diff options
Diffstat (limited to 'src/lib/libcrypto/objects/objects.txt')
-rw-r--r-- | src/lib/libcrypto/objects/objects.txt | 800 |
1 files changed, 762 insertions, 38 deletions
diff --git a/src/lib/libcrypto/objects/objects.txt b/src/lib/libcrypto/objects/objects.txt index cb276e90e9..65d0b15629 100644 --- a/src/lib/libcrypto/objects/objects.txt +++ b/src/lib/libcrypto/objects/objects.txt | |||
@@ -1,40 +1,764 @@ | |||
1 | 1 2 : ISO member bodies | 1 | 0 : CCITT : ccitt |
2 | 1 2 840 : US (ANSI) | 2 | |
3 | 1 2 840 113549 : rsadsi : RSA Data Security, Inc. | 3 | 1 : ISO : iso |
4 | 1 2 840 113549 1 : pkcs : RSA Data Security, Inc. PKCS | 4 | |
5 | 1 2 840 113549 1 1 1 : rsaEncryption | 5 | 2 : JOINT-ISO-CCITT : joint-iso-ccitt |
6 | 1 2 840 113549 1 1 2 : md2withRSAEncryption | 6 | |
7 | 1 2 840 113549 1 1 4 : md5withRSAEncryption | 7 | iso 2 : member-body : ISO Member Body |
8 | 1 2 840 113549 1 7 : pkcs-7 | 8 | |
9 | 1 2 840 113549 1 7 1 : pkcs-7-data | 9 | joint-iso-ccitt 5 1 5 : selected-attribute-types : Selected Attribute Types |
10 | 1 2 840 113549 1 7 2 : pkcs-7-signedData | 10 | |
11 | 1 2 840 113549 1 7 3 : pkcs-7-envelopedData | 11 | selected-attribute-types 55 : clearance |
12 | 1 2 840 113549 1 7 4 : pkcs-7-signedAndEnvelopedData | 12 | |
13 | 1 2 840 113549 1 7 5 : pkcs-7-digestData | 13 | member-body 840 : ISO-US : ISO US Member Body |
14 | 1 2 840 113549 1 7 6 : pkcs-7-encryptedData | 14 | ISO-US 10040 : X9-57 : X9.57 |
15 | 1 2 840 113549 2 2 : md2 | 15 | X9-57 4 : X9cm : X9.57 CM ? |
16 | 1 2 840 113549 2 4 : md4 | 16 | |
17 | 1 2 840 113549 2 5 : md5 | 17 | !Cname dsa |
18 | 1 2 840 113549 3 4 : rc4 | 18 | X9cm 1 : DSA : dsaEncryption |
19 | 1 2 840 113549 5 1 : pbeWithMD2AndDES_CBC | 19 | X9cm 3 : DSA-SHA1 : dsaWithSHA1 |
20 | 1 2 840 113549 5 3 : pbeWithMD5AndDES_CBC | 20 | |
21 | 2 5 : X500 : directory services (X.500) | 21 | |
22 | 2 5 4 : X509 | 22 | ISO-US 10045 : ansi-X9-62 : ANSI X9.62 |
23 | 2 5 4 3 : commonName | 23 | !module X9-62 |
24 | 2 5 4 6 : countryName | 24 | !Alias id-fieldType ansi-X9-62 1 |
25 | 2 5 4 7 : localityName | 25 | X9-62_id-fieldType 1 : prime-field |
26 | 2 5 4 8 : stateOrProvinceName | 26 | X9-62_id-fieldType 2 : characteristic-two-field |
27 | 2 5 4 10 : organizationName | 27 | # ... characteristic-two-field OID subtree |
28 | 2 5 4 11 : organizationalUnitName | 28 | !Alias id-publicKeyType ansi-X9-62 2 |
29 | 2 5 8 : directory services - algorithms | 29 | X9-62_id-publicKeyType 1 : id-ecPublicKey |
30 | 2 5 8 1 1 : rsa | 30 | !Alias ellipticCurve ansi-X9-62 3 |
31 | 31 | !Alias c-TwoCurve X9-62_ellipticCurve 0 | |
32 | algorithm 18 : sha | 32 | # ... characteristic 2 curve OIDs |
33 | encryptionAlgorithm 1 : rsa | 33 | !Alias primeCurve X9-62_ellipticCurve 1 |
34 | X9-62_primeCurve 1 : prime192v1 | ||
35 | X9-62_primeCurve 2 : prime192v2 | ||
36 | X9-62_primeCurve 3 : prime192v3 | ||
37 | X9-62_primeCurve 4 : prime239v1 | ||
38 | X9-62_primeCurve 5 : prime239v2 | ||
39 | X9-62_primeCurve 6 : prime239v3 | ||
40 | X9-62_primeCurve 7 : prime256v1 | ||
41 | !Alias id-ecSigType ansi-X9-62 4 | ||
42 | !global | ||
43 | X9-62_id-ecSigType 1 : ecdsa-with-SHA1 | ||
44 | |||
45 | |||
46 | |||
47 | ISO-US 113533 7 66 10 : CAST5-CBC : cast5-cbc | ||
48 | : CAST5-ECB : cast5-ecb | ||
49 | !Cname cast5-cfb64 | ||
50 | : CAST5-CFB : cast5-cfb | ||
51 | !Cname cast5-ofb64 | ||
52 | : CAST5-OFB : cast5-ofb | ||
53 | !Cname pbeWithMD5AndCast5-CBC | ||
54 | ISO-US 113533 7 66 12 : : pbeWithMD5AndCast5CBC | ||
55 | |||
56 | ISO-US 113549 : rsadsi : RSA Data Security, Inc. | ||
57 | |||
58 | rsadsi 1 : pkcs : RSA Data Security, Inc. PKCS | ||
59 | |||
60 | pkcs 1 : pkcs1 | ||
61 | pkcs1 1 : : rsaEncryption | ||
62 | pkcs1 2 : RSA-MD2 : md2WithRSAEncryption | ||
63 | pkcs1 3 : RSA-MD4 : md4WithRSAEncryption | ||
64 | pkcs1 4 : RSA-MD5 : md5WithRSAEncryption | ||
65 | pkcs1 5 : RSA-SHA1 : sha1WithRSAEncryption | ||
66 | |||
67 | pkcs 3 : pkcs3 | ||
68 | pkcs3 1 : : dhKeyAgreement | ||
69 | |||
70 | pkcs 5 : pkcs5 | ||
71 | pkcs5 1 : PBE-MD2-DES : pbeWithMD2AndDES-CBC | ||
72 | pkcs5 3 : PBE-MD5-DES : pbeWithMD5AndDES-CBC | ||
73 | pkcs5 4 : PBE-MD2-RC2-64 : pbeWithMD2AndRC2-CBC | ||
74 | pkcs5 6 : PBE-MD5-RC2-64 : pbeWithMD5AndRC2-CBC | ||
75 | pkcs5 10 : PBE-SHA1-DES : pbeWithSHA1AndDES-CBC | ||
76 | pkcs5 11 : PBE-SHA1-RC2-64 : pbeWithSHA1AndRC2-CBC | ||
77 | !Cname id_pbkdf2 | ||
78 | pkcs5 12 : : PBKDF2 | ||
79 | !Cname pbes2 | ||
80 | pkcs5 13 : : PBES2 | ||
81 | !Cname pbmac1 | ||
82 | pkcs5 14 : : PBMAC1 | ||
83 | |||
84 | pkcs 7 : pkcs7 | ||
85 | pkcs7 1 : : pkcs7-data | ||
86 | !Cname pkcs7-signed | ||
87 | pkcs7 2 : : pkcs7-signedData | ||
88 | !Cname pkcs7-enveloped | ||
89 | pkcs7 3 : : pkcs7-envelopedData | ||
90 | !Cname pkcs7-signedAndEnveloped | ||
91 | pkcs7 4 : : pkcs7-signedAndEnvelopedData | ||
92 | !Cname pkcs7-digest | ||
93 | pkcs7 5 : : pkcs7-digestData | ||
94 | !Cname pkcs7-encrypted | ||
95 | pkcs7 6 : : pkcs7-encryptedData | ||
96 | |||
97 | pkcs 9 : pkcs9 | ||
98 | !module pkcs9 | ||
99 | pkcs9 1 : : emailAddress | ||
100 | pkcs9 2 : : unstructuredName | ||
101 | pkcs9 3 : : contentType | ||
102 | pkcs9 4 : : messageDigest | ||
103 | pkcs9 5 : : signingTime | ||
104 | pkcs9 6 : : countersignature | ||
105 | pkcs9 7 : : challengePassword | ||
106 | pkcs9 8 : : unstructuredAddress | ||
107 | !Cname extCertAttributes | ||
108 | pkcs9 9 : : extendedCertificateAttributes | ||
109 | !global | ||
110 | |||
111 | !Cname ext-req | ||
112 | pkcs9 14 : extReq : Extension Request | ||
113 | |||
114 | !Cname SMIMECapabilities | ||
115 | pkcs9 15 : SMIME-CAPS : S/MIME Capabilities | ||
116 | |||
117 | # S/MIME | ||
118 | !Cname SMIME | ||
119 | pkcs9 16 : SMIME : S/MIME | ||
120 | SMIME 0 : id-smime-mod | ||
121 | SMIME 1 : id-smime-ct | ||
122 | SMIME 2 : id-smime-aa | ||
123 | SMIME 3 : id-smime-alg | ||
124 | SMIME 4 : id-smime-cd | ||
125 | SMIME 5 : id-smime-spq | ||
126 | SMIME 6 : id-smime-cti | ||
127 | |||
128 | # S/MIME Modules | ||
129 | id-smime-mod 1 : id-smime-mod-cms | ||
130 | id-smime-mod 2 : id-smime-mod-ess | ||
131 | id-smime-mod 3 : id-smime-mod-oid | ||
132 | id-smime-mod 4 : id-smime-mod-msg-v3 | ||
133 | id-smime-mod 5 : id-smime-mod-ets-eSignature-88 | ||
134 | id-smime-mod 6 : id-smime-mod-ets-eSignature-97 | ||
135 | id-smime-mod 7 : id-smime-mod-ets-eSigPolicy-88 | ||
136 | id-smime-mod 8 : id-smime-mod-ets-eSigPolicy-97 | ||
137 | |||
138 | # S/MIME Content Types | ||
139 | id-smime-ct 1 : id-smime-ct-receipt | ||
140 | id-smime-ct 2 : id-smime-ct-authData | ||
141 | id-smime-ct 3 : id-smime-ct-publishCert | ||
142 | id-smime-ct 4 : id-smime-ct-TSTInfo | ||
143 | id-smime-ct 5 : id-smime-ct-TDTInfo | ||
144 | id-smime-ct 6 : id-smime-ct-contentInfo | ||
145 | id-smime-ct 7 : id-smime-ct-DVCSRequestData | ||
146 | id-smime-ct 8 : id-smime-ct-DVCSResponseData | ||
147 | |||
148 | # S/MIME Attributes | ||
149 | id-smime-aa 1 : id-smime-aa-receiptRequest | ||
150 | id-smime-aa 2 : id-smime-aa-securityLabel | ||
151 | id-smime-aa 3 : id-smime-aa-mlExpandHistory | ||
152 | id-smime-aa 4 : id-smime-aa-contentHint | ||
153 | id-smime-aa 5 : id-smime-aa-msgSigDigest | ||
154 | # obsolete | ||
155 | id-smime-aa 6 : id-smime-aa-encapContentType | ||
156 | id-smime-aa 7 : id-smime-aa-contentIdentifier | ||
157 | # obsolete | ||
158 | id-smime-aa 8 : id-smime-aa-macValue | ||
159 | id-smime-aa 9 : id-smime-aa-equivalentLabels | ||
160 | id-smime-aa 10 : id-smime-aa-contentReference | ||
161 | id-smime-aa 11 : id-smime-aa-encrypKeyPref | ||
162 | id-smime-aa 12 : id-smime-aa-signingCertificate | ||
163 | id-smime-aa 13 : id-smime-aa-smimeEncryptCerts | ||
164 | id-smime-aa 14 : id-smime-aa-timeStampToken | ||
165 | id-smime-aa 15 : id-smime-aa-ets-sigPolicyId | ||
166 | id-smime-aa 16 : id-smime-aa-ets-commitmentType | ||
167 | id-smime-aa 17 : id-smime-aa-ets-signerLocation | ||
168 | id-smime-aa 18 : id-smime-aa-ets-signerAttr | ||
169 | id-smime-aa 19 : id-smime-aa-ets-otherSigCert | ||
170 | id-smime-aa 20 : id-smime-aa-ets-contentTimestamp | ||
171 | id-smime-aa 21 : id-smime-aa-ets-CertificateRefs | ||
172 | id-smime-aa 22 : id-smime-aa-ets-RevocationRefs | ||
173 | id-smime-aa 23 : id-smime-aa-ets-certValues | ||
174 | id-smime-aa 24 : id-smime-aa-ets-revocationValues | ||
175 | id-smime-aa 25 : id-smime-aa-ets-escTimeStamp | ||
176 | id-smime-aa 26 : id-smime-aa-ets-certCRLTimestamp | ||
177 | id-smime-aa 27 : id-smime-aa-ets-archiveTimeStamp | ||
178 | id-smime-aa 28 : id-smime-aa-signatureType | ||
179 | id-smime-aa 29 : id-smime-aa-dvcs-dvc | ||
180 | |||
181 | # S/MIME Algorithm Identifiers | ||
182 | # obsolete | ||
183 | id-smime-alg 1 : id-smime-alg-ESDHwith3DES | ||
184 | # obsolete | ||
185 | id-smime-alg 2 : id-smime-alg-ESDHwithRC2 | ||
186 | # obsolete | ||
187 | id-smime-alg 3 : id-smime-alg-3DESwrap | ||
188 | # obsolete | ||
189 | id-smime-alg 4 : id-smime-alg-RC2wrap | ||
190 | id-smime-alg 5 : id-smime-alg-ESDH | ||
191 | id-smime-alg 6 : id-smime-alg-CMS3DESwrap | ||
192 | id-smime-alg 7 : id-smime-alg-CMSRC2wrap | ||
193 | |||
194 | # S/MIME Certificate Distribution | ||
195 | id-smime-cd 1 : id-smime-cd-ldap | ||
196 | |||
197 | # S/MIME Signature Policy Qualifier | ||
198 | id-smime-spq 1 : id-smime-spq-ets-sqt-uri | ||
199 | id-smime-spq 2 : id-smime-spq-ets-sqt-unotice | ||
200 | |||
201 | # S/MIME Commitment Type Identifier | ||
202 | id-smime-cti 1 : id-smime-cti-ets-proofOfOrigin | ||
203 | id-smime-cti 2 : id-smime-cti-ets-proofOfReceipt | ||
204 | id-smime-cti 3 : id-smime-cti-ets-proofOfDelivery | ||
205 | id-smime-cti 4 : id-smime-cti-ets-proofOfSender | ||
206 | id-smime-cti 5 : id-smime-cti-ets-proofOfApproval | ||
207 | id-smime-cti 6 : id-smime-cti-ets-proofOfCreation | ||
208 | |||
209 | pkcs9 20 : : friendlyName | ||
210 | pkcs9 21 : : localKeyID | ||
211 | !Cname ms-csp-name | ||
212 | 1 3 6 1 4 1 311 17 1 : CSPName : Microsoft CSP Name | ||
213 | !Alias certTypes pkcs9 22 | ||
214 | certTypes 1 : : x509Certificate | ||
215 | certTypes 2 : : sdsiCertificate | ||
216 | !Alias crlTypes pkcs9 23 | ||
217 | crlTypes 1 : : x509Crl | ||
218 | |||
219 | !Alias pkcs12 pkcs 12 | ||
220 | !Alias pkcs12-pbeids pkcs12 1 | ||
221 | |||
222 | !Cname pbe-WithSHA1And128BitRC4 | ||
223 | pkcs12-pbeids 1 : PBE-SHA1-RC4-128 : pbeWithSHA1And128BitRC4 | ||
224 | !Cname pbe-WithSHA1And40BitRC4 | ||
225 | pkcs12-pbeids 2 : PBE-SHA1-RC4-40 : pbeWithSHA1And40BitRC4 | ||
226 | !Cname pbe-WithSHA1And3_Key_TripleDES-CBC | ||
227 | pkcs12-pbeids 3 : PBE-SHA1-3DES : pbeWithSHA1And3-KeyTripleDES-CBC | ||
228 | !Cname pbe-WithSHA1And2_Key_TripleDES-CBC | ||
229 | pkcs12-pbeids 4 : PBE-SHA1-2DES : pbeWithSHA1And2-KeyTripleDES-CBC | ||
230 | !Cname pbe-WithSHA1And128BitRC2-CBC | ||
231 | pkcs12-pbeids 5 : PBE-SHA1-RC2-128 : pbeWithSHA1And128BitRC2-CBC | ||
232 | !Cname pbe-WithSHA1And40BitRC2-CBC | ||
233 | pkcs12-pbeids 6 : PBE-SHA1-RC2-40 : pbeWithSHA1And40BitRC2-CBC | ||
234 | |||
235 | !Alias pkcs12-Version1 pkcs12 10 | ||
236 | !Alias pkcs12-BagIds pkcs12-Version1 1 | ||
237 | pkcs12-BagIds 1 : : keyBag | ||
238 | pkcs12-BagIds 2 : : pkcs8ShroudedKeyBag | ||
239 | pkcs12-BagIds 3 : : certBag | ||
240 | pkcs12-BagIds 4 : : crlBag | ||
241 | pkcs12-BagIds 5 : : secretBag | ||
242 | pkcs12-BagIds 6 : : safeContentsBag | ||
243 | |||
244 | rsadsi 2 2 : MD2 : md2 | ||
245 | rsadsi 2 4 : MD4 : md4 | ||
246 | rsadsi 2 5 : MD5 : md5 | ||
247 | : MD5-SHA1 : md5-sha1 | ||
248 | rsadsi 2 7 : : hmacWithSHA1 | ||
249 | rsadsi 3 2 : RC2-CBC : rc2-cbc | ||
250 | : RC2-ECB : rc2-ecb | ||
251 | !Cname rc2-cfb64 | ||
252 | : RC2-CFB : rc2-cfb | ||
253 | !Cname rc2-ofb64 | ||
254 | : RC2-OFB : rc2-ofb | ||
255 | : RC2-40-CBC : rc2-40-cbc | ||
256 | : RC2-64-CBC : rc2-64-cbc | ||
257 | rsadsi 3 4 : RC4 : rc4 | ||
258 | : RC4-40 : rc4-40 | ||
259 | rsadsi 3 7 : DES-EDE3-CBC : des-ede3-cbc | ||
260 | rsadsi 3 8 : RC5-CBC : rc5-cbc | ||
261 | : RC5-ECB : rc5-ecb | ||
262 | !Cname rc5-cfb64 | ||
263 | : RC5-CFB : rc5-cfb | ||
264 | !Cname rc5-ofb64 | ||
265 | : RC5-OFB : rc5-ofb | ||
266 | |||
267 | !Cname ms-ext-req | ||
268 | 1 3 6 1 4 1 311 2 1 14 : msExtReq : Microsoft Extension Request | ||
269 | !Cname ms-code-ind | ||
270 | 1 3 6 1 4 1 311 2 1 21 : msCodeInd : Microsoft Individual Code Signing | ||
271 | !Cname ms-code-com | ||
272 | 1 3 6 1 4 1 311 2 1 22 : msCodeCom : Microsoft Commercial Code Signing | ||
273 | !Cname ms-ctl-sign | ||
274 | 1 3 6 1 4 1 311 10 3 1 : msCTLSign : Microsoft Trust List Signing | ||
275 | !Cname ms-sgc | ||
276 | 1 3 6 1 4 1 311 10 3 3 : msSGC : Microsoft Server Gated Crypto | ||
277 | !Cname ms-efs | ||
278 | 1 3 6 1 4 1 311 10 3 4 : msEFS : Microsoft Encrypted File System | ||
279 | |||
280 | 1 3 6 1 4 1 188 7 1 1 2 : IDEA-CBC : idea-cbc | ||
281 | : IDEA-ECB : idea-ecb | ||
282 | !Cname idea-cfb64 | ||
283 | : IDEA-CFB : idea-cfb | ||
284 | !Cname idea-ofb64 | ||
285 | : IDEA-OFB : idea-ofb | ||
286 | |||
287 | 1 3 6 1 4 1 3029 1 2 : BF-CBC : bf-cbc | ||
288 | : BF-ECB : bf-ecb | ||
289 | !Cname bf-cfb64 | ||
290 | : BF-CFB : bf-cfb | ||
291 | !Cname bf-ofb64 | ||
292 | : BF-OFB : bf-ofb | ||
293 | |||
294 | !Cname id-pkix | ||
295 | 1 3 6 1 5 5 7 : PKIX | ||
296 | |||
297 | # PKIX Arcs | ||
298 | id-pkix 0 : id-pkix-mod | ||
299 | id-pkix 1 : id-pe | ||
300 | id-pkix 2 : id-qt | ||
301 | id-pkix 3 : id-kp | ||
302 | id-pkix 4 : id-it | ||
303 | id-pkix 5 : id-pkip | ||
304 | id-pkix 6 : id-alg | ||
305 | id-pkix 7 : id-cmc | ||
306 | id-pkix 8 : id-on | ||
307 | id-pkix 9 : id-pda | ||
308 | id-pkix 10 : id-aca | ||
309 | id-pkix 11 : id-qcs | ||
310 | id-pkix 12 : id-cct | ||
311 | id-pkix 48 : id-ad | ||
312 | |||
313 | # PKIX Modules | ||
314 | id-pkix-mod 1 : id-pkix1-explicit-88 | ||
315 | id-pkix-mod 2 : id-pkix1-implicit-88 | ||
316 | id-pkix-mod 3 : id-pkix1-explicit-93 | ||
317 | id-pkix-mod 4 : id-pkix1-implicit-93 | ||
318 | id-pkix-mod 5 : id-mod-crmf | ||
319 | id-pkix-mod 6 : id-mod-cmc | ||
320 | id-pkix-mod 7 : id-mod-kea-profile-88 | ||
321 | id-pkix-mod 8 : id-mod-kea-profile-93 | ||
322 | id-pkix-mod 9 : id-mod-cmp | ||
323 | id-pkix-mod 10 : id-mod-qualified-cert-88 | ||
324 | id-pkix-mod 11 : id-mod-qualified-cert-93 | ||
325 | id-pkix-mod 12 : id-mod-attribute-cert | ||
326 | id-pkix-mod 13 : id-mod-timestamp-protocol | ||
327 | id-pkix-mod 14 : id-mod-ocsp | ||
328 | id-pkix-mod 15 : id-mod-dvcs | ||
329 | id-pkix-mod 16 : id-mod-cmp2000 | ||
330 | |||
331 | # PKIX Private Extensions | ||
332 | !Cname info-access | ||
333 | id-pe 1 : authorityInfoAccess : Authority Information Access | ||
334 | id-pe 2 : biometricInfo : Biometric Info | ||
335 | id-pe 3 : qcStatements | ||
336 | id-pe 4 : ac-auditEntity | ||
337 | id-pe 5 : ac-targeting | ||
338 | id-pe 6 : aaControls | ||
339 | id-pe 7 : sbqp-ipAddrBlock | ||
340 | id-pe 8 : sbqp-autonomousSysNum | ||
341 | id-pe 9 : sbqp-routerIdentifier | ||
342 | id-pe 10 : ac-proxying | ||
343 | !Cname sinfo-access | ||
344 | id-pe 11 : subjectInfoAccess : Subject Information Access | ||
345 | |||
346 | # PKIX policyQualifiers for Internet policy qualifiers | ||
347 | id-qt 1 : id-qt-cps : Policy Qualifier CPS | ||
348 | id-qt 2 : id-qt-unotice : Policy Qualifier User Notice | ||
349 | id-qt 3 : textNotice | ||
350 | |||
351 | # PKIX key purpose identifiers | ||
352 | !Cname server-auth | ||
353 | id-kp 1 : serverAuth : TLS Web Server Authentication | ||
354 | !Cname client-auth | ||
355 | id-kp 2 : clientAuth : TLS Web Client Authentication | ||
356 | !Cname code-sign | ||
357 | id-kp 3 : codeSigning : Code Signing | ||
358 | !Cname email-protect | ||
359 | id-kp 4 : emailProtection : E-mail Protection | ||
360 | id-kp 5 : ipsecEndSystem : IPSec End System | ||
361 | id-kp 6 : ipsecTunnel : IPSec Tunnel | ||
362 | id-kp 7 : ipsecUser : IPSec User | ||
363 | !Cname time-stamp | ||
364 | id-kp 8 : timeStamping : Time Stamping | ||
365 | # From OCSP spec RFC2560 | ||
366 | !Cname OCSP-sign | ||
367 | id-kp 9 : OCSPSigning : OCSP Signing | ||
368 | id-kp 10 : DVCS : dvcs | ||
369 | |||
370 | # CMP information types | ||
371 | id-it 1 : id-it-caProtEncCert | ||
372 | id-it 2 : id-it-signKeyPairTypes | ||
373 | id-it 3 : id-it-encKeyPairTypes | ||
374 | id-it 4 : id-it-preferredSymmAlg | ||
375 | id-it 5 : id-it-caKeyUpdateInfo | ||
376 | id-it 6 : id-it-currentCRL | ||
377 | id-it 7 : id-it-unsupportedOIDs | ||
378 | # obsolete | ||
379 | id-it 8 : id-it-subscriptionRequest | ||
380 | # obsolete | ||
381 | id-it 9 : id-it-subscriptionResponse | ||
382 | id-it 10 : id-it-keyPairParamReq | ||
383 | id-it 11 : id-it-keyPairParamRep | ||
384 | id-it 12 : id-it-revPassphrase | ||
385 | id-it 13 : id-it-implicitConfirm | ||
386 | id-it 14 : id-it-confirmWaitTime | ||
387 | id-it 15 : id-it-origPKIMessage | ||
388 | |||
389 | # CRMF registration | ||
390 | id-pkip 1 : id-regCtrl | ||
391 | id-pkip 2 : id-regInfo | ||
392 | |||
393 | # CRMF registration controls | ||
394 | id-regCtrl 1 : id-regCtrl-regToken | ||
395 | id-regCtrl 2 : id-regCtrl-authenticator | ||
396 | id-regCtrl 3 : id-regCtrl-pkiPublicationInfo | ||
397 | id-regCtrl 4 : id-regCtrl-pkiArchiveOptions | ||
398 | id-regCtrl 5 : id-regCtrl-oldCertID | ||
399 | id-regCtrl 6 : id-regCtrl-protocolEncrKey | ||
400 | |||
401 | # CRMF registration information | ||
402 | id-regInfo 1 : id-regInfo-utf8Pairs | ||
403 | id-regInfo 2 : id-regInfo-certReq | ||
404 | |||
405 | # algorithms | ||
406 | id-alg 1 : id-alg-des40 | ||
407 | id-alg 2 : id-alg-noSignature | ||
408 | id-alg 3 : id-alg-dh-sig-hmac-sha1 | ||
409 | id-alg 4 : id-alg-dh-pop | ||
410 | |||
411 | # CMC controls | ||
412 | id-cmc 1 : id-cmc-statusInfo | ||
413 | id-cmc 2 : id-cmc-identification | ||
414 | id-cmc 3 : id-cmc-identityProof | ||
415 | id-cmc 4 : id-cmc-dataReturn | ||
416 | id-cmc 5 : id-cmc-transactionId | ||
417 | id-cmc 6 : id-cmc-senderNonce | ||
418 | id-cmc 7 : id-cmc-recipientNonce | ||
419 | id-cmc 8 : id-cmc-addExtensions | ||
420 | id-cmc 9 : id-cmc-encryptedPOP | ||
421 | id-cmc 10 : id-cmc-decryptedPOP | ||
422 | id-cmc 11 : id-cmc-lraPOPWitness | ||
423 | id-cmc 15 : id-cmc-getCert | ||
424 | id-cmc 16 : id-cmc-getCRL | ||
425 | id-cmc 17 : id-cmc-revokeRequest | ||
426 | id-cmc 18 : id-cmc-regInfo | ||
427 | id-cmc 19 : id-cmc-responseInfo | ||
428 | id-cmc 21 : id-cmc-queryPending | ||
429 | id-cmc 22 : id-cmc-popLinkRandom | ||
430 | id-cmc 23 : id-cmc-popLinkWitness | ||
431 | id-cmc 24 : id-cmc-confirmCertAcceptance | ||
432 | |||
433 | # other names | ||
434 | id-on 1 : id-on-personalData | ||
435 | |||
436 | # personal data attributes | ||
437 | id-pda 1 : id-pda-dateOfBirth | ||
438 | id-pda 2 : id-pda-placeOfBirth | ||
439 | id-pda 3 : id-pda-gender | ||
440 | id-pda 4 : id-pda-countryOfCitizenship | ||
441 | id-pda 5 : id-pda-countryOfResidence | ||
442 | |||
443 | # attribute certificate attributes | ||
444 | id-aca 1 : id-aca-authenticationInfo | ||
445 | id-aca 2 : id-aca-accessIdentity | ||
446 | id-aca 3 : id-aca-chargingIdentity | ||
447 | id-aca 4 : id-aca-group | ||
448 | # attention : the following seems to be obsolete, replace by 'role' | ||
449 | id-aca 5 : id-aca-role | ||
450 | id-aca 6 : id-aca-encAttrs | ||
451 | |||
452 | # qualified certificate statements | ||
453 | id-qcs 1 : id-qcs-pkixQCSyntax-v1 | ||
454 | |||
455 | # CMC content types | ||
456 | id-cct 1 : id-cct-crs | ||
457 | id-cct 2 : id-cct-PKIData | ||
458 | id-cct 3 : id-cct-PKIResponse | ||
459 | |||
460 | # access descriptors for authority info access extension | ||
461 | !Cname ad-OCSP | ||
462 | id-ad 1 : OCSP : OCSP | ||
463 | !Cname ad-ca-issuers | ||
464 | id-ad 2 : caIssuers : CA Issuers | ||
465 | !Cname ad-timeStamping | ||
466 | id-ad 3 : ad_timestamping : AD Time Stamping | ||
467 | !Cname ad-dvcs | ||
468 | id-ad 4 : AD_DVCS : ad dvcs | ||
469 | |||
470 | |||
471 | !Alias id-pkix-OCSP ad-OCSP | ||
472 | !module id-pkix-OCSP | ||
473 | !Cname basic | ||
474 | id-pkix-OCSP 1 : basicOCSPResponse : Basic OCSP Response | ||
475 | id-pkix-OCSP 2 : Nonce : OCSP Nonce | ||
476 | id-pkix-OCSP 3 : CrlID : OCSP CRL ID | ||
477 | id-pkix-OCSP 4 : acceptableResponses : Acceptable OCSP Responses | ||
478 | id-pkix-OCSP 5 : noCheck : OCSP No Check | ||
479 | id-pkix-OCSP 6 : archiveCutoff : OCSP Archive Cutoff | ||
480 | id-pkix-OCSP 7 : serviceLocator : OCSP Service Locator | ||
481 | id-pkix-OCSP 8 : extendedStatus : Extended OCSP Status | ||
482 | id-pkix-OCSP 9 : valid | ||
483 | id-pkix-OCSP 10 : path | ||
484 | id-pkix-OCSP 11 : trustRoot : Trust Root | ||
485 | !global | ||
486 | |||
487 | 1 3 14 3 2 : algorithm : algorithm | ||
488 | algorithm 3 : RSA-NP-MD5 : md5WithRSA | ||
489 | algorithm 6 : DES-ECB : des-ecb | ||
490 | algorithm 7 : DES-CBC : des-cbc | ||
491 | !Cname des-ofb64 | ||
492 | algorithm 8 : DES-OFB : des-ofb | ||
493 | !Cname des-cfb64 | ||
494 | algorithm 9 : DES-CFB : des-cfb | ||
34 | algorithm 11 : rsaSignature | 495 | algorithm 11 : rsaSignature |
496 | !Cname dsa-2 | ||
497 | algorithm 12 : DSA-old : dsaEncryption-old | ||
498 | algorithm 13 : DSA-SHA : dsaWithSHA | ||
499 | algorithm 15 : RSA-SHA : shaWithRSAEncryption | ||
500 | !Cname des-ede-ecb | ||
501 | algorithm 17 : DES-EDE : des-ede | ||
502 | !Cname des-ede3-ecb | ||
503 | : DES-EDE3 : des-ede3 | ||
504 | : DES-EDE-CBC : des-ede-cbc | ||
505 | !Cname des-ede-cfb64 | ||
506 | : DES-EDE-CFB : des-ede-cfb | ||
507 | !Cname des-ede3-cfb64 | ||
508 | : DES-EDE3-CFB : des-ede3-cfb | ||
509 | !Cname des-ede-ofb64 | ||
510 | : DES-EDE-OFB : des-ede-ofb | ||
511 | !Cname des-ede3-ofb64 | ||
512 | : DES-EDE3-OFB : des-ede3-ofb | ||
513 | : DESX-CBC : desx-cbc | ||
514 | algorithm 18 : SHA : sha | ||
515 | algorithm 26 : SHA1 : sha1 | ||
516 | !Cname dsaWithSHA1-2 | ||
517 | algorithm 27 : DSA-SHA1-old : dsaWithSHA1-old | ||
518 | algorithm 29 : RSA-SHA1-2 : sha1WithRSA | ||
519 | |||
520 | 1 3 36 3 2 1 : RIPEMD160 : ripemd160 | ||
521 | 1 3 36 3 3 1 2 : RSA-RIPEMD160 : ripemd160WithRSA | ||
522 | |||
523 | !Cname sxnet | ||
524 | 1 3 101 1 4 1 : SXNetID : Strong Extranet ID | ||
525 | |||
526 | 2 5 : X500 : directory services (X.500) | ||
527 | |||
528 | X500 4 : X509 | ||
529 | X509 3 : CN : commonName | ||
530 | X509 4 : SN : surname | ||
531 | X509 5 : : serialNumber | ||
532 | X509 6 : C : countryName | ||
533 | X509 7 : L : localityName | ||
534 | X509 8 : ST : stateOrProvinceName | ||
535 | X509 10 : O : organizationName | ||
536 | X509 11 : OU : organizationalUnitName | ||
537 | X509 12 : : title | ||
538 | X509 13 : : description | ||
539 | X509 41 : name : name | ||
540 | X509 42 : gn : givenName | ||
541 | X509 43 : : initials | ||
542 | X509 44 : : generationQualifier | ||
543 | X509 45 : : x500UniqueIdentifier | ||
544 | X509 46 : dnQualifier : dnQualifier | ||
545 | X509 72 : role : role | ||
546 | |||
547 | X500 8 : X500algorithms : directory services - algorithms | ||
548 | X500algorithms 1 1 : RSA : rsa | ||
549 | X500algorithms 3 100 : RSA-MDC2 : mdc2WithRSA | ||
550 | X500algorithms 3 101 : MDC2 : mdc2 | ||
551 | |||
552 | X500 29 : id-ce | ||
553 | !Cname subject-key-identifier | ||
554 | id-ce 14 : subjectKeyIdentifier : X509v3 Subject Key Identifier | ||
555 | !Cname key-usage | ||
556 | id-ce 15 : keyUsage : X509v3 Key Usage | ||
557 | !Cname private-key-usage-period | ||
558 | id-ce 16 : privateKeyUsagePeriod : X509v3 Private Key Usage Period | ||
559 | !Cname subject-alt-name | ||
560 | id-ce 17 : subjectAltName : X509v3 Subject Alternative Name | ||
561 | !Cname issuer-alt-name | ||
562 | id-ce 18 : issuerAltName : X509v3 Issuer Alternative Name | ||
563 | !Cname basic-constraints | ||
564 | id-ce 19 : basicConstraints : X509v3 Basic Constraints | ||
565 | !Cname crl-number | ||
566 | id-ce 20 : crlNumber : X509v3 CRL Number | ||
567 | !Cname crl-reason | ||
568 | id-ce 21 : CRLReason : X509v3 CRL Reason Code | ||
569 | !Cname invalidity-date | ||
570 | id-ce 24 : invalidityDate : Invalidity Date | ||
571 | !Cname delta-crl | ||
572 | id-ce 27 : deltaCRL : X509v3 Delta CRL Indicator | ||
573 | !Cname crl-distribution-points | ||
574 | id-ce 31 : crlDistributionPoints : X509v3 CRL Distribution Points | ||
575 | !Cname certificate-policies | ||
576 | id-ce 32 : certificatePolicies : X509v3 Certificate Policies | ||
577 | !Cname authority-key-identifier | ||
578 | id-ce 35 : authorityKeyIdentifier : X509v3 Authority Key Identifier | ||
579 | !Cname policy-constraints | ||
580 | id-ce 36 : policyConstraints : X509v3 Policy Constraints | ||
581 | !Cname ext-key-usage | ||
582 | id-ce 37 : extendedKeyUsage : X509v3 Extended Key Usage | ||
583 | !Cname target-information | ||
584 | id-ce 55 : targetInformation : X509v3 AC Targeting | ||
585 | !Cname no-rev-avail | ||
586 | id-ce 56 : noRevAvail : X509v3 No Revocation Available | ||
587 | |||
588 | !Cname netscape | ||
589 | 2 16 840 1 113730 : Netscape : Netscape Communications Corp. | ||
590 | !Cname netscape-cert-extension | ||
591 | netscape 1 : nsCertExt : Netscape Certificate Extension | ||
592 | !Cname netscape-data-type | ||
593 | netscape 2 : nsDataType : Netscape Data Type | ||
594 | !Cname netscape-cert-type | ||
595 | netscape-cert-extension 1 : nsCertType : Netscape Cert Type | ||
596 | !Cname netscape-base-url | ||
597 | netscape-cert-extension 2 : nsBaseUrl : Netscape Base Url | ||
598 | !Cname netscape-revocation-url | ||
599 | netscape-cert-extension 3 : nsRevocationUrl : Netscape Revocation Url | ||
600 | !Cname netscape-ca-revocation-url | ||
601 | netscape-cert-extension 4 : nsCaRevocationUrl : Netscape CA Revocation Url | ||
602 | !Cname netscape-renewal-url | ||
603 | netscape-cert-extension 7 : nsRenewalUrl : Netscape Renewal Url | ||
604 | !Cname netscape-ca-policy-url | ||
605 | netscape-cert-extension 8 : nsCaPolicyUrl : Netscape CA Policy Url | ||
606 | !Cname netscape-ssl-server-name | ||
607 | netscape-cert-extension 12 : nsSslServerName : Netscape SSL Server Name | ||
608 | !Cname netscape-comment | ||
609 | netscape-cert-extension 13 : nsComment : Netscape Comment | ||
610 | !Cname netscape-cert-sequence | ||
611 | netscape-data-type 5 : nsCertSequence : Netscape Certificate Sequence | ||
612 | !Cname ns-sgc | ||
613 | netscape 4 1 : nsSGC : Netscape Server Gated Crypto | ||
614 | |||
615 | # iso(1) | ||
616 | iso 3 : ORG : org | ||
617 | org 6 : DOD : dod | ||
618 | dod 1 : IANA : iana | ||
619 | !Alias internet iana | ||
620 | |||
621 | internet 1 : directory : Directory | ||
622 | internet 2 : mgmt : Management | ||
623 | internet 3 : experimental : Experimental | ||
624 | internet 4 : private : Private | ||
625 | internet 5 : security : Security | ||
626 | internet 6 : snmpv2 : SNMPv2 | ||
627 | # Documents refer to "internet 7" as "mail". This however leads to ambiguities | ||
628 | # with RFC2798, Section 9.1.3, where "mail" is defined as the short name for | ||
629 | # rfc822Mailbox. The short name is therefore here left out for a reason. | ||
630 | # Subclasses of "mail", e.g. "MIME MHS" don't consitute a problem, as | ||
631 | # references are realized via long name "Mail" (with capital M). | ||
632 | internet 7 : : Mail | ||
633 | |||
634 | Private 1 : enterprises : Enterprises | ||
635 | |||
636 | # RFC 2247 | ||
637 | Enterprises 1466 344 : dcobject : dcObject | ||
638 | |||
639 | # RFC 1495 | ||
640 | Mail 1 : mime-mhs : MIME MHS | ||
641 | mime-mhs 1 : mime-mhs-headings : mime-mhs-headings | ||
642 | mime-mhs 2 : mime-mhs-bodies : mime-mhs-bodies | ||
643 | mime-mhs-headings 1 : id-hex-partial-message : id-hex-partial-message | ||
644 | mime-mhs-headings 2 : id-hex-multipart-message : id-hex-multipart-message | ||
645 | |||
646 | # What the hell are these OIDs, really? | ||
647 | !Cname rle-compression | ||
648 | 1 1 1 1 666 1 : RLE : run length compression | ||
649 | !Cname zlib-compression | ||
650 | 1 1 1 1 666 2 : ZLIB : zlib compression | ||
651 | |||
652 | # AES aka Rijndael | ||
653 | |||
654 | !Alias csor 2 16 840 1 101 3 | ||
655 | !Alias nistAlgorithms csor 4 | ||
656 | !Alias aes nistAlgorithms 1 | ||
657 | |||
658 | aes 1 : AES-128-ECB : aes-128-ecb | ||
659 | aes 2 : AES-128-CBC : aes-128-cbc | ||
660 | !Cname aes-128-ofb128 | ||
661 | aes 3 : AES-128-OFB : aes-128-ofb | ||
662 | !Cname aes-128-cfb128 | ||
663 | aes 4 : AES-128-CFB : aes-128-cfb | ||
664 | |||
665 | aes 21 : AES-192-ECB : aes-192-ecb | ||
666 | aes 22 : AES-192-CBC : aes-192-cbc | ||
667 | !Cname aes-192-ofb128 | ||
668 | aes 23 : AES-192-OFB : aes-192-ofb | ||
669 | !Cname aes-192-cfb128 | ||
670 | aes 24 : AES-192-CFB : aes-192-cfb | ||
671 | |||
672 | aes 41 : AES-256-ECB : aes-256-ecb | ||
673 | aes 42 : AES-256-CBC : aes-256-cbc | ||
674 | !Cname aes-256-ofb128 | ||
675 | aes 43 : AES-256-OFB : aes-256-ofb | ||
676 | !Cname aes-256-cfb128 | ||
677 | aes 44 : AES-256-CFB : aes-256-cfb | ||
678 | |||
679 | # Hold instruction CRL entry extension | ||
680 | !Cname hold-instruction-code | ||
681 | id-ce 23 : holdInstructionCode : Hold Instruction Code | ||
682 | !Alias holdInstruction X9-57 2 | ||
683 | !Cname hold-instruction-none | ||
684 | holdInstruction 1 : holdInstructionNone : Hold Instruction None | ||
685 | !Cname hold-instruction-call-issuer | ||
686 | holdInstruction 2 : holdInstructionCallIssuer : Hold Instruction Call Issuer | ||
687 | !Cname hold-instruction-reject | ||
688 | holdInstruction 3 : holdInstructionReject : Hold Instruction Reject | ||
35 | 689 | ||
36 | algorithm 6 : desECB | 690 | # OID's from CCITT. Most of this is defined in RFC 1274. A couple of |
37 | algorithm 7 : desCBC | 691 | # them are also mentioned in RFC 2247 |
38 | algorithm 8 : desOFB | 692 | ccitt 9 : data |
39 | algorithm 9 : desCFB | 693 | data 2342 : pss |
40 | algorithm 17 : desEDE2 | 694 | pss 19200300 : ucl |
695 | ucl 100 : pilot | ||
696 | pilot 1 : : pilotAttributeType | ||
697 | pilot 3 : : pilotAttributeSyntax | ||
698 | pilot 4 : : pilotObjectClass | ||
699 | pilot 10 : : pilotGroups | ||
700 | pilotAttributeSyntax 4 : : iA5StringSyntax | ||
701 | pilotAttributeSyntax 5 : : caseIgnoreIA5StringSyntax | ||
702 | pilotObjectClass 3 : : pilotObject | ||
703 | pilotObjectClass 4 : : pilotPerson | ||
704 | pilotObjectClass 5 : account | ||
705 | pilotObjectClass 6 : document | ||
706 | pilotObjectClass 7 : room | ||
707 | pilotObjectClass 9 : : documentSeries | ||
708 | pilotObjectClass 13 : domain : Domain | ||
709 | pilotObjectClass 14 : : rFC822localPart | ||
710 | pilotObjectClass 15 : : dNSDomain | ||
711 | pilotObjectClass 17 : : domainRelatedObject | ||
712 | pilotObjectClass 18 : : friendlyCountry | ||
713 | pilotObjectClass 19 : : simpleSecurityObject | ||
714 | pilotObjectClass 20 : : pilotOrganization | ||
715 | pilotObjectClass 21 : : pilotDSA | ||
716 | pilotObjectClass 22 : : qualityLabelledData | ||
717 | pilotAttributeType 1 : UID : userId | ||
718 | pilotAttributeType 2 : : textEncodedORAddress | ||
719 | pilotAttributeType 3 : mail : rfc822Mailbox | ||
720 | pilotAttributeType 4 : info | ||
721 | pilotAttributeType 5 : : favouriteDrink | ||
722 | pilotAttributeType 6 : : roomNumber | ||
723 | pilotAttributeType 7 : photo | ||
724 | pilotAttributeType 8 : : userClass | ||
725 | pilotAttributeType 9 : host | ||
726 | pilotAttributeType 10 : manager | ||
727 | pilotAttributeType 11 : : documentIdentifier | ||
728 | pilotAttributeType 12 : : documentTitle | ||
729 | pilotAttributeType 13 : : documentVersion | ||
730 | pilotAttributeType 14 : : documentAuthor | ||
731 | pilotAttributeType 15 : : documentLocation | ||
732 | pilotAttributeType 20 : : homeTelephoneNumber | ||
733 | pilotAttributeType 21 : secretary | ||
734 | pilotAttributeType 22 : : otherMailbox | ||
735 | pilotAttributeType 23 : : lastModifiedTime | ||
736 | pilotAttributeType 24 : : lastModifiedBy | ||
737 | pilotAttributeType 25 : DC : domainComponent | ||
738 | pilotAttributeType 26 : : aRecord | ||
739 | pilotAttributeType 27 : : pilotAttributeType27 | ||
740 | pilotAttributeType 28 : : mXRecord | ||
741 | pilotAttributeType 29 : : nSRecord | ||
742 | pilotAttributeType 30 : : sOARecord | ||
743 | pilotAttributeType 31 : : cNAMERecord | ||
744 | pilotAttributeType 37 : : associatedDomain | ||
745 | pilotAttributeType 38 : : associatedName | ||
746 | pilotAttributeType 39 : : homePostalAddress | ||
747 | pilotAttributeType 40 : : personalTitle | ||
748 | pilotAttributeType 41 : : mobileTelephoneNumber | ||
749 | pilotAttributeType 42 : : pagerTelephoneNumber | ||
750 | pilotAttributeType 43 : : friendlyCountryName | ||
751 | # The following clashes with 2.5.4.45, so commented away | ||
752 | #pilotAttributeType 44 : uid : uniqueIdentifier | ||
753 | pilotAttributeType 45 : : organizationalStatus | ||
754 | pilotAttributeType 46 : : janetMailbox | ||
755 | pilotAttributeType 47 : : mailPreferenceOption | ||
756 | pilotAttributeType 48 : : buildingName | ||
757 | pilotAttributeType 49 : : dSAQuality | ||
758 | pilotAttributeType 50 : : singleLevelQuality | ||
759 | pilotAttributeType 51 : : subtreeMinimumQuality | ||
760 | pilotAttributeType 52 : : subtreeMaximumQuality | ||
761 | pilotAttributeType 53 : : personalSignature | ||
762 | pilotAttributeType 54 : : dITRedirect | ||
763 | pilotAttributeType 55 : audio | ||
764 | pilotAttributeType 56 : : documentPublisher | ||