QSC Post Quantum Cryptographic Library 1.1.0.2 (B2)
A post quantum secure library written in Ansi C
Loading...
Searching...
No Matches
x509ocsp.h
Go to the documentation of this file.
1/* 2020-2026 Quantum Resistant Cryptographic Solutions Corporation
2 * All Rights Reserved.
3 *
4 * NOTICE:
5 * This software and all accompanying materials are the exclusive property of
6 * Quantum Resistant Cryptographic Solutions Corporation (QRCS). The intellectual
7 * and technical concepts contained herein are proprietary to QRCS and are
8 * protected under applicable Canadian, U.S., and international copyright,
9 * patent, and trade secret laws.
10 *
11 * CRYPTOGRAPHIC ALGORITHMS AND IMPLEMENTATIONS:
12 * - This software includes implementations of cryptographic primitives and
13 * algorithms that are standardized or in the public domain, such as AES
14 * and SHA-3, which are not proprietary to QRCS.
15 * - This software also includes cryptographic primitives, constructions, and
16 * algorithms designed by QRCS, including but not limited to RCS, SCB, CSX, QMAC, and
17 * related components, which are proprietary to QRCS.
18 * - All source code, implementations, protocol compositions, optimizations,
19 * parameter selections, and engineering work contained in this software are
20 * original works of QRCS and are protected under this license.
21 *
22 * LICENSE AND USE RESTRICTIONS:
23 * - This software is licensed under the Quantum Resistant Cryptographic Solutions
24 * Public Research and Evaluation License (QRCS-PREL), 2025-2026.
25 * - Permission is granted solely for non-commercial evaluation, academic research,
26 * cryptographic analysis, interoperability testing, and feasibility assessment.
27 * - Commercial use, production deployment, commercial redistribution, or
28 * integration into products or services is strictly prohibited without a
29 * separate written license agreement executed with QRCS.
30 * - Licensing and authorized distribution are solely at the discretion of QRCS.
31 *
32 * EXPERIMENTAL CRYPTOGRAPHY NOTICE:
33 * Portions of this software may include experimental, novel, or evolving
34 * cryptographic designs. Use of this software is entirely at the user's risk.
35 *
36 * DISCLAIMER:
37 * THIS SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND, EXPRESS OR
38 * IMPLIED, INCLUDING BUT NOT LIMITED TO WARRANTIES OF MERCHANTABILITY, FITNESS
39 * FOR A PARTICULAR PURPOSE, SECURITY, OR NON-INFRINGEMENT. QRCS DISCLAIMS ALL
40 * LIABILITY FOR ANY DIRECT, INDIRECT, INCIDENTAL, OR CONSEQUENTIAL DAMAGES
41 * ARISING FROM THE USE OR MISUSE OF THIS SOFTWARE.
42 *
43 * FULL LICENSE:
44 * This software is subject to the Quantum Resistant Cryptographic Solutions
45 * Public Research and Evaluation License (QRCS-PREL), 2025-2026. The complete license terms
46 * are provided in the accompanying LICENSE file or at https://www.qrcscorp.ca.
47 *
48 * Written by: John G. Underhill
49 * Contact: contact@qrcscorp.ca
50 */
51
52#ifndef QSC_X509_OCSP_H
53#define QSC_X509_OCSP_H
54
55#include "qsccommon.h"
56#include "x509cert.h"
57#include "x509store.h"
58#include "x509verify.h"
59
60QSC_CPLUSPLUS_ENABLED_START
61
78
83#define QSC_X509_OCSP_NONCE_MAX 32U
84
95
113
133typedef bool (*qsc_x509_ocsp_fetch_callback)(const char* url, const uint8_t* request, size_t requestlen, uint8_t* response, size_t* responselen, void* context);
134
149QSC_EXPORT_API bool qsc_x509_ocsp_parse_response(const uint8_t* der, size_t derlen, qsc_x509_ocsp_response* response);
150
170QSC_EXPORT_API bool qsc_x509_ocsp_validate(const qsc_x509_certificate* certificate, const qsc_x509_certificate* issuer,
171 const char* url, qsc_x509_ocsp_fetch_callback fetch, void* context, const qsc_asn1_time* now, qsc_x509_ocsp_response* response);
172
198QSC_EXPORT_API bool qsc_x509_ocsp_verify_responder(const qsc_x509_certificate* responder, const qsc_x509_certificate* issuer, const qsc_x509_store* store, const qsc_asn1_time* now);
199
200QSC_CPLUSPLUS_ENABLED_END
201
202#endif
QSC_EXPORT_API struct qsc_asn1_time_t qsc_asn1_time
A normalized ASN.1 time representation.
Contains common definitions for the Quantum Secure Cryptographic (QSC) library.
#define QSC_EXPORT_API
API export macro for Microsoft compilers when importing from a DLL.
Definition qsccommon.h:605
Definition x509ocsp.h:106
qsc_asn1_time revocationtime
Definition x509ocsp.h:108
bool hasnonce
Definition x509ocsp.h:109
uint8_t nonce[QSC_X509_OCSP_NONCE_MAX]
Definition x509ocsp.h:110
qsc_x509_ocsp_cert_status status
Definition x509ocsp.h:107
size_t noncelen
Definition x509ocsp.h:111
A parsed OCSP response status summary.
QSC_EXPORT_API bool qsc_x509_ocsp_verify_responder(const qsc_x509_certificate *responder, const qsc_x509_certificate *issuer, const qsc_x509_store *store, const qsc_asn1_time *now)
Verify an OCSP responder certificate.
Definition x509ocsp.c:1378
qsc_x509_ocsp_cert_status_t
Definition x509ocsp.h:90
@ QSC_X509_OCSP_STATUS_UNKNOWN
Definition x509ocsp.h:93
@ QSC_X509_OCSP_STATUS_GOOD
Definition x509ocsp.h:91
@ QSC_X509_OCSP_STATUS_REVOKED
Definition x509ocsp.h:92
bool(* qsc_x509_ocsp_fetch_callback)(const char *url, const uint8_t *request, size_t requestlen, uint8_t *response, size_t *responselen, void *context)
Caller-supplied OCSP transport callback.
Definition x509ocsp.h:133
#define QSC_X509_OCSP_NONCE_MAX
The maximum supported OCSP nonce length in bytes.
Definition x509ocsp.h:83
QSC_EXPORT_API bool qsc_x509_ocsp_parse_response(const uint8_t *der, size_t derlen, qsc_x509_ocsp_response *response)
Parse an OCSP response from DER.
Definition x509ocsp.c:1165
QSC_EXPORT_API bool qsc_x509_ocsp_validate(const qsc_x509_certificate *certificate, const qsc_x509_certificate *issuer, const char *url, qsc_x509_ocsp_fetch_callback fetch, void *context, const qsc_asn1_time *now, qsc_x509_ocsp_response *response)
Validate a certificate using OCSP.
Definition x509ocsp.c:1261
X.509 trust-anchor store and certificate chain construction interface.
X.509 certificate and certification-path verification interface.