'M','i','c','r','o','s','o','f','t',' ',
1861 'B','a','s','e',' ','D','S','S',' ',
1862 'C','r','y','p','t','o','g','r','a','p','h','i','c',' ','P','r','o','v','i','d','e','r',0 };
1863 #endif
1864 #define MS_DEF_DSS_PROV WINELIB_NAME_AW(MS_DEF_DSS_PROV_)
1866 #define MS_DEF_DSS_DH_PROV_A "Microsoft Base DSS and Diffie-Hellman Cryptographic Provider"
1867 #if defined(_MSC_VER) || defined(__MINGW32__)
1868 # define MS_DEF_DSS_DH_PROV_W L"Microsoft Base DSS and Diffie-Hellman Cryptographic Provider"
1869 #else
1870 static const WCHAR MS_DEF_DSS_DH_PROV_W[] = { 'M','i','c','r','o','s','o','f','t',' ',
1871 'B','a','s','e',' ','D','S','S',' ','a','n','d',' ',
1872 'D','i','f','f','i','e','-','H','e','l','l','m','a','n',' ',
1873 'C','r','y','p','t','o','g','r','a','p','h','i','c',' ','P','r','o','v','i','d','e','r',0 };
1874 #endif
1875 #define MS_DEF_DSS_DH_PROV WINELIB_NAME_AW(MS_DEF_DSS_DH_PROV_)
1877 #define MS_ENH_DSS_DH_PROV_A "Microsoft Enhanced DSS and Diffie-Hellman Cryptographic Provider"
1878 #if defined(_MSC_VER) || defined(__MINGW32__)
1879 # define MS_ENH_DSS_DH_PROV_W L"Microsoft Enhanced DSS and Diffie-Hellman Cryptographic Provider"
1880 #else
1881 static const WCHAR MS_ENH_DSS_DH_PROV_W[] = { 'M','i','c','r','o','s','o','f','t',' ',
1882 'E','n','h','a','n','c','e','d',' ','D','S','S',' ','a','n','d',' ',
1883 'D','i','f','f','i','e','-','H','e','l','l','m','a','n',' ',
1884 'C','r','y','p','t','o','g','r','a','p','h','i','c',' ','P','r','o','v','i','d','e','r',0 };
1885 #endif
1886 #define MS_ENH_DSS_DH_PROV WINELIB_NAME_AW(MS_ENH_DSS_DH_PROV_)
1888 #define MS_DEF_DH_SCHANNEL_PROV_A "Microsoft DH SChannel Cryptographic Provider"
1889 #if defined(_MSC_VER) || defined(__MINGW32__)
1890 # define MS_DEF_DH_SCHANNEL_PROV_W L"Microsoft DH SChannel Cryptographic Provider"
1891 #else
1892 static const WCHAR MS_DEF_DH_SCHANNEL_PROV_W[] = { 'M','i','c','r','o','s','o','f','t',' ',
1893 'D','H',' ','S','C','h','a','n','n','e','l',' ',
1894 'C','r','y','p','t','o','g','r','a','p','h','i','c',' ','P','r','o','v','i','d','e','r',0 };
1895 #endif
1896 #define MS_DEF_DH_SCHANNEL_PROV WINELIB_NAME_AW(MS_DEF_DH_SCHANNEL_PROV_)
1898 #define MS_SCARD_PROV_A "Microsoft Base Smart Card Cryptographic Provider"
1899 #if defined(_MSC_VER) || defined(__MINGW32__)
1900 # define MS_SCARD_PROV_W L"Microsoft Base Smart Card Cryptographic Provider"
1901 #else
1902 static const WCHAR MS_SCARD_PROV_W[] = { 'M','i','c','r','o','s','o','f','t',' ',
1903 'B','a','s','e',' ','S','m','a','r','t',' ','C','a','r','d',' ',
1904 'C','r','y','p','t','o','g','r','a','p','h','i','c',' ','P','r','o','v','i','d','e','r',0 };
1905 #endif
1906 #define MS_SCARD_PROV WINELIB_NAME_AW(MS_SCARD_PROV_)
1908 #define MS_ENH_RSA_AES_PROV_A "Microsoft Enhanced RSA and AES Cryptographic Provider"
1909 #if defined(_MSC_VER) || defined(__MINGW32__)
1910 # define MS_ENH_RSA_AES_PROV_W L"Microsoft Enhanced RSA and AES Cryptographic Provider"
1911 #else
1912 static const WCHAR MS_ENH_RSA_AES_PROV_W[] = { 'M','i','c','r','o','s','o','f','t',' ',
1913 'E','n','h','a','n','c','e','d',' ','R','S','A',' ','a','n','d',' ','A','E','S',' ',
1914 'C','r','y','p','t','o','g','r','a','p','h','i','c',' ','P','r','o','v','i','d','e','r',0 };
1915 #endif
1916 #define MS_ENH_RSA_AES_PROV WINELIB_NAME_AW(MS_ENH_RSA_AES_PROV_)
1918 #define MS_ENH_RSA_AES_PROV_XP_A "Microsoft Enhanced RSA and AES Cryptographic Provider (Prototype)"
1919 #if defined(_MSC_VER) || defined(__MINGW32__)
1920 # define MS_ENH_RSA_AES_PROV_XP_W L"Microsoft Enhanced RSA and AES Cryptographic Provider (Prototype)"
1921 #else
1922 static const WCHAR MS_ENH_RSA_AES_PROV_XP_W[] = { 'M','i','c','r','o','s','o','f','t',' ',
1923 'E','n','h','a','n','c','e','d',' ','R','S','A',' ','a','n','d',' ','A','E','S',' ',
1924 'C','r','y','p','t','o','g','r','a','p','h','i','c',' ','P','r','o','v','i','d','e','r',' ',
1925 '(','P','r','o','t','o','t','y','p','e',')',0 };
1926 #endif
1927 #define MS_ENH_RSA_AES_PROV_XP WINELIB_NAME_AW(MS_ENH_RSA_AES_PROV_XP_)
1929 /* Key Specs*/
1930 #define AT_KEYEXCHANGE 1
1931 #define AT_SIGNATURE 2
1933 /* Provider Types */
1934 #define PROV_RSA_FULL 1
1935 #define PROV_RSA_SIG 2
1936 #define PROV_DSS 3
1937 #define PROV_FORTEZZA 4
1938 #define PROV_MS_EXCHANGE 5
1939 #define PROV_SSL 6
1940 #define PROV_RSA_SCHANNEL 12
1941 #define PROV_DSS_DH 13
1942 #define PROV_EC_ECDSA_SIG 14
1943 #define PROV_EC_ECNRA_SIG 15
1944 #define PROV_EC_ECDSA_FULL 16
1945 #define PROV_EC_ECNRA_FULL 17
1946 #define PROV_DH_SCHANNEL 18
1947 #define PROV_SPYRUS_LYNKS 20
1948 #define PROV_RNG 21
1949 #define PROV_INTEL_SEC 22
1950 #define PROV_REPLACE_OWF 23
1951 #define PROV_RSA_AES 24
1953 /* FLAGS Section */
1955 #define CRYPT_FIRST 1
1956 #define CRYPT_NEXT 2
1958 #define CRYPT_IMPL_HARDWARE 1
1959 #define CRYPT_IMPL_SOFTWARE 2
1960 #define CRYPT_IMPL_MIXED 3
1961 #define CRYPT_IMPL_UNKNOWN 4
1963 /* CryptAcquireContext */
1964 #define CRYPT_VERIFYCONTEXT 0xF0000000
1965 #define CRYPT_NEWKEYSET 0x00000008
1966 #define CRYPT_DELETEKEYSET 0x00000010
1967 #define CRYPT_MACHINE_KEYSET 0x00000020
1968 #define CRYPT_SILENT 0x00000040
1970 /* Crypt{Get|Set}Provider */
1971 #define CRYPT_MACHINE_DEFAULT 0x00000001
1972 #define CRYPT_USER_DEFAULT 0x00000002
1973 #define CRYPT_DELETE_DEFAULT 0x00000004
1975 /* Crypt{Get/Set}ProvParam */
1976 #define PP_CLIENT_HWND 1
1977 #define PP_ENUMALGS 1
1978 #define PP_ENUMCONTAINERS 2
1979 #define PP_IMPTYPE 3
1980 #define PP_NAME 4
1981 #define PP_VERSION 5
1982 #define PP_CONTAINER 6
1983 #define PP_CHANGE_PASSWORD 7
1984 #define PP_KEYSET_SEC_DESCR 8
1985 #define PP_KEY_TYPE_SUBTYPE 10
1986 #define PP_CONTEXT_INFO 11
1987 #define PP_KEYEXCHANGE_KEYSIZE 12
1988 #define PP_SIGNATURE_KEYSIZE 13
1989 #define PP_KEYEXCHANGE_ALG 14
1990 #define PP_SIGNATURE_ALG 15
1991 #define PP_PROVTYPE 16
1992 #define PP_KEYSTORAGE 17
1993 #define PP_SYM_KEYSIZE 19
1994 #define PP_SESSION_KEYSIZE 20
1995 #define PP_UI_PROMPT 21
1996 #define PP_ENUMALGS_EX 22
1997 #define PP_DELETEKEY 24
1998 #define PP_ENUMMANDROOTS 25
1999 #define PP_ENUMELECTROOTS 26
2000 #define PP_KEYSET_TYPE 27
2001 #define PP_ADMIN_PIN 31
2002 #define PP_KEYEXCHANGE_PIN 32
2003 #define PP_SIGNATURE_PIN 33
2004 #define PP_SIG_KEYSIZE_INC 34
2005 #define PP_KEYX_KEYSIZE_INC 35
2006 #define PP_UNIQUE_CONTAINER 36
2007 #define PP_SGC_INFO 37
2008 #define PP_USE_HARDWARE_RNG 38
2009 #define PP_KEYSPEC 39
2010 #define PP_ENUMEX_SIGNING_PROT 40
2011 #define PP_CRYPT_COUNT_KEY_USE 41
2012 #define PP_USER_CERTSTORE 42
2013 #define PP_SMARTCARD_READER 43
2014 #define PP_SMARTCARD_GUID 45
2015 #define PP_ROOT_CERTSTORE 46
2017 /* Values returned by CryptGetProvParam of PP_KEYSTORAGE */
2018 #define CRYPT_SEC_DESCR 0x00000001
2019 #define CRYPT_PSTORE 0x00000002
2020 #define CRYPT_UI_PROMPT 0x00000004
2022 /* Crypt{Get/Set}KeyParam */
2023 #define KP_IV 1
2024 #define KP_SALT 2
2025 #define KP_PADDING 3
2026 #define KP_MODE 4
2027 #define KP_MODE_BITS 5
2028 #define KP_PERMISSIONS 6
2029 #define KP_ALGID 7
2030 #define KP_BLOCKLEN 8
2031 #define KP_KEYLEN 9
2032 #define KP_SALT_EX 10
2033 #define KP_P 11
2034 #define KP_G 12
2035 #define KP_Q 13
2036 #define KP_X 14
2037 #define KP_Y 15
2038 #define KP_RA 16
2039 #define KP_RB 17
2040 #define KP_INFO 18
2041 #define KP_EFFECTIVE_KEYLEN 19
2042 #define KP_SCHANNEL_ALG 20
2043 #define KP_CLIENT_RANDOM 21
2044 #define KP_SERVER_RANDOM 22
2045 #define KP_RP 23
2046 #define KP_PRECOMP_MD5 24
2047 #define KP_PRECOMP_SHA 25
2048 #define KP_CERTIFICATE 26
2049 #define KP_CLEAR_KEY 27
2050 #define KP_PUB_EX_LEN 28
2051 #define KP_PUB_EX_VAL 29
2052 #define KP_KEYVAL 30
2053 #define KP_ADMIN_PIN 31
2054 #define KP_KEYEXCHANGE_PIN 32
2055 #define KP_SIGNATURE_PIN 33
2056 #define KP_PREHASH 34
2057 #define KP_ROUNDS 35
2058 #define KP_OAEP_PARAMS 36
2059 #define KP_CMS_KEY_INFO 37
2060 #define KP_CMS_DH_KEY_INFO 38
2061 #define KP_PUB_PARAMS 39
2062 #define KP_VERIFY_PARAMS 40
2063 #define KP_HIGHEST_VERSION 41
2064 #define KP_GET_USE_COUNT 42
2066 /* Values for KP_PADDING */
2067 #define PKCS5_PADDING 1
2068 #define RANDOM_PADDING 2
2069 #define ZERO_PADDING 3
2071 /* CryptSignHash/CryptVerifySignature */
2072 #define CRYPT_NOHASHOID 0x00000001
2073 #define CRYPT_TYPE2_FORMAT 0x00000002
2074 #define CRYPT_X931_FORMAT 0x00000004
2076 /* Crypt{Get,Set}HashParam */
2077 #define HP_ALGID 0x0001
2078 #define HP_HASHVAL 0x0002
2079 #define HP_HASHSIZE 0x0004
2080 #define HP_HMAC_INFO 0x0005
2081 #define HP_TLS1PRF_LABEL 0x0006
2082 #define HP_TLS1PRF_SEED 0x0007
2084 /* Crypt{Get,Set}KeyParam */
2085 #define CRYPT_MODE_CBC 1
2086 #define CRYPT_MODE_ECB 2
2087 #define CRYPT_MODE_OFB 3
2088 #define CRYPT_MODE_CFB 4
2090 #define CRYPT_ENCRYPT 0x0001
2091 #define CRYPT_DECRYPT 0x0002
2092 #define CRYPT_EXPORT 0x0004
2093 #define CRYPT_READ 0x0008
2094 #define CRYPT_WRITE 0x0010
2095 #define CRYPT_MAC 0x0020
2096 #define CRYPT_EXPORT_KEY 0x0040
2097 #define CRYPT_IMPORT_KEY 0x0080
2098 #define CRYPT_ARCHIVE 0x0100
2100 /* Crypt*Key */
2101 #define CRYPT_EXPORTABLE 0x00000001
2102 #define CRYPT_USER_PROTECTED 0x00000002
2103 #define CRYPT_CREATE_SALT 0x00000004
2104 #define CRYPT_UPDATE_KEY 0x00000008
2105 #define CRYPT_NO_SALT 0x00000010
2106 #define CRYPT_PREGEN 0x00000040
2107 #define CRYPT_SERVER 0x00000400
2108 #define CRYPT_ARCHIVABLE 0x00004000
2110 /* CryptExportKey */
2111 #define CRYPT_SSL2_FALLBACK 0x00000002
2112 #define CRYPT_DESTROYKEY 0x00000004
2113 #define CRYPT_OAEP 0x00000040
2115 /* CryptHashSessionKey */
2116 #define CRYPT_LITTLE_ENDIAN 0x00000001
2118 /* Crypt{Protect,Unprotect}Data PROMPTSTRUCT flags */
2119 #define CRYPTPROTECT_PROMPT_ON_PROTECT 0x0001
2120 #define CRYPTPROTECT_PROMPT_ON_UNPROTECT 0x0002
2121 /* Crypt{Protect,Unprotect}Data flags */
2122 #define CRYPTPROTECT_UI_FORBIDDEN 0x0001
2123 #define CRYPTPROTECT_LOCAL_MACHINE 0x0004
2124 #define CRYPTPROTECT_AUDIT 0x0010
2125 #define CRYPTPROTECT_VERIFY_PROTECTION 0x0040
2127 /* Crypt{Protect,Unprotect}Memory */
2128 #define CRYPTPROTECTMEMORY_BLOCK_SIZE 16
2129 #define CRYPTPROTECTMEMORY_SAME_PROCESS 0x0000
2130 #define CRYPTPROTECTMEMORY_CROSS_PROCESS 0x0001
2131 #define CRYPTPROTECTMEMORY_SAME_LOGON 0x0002
2133 /* Blob Types */
2134 #define SIMPLEBLOB 0x1
2135 #define PUBLICKEYBLOB 0x6
2136 #define PRIVATEKEYBLOB 0x7
2137 #define PLAINTEXTKEYBLOB 0x8
2138 #define OPAQUEKEYBLOB 0x9
2139 #define PUBLICKEYBLOBEX 0xA
2140 #define SYMMETRICWRAPKEYBLOB 0xB
2142 #define CUR_BLOB_VERSION 2
2144 /* cert store provider types */
2145 #define CERT_STORE_PROV_MSG ((LPCSTR)1)
2146 #define CERT_STORE_PROV_MEMORY ((LPCSTR)2)
2147 #define CERT_STORE_PROV_FILE ((LPCSTR)3)
2148 #define CERT_STORE_PROV_REG ((LPCSTR)4)
2149 #define CERT_STORE_PROV_PKCS7 ((LPCSTR)5)
2150 #define CERT_STORE_PROV_SERIALIZED ((LPCSTR)6)
2151 #define CERT_STORE_PROV_FILENAME_A ((LPCSTR)7)
2152 #define CERT_STORE_PROV_FILENAME_W ((LPCSTR)8)
2153 #define CERT_STORE_PROV_SYSTEM_A ((LPCSTR)9)
2154 #define CERT_STORE_PROV_SYSTEM_W ((LPCSTR)10)
2155 #define CERT_STORE_PROV_SYSTEM CERT_STORE_PROV_SYSTEM_W
2156 #define CERT_STORE_PROV_COLLECTION ((LPCSTR)11)
2157 #define CERT_STORE_PROV_SYSTEM_REGISTRY_A ((LPCSTR)12)
2158 #define CERT_STORE_PROV_SYSTEM_REGISTRY_W ((LPCSTR)13)
2159 #define CERT_STORE_PROV_SYSTEM_REGISTRY CERT_STORE_PROV_SYSTEM_REGISTRY_W
2160 #define CERT_STORE_PROV_PHYSICAL_W ((LPCSTR)14)
2161 #define CERT_STORE_PROV_PHYSICAL CERT_STORE_PROV_PHYSICAL_W
2162 #define CERT_STORE_PROV_SMART_CARD_W ((LPCSTR)15)
2163 #define CERT_STORE_PROV_SMART_CARD CERT_STORE_PROV_SMART_CARD_W
2164 #define CERT_STORE_PROV_LDAP_W ((LPCSTR)16)
2165 #define CERT_STORE_PROV_LDAP CERT_STORE_PROV_LDAP_W
2167 #define sz_CERT_STORE_PROV_MEMORY "Memory"
2168 #define sz_CERT_STORE_PROV_FILENAME_W "File"
2169 #define sz_CERT_STORE_PROV_FILENAME sz_CERT_STORE_PROV_FILENAME_W
2170 #define sz_CERT_STORE_PROV_SYSTEM_W "System"
2171 #define sz_CERT_STORE_PROV_SYSTEM sz_CERT_STORE_PROV_SYSTEM_W
2172 #define sz_CERT_STORE_PROV_PKCS7 "PKCS7"
2173 #define sz_CERT_STORE_PROV_SERIALIZED "Serialized"
2174 #define sz_CERT_STORE_PROV_COLLECTION "Collection"
2175 #define sz_CERT_STORE_PROV_SYSTEM_REGISTRY_W "SystemRegistry"
2176 #define sz_CERT_STORE_PROV_SYSTEM_REGISTRY sz_CERT_STORE_PROV_SYSTEM_REGISTRY_W
2177 #define sz_CERT_STORE_PROV_PHYSICAL_W "Physical"
2178 #define sz_CERT_STORE_PROV_PHYSICAL sz_CERT_STORE_PROV_PHYSICAL_W
2179 #define sz_CERT_STORE_PROV_SMART_CARD_W "SmartCard"
2180 #define sz_CERT_STORE_PROV_SMART_CARD sz_CERT_STORE_PROV_SMART_CARD_W
2181 #define sz_CERT_STORE_PROV_LDAP_W "Ldap"
2182 #define sz_CERT_STORE_PROV_LDAP sz_CERT_STORE_PROV_LDAP_W
2184 /* types for CertOpenStore dwEncodingType */
2185 #define CERT_ENCODING_TYPE_MASK 0x0000ffff
2186 #define CMSG_ENCODING_TYPE_MASK 0xffff0000
2187 #define GET_CERT_ENCODING_TYPE(x) ((x) & CERT_ENCODING_TYPE_MASK)
2188 #define GET_CMSG_ENCODING_TYPE(x) ((x) & CMSG_ENCODING_TYPE_MASK)
2190 #define CRYPT_ASN_ENCODING 0x00000001
2191 #define CRYPT_NDR_ENCODING 0x00000002
2192 #define X509_ASN_ENCODING 0x00000001
2193 #define X509_NDR_ENCODING 0x00000002
2194 #define PKCS_7_ASN_ENCODING 0x00010000
2195 #define PKCS_7_NDR_ENCODING 0x00020000
2197 /* system store locations */
2198 #define CERT_SYSTEM_STORE_LOCATION_MASK 0x00ff0000
2199 #define CERT_SYSTEM_STORE_LOCATION_SHIFT 16
2201 /* system store location ids */
2202 /* hkcu */
2203 #define CERT_SYSTEM_STORE_CURRENT_USER_ID 1
2204 /* hklm */
2205 #define CERT_SYSTEM_STORE_LOCAL_MACHINE_ID 2
2206 /* hklm\Software\Microsoft\Cryptography\Services */
2207 #define CERT_SYSTEM_STORE_CURRENT_SERVICE_ID 4
2208 #define CERT_SYSTEM_STORE_SERVICES_ID 5
2209 /* HKEY_USERS */
2210 #define CERT_SYSTEM_STORE_USERS_ID 6
2211 /* hkcu\Software\Policies\Microsoft\SystemCertificates */
2212 #define CERT_SYSTEM_STORE_CURRENT_USER_GROUP_POLICY_ID 7
2213 /* hklm\Software\Policies\Microsoft\SystemCertificates */
2214 #define CERT_SYSTEM_STORE_LOCAL_MACHINE_GROUP_POLICY_ID 8
2215 /* hklm\Software\Microsoft\EnterpriseCertificates */
2216 #define CERT_SYSTEM_STORE_LOCAL_MACHINE_ENTERPRISE_ID 9
2218 /* system store location values */
2219 #define CERT_SYSTEM_STORE_CURRENT_USER \
2220 (CERT_SYSTEM_STORE_CURRENT_USER_ID << CERT_SYSTEM_STORE_LOCATION_SHIFT)
2221 #define CERT_SYSTEM_STORE_LOCAL_MACHINE \
2222 (CERT_SYSTEM_STORE_LOCAL_MACHINE_ID << CERT_SYSTEM_STORE_LOCATION_SHIFT)
2223 #define CERT_SYSTEM_STORE_CURRENT_SERVICE \
2224 (CERT_SYSTEM_STORE_CURRENT_SERVICE_ID << CERT_SYSTEM_STORE_LOCATION_SHIFT)
2225 #define CERT_SYSTEM_STORE_SERVICES \
2226 (CERT_SYSTEM_STORE_SERVICES_ID << CERT_SYSTEM_STORE_LOCATION_SHIFT)
2227 #define CERT_SYSTEM_STORE_USERS \
2228 (CERT_SYSTEM_STORE_USERS_ID << CERT_SYSTEM_STORE_LOCATION_SHIFT)
2229 #define CERT_SYSTEM_STORE_CURRENT_USER_GROUP_POLICY \
2230 (CERT_SYSTEM_STORE_CURRENT_USER_GROUP_POLICY_ID << CERT_SYSTEM_STORE_LOCATION_SHIFT)
2231 #define CERT_SYSTEM_STORE_LOCAL_MACHINE_GROUP_POLICY \
2232 (CERT_SYSTEM_STORE_LOCAL_MACHINE_GROUP_POLICY_ID << CERT_SYSTEM_STORE_LOCATION_SHIFT)
2233 #define CERT_SYSTEM_STORE_LOCAL_MACHINE_ENTERPRISE \
2234 (CERT_SYSTEM_STORE_LOCAL_MACHINE_ENTERPRISE_ID << CERT_SYSTEM_STORE_LOCATION_SHIFT)
2236 #if defined(_MSC_VER) || defined(__MINGW32__)
2237 #define CERT_LOCAL_MACHINE_SYSTEM_STORE_REGPATH \
2238 L"Software\\Microsoft\\SystemCertificates"
2239 #define CERT_GROUP_POLICY_SYSTEM_STORE_REGPATH \
2240 L"Software\\Policies\\Microsoft\\SystemCertificates"
2241 #else
2242 static const WCHAR CERT_LOCAL_MACHINE_SYSTEM_STORE_REGPATH[] =
2243 {'S','o','f','t','w','a','r','e','\\','M','i','c','r','o','s','o','f','t','\\',
2244 'S','y','s','t','e','m','C','e','r','t','i','f','i','c','a','t','e','s',0 };
2245 static const WCHAR CERT_GROUP_POLICY_SYSTEM_STORE_REGPATH[] =
2246 {'S','o','f','t','w','a','r','e','\\','P','o','l','i','c','i','e','s','\\',
2247 'M','i','c','r','o','s','o','f','t','\\','S','y','s','t','e','m','C','e','r',
2248 't','i','f','i','c','a','t','e','s',0 };
2249 #endif
2251 #if defined(_MSC_VER) || defined(__MINGW32__)
2252 #define CERT_EFSBLOB_REGPATH CERT_GROUP_POLICY_SYSTEM_STORE_REGPATH L"\\EFS"
2253 #define CERT_EFSBLOB_VALUE_NAME L"EFSBlob"
2254 #else
2255 static const WCHAR CERT_EFSBLOB_REGPATH[] =
2256 {'S','o','f','t','w','a','r','e','\\','P','o','l','i','c','i','e','s','\\',
2257 'M','i','c','r','o','s','o','f','t','\\','S','y','s','t','e','m','C','e','r',
2258 't','i','f','i','c','a','t','e','s','\\','E','F','S',0 };
2259 static const WCHAR CERT_EFSBLOB_VALUE_NAME[] = { 'E','F','S','B','l','o','b',0 };
2260 #endif
2262 #if defined(_MSC_VER) || defined(__MINGW32__)
2263 #define CERT_PROT_ROOT_FLAGS_REGPATH L"\\Root\\ProtectedRoots"
2264 #define CERT_PROT_ROOT_FLAGS_VALUE_NAME L"Flags"
2265 #else
2266 static const WCHAR CERT_PROT_ROOT_FLAGS_REGPATH[] =
2267 { '\\','R','o','o','t','\\','P','r','o','t','e','c','t','e','d','R','o','o',
2268 't','s',0 };
2269 static const WCHAR CERT_PROT_ROOT_FLAGS_VALUE_NAME[] = {'F','l','a','g','s',0 };
2270 #endif
2272 #define CERT_PROT_ROOT_DISABLE_CURRENT_USER_FLAG 0x01
2273 #define CERT_PROT_ROOT_INHIBIT_ADD_AT_INIT_FLAG 0x02
2274 #define CERT_PROT_ROOT_INHIBIT_PURGE_LM_FLAG 0x04
2275 #define CERT_PROT_ROOT_DISABLE_LM_AUTH_FLAG 0x08
2276 #define CERT_PROT_ROOT_DISABLE_NT_AUTH_REQUIRED_FLAG 0x10
2277 #define CERT_PROT_ROOT_DISABLE_NOT_DEFINED_NAME_CONSTRAINT_FLAG 0x20
2279 #if defined(_MSC_VER) || defined(__MINGW32__)
2280 #define CERT_TRUST_PUB_SAFER_GROUP_POLICY_REGPATH \
2281 CERT_GROUP_POLICY_SYSTEM_STORE_REGPATH L"\\TrustedPublisher\\Safer"
2282 #else
2283 static const WCHAR CERT_TRUST_PUB_SAFER_GROUP_POLICY_REGPATH[] =
2284 {'S','o','f','t','w','a','r','e','\\','P','o','l','i','c','i','e','s','\\',
2285 'M','i','c','r','o','s','o','f','t','\\','S','y','s','t','e','m','C','e','r',
2286 't','i','f','i','c','a','t','e','s','\\','T','r','u','s','t','e','d',
2287 'P','u','b','l','i','s','h','e','r','\\','S','a','f','e','r',0 };
2288 #endif
2290 #if defined(_MSC_VER) || defined(__MINGW32__)
2291 #define CERT_TRUST_PUB_SAFER_LOCAL_MACHINE_REGPATH \
2292 CERT_LOCAL_MACHINE_SYSTEM_STORE_REGPATH L"\\TrustedPublisher\\Safer"
2293 #define CERT_TRUST_PUB_AUTHENTICODE_FLAGS_VALUE_NAME L"AuthenticodeFlags"
2294 #else
2295 static const WCHAR CERT_TRUST_PUB_SAFER_LOCAL_MACHINE_REGPATH[] =
2296 {'S','o','f','t','w','a','r','e','\\','M','i','c','r','o','s','o','f','t','\\',
2297 'S','y','s','t','e','m','C','e','r','t','i','f','i','c','a','t','e','s','\\',
2298 'T','r','u','s','t','e','d','P','u','b','l','i','s','h','e','r','\\',
2299 'S','a','f','e','r',0 };
2300 static const WCHAR CERT_TRUST_PUB_AUTHENTICODE_FLAGS_VALUE_NAME[] =
2301 { 'A','u','t','h','e','n','t','i','c','o','d','e','F','l','a','g','s',0 };
2302 #endif
2304 #define CERT_TRUST_PUB_ALLOW_END_USER_TRUST 0x00000000
2305 #define CERT_TRUST_PUB_ALLOW_MACHINE_ADMIN_TRUST 0x00000001
2306 #define CERT_TRUST_PUB_ALLOW_ENTERPRISE_ADMIN_TRUST 0x00000002
2307 #define CERT_TRUST_PUB_ALLOW_TRUST_MASK 0x00000003
2308 #define CERT_TRUST_PUB_CHECK_PUBLISHER_REV_FLAG 0x00000100
2309 #define CERT_TRUST_PUB_CHECK_TIMESTAMP_REV_FLAG 0x00000200
2311 /* flags for CertOpenStore dwFlags */
2312 #define CERT_STORE_NO_CRYPT_RELEASE_FLAG 0x00000001
2313 #define CERT_STORE_SET_LOCALIZED_NAME_FLAG 0x00000002
2314 #define CERT_STORE_DEFER_CLOSE_UNTIL_LAST_FREE_FLAG 0x00000004
2315 #define CERT_STORE_DELETE_FLAG 0x00000010
2316 #define CERT_STORE_UNSAFE_PHYSICAL_FLAG 0x00000020
2317 #define CERT_STORE_SHARE_STORE_FLAG 0x00000040
2318 #define CERT_STORE_SHARE_CONTEXT_FLAG 0x00000080
2319 #define CERT_STORE_MANIFOLD_FLAG 0x00000100
2320 #define CERT_STORE_ENUM_ARCHIVED_FLAG 0x00000200
2321 #define CERT_STORE_UPDATE_KEYID_FLAG 0x00000400
2322 #define CERT_STORE_BACKUP_RESTORE_FLAG 0x00000800
2323 #define CERT_STORE_MAXIMUM_ALLOWED_FLAG 0x00001000
2324 #define CERT_STORE_CREATE_NEW_FLAG 0x00002000
2325 #define CERT_STORE_OPEN_EXISTING_FLAG 0x00004000
2326 #define CERT_STORE_READONLY_FLAG 0x00008000
2328 #define CERT_REGISTRY_STORE_REMOTE_FLAG 0x00010000
2329 #define CERT_REGISTRY_STORE_SERIALIZED_FLAG 0x00020000
2330 #define CERT_REGISTRY_STORE_ROAMING_FLAG 0x00040000
2331 #define CERT_REGISTRY_STORE_MY_IE_DIRTY_FLAG 0x00080000
2332 #define CERT_REGISTRY_STORE_LM_GPT_FLAG 0x01000000
2333 #define CERT_REGISTRY_STORE_CLIENT_GPT_FLAG 0x80000000
2335 #define CERT_FILE_STORE_COMMIT_ENABLE_FLAG 0x00010000
2337 /* CertCloseStore dwFlags */
2338 #define CERT_CLOSE_STORE_FORCE_FLAG 0x00000001
2339 #define CERT_CLOSE_STORE_CHECK_FLAG 0x00000002
2341 /* dwAddDisposition */
2342 #define CERT_STORE_ADD_NEW 1
2343 #define CERT_STORE_ADD_USE_EXISTING 2
2344 #define CERT_STORE_ADD_REPLACE_EXISTING 3
2345 #define CERT_STORE_ADD_ALWAYS 4
2346 #define CERT_STORE_ADD_REPLACE_EXISTING_INHERIT_PROPERTIES 5
2347 #define CERT_STORE_ADD_NEWER 6
2348 #define CERT_STORE_ADD_NEWER_INHERIT_PROPERTIES 7
2350 /* Installable OID function defs */
2351 #define CRYPT_OID_OPEN_STORE_PROV_FUNC "CertDllOpenStoreProv"
2352 #define CRYPT_OID_ENCODE_OBJECT_FUNC "CryptDllEncodeObject"
2353 #define CRYPT_OID_DECODE_OBJECT_FUNC "CryptDllDecodeObject"
2354 #define CRYPT_OID_ENCODE_OBJECT_EX_FUNC "CryptDllEncodeObjectEx"
2355 #define CRYPT_OID_DECODE_OBJECT_EX_FUNC "CryptDllDecodeObjectEx"
2356 #define CRYPT_OID_CREATE_COM_OBJECT_FUNC "CryptDllCreateComObject"
2357 #define CRYPT_OID_VERIFY_REVOCATION_FUNC "CertDllVerifyRevocation"
2358 #define CRYPT_OID_VERIFY_CTL_USAGE_FUNC "CertDllVerifyCTLUsage"
2359 #define CRYPT_OID_FORMAT_OBJECT_FUNC "CryptDllFormatObject"
2360 #define CRYPT_OID_FIND_OID_INFO_FUNC "CryptDllFindOIDInfo"
2361 #define CRYPT_OID_FIND_LOCALIZED_NAME_FUNC "CryptDllFindLocalizedName"
2362 #define CRYPT_OID_EXPORT_PUBLIC_KEY_INFO_FUNC "CryptDllExportPublicKeyInfoEx"
2363 #define CRYPT_OID_IMPORT_PUBLIC_KEY_INFO_FUNC "CryptDllImportPublicKeyInfoEx"
2364 #define CRYPT_OID_EXPORT_PRIVATE_KEY_INFO_FUNC "CryptDllExportPrivateKeyInfoEx"
2365 #define CRYPT_OID_IMPORT_PRIVATE_KEY_INFO_FUNC "CryptDllImportPrivateKeyInfoEx"
2366 #define CRYPT_OID_VERIFY_CERTIFICATE_CHAIN_POLICY_FUNC \
2367 "CertDllVerifyCertificateChainPolicy"
2368 #define CRYPT_OID_CONVERT_PUBLIC_KEY_INFO_FUNC "CryptDllConvertPublicKeyInfo"
2369 #define URL_OID_GET_OBJECT_URL_FUNC "UrlDllGetObjectUrl"
2370 #define TIME_VALID_OID_GET_OBJECT_FUNC "TimeValidDllGetObject"
2371 #define CMSG_OID_GEN_CONTENT_ENCRYPT_KEY_FUNC "CryptMsgDllGenContentEncryptKey"
2372 #define CMSG_OID_EXPORT_KEY_TRANS_FUNC "CryptMsgDllExportKeyTrans"
2373 #define CMSG_OID_IMPORT_KEY_TRANS_FUNC "CryptMsgDllImportKeyTrans"
2375 #define CRYPT_OID_REGPATH "Software\\Microsoft\\Cryptography\\OID"
2376 #define CRYPT_OID_REG_ENCODING_TYPE_PREFIX "EncodingType "
2377 #if defined(_MSC_VER) || defined(__MINGW32__)
2378 # define CRYPT_OID_REG_DLL_VALUE_NAME L"Dll"
2379 # define CRYPT_OID_REG_FUNC_NAME_VALUE_NAME L"FuncName"
2380 # define CRYPT_OID_REG_FLAGS_VALUE_NAME L"CryptFlags"
2381 #else
2382 static const WCHAR CRYPT_OID_REG_DLL_VALUE_NAME[] = { 'D','l','l',0 };
2383 static const WCHAR CRYPT_OID_REG_FUNC_NAME_VALUE_NAME[] =
2384 { 'F','u','n','c','N','a','m','e',0 };
2385 static const WCHAR CRYPT_OID_REG_FLAGS_VALUE_NAME[] =
2386 { 'C','r','y','p','t','F','l','a','g','s',0 };
2387 #endif
2388 #define CRYPT_OID_REG_FUNC_NAME_VALUE_NAME_A "FuncName"
2389 #define CRYPT_DEFAULT_OID "DEFAULT"
2391 #define CRYPT_INSTALL_OID_FUNC_BEFORE_FLAG 1
2392 #define CRYPT_INSTALL_OID_INFO_BEFORE_FLAG 1
2394 #define CRYPT_GET_INSTALLED_OID_FUNC_FLAG 0x1
2396 #define CRYPT_REGISTER_FIRST_INDEX 0
2397 #define CRYPT_REGISTER_LAST_INDEX 0xffffffff
2399 /* values for CERT_STORE_PROV_INFO's dwStoreProvFlags */
2400 #define CERT_STORE_PROV_EXTERNAL_FLAG 0x1
2401 #define CERT_STORE_PROV_DELETED_FLAG 0x2
2402 #define CERT_STORE_PROV_NO_PERSIST_FLAG 0x4
2403 #define CERT_STORE_PROV_SYSTEM_STORE_FLAG 0x8
2404 #define CERT_STORE_PROV_LM_SYSTEM_STORE_FLAG 0x10
2406 /* function indices */
2407 #define CERT_STORE_PROV_CLOSE_FUNC 0
2408 #define CERT_STORE_PROV_READ_CERT_FUNC 1
2409 #define CERT_STORE_PROV_WRITE_CERT_FUNC 2
2410 #define CERT_STORE_PROV_DELETE_CERT_FUNC 3
2411 #define CERT_STORE_PROV_SET_CERT_PROPERTY_FUNC 4
2412 #define CERT_STORE_PROV_READ_CRL_FUNC 5
2413 #define CERT_STORE_PROV_WRITE_CRL_FUNC 6
2414 #define CERT_STORE_PROV_DELETE_CRL_FUNC 7
2415 #define CERT_STORE_PROV_SET_CRL_PROPERTY_FUNC 8
2416 #define CERT_STORE_PROV_READ_CTL_FUNC 9
2417 #define CERT_STORE_PROV_WRITE_CTL_FUNC 10
2418 #define CERT_STORE_PROV_DELETE_CTL_FUNC 11
2419 #define CERT_STORE_PROV_SET_CTL_PROPERTY_FUNC 12
2420 #define CERT_STORE_PROV_CONTROL_FUNC 13
2421 #define CERT_STORE_PROV_FIND_CERT_FUNC 14
2422 #define CERT_STORE_PROV_FREE_FIND_CERT_FUNC 15
2423 #define CERT_STORE_PROV_GET_CERT_PROPERTY_FUNC 16
2424 #define CERT_STORE_PROV_FIND_CRL_FUNC 17
2425 #define CERT_STORE_PROV_FREE_FIND_CRL_FUNC 18
2426 #define CERT_STORE_PROV_GET_CRL_PROPERTY_FUNC 19
2427 #define CERT_STORE_PROV_FIND_CTL_FUNC 20
2428 #define CERT_STORE_PROV_FREE_FIND_CTL_FUNC 21
2429 #define CERT_STORE_PROV_GET_CTL_PROPERTY_FUNC 22
2431 /* physical store dwFlags, also used by CertAddStoreToCollection as
2432 * dwUpdateFlags
2434 #define CERT_PHYSICAL_STORE_ADD_ENABLE_FLAG 0x1
2435 #define CERT_PHYSICAL_STORE_OPEN_DISABLE_FLAG 0x2
2436 #define CERT_PHYSICAL_STORE_REMOVE_OPEN_DISABLE_FLAG 0x4
2437 #define CERT_PHYSICAL_STORE_INSERT_COMPUTER_NAME_ENABLE_FLAG 0x8
2439 /* dwFlag values for CertEnumPhysicalStore callback */
2440 #define CERT_PHYSICAL_STORE_PREDEFINED_ENUM_FLAG 0x1
2442 /* predefined store names */
2443 #if defined(_MSC_VER) || defined(__MINGW32__)
2444 # define CERT_PHYSICAL_STORE_DEFAULT_NAME \
2445 L".Default"
2446 # define CERT_PHYSICAL_STORE_GROUP_POLICY_NAME \
2447 L".GroupPolicy"
2448 # define CERT_PHYSICAL_STORE_LOCAL_MACHINE_NAME \
2449 L".LocalMachine"
2450 # define CERT_PHYSICAL_STORE_DS_USER_CERTIFICATE_NAME \
2451 L".UserCertificate"
2452 # define CERT_PHYSICAL_STORE_LOCAL_MACHINE_GROUP_POLICY_NAME \
2453 L".LocalMachineGroupPolicy"
2454 # define CERT_PHYSICAL_STORE_ENTERPRISE_NAME \
2455 L".Enterprise"
2456 # define CERT_PHYSICAL_STORE_AUTH_ROOT_NAME \
2457 L".AuthRoot"
2458 #else
2459 static const WCHAR CERT_PHYSICAL_STORE_DEFAULT_NAME[] =
2460 {'.','D','e','f','a','u','l','t','0'};
2461 static const WCHAR CERT_PHYSICAL_STORE_GROUP_POLICY_NAME[] =
2462 {'.','G','r','o','u','p','P','o','l','i','c','y',0};
2463 static const WCHAR CERT_PHYSICAL_STORE_LOCAL_MACHINE_NAME[] =
2464 {'.','L','o','c','a','l','M','a','c','h','i','n','e',0};
2465 static const WCHAR CERT_PHYSICAL_STORE_DS_USER_CERTIFICATE_NAME[] =
2466 {'.','U','s','e','r','C','e','r','t','i','f','i','c','a','t','e',0};
2467 static const WCHAR CERT_PHYSICAL_STORE_LOCAL_MACHINE_GROUP_POLICY_NAME[] =
2468 {'.','L','o','c','a','l','M','a','c','h','i','n','e','G','r','o','u','p',
2469 'P','o','l','i','c','y',0};
2470 static const WCHAR CERT_PHYSICAL_STORE_ENTERPRISE_NAME[] =
2471 {'.','E','n','t','e','r','p','r','i','s','e',0};
2472 static const WCHAR CERT_PHYSICAL_STORE_AUTH_ROOT_NAME[] =
2473 {'.','A','u','t','h','R','o','o','t',0};
2474 #endif
2476 /* cert system store flags */
2477 #define CERT_SYSTEM_STORE_MASK 0xffff0000
2478 #define CERT_SYSTEM_STORE_RELOCATE_FLAG 0x80000000
2480 /* CertFindChainInStore dwFindType types */
2481 #define CERT_CHAIN_FIND_BY_ISSUER 1
2483 /* CertSaveStore dwSaveAs values */
2484 #define CERT_STORE_SAVE_AS_STORE 1
2485 #define CERT_STORE_SAVE_AS_PKCS7 2
2486 /* CertSaveStore dwSaveTo values */
2487 #define CERT_STORE_SAVE_TO_FILE 1
2488 #define CERT_STORE_SAVE_TO_MEMORY 2
2489 #define CERT_STORE_SAVE_TO_FILENAME_A 3
2490 #define CERT_STORE_SAVE_TO_FILENAME_W 4
2491 #define CERT_STORE_SAVE_TO_FILENAME CERT_STORE_SAVE_TO_FILENAME_W
2493 /* CERT_INFO versions/flags */
2494 #define CERT_V1 0
2495 #define CERT_V2 1
2496 #define CERT_V3 2
2497 #define CERT_INFO_VERSION_FLAG 1
2498 #define CERT_INFO_SERIAL_NUMBER_FLAG 2
2499 #define CERT_INFO_SIGNATURE_ALGORITHM_FLAG 3
2500 #define CERT_INFO_ISSUER_FLAG 4
2501 #define CERT_INFO_NOT_BEFORE_FLAG 5
2502 #define CERT_INFO_NOT_AFTER_FLAG 6
2503 #define CERT_INFO_SUBJECT_FLAG 7
2504 #define CERT_INFO_SUBJECT_PUBLIC_KEY_INFO_FLAG 8
2505 #define CERT_INFO_ISSUER_UNIQUE_ID_FLAG 9
2506 #define CERT_INFO_SUBJECT_UNIQUE_ID_FLAG 10
2507 #define CERT_INFO_EXTENSION_FLAG 11
2509 /* CERT_REQUEST_INFO versions */
2510 #define CERT_REQUEST_V1 0
2512 /* CERT_KEYGEN_REQUEST_INFO versions */
2513 #define CERT_KEYGEN_REQUEST_V1 0
2515 /* CRL versions */
2516 #define CRL_V1 0
2517 #define CRL_V2 1
2519 /* CTL versions */
2520 #define CTL_V1 0
2522 /* Certificate, CRL, CTL property IDs */
2523 #define CERT_KEY_PROV_HANDLE_PROP_ID 1
2524 #define CERT_KEY_PROV_INFO_PROP_ID 2
2525 #define CERT_SHA1_HASH_PROP_ID 3
2526 #define CERT_HASH_PROP_ID CERT_SHA1_HASH_PROP_ID
2527 #define CERT_MD5_HASH_PROP_ID 4
2528 #define CERT_KEY_CONTEXT_PROP_ID 5
2529 #define CERT_KEY_SPEC_PROP_ID 6
2530 #define CERT_IE30_RESERVED_PROP_ID 7
2531 #define CERT_PUBKEY_HASH_RESERVED_PROP_ID 8
2532 #define CERT_ENHKEY_USAGE_PROP_ID 9
2533 #define CERT_CTL_USAGE_PROP_ID CERT_ENHKEY_USAGE_PROP_ID
2534 #define CERT_NEXT_UPDATE_LOCATION_PROP_ID 10
2535 #define CERT_FRIENDLY_NAME_PROP_ID 11
2536 #define CERT_PVK_FILE_PROP_ID 12
2537 #define CERT_DESCRIPTION_PROP_ID 13
2538 #define CERT_ACCESS_STATE_PROP_ID 14
2539 #define CERT_SIGNATURE_HASH_PROP_ID 15
2540 #define CERT_SMART_CARD_DATA_PROP_ID 16
2541 #define CERT_EFS_PROP_ID 17
2542 #define CERT_FORTEZZA_DATA_PROP_ID 18
2543 #define CERT_ARCHIVED_PROP_ID 19
2544 #define CERT_KEY_IDENTIFIER_PROP_ID 20
2545 #define CERT_AUTO_ENROLL_PROP_ID 21
2546 #define CERT_PUBKEY_ALG_PARA_PROP_ID 22
2547 #define CERT_CROSS_CERT_DIST_POINTS_PROP_ID 23
2548 #define CERT_ISSUER_PUBLIC_KEY_MD5_HASH_PROP_ID 24
2549 #define CERT_SUBJECT_PUBLIC_KEY_MD5_HASH_PROP_ID 25
2550 #define CERT_ENROLLMENT_PROP_ID 26
2551 #define CERT_DATE_STAMP_PROP_ID 27
2552 #define CERT_ISSUER_SERIAL_NUMBER_MD5_HASH_PROP_ID 28
2553 #define CERT_SUBJECT_NAME_MD5_HASH_PROP_ID 29
2554 #define CERT_EXTENDED_ERROR_INFO_PROP_ID 30
2555 /* 31 -- unused?
2556 32 -- cert prop id
2557 33 -- CRL prop id
2558 34 -- CTL prop id
2559 35 -- KeyId prop id
2560 36-63 -- reserved
2562 #define CERT_RENEWAL_PROP_ID 64
2563 #define CERT_ARCHIVED_KEY_HASH_PROP_ID 65
2564 #define CERT_AUTO_ENROLL_RETRY_PROP_ID 66
2565 #define CERT_AIA_URL_RETRIEVED_PROP_ID 67
2566 #define CERT_AUTHORITY_INFO_ACCESS_PROP_ID 68
2567 #define CERT_BACKED_UP_PROP_ID 69
2568 #define CERT_OCSP_RESPONSE_PROP_ID 70
2569 #define CERT_REQUEST_ORIGINATOR_PROP_ID 71
2570 #define CERT_SOURCE_LOCATION_PROP_ID 72
2571 #define CERT_SOURCE_URL_PROP_ID 73
2572 #define CERT_NEW_KEY_PROP_ID 74
2573 #define CERT_OCSP_CACHE_PREFIX_PROP_ID 75
2574 #define CERT_SMART_CARD_ROOT_INFO_PROP_ID 76
2575 #define CERT_NO_AUTO_EXPIRE_CHECK_PROP_ID 77
2576 #define CERT_NCRYPT_KEY_HANDLE_PROP_ID 78
2577 #define CERT_HCRYPTPROV_OR_NCRYPT_KEY_HANDLE_PROP_ID 79
2578 #define CERT_SUBJECT_INFO_ACCESS_PROP_ID 80
2579 #define CERT_CA_OCSP_AUTHORITY_INFO_ACCESS_PROP_ID 81
2580 #define CERT_CA_DISABLE_CRL_PROP_ID 82
2581 #define CERT_ROOT_PROGRAM_CERT_POLICIES_PROP_ID 83
2582 #define CERT_ROOT_PROGRAM_NAME_CONSTRAINTS_PROP_ID 84
2584 #define CERT_FIRST_RESERVED_PROP_ID 85
2585 #define CERT_LAST_RESERVED_PROP_ID 0x00007fff
2586 #define CERT_FIRST_USER_PROP_ID 0x00008000
2587 #define CERT_LAST_USER_PROP_ID 0x0000ffff
2589 #define IS_CERT_HASH_PROP_ID(x) \
2590 ((x) == CERT_SHA1_HASH_PROP_ID || (x) == CERT_MD5_HASH_PROP_ID || \
2591 (x) == CERT_SIGNATURE_HASH_PROP_ID)
2593 #define IS_PUBKEY_HASH_PROP_ID(x) \
2594 ((x) == CERT_ISSUER_PUBLIC_KEY_MD5_HASH_PROP_ID || \
2595 (x) == CERT_SUBJECT_PUBLIC_KEY_MD5_HASH_PROP_ID)
2597 #define IS_CHAIN_HASH_PROP_ID(x) \
2598 ((x) == CERT_ISSUER_PUBLIC_KEY_MD5_HASH_PROP_ID || \
2599 (x) == CERT_SUBJECT_PUBLIC_KEY_MD5_HASH_PROP_ID || \
2600 (x) == CERT_ISSUER_SERIAL_NUMBER_MD5_HASH_PROP_ID || \
2601 (x) == CERT_SUBJECT_NAME_MD5_HASH_PROP_ID)
2603 /* access state flags */
2604 #define CERT_ACCESS_STATE_WRITE_PERSIST_FLAG 0x1
2605 #define CERT_ACCESS_STATE_SYSTEM_STORE_FLAG 0x2
2606 #define CERT_ACCESS_STATE_LM_SYSTEM_STORE_FLAG 0x4
2608 /* CertSetCertificateContextProperty flags */
2609 #define CERT_SET_PROPERTY_INHIBIT_PERSIST_FLAG 0x40000000
2610 #define CERT_SET_PROPERTY_IGNORE_PERSIST_ERROR_FLAG 0x80000000
2612 /* CERT_RDN attribute dwValueType types */
2613 #define CERT_RDN_TYPE_MASK 0x000000ff
2614 #define CERT_RDN_ANY_TYPE 0
2615 #define CERT_RDN_ENCODED_BLOB 1
2616 #define CERT_RDN_OCTET_STRING 2
2617 #define CERT_RDN_NUMERIC_STRING 3
2618 #define CERT_RDN_PRINTABLE_STRING 4
2619 #define CERT_RDN_TELETEX_STRING 5
2620 #define CERT_RDN_T61_STRING 5
2621 #define CERT_RDN_VIDEOTEX_STRING 6
2622 #define CERT_RDN_IA5_STRING 7
2623 #define CERT_RDN_GRAPHIC_STRING 8
2624 #define CERT_RDN_VISIBLE_STRING 9
2625 #define CERT_RDN_ISO646_STRING 9
2626 #define CERT_RDN_GENERAL_STRING 10
2627 #define CERT_RDN_UNIVERSAL_STRING 11
2628 #define CERT_RDN_INT4_STRING 11
2629 #define CERT_RDN_BMP_STRING 12
2630 #define CERT_RDN_UNICODE_STRING 12
2631 #define CERT_RDN_UTF8_STRING 13
2633 /* CERT_RDN attribute dwValueType flags */
2634 #define CERT_RDN_FLAGS_MASK 0xff000000
2635 #define CERT_RDN_ENABLE_T61_UNICODE_FLAG 0x80000000
2636 #define CERT_RDN_DISABLE_CHECK_TYPE_FLAG 0x4000000
2637 #define CERT_RDN_ENABLE_UTF8_UNICODE_FLAG 0x2000000
2638 #define CERT_RDN_DISABLE_IE4_UTF8_FLAG 0x0100000
2640 #define IS_CERT_RDN_CHAR_STRING(x) \
2641 (((x) & CERT_RDN_TYPE_MASK) >= CERT_RDN_NUMERIC_STRING)
2643 /* CertIsRDNAttrsInCertificateName flags */
2644 #define CERT_UNICODE_IS_RDN_ATTRS_FLAG 0x1
2645 #define CERT_CASE_INSENSITIVE_IS_RDN_ATTRS_FLAG 0x2
2647 /* CRL reason codes */
2648 #define CRL_REASON_UNSPECIFIED 0
2649 #define CRL_REASON_KEY_COMPROMISE 1
2650 #define CRL_REASON_CA_COMPROMISE 2
2651 #define CRL_REASON_AFFILIATION_CHANGED 3
2652 #define CRL_REASON_SUPERSEDED 4
2653 #define CRL_REASON_CESSATION_OF_OPERATION 5
2654 #define CRL_REASON_CERTIFICATE_HOLD 6
2655 #define CRL_REASON_REMOVE_FROM_CRL 8
2657 /* CertControlStore control types */
2658 #define CERT_STORE_CTRL_RESYNC 1
2659 #define CERT_STORE_CTRL_NOTIFY_CHANGE 2
2660 #define CERT_STORE_CTRL_COMMIT 3
2661 #define CERT_STORE_CTRL_AUTO_RESYNC 4
2662 #define CERT_STORE_CTRL_CANCEL_NOTIFY 5
2664 #define CERT_STORE_CTRL_COMMIT_FORCE_FLAG 0x1
2665 #define CERT_STORE_CTRL_COMMIT_CLEAR_FLAG 0x2
2667 /* cert store properties */
2668 #define CERT_STORE_LOCALIZED_NAME_PROP_ID 0x1000
2670 /* CertCreateContext flags */
2671 #define CERT_CREATE_CONTEXT_NOCOPY_FLAG 0x1
2672 #define CERT_CREATE_CONTEXT_SORTED_FLAG 0x2
2673 #define CERT_CREATE_CONTEXT_NO_HCRYPTMSG_FLAG 0x4
2674 #define CERT_CREATE_CONTEXT_NO_ENTRY_FLAG 0x8
2676 #define CERT_COMPARE_MASK 0xffff
2677 #define CERT_COMPARE_SHIFT 16
2678 #define CERT_COMPARE_ANY 0
2679 #define CERT_COMPARE_SHA1_HASH 1
2680 #define CERT_COMPARE_HASH CERT_COMPARE_SHA1_HASH
2681 #define CERT_COMPARE_NAME 2
2682 #define CERT_COMPARE_ATTR 3
2683 #define CERT_COMPARE_MD5_HASH 4
2684 #define CERT_COMPARE_PROPERTY 5
2685 #define CERT_COMPARE_PUBLIC_KEY 6
2686 #define CERT_COMPARE_NAME_STR_A 7
2687 #define CERT_COMPARE_NAME_STR_W 8
2688 #define CERT_COMPARE_KEY_SPEC 9
2689 #define CERT_COMPARE_ENHKEY_USAGE 10
2690 #define CERT_COMPARE_CTL_USAGE CERT_COMPARE_ENHKEY_USAGE
2691 #define CERT_COMPARE_SUBJECT_CERT 11
2692 #define CERT_COMPARE_ISSUER_OF 12
2693 #define CERT_COMPARE_EXISTING 13
2694 #define CERT_COMPARE_SIGNATURE_HASH 14
2695 #define CERT_COMPARE_KEY_IDENTIFIER 15
2696 #define CERT_COMPARE_CERT_ID 16
2697 #define CERT_COMPARE_CROSS_CERT_DIST_POINTS 17
2698 #define CERT_COMPARE_PUBKEY_MD5_HASH 18
2700 /* values of dwFindType for CertFind*InStore */
2701 #define CERT_FIND_ANY \
2702 (CERT_COMPARE_ANY << CERT_COMPARE_SHIFT)
2703 #define CERT_FIND_SHA1_HASH \
2704 (CERT_COMPARE_SHA1_HASH << CERT_COMPARE_SHIFT)
2705 #define CERT_FIND_MD5_HASH \
2706 (CERT_COMPARE_MD5_HASH << CERT_COMPARE_SHIFT)
2707 #define CERT_FIND_SIGNATURE_HASH \
2708 (CERT_COMPARE_SIGNATURE_HASH << CERT_COMPARE_SHIFT)
2709 #define CERT_FIND_KEY_IDENTIFIER \
2710 (CERT_COMPARE_KEY_IDENTIFIER << CERT_COMPARE_SHIFT)
2711 #define CERT_FIND_HASH CERT_FIND_SHA1_HASH
2712 #define CERT_FIND_PROPERTY \
2713 (CERT_COMPARE_PROPERTY << CERT_COMPARE_SHIFT)
2714 #define CERT_FIND_PUBLIC_KEY \
2715 (CERT_COMPARE_PUBLIC_KEY << CERT_COMPARE_SHIFT)
2716 #define CERT_FIND_SUBJECT_NAME \
2717 (CERT_COMPARE_NAME << CERT_COMPARE_SHIFT | CERT_INFO_SUBJECT_FLAG)
2718 #define CERT_FIND_SUBJECT_ATTR \
2719 (CERT_COMPARE_ATTR << CERT_COMPARE_SHIFT | CERT_INFO_SUBJECT_FLAG)
2720 #define CERT_FIND_ISSUER_NAME \
2721 (CERT_COMPARE_NAME << CERT_COMPARE_SHIFT | CERT_INFO_ISSUER_FLAG)
2722 #define CERT_FIND_ISSUER_ATTR \
2723 (CERT_COMPARE_ATTR << CERT_COMPARE_SHIFT | CERT_INFO_ISSUER_FLAG)
2724 #define CERT_FIND_SUBJECT_STR_A \
2725 (CERT_COMPARE_NAME_STR_A << CERT_COMPARE_SHIFT | CERT_INFO_SUBJECT_FLAG)
2726 #define CERT_FIND_SUBJECT_STR_W \
2727 (CERT_COMPARE_NAME_STR_W << CERT_COMPARE_SHIFT | CERT_INFO_SUBJECT_FLAG)
2728 #define CERT_FIND_SUBJECT_STR CERT_FIND_SUBJECT_STR_W
2729 #define CERT_FIND_ISSUER_STR_A \
2730 (CERT_COMPARE_NAME_STR_A << CERT_COMPARE_SHIFT | CERT_INFO_ISSUER_FLAG)
2731 #define CERT_FIND_ISSUER_STR_W \
2732 (CERT_COMPARE_NAME_STR_W << CERT_COMPARE_SHIFT | CERT_INFO_ISSUER_FLAG)
2733 #define CERT_FIND_ISSUER_STR CERT_FIND_ISSUER_STR_W
2734 #define CERT_FIND_KEY_SPEC \
2735 (CERT_COMPARE_KEY_SPEC << CERT_COMPARE_SHIFT)
2736 #define CERT_FIND_ENHKEY_USAGE \
2737 (CERT_COMPARE_ENHKEY_USAGE << CERT_COMPARE_SHIFT)
2738 #define CERT_FIND_CTL_USAGE CERT_FIND_ENHKEY_USAGE
2739 #define CERT_FIND_SUBJECT_CERT \
2740 (CERT_COMPARE_SUBJECT_CERT << CERT_COMPARE_SHIFT)
2741 #define CERT_FIND_ISSUER_OF \
2742 (CERT_COMPARE_ISSUER_OF << CERT_COMPARE_SHIFT)
2743 #define CERT_FIND_EXISTING \
2744 (CERT_COMPARE_EXISTING << CERT_COMPARE_SHIFT)
2745 #define CERT_FIND_CERT_ID \
2746 (CERT_COMPARE_CERT_ID << CERT_COMPARE_SHIFT)
2747 #define CERT_FIND_CROSS_CERT_DIST_POINTS \
2748 (CERT_COMPARE_CROSS_CERT_DIST_POINTS << CERT_COMPARE_SHIFT)
2749 #define CERT_FIND_PUBKEY_MD5_HASH \
2750 (CERT_COMPARE_PUBKEY_MD5_HASH << CERT_COMPARE_SHIFT)
2752 #define CERT_FIND_OPTIONAL_ENHKEY_USAGE_FLAG 0x1
2753 #define CERT_FIND_OPTIONAL_CTL_USAGE_FLAG 0x1
2754 #define CERT_FIND_EXT_ONLY_ENHKEY_USAGE_FLAG 0x2
2755 #define CERT_FIND_EXT_ONLY_CTL_USAGE_FLAG 0x2
2756 #define CERT_FIND_PROP_ONLY_ENHKEY_USAGE_FLAG 0x4
2757 #define CERT_FIND_PROP_ONLY_CTL_USAGE_FLAG 0x4
2758 #define CERT_FIND_NO_ENHKEY_USAGE_FLAG 0x8
2759 #define CERT_FIND_NO_CTL_USAGE_FLAG 0x8
2760 #define CERT_FIND_OR_ENHKEY_USAGE_FLAG 0x10
2761 #define CERT_FIND_OR_CTL_USAGE_FLAG 0x10
2762 #define CERT_FIND_VALID_ENHKEY_USAGE_FLAG 0x20
2763 #define CERT_FIND_VALID_CTL_USAGE_FLAG 0x20
2765 #define CRL_FIND_ANY 0
2766 #define CRL_FIND_ISSUED_BY 1
2767 #define CRL_FIND_EXISTING 2
2768 #define CRL_FIND_ISSUED_FOR 3
2770 #define CRL_FIND_ISSUED_BY_AKI_FLAG 0x1
2771 #define CRL_FIND_ISSUED_BY_SIGNATURE_FLAG 0x2
2772 #define CRL_FIND_ISSUED_BY_DELTA_FLAG 0x4
2773 #define CRL_FIND_ISSUED_BY_BASE_FLAG 0x8
2775 typedef struct _CRL_FIND_ISSUED_FOR_PARA
2777 PCCERT_CONTEXT pSubjectCert;
2778 PCCERT_CONTEXT pIssuerCert;
2779 } CRL_FIND_ISSUED_FOR_PARA, *PCRL_FIND_ISSUED_FOR_PARA;
2781 #define CTL_FIND_ANY 0
2782 #define CTL_FIND_SHA1_HASH 1
2783 #define CTL_FIND_MD5_HASH 2
2784 #define CTL_FIND_USAGE 3
2785 #define CTL_FIND_SUBJECT 4
2786 #define CTL_FIND_EXISTING 5
2788 typedef struct _CTL_FIND_USAGE_PARA
2790 DWORD cbSize;
2791 CTL_USAGE SubjectUsage;
2792 CRYPT_DATA_BLOB ListIdentifier;
2793 PCERT_INFO pSigner;
2794 } CTL_FIND_USAGE_PARA, *PCTL_FIND_USAGE_PARA;
2796 #define CTL_FIND_NO_LIST_ID_CBDATA 0xffffffff
2797 #define CTL_FIND_NO_SIGNER_PTR ((PCERT_INFO)-1)
2798 #define CTL_FIND_SAME_USAGE_FLAG 0x00000001
2800 typedef struct _CTL_FIND_SUBJECT_PARA
2802 DWORD cbSize;
2803 PCTL_FIND_USAGE_PARA pUsagePara;
2804 DWORD dwSubjectType;
2805 void *pvSubject;
2806 } CTL_FIND_SUBJECT_PARA, *PCTL_FIND_SUBJECT_PARA;
2808 /* PFN_CERT_STORE_PROV_WRITE_CERT dwFlags values */
2809 #define CERT_STORE_PROV_WRITE_ADD_FLAG 0x1
2811 /* CertAddSerializedElementToStore context types */
2812 #define CERT_STORE_CERTIFICATE_CONTEXT 1
2813 #define CERT_STORE_CRL_CONTEXT 2
2814 #define CERT_STORE_CTL_CONTEXT 3
2815 #define CERT_STORE_ALL_CONTEXT_FLAG ~0U
2816 #define CERT_STORE_CERTIFICATE_CONTEXT_FLAG \
2817 (1 << CERT_STORE_CERTIFICATE_CONTEXT)
2818 #define CERT_STORE_CRL_CONTEXT_FLAG (1 << CERT_STORE_CRL_CONTEXT)
2819 #define CERT_STORE_CTL_CONTEXT_FLAG (1 << CERT_STORE_CTL_CONTEXT)
2821 /* CryptBinaryToString/CryptStringToBinary flags */
2822 #define CRYPT_STRING_BASE64HEADER 0x00000000
2823 #define CRYPT_STRING_BASE64 0x00000001
2824 #define CRYPT_STRING_BINARY 0x00000002
2825 #define CRYPT_STRING_BASE64REQUESTHEADER 0x00000003
2826 #define CRYPT_STRING_HEX 0x00000004
2827 #define CRYPT_STRING_HEXASCII 0x00000005
2828 #define CRYPT_STRING_BASE64_ANY 0x00000006
2829 #define CRYPT_STRING_ANY 0x00000007
2830 #define CRYPT_STRING_HEX_ANY 0x00000008
2831 #define CRYPT_STRING_BASE64X509CRLHEADER 0x00000009
2832 #define CRYPT_STRING_HEXADDR 0x0000000a
2833 #define CRYPT_STRING_HEXASCIIADDR 0x0000000b
2834 #define CRYPT_STRING_HEXRAW 0x0000000c
2835 #define CRYPT_STRING_BASE64URI 0x0000000d
2837 #define CRYPT_STRING_PERCENTESCAPE 0x08000000
2838 #define CRYPT_STRING_HASHDATA 0x10000000
2839 #define CRYPT_STRING_STRICT 0x20000000
2840 #define CRYPT_STRING_NOCRLF 0x40000000
2841 #define CRYPT_STRING_NOCR 0x80000000
2843 /* OIDs */
2844 #define szOID_RSA "1.2.840.113549"
2845 #define szOID_PKCS "1.2.840.113549.1"
2846 #define szOID_RSA_HASH "1.2.840.113549.2"
2847 #define szOID_RSA_ENCRYPT "1.2.840.113549.3"
2848 #define szOID_PKCS_1 "1.2.840.113549.1.1"
2849 #define szOID_PKCS_2 "1.2.840.113549.1.2"
2850 #define szOID_PKCS_3 "1.2.840.113549.1.3"
2851 #define szOID_PKCS_4 "1.2.840.113549.1.4"
2852 #define szOID_PKCS_5 "1.2.840.113549.1.5"
2853 #define szOID_PKCS_6 "1.2.840.113549.1.6"
2854 #define szOID_PKCS_7 "1.2.840.113549.1.7"
2855 #define szOID_PKCS_8 "1.2.840.113549.1.8"
2856 #define szOID_PKCS_9 "1.2.840.113549.1.9"
2857 #define szOID_PKCS_10 "1.2.840.113549.1.10"
2858 #define szOID_PKCS_11 "1.2.840.113549.1.12"
2859 #define szOID_RSA_RSA "1.2.840.113549.1.1.1"
2860 #define CERT_RSA_PUBLIC_KEY_OBJID szOID_RSA_RSA
2861 #define CERT_DEFAULT_OID_PUBLIC_KEY_SIGN szOID_RSA_RSA
2862 #define CERT_DEFAULT_OID_PUBLIC_KEY_XCHG szOID_RSA_RSA
2863 #define szOID_RSA_MD2RSA "1.2.840.113549.1.1.2"
2864 #define szOID_RSA_MD4RSA "1.2.840.113549.1.1.3"
2865 #define szOID_RSA_MD5RSA "1.2.840.113549.1.1.4"
2866 #define szOID_RSA_SHA1RSA "1.2.840.113549.1.1.5"
2867 #define szOID_RSA_SET0AEP_RSA "1.2.840.113549.1.1.6"
2868 #define szOID_RSA_SHA256RSA "1.2.840.113549.1.1.11"
2869 #define szOID_RSA_SHA384RSA "1.2.840.113549.1.1.12"
2870 #define szOID_RSA_SHA512RSA "1.2.840.113549.1.1.13"
2871 #define szOID_RSA_DH "1.2.840.113549.1.3.1"
2872 #define szOID_RSA_data "1.2.840.113549.1.7.1"
2873 #define szOID_RSA_signedData "1.2.840.113549.1.7.2"
2874 #define szOID_RSA_envelopedData "1.2.840.113549.1.7.3"
2875 #define szOID_RSA_signEnvData "1.2.840.113549.1.7.4"
2876 #define szOID_RSA_digestedData "1.2.840.113549.1.7.5"
2877 #define szOID_RSA_hashedData "1.2.840.113549.1.7.5"
2878 #define szOID_RSA_encryptedData "1.2.840.113549.1.7.6"
2879 #define szOID_RSA_emailAddr "1.2.840.113549.1.9.1"
2880 #define szOID_RSA_unstructName "1.2.840.113549.1.9.2"
2881 #define szOID_RSA_contentType "1.2.840.113549.1.9.3"
2882 #define szOID_RSA_messageDigest "1.2.840.113549.1.9.4"
2883 #define szOID_RSA_signingTime "1.2.840.113549.1.9.5"
2884 #define szOID_RSA_counterSign "1.2.840.113549.1.9.6"
2885 #define szOID_RSA_challengePwd "1.2.840.113549.1.9.7"
2886 #define szOID_RSA_unstructAddr "1.2.840.113549.1.9.9"
2887 #define szOID_RSA_extCertAttrs "1.2.840.113549.1.9.9"
2888 #define szOID_RSA_certExtensions "1.2.840.113549.1.9.14"
2889 #define szOID_RSA_SMIMECapabilities "1.2.840.113549.1.9.15"
2890 #define szOID_RSA_preferSignedData "1.2.840.113549.1.9.15.1"
2891 #define szOID_RSA_SMIMEalg "1.2.840.113549.1.9.16.3"
2892 #define szOID_RSA_SMIMEalgESDH "1.2.840.113549.1.9.16.3.5"
2893 #define szOID_RSA_SMIMEalgCMS3DESwrap "1.2.840.113549.1.9.16.3.6"
2894 #define szOID_RSA_SMIMEalgCMSRC2wrap "1.2.840.113549.1.9.16.3.7"
2895 #define szOID_RSA_MD2 "1.2.840.113549.2.2"
2896 #define szOID_RSA_MD4 "1.2.840.113549.2.4"
2897 #define szOID_RSA_MD5 "1.2.840.113549.2.5"
2898 #define szOID_RSA_RC2CBC "1.2.840.113549.3.2"
2899 #define szOID_RSA_RC4 "1.2.840.113549.3.4"
2900 #define szOID_RSA_DES_EDE3_CBC "1.2.840.113549.3.7"
2901 #define szOID_RSA_RC5_CBCPad "1.2.840.113549.3.9"
2902 #define szOID_ANSI_X942 "1.2.840.10046"
2903 #define szOID_ANSI_X942_DH "1.2.840.10046.2.1"
2904 #define szOID_X957 "1.2.840.10040"
2905 #define szOID_X957_DSA "1.2.840.10040.4.1"
2906 #define szOID_X957_SHA1DSA "1.2.840.10040.4.3"
2907 #define szOID_ECC_PUBLIC_KEY "1.2.840.10045.2.1"
2908 #define szOID_ECC_CURVE_P256 "1.2.840.10045.3.1.7"
2909 #define szOID_ECDSA_SPECIFIED "1.2.840.10045.4.3"
2910 #define szOID_ECDSA_SHA256 "1.2.840.10045.4.3.2"
2911 #define szOID_ECDSA_SHA384 "1.2.840.10045.4.3.3"
2912 #define szOID_ECDSA_SHA512 "1.2.840.10045.4.3.4"
2913 #define szOID_DS "2.5"
2914 #define szOID_DSALG "2.5.8"
2915 #define szOID_DSALG_CRPT "2.5.8.1"
2916 #define szOID_DSALG_HASH "2.5.8.2"
2917 #define szOID_DSALG_SIGN "2.5.8.3"
2918 #define szOID_DSALG_RSA "2.5.8.1.1"
2919 #define szOID_OIW "1.3.14"
2920 #define szOID_OIWSEC "1.3.14.3.2"
2921 #define szOID_OIWSEC_md4RSA "1.3.14.3.2.2"
2922 #define szOID_OIWSEC_md5RSA "1.3.14.3.2.3"
2923 #define szOID_OIWSEC_md4RSA2 "1.3.14.3.2.4"
2924 #define szOID_OIWSEC_desECB "1.3.14.3.2.6"
2925 #define szOID_OIWSEC_desCBC "1.3.14.3.2.7"
2926 #define szOID_OIWSEC_desOFB "1.3.14.3.2.8"
2927 #define szOID_OIWSEC_desCFB "1.3.14.3.2.9"
2928 #define szOID_OIWSEC_desMAC "1.3.14.3.2.10"
2929 #define szOID_OIWSEC_rsaSign "1.3.14.3.2.11"
2930 #define szOID_OIWSEC_dsa "1.3.14.3.2.12"
2931 #define szOID_OIWSEC_shaDSA "1.3.14.3.2.13"
2932 #define szOID_OIWSEC_mdc2RSA "1.3.14.3.2.14"
2933 #define szOID_OIWSEC_shaRSA "1.3.14.3.2.15"
2934 #define szOID_OIWSEC_dhCommMod "1.3.14.3.2.16"
2935 #define szOID_OIWSEC_desEDE "1.3.14.3.2.17"
2936 #define szOID_OIWSEC_sha "1.3.14.3.2.18"
2937 #define szOID_OIWSEC_mdc2 "1.3.14.3.2.19"
2938 #define szOID_OIWSEC_dsaComm "1.3.14.3.2.20"
2939 #define szOID_OIWSEC_dsaCommSHA "1.3.14.3.2.21"
2940 #define szOID_OIWSEC_rsaXchg "1.3.14.3.2.22"
2941 #define szOID_OIWSEC_keyHashSeal "1.3.14.3.2.23"
2942 #define szOID_OIWSEC_md2RSASign "1.3.14.3.2.24"
2943 #define szOID_OIWSEC_md5RSASign "1.3.14.3.2.25"
2944 #define szOID_OIWSEC_sha1 "1.3.14.3.2.26"
2945 #define szOID_OIWSEC_dsaSHA1 "1.3.14.3.2.27"
2946 #define szOID_OIWSEC_dsaCommSHA1 "1.3.14.3.2.28"
2947 #define szOID_OIWSEC_sha1RSASign "1.3.14.3.2.29"
2948 #define szOID_OIWDIR "1.3.14.7.2"
2949 #define szOID_OIWDIR_CRPT "1.3.14.7.2.1"
2950 #define szOID_OIWDIR_HASH "1.3.14.7.2.2"
2951 #define szOID_OIWDIR_SIGN "1.3.14.7.2.3"
2952 #define szOID_OIWDIR_md2 "1.3.14.7.2.2.1"
2953 #define szOID_OIWDIR_md2RSA "1.3.14.7.2.3.1"
2954 #define szOID_ECC_CURVE_P384 "1.3.132.0.34"
2955 #define szOID_ECC_CURVE_P521 "1.3.132.0.35"
2956 #define szOID_INFOSEC "2.16.840.1.101.2.1"
2957 #define szOID_INFOSEC_sdnsSignature "2.16.840.1.101.2.1.1.1"
2958 #define szOID_INFOSEC_mosaicSignature "2.16.840.1.101.2.1.1.2"
2959 #define szOID_INFOSEC_sdnsConfidentiality "2.16.840.1.101.2.1.1.3"
2960 #define szOID_INFOSEC_mosaicConfidentiality "2.16.840.1.101.2.1.1.4"
2961 #define szOID_INFOSEC_sdnsIntegrity "2.16.840.1.101.2.1.1.5"
2962 #define szOID_INFOSEC_mosaicIntegrity "2.16.840.1.101.2.1.1.6"
2963 #define szOID_INFOSEC_sdnsTokenProtection "2.16.840.1.101.2.1.1.7"
2964 #define szOID_INFOSEC_mosaicTokenProtection "2.16.840.1.101.2.1.1.8"
2965 #define szOID_INFOSEC_sdnsKeyManagement "2.16.840.1.101.2.1.1.9"
2966 #define szOID_INFOSEC_mosaicKeyManagement "2.16.840.1.101.2.1.1.10"
2967 #define szOID_INFOSEC_sdnsKMandSig "2.16.840.1.101.2.1.1.11"
2968 #define szOID_INFOSEC_mosaicKMandSig "2.16.840.1.101.2.1.1.12"
2969 #define szOID_INFOSEC_SuiteASignature "2.16.840.1.101.2.1.1.13"
2970 #define szOID_INFOSEC_SuiteAConfidentiality "2.16.840.1.101.2.1.1.14"
2971 #define szOID_INFOSEC_SuiteAIntegrity "2.16.840.1.101.2.1.1.15"
2972 #define szOID_INFOSEC_SuiteATokenProtection "2.16.840.1.101.2.1.1.16"
2973 #define szOID_INFOSEC_SuiteAKeyManagement "2.16.840.1.101.2.1.1.17"
2974 #define szOID_INFOSEC_SuiteAKMandSig "2.16.840.1.101.2.1.1.18"
2975 #define szOID_INFOSEC_mosaicUpdatedSig "2.16.840.1.101.2.1.1.19"
2976 #define szOID_INFOSEC_mosaicKMandUpdSig "2.16.840.1.101.2.1.1.20"
2977 #define szOID_INFOSEC_mosaicUpdateInteg "2.16.840.1.101.2.1.1.21"
2978 #define szOID_NIST_sha256 "2.16.840.1.101.3.4.2.1"
2979 #define szOID_NIST_sha384 "2.16.840.1.101.3.4.2.2"
2980 #define szOID_NIST_sha512 "2.16.840.1.101.3.4.2.3"
2981 #define szOID_COMMON_NAME "2.5.4.3"
2982 #define szOID_SUR_NAME "2.5.4.4"
2983 #define szOID_DEVICE_SERIAL_NUMBER "2.5.4.5"
2984 #define szOID_COUNTRY_NAME "2.5.4.6"
2985 #define szOID_LOCALITY_NAME "2.5.4.7"
2986 #define szOID_STATE_OR_PROVINCE_NAME "2.5.4.8"
2987 #define szOID_STREET_ADDRESS "2.5.4.9"
2988 #define szOID_ORGANIZATION_NAME "2.5.4.10"
2989 #define szOID_ORGANIZATIONAL_UNIT_NAME "2.5.4.11"
2990 #define szOID_TITLE "2.5.4.12"
2991 #define szOID_DESCRIPTION "2.5.4.13"
2992 #define szOID_SEARCH_GUIDE "2.5.4.14"
2993 #define szOID_BUSINESS_CATEGORY "2.5.4.15"
2994 #define szOID_POSTAL_ADDRESS "2.5.4.16"
2995 #define szOID_POSTAL_CODE "2.5.4.17"
2996 #define szOID_POST_OFFICE_BOX "2.5.4.18"
2997 #define szOID_PHYSICAL_DELIVERY_OFFICE_NAME "2.5.4.19"
2998 #define szOID_TELEPHONE_NUMBER "2.5.4.20"
2999 #define szOID_TELEX_NUMBER "2.5.4.21"
3000 #define szOID_TELETEXT_TERMINAL_IDENTIFIER "2.5.4.22"
3001 #define szOID_FACSIMILE_TELEPHONE_NUMBER "2.5.4.23"
3002 #define szOID_X21_ADDRESS "2.5.4.24"
3003 #define szOID_INTERNATIONAL_ISDN_NUMBER "2.5.4.25"
3004 #define szOID_REGISTERED_ADDRESS "2.5.4.26"
3005 #define szOID_DESTINATION_INDICATOR "2.5.4.27"
3006 #define szOID_PREFERRED_DELIVERY_METHOD "2.5.4.28"
3007 #define szOID_PRESENTATION_ADDRESS "2.5.4.29"
3008 #define szOID_SUPPORTED_APPLICATION_CONTEXT "2.5.4.30"
3009 #define szOID_MEMBER "2.5.4.31"
3010 #define szOID_OWNER "2.5.4.32"
3011 #define szOID_ROLE_OCCUPANT "2.5.4.33"
3012 #define szOID_SEE_ALSO "2.5.4.34"
3013 #define szOID_USER_PASSWORD "2.5.4.35"
3014 #define szOID_USER_CERTIFICATE "2.5.4.36"
3015 #define szOID_CA_CERTIFICATE "2.5.4.37"
3016 #define szOID_AUTHORITY_REVOCATION_LIST "2.5.4.38"
3017 #define szOID_CERTIFICATE_REVOCATION_LIST "2.5.4.39"
3018 #define szOID_CROSS_CERTIFICATE_PAIR "2.5.4.40"
3019 #define szOID_GIVEN_NAME "2.5.4.42"
3020 #define szOID_INITIALS "2.5.4.43"
3021 #define szOID_DN_QUALIFIER "2.5.4.46"
3022 #define szOID_AUTHORITY_KEY_IDENTIFIER "2.5.29.1"
3023 #define szOID_KEY_ATTRIBUTES "2.5.29.2"
3024 #define szOID_CERT_POLICIES_95 "2.5.29.3"
3025 #define szOID_KEY_USAGE_RESTRICTION "2.5.29.4"
3026 #define szOID_LEGACY_POLICY_MAPPINGS "2.5.29.5"
3027 #define szOID_SUBJECT_ALT_NAME "2.5.29.7"
3028 #define szOID_ISSUER_ALT_NAME "2.5.29.8"
3029 #define szOID_SUBJECT_DIR_ATTRS "2.5.29.9"
3030 #define szOID_BASIC_CONSTRAINTS "2.5.29.10"
3031 #define szOID_SUBJECT_KEY_IDENTIFIER "2.5.29.14"
3032 #define szOID_KEY_USAGE "2.5.29.15"
3033 #define szOID_PRIVATEKEY_USAGE_PERIOD "2.5.29.16"
3034 #define szOID_SUBJECT_ALT_NAME2 "2.5.29.17"
3035 #define szOID_ISSUER_ALT_NAME2 "2.5.29.18"
3036 #define szOID_BASIC_CONSTRAINTS2 "2.5.29.19"
3037 #define szOID_CRL_NUMBER "2.5.29.20"
3038 #define szOID_CRL_REASON_CODE "2.5.29.21"
3039 #define szOID_REASON_CODE_HOLD "2.5.29.23"
3040 #define szOID_DELTA_CRL_INDICATOR "2.5.29.27"
3041 #define szOID_ISSUING_DIST_POINT "2.5.29.28"
3042 #define szOID_NAME_CONSTRAINTS "2.5.29.30"
3043 #define szOID_CRL_DIST_POINTS "2.5.29.31"
3044 #define szOID_CERT_POLICIES "2.5.29.32"
3045 #define szOID_ANY_CERT_POLICY "2.5.29.32.0"
3046 #define szOID_POLICY_MAPPINGS "2.5.29.33"
3047 #define szOID_AUTHORITY_KEY_IDENTIFIER2 "2.5.29.35"
3048 #define szOID_POLICY_CONSTRAINTS "2.5.29.36"
3049 #define szOID_ENHANCED_KEY_USAGE "2.5.29.37"
3050 #define szOID_FRESHEST_CRL "2.5.29.46"
3051 #define szOID_INHIBIT_ANY_POLICY "2.5.29.54"
3052 #define szOID_DOMAIN_COMPONENT "0.9.2342.19200300.100.1.25"
3053 #define szOID_PKCS_12_FRIENDLY_NAME_ATTR "1.2.840.113549.1.9.20"
3054 #define szOID_PKCS_12_LOCAL_KEY_ID "1.2.840.113549.1.9.21"
3055 #define szOID_CERT_EXTENSIONS "1.3.6.1.4.1.311.2.1.14"
3056 #define szOID_NEXT_UPDATE_LOCATION "1.3.6.1.4.1.311.10.2"
3057 #define szOID_KP_CTL_USAGE_SIGNING "1.3.6.1.4.1.311.10.3.1"
3058 #define szOID_KP_TIME_STAMP_SIGNING "1.3.6.1.4.1.311.10.3.2"
3059 #ifndef szOID_SERVER_GATED_CRYPTO
3060 #define szOID_SERVER_GATED_CRYPTO "1.3.6.1.4.1.311.10.3.3"
3061 #endif
3062 #ifndef szOID_SGC_NETSCAPE
3063 #define szOID_SGC_NETSCAPE "2.16.840.1.113730.4.1"
3064 #endif
3065 #define szOID_KP_EFS "1.3.6.1.4.1.311.10.3.4"
3066 #define szOID_EFS_RECOVERY "1.3.6.1.4.1.311.10.3.4.1"
3067 #define szOID_WHQL_CRYPTO "1.3.6.1.4.1.311.10.3.5"
3068 #define szOID_NT5_CRYPTO "1.3.6.1.4.1.311.10.3.6"
3069 #define szOID_OEM_WHQL_CRYPTO "1.3.6.1.4.1.311.10.3.7"
3070 #define szOID_EMBEDDED_NT_CRYPTO "1.3.6.1.4.1.311.10.3.8"
3071 #define szOID_ROOT_LIST_SIGNER "1.3.6.1.4.1.311.10.3.9"
3072 #define szOID_KP_QUALIFIED_SUBORDINATION "1.3.6.1.4.1.311.10.3.10"
3073 #define szOID_KP_KEY_RECOVERY "1.3.6.1.4.1.311.10.3.11"
3074 #define szOID_KP_DOCUMENT_SIGNING "1.3.6.1.4.1.311.10.3.12"
3075 #define szOID_KP_LIFETIME_SIGNING "1.3.6.1.4.1.311.10.3.13"
3076 #define szOID_KP_MOBILE_DEVICE_SOFTWARE "1.3.6.1.4.1.311.10.3.14"
3077 #define szOID_YESNO_TRUST_ATTR "1.3.6.1.4.1.311.10.4.1"
3078 #ifndef szOID_DRM
3079 #define szOID_DRM "1.3.6.1.4.1.311.10.5.1"
3080 #endif
3081 #ifndef szOID_DRM_INDIVIDUALIZATION
3082 #define szOID_DRM_INDIVIDUALIZATION "1.3.6.1.4.1.311.10.5.2"
3083 #endif
3084 #ifndef szOID_LICENSES
3085 #define szOID_LICENSES "1.3.6.1.4.1.311.10.6.1"
3086 #endif
3087 #ifndef szOID_LICENSE_SERVER
3088 #define szOID_LICENSE_SERVER "1.3.6.1.4.1.311.10.6.2"
3089 #endif
3090 #define szOID_REMOVE_CERTIFICATE "1.3.6.1.4.1.311.10.8.1"
3091 #define szOID_CROSS_CERT_DIST_POINTS "1.3.6.1.4.1.311.10.9.1"
3092 #define szOID_CTL "1.3.6.1.4.1.311.10.1"
3093 #define szOID_SORTED_CTL "1.3.6.1.4.1.311.10.1.1"
3094 #define szOID_ANY_APPLICATION_POLICY "1.3.6.1.4.1.311.10.12.1"
3095 #define szOID_RENEWAL_CERTIFICATE "1.3.6.1.4.1.311.13.1"
3096 #define szOID_ENROLLMENT_NAME_VALUE_PAIR "1.3.6.1.4.1.311.13.2.1"
3097 #define szOID_ENROLLMENT_CSP_PROVIDER "1.3.6.1.4.1.311.13.2.2"
3098 #define szOID_OS_VERSION "1.3.6.1.4.1.311.13.2.3"
3099 #define szOID_PKCS_12_KEY_PROVIDER_NAME_ATTR "1.3.6.1.4.1.311.17.1"
3100 #define szOID_LOCAL_MACHINE_KEYSET "1.3.6.1.4.1.311.17.2"
3101 #define szOID_AUTO_ENROLL_CTL_USAGE "1.3.6.1.4.1.311.20.1"
3102 #define szOID_ENROLL_CERTTYPE_EXTENSION "1.3.6.1.4.1.311.20.2"
3103 #define szOID_ENROLLMENT_AGENT "1.3.6.1.4.1.311.20.2.1"
3104 #ifndef szOID_KP_SMARTCARD_LOGON
3105 #define szOID_KP_SMARTCARD_LOGON "1.3.6.1.4.1.311.20.2.2"
3106 #endif
3107 #ifndef szOID_NT_PRINCIPAL_NAME
3108 #define szOID_NT_PRINCIPAL_NAME "1.3.6.1.4.1.311.20.2.3"
3109 #endif
3110 #define szOID_CERT_MANIFOLD "1.3.6.1.4.1.311.20.3"
3111 #ifndef szOID_CERTSRV_CA_VERSION
3112 #define szOID_CERTSRV_CA_VERSION "1.3.6.1.4.1.311.21.1"
3113 #endif
3114 #define szOID_CERTSRV_PREVIOUS_CERT_HASH "1.3.6.1.4.1.311.21.2"
3115 #define szOID_CRL_VIRTUAL_BASE "1.3.6.1.4.1.311.21.3"
3116 #define szOID_CRL_NEXT_PUBLISH "1.3.6.1.4.1.311.21.4"
3117 #define szOID_KP_CA_EXCHANGE "1.3.6.1.4.1.311.21.5"
3118 #define szOID_KP_KEY_RECOVERY_AGENT "1.3.6.1.4.1.311.21.6"
3119 #define szOID_CERTIFICATE_TEMPLATE "1.3.6.1.4.1.311.21.7"
3120 #define szOID_ENTERPRISE_OID_ROOT "1.3.6.1.4.1.311.21.8"
3121 #define szOID_RDN_DUMMY_SIGNER "1.3.6.1.4.1.311.21.9"
3122 #define szOID_APPLICATION_CERT_POLICIES "1.3.6.1.4.1.311.21.10"
3123 #define szOID_APPLICATION_POLICY_MAPPINGS "1.3.6.1.4.1.311.21.11"
3124 #define szOID_APPLICATION_POLICY_CONSTRAINTS "1.3.6.1.4.1.311.21.12"
3125 #define szOID_ARCHIVED_KEY_ATTR "1.3.6.1.4.1.311.21.13"
3126 #define szOID_CRL_SELF_CDP "1.3.6.1.4.1.311.21.14"
3127 #define szOID_REQUIRE_CERT_CHAIN_POLICY "1.3.6.1.4.1.311.21.15"
3128 #define szOID_ARCHIVED_KEY_CERT_HASH "1.3.6.1.4.1.311.21.16"
3129 #define szOID_ISSUED_CERT_HASH "1.3.6.1.4.1.311.21.17"
3130 #define szOID_DS_EMAIL_REPLICATION "1.3.6.1.4.1.311.21.19"
3131 #define szOID_REQUEST_CLIENT_INFO "1.3.6.1.4.1.311.21.20"
3132 #define szOID_ENCRYPTED_KEY_HASH "1.3.6.1.4.1.311.21.21"
3133 #define szOID_CERTSRV_CROSSCA_VERSION "1.3.6.1.4.1.311.21.22"
3134 #define szOID_KEYID_RDN "1.3.6.1.4.1.311.10.7.1"
3135 #define szOID_PKIX "1.3.6.1.5.5.7"
3136 #define szOID_PKIX_PE "1.3.6.1.5.5.7.1"
3137 #define szOID_AUTHORITY_INFO_ACCESS "1.3.6.1.5.5.7.1.1"
3138 #define szOID_PKIX_POLICY_QUALIFIER_CPS "1.3.6.1.5.5.7.2.1"
3139 #define szOID_PKIX_POLICY_QUALIFIER_USERNOTICE "1.3.6.1.5.5.7.2.2"
3140 #define szOID_PKIX_KP "1.3.6.1.5.5.7.3"
3141 #define szOID_PKIX_KP_SERVER_AUTH "1.3.6.1.5.5.7.3.1"
3142 #define szOID_PKIX_KP_CLIENT_AUTH "1.3.6.1.5.5.7.3.2"
3143 #define szOID_PKIX_KP_CODE_SIGNING "1.3.6.1.5.5.7.3.3"
3144 #define szOID_PKIX_KP_EMAIL_PROTECTION "1.3.6.1.5.5.7.3.4"
3145 #define szOID_PKIX_KP_IPSEC_END_SYSTEM "1.3.6.1.5.5.7.3.5"
3146 #define szOID_PKIX_KP_IPSEC_TUNNEL "1.3.6.1.5.5.7.3.6"
3147 #define szOID_PKIX_KP_IPSEC_USER "1.3.6.1.5.5.7.3.7"
3148 #define szOID_PKIX_KP_TIMESTAMP_SIGNING "1.3.6.1.5.5.7.3.8"
3149 #define szOID_PKIX_NO_SIGNATURE "1.3.6.1.5.5.7.6.2"
3150 #define szOID_CMC "1.3.6.1.5.5.7.7"
3151 #define szOID_CMC_STATUS_INFO "1.3.6.1.5.5.7.7.1"
3152 #define szOID_CMC_IDENTIFICATION "1.3.6.1.5.5.7.7.2"
3153 #define szOID_CMC_IDENTITY_PROOF "1.3.6.1.5.5.7.7.3"
3154 #define szOID_CMC_DATA_RETURN "1.3.6.1.5.5.7.7.4"
3155 #define szOID_CMC_TRANSACTION_ID "1.3.6.1.5.5.7.7.5"
3156 #define szOID_CMC_SENDER_NONCE "1.3.6.1.5.5.7.7.6"
3157 #define szOID_CMC_RECIPIENT_NONCE "1.3.6.1.5.5.7.7.7"
3158 #define szOID_CMC_ADD_EXTENSIONS "1.3.6.1.5.5.7.7.8"
3159 #define szOID_CMC_ENCRYPTED_POP "1.3.6.1.5.5.7.7.9"
3160 #define szOID_CMC_DECRYPTED_POP "1.3.6.1.5.5.7.7.10"
3161 #define szOID_CMC_LRA_POP_WITNESS "1.3.6.1.5.5.7.7.11"
3162 #define szOID_CMC_GET_CERT "1.3.6.1.5.5.7.7.15"
3163 #define szOID_CMC_GET_CRL "1.3.6.1.5.5.7.7.16"
3164 #define szOID_CMC_REVOKE_REQUEST "1.3.6.1.5.5.7.7.17"
3165 #define szOID_CMC_REG_INFO "1.3.6.1.5.5.7.7.18"
3166 #define szOID_CMC_RESPONSE_INFO "1.3.6.1.5.5.7.7.19"
3167 #define szOID_CMC_QUERY_PENDING "1.3.6.1.5.5.7.7.21"
3168 #define szOID_CMC_ID_POP_LINK_RANDOM "1.3.6.1.5.5.7.7.22"
3169 #define szOID_CMC_ID_POP_LINK_WITNESS "1.3.6.1.5.5.7.7.23"
3170 #define szOID_CT_PKI_DATA "1.3.6.1.5.5.7.12.2"
3171 #define szOID_CT_PKI_RESPONSE "1.3.6.1.5.5.7.12.3"
3172 #define szOID_PKIX_ACC_DESCR "1.3.6.1.5.5.7.48"
3173 #define szOID_PKIX_OCSP "1.3.6.1.5.5.7.48.1"
3174 #define szOID_PKIX_CA_ISSUERS "1.3.6.1.5.5.7.48.2"
3175 #define szOID_IPSEC_KP_IKE_INTERMEDIATE "1.3.6.1.5.5.8.2.2"
3177 #ifndef szOID_SERIALIZED
3178 #define szOID_SERIALIZED "1.3.6.1.4.1.311.10.3.3.1"
3179 #endif
3181 #ifndef szOID_PRODUCT_UPDATE
3182 #define szOID_PRODUCT_UPDATE "1.3.6.1.4.1.311.31.1"
3183 #endif
3185 #define szOID_NETSCAPE "2.16.840.1.113730"
3186 #define szOID_NETSCAPE_CERT_EXTENSION "2.16.840.1.113730.1"
3187 #define szOID_NETSCAPE_CERT_TYPE "2.16.840.1.113730.1.1"
3188 #define szOID_NETSCAPE_BASE_URL "2.16.840.1.113730.1.2"
3189 #define szOID_NETSCAPE_REVOCATION_URL "2.16.840.1.113730.1.3"
3190 #define szOID_NETSCAPE_CA_REVOCATION_URL "2.16.840.1.113730.1.4"
3191 #define szOID_NETSCAPE_CERT_RENEWAL_URL "2.16.840.1.113730.1.7"
3192 #define szOID_NETSCAPE_CA_POLICY_URL "2.16.840.1.113730.1.8"
3193 #define szOID_NETSCAPE_SSL_SERVER_NAME "2.16.840.1.113730.1.12"
3194 #define szOID_NETSCAPE_COMMENT "2.16.840.1.113730.1.13"
3195 #define szOID_NETSCAPE_DATA_TYPE "2.16.840.1.113730.2"
3196 #define szOID_NETSCAPE_CERT_SEQUENCE "2.16.840.1.113730.2.5"
3198 /* Bits for szOID_NETSCAPE_CERT_TYPE */
3199 #define NETSCAPE_SSL_CLIENT_AUTH_CERT_TYPE 0x80
3200 #define NETSCAPE_SSL_SERVER_AUTH_CERT_TYPE 0x40
3201 #define NETSCAPE_SMIME_CERT_TYPE 0x20
3202 #define NETSCAPE_SIGN_CERT_TYPE 0x10
3203 #define NETSCAPE_SSL_CA_CERT_TYPE 0x04
3204 #define NETSCAPE_SMIME_CA_CERT_TYPE 0x02
3205 #define NETSCAPE_SIGN_CA_CERT_TYPE 0x01
3207 #define CRYPT_ENCODE_DECODE_NONE 0
3208 #define X509_CERT ((LPCSTR)1)
3209 #define X509_CERT_TO_BE_SIGNED ((LPCSTR)2)
3210 #define X509_CERT_CRL_TO_BE_SIGNED ((LPCSTR)3)
3211 #define X509_CERT_REQUEST_TO_BE_SIGNED ((LPCSTR)4)
3212 #define X509_EXTENSIONS ((LPCSTR)5)
3213 #define X509_NAME_VALUE ((LPCSTR)6)
3214 #define X509_ANY_STRING X509_NAME_VALUE
3215 #define X509_NAME ((LPCSTR)7)
3216 #define X509_PUBLIC_KEY_INFO ((LPCSTR)8)
3217 #define X509_AUTHORITY_KEY_ID ((LPCSTR)9)
3218 #define X509_KEY_ATTRIBUTES ((LPCSTR)10)
3219 #define X509_KEY_USAGE_RESTRICTION ((LPCSTR)11)
3220 #define X509_ALTERNATE_NAME ((LPCSTR)12)
3221 #define X509_BASIC_CONSTRAINTS ((LPCSTR)13)
3222 #define X509_KEY_USAGE ((LPCSTR)14)
3223 #define X509_BASIC_CONSTRAINTS2 ((LPCSTR)15)
3224 #define X509_CERT_POLICIES ((LPCSTR)16)
3225 #define PKCS_UTC_TIME ((LPCSTR)17)
3226 #define PKCS_TIME_REQUEST ((LPCSTR)18)
3227 #define RSA_CSP_PUBLICKEYBLOB ((LPCSTR)19)
3228 #define X509_UNICODE_NAME ((LPCSTR)20)
3229 #define X509_KEYGEN_REQUEST_TO_BE_SIGNED ((LPCSTR)21)
3230 #define PKCS_ATTRIBUTE ((LPCSTR)22)
3231 #define PKCS_CONTENT_INFO_SEQUENCE_OF_ANY ((LPCSTR)23)
3232 #define X509_UNICODE_NAME_VALUE ((LPCSTR)24)
3233 #define X509_UNICODE_ANY_STRING X509_UNICODE_NAME_VALUE
3234 #define X509_OCTET_STRING ((LPCSTR)25)
3235 #define X509_BITS ((LPCSTR)26)
3236 #define X509_INTEGER ((LPCSTR)27)
3237 #define X509_MULTI_BYTE_INTEGER ((LPCSTR)28)
3238 #define X509_ENUMERATED ((LPCSTR)29)
3239 #define X509_CRL_REASON_CODE X509_ENUMERATED
3240 #define X509_CHOICE_OF_TIME ((LPCSTR)30)
3241 #define X509_AUTHORITY_KEY_ID2 ((LPCSTR)31)
3242 #define X509_AUTHORITY_INFO_ACCESS ((LPCSTR)32)
3243 #define PKCS_CONTENT_INFO ((LPCSTR)33)
3244 #define X509_SEQUENCE_OF_ANY ((LPCSTR)34)
3245 #define X509_CRL_DIST_POINTS ((LPCSTR)35)
3246 #define X509_ENHANCED_KEY_USAGE ((LPCSTR)36)
3247 #define PKCS_CTL ((LPCSTR)37)
3248 #define X509_MULTI_BYTE_UINT ((LPCSTR)38)
3249 #define X509_DSS_PUBLICKEY X509_MULTI_BYTE_UINT
3250 #define X509_DSS_PARAMETERS ((LPCSTR)39)
3251 #define X509_DSS_SIGNATURE ((LPCSTR)40)
3252 #define PKCS_RC2_CBC_PARAMETERS ((LPCSTR)41)
3253 #define PKCS_SMIME_CAPABILITIES ((LPCSTR)42)
3254 #define PKCS_RSA_PRIVATE_KEY ((LPCSTR)43)
3255 #define PKCS_PRIVATE_KEY_INFO ((LPCSTR)44)
3256 #define PKCS_ENCRYPTED_PRIVATE_KEY_INFO ((LPCSTR)45)
3257 #define X509_PKIX_POLICY_QUALIFIER_USERNOTICE ((LPCSTR)46)
3258 #define X509_DH_PUBLICKEY X509_MULTI_BYTE_UINT
3259 #define X509_DH_PARAMETERS ((LPCSTR)47)
3260 #define X509_ECC_SIGNATURE ((LPCSTR)47)
3261 #define PKCS_ATTRIBUTES ((LPCSTR)48)
3262 #define PKCS_SORTED_CTL ((LPCSTR)49)
3263 #define X942_DH_PARAMETERS ((LPCSTR)50)
3264 #define X509_BITS_WITHOUT_TRAILING_ZEROES ((LPCSTR)51)
3265 #define X942_OTHER_INFO ((LPCSTR)52)
3266 #define X509_CERT_PAIR ((LPCSTR)53)
3267 #define X509_ISSUING_DIST_POINT ((LPCSTR)54)
3268 #define X509_NAME_CONSTRAINTS ((LPCSTR)55)
3269 #define X509_POLICY_MAPPINGS ((LPCSTR)56)
3270 #define X509_POLICY_CONSTRAINTS ((LPCSTR)57)
3271 #define X509_CROSS_CERT_DIST_POINTS ((LPCSTR)58)
3272 #define CMC_DATA ((LPCSTR)59)
3273 #define CMC_RESPONSE ((LPCSTR)60)
3274 #define CMC_STATUS ((LPCSTR)61)
3275 #define CMC_ADD_EXTENSIONS ((LPCSTR)62)
3276 #define CMC_ADD_ATTRIBUTES ((LPCSTR)63)
3277 #define X509_CERTIFICATE_TEMPLATE ((LPCSTR)64)
3278 #define OCSP_SIGNED_REQUEST ((LPCSTR)65)
3279 #define OCSP_REQUEST ((LPCSTR)66)
3280 #define OCSP_RESPONSE ((LPCSTR)67)
3281 #define OCSP_BASIC_SIGNED_RESPONSE ((LPCSTR)68)
3282 #define OCSP_BASIC_RESPONSE ((LPCSTR)69)
3283 #define CNG_RSA_PUBLIC_KEY_BLOB ((LPCSTR)72)
3284 #define X509_OBJECT_IDENTIFIER ((LPCSTR)73)
3285 #define PKCS7_SIGNER_INFO ((LPCSTR)500)
3286 #define CMS_SIGNER_INFO ((LPCSTR)501)
3288 /* encode/decode flags */
3289 #define CRYPT_ENCODE_NO_SIGNATURE_BYTE_REVERSAL_FLAG 0x00008
3290 #define CRYPT_ENCODE_ALLOC_FLAG 0x08000
3291 #define CRYPT_SORTED_CTL_ENCODE_HASHED_SUBJECT_IDENTIFIER_FLAG 0x10000
3292 #define CRYPT_UNICODE_NAME_ENCODE_ENABLE_T61_UNICODE_FLAG \
3293 CERT_RDN_ENABLE_T61_UNICODE_FLAG
3294 #define CRYPT_UNICODE_NAME_ENCODE_ENABLE_UTF8_UNICODE_FLAG \
3295 CERT_RDN_ENABLE_UTF8_UNICODE_FLAG
3296 #define CRYPT_UNICODE_NAME_ENCODE_DISABLE_CHECK_TYPE_FLAG \
3297 CERT_RDN_DISABLE_CHECK_TYPE_FLAG
3299 #define CRYPT_DECODE_NOCOPY_FLAG 0x00001
3300 #define CRYPT_DECODE_TO_BE_SIGNED_FLAG 0x00002
3301 #define CRYPT_DECODE_SHARE_OID_STRING_FLAG 0x00004
3302 #define CRYPT_DECODE_NO_SIGNATURE_BYTE_REVERSAL_FLAG 0x00008
3303 #define CRYPT_DECODE_ALLOC_FLAG 0x08000
3304 #define CRYPT_UNICODE_NAME_DECODE_DISABLE_IE4_UTF8_FLAG \
3305 CERT_RDN_DISABLE_IE4_UTF8_FLAG
3307 #define CERT_STORE_SIGNATURE_FLAG 0x00000001
3308 #define CERT_STORE_TIME_VALIDITY_FLAG 0x00000002
3309 #define CERT_STORE_REVOCATION_FLAG 0x00000004
3310 #define CERT_STORE_NO_CRL_FLAG 0x00010000
3311 #define CERT_STORE_NO_ISSUER_FLAG 0x00020000
3313 #define CERT_STORE_BASE_CRL_FLAG 0x00000100
3314 #define CERT_STORE_DELTA_CRL_FLAG 0x00000200
3316 /* subject types for CryptVerifyCertificateSignatureEx */
3317 #define CRYPT_VERIFY_CERT_SIGN_SUBJECT_BLOB 1
3318 #define CRYPT_VERIFY_CERT_SIGN_SUBJECT_CERT 2
3319 #define CRYPT_VERIFY_CERT_SIGN_SUBJECT_CRL 3
3321 /* issuer types for CryptVerifyCertificateSignatureEx */
3322 #define CRYPT_VERIFY_CERT_SIGN_ISSUER_PUBKEY 1
3323 #define CRYPT_VERIFY_CERT_SIGN_ISSUER_CERT 2
3324 #define CRYPT_VERIFY_CERT_SIGN_ISSUER_CHAIN 3
3325 #define CRYPT_VERIFY_CERT_SIGN_ISSUER_NULL 4
3327 #define CRYPT_GET_URL_FROM_PROPERTY 0x00000001
3328 #define CRYPT_GET_URL_FROM_EXTENSION 0x00000002
3329 #define CRYPT_GET_URL_FROM_UNAUTH_ATTRIBUTE 0x00000004
3330 #define CRYPT_GET_URL_FROM_AUTH_ATTRIBUTE 0x00000008
3332 /* Certificate name string types and flags */
3333 #define CERT_SIMPLE_NAME_STR 1
3334 #define CERT_OID_NAME_STR 2
3335 #define CERT_X500_NAME_STR 3
3336 #define CERT_NAME_STR_SEMICOLON_FLAG 0x40000000
3337 #define CERT_NAME_STR_NO_PLUS_FLAG 0x20000000
3338 #define CERT_NAME_STR_NO_QUOTING_FLAG 0x10000000
3339 #define CERT_NAME_STR_CRLF_FLAG 0x08000000
3340 #define CERT_NAME_STR_COMMA_FLAG 0x04000000
3341 #define CERT_NAME_STR_REVERSE_FLAG 0x02000000
3342 #define CERT_NAME_STR_ENABLE_UTF8_UNICODE_FLAG 0x00040000
3343 #define CERT_NAME_STR_ENABLE_T61_UNICODE_FLAG 0x00020000
3344 #define CERT_NAME_STR_DISABLE_IE4_UTF8_FLAG 0x00010000
3346 #define CERT_NAME_EMAIL_TYPE 1
3347 #define CERT_NAME_RDN_TYPE 2
3348 #define CERT_NAME_ATTR_TYPE 3
3349 #define CERT_NAME_SIMPLE_DISPLAY_TYPE 4
3350 #define CERT_NAME_FRIENDLY_DISPLAY_TYPE 5
3351 #define CERT_NAME_DNS_TYPE 6
3352 #define CERT_NAME_URL_TYPE 7
3353 #define CERT_NAME_UPN_TYPE 8
3355 #define CERT_NAME_ISSUER_FLAG 0x00000001
3356 #define CERT_NAME_SEARCH_ALL_NAMES_FLAG 0x00000002
3357 #define CERT_NAME_DISABLE_IE4_UTF8_FLAG 0x00010000
3358 #define CERT_NAME_STR_ENABLE_PUNYCODE_FLAG 0x00200000
3360 /* CryptFormatObject flags */
3361 #define CRYPT_FORMAT_STR_MULTI_LINE 0x0001
3362 #define CRYPT_FORMAT_STR_NO_HEX 0x0010
3364 #define CRYPT_FORMAT_SIMPLE 0x0001
3365 #define CRYPT_FORMAT_X509 0x0002
3366 #define CRYPT_FORMAT_OID 0x0004
3367 #define CRYPT_FORMAT_RDN_SEMICOLON 0x0100
3368 #define CRYPT_FORMAT_RDN_CRLF 0x0200
3369 #define CRYPT_FORMAT_RDN_UNQUOTE 0x0400
3370 #define CRYPT_FORMAT_RDN_REVERSE 0x0800
3372 #define CRYPT_FORMAT_COMMA 0x1000
3373 #define CRYPT_FORMAT_SEMICOLON CRYPT_FORMAT_RDN_SEMICOLON
3374 #define CRYPT_FORMAT_CRLF CRYPT_FORMAT_RDN_CRLF
3376 /* CryptQueryObject types and flags */
3377 #define CERT_QUERY_OBJECT_FILE 1
3378 #define CERT_QUERY_OBJECT_BLOB 2
3380 #define CERT_QUERY_CONTENT_CERT 1
3381 #define CERT_QUERY_CONTENT_CTL 2
3382 #define CERT_QUERY_CONTENT_CRL 3
3383 #define CERT_QUERY_CONTENT_SERIALIZED_STORE 4
3384 #define CERT_QUERY_CONTENT_SERIALIZED_CERT 5
3385 #define CERT_QUERY_CONTENT_SERIALIZED_CTL 6
3386 #define CERT_QUERY_CONTENT_SERIALIZED_CRL 7
3387 #define CERT_QUERY_CONTENT_PKCS7_SIGNED 8
3388 #define CERT_QUERY_CONTENT_PKCS7_UNSIGNED 9
3389 #define CERT_QUERY_CONTENT_PKCS7_SIGNED_EMBED 10
3390 #define CERT_QUERY_CONTENT_PKCS10 11
3391 #define CERT_QUERY_CONTENT_PFX 12
3392 #define CERT_QUERY_CONTENT_CERT_PAIR 13
3394 #define CERT_QUERY_CONTENT_FLAG_CERT (1 << CERT_QUERY_CONTENT_CERT)
3395 #define CERT_QUERY_CONTENT_FLAG_CTL (1 << CERT_QUERY_CONTENT_CTL)
3396 #define CERT_QUERY_CONTENT_FLAG_CRL (1 << CERT_QUERY_CONTENT_CRL)
3397 #define CERT_QUERY_CONTENT_FLAG_SERIALIZED_STORE \
3398 (1 << CERT_QUERY_CONTENT_SERIALIZED_STORE)
3399 #define CERT_QUERY_CONTENT_FLAG_SERIALIZED_CERT \
3400 (1 << CERT_QUERY_CONTENT_SERIALIZED_CERT)
3401 #define CERT_QUERY_CONTENT_FLAG_SERIALIZED_CTL \
3402 (1 << CERT_QUERY_CONTENT_SERIALIZED_CTL)
3403 #define CERT_QUERY_CONTENT_FLAG_SERIALIZED_CRL \
3404 (1 << CERT_QUERY_CONTENT_SERIALIZED_CRL)
3405 #define CERT_QUERY_CONTENT_FLAG_PKCS7_SIGNED \
3406 (1 << CERT_QUERY_CONTENT_PKCS7_SIGNED)
3407 #define CERT_QUERY_CONTENT_FLAG_PKCS7_UNSIGNED \
3408 (1 << CERT_QUERY_CONTENT_PKCS7_UNSIGNED)
3409 #define CERT_QUERY_CONTENT_FLAG_PKCS7_SIGNED_EMBED \
3410 (1 << CERT_QUERY_CONTENT_PKCS7_SIGNED_EMBED)
3411 #define CERT_QUERY_CONTENT_FLAG_PKCS10 (1 << CERT_QUERY_CONTENT_PKCS10)
3412 #define CERT_QUERY_CONTENT_FLAG_PFX (1 << CERT_QUERY_CONTENT_PFX)
3413 #define CERT_QUERY_CONTENT_FLAG_CERT_PAIR (1 << CERT_QUERY_CONTENT_CERT_PAIR)
3415 #define CERT_QUERY_CONTENT_FLAG_ALL \
3416 CERT_QUERY_CONTENT_FLAG_CERT | \
3417 CERT_QUERY_CONTENT_FLAG_CTL | \
3418 CERT_QUERY_CONTENT_FLAG_CRL | \
3419 CERT_QUERY_CONTENT_FLAG_SERIALIZED_STORE | \
3420 CERT_QUERY_CONTENT_FLAG_SERIALIZED_CERT | \
3421 CERT_QUERY_CONTENT_FLAG_SERIALIZED_CTL | \
3422 CERT_QUERY_CONTENT_FLAG_SERIALIZED_CRL | \
3423 CERT_QUERY_CONTENT_FLAG_PKCS7_SIGNED | \
3424 CERT_QUERY_CONTENT_FLAG_PKCS7_UNSIGNED | \
3425 CERT_QUERY_CONTENT_FLAG_PKCS7_SIGNED_EMBED | \
3426 CERT_QUERY_CONTENT_FLAG_PKCS10 | \
3427 CERT_QUERY_CONTENT_FLAG_PFX | \
3428 CERT_QUERY_CONTENT_FLAG_CERT_PAIR
3430 #define CERT_QUERY_FORMAT_BINARY 1
3431 #define CERT_QUERY_FORMAT_BASE64_ENCODED 2
3432 #define CERT_QUERY_FORMAT_ASN_ASCII_HEX_ENCODED 3
3434 #define CERT_QUERY_FORMAT_FLAG_BINARY (1 << CERT_QUERY_FORMAT_BINARY)
3435 #define CERT_QUERY_FORMAT_FLAG_BASE64_ENCODED \
3436 (1 << CERT_QUERY_FORMAT_BASE64_ENCODED)
3437 #define CERT_QUERY_FORMAT_FLAG_ASN_ASCII_HEX_ENCODED \
3438 (1 << CERT_QUERY_FORMAT_ASN_ASCII_HEX_ENCODED)
3440 #define CERT_QUERY_FORMAT_FLAG_ALL \
3441 CERT_QUERY_FORMAT_FLAG_BINARY | \
3442 CERT_QUERY_FORMAT_FLAG_BASE64_ENCODED | \
3443 CERT_QUERY_FORMAT_FLAG_ASN_ASCII_HEX_ENCODED \
3445 #define CERT_SET_KEY_PROV_HANDLE_PROP_ID 0x00000001
3446 #define CERT_SET_KEY_CONTEXT_PROP_ID 0x00000001
3448 #define CERT_CREATE_SELFSIGN_NO_SIGN 1
3449 #define CERT_CREATE_SELFSIGN_NO_KEY_INFO 2
3451 /* flags for CryptAcquireCertificatePrivateKey */
3452 #define CRYPT_ACQUIRE_CACHE_FLAG 0x00000001
3453 #define CRYPT_ACQUIRE_USE_PROV_INFO_FLAG 0x00000002
3454 #define CRYPT_ACQUIRE_COMPARE_KEY_FLAG 0x00000004
3455 #define CRYPT_ACQUIRE_SILENT_FLAG 0x00000040
3457 /* flags for CryptFindCertificateKeyProvInfo */
3458 #define CRYPT_FIND_USER_KEYSET_FLAG 0x00000001
3459 #define CRYPT_FIND_MACHINE_KEYSET_FLAG 0x00000002
3460 #define CRYPT_FIND_SILENT_KEYSET_FLAG 0x00000040
3462 /* Chain engines and chains */
3463 typedef HANDLE HCERTCHAINENGINE;
3464 #define HCCE_CURRENT_USER ((HCERTCHAINENGINE)NULL)
3465 #define HCCE_LOCAL_MACHINE ((HCERTCHAINENGINE)1)
3467 #define CERT_CHAIN_CACHE_END_CERT 0x00000001
3468 #define CERT_CHAIN_THREAD_STORE_SYNC 0x00000002
3469 #define CERT_CHAIN_CACHE_ONLY_URL_RETRIEVAL 0x00000004
3470 #define CERT_CHAIN_USE_LOCAL_MACHINE_STORE 0x00000008
3471 #define CERT_CHAIN_ENABLE_CACHE_AUTO_UPDATE 0x00000010
3472 #define CERT_CHAIN_ENABLE_SHARE_STORE 0x00000020
3474 typedef struct _CERT_CHAIN_ENGINE_CONFIG
3476 DWORD cbSize;
3477 HCERTSTORE hRestrictedRoot;
3478 HCERTSTORE hRestrictedTrust;
3479 HCERTSTORE hRestrictedOther;
3480 DWORD cAdditionalStore;
3481 HCERTSTORE *rghAdditionalStore;
3482 DWORD dwFlags;
3483 DWORD dwUrlRetrievalTimeout;
3484 DWORD MaximumCachedCertificates;
3485 DWORD CycleDetectionModulus;
3486 HCERTSTORE hExclusiveRoot;
3487 HCERTSTORE hExclusiveRootTrustedPeople;
3488 } CERT_CHAIN_ENGINE_CONFIG, *PCERT_CHAIN_ENGINE_CONFIG;
3490 /* message-related definitions */
3492 typedef BOOL (WINAPI *PFN_CMSG_STREAM_OUTPUT)(const void *pvArg, BYTE *pbData,
3493 DWORD cbData, BOOL fFinal);
3495 #define CMSG_INDEFINITE_LENGTH 0xffffffff
3497 typedef struct _CMSG_STREAM_INFO
3499 DWORD cbContent;
3500 PFN_CMSG_STREAM_OUTPUT pfnStreamOutput;
3501 void *pvArg;
3502 } CMSG_STREAM_INFO, *PCMSG_STREAM_INFO;
3504 typedef struct _CERT_ISSUER_SERIAL_NUMBER
3506 CERT_NAME_BLOB Issuer;
3507 CRYPT_INTEGER_BLOB SerialNumber;
3508 } CERT_ISSUER_SERIAL_NUMBER, *PCERT_ISSUER_SERIAL_NUMBER;
3510 typedef struct _CERT_ID
3512 DWORD dwIdChoice;
3513 union {
3514 CERT_ISSUER_SERIAL_NUMBER IssuerSerialNumber;
3515 CRYPT_HASH_BLOB KeyId;
3516 CRYPT_HASH_BLOB HashId;
3517 } DUMMYUNIONNAME;
3518 } CERT_ID, *PCERT_ID;
3520 #define CERT_ID_ISSUER_SERIAL_NUMBER 1
3521 #define CERT_ID_KEY_IDENTIFIER 2
3522 #define CERT_ID_SHA1_HASH 3
3524 #ifndef USE_WC_PREFIX
3525 #undef CMSG_DATA /* may be defined by sys/socket.h */
3526 #define CMSG_DATA 1
3527 #define CMSG_SIGNED 2
3528 #define CMSG_ENVELOPED 3
3529 #define CMSG_SIGNED_AND_ENVELOPED 4
3530 #define CMSG_HASHED 5
3531 #define CMSG_ENCRYPTED 6
3533 #define CMSG_ALL_FLAGS ~0U
3534 #define CMSG_DATA_FLAG (1 << CMSG_DATA)
3535 #define CMSG_SIGNED_FLAG (1 << CMSG_SIGNED)
3536 #define CMSG_ENVELOPED_FLAG (1 << CMSG_ENVELOPED)
3537 #define CMSG_SIGNED_AND_ENVELOPED_FLAG (1 << CMSG_SIGNED_AND_ENVELOPED)
3538 #define CMSG_ENCRYPTED_FLAG (1 << CMSG_ENCRYPTED)
3539 #else
3540 #define WC_CMSG_DATA 1
3541 #define WC_CMSG_SIGNED 2
3542 #define WC_CMSG_ENVELOPED 3
3543 #define WC_CMSG_SIGNED_AND_ENVELOPED 4
3544 #define WC_CMSG_HASHED 5
3545 #define WC_CMSG_ENCRYPTED 6
3547 #define WC_CMSG_ALL_FLAGS ~0U
3548 #define WC_CMSG_DATA_FLAG (1 << WC_CMSG_DATA)
3549 #define WC_CMSG_SIGNED_FLAG (1 << WC_CMSG_SIGNED)
3550 #define WC_CMSG_ENVELOPED_FLAG (1 << WC_CMSG_ENVELOPED)
3551 #define WC_CMSG_SIGNED_AND_ENVELOPED_FLAG (1 << WC_CMSG_SIGNED_AND_ENVELOPED)
3552 #define WC_CMSG_ENCRYPTED_FLAG (1 << WC_CMSG_ENCRYPTED)
3553 #endif
3555 typedef struct _CMSG_SIGNER_ENCODE_INFO
3557 DWORD cbSize;
3558 PCERT_INFO pCertInfo;
3559 HCRYPTPROV hCryptProv;
3560 DWORD dwKeySpec;
3561 CRYPT_ALGORITHM_IDENTIFIER HashAlgorithm;
3562 void *pvHashAuxInfo;
3563 DWORD cAuthAttr;
3564 PCRYPT_ATTRIBUTE rgAuthAttr;
3565 DWORD cUnauthAttr;
3566 PCRYPT_ATTRIBUTE rgUnauthAttr;
3567 #ifdef CMSG_SIGNER_ENCODE_INFO_HAS_CMS_FIELDS
3568 CERT_ID SignerId;
3569 CRYPT_ALGORITHM_IDENTIFIER HashEncryptionAlgorithm;
3570 void *pvHashEncryptionAuxInfo;
3571 #endif
3572 } CMSG_SIGNER_ENCODE_INFO, *PCMSG_SIGNER_ENCODE_INFO;
3574 typedef struct _CMSG_SIGNED_ENCODE_INFO
3576 DWORD cbSize;
3577 DWORD cSigners;
3578 PCMSG_SIGNER_ENCODE_INFO rgSigners;
3579 DWORD cCertEncoded;
3580 PCERT_BLOB rgCertEncoded;
3581 DWORD cCrlEncoded;
3582 PCRL_BLOB rgCrlEncoded;
3583 #ifdef CMSG_SIGNED_ENCODE_INFO_HAS_CMS_FIELDS
3584 DWORD cAttrCertEncoded;
3585 PCERT_BLOB rgAttrCertEncoded;
3586 #endif
3587 } CMSG_SIGNED_ENCODE_INFO, *PCMSG_SIGNED_ENCODE_INFO;
3589 typedef struct _CMSG_KEY_TRANS_RECIPIENT_ENCODE_INFO
3591 DWORD cbSize;
3592 CRYPT_ALGORITHM_IDENTIFIER KeyEncryptionAlgorithm;
3593 void *pvKeyEncryptionAuxInfo;
3594 HCRYPTPROV_LEGACY hCryptProv;
3595 CRYPT_BIT_BLOB RecipientPublicKey;
3596 CERT_ID RecipientId;
3597 } CMSG_KEY_TRANS_RECIPIENT_ENCODE_INFO, *PCMSG_KEY_TRANS_RECIPIENT_ENCODE_INFO;
3599 typedef struct _CMSG_RECIPIENT_ENCRYPTED_KEY_ENCODE_INFO
3601 DWORD cbSize;
3602 CRYPT_BIT_BLOB RecipientPublicKey;
3603 CERT_ID RecipientId;
3604 FILETIME Date;
3605 PCRYPT_ATTRIBUTE_TYPE_VALUE pOtherAttr;
3606 } CMSG_RECIPIENT_ENCRYPTED_KEY_ENCODE_INFO,
3607 *PCMSG_RECIPIENT_ENCRYPTED_KEY_ENCODE_INFO;
3609 typedef struct _CMSG_KEY_AGREE_RECIPIENT_ENCODE_INFO
3611 DWORD cbSize;
3612 CRYPT_ALGORITHM_IDENTIFIER KeyEncryptionAlgorithm;
3613 void *pvKeyEncryptionAuxInfo;
3614 CRYPT_ALGORITHM_IDENTIFIER KeyWrapAlgorithm;
3615 void *pvKeyWrapAuxInfo;
3616 HCRYPTPROV_LEGACY hCryptProv;
3617 DWORD dwKeySpec;
3618 DWORD dwKeyChoice;
3619 union {
3620 PCRYPT_ALGORITHM_IDENTIFIER pEphemeralAlgorithm;
3621 PCERT_ID pSenderId;
3622 } DUMMYUNIONNAME;
3623 CRYPT_DATA_BLOB UserKeyingMaterial;
3624 DWORD cRecipientEncryptedKeys;
3625 PCMSG_RECIPIENT_ENCRYPTED_KEY_ENCODE_INFO *rgpRecipientEncryptedKeys;
3626 } CMSG_KEY_AGREE_RECIPIENT_ENCODE_INFO, *PCMSG_KEY_AGREE_RECIPIENT_ENCODE_INFO;
3628 #define CMSG_KEY_AGREE_EPHEMERAL_KEY_CHOICE 1
3629 #define CMSG_KEY_AGREE_STATIC_KEY_CHOICE 2
3631 typedef struct _CMSG_MAIL_LIST_RECIPIENT_ENCODE_INFO
3633 DWORD cbSize;
3634 CRYPT_ALGORITHM_IDENTIFIER KeyEncryptionAlgorithm;
3635 void *pvKeyEncryptionAuxInfo;
3636 HCRYPTPROV hCryptProv;
3637 DWORD dwKeyChoice;
3638 union {
3639 HCRYPTKEY hKeyEncryptionKey;
3640 void *pvKeyEncryptionKey;
3641 } DUMMYUNIONNAME;
3642 CRYPT_DATA_BLOB KeyId;
3643 FILETIME Date;
3644 PCRYPT_ATTRIBUTE_TYPE_VALUE pOtherAttr;
3645 } CMSG_MAIL_LIST_RECIPIENT_ENCODE_INFO, *PCMSG_MAIL_LIST_RECIPIENT_ENCODE_INFO;
3647 #define CMSG_MAIL_LIST_HANDLE_KEY_CHOICE 1
3649 typedef struct _CMSG_RECIPIENT_ENCODE_INFO
3651 DWORD dwRecipientChoice;
3652 union {
3653 PCMSG_KEY_TRANS_RECIPIENT_ENCODE_INFO pKeyTrans;
3654 PCMSG_KEY_AGREE_RECIPIENT_ENCODE_INFO pKeyAgree;
3655 PCMSG_MAIL_LIST_RECIPIENT_ENCODE_INFO pMailList;
3656 } DUMMYUNIONNAME;
3657 } CMSG_RECIPIENT_ENCODE_INFO, *PCMSG_RECIPIENT_ENCODE_INFO;
3659 #define CMSG_KEY_TRANS_RECIPIENT 1
3660 #define CMSG_KEY_AGREE_RECIPIENT 2
3661 #define CMSG_MAIL_LIST_RECIPIENT 3
3663 typedef struct _CMSG_ENVELOPED_ENCODE_INFO
3665 DWORD cbSize;
3666 HCRYPTPROV_LEGACY hCryptProv;
3667 CRYPT_ALGORITHM_IDENTIFIER ContentEncryptionAlgorithm;
3668 void *pvEncryptionAuxInfo;
3669 DWORD cRecipients;
3670 PCERT_INFO *rgpRecipientCert;
3671 #ifdef CMSG_ENVELOPED_ENCODE_INFO_HAS_CMS_FIELDS
3672 PCMSG_RECIPIENT_ENCODE_INFO rgCmsRecipients;
3673 DWORD cCertEncoded;
3674 PCERT_BLOB rgCertEncoded;
3675 DWORD cCrlEncoded;
3676 PCRL_BLOB rgCrlEncoded;
3677 DWORD cAttrCertEncoded;
3678 PCERT_BLOB rgAttrCertEncoded;
3679 DWORD cUnprotectedAttr;
3680 PCRYPT_ATTRIBUTE rgUnprotectedAttr;
3681 #endif
3682 } CMSG_ENVELOPED_ENCODE_INFO, *PCMSG_ENVELOPED_ENCODE_INFO;
3684 typedef struct _CMSG_SIGNED_AND_ENVELOPED_ENCODE_INFO
3686 DWORD cbSize;
3687 CMSG_SIGNED_ENCODE_INFO SignedInfo;
3688 CMSG_ENVELOPED_ENCODE_INFO EnvelopedInfo;
3689 } CMSG_SIGNED_AND_ENVELOPED_ENCODE_INFO,
3690 *PCMSG_SIGNED_AND_ENVELOPED_ENCODE_INFO;
3692 typedef struct _CMSG_HASHED_ENCODE_INFO
3694 DWORD cbSize;
3695 HCRYPTPROV_LEGACY hCryptProv;
3696 CRYPT_ALGORITHM_IDENTIFIER HashAlgorithm;
3697 void *pvHashAuxInfo;
3698 } CMSG_HASHED_ENCODE_INFO, *PCMSG_HASHED_ENCODE_INFO;
3700 typedef struct _CMSG_ENCRYPTED_ENCODE_INFO
3702 DWORD cbSize;
3703 CRYPT_ALGORITHM_IDENTIFIER ContentEncryptionAlgorithm;
3704 void *pvEncryptionAuxInfo;
3705 } CMSG_ENCRYPTED_ENCODE_INFO, *PCMSG_ENCRYPTED_ENCODE_INFO;
3707 #define CMSG_BARE_CONTENT_FLAG 0x00000001
3708 #define CMSG_LENGTH_ONLY_FLAG 0x00000002
3709 #define CMSG_DETACHED_FLAG 0x00000004
3710 #define CMSG_AUTHENTICATED_ATTRIBUTES_FLAG 0x00000008
3711 #define CMSG_CONTENTS_OCTETS_FLAG 0x00000010
3712 #define CMSG_MAX_LENGTH_FLAG 0x00000020
3713 #define CMSG_CMS_ENCAPSULATED_CONTENT_FLAG 0x00000040
3714 #define CMSG_CRYPT_RELEASE_CONTEXT_FLAG 0x00008000
3716 #define CMSG_CTRL_VERIFY_SIGNATURE 1
3717 #define CMSG_CTRL_DECRYPT 2
3718 #define CMSG_CTRL_VERIFY_HASH 5
3719 #define CMSG_CTRL_ADD_SIGNER 6
3720 #define CMSG_CTRL_DEL_SIGNER 7
3721 #define CMSG_CTRL_ADD_SIGNER_UNAUTH_ATTR 8
3722 #define CMSG_CTRL_DEL_SIGNER_UNAUTH_ATTR 9
3723 #define CMSG_CTRL_ADD_CERT 10
3724 #define CMSG_CTRL_DEL_CERT 11
3725 #define CMSG_CTRL_ADD_CRL 12
3726 #define CMSG_CTRL_DEL_CRL 13
3727 #define CMSG_CTRL_ADD_ATTR_CERT 14
3728 #define CMSG_CTRL_DEL_ATTR_CERT 15
3729 #define CMSG_CTRL_KEY_TRANS_DECRYPT 16
3730 #define CMSG_CTRL_KEY_AGREE_DECRYPT 17
3731 #define CMSG_CTRL_MAIL_LIST_DECRYPT 18
3732 #define CMSG_CTRL_VERIFY_SIGNATURE_EX 19
3733 #define CMSG_CTRL_ADD_CMS_SIGNER_INFO 20
3735 typedef struct _CMSG_CTRL_DECRYPT_PARA
3737 DWORD cbSize;
3738 HCRYPTPROV hCryptProv;
3739 DWORD dwKeySpec;
3740 DWORD dwRecipientIndex;
3741 } CMSG_CTRL_DECRYPT_PARA, *PCMSG_CTRL_DECRYPT_PARA;
3743 typedef struct _CMSG_CTRL_ADD_SIGNER_UNAUTH_ATTR_PARA
3745 DWORD cbSize;
3746 DWORD dwSignerIndex;
3747 CRYPT_DATA_BLOB blob;
3748 } CMSG_CTRL_ADD_SIGNER_UNAUTH_ATTR_PARA,
3749 *PCMSG_CTRL_ADD_SIGNER_UNAUTH_ATTR_PARA;
3751 typedef struct _CMSG_CTRL_DEL_SIGNER_UNAUTH_ATTR_PARA
3753 DWORD cbSize;
3754 DWORD dwSignerIndex;
3755 DWORD dwUnauthAttrIndex;
3756 } CMSG_CTRL_DEL_SIGNER_UNAUTH_ATTR_PARA,
3757 *PCMSG_CTRL_DEL_SIGNER_UNAUTH_ATTR_PARA;
3759 typedef struct _CMSG_CTRL_VERIFY_SIGNATURE_EX_PARA {
3760 DWORD cbSize;
3761 HCRYPTPROV hCryptProv;
3762 DWORD dwSignerIndex;
3763 DWORD dwSignerType;
3764 void *pvSigner;
3765 } CMSG_CTRL_VERIFY_SIGNATURE_EX_PARA, *PCMSG_CTRL_VERIFY_SIGNATURE_EX_PARA;
3767 #define CMSG_VERIFY_SIGNER_PUBKEY 1
3768 #define CMSG_VERIFY_SIGNER_CERT 2
3769 #define CMSG_VERIFY_SIGNER_CHAIN 3
3770 #define CMSG_VERIFY_SIGNER_NULL 4
3772 #define CMSG_TYPE_PARAM 1
3773 #define CMSG_CONTENT_PARAM 2
3774 #define CMSG_BARE_CONTENT_PARAM 3
3775 #define CMSG_INNER_CONTENT_TYPE_PARAM 4
3776 #define CMSG_SIGNER_COUNT_PARAM 5
3777 #define CMSG_SIGNER_INFO_PARAM 6
3778 #define CMSG_SIGNER_CERT_INFO_PARAM 7
3779 #define CMSG_SIGNER_HASH_ALGORITHM_PARAM 8
3780 #define CMSG_SIGNER_AUTH_ATTR_PARAM 9
3781 #define CMSG_SIGNER_UNAUTH_ATTR_PARAM 10
3782 #define CMSG_CERT_COUNT_PARAM 11
3783 #define CMSG_CERT_PARAM 12
3784 #define CMSG_CRL_COUNT_PARAM 13
3785 #define CMSG_CRL_PARAM 14
3786 #define CMSG_ENVELOPE_ALGORITHM_PARAM 15
3787 #define CMSG_RECIPIENT_COUNT_PARAM 17
3788 #define CMSG_RECIPIENT_INDEX_PARAM 18
3789 #define CMSG_RECIPIENT_INFO_PARAM 19
3790 #define CMSG_HASH_ALGORITHM_PARAM 20
3791 #define CMSG_HASH_DATA_PARAM 21
3792 #define CMSG_COMPUTED_HASH_PARAM 22
3793 #define CMSG_ENCRYPT_PARAM 26
3794 #define CMSG_ENCRYPTED_DIGEST 27
3795 #define CMSG_ENCODED_SIGNER 28
3796 #define CMSG_ENCODED_MESSAGE 29
3797 #define CMSG_VERSION_PARAM 30
3798 #define CMSG_ATTR_CERT_COUNT_PARAM 31
3799 #define CMSG_ATTR_CERT_PARAM 32
3800 #define CMSG_CMS_RECIPIENT_COUNT_PARAM 33
3801 #define CMSG_CMS_RECIPIENT_INDEX_PARAM 34
3802 #define CMSG_CMS_RECIPIENT_ENCRYPTED_KEY_INDEX_PARAM 35
3803 #define CMSG_CMS_RECIPIENT_INFO_PARAM 36
3804 #define CMSG_UNPROTECTED_ATTR_PARAM 37
3805 #define CMSG_SIGNER_CERT_ID_PARAM 38
3806 #define CMSG_CMS_SIGNER_INFO_PARAM 39
3808 typedef struct _CMSG_CMS_SIGNER_INFO {
3809 DWORD dwVersion;
3810 CERT_ID SignerId;
3811 CRYPT_ALGORITHM_IDENTIFIER HashAlgorithm;
3812 CRYPT_ALGORITHM_IDENTIFIER HashEncryptionAlgorithm;
3813 CRYPT_DATA_BLOB EncryptedHash;
3814 CRYPT_ATTRIBUTES AuthAttrs;
3815 CRYPT_ATTRIBUTES UnauthAttrs;
3816 } CMSG_CMS_SIGNER_INFO, *PCMSG_CMS_SIGNER_INFO;
3818 typedef CRYPT_ATTRIBUTES CMSG_ATTR, *PCMSG_ATTR;
3820 #define CMSG_SIGNED_DATA_V1 1
3821 #define CMSG_SIGNED_DATA_V3 3
3822 #define CMSG_SIGNED_DATA_PKCS_1_5_VERSION CMSG_SIGNED_DATA_V1
3823 #define CMSG_SIGNED_DATA_CMS_VERSION CMSG_SIGNED_DATA_V3
3825 #define CMSG_SIGNER_INFO_V1 1
3826 #define CMSG_SIGNER_INFO_V3 3
3827 #define CMSG_SIGNER_INFO_PKCS_1_5_VERSION CMSG_SIGNER_INFO_V1
3828 #define CMSG_SIGNER_INFO_CMS_VERSION CMSG_SIGNER_INFO_V3
3830 #define CMSG_HASHED_DATA_V0 0
3831 #define CMSG_HASHED_DATA_V2 2
3832 #define CMSG_HASHED_DATA_PKCS_1_5_VERSION CMSG_HASHED_DATA_V0
3833 #define CMSG_HASHED_DATA_CMS_VERSION CMSG_HASHED_DATA_V2
3835 #define CMSG_ENVELOPED_DATA_V0 0
3836 #define CMSG_ENVELOPED_DATA_V2 2
3837 #define CMSG_ENVELOPED_DATA_PKCS_1_5_VERSION CMSG_ENVELOPED_DATA_V0
3838 #define CMSG_ENVELOPED_DATA_CMS_VERSION CMSG_ENVELOPED_DATA_V2
3840 typedef struct _CMSG_KEY_TRANS_RECIPIENT_INFO {
3841 DWORD dwVersion;
3842 CERT_ID RecipientId;
3843 CRYPT_ALGORITHM_IDENTIFIER KeyEncryptionAlgorithm;
3844 CRYPT_DATA_BLOB EncryptedKey;
3845 } CMSG_KEY_TRANS_RECIPIENT_INFO, *PCMSG_KEY_TRANS_RECIPIENT_INFO;
3847 typedef struct _CMSG_RECIPIENT_ENCRYPTED_KEY_INFO {
3848 CERT_ID RecipientId;
3849 CRYPT_DATA_BLOB EncryptedKey;
3850 PCRYPT_ATTRIBUTE_TYPE_VALUE pOtherAttr;
3851 } CMSG_RECIPIENT_ENCRYPTED_KEY_INFO, *PCMSG_RECIPIENT_ENCRYPTED_KEY_INFO;
3853 typedef struct _CMSG_KEY_AGREE_RECIPIENT_INFO {
3854 DWORD dwVersion;
3855 DWORD dwOriginatorChoice;
3856 union {
3857 CERT_ID OriginatorCertId;
3858 CERT_PUBLIC_KEY_INFO OriginatorPublicKeyInfo;
3859 } DUMMYUNIONNAME;
3860 CRYPT_ALGORITHM_IDENTIFIER UserKeyingMaterial;
3861 DWORD cRecipientEncryptedKeys;
3862 PCMSG_RECIPIENT_ENCRYPTED_KEY_INFO *rgpRecipientEncryptedKeys;
3863 } CMSG_KEY_AGREE_RECIPIENT_INFO, *PCMSG_KEY_AGREE_RECIPIENT_INFO;
3865 #define CMSG_KEY_AGREE_ORIGINATOR_CERT 1
3866 #define CMSG_KEY_AGREE_ORIGINATOR_PUBLIC_KEY 2
3868 typedef struct _CMSG_MAIL_LIST_RECIPIENT_INFO {
3869 DWORD dwVersion;
3870 CRYPT_DATA_BLOB KeyId;
3871 CRYPT_ALGORITHM_IDENTIFIER KeyEncryptionAlgorithm;
3872 CRYPT_DATA_BLOB EncryptedKey;
3873 FILETIME Date;
3874 PCRYPT_ATTRIBUTE_TYPE_VALUE pOtherAttr;
3875 } CMSG_MAIL_LIST_RECIPIENT_INFO, *PCMSG_MAIL_LIST_RECIPIENT_INFO;
3877 typedef struct _CMSG_CMS_RECIPIENT_INFO {
3878 DWORD dwRecipientChoice;
3879 union {
3880 PCMSG_KEY_TRANS_RECIPIENT_INFO pKeyTrans;
3881 PCMSG_KEY_AGREE_RECIPIENT_INFO pKeyAgree;
3882 PCMSG_MAIL_LIST_RECIPIENT_INFO pMailList;
3883 } DUMMYUNIONNAME;
3884 } CMSG_CMS_RECIPIENT_INFO, *PCMSG_CMS_RECIPIENT_INFO;
3886 #define CMSG_ENVELOPED_RECIPIENT_V0 0
3887 #define CMSG_ENVELOPED_RECIPIENT_V2 2
3888 #define CMSG_ENVELOPED_RECIPIENT_V3 3
3889 #define CMSG_ENVELOPED_RECIPIENT_V4 4
3890 #define CMSG_KEY_TRANS_PKCS_1_5_VERSION CMSG_ENVELOPED_RECIPIENT_V0
3891 #define CMSG_KEY_TRANS_CMS_VERSION CMSG_ENVELOPED_RECIPIENT_V2
3892 #define CMSG_KEY_AGREE_VERSION CMSG_ENVELOPED_RECIPIENT_V3
3893 #define CMSG_MAIL_LIST_VERSION CMSG_ENVELOPED_RECIPIENT_V4
3895 typedef void * (WINAPI *PFN_CMSG_ALLOC)(size_t cb);
3896 typedef void (WINAPI *PFN_CMSG_FREE)(void *pv);
3898 typedef struct _CMSG_CONTENT_ENCRYPT_INFO {
3899 DWORD cbSize;
3900 HCRYPTPROV hCryptProv;
3901 CRYPT_ALGORITHM_IDENTIFIER ContentEncryptionAlgorithm;
3902 void *pvEncryptionAuxInfo;
3903 DWORD cRecipients;
3904 PCMSG_RECIPIENT_ENCODE_INFO rgCmsRecipients;
3905 PFN_CMSG_ALLOC pfnAlloc;
3906 PFN_CMSG_FREE pfnFree;
3907 DWORD dwEncryptFlags;
3908 HCRYPTKEY hContentEncryptKey;
3909 DWORD dwFlags;
3910 } CMSG_CONTENT_ENCRYPT_INFO, *PCMSG_CONTENT_ENCRYPT_INFO;
3912 typedef struct _CMSG_KEY_TRANS_ENCRYPT_INFO {
3913 DWORD cbSize;
3914 DWORD dwRecipientIndex;
3915 CRYPT_ALGORITHM_IDENTIFIER KeyEncryptionAlgorithm;
3916 CRYPT_DATA_BLOB EncryptedKey;
3917 DWORD dwFlags;
3918 } CMSG_KEY_TRANS_ENCRYPT_INFO, *PCMSG_KEY_TRANS_ENCRYPT_INFO;
3920 typedef struct _CMSG_CTRL_KEY_TRANS_DECRYPT_PARA {
3921 DWORD cbSize;
3922 HCRYPTPROV hCryptProv;
3923 DWORD dwKeySpec;
3924 PCMSG_KEY_TRANS_RECIPIENT_INFO pKeyTrans;
3925 DWORD dwRecipientIndex;
3926 } CMSG_CTRL_KEY_TRANS_DECRYPT_PARA, *PCMSG_CTRL_KEY_TRANS_DECRYPT_PARA;
3928 typedef struct _CERT_STRONG_SIGN_SERIALIZED_INFO {
3929 DWORD dwFlags;
3930 WCHAR *pwszCNGSignHashAlgids;
3931 WCHAR *pwszCNGPubKeyMinBitLengths;
3932 } CERT_STRONG_SIGN_SERIALIZED_INFO, *PCERT_STRONG_SIGN_SERIALIZED_INFO;
3934 typedef struct _CERT_STRONG_SIGN_PARA {
3935 DWORD cbSize;
3936 DWORD dwInfoChoice;
3937 union {
3938 void *pvInfo;
3939 CERT_STRONG_SIGN_SERIALIZED_INFO *pSerializedInfo;
3940 char *pszOID;
3941 } DUMMYUNIONNAME;
3942 } CERT_STRONG_SIGN_PARA, *PCERT_STRONG_SIGN_PARA;
3944 #define CERT_STRONG_SIGN_SERIALIZED_INFO_CHOICE 1
3945 #define CERT_STRONG_SIGN_OID_INFO_CHOICE 2
3947 #define CERT_STRONG_SIGN_ENABLE_CRL_CHECK 0x1
3948 #define CERT_STRONG_SIGN_ENABLE_OCSP_CHECK 0x2
3950 typedef BOOL (WINAPI *PFN_CMSG_GEN_CONTENT_ENCRYPT_KEY)(
3951 PCMSG_CONTENT_ENCRYPT_INFO pContentEncryptInfo, DWORD dwFlags,
3952 void *pvReserved);
3954 typedef BOOL (WINAPI *PFN_CMSG_EXPORT_KEY_TRANS)(
3955 PCMSG_CONTENT_ENCRYPT_INFO pContentEncryptInfo,
3956 PCMSG_KEY_TRANS_RECIPIENT_ENCODE_INFO pKeyTransEncodeInfo,
3957 PCMSG_KEY_TRANS_ENCRYPT_INFO pKeyTransEncryptInfo,
3958 DWORD dwFlags, void *pvReserved);
3960 typedef BOOL (WINAPI *PFN_CMSG_IMPORT_KEY_TRANS)(
3961 PCRYPT_ALGORITHM_IDENTIFIER pContentEncryptionAlgorithm,
3962 PCMSG_CTRL_KEY_TRANS_DECRYPT_PARA pKeyTransDecryptPara, DWORD dwFlags,
3963 void *pvReserved, HCRYPTKEY *phContentEncryptKey);
3965 /* CryptMsgGetAndVerifySigner flags */
3966 #define CMSG_TRUSTED_SIGNER_FLAG 0x1
3967 #define CMSG_SIGNER_ONLY_FLAG 0x2
3968 #define CMSG_USE_SIGNER_INDEX_FLAG 0x4
3970 /* CryptMsgSignCTL flags */
3971 #define CMSG_CMS_ENCAPSULATED_CTL_FLAG 0x00008000
3973 /* CryptMsgEncodeAndSignCTL flags */
3974 #define CMSG_ENCODED_SORTED_CTL_FLAG 0x1
3975 #define CMSG_ENCODE_HASHED_SUBJECT_IDENTIFIER_FLAG 0x2
3977 /* PFXImportCertStore flags */
3978 #define CRYPT_USER_KEYSET 0x00001000
3979 #define PKCS12_IMPORT_SILENT 0x00000040
3980 #define PKCS12_PREFER_CNG_KSP 0x00000100
3981 #define PKCS12_ALWAYS_CNG_KSP 0x00000200
3982 #define PKCS12_ONLY_CERTIFICATES 0x00000400
3983 #define PKCS12_ONLY_NOT_ENCRYPTED_CERTIFICATES 0x00000800
3984 #define PKCS12_ALLOW_OVERWRITE_KEY 0x00004000
3985 #define PKCS12_NO_PERSIST_KEY 0x00008000
3986 #define PKCS12_VIRTUAL_ISOLATION_KEY 0x00010000
3987 #define PKCS12_IMPORT_RESERVED_MASK 0xffff0000
3988 /* PFXExportCertStore flags */
3989 #define REPORT_NO_PRIVATE_KEY 0x00000001
3990 #define REPORT_NOT_ABLE_TO_EXPORT_PRIVATE_KEY 0x00000002
3991 #define EXPORT_PRIVATE_KEYS 0x00000004
3992 #define PKCS12_EXPORT_RESERVED_MASK 0xffff0000
3994 #define CRYPT_USERDATA 0x00000001
3996 /* function declarations */
3997 /* advapi32.dll */
3998 WINADVAPI BOOL WINAPI CryptAcquireContextA(HCRYPTPROV *, LPCSTR, LPCSTR, DWORD, DWORD);
3999 WINADVAPI BOOL WINAPI CryptAcquireContextW (HCRYPTPROV *, LPCWSTR, LPCWSTR, DWORD, DWORD);
4000 #define CryptAcquireContext WINELIB_NAME_AW(CryptAcquireContext)
4001 WINADVAPI BOOL WINAPI CryptGenRandom (HCRYPTPROV, DWORD, BYTE *);
4002 WINADVAPI BOOL WINAPI CryptContextAddRef (HCRYPTPROV, DWORD *, DWORD);
4003 WINADVAPI BOOL WINAPI CryptCreateHash (HCRYPTPROV, ALG_ID, HCRYPTKEY, DWORD, HCRYPTHASH *);
4004 WINADVAPI BOOL WINAPI CryptDecrypt (HCRYPTKEY, HCRYPTHASH, BOOL, DWORD, BYTE *, DWORD *);
4005 WINADVAPI BOOL WINAPI CryptDeriveKey (HCRYPTPROV, ALG_ID, HCRYPTHASH, DWORD, HCRYPTKEY *);
4006 WINADVAPI BOOL WINAPI CryptDestroyHash (HCRYPTHASH);
4007 WINADVAPI BOOL WINAPI CryptDestroyKey (HCRYPTKEY);
4008 WINADVAPI BOOL WINAPI CryptDuplicateKey (HCRYPTKEY, DWORD *, DWORD, HCRYPTKEY *);
4009 WINADVAPI BOOL WINAPI CryptDuplicateHash (HCRYPTHASH, DWORD *, DWORD, HCRYPTHASH *);
4010 WINADVAPI BOOL WINAPI CryptEncrypt (HCRYPTKEY, HCRYPTHASH, BOOL, DWORD, BYTE *, DWORD *, DWORD);
4011 WINADVAPI BOOL WINAPI CryptEnumProvidersA (DWORD, DWORD *, DWORD, DWORD *, LPSTR, DWORD *);
4012 WINADVAPI BOOL WINAPI CryptEnumProvidersW (DWORD, DWORD *, DWORD, DWORD *, LPWSTR, DWORD *);
4013 #define CryptEnumProviders WINELIB_NAME_AW(CryptEnumProviders)
4014 WINADVAPI BOOL WINAPI CryptEnumProviderTypesA (DWORD, DWORD *, DWORD, DWORD *, LPSTR, DWORD *);
4015 WINADVAPI BOOL WINAPI CryptEnumProviderTypesW (DWORD, DWORD *, DWORD, DWORD *, LPWSTR, DWORD *);
4016 #define CryptEnumProviderTypes WINELIB_NAME_AW(CryptEnumProviderTypes)
4017 WINADVAPI BOOL WINAPI CryptExportKey (HCRYPTKEY, HCRYPTKEY, DWORD, DWORD, BYTE *, DWORD *);
4018 WINADVAPI BOOL WINAPI CryptGenKey (HCRYPTPROV, ALG_ID, DWORD, HCRYPTKEY *);
4019 WINADVAPI BOOL WINAPI CryptGetKeyParam (HCRYPTKEY, DWORD, BYTE *, DWORD *, DWORD);
4020 WINADVAPI BOOL WINAPI CryptGetHashParam (HCRYPTHASH, DWORD, BYTE *, DWORD *, DWORD);
4021 WINADVAPI BOOL WINAPI CryptGetProvParam (HCRYPTPROV, DWORD, BYTE *, DWORD *, DWORD);
4022 WINADVAPI BOOL WINAPI CryptGetDefaultProviderA (DWORD, DWORD *, DWORD, LPSTR, DWORD *);
4023 WINADVAPI BOOL WINAPI CryptGetDefaultProviderW (DWORD, DWORD *, DWORD, LPWSTR, DWORD *);
4024 #define CryptGetDefaultProvider WINELIB_NAME_AW(CryptGetDefaultProvider)
4025 WINADVAPI BOOL WINAPI CryptGetUserKey (HCRYPTPROV, DWORD, HCRYPTKEY *);
4026 WINADVAPI BOOL WINAPI CryptHashData (HCRYPTHASH, const BYTE *, DWORD, DWORD);
4027 WINADVAPI BOOL WINAPI CryptHashSessionKey (HCRYPTHASH, HCRYPTKEY, DWORD);
4028 WINADVAPI BOOL WINAPI CryptImportKey (HCRYPTPROV, const BYTE *, DWORD, HCRYPTKEY, DWORD, HCRYPTKEY *);
4029 WINADVAPI BOOL WINAPI CryptReleaseContext (HCRYPTPROV, DWORD);
4030 WINADVAPI BOOL WINAPI CryptSetHashParam (HCRYPTHASH, DWORD, const BYTE *, DWORD);
4031 WINADVAPI BOOL WINAPI CryptSetKeyParam (HCRYPTKEY, DWORD, const BYTE *, DWORD);
4032 WINADVAPI BOOL WINAPI CryptSetProviderA (LPCSTR, DWORD);
4033 WINADVAPI BOOL WINAPI CryptSetProviderW (LPCWSTR, DWORD);
4034 #define CryptSetProvider WINELIB_NAME_AW(CryptSetProvider)
4035 WINADVAPI BOOL WINAPI CryptSetProviderExA (LPCSTR, DWORD, DWORD *, DWORD);
4036 WINADVAPI BOOL WINAPI CryptSetProviderExW (LPCWSTR, DWORD, DWORD *, DWORD);
4037 #define CryptSetProviderEx WINELIB_NAME_AW(CryptSetProviderEx)
4038 WINADVAPI BOOL WINAPI CryptSetProvParam (HCRYPTPROV, DWORD, const BYTE *, DWORD);
4039 WINADVAPI BOOL WINAPI CryptSignHashA (HCRYPTHASH, DWORD, LPCSTR, DWORD, BYTE *, DWORD *);
4040 WINADVAPI BOOL WINAPI CryptSignHashW (HCRYPTHASH, DWORD, LPCWSTR, DWORD, BYTE *, DWORD *);
4041 #define CryptSignHash WINELIB_NAME_AW(CryptSignHash)
4042 WINADVAPI BOOL WINAPI CryptVerifySignatureA (HCRYPTHASH, const BYTE *, DWORD, HCRYPTKEY, LPCSTR, DWORD);
4043 WINADVAPI BOOL WINAPI CryptVerifySignatureW (HCRYPTHASH, const BYTE *, DWORD, HCRYPTKEY, LPCWSTR, DWORD);
4044 #define CryptVerifySignature WINELIB_NAME_AW(CryptVerifySignature)
4046 /* crypt32.dll functions */
4047 VOID WINAPI CryptMemFree(LPVOID pv);
4048 LPVOID WINAPI CryptMemAlloc(ULONG cbSize) __WINE_ALLOC_SIZE(1) __WINE_DEALLOC(CryptMemFree) __WINE_MALLOC;
4049 LPVOID WINAPI CryptMemRealloc(LPVOID pv, ULONG cbSize) __WINE_ALLOC_SIZE(2) __WINE_DEALLOC(CryptMemFree);
4051 BOOL WINAPI CryptBinaryToStringA(const BYTE *pbBinary,
4052 DWORD cbBinary, DWORD dwFlags, LPSTR pszString, DWORD *pcchString);
4053 BOOL WINAPI CryptBinaryToStringW(const BYTE *pbBinary,
4054 DWORD cbBinary, DWORD dwFlags, LPWSTR pszString, DWORD *pcchString);
4055 #define CryptBinaryToString WINELIB_NAME_AW(CryptBinaryToString)
4057 BOOL WINAPI CryptStringToBinaryA(LPCSTR pszString,
4058 DWORD cchString, DWORD dwFlags, BYTE *pbBinary, DWORD *pcbBinary,
4059 DWORD *pdwSkip, DWORD *pdwFlags);
4060 BOOL WINAPI CryptStringToBinaryW(LPCWSTR pszString,
4061 DWORD cchString, DWORD dwFlags, BYTE *pbBinary, DWORD *pcbBinary,
4062 DWORD *pdwSkip, DWORD *pdwFlags);
4063 #define CryptStringToBinary WINELIB_NAME_AW(CryptStringToBinary)
4065 BOOL WINAPI CryptCreateAsyncHandle(DWORD dwFlags, PHCRYPTASYNC phAsync);
4066 BOOL WINAPI CryptSetAsyncParam(HCRYPTASYNC hAsync, LPSTR pszParamOid,
4067 LPVOID pvParam, PFN_CRYPT_ASYNC_PARAM_FREE_FUNC pfnFree);
4068 BOOL WINAPI CryptGetAsyncParam(HCRYPTASYNC hAsync, LPSTR pszParamOid,
4069 LPVOID *ppvParam, PFN_CRYPT_ASYNC_PARAM_FREE_FUNC *ppfnFree);
4070 BOOL WINAPI CryptCloseAsyncHandle(HCRYPTASYNC hAsync);
4072 BOOL WINAPI CryptRegisterDefaultOIDFunction(DWORD,LPCSTR,DWORD,LPCWSTR);
4073 BOOL WINAPI CryptRegisterOIDFunction(DWORD,LPCSTR,LPCSTR,LPCWSTR,LPCSTR);
4074 BOOL WINAPI CryptGetOIDFunctionValue(DWORD dwEncodingType, LPCSTR pszFuncName,
4075 LPCSTR pszOID, LPCWSTR szValueName, DWORD *pdwValueType,
4076 BYTE *pbValueData, DWORD *pcbValueData);
4077 BOOL WINAPI CryptSetOIDFunctionValue(DWORD dwEncodingType, LPCSTR pszFuncName,
4078 LPCSTR pszOID, LPCWSTR pwszValueName, DWORD dwValueType,
4079 const BYTE *pbValueData, DWORD cbValueData);
4080 BOOL WINAPI CryptUnregisterDefaultOIDFunction(DWORD,LPCSTR,LPCWSTR);
4081 BOOL WINAPI CryptUnregisterOIDFunction(DWORD,LPCSTR,LPCSTR);
4082 BOOL WINAPI CryptEnumOIDFunction(DWORD dwEncodingType, LPCSTR pszFuncName,
4083 LPCSTR pszOID, DWORD dwFlags, void *pvArg,
4084 PFN_CRYPT_ENUM_OID_FUNC pfnEnumOIDFunc);
4085 HCRYPTOIDFUNCSET WINAPI CryptInitOIDFunctionSet(LPCSTR,DWORD);
4086 BOOL WINAPI CryptGetDefaultOIDDllList(HCRYPTOIDFUNCSET hFuncSet,
4087 DWORD dwEncodingType, LPWSTR pwszDllList, DWORD *pcchDllList);
4088 BOOL WINAPI CryptGetDefaultOIDFunctionAddress(HCRYPTOIDFUNCSET hFuncSet,
4089 DWORD dwEncodingType, LPCWSTR pwszDll, DWORD dwFlags, void **ppvFuncAddr,
4090 HCRYPTOIDFUNCADDR *phFuncAddr);
4091 BOOL WINAPI CryptGetOIDFunctionAddress(HCRYPTOIDFUNCSET hFuncSet,
4092 DWORD dwEncodingType, LPCSTR pszOID, DWORD dwFlags, void **ppvFuncAddr,
4093 HCRYPTOIDFUNCADDR *phFuncAddr);
4094 BOOL WINAPI CryptFreeOIDFunctionAddress(HCRYPTOIDFUNCADDR hFuncAddr,
4095 DWORD dwFlags);
4096 BOOL WINAPI CryptInstallOIDFunctionAddress(HMODULE hModule,
4097 DWORD dwEncodingType, LPCSTR pszFuncName, DWORD cFuncEntry,
4098 const CRYPT_OID_FUNC_ENTRY rgFuncEntry[], DWORD dwFlags);
4099 BOOL WINAPI CryptInstallDefaultContext(HCRYPTPROV hCryptProv,
4100 DWORD dwDefaultType, const void *pvDefaultPara, DWORD dwFlags,
4101 void *pvReserved, HCRYPTDEFAULTCONTEXT *phDefaultContext);
4102 BOOL WINAPI CryptUninstallDefaultContext(HCRYPTDEFAULTCONTEXT hDefaultContext,
4103 DWORD dwFlags, void *pvReserved);
4105 BOOL WINAPI CryptEnumOIDInfo(DWORD dwGroupId, DWORD dwFlags, void *pvArg,
4106 PFN_CRYPT_ENUM_OID_INFO pfnEnumOIDInfo);
4107 PCCRYPT_OID_INFO WINAPI CryptFindOIDInfo(DWORD dwKeyType, void *pvKey,
4108 DWORD dwGroupId);
4109 BOOL WINAPI CryptRegisterOIDInfo(PCCRYPT_OID_INFO pInfo, DWORD dwFlags);
4110 BOOL WINAPI CryptUnregisterOIDInfo(PCCRYPT_OID_INFO pInfo);
4112 LPCWSTR WINAPI CryptFindLocalizedName(LPCWSTR pwszCryptName);
4114 LPCSTR WINAPI CertAlgIdToOID(DWORD dwAlgId);
4115 DWORD WINAPI CertOIDToAlgId(LPCSTR pszObjId);
4117 /* cert store functions */
4118 HCERTSTORE WINAPI CertOpenStore(LPCSTR lpszStoreProvider, DWORD dwEncodingType,
4119 HCRYPTPROV_LEGACY hCryptProv, DWORD dwFlags, const void *pvPara);
4121 HCERTSTORE WINAPI CertOpenSystemStoreA(HCRYPTPROV_LEGACY hProv,
4122 LPCSTR szSubSystemProtocol);
4123 HCERTSTORE WINAPI CertOpenSystemStoreW(HCRYPTPROV_LEGACY hProv,
4124 LPCWSTR szSubSystemProtocol);
4125 #define CertOpenSystemStore WINELIB_NAME_AW(CertOpenSystemStore)
4127 PCCERT_CONTEXT WINAPI CertEnumCertificatesInStore(HCERTSTORE hCertStore,
4128 PCCERT_CONTEXT pPrev);
4130 PCCRL_CONTEXT WINAPI CertEnumCRLsInStore(HCERTSTORE hCertStore,
4131 PCCRL_CONTEXT pPrev);
4133 PCCTL_CONTEXT WINAPI CertEnumCTLsInStore(HCERTSTORE hCertStore,
4134 PCCTL_CONTEXT pPrev);
4136 BOOL WINAPI CertEnumSystemStoreLocation(DWORD dwFlags, void *pvArg,
4137 PFN_CERT_ENUM_SYSTEM_STORE_LOCATION pfnEnum);
4139 BOOL WINAPI CertEnumSystemStore(DWORD dwFlags, void *pvSystemStoreLocationPara,
4140 void *pvArg, PFN_CERT_ENUM_SYSTEM_STORE pfnEnum);
4142 BOOL WINAPI CertRegisterSystemStore(const void *store, DWORD flags,
4143 CERT_SYSTEM_STORE_INFO *info, void *reserved);
4145 BOOL WINAPI CertUnregisterSystemStore(const void *store, DWORD flags);
4147 BOOL WINAPI CertEnumPhysicalStore(const void *pvSystemStore, DWORD dwFlags,
4148 void *pvArg, PFN_CERT_ENUM_PHYSICAL_STORE pfnEnum);
4150 BOOL WINAPI CertRegisterPhysicalStore(const void *pvSystemStore, DWORD dwFlags,
4151 LPCWSTR pwszStoreName, PCERT_PHYSICAL_STORE_INFO pStoreInfo, void *pvReserved);
4153 BOOL WINAPI CertUnregisterPhysicalStore(const void *pvSystemStore, DWORD dwFlags,
4154 LPCWSTR pwszStoreName);
4156 BOOL WINAPI CertSaveStore(HCERTSTORE hCertStore, DWORD dwMsgAndCertEncodingType,
4157 DWORD dwSaveAs, DWORD dwSaveTo, void* pvSaveToPara, DWORD dwFlags);
4159 BOOL WINAPI CertAddStoreToCollection(HCERTSTORE hCollectionStore,
4160 HCERTSTORE hSiblingStore, DWORD dwUpdateFlags, DWORD dwPriority);
4162 void WINAPI CertRemoveStoreFromCollection(HCERTSTORE hCollectionStore,
4163 HCERTSTORE hSiblingStore);
4165 BOOL WINAPI CertCreateCertificateChainEngine(PCERT_CHAIN_ENGINE_CONFIG pConfig,
4166 HCERTCHAINENGINE *phChainEngine);
4168 BOOL WINAPI CertResyncCertificateChainEngine(HCERTCHAINENGINE hChainEngine);
4170 VOID WINAPI CertFreeCertificateChainEngine(HCERTCHAINENGINE hChainEngine);
4172 BOOL WINAPI CertGetCertificateChain(HCERTCHAINENGINE hChainEngine,
4173 PCCERT_CONTEXT pCertContext, LPFILETIME pTime, HCERTSTORE hAdditionalStore,
4174 PCERT_CHAIN_PARA pChainPara, DWORD dwFlags, LPVOID pvReserved,
4175 PCCERT_CHAIN_CONTEXT *ppChainContext);
4177 PCCERT_CHAIN_CONTEXT WINAPI CertDuplicateCertificateChain(
4178 PCCERT_CHAIN_CONTEXT pChainContext);
4180 VOID WINAPI CertFreeCertificateChain(PCCERT_CHAIN_CONTEXT pChainContext);
4182 PCCERT_CHAIN_CONTEXT WINAPI CertFindChainInStore(HCERTSTORE hCertStore,
4183 DWORD dwCertEncodingType, DWORD dwFindFlags, DWORD dwFindType,
4184 const void *pvFindPara, PCCERT_CHAIN_CONTEXT pPrevChainContext);
4186 BOOL WINAPI CertVerifyCertificateChainPolicy(LPCSTR szPolicyOID,
4187 PCCERT_CHAIN_CONTEXT pChainContext, PCERT_CHAIN_POLICY_PARA pPolicyPara,
4188 PCERT_CHAIN_POLICY_STATUS pPolicyStatus);
4190 DWORD WINAPI CertEnumCertificateContextProperties(PCCERT_CONTEXT pCertContext,
4191 DWORD dwPropId);
4193 BOOL WINAPI CertGetCertificateContextProperty(PCCERT_CONTEXT pCertContext,
4194 DWORD dwPropId, void *pvData, DWORD *pcbData);
4196 BOOL WINAPI CertSetCertificateContextProperty(PCCERT_CONTEXT pCertContext,
4197 DWORD dwPropId, DWORD dwFlags, const void *pvData);
4199 DWORD WINAPI CertEnumCRLContextProperties(PCCRL_CONTEXT pCRLContext,
4200 DWORD dwPropId);
4202 BOOL WINAPI CertGetCRLContextProperty(PCCRL_CONTEXT pCRLContext,
4203 DWORD dwPropId, void *pvData, DWORD *pcbData);
4205 BOOL WINAPI CertSetCRLContextProperty(PCCRL_CONTEXT pCRLContext,
4206 DWORD dwPropId, DWORD dwFlags, const void *pvData);
4208 DWORD WINAPI CertEnumCTLContextProperties(PCCTL_CONTEXT pCTLContext,
4209 DWORD dwPropId);
4211 BOOL WINAPI CertEnumSubjectInSortedCTL(PCCTL_CONTEXT pCTLContext,
4212 void **ppvNextSubject, PCRYPT_DER_BLOB pSubjectIdentifier,
4213 PCRYPT_DER_BLOB pEncodedAttributes);
4215 BOOL WINAPI CertGetCTLContextProperty(PCCTL_CONTEXT pCTLContext,
4216 DWORD dwPropId, void *pvData, DWORD *pcbData);
4218 BOOL WINAPI CertSetCTLContextProperty(PCCTL_CONTEXT pCTLContext,
4219 DWORD dwPropId, DWORD dwFlags, const void *pvData);
4221 BOOL WINAPI CertGetStoreProperty(HCERTSTORE hCertStore, DWORD dwPropId,
4222 void *pvData, DWORD *pcbData);
4224 BOOL WINAPI CertSetStoreProperty(HCERTSTORE hCertStore, DWORD dwPropId,
4225 DWORD dwFlags, const void *pvData);
4227 BOOL WINAPI CertControlStore(HCERTSTORE hCertStore, DWORD dwFlags,
4228 DWORD dwCtrlType, void const *pvCtrlPara);
4230 HCERTSTORE WINAPI CertDuplicateStore(HCERTSTORE hCertStore);
4232 BOOL WINAPI CertCloseStore( HCERTSTORE hCertStore, DWORD dwFlags );
4234 BOOL WINAPI CertFreeCertificateContext( PCCERT_CONTEXT pCertContext );
4236 BOOL WINAPI CertFreeCRLContext( PCCRL_CONTEXT pCrlContext );
4238 BOOL WINAPI CertFreeCTLContext( PCCTL_CONTEXT pCtlContext );
4240 BOOL WINAPI CertAddCertificateContextToStore(HCERTSTORE hCertStore,
4241 PCCERT_CONTEXT pCertContext, DWORD dwAddDisposition,
4242 PCCERT_CONTEXT *ppStoreContext);
4244 BOOL WINAPI CertAddCRLContextToStore( HCERTSTORE hCertStore,
4245 PCCRL_CONTEXT pCrlContext, DWORD dwAddDisposition,
4246 PCCRL_CONTEXT *ppStoreContext );
4248 BOOL WINAPI CertAddCTLContextToStore( HCERTSTORE hCertStore,
4249 PCCTL_CONTEXT pCtlContext, DWORD dwAddDisposition,
4250 PCCTL_CONTEXT *ppStoreContext );
4252 BOOL WINAPI CertAddCertificateLinkToStore(HCERTSTORE hCertStore,
4253 PCCERT_CONTEXT pCertContext, DWORD dwAddDisposition,
4254 PCCERT_CONTEXT *ppStoreContext);
4256 BOOL WINAPI CertAddCRLLinkToStore(HCERTSTORE hCertStore,
4257 PCCRL_CONTEXT pCrlContext, DWORD dwAddDisposition,
4258 PCCRL_CONTEXT *ppStoreContext);
4260 BOOL WINAPI CertAddCTLLinkToStore(HCERTSTORE hCertStore,
4261 PCCTL_CONTEXT pCtlContext, DWORD dwAddDisposition,
4262 PCCTL_CONTEXT *ppStoreContext);
4264 BOOL WINAPI CertAddEncodedCertificateToStore(HCERTSTORE hCertStore,
4265 DWORD dwCertEncodingType, const BYTE *pbCertEncoded, DWORD cbCertEncoded,
4266 DWORD dwAddDisposition, PCCERT_CONTEXT *ppCertContext);
4268 BOOL WINAPI CertAddEncodedCertificateToSystemStoreA(LPCSTR pszCertStoreName,
4269 const BYTE *pbCertEncoded, DWORD cbCertEncoded);
4270 BOOL WINAPI CertAddEncodedCertificateToSystemStoreW(LPCWSTR pszCertStoreName,
4271 const BYTE *pbCertEncoded, DWORD cbCertEncoded);
4272 #define CertAddEncodedCertificateToSystemStore \
4273 WINELIB_NAME_AW(CertAddEncodedCertificateToSystemStore)
4275 BOOL WINAPI CertAddEncodedCRLToStore(HCERTSTORE hCertStore,
4276 DWORD dwCertEncodingType, const BYTE *pbCrlEncoded, DWORD cbCrlEncoded,
4277 DWORD dwAddDisposition, PCCRL_CONTEXT *ppCrlContext);
4279 BOOL WINAPI CertAddEncodedCTLToStore(HCERTSTORE hCertStore,
4280 DWORD dwMsgAndCertEncodingType, const BYTE *pbCtlEncoded, DWORD cbCtlEncoded,
4281 DWORD dwAddDisposition, PCCTL_CONTEXT *ppCtlContext);
4283 BOOL WINAPI CertAddSerializedElementToStore(HCERTSTORE hCertStore,
4284 const BYTE *pbElement, DWORD cbElement, DWORD dwAddDisposition, DWORD dwFlags,
4285 DWORD dwContextTypeFlags, DWORD *pdwContentType, const void **ppvContext);
4287 BOOL WINAPI CertCompareCertificate(DWORD dwCertEncodingType,
4288 PCERT_INFO pCertId1, PCERT_INFO pCertId2);
4289 BOOL WINAPI CertCompareCertificateName(DWORD dwCertEncodingType,
4290 PCERT_NAME_BLOB pCertName1, PCERT_NAME_BLOB pCertName2);
4291 BOOL WINAPI CertCompareIntegerBlob(PCRYPT_INTEGER_BLOB pInt1,
4292 PCRYPT_INTEGER_BLOB pInt2);
4293 BOOL WINAPI CertComparePublicKeyInfo(DWORD dwCertEncodingType,
4294 PCERT_PUBLIC_KEY_INFO pPublicKey1, PCERT_PUBLIC_KEY_INFO pPublicKey2);
4295 DWORD WINAPI CertGetPublicKeyLength(DWORD dwCertEncodingType,
4296 PCERT_PUBLIC_KEY_INFO pPublicKey);
4298 const void * WINAPI CertCreateContext(DWORD dwContextType, DWORD dwEncodingType,
4299 const BYTE *pbEncoded, DWORD cbEncoded, DWORD dwFlags,
4300 PCERT_CREATE_CONTEXT_PARA pCreatePara);
4302 PCCERT_CONTEXT WINAPI CertCreateCertificateContext(DWORD dwCertEncodingType,
4303 const BYTE *pbCertEncoded, DWORD cbCertEncoded);
4305 PCCRL_CONTEXT WINAPI CertCreateCRLContext( DWORD dwCertEncodingType,
4306 const BYTE* pbCrlEncoded, DWORD cbCrlEncoded);
4308 PCCTL_CONTEXT WINAPI CertCreateCTLContext(DWORD dwMsgAndCertEncodingType,
4309 const BYTE *pbCtlEncoded, DWORD cbCtlEncoded);
4311 PCCERT_CONTEXT WINAPI CertCreateSelfSignCertificate(HCRYPTPROV_OR_NCRYPT_KEY_HANDLE hProv,
4312 PCERT_NAME_BLOB pSubjectIssuerBlob, DWORD dwFlags,
4313 PCRYPT_KEY_PROV_INFO pKeyProvInfo,
4314 PCRYPT_ALGORITHM_IDENTIFIER pSignatureAlgorithm, PSYSTEMTIME pStartTime,
4315 PSYSTEMTIME pEndTime, PCERT_EXTENSIONS pExtensions);
4317 BOOL WINAPI CertDeleteCertificateFromStore(PCCERT_CONTEXT pCertContext);
4319 BOOL WINAPI CertDeleteCRLFromStore(PCCRL_CONTEXT pCrlContext);
4321 BOOL WINAPI CertDeleteCTLFromStore(PCCTL_CONTEXT pCtlContext);
4323 PCCERT_CONTEXT WINAPI CertDuplicateCertificateContext(
4324 PCCERT_CONTEXT pCertContext);
4326 PCCRL_CONTEXT WINAPI CertDuplicateCRLContext(PCCRL_CONTEXT pCrlContext);
4328 PCCTL_CONTEXT WINAPI CertDuplicateCTLContext(PCCTL_CONTEXT pCtlContext);
4330 PCCERT_CONTEXT WINAPI CertFindCertificateInStore( HCERTSTORE hCertStore,
4331 DWORD dwCertEncodingType, DWORD dwFindFlags, DWORD dwFindType,
4332 const void *pvFindPara, PCCERT_CONTEXT pPrevCertContext );
4334 PCCRL_CONTEXT WINAPI CertFindCRLInStore(HCERTSTORE hCertStore,
4335 DWORD dwCertEncodingType, DWORD dwFindFlags, DWORD dwFindType,
4336 const void *pvFindPara, PCCRL_CONTEXT pPrevCrlContext);
4338 PCCTL_CONTEXT WINAPI CertFindCTLInStore(HCERTSTORE hCertStore,
4339 DWORD dwCertEncodingType, DWORD dwFindFlags, DWORD dwFindType,
4340 const void *pvFindPara, PCCTL_CONTEXT pPrevCtlContext);
4342 PCCERT_CONTEXT WINAPI CertGetIssuerCertificateFromStore(HCERTSTORE hCertStore,
4343 PCCERT_CONTEXT pSubjectContext, PCCERT_CONTEXT pPrevIssuerContext,
4344 DWORD *pdwFlags);
4346 PCCERT_CONTEXT WINAPI CertGetSubjectCertificateFromStore(HCERTSTORE hCertStore,
4347 DWORD dwCertEncodingType, PCERT_INFO pCertId);
4349 PCCRL_CONTEXT WINAPI CertGetCRLFromStore(HCERTSTORE hCertStore,
4350 PCCERT_CONTEXT pIssuerContext, PCCRL_CONTEXT pPrevCrlContext, DWORD *pdwFlags);
4352 BOOL WINAPI CertSerializeCertificateStoreElement(PCCERT_CONTEXT pCertContext,
4353 DWORD dwFlags, BYTE *pbElement, DWORD *pcbElement);
4355 BOOL WINAPI CertSerializeCRLStoreElement(PCCRL_CONTEXT pCrlContext,
4356 DWORD dwFlags, BYTE *pbElement, DWORD *pcbElement);
4358 BOOL WINAPI CertSerializeCTLStoreElement(PCCTL_CONTEXT pCtlContext,
4359 DWORD dwFlags, BYTE *pbElement, DWORD *pcbElement);
4361 BOOL WINAPI CertGetIntendedKeyUsage(DWORD dwCertEncodingType,
4362 PCERT_INFO pCertInfo, BYTE *pbKeyUsage, DWORD cbKeyUsage);
4364 BOOL WINAPI CertGetEnhancedKeyUsage(PCCERT_CONTEXT pCertContext, DWORD dwFlags,
4365 PCERT_ENHKEY_USAGE pUsage, DWORD *pcbUsage);
4366 BOOL WINAPI CertSetEnhancedKeyUsage(PCCERT_CONTEXT pCertContext,
4367 PCERT_ENHKEY_USAGE pUsage);
4368 BOOL WINAPI CertAddEnhancedKeyUsageIdentifier(PCCERT_CONTEXT pCertContext,
4369 LPCSTR pszUsageIdentifier);
4370 BOOL WINAPI CertRemoveEnhancedKeyUsageIdentifier(PCCERT_CONTEXT pCertContext,
4371 LPCSTR pszUsageIdentifier);
4372 BOOL WINAPI CertGetValidUsages(DWORD cCerts, PCCERT_CONTEXT *rghCerts,
4373 int *cNumOIDs, LPSTR *rghOIDs, DWORD *pcbOIDs);
4375 BOOL WINAPI CryptEncodeObject(DWORD dwCertEncodingType, LPCSTR lpszStructType,
4376 const void *pvStructInfo, BYTE *pbEncoded, DWORD *pcbEncoded);
4377 BOOL WINAPI CryptEncodeObjectEx(DWORD dwCertEncodingType, LPCSTR lpszStructType,
4378 const void *pvStructInfo, DWORD dwFlags, PCRYPT_ENCODE_PARA pEncodePara,
4379 void *pvEncoded, DWORD *pcbEncoded);
4381 BOOL WINAPI CryptDecodeObject(DWORD dwCertEncodingType, LPCSTR lpszStructType,
4382 const BYTE *pbEncoded, DWORD cbEncoded, DWORD dwFlags, void *pvStructInfo,
4383 DWORD *pcbStructInfo);
4384 BOOL WINAPI CryptDecodeObjectEx(DWORD dwCertEncodingType, LPCSTR lpszStructType,
4385 const BYTE *pbEncoded, DWORD cbEncoded, DWORD dwFlags,
4386 PCRYPT_DECODE_PARA pDecodePara, void *pvStructInfo, DWORD *pcbStructInfo);
4388 BOOL WINAPI CryptFormatObject(DWORD dwCertEncodingType, DWORD dwFormatType,
4389 DWORD dwFormatStrType, void *pFormatStruct, LPCSTR lpszStructType,
4390 const BYTE *pbEncoded, DWORD cbEncoded, void *pbFormat, DWORD *pcbFormat);
4392 BOOL WINAPI CryptHashCertificate(HCRYPTPROV_LEGACY hCryptProv, ALG_ID Algid,
4393 DWORD dwFlags, const BYTE *pbEncoded, DWORD cbEncoded, BYTE *pbComputedHash,
4394 DWORD *pcbComputedHash);
4396 BOOL WINAPI CryptHashCertificate2(LPCWSTR pwszCNGHashAlgid, DWORD dwFlags,
4397 void *pvReserved, const BYTE *pbEncoded, DWORD cbEncoded, BYTE *pbComputedHash,
4398 DWORD *pcbComputedHash);
4400 BOOL WINAPI CryptHashPublicKeyInfo(HCRYPTPROV_LEGACY hCryptProv, ALG_ID Algid,
4401 DWORD dwFlags, DWORD dwCertEncodingType, PCERT_PUBLIC_KEY_INFO pInfo,
4402 BYTE *pbComputedHash, DWORD *pcbComputedHash);
4404 BOOL WINAPI CryptHashToBeSigned(HCRYPTPROV_LEGACY hCryptProv, DWORD dwCertEncodingType,
4405 const BYTE *pbEncoded, DWORD cbEncoded, BYTE *pbComputedHash,
4406 DWORD *pcbComputedHash);
4408 BOOL WINAPI CryptQueryObject(DWORD dwObjectType, const void* pvObject,
4409 DWORD dwExpectedContentTypeFlags, DWORD dwExpectedFormatTypeFlags,
4410 DWORD dwFlags, DWORD* pdwMsgAndCertEncodingType, DWORD* pdwContentType,
4411 DWORD* pdwFormatType, HCERTSTORE* phCertStore, HCRYPTMSG* phMsg,
4412 const void** ppvContext);
4414 BOOL WINAPI CryptSignCertificate(HCRYPTPROV_OR_NCRYPT_KEY_HANDLE hCryptProv, DWORD dwKeySpec,
4415 DWORD dwCertEncodingType, const BYTE *pbEncodedToBeSigned,
4416 DWORD cbEncodedToBeSigned, PCRYPT_ALGORITHM_IDENTIFIER pSignatureAlgorithm,
4417 const void *pvHashAuxInfo, BYTE *pbSignature, DWORD *pcbSignature);
4419 BOOL WINAPI CryptSignAndEncodeCertificate(HCRYPTPROV_OR_NCRYPT_KEY_HANDLE hCryptProv,
4420 DWORD dwKeySpec, DWORD dwCertEncodingType, LPCSTR lpszStructType,
4421 const void *pvStructInfo, PCRYPT_ALGORITHM_IDENTIFIER pSignatureAlgorithm,
4422 const void *pvHashAuxInfo, BYTE *pbEncoded, DWORD *pcbEncoded);
4424 BOOL WINAPI CryptVerifyCertificateSignature(HCRYPTPROV_LEGACY hCryptProv,
4425 DWORD dwCertEncodingType, const BYTE *pbEncoded, DWORD cbEncoded,
4426 PCERT_PUBLIC_KEY_INFO pPublicKey);
4428 BOOL WINAPI CryptVerifyCertificateSignatureEx(HCRYPTPROV_LEGACY hCryptProv,
4429 DWORD dwCertEncodingType, DWORD dwSubjectType, void *pvSubject,
4430 DWORD dwIssuerType, void *pvIssuer, DWORD dwFlags, void *pvReserved);
4432 PCRYPT_ATTRIBUTE WINAPI CertFindAttribute(LPCSTR pszObjId, DWORD cAttr,
4433 CRYPT_ATTRIBUTE rgAttr[]);
4434 PCERT_EXTENSION WINAPI CertFindExtension(LPCSTR pszObjId, DWORD cExtensions,
4435 CERT_EXTENSION rgExtensions[]);
4436 PCERT_RDN_ATTR WINAPI CertFindRDNAttr(LPCSTR pszObjId, PCERT_NAME_INFO pName);
4438 BOOL WINAPI CertFindSubjectInSortedCTL(PCRYPT_DATA_BLOB pSubjectIdentifier,
4439 PCCTL_CONTEXT pCtlContext, DWORD dwFlags, void *pvReserved,
4440 PCRYPT_DER_BLOB pEncodedAttributes);
4442 BOOL WINAPI CertIsRDNAttrsInCertificateName(DWORD dwCertEncodingType,
4443 DWORD dwFlags, PCERT_NAME_BLOB pCertName, PCERT_RDN pRDN);
4445 BOOL WINAPI CertIsValidCRLForCertificate(PCCERT_CONTEXT pCert,
4446 PCCRL_CONTEXT pCrl, DWORD dwFlags, void *pvReserved);
4447 BOOL WINAPI CertFindCertificateInCRL(PCCERT_CONTEXT pCert,
4448 PCCRL_CONTEXT pCrlContext, DWORD dwFlags, void *pvReserved,
4449 PCRL_ENTRY *ppCrlEntry);
4450 BOOL WINAPI CertVerifyCRLRevocation(DWORD dwCertEncodingType,
4451 PCERT_INFO pCertId, DWORD cCrlInfo, PCRL_INFO rgpCrlInfo[]);
4453 BOOL WINAPI CertVerifySubjectCertificateContext(PCCERT_CONTEXT pSubject,
4454 PCCERT_CONTEXT pIssuer, DWORD *pdwFlags);
4456 LONG WINAPI CertVerifyCRLTimeValidity(LPFILETIME pTimeToVerify,
4457 PCRL_INFO pCrlInfo);
4458 LONG WINAPI CertVerifyTimeValidity(LPFILETIME pTimeToVerify,
4459 PCERT_INFO pCertInfo);
4460 BOOL WINAPI CertVerifyValidityNesting(PCERT_INFO pSubjectInfo,
4461 PCERT_INFO pIssuerInfo);
4463 BOOL WINAPI CertVerifyCTLUsage(DWORD dwEncodingType, DWORD dwSubjectType,
4464 void *pvSubject, PCTL_USAGE pSubjectUsage, DWORD dwFlags,
4465 PCTL_VERIFY_USAGE_PARA pVerifyUsagePara,
4466 PCTL_VERIFY_USAGE_STATUS pVerifyUsageStatus);
4468 BOOL WINAPI CertVerifyRevocation(DWORD dwEncodingType, DWORD dwRevType,
4469 DWORD cContext, PVOID rgpvContext[], DWORD dwFlags,
4470 PCERT_REVOCATION_PARA pRevPara, PCERT_REVOCATION_STATUS pRevStatus);
4472 BOOL WINAPI CryptExportPublicKeyInfo(HCRYPTPROV_OR_NCRYPT_KEY_HANDLE hCryptProv, DWORD dwKeySpec,
4473 DWORD dwCertEncodingType, PCERT_PUBLIC_KEY_INFO pInfo, DWORD *pcbInfo);
4474 BOOL WINAPI CryptExportPublicKeyInfoEx(HCRYPTPROV_OR_NCRYPT_KEY_HANDLE hCryptProv, DWORD dwKeySpec,
4475 DWORD dwCertEncodingType, LPSTR pszPublicKeyObjId, DWORD dwFlags,
4476 void *pvAuxInfo, PCERT_PUBLIC_KEY_INFO pInfo, DWORD *pcbInfo);
4477 BOOL WINAPI CryptImportPublicKeyInfo(HCRYPTPROV hCryptProv,
4478 DWORD dwCertEncodingType, PCERT_PUBLIC_KEY_INFO pInfo, HCRYPTKEY *phKey);
4479 BOOL WINAPI CryptImportPublicKeyInfoEx(HCRYPTPROV hCryptProv,
4480 DWORD dwCertEncodingType, PCERT_PUBLIC_KEY_INFO pInfo, ALG_ID aiKeyAlg,
4481 DWORD dwFlags, void *pvAuxInfo, HCRYPTKEY *phKey);
4482 BOOL WINAPI CryptImportPublicKeyInfoEx2(DWORD dwCertEncodingType,
4483 PCERT_PUBLIC_KEY_INFO pInfo, DWORD dwFlags, void *pvAuxInfo,
4484 BCRYPT_KEY_HANDLE *phKey);
4486 BOOL WINAPI CryptAcquireCertificatePrivateKey(PCCERT_CONTEXT pCert,
4487 DWORD dwFlags, void *pvReserved, HCRYPTPROV_OR_NCRYPT_KEY_HANDLE *phCryptProv, DWORD *pdwKeySpec,
4488 BOOL *pfCallerFreeProv);
4490 BOOL WINAPI CryptFindCertificateKeyProvInfo(PCCERT_CONTEXT pCert,
4491 DWORD dwFlags, void *pvReserved);
4493 BOOL WINAPI CryptProtectData( DATA_BLOB* pDataIn, LPCWSTR szDataDescr,
4494 DATA_BLOB* pOptionalEntropy, PVOID pvReserved,
4495 CRYPTPROTECT_PROMPTSTRUCT* pPromptStruct, DWORD dwFlags, DATA_BLOB* pDataOut );
4497 BOOL WINAPI CryptUnprotectData( DATA_BLOB* pDataIn, LPWSTR* ppszDataDescr,
4498 DATA_BLOB* pOptionalEntropy, PVOID pvReserved,
4499 CRYPTPROTECT_PROMPTSTRUCT* pPromptStruct, DWORD dwFlags, DATA_BLOB* pDataOut );
4501 BOOL WINAPI CryptProtectMemory(void *pData, DWORD cbData, DWORD dwFlags);
4502 BOOL WINAPI CryptUnprotectMemory(void *pData, DWORD cbData, DWORD dwFlags);
4504 DWORD WINAPI CertGetNameStringA(PCCERT_CONTEXT pCertContext, DWORD dwType,
4505 DWORD dwFlags, void *pvTypePara, LPSTR pszNameString, DWORD cchNameString);
4506 DWORD WINAPI CertGetNameStringW(PCCERT_CONTEXT pCertContext, DWORD dwType,
4507 DWORD dwFlags, void *pvTypePara, LPWSTR pszNameString, DWORD cchNameString);
4508 #define CertGetNameString WINELIB_NAME_AW(CertGetNameString)
4510 DWORD WINAPI CertRDNValueToStrA(DWORD dwValueType, PCERT_RDN_VALUE_BLOB pValue,
4511 LPSTR psz, DWORD csz);
4512 DWORD WINAPI CertRDNValueToStrW(DWORD dwValueType, PCERT_RDN_VALUE_BLOB pValue,
4513 LPWSTR psz, DWORD csz);
4514 #define CertRDNValueToStr WINELIB_NAME_AW(CertRDNValueToStr)
4516 DWORD WINAPI CertNameToStrA(DWORD dwCertEncodingType, PCERT_NAME_BLOB pName,
4517 DWORD dwStrType, LPSTR psz, DWORD csz);
4518 DWORD WINAPI CertNameToStrW(DWORD dwCertEncodingType, PCERT_NAME_BLOB pName,
4519 DWORD dwStrType, LPWSTR psz, DWORD csz);
4520 #define CertNameToStr WINELIB_NAME_AW(CertNameToStr)
4522 BOOL WINAPI CertStrToNameA(DWORD dwCertEncodingType, LPCSTR pszX500,
4523 DWORD dwStrType, void *pvReserved, BYTE *pbEncoded, DWORD *pcbEncoded,
4524 LPCSTR *ppszError);
4525 BOOL WINAPI CertStrToNameW(DWORD dwCertEncodingType, LPCWSTR pszX500,
4526 DWORD dwStrType, void *pvReserved, BYTE *pbEncoded, DWORD *pcbEncoded,
4527 LPCWSTR *ppszError);
4528 #define CertStrToName WINELIB_NAME_AW(CertStrToName)
4530 DWORD WINAPI CryptMsgCalculateEncodedLength(DWORD dwMsgEncodingType,
4531 DWORD dwFlags, DWORD dwMsgType, const void *pvMsgEncodeInfo,
4532 LPSTR pszInnerContentObjID, DWORD cbData);
4534 BOOL WINAPI CryptMsgClose(HCRYPTMSG hCryptMsg);
4536 BOOL WINAPI CryptMsgControl(HCRYPTMSG hCryptMsg, DWORD dwFlags,
4537 DWORD dwCtrlType, const void *pvCtrlPara);
4539 BOOL WINAPI CryptMsgCountersign(HCRYPTMSG hCryptMsg, DWORD dwIndex,
4540 DWORD dwCountersigners, PCMSG_SIGNER_ENCODE_INFO rgCountersigners);
4542 BOOL WINAPI CryptMsgCountersignEncoded(DWORD dwEncodingType, PBYTE pbSignerInfo,
4543 DWORD cbSignerInfo, DWORD cCountersigners,
4544 PCMSG_SIGNER_ENCODE_INFO rgCountersigners, PBYTE pbCountersignature,
4545 PDWORD pcbCountersignature);
4547 HCRYPTMSG WINAPI CryptMsgDuplicate(HCRYPTMSG hCryptMsg);
4549 BOOL WINAPI CryptMsgEncodeAndSignCTL(DWORD dwMsgEncodingType,
4550 PCTL_INFO pCtlInfo, PCMSG_SIGNED_ENCODE_INFO pSignInfo, DWORD dwFlags,
4551 BYTE *pbEncoded, DWORD *pcbEncoded);
4553 BOOL WINAPI CryptMsgGetAndVerifySigner(HCRYPTMSG hCryptMsg, DWORD cSignerStore,
4554 HCERTSTORE *rghSignerStore, DWORD dwFlags, PCCERT_CONTEXT *ppSigner,
4555 DWORD *pdwSignerIndex);
4557 BOOL WINAPI CryptMsgGetParam(HCRYPTMSG hCryptMsg, DWORD dwParamType,
4558 DWORD dwIndex, void *pvData, DWORD *pcbData);
4560 HCRYPTMSG WINAPI CryptMsgOpenToDecode(DWORD dwMsgEncodingType, DWORD dwFlags,
4561 DWORD dwMsgType, HCRYPTPROV_LEGACY hCryptProv, PCERT_INFO pRecipientInfo,
4562 PCMSG_STREAM_INFO pStreamInfo);
4564 HCRYPTMSG WINAPI CryptMsgOpenToEncode(DWORD dwMsgEncodingType, DWORD dwFlags,
4565 DWORD dwMsgType, const void *pvMsgEncodeInfo, LPSTR pszInnerContentObjID,
4566 PCMSG_STREAM_INFO pStreamInfo);
4568 BOOL WINAPI CryptMsgSignCTL(DWORD dwMsgEncodingType, BYTE *pbCtlContent,
4569 DWORD cbCtlContent, PCMSG_SIGNED_ENCODE_INFO pSignInfo, DWORD dwFlags,
4570 BYTE *pbEncoded, DWORD *pcbEncoded);
4572 BOOL WINAPI CryptMsgUpdate(HCRYPTMSG hCryptMsg, const BYTE *pbData,
4573 DWORD cbData, BOOL fFinal);
4575 BOOL WINAPI CryptMsgVerifyCountersignatureEncoded(HCRYPTPROV_LEGACY hCryptProv,
4576 DWORD dwEncodingType, PBYTE pbSignerInfo, DWORD cbSignerInfo,
4577 PBYTE pbSignerInfoCountersignature, DWORD cbSignerInfoCountersignature,
4578 PCERT_INFO pciCountersigner);
4580 BOOL WINAPI CryptMsgVerifyCountersignatureEncodedEx(HCRYPTPROV_LEGACY hCryptProv,
4581 DWORD dwEncodingType, PBYTE pbSignerInfo, DWORD cbSignerInfo,
4582 PBYTE pbSignerInfoCountersignature, DWORD cbSignerInfoCountersignature,
4583 DWORD dwSignerType, void *pvSigner, DWORD dwFlags, void *pvReserved);
4585 BOOL WINAPI CryptSignMessage(PCRYPT_SIGN_MESSAGE_PARA pSignPara,
4586 BOOL fDetachedSignature, DWORD cToBeSigned, const BYTE *rgpbToBeSigned[],
4587 DWORD rgcbToBeSigned[], BYTE *pbSignedBlob, DWORD *pcbSignedBlob);
4588 BOOL WINAPI CryptSignMessageWithKey(PCRYPT_KEY_SIGN_MESSAGE_PARA pSignPara,
4589 const BYTE *pbToBeSigned, DWORD cbToBeSigned, BYTE *pbSignedBlob,
4590 DWORD *pcbSignedBlob);
4592 BOOL WINAPI CryptVerifyMessageSignature(PCRYPT_VERIFY_MESSAGE_PARA pVerifyPara,
4593 DWORD dwSignerIndex, const BYTE* pbSignedBlob, DWORD cbSignedBlob,
4594 BYTE* pbDecoded, DWORD* pcbDecoded, PCCERT_CONTEXT* ppSignerCert);
4595 BOOL WINAPI CryptVerifyMessageSignatureWithKey(
4596 PCRYPT_KEY_VERIFY_MESSAGE_PARA pVerifyPara,
4597 PCERT_PUBLIC_KEY_INFO pPublicKeyInfo, const BYTE *pbSignedBlob,
4598 DWORD cbSignedBlob, BYTE *pbDecoded, DWORD *pcbDecoded);
4600 BOOL WINAPI CryptVerifyDetachedMessageSignature(
4601 PCRYPT_VERIFY_MESSAGE_PARA pVerifyPara, DWORD dwSignerIndex,
4602 const BYTE *pbDetachedSignBlob, DWORD cbDetachedSignBlob, DWORD cToBeSigned,
4603 const BYTE *rgpbToBeSigned[], DWORD rgcbToBeSigned[],
4604 PCCERT_CONTEXT *ppSignerCert);
4605 LONG WINAPI CryptGetMessageSignerCount(DWORD dwMsgEncodingType,
4606 const BYTE *pbSignedBlob, DWORD cbSignedBlob);
4608 BOOL WINAPI CryptEncryptMessage(PCRYPT_ENCRYPT_MESSAGE_PARA pEncryptPara,
4609 DWORD cRecipientCert, PCCERT_CONTEXT rgpRecipientCert[],
4610 const BYTE *pbToBeEncrypted, DWORD cbToBeEncrypted, BYTE *pbEncryptedBlob,
4611 DWORD *pcbEncryptedBlob);
4612 BOOL WINAPI CryptDecryptMessage(PCRYPT_DECRYPT_MESSAGE_PARA pDecryptPara,
4613 const BYTE *pbEncryptedBlob, DWORD cbEncryptedBlob, BYTE *pbDecrypted,
4614 DWORD *pcbDecrypted, PCCERT_CONTEXT *ppXchgCert);
4616 BOOL WINAPI CryptSignAndEncryptMessage(PCRYPT_SIGN_MESSAGE_PARA pSignPara,
4617 PCRYPT_ENCRYPT_MESSAGE_PARA pEncryptPara, DWORD cRecipientCert,
4618 PCCERT_CONTEXT rgpRecipientCert[], const BYTE *pbToBeSignedAndEncrypted,
4619 DWORD cbToBeSignedAndEncrypted, BYTE *pbSignedAndEncryptedBlob,
4620 DWORD *pcbSignedAndEncryptedBlob);
4621 BOOL WINAPI CryptDecryptAndVerifyMessageSignature(
4622 PCRYPT_DECRYPT_MESSAGE_PARA pDecryptPara,
4623 PCRYPT_VERIFY_MESSAGE_PARA pVerifyPara, DWORD dwSignerIndex,
4624 const BYTE *pbEncryptedBlob, DWORD cbEncryptedBlob, BYTE *pbDecrypted,
4625 DWORD *pcbDecrypted, PCCERT_CONTEXT *ppXchgCert, PCCERT_CONTEXT *ppSignerCert);
4627 HCERTSTORE WINAPI CryptGetMessageCertificates(DWORD dwMsgAndCertEncodingType,
4628 HCRYPTPROV_LEGACY hCryptProv, DWORD dwFlags, const BYTE *pbSignedBlob,
4629 DWORD cbSignedBlob);
4631 BOOL WINAPI CryptDecodeMessage(DWORD dwMsgTypeFlags,
4632 PCRYPT_DECRYPT_MESSAGE_PARA pDecryptPara,
4633 PCRYPT_VERIFY_MESSAGE_PARA pVerifyPara, DWORD dwSignerIndex,
4634 const BYTE *pbEncodedBlob, DWORD cbEncodedBlob, DWORD dwPrevInnerContentType,
4635 DWORD *pdwMsgType, DWORD *pdwInnerContentType, BYTE *pbDecoded,
4636 DWORD *pcbDecoded, PCCERT_CONTEXT *ppXchgCert, PCCERT_CONTEXT *ppSignerCert);
4638 BOOL WINAPI CryptHashMessage(PCRYPT_HASH_MESSAGE_PARA pHashPara,
4639 BOOL fDetachedHash, DWORD cToBeHashed, const BYTE *rgpbToBeHashed[],
4640 DWORD rgcbToBeHashed[], BYTE *pbHashedBlob, DWORD *pcbHashedBlob,
4641 BYTE *pbComputedHash, DWORD *pcbComputedHash);
4642 BOOL WINAPI CryptVerifyMessageHash(PCRYPT_HASH_MESSAGE_PARA pHashPara,
4643 BYTE *pbHashedBlob, DWORD cbHashedBlob, BYTE *pbToBeHashed,
4644 DWORD *pcbToBeHashed, BYTE *pbComputedHash, DWORD *pcbComputedHash);
4645 BOOL WINAPI CryptVerifyDetachedMessageHash(PCRYPT_HASH_MESSAGE_PARA pHashPara,
4646 BYTE *pbDetachedHashBlob, DWORD cbDetachedHashBlob, DWORD cToBeHashed,
4647 const BYTE *rgpbToBeHashed[], DWORD rgcbToBeHashed[], BYTE *pbComputedHash,
4648 DWORD *pcbComputedHash);
4650 /* PFX functions */
4651 HCERTSTORE WINAPI PFXImportCertStore(CRYPT_DATA_BLOB *pPFX, LPCWSTR szPassword,
4652 DWORD dwFlags);
4653 BOOL WINAPI PFXIsPFXBlob(CRYPT_DATA_BLOB *pPFX);
4654 BOOL WINAPI PFXVerifyPassword(CRYPT_DATA_BLOB *pPFX, LPCWSTR szPassword,
4655 DWORD dwFlags);
4656 BOOL WINAPI PFXExportCertStoreEx(HCERTSTORE hStore, CRYPT_DATA_BLOB *pPFX,
4657 LPCWSTR szPassword, void *pvReserved, DWORD dwFlags);
4658 BOOL WINAPI PFXExportCertStore(HCERTSTORE hStore, CRYPT_DATA_BLOB *pPFX,
4659 LPCWSTR szPassword, DWORD dwFlags);
4661 /* cryptnet.dll functions */
4662 BOOL WINAPI CryptCancelAsyncRetrieval(HCRYPTASYNC hAsyncRetrieval);
4664 BOOL WINAPI CryptGetObjectUrl(LPCSTR pszUrlOid, LPVOID pvPara, DWORD dwFlags,
4665 PCRYPT_URL_ARRAY pUrlArray, DWORD *pcbUrlArray, PCRYPT_URL_INFO pUrlInfo,
4666 DWORD *pcbUrlInfo, LPVOID pvReserved);
4668 BOOL WINAPI CryptGetTimeValidObject(LPCSTR pszTimeValidOid, void *pvPara,
4669 PCCERT_CONTEXT pIssuer, LPFILETIME pftValidFor, DWORD dwFlags, DWORD dwTimeout,
4670 void **ppvObject, PCRYPT_CREDENTIALS pCredentials, void *pvReserved);
4672 BOOL WINAPI CryptFlushTimeValidObject(LPCSTR pszFlushTimeValidOid, void *pvPara,
4673 PCCERT_CONTEXT pIssuer, DWORD dwFlags, void *pvReserved);
4675 BOOL WINAPI CryptInstallCancelRetrieval(PFN_CRYPT_CANCEL_RETRIEVAL pfnCancel,
4676 const void *pvArg, DWORD dwFlags, void *pvReserved);
4678 BOOL WINAPI CryptUninstallCancelRetrieval(DWORD dwFlags, void *pvReserved);
4680 BOOL WINAPI CryptRetrieveObjectByUrlA(LPCSTR pszURL, LPCSTR pszObjectOid,
4681 DWORD dwRetrievalFlags, DWORD dwTimeout, LPVOID *ppvObject,
4682 HCRYPTASYNC hAsyncRetrieve, PCRYPT_CREDENTIALS pCredentials, LPVOID pvVerify,
4683 PCRYPT_RETRIEVE_AUX_INFO pAuxInfo);
4684 BOOL WINAPI CryptRetrieveObjectByUrlW(LPCWSTR pszURL, LPCSTR pszObjectOid,
4685 DWORD dwRetrievalFlags, DWORD dwTimeout, LPVOID *ppvObject,
4686 HCRYPTASYNC hAsyncRetrieve, PCRYPT_CREDENTIALS pCredentials, LPVOID pvVerify,
4687 PCRYPT_RETRIEVE_AUX_INFO pAuxInfo);
4688 #define CryptRetrieveObjectByUrl WINELIB_NAME_AW(CryptRetrieveObjectByUrl)
4690 /* Not found in crypt32.dll but in softpub.dll */
4691 HRESULT WINAPI FindCertsByIssuer(PCERT_CHAIN pCertChains, DWORD *pcbCertChains,
4692 DWORD *pcCertChains, BYTE* pbEncodedIssuerName, DWORD cbEncodedIssuerName,
4693 LPCWSTR pwszPurpose, DWORD dwKeySpec);
4695 #ifdef __cplusplus
4697 #endif
4699 #endif